Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google redirect problems


  • This topic is locked This topic is locked
31 replies to this topic

#1 stormingcalm

stormingcalm

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 22 August 2012 - 12:50 PM

Hi, im a bit new here but i have quite a bit of computer experience so most of the time i dont need help solving issues but this one truely has me stumped. Feel free to use as much knowledge as you can for i have also been to school for computer sciences and i am fluent with computers, that being said here is my problem.

For almost 2 weeks now i have been experiencing difficulties with all web browsers i use in conjuntion with google and yahoo search engines. it will redirect me to (-http://63.209.69.107 and a few odd and end marketing/merchant sites that are a bit odd. most of the time it will redirect to the http://63.209.69.107 search engine such as when i did a search for "stuff" it came up with http://63.209.69.107/search/web/stuff/C10/ecn/46251-3482/v5 ) Please be careful and im not sure if these sites will give malware so please be careful if anyone checks those links out.

And to add when i ran ad-aware anti virus a week ago it did find Malware.JS.Generic (JS)

That all being said here are the dds logs:




.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_33
Run by Tim at 13:34:45 on 2012-08-22
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4095.2670 [GMT -4:00]
.
AV: Lavasoft Ad-Aware *Enabled/Outdated* {BE5DD172-7F42-7948-1A60-E6A720288F81}
AV: Microsoft Security Essentials *Enabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Lavasoft Ad-Aware *Enabled/Outdated* {053C3096-5978-76C6-20D0-DDD55BAFC53C}
FW: Lavasoft Ad-Aware *Disabled* {86665057-352D-7810-313F-4F92DEFBC8FA}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe
C:\Program Files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Saitek\SD6\Software\ProfilerU.exe
C:\Program Files\Saitek\SD6\Software\SaiMfd.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\PROGRA~2\AD-AWA~1\AdAware.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tim\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
mStart Page = about:blank
uInternet Settings,ProxyOverride = <local>;*.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
uRun: [Google Update] "C:\Users\Tim\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
mRun: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\NETGEA~1.LNK - C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {8F6E7FB2-E56B-4F66-A4E1-9765D2565280} - hxxp://www.worldwinner.com/games/launcher/ie/v2.22.01.0/iewwload.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab
TCP: DhcpNameServer = 192.168.2.1
TCP: Interfaces\{233CBE26-A0B4-47DC-BC0E-8BA3CC50C101}\7756C6368696E6475627E65647 : DhcpNameServer = 209.18.47.61 209.18.47.62
TCP: Interfaces\{272A523F-0910-4E25-BD6F-58E46D7E2BB3} : DhcpNameServer = 209.18.47.61 209.18.47.62
TCP: Interfaces\{86901005-33F7-40D9-8FED-CAE95D89712C} : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{8FD720BB-53D2-4871-BAD1-0A0DB76E85FD} : DhcpNameServer = 192.168.2.1
TCP: Interfaces\{C8AD1375-CE44-4881-B3AE-F99F254965B8} : DhcpNameServer = 209.18.47.61 209.18.47.62
TCP: Interfaces\{C8AD1375-CE44-4881-B3AE-F99F254965B8}\2656C6B696E6534376 : DhcpNameServer = 192.168.2.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
BHO-X64: Ad-Aware Security Toolbar - No File
BHO-X64: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB-X64: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
mRun-x64: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
mRun-x64: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://www.ask.com/?l=dis&o=14196
FF - prefs.js: network.proxy.type - 0
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]
R0 SCMNdisP;General NDIS Protocol Driver;C:\Windows\system32\DRIVERS\scmndisp.sys --> C:\Windows\system32\DRIVERS\scmndisp.sys [?]
R1 SbFw;SbFw;C:\Windows\system32\drivers\SbFw.sys --> C:\Windows\system32\drivers\SbFw.sys [?]
R1 SBRE;SBRE;C:\Windows\System32\drivers\SBREDrv.sys [2011-4-29 101720]
R1 SbTis;SbTis;C:\Windows\system32\drivers\sbtis.sys --> C:\Windows\system32\drivers\sbtis.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 Ad-Aware Service;Ad-Aware Service;C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2012-3-29 1161072]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-8-6 361984]
R2 AODDriver4.1;AODDriver4.1;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2012-3-5 53888]
R2 cpuz135;cpuz135;\??\C:\Windows\system32\drivers\cpuz135_x64.sys --> C:\Windows\system32\drivers\cpuz135_x64.sys [?]
R2 Greg_Service;GRegService;C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 SBAMSvc;Ad-Aware;C:\Program Files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe [2011-5-17 2804280]
R2 sbapifs;sbapifs;C:\Windows\system32\DRIVERS\sbapifs.sys --> C:\Windows\system32\DRIVERS\sbapifs.sys [?]
R2 Updater Service;Updater Service;C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [2009-11-24 240160]
R3 amdiox64;AMD IO Driver;C:\Windows\system32\DRIVERS\amdiox64.sys --> C:\Windows\system32\DRIVERS\amdiox64.sys [?]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
R3 SBFWIMCLMP;Sunbelt Software Firewall NDIS IM Filter Miniport;C:\Windows\system32\DRIVERS\SBFWIM.sys --> C:\Windows\system32\DRIVERS\SBFWIM.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-3 160944]
S2 WSWNDA3100;WSWNDA3100;C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe [2011-9-7 272864]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-3-28 250056]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-2-28 183560]
S3 BCMH43XX;Broadcom 802.11 USB Network Adapter Driver;C:\Windows\system32\DRIVERS\bcmwlhigh664.sys --> C:\Windows\system32\DRIVERS\bcmwlhigh664.sys [?]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]
S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-3-26 291696]
S3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;C:\Windows\system32\DRIVERS\RTL8192su.sys --> C:\Windows\system32\DRIVERS\RTL8192su.sys [?]
S3 SaiHFF0C;SaiHFF0C;C:\Windows\system32\DRIVERS\SaiHFF0C.sys --> C:\Windows\system32\DRIVERS\SaiHFF0C.sys [?]
S3 SaiUFF0C;SaiUFF0C;C:\Windows\system32\DRIVERS\SaiUFF0C.sys --> C:\Windows\system32\DRIVERS\SaiUFF0C.sys [?]
S3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Service;C:\Windows\system32\DRIVERS\sbfwim.sys --> C:\Windows\system32\DRIVERS\sbfwim.sys [?]
S3 sbhips;sbhips;C:\Windows\system32\drivers\sbhips.sys --> C:\Windows\system32\drivers\sbhips.sys [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== File Associations ===============
.
inffile=%SystemRoot%\SysWow64\NOTEPAD.EXE %1
VBEFile=%SystemRoot%\SysWow64\WScript.exe "%1" %*
VBSFile=%SystemRoot%\SysWow64\WScript.exe "%1" %*
.
=============== Created Last 30 ================
.
2012-08-21 15:44:35 9309624 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D4E57492-A56F-493E-8B4D-A76E7860E881}\mpengine.dll
2012-08-21 03:00:47 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2012-08-21 03:00:45 -------- d-----w- C:\Program Files (x86)\Steam
2012-08-19 19:23:02 -------- d-----w- C:\Program Files (x86)\AMD APP
2012-08-19 19:18:11 9133488 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-13 21:56:01 -------- d-----w- C:\ProgramData\EA Core
2012-08-13 21:41:06 -------- d-----w- C:\Program Files (x86)\Origin Games
2012-08-13 21:40:58 -------- d-----w- C:\Users\Tim\AppData\Local\Origin
2012-08-13 21:40:57 -------- d-----w- C:\Users\Tim\AppData\Roaming\Origin
2012-08-13 21:40:43 -------- d-----w- C:\ProgramData\Origin
2012-08-13 21:39:13 -------- d-----w- C:\Program Files (x86)\Origin
2012-08-12 03:51:41 -------- d-----w- C:\Users\Tim\AppData\Roaming\SPORE
2012-08-12 03:48:50 -------- d-----w- C:\ProgramData\Electronic Arts
2012-08-12 03:48:43 1240 ----a-w- C:\Windows\SysWow64\ealregsnapshot1.reg
2012-08-12 03:48:05 -------- d-----w- C:\Users\Tim\AppData\Local\Downloaded Installations
2012-07-30 21:52:13 103904 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2012-07-30 21:52:13 103904 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
2012-07-29 01:03:14 715038 ----a-w- C:\Windows\unins000.exe
2012-07-28 04:09:20 5538984 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2012-07-28 04:07:44 10278912 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2012-07-28 03:43:12 70144 ----a-w- C:\Windows\System32\coinst_8.982.dll
2012-07-28 03:19:34 24935424 ----a-w- C:\Windows\System32\atio6axx.dll
2012-07-28 02:50:10 20546560 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2012-07-28 02:47:40 187392 ----a-w- C:\Windows\System32\clinfo.exe
2012-07-28 02:47:24 75776 ----a-w- C:\Windows\System32\OpenVideo64.dll
2012-07-28 02:47:16 65024 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2012-07-28 02:47:10 63488 ----a-w- C:\Windows\System32\OVDecode64.dll
2012-07-28 02:47:06 56320 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2012-07-28 02:46:56 16464896 ----a-w- C:\Windows\System32\amdocl64.dll
2012-07-28 02:46:06 13013504 ----a-w- C:\Windows\SysWow64\amdocl.dll
2012-07-28 02:15:50 163840 ----a-w- C:\Windows\System32\atiapfxx.exe
2012-07-28 02:15:42 931328 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2012-07-28 02:13:56 1100288 ----a-w- C:\Windows\System32\aticfx64.dll
2012-07-28 02:10:40 442368 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2012-07-28 02:10:34 534528 ----a-w- C:\Windows\System32\atieclxx.exe
2012-07-28 02:09:44 239616 ----a-w- C:\Windows\System32\atiesrxx.exe
2012-07-28 02:08:20 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2012-07-28 02:08:04 21504 ----a-w- C:\Windows\System32\atimuixx.dll
2012-07-28 02:07:58 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2012-07-28 02:07:52 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2012-07-28 02:07:10 6430208 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2012-07-28 01:51:12 7052288 ----a-w- C:\Windows\System32\atidxx64.dll
2012-07-28 01:41:32 4266496 ----a-w- C:\Windows\System32\atiumd6a.dll
2012-07-28 01:35:10 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2012-07-28 01:35:08 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2012-07-28 01:35:02 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2012-07-28 01:35:00 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2012-07-28 01:34:48 16034304 ----a-w- C:\Windows\System32\aticaldd64.dll
2012-07-28 01:32:32 4751872 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2012-07-28 01:30:10 13605888 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2012-07-28 01:25:52 6676480 ----a-w- C:\Windows\System32\atiumd64.dll
2012-07-28 01:15:32 540160 ----a-w- C:\Windows\System32\atiadlxx.dll
2012-07-28 01:15:22 368640 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2012-07-28 01:15:12 17920 ----a-w- C:\Windows\System32\atig6pxx.dll
2012-07-28 01:15:08 14848 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2012-07-28 01:15:08 14848 ----a-w- C:\Windows\System32\atiglpxx.dll
2012-07-28 01:15:04 41984 ----a-w- C:\Windows\System32\atig6txx.dll
2012-07-28 01:14:56 33280 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2012-07-28 01:14:46 368640 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2012-07-28 01:13:48 109568 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2012-07-28 01:13:40 103936 ----a-w- C:\Windows\System32\atiu9p64.dll
2012-07-28 01:13:32 83456 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2012-07-28 01:12:54 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2012-07-28 01:08:42 56320 ----a-w- C:\Windows\System32\atimpc64.dll
2012-07-28 01:08:42 56320 ----a-w- C:\Windows\System32\amdpcom64.dll
2012-07-28 01:08:36 56832 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2012-07-28 01:08:36 56832 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
.
==================== Find3M ====================
.
2012-08-15 00:55:10 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-15 00:55:10 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-07-28 01:13:54 129536 ----a-w- C:\Windows\System32\atiuxp64.dll
2012-07-18 18:15:06 3148800 ----a-w- C:\Windows\System32\win32k.sys
2012-07-04 22:13:27 59392 ----a-w- C:\Windows\System32\browcli.dll
2012-07-04 22:13:27 136704 ----a-w- C:\Windows\System32\browser.dll
2012-07-04 21:14:34 41984 ----a-w- C:\Windows\SysWow64\browcli.dll
2012-07-03 17:46:44 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-07-02 22:42:12 476936 ----a-w- C:\Windows\SysWow64\npdeployJava1.dll
2012-07-02 22:42:12 472840 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-06-29 03:56:34 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-06-29 03:49:11 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-06-29 03:48:07 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-06-29 03:43:49 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-06-29 03:39:48 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-06-29 00:16:58 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-06-29 00:09:01 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-06-29 00:08:59 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-06-29 00:04:43 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-06-29 00:00:45 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-06-06 06:06:16 2004480 ----a-w- C:\Windows\System32\msxml6.dll
2012-06-06 06:06:16 1881600 ----a-w- C:\Windows\System32\msxml3.dll
2012-06-06 06:02:54 1133568 ----a-w- C:\Windows\System32\cdosys.dll
2012-06-06 05:05:52 1390080 ----a-w- C:\Windows\SysWow64\msxml6.dll
2012-06-06 05:05:52 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
2012-06-06 05:03:06 805376 ----a-w- C:\Windows\SysWow64\cdosys.dll
2012-06-02 22:15:31 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2012-06-02 22:15:08 99840 ----a-w- C:\Windows\System32\wudriver.dll
2012-06-02 19:19:42 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2012-06-02 19:15:12 36864 ----a-w- C:\Windows\System32\wuapp.exe
2012-06-02 05:50:10 458704 ----a-w- C:\Windows\System32\drivers\cng.sys
2012-06-02 05:48:16 95600 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2012-06-02 05:48:16 151920 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2012-06-02 05:45:31 340992 ----a-w- C:\Windows\System32\schannel.dll
2012-06-02 05:44:21 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2012-06-02 04:40:42 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2012-06-02 04:40:39 225280 ----a-w- C:\Windows\SysWow64\schannel.dll
2012-06-02 04:39:10 219136 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2012-06-02 04:34:09 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
.
============= FINISH: 13:36:19.50 ===============

Thanks in advanced for anything you can do to help and thanks for your time even if you cant help!

Attached Files



BC AdBot (Login to Remove)

 


#2 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 23 August 2012 - 12:08 AM

Greetings and Welcome to The Forums!!

My name is Gringo and I'll be glad to help you with your computer problems.

I have put together somethings for you to keep in mind while I am helping you to make things go easier and faster for both of us

  • Please do not run any tools unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not attach logs or use code boxes, just copy and paste the text.
    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.
  • Please read every post completely before doing anything.
    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.
  • Please provide feedback about your experience as we go.
    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.
NOTE: At the top of your post, click on the Watch Topic Button, select Immediate Notification, and click on Proceed. This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of hartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.

Security Check

  • Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.



Run Combofix:

You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)

Before you run Combofix I will need you to turn off any security software you have running, If you do not know how to do this you can find out >here< or >here<

Combofix may need to reboot your computer more than once to do its job this is normal.

You can download Combofix from one of these links.
Link 1
Link 2
Link 3
1. Close any open browsers or any other programs that are open.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Double click on combofix.exe & follow the prompts.
When finished, it will produce a report for you.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you recieve an error "Illegal operation attempted on a registery key that has been marked for deletion." Please restart the computer

"information and logs"

  • In your next post I need the following
  • Log from Combofix
  • let me know of any problems you may have had
  • How is the computer doing now?

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#3 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 08:24 PM

Results of screen317's Security Check version 0.99.46
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 9
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
Lavasoft Ad-Aware
Microsoft Security Essentials
Antivirus out of date!
`````````Anti-malware/Other Utilities Check:`````````
Ad-Aware
Malwarebytes Anti-Malware version 1.62.0.1300
Java™ 6 Update 24
Java™ 6 Update 33
Java version out of Date!
Adobe Reader 9 Adobe Reader out of Date!
Mozilla Firefox (3.6.8) Firefox out of Date!
Google Chrome 21.0.1180.79
Google Chrome 21.0.1180.83
````````Process Check: objlist.exe by Laurent````````
Microsoft Security Essentials MSMpEng.exe
Microsoft Security Essentials msseces.exe
Ad-Aware AAWService.exe is disabled!
Ad-Aware AAWTray.exe is disabled!
Ad-Aware Antivirus AdAwareService.exe
Ad-Aware Antivirus Engine SBAMSvc.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````





And the combofix log...

#4 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 08:25 PM

ComboFix 12-08-22.03 - Tim 08/23/2012 20:50:49.3.2 - x64 MINIMAL
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4095.3036 [GMT -4:00]
Running from: c:\users\Tim\Desktop\ComboFix.exe
AV: Lavasoft Ad-Aware *Enabled/Outdated* {BE5DD172-7F42-7948-1A60-E6A720288F81}
AV: Microsoft Security Essentials *Enabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
FW: Lavasoft Ad-Aware *Disabled* {86665057-352D-7810-313F-4F92DEFBC8FA}
SP: Lavasoft Ad-Aware *Enabled/Outdated* {053C3096-5978-76C6-20D0-DDD55BAFC53C}
SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2012-07-24 to 2012-08-24 )))))))))))))))))))))))))))))))
.
.
2012-08-24 00:57 . 2012-08-24 00:57 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-08-24 00:57 . 2012-08-24 00:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-23 05:27 . 2012-08-01 22:58 9309624 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BFBFE68A-852C-4170-93EA-C413722199DE}\mpengine.dll
2012-08-21 15:44 . 2012-08-01 22:58 9309624 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-21 03:00 . 2012-08-22 20:27 -------- d-----w- c:\program files (x86)\Common Files\Steam
2012-08-21 03:00 . 2012-08-23 17:45 -------- d-----w- c:\program files (x86)\Steam
2012-08-19 19:23 . 2012-08-19 19:23 -------- d-----w- c:\programdata\ATI
2012-08-19 19:23 . 2012-08-19 19:23 -------- d-----w- c:\program files (x86)\AMD APP
2012-08-15 14:48 . 2012-06-29 04:55 17809920 ----a-w- c:\windows\system32\mshtml.dll
2012-08-15 14:48 . 2012-06-29 04:09 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-08-13 21:56 . 2012-08-13 21:56 -------- d-----w- c:\programdata\EA Core
2012-08-13 21:41 . 2012-08-13 21:41 -------- d-----w- c:\program files (x86)\Origin Games
2012-08-13 21:40 . 2012-08-13 21:40 -------- d-----w- c:\users\Tim\AppData\Local\Origin
2012-08-13 21:40 . 2012-08-15 14:41 -------- d-----w- c:\users\Tim\AppData\Roaming\Origin
2012-08-13 21:40 . 2012-08-13 21:46 -------- d-----w- c:\programdata\Origin
2012-08-13 21:39 . 2012-08-13 21:46 -------- d-----w- c:\program files (x86)\Origin
2012-08-12 03:51 . 2012-08-17 00:34 -------- d-----w- c:\users\Tim\AppData\Roaming\SPORE
2012-08-12 03:39 . 2012-08-13 21:39 -------- d-----w- c:\program files (x86)\Electronic Arts
2012-07-30 21:52 . 2012-07-30 21:52 103904 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2012-07-30 21:52 . 2012-07-30 21:52 103904 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll
2012-07-29 01:03 . 2012-07-29 01:03 715038 ----a-w- c:\windows\unins000.exe
2012-07-28 04:09 . 2012-07-28 04:09 5538984 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-07-28 04:07 . 2012-07-28 04:07 10278912 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-07-28 03:43 . 2012-07-28 03:43 70144 ----a-w- c:\windows\system32\coinst_8.982.dll
2012-07-28 03:19 . 2012-07-28 03:19 24935424 ----a-w- c:\windows\system32\atio6axx.dll
2012-07-28 02:50 . 2012-07-28 02:50 20546560 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-07-28 02:47 . 2012-07-28 02:47 187392 ----a-w- c:\windows\system32\clinfo.exe
2012-07-28 02:47 . 2012-07-28 02:47 75776 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-07-28 02:47 . 2012-07-28 02:47 65024 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-07-28 02:47 . 2012-07-28 02:47 63488 ----a-w- c:\windows\system32\OVDecode64.dll
2012-07-28 02:47 . 2012-07-28 02:47 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-07-28 02:46 . 2012-07-28 02:46 16464896 ----a-w- c:\windows\system32\amdocl64.dll
2012-07-28 02:46 . 2012-07-28 02:46 13013504 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-07-28 02:15 . 2012-07-28 02:15 163840 ----a-w- c:\windows\system32\atiapfxx.exe
2012-07-28 02:15 . 2012-07-28 02:15 931328 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-07-28 02:13 . 2012-07-28 02:13 1100288 ----a-w- c:\windows\system32\aticfx64.dll
2012-07-28 02:10 . 2012-07-28 02:10 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-07-28 02:10 . 2012-07-28 02:10 534528 ----a-w- c:\windows\system32\atieclxx.exe
2012-07-28 02:09 . 2012-07-28 02:09 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2012-07-28 02:08 . 2012-07-28 02:08 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-07-28 02:08 . 2012-07-28 02:08 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-07-28 02:07 . 2012-07-28 02:07 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-07-28 02:07 . 2012-07-28 02:07 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-07-28 02:07 . 2012-07-28 02:07 6430208 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-07-28 01:51 . 2012-07-28 01:51 7052288 ----a-w- c:\windows\system32\atidxx64.dll
2012-07-28 01:41 . 2012-07-28 01:41 4266496 ----a-w- c:\windows\system32\atiumd6a.dll
2012-07-28 01:35 . 2012-07-28 01:35 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-07-28 01:35 . 2012-07-28 01:35 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-07-28 01:35 . 2012-07-28 01:35 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-07-28 01:35 . 2012-07-28 01:35 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-07-28 01:34 . 2012-07-28 01:34 16034304 ----a-w- c:\windows\system32\aticaldd64.dll
2012-07-28 01:32 . 2012-07-28 01:32 4751872 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-07-28 01:30 . 2012-07-28 01:30 13605888 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-07-28 01:25 . 2012-07-28 01:25 6676480 ----a-w- c:\windows\system32\atiumd64.dll
2012-07-28 01:15 . 2012-07-28 01:15 540160 ----a-w- c:\windows\system32\atiadlxx.dll
2012-07-28 01:15 . 2012-07-28 01:15 368640 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-07-28 01:15 . 2012-07-28 01:15 17920 ----a-w- c:\windows\system32\atig6pxx.dll
2012-07-28 01:15 . 2012-07-28 01:15 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-07-28 01:15 . 2012-07-28 01:15 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-07-28 01:15 . 2012-07-28 01:15 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-07-28 01:14 . 2012-07-28 01:14 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-07-28 01:14 . 2012-07-28 01:14 368640 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-07-28 01:13 . 2012-07-28 01:13 109568 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-07-28 01:13 . 2012-07-28 01:13 103936 ----a-w- c:\windows\system32\atiu9p64.dll
2012-07-28 01:13 . 2012-07-28 01:13 83456 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-07-28 01:12 . 2012-07-28 01:12 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-07-28 01:08 . 2012-07-28 01:08 56320 ----a-w- c:\windows\system32\atimpc64.dll
2012-07-28 01:08 . 2012-07-28 01:08 56320 ----a-w- c:\windows\system32\amdpcom64.dll
2012-07-28 01:08 . 2012-07-28 01:08 56832 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-07-28 01:08 . 2012-07-28 01:08 56832 ----a-w- c:\windows\SysWow64\amdpcom32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-15 14:43 . 2010-04-25 02:54 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-15 00:55 . 2012-03-28 04:28 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-15 00:55 . 2011-09-03 07:25 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-28 01:13 . 2011-01-27 03:12 129536 ----a-w- c:\windows\system32\atiuxp64.dll
2012-07-03 17:46 . 2010-05-06 21:24 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-07-02 22:42 . 2012-07-02 22:42 476936 ----a-w- c:\windows\SysWow64\npdeployJava1.dll
2012-07-02 22:42 . 2010-08-17 06:28 472840 ----a-w- c:\windows\SysWow64\deployJava1.dll
2012-06-09 05:43 . 2012-07-11 00:34 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 06:06 . 2012-07-11 00:34 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:06 . 2012-07-11 00:34 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:02 . 2012-07-11 00:33 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-11 00:34 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-11 00:34 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-11 00:33 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-06-19 12:48 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 12:48 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 12:48 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 12:48 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 12:48 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 12:48 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 12:48 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 19:19 . 2012-06-19 12:48 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 19:15 . 2012-06-19 12:48 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-06-02 05:50 . 2012-07-11 00:34 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-06-02 05:48 . 2012-07-11 00:34 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-06-02 05:48 . 2012-07-11 00:34 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-06-02 05:45 . 2012-07-11 00:34 340992 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 05:44 . 2012-07-11 00:34 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-06-02 04:40 . 2012-07-11 00:33 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-06-02 04:40 . 2012-07-11 00:34 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-06-02 04:39 . 2012-07-11 00:34 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-06-02 04:34 . 2012-07-11 00:33 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-04-23_10.54.31 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-06-11 05:58 . 2011-06-11 05:58 51024 c:\windows\SysWOW64\vcomp100.dll
+ 2012-08-15 13:11 . 2012-05-05 07:46 43008 c:\windows\SysWOW64\srclient.dll
- 2009-07-13 23:23 . 2009-07-14 01:16 43008 c:\windows\SysWOW64\srclient.dll
+ 2012-04-06 02:32 . 2012-04-06 02:32 50176 c:\windows\SysWOW64\OpenCL.dll
+ 2012-08-15 13:11 . 2012-07-04 21:16 57344 c:\windows\SysWOW64\netapi32.dll
+ 2012-08-15 14:49 . 2012-06-29 00:01 73216 c:\windows\SysWOW64\mshtmled.dll
+ 2012-08-15 14:49 . 2012-06-29 00:06 66048 c:\windows\SysWOW64\migration\WininetPlugin.dll
- 2012-04-12 07:04 . 2012-02-28 01:08 66048 c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 81744 c:\windows\SysWOW64\mfcm100u.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 81744 c:\windows\SysWOW64\mfcm100.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 60752 c:\windows\SysWOW64\mfc100rus.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 43344 c:\windows\SysWOW64\mfc100kor.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 43856 c:\windows\SysWOW64\mfc100jpn.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 62288 c:\windows\SysWOW64\mfc100ita.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 64336 c:\windows\SysWOW64\mfc100fra.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 63824 c:\windows\SysWOW64\mfc100esn.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 55120 c:\windows\SysWOW64\mfc100enu.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 64336 c:\windows\SysWOW64\mfc100deu.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 36176 c:\windows\SysWOW64\mfc100cht.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 36176 c:\windows\SysWOW64\mfc100chs.dll
+ 2012-03-09 18:06 . 2012-03-09 18:06 24576 c:\windows\SysWOW64\kdbsdk32.dll
- 2012-04-12 07:04 . 2012-02-28 01:08 65024 c:\windows\SysWOW64\jsproxy.dll
+ 2012-08-15 14:49 . 2012-06-29 00:06 65024 c:\windows\SysWOW64\jsproxy.dll
+ 2011-09-27 12:19 . 2012-06-11 15:27 21942 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\WildTangent\Analytics\WTAnalytics.dat
- 2009-07-14 04:54 . 2012-04-13 19:54 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-08-15 00:54 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-04-13 19:54 65536 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-15 00:54 65536 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-15 00:54 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-04-13 19:54 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2011-05-17 13:30 . 2010-11-20 12:18 41984 c:\windows\SysWOW64\browcli.dll
+ 2012-08-15 13:11 . 2012-07-04 21:14 41984 c:\windows\SysWOW64\browcli.dll
+ 2009-11-24 17:15 . 2012-08-24 01:00 56512 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-24 01:00 49578 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-04-15 20:30 . 2012-08-24 01:00 17856 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-402035426-1599880845-4127718658-1001_UserData.bin
+ 2011-01-07 19:02 . 2011-01-07 19:02 57168 c:\windows\system32\vcomp100.dll
+ 2012-05-20 04:21 . 2009-07-14 01:40 38912 c:\windows\system32\spool\prtprocs\x64\EP0NPP01.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 55808 c:\windows\system32\spool\drivers\x64\3\EP0SLP01.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 68096 c:\windows\system32\spool\drivers\x64\3\EP0NS421.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 69120 c:\windows\system32\spool\drivers\x64\3\EP0NM40J.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 93184 c:\windows\system32\spool\drivers\x64\3\EP0NIP46.DLL
+ 2009-07-14 01:19 . 2009-07-14 01:40 26624 c:\windows\system32\spool\drivers\x64\3\EP0NAR00.DLL
+ 2012-06-13 23:55 . 2012-04-26 05:41 77312 c:\windows\system32\rdpwsx.dll
- 2012-03-14 08:16 . 2012-01-25 06:38 77312 c:\windows\system32\rdpwsx.dll
+ 2012-04-06 02:32 . 2012-04-06 02:32 54784 c:\windows\system32\OpenCL.dll
+ 2012-08-15 13:11 . 2012-07-04 22:16 73216 c:\windows\system32\netapi32.dll
+ 2012-08-15 14:49 . 2012-06-29 03:40 96768 c:\windows\system32\mshtmled.dll
- 2012-04-12 07:04 . 2012-02-28 06:47 86528 c:\windows\system32\migration\WininetPlugin.dll
+ 2012-08-15 14:49 . 2012-06-29 03:46 86528 c:\windows\system32\migration\WininetPlugin.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 91472 c:\windows\system32\mfcm100u.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 91472 c:\windows\system32\mfcm100.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 60752 c:\windows\system32\mfc100rus.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 43344 c:\windows\system32\mfc100kor.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 43856 c:\windows\system32\mfc100jpn.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 62288 c:\windows\system32\mfc100ita.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 64336 c:\windows\system32\mfc100fra.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 63824 c:\windows\system32\mfc100esn.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 55120 c:\windows\system32\mfc100enu.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 64336 c:\windows\system32\mfc100deu.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 36176 c:\windows\system32\mfc100cht.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 36176 c:\windows\system32\mfc100chs.dll
+ 2012-03-09 18:07 . 2012-03-09 18:07 29184 c:\windows\system32\kdbsdk64.dll
- 2012-04-12 07:04 . 2012-02-28 06:47 85504 c:\windows\system32\jsproxy.dll
+ 2012-08-15 14:49 . 2012-06-29 03:45 85504 c:\windows\system32\jsproxy.dll
+ 2009-07-14 01:20 . 2009-07-14 01:40 77824 c:\windows\system32\EP0SLM01.DLL
+ 2009-07-14 05:30 . 2012-08-19 19:20 86016 c:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2012-04-23 07:38 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2012-07-28 03:43 . 2012-07-28 03:43 70144 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\coinst_8.982.dll
+ 2012-07-28 01:13 . 2012-07-28 01:13 83456 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiu9pag.dll
+ 2012-07-28 01:22 . 2012-07-28 01:22 74240 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atisamu64.dll
+ 2012-07-28 01:22 . 2012-07-28 01:22 71168 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atisamu32.dll
+ 2009-06-22 15:34 . 2009-06-22 15:34 51200 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ATIODCLI.exe
+ 2012-07-28 02:08 . 2012-07-28 02:08 21504 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atimuixx.dll
+ 2012-07-28 01:08 . 2012-07-28 01:08 56320 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atimpc64.dll
+ 2012-07-28 01:08 . 2012-07-28 01:08 56832 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atimpc32.dll
+ 2012-07-28 01:15 . 2012-07-28 01:15 14848 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiglpxx.dll
+ 2012-07-28 01:14 . 2012-07-28 01:14 33280 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atigktxx.dll
+ 2012-07-28 01:15 . 2012-07-28 01:15 41984 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atig6txx.dll
+ 2012-07-28 01:15 . 2012-07-28 01:15 17920 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atig6pxx.dll
+ 2012-07-28 02:07 . 2012-07-28 02:07 59392 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiedu64.dll
+ 2012-07-28 01:35 . 2012-07-28 01:35 51200 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticalrt64.dll
+ 2012-07-28 01:35 . 2012-07-28 01:35 46080 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticalrt.dll
+ 2012-07-28 01:35 . 2012-07-28 01:35 44544 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticalcl64.dll
+ 2012-07-28 01:35 . 2012-07-28 01:35 44032 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticalcl.dll
+ 2012-07-28 01:12 . 2012-07-28 01:12 53248 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ati2erec.dll
+ 2012-07-28 02:07 . 2012-07-28 02:07 43520 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ati2edxx.dll
+ 2012-07-28 01:22 . 2012-07-28 01:22 77312 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\amdave64.dll
+ 2012-07-28 01:22 . 2012-07-28 01:22 77312 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\amdave32.dll
+ 2012-05-23 01:56 . 2012-05-23 01:56 70144 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\coinst_8.98.dll
+ 2012-05-23 01:07 . 2012-05-23 01:07 42496 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiuxpag.dll
+ 2012-05-23 01:07 . 2012-05-23 01:07 54784 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiuxp64.dll
+ 2012-05-23 01:07 . 2012-05-23 01:07 32768 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiu9pag.dll
+ 2012-05-23 01:07 . 2012-05-23 01:07 45056 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiu9p64.dll
+ 2012-05-23 01:15 . 2012-05-23 01:15 74240 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atisamu64.dll
+ 2012-05-23 01:15 . 2012-05-23 01:15 71168 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atisamu32.dll
+ 2009-06-22 15:34 . 2009-06-22 15:34 51200 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ATIODCLI.exe
+ 2012-05-23 02:01 . 2012-05-23 02:01 21504 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atimuixx.dll
+ 2012-05-23 01:05 . 2012-05-23 01:05 56320 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atimpc64.dll
+ 2012-05-23 01:05 . 2012-05-23 01:05 56832 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atimpc32.dll
+ 2012-05-23 01:08 . 2012-05-23 01:08 14848 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiglpxx.dll
+ 2012-05-23 01:08 . 2012-05-23 01:08 33280 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atigktxx.dll
+ 2012-05-23 01:08 . 2012-05-23 01:08 41984 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atig6txx.dll
+ 2012-05-23 01:09 . 2012-05-23 01:09 17920 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atig6pxx.dll
+ 2012-05-23 02:00 . 2012-05-23 02:00 59392 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiedu64.dll
+ 2012-05-23 01:26 . 2012-05-23 01:26 51200 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticalrt64.dll
+ 2012-05-23 01:26 . 2012-05-23 01:26 46080 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticalrt.dll
+ 2012-05-23 01:26 . 2012-05-23 01:26 44544 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticalcl64.dll
+ 2012-05-23 01:26 . 2012-05-23 01:26 44032 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticalcl.dll
+ 2012-05-23 01:06 . 2012-05-23 01:06 53248 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ati2erec.dll
+ 2012-05-23 02:00 . 2012-05-23 02:00 43520 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ati2edxx.dll
+ 2012-05-23 01:15 . 2012-05-23 01:15 77312 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\amdave64.dll
+ 2012-05-23 01:15 . 2012-05-23 01:15 77312 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\amdave32.dll
+ 2012-04-06 02:00 . 2012-04-06 02:00 64000 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\coinst.dll
+ 2012-04-06 01:09 . 2012-04-06 01:09 41984 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiuxpag.dll
+ 2012-04-06 01:09 . 2012-04-06 01:09 54784 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiuxp64.dll
+ 2012-04-06 01:09 . 2012-04-06 01:09 32256 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiu9pag.dll
+ 2012-04-06 01:09 . 2012-04-06 01:09 44544 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiu9p64.dll
+ 2012-04-06 01:16 . 2012-04-06 01:16 72704 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atisamu64.dll
+ 2012-04-06 01:16 . 2012-04-06 01:16 67584 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atisamu32.dll
+ 2009-06-22 15:34 . 2009-06-22 15:34 51200 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ATIODCLI.exe
+ 2012-04-06 02:14 . 2012-04-06 02:14 21504 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atimuixx.dll
+ 2012-04-06 01:06 . 2012-04-06 01:06 54784 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atimpc64.dll
+ 2012-04-06 01:06 . 2012-04-06 01:06 53760 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atimpc32.dll
+ 2012-04-06 01:11 . 2012-04-06 01:11 14848 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiglpxx.dll
+ 2012-04-06 01:10 . 2012-04-06 01:10 33280 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atigktxx.dll
+ 2012-04-06 01:11 . 2012-04-06 01:11 41984 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atig6txx.dll
+ 2012-04-06 01:11 . 2012-04-06 01:11 17408 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atig6pxx.dll
+ 2012-04-06 02:14 . 2012-04-06 02:14 59392 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiedu64.dll
+ 2012-04-06 01:30 . 2012-04-06 01:30 51200 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticalrt64.dll
+ 2012-04-06 01:30 . 2012-04-06 01:30 46080 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticalrt.dll
+ 2012-04-06 01:30 . 2012-04-06 01:30 44544 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticalcl64.dll
+ 2012-04-06 01:30 . 2012-04-06 01:30 44032 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticalcl.dll
+ 2012-04-06 01:09 . 2012-04-06 01:09 53248 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ati2erec.dll
+ 2012-04-06 02:14 . 2012-04-06 02:14 43520 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ati2edxx.dll
+ 2012-04-06 01:17 . 2012-04-06 01:17 71680 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\amdave64.dll
+ 2012-04-06 01:16 . 2012-04-06 01:16 72704 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\amdave32.dll
+ 2011-07-13 12:47 . 2011-04-28 03:54 80384 c:\windows\system32\DriverStore\FileRepository\bth.inf_amd64_neutral_de0494b6391d872c\BTHUSB.SYS
+ 2009-07-14 00:06 . 2009-07-14 00:06 41984 c:\windows\system32\DriverStore\FileRepository\bth.inf_amd64_neutral_de0494b6391d872c\bthenum.sys
+ 2012-05-14 06:12 . 2012-05-14 06:12 96896 c:\windows\system32\DriverStore\FileRepository\atihdw76.inf_amd64_neutral_f9029ffda85051ef\AtihdW76.sys
+ 2012-02-23 12:32 . 2012-02-23 12:32 95760 c:\windows\system32\DriverStore\FileRepository\atihdw76.inf_amd64_neutral_d30a2bac5901760e\AtihdW76.sys
+ 2012-05-10 15:44 . 2012-03-17 07:58 75120 c:\windows\system32\drivers\partmgr.sys
+ 2010-10-25 01:25 . 2012-03-21 00:44 98688 c:\windows\system32\drivers\NisDrvWFP.sys
+ 2012-06-04 06:22 . 2012-03-09 14:57 23816 c:\windows\system32\drivers\cpuz135_x64.sys
+ 2012-05-14 06:12 . 2012-05-14 06:12 96896 c:\windows\system32\drivers\AtihdW76.sys
- 2010-02-21 09:15 . 2012-04-23 07:44 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-02-21 09:15 . 2012-08-23 14:51 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-02-21 09:15 . 2012-08-23 14:51 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-02-21 09:15 . 2012-04-23 07:44 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-23 14:51 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-04-23 07:44 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-08-15 13:11 . 2012-07-04 22:13 59392 c:\windows\system32\browcli.dll
+ 2012-08-15 13:11 . 2012-02-11 06:36 67072 c:\windows\splwow64.exe
- 2011-05-17 13:32 . 2010-11-20 13:25 67072 c:\windows\splwow64.exe
+ 2009-07-14 04:46 . 2012-08-23 05:26 94000 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2011-12-15 18:01 . 2011-12-15 18:01 68880 c:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 68880 c:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 57616 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 57616 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2012-04-12 07:08 . 2012-04-12 07:08 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{EF2586BE-6016-DBED-06AB-569B429893A1}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{ECA16F5B-C5FD-2021-09B1-CA7CB49FDF46}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{E56685FB-BC75-3BC4-526A-15FD1278F174}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{E3AA13F6-F494-D77F-C678-B8E6F8B66448}\ARPPRODUCTICON.exe
+ 2012-08-19 19:20 . 2012-08-19 19:20 10134 c:\windows\Installer\{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{E100AC00-5097-16FE-E007-3D5156FC2B93}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{C9115BBB-C00B-481A-FD6A-C2BCDC88D6A1}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{C1C7818F-8270-BA45-D317-675187B9E33E}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{AD59DD0E-E36C-9FF1-2F22-ADFA10A43D61}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{AB0670D8-C462-750A-D34D-F18D38C0D64E}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{A6CF1995-854B-0B57-BF9D-AD665C52493C}\ARPPRODUCTICON.exe
- 2011-12-15 08:06 . 2011-12-15 08:06 49936 c:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
+ 2012-08-16 07:01 . 2012-08-16 07:01 49936 c:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
+ 2012-08-19 19:22 . 2012-08-19 19:22 88102 c:\windows\Installer\{943A7AF0-C019-0CFB-BA79-F063E7980B25}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{91C3236F-645F-52FD-6A83-A4CE5EE8028D}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{90DCE328-65D6-0CC0-14FF-A86D6EC57035}\ARPPRODUCTICON.exe
+ 2012-08-19 19:20 . 2012-08-19 19:20 88102 c:\windows\Installer\{9090E44B-CFBA-47D4-2225-3037C539E7E9}\ARPPRODUCTICON.exe
- 2011-12-15 08:06 . 2011-12-15 08:06 35600 c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
+ 2012-08-16 07:01 . 2012-08-16 07:01 35600 c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
+ 2012-06-22 21:21 . 2012-06-22 21:21 88102 c:\windows\Installer\{8DDDD1B7-CB3E-3270-6EC0-581C7C7CAE68}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-22 21:21 . 2012-06-22 21:21 88102 c:\windows\Installer\{8DDDD1B7-CB3E-3270-6EC0-581C7C7CAE68}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-22 21:21 . 2012-06-22 21:21 88102 c:\windows\Installer\{8DDDD1B7-CB3E-3270-6EC0-581C7C7CAE68}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-22 21:21 . 2012-06-22 21:21 88102 c:\windows\Installer\{8DDDD1B7-CB3E-3270-6EC0-581C7C7CAE68}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- 2010-06-04 02:16 . 2012-02-16 08:01 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-06-04 02:16 . 2012-05-10 21:23 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{855E0BF8-5448-9681-B36E-B84029D355E4}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{82892947-1311-D6CA-8B79-2753E398FE32}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{78887CA0-E5F1-3C99-B120-95310B217AB8}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{725B5F90-BD27-A74D-7685-48795904FCF3}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{7106B820-2071-2B46-7817-5F6ADD1FA112}\ARPPRODUCTICON.exe
+ 2012-08-19 19:22 . 2012-08-19 19:22 88102 c:\windows\Installer\{6DB97EF8-603B-FB96-9B56-6F0D23E14263}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{5EEA2FBB-1AAF-56D0-C2E5-580ACEA4DED5}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{59FB1BE3-155C-72B1-B5F6-B086DEB7D064}\ARPPRODUCTICON.exe
+ 2012-06-17 02:52 . 2012-06-17 02:52 88102 c:\windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-17 02:52 . 2012-06-17 02:52 88102 c:\windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-17 02:52 . 2012-06-17 02:52 88102 c:\windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-06-17 02:52 . 2012-06-17 02:52 88102 c:\windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
+ 2012-08-19 19:23 . 2012-08-19 19:23 10134 c:\windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe
+ 2012-08-19 19:12 . 2012-08-19 19:12 88102 c:\windows\Installer\{3BCD05CE-8CDE-9503-8794-D8CDB9FA8562}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{3A090DC5-ADF9-6B83-1095-017754BEC3D0}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{3993DBF6-32F6-488B-9009-E156075AF7B7}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{3857A262-3B88-127A-96DB-5317B0F9B78C}\ARPPRODUCTICON.exe
+ 2012-06-17 02:57 . 2012-06-17 02:57 88102 c:\windows\Installer\{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{0CE6E094-B07B-CC6B-F7FD-9D7BD7BE0D86}\ARPPRODUCTICON.exe
+ 2012-08-19 19:21 . 2012-08-19 19:21 88102 c:\windows\Installer\{089E65D5-D06A-FE49-8D9C-9CABDF8858F5}\ARPPRODUCTICON.exe
+ 2012-05-10 05:39 . 2012-05-10 05:39 66936 c:\windows\dlinfo_0.drv
+ 2012-05-10 05:37 . 2012-05-10 05:37 86528 c:\windows\bnetunin.exe
+ 2012-05-10 21:49 . 2012-05-10 21:49 10240 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7fa267d10b2df6dbd00d00d130715f0a\System.Xml.Serialization.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 43520 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Pres#\054fce9466c6cef615b2f7cc9ff4e7f8\System.Windows.Presentation.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 86016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\ff78ec1b5bf38a8fb74c2d4f41bb308a\System.Web.ApplicationServices.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 97792 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\e144d0028365c62178eb0662911ac910\System.AddIn.Contract.ni.dll
+ 2012-05-10 21:41 . 2012-05-10 21:41 14336 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\93295f3771dc9e5be2d49d5f5d76a7a6\Microsoft.VisualC.ni.dll
+ 2012-05-10 21:34 . 2012-05-10 21:34 10752 c:\windows\assembly\NativeImages_v4.0.30319_64\dfsvc\5ea625ce2d6c08687f70cb81a003a28b\dfsvc.ni.exe
+ 2012-05-10 21:34 . 2012-05-10 21:34 58368 c:\windows\assembly\NativeImages_v4.0.30319_64\Accessibility\061cbee19075e086d675a9e1f65725d7\Accessibility.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 96768 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\05787d96761cf20b76b927ace10ef1d3\UIAutomationProvider.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 35328 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\f3a9c6e87bfa4bab3689ec1cdb56964f\System.Windows.Presentation.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 71680 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\9b418f37f4594806e1f4b0ed6d083a95\System.Web.ApplicationServices.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 82432 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\d09c237ee72af3935f1a01388ef8e315\System.ServiceModel.Channels.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 78848 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\59be5fb54e018032511415f0b0523ee3\System.AddIn.Contract.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 11776 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\46f273930666397a8cb538ffe9190eef\Microsoft.VisualC.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 44544 c:\windows\assembly\NativeImages_v4.0.30319_32\Accessibility\62c1a496dff99a6e5f5e4278d31ca4c1\Accessibility.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 60416 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\fb4bc14964a1d415bdbe55b62ce73a52\System.Windows.Presentation.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\eef76dd965ea0a8ae5fb0c734d84389c\System.Web.DynamicData.Design.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\acd8bdefdcae0ce7c27b5ec016ef865c\System.Web.DynamicData.Design.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 72192 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\78f495970511b726a0ca7b8119360e25\PresentationFontCache.ni.exe
+ 2012-05-10 21:59 . 2012-05-10 21:59 61952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\1a359e9b908a2565c546a8ca04b241c2\PresentationCFFRasterizer.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 33792 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\9d57c4bbbc0b3243046fc7839da71b00\Microsoft.WSMan.Runtime.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 43520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\d6578432220dbabf2b15027681327bf8\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 40448 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\66deb65a87750efddf62d1e0c0655352\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 36864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4b6402dc918e41b8de8c501f29833d91\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 45056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\28545d2b6a0aaef4aa168f9808603bc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 70144 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\1d8a17a2c1416a8ad4d6ad2a28b4c5fd\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 59904 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\0abc7256549c204f39af7dcc52c9e5d5\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-05-10 21:56 . 2012-05-10 21:56 32256 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\3c3a6cce983114e7406e0a6e6116ecd8\Microsoft.VisualC.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 65536 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\6ab0575bf49b60fd4b697d47e1754072\Microsoft.MediaCenter.iTv.Hosting.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 40960 c:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\1569a004b1f41193818e3b3777f2c73d\LoadMxf.ni.exe
+ 2012-05-11 00:23 . 2012-05-11 00:23 49664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\3ee98e8b2084e27d65953bbd7e362bf8\ehiUPnP.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 93184 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\1cd9f92749d29b9fd61fcb1c4ae84294\ehiTVMSMusic.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 28672 c:\windows\assembly\NativeImages_v2.0.50727_64\dfsvc\0811f67973c32efb2bfad62a4a2592b5\dfsvc.ni.exe
+ 2012-05-10 21:58 . 2012-05-10 21:58 78848 c:\windows\assembly\NativeImages_v2.0.50727_64\Accessibility\ae9311dcb0e713330a2a86b04cf361dc\Accessibility.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 47616 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\b2854071ec4656c370d884ca390e462f\WindowsLiveWriter.ni.exe
+ 2012-06-14 07:52 . 2012-06-14 07:52 99840 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e64203688b7bb9596f2c9be84884e87f\WindowsLive.Writer.Api.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\ca2eff60beb3ba00a529a2d42dceca22\UIAutomationProvider.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\66d750f3f8dde0cc865f921497ab3545\System.Windows.Presentation.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2b97ccae44726f13c418f1406180c3e8\System.Web.DynamicData.Design.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\543b0e12423bcec010bdd2ac27c5dc04\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\f34410ab8e82063735d876533db26c49\System.AddIn.Contract.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\d24744f15243e28ea541a459ff7ff5d5\PresentationFontCache.ni.exe
+ 2012-05-10 22:04 . 2012-05-10 22:04 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\5a9d0ff936810991cedd098fe006a9be\PresentationCFFRasterizer.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\87a30ba337ed55d0905f19742e2985bc\napcrypt.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\9f2e8e0df9ff39ad21088f1d66cfadb1\Microsoft.WSMan.Runtime.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\d797123d55bb7b823120d0a7ffbbc2a7\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\cb8ad29814d9e5589bd400d38e7a0b10\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\cb42a0f25b7608b2675080081b03f6e5\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c6e9143be5afb36345875d56b61c444f\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\91767cf3facefe10e00734c815e925ad\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\66cd99d2f576cde047074e98bd5e1848\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 86528 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\4308e1bdc640e1c3f1ea966e84e48900\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\06fcf2fbbe38d9425fc49d935498ec93\Microsoft.Vsa.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 15872 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\55c57057dc81a5e8c5bde3a230f0bcb9\Microsoft.VisualC.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e3ef400b1f37e4d3b79a42a8a602ea02\Microsoft.Build.Framework.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\2095344bf8c40f8baa94ba53a993fb4c\Microsoft.Build.Framework.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\dc93539af5a961641a26ada75f730136\ehiUserXp.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\53d03b0e238c77cf7e5ac88e02aecd2c\dfsvc.ni.exe
+ 2012-05-10 22:04 . 2012-05-10 22:04 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\2ec98ab0193d64e95b7d09d094deed97\Accessibility.ni.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2009-07-14 00:19 . 2009-07-14 01:07 2048 c:\windows\SysWOW64\msxml3r.dll
+ 2012-07-11 00:34 . 2010-06-26 03:24 2048 c:\windows\SysWOW64\msxml3r.dll
+ 2011-09-12 22:06 . 2011-09-12 22:06 3917 c:\windows\SysWOW64\atipblag.dat
- 2012-03-14 08:16 . 2012-01-25 06:33 9216 c:\windows\system32\rdrmemptylst.exe
+ 2012-06-13 23:55 . 2012-04-26 05:34 9216 c:\windows\system32\rdrmemptylst.exe
+ 2012-07-14 23:30 . 2012-07-14 23:30 9560 c:\windows\system32\NetworkList\Icons\{39436811-DBE6-4109-B3F0-8B0FD3237A64}_48.bin
+ 2012-07-14 23:30 . 2012-07-14 23:30 4280 c:\windows\system32\NetworkList\Icons\{39436811-DBE6-4109-B3F0-8B0FD3237A64}_32.bin
+ 2012-07-14 23:30 . 2012-07-14 23:30 2456 c:\windows\system32\NetworkList\Icons\{39436811-DBE6-4109-B3F0-8B0FD3237A64}_24.bin
+ 2012-07-11 00:34 . 2010-06-26 03:55 2048 c:\windows\system32\msxml3r.dll
- 2009-07-14 00:41 . 2009-07-14 01:30 2048 c:\windows\system32\msxml3r.dll
+ 2011-09-12 22:06 . 2011-09-12 22:06 3917 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atipblag.dat
+ 2011-09-12 22:06 . 2011-09-12 22:06 3917 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atipblag.dat
+ 2011-09-12 22:06 . 2011-09-12 22:06 3917 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atipblag.dat
+ 2011-09-12 22:06 . 2011-09-12 22:06 3917 c:\windows\system32\atipblag.dat
- 2012-04-23 10:53 . 2012-04-23 10:53 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-24 00:58 . 2012-08-24 00:58 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-24 00:58 . 2012-08-24 00:58 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-04-23 10:53 . 2012-04-23 10:53 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-19 19:20 . 2012-08-19 19:20 4846 c:\windows\Installer\{D10B35A6-786F-2879-DC2F-EBBD735E51B8}\ARPPRODUCTICON.exe
+ 2012-05-11 00:20 . 2012-05-11 00:20 9216 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\4b540b784465ca3f0742990e5af444e3\System.Xml.Serialization.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 9728 c:\windows\assembly\NativeImages_v4.0.30319_32\dfsvc\fd866b4158c3bd2a26c875f2896c5573\dfsvc.ni.exe
+ 2012-08-15 13:11 . 2012-02-11 05:43 492032 c:\windows\SysWOW64\win32spl.dll
- 2011-05-17 13:32 . 2010-11-20 12:21 492032 c:\windows\SysWOW64\win32spl.dll
- 2012-04-12 07:04 . 2012-02-28 01:09 231936 c:\windows\SysWOW64\url.dll
+ 2012-08-15 14:49 . 2012-06-29 00:07 231936 c:\windows\SysWOW64\url.dll
+ 2012-01-23 17:29 . 2012-01-23 17:29 122880 c:\windows\SysWOW64\SlotMaximizerAg.dll
- 2012-01-11 06:56 . 2011-10-26 04:32 514560 c:\windows\SysWOW64\qdvd.dll
+ 2012-06-24 10:48 . 2012-05-04 09:59 514560 c:\windows\SysWOW64\qdvd.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 773968 c:\windows\SysWOW64\msvcr100.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 421200 c:\windows\SysWOW64\msvcp100.dll
+ 2012-08-15 00:55 . 2012-08-15 00:55 686792 c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_271_ActiveX.exe
+ 2012-08-15 00:55 . 2012-08-15 00:55 466632 c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_271_ActiveX.dll
+ 2012-03-28 04:28 . 2012-08-15 00:55 250056 c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
+ 2012-08-15 14:49 . 2012-06-29 00:04 717824 c:\windows\SysWOW64\jscript.dll
+ 2012-07-02 22:42 . 2012-07-02 22:42 157448 c:\windows\SysWOW64\javaws.exe
+ 2012-07-02 22:42 . 2012-07-02 22:42 149256 c:\windows\SysWOW64\javaw.exe
+ 2012-07-02 22:42 . 2012-07-02 22:42 149256 c:\windows\SysWOW64\java.exe
- 2011-11-29 16:49 . 2011-11-29 16:49 142848 c:\windows\SysWOW64\ieUnatt.exe
+ 2012-08-15 14:49 . 2012-06-29 00:04 142848 c:\windows\SysWOW64\ieUnatt.exe
- 2012-04-12 07:04 . 2012-02-28 00:59 176640 c:\windows\SysWOW64\ieui.dll
+ 2012-08-15 14:49 . 2012-06-28 23:57 176640 c:\windows\SysWOW64\ieui.dll
+ 2012-06-13 23:54 . 2012-04-24 04:36 140288 c:\windows\SysWOW64\cryptsvc.dll
+ 2012-06-13 23:54 . 2012-04-24 04:36 103936 c:\windows\SysWOW64\cryptnet.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 138056 c:\windows\SysWOW64\atl100.dll
+ 2012-04-06 01:29 . 2012-04-06 01:29 204952 c:\windows\SysWOW64\ativvsvl.dat
+ 2012-04-06 01:29 . 2012-04-06 01:29 157144 c:\windows\SysWOW64\ativvsva.dat
+ 2012-08-15 13:11 . 2012-02-11 06:43 751104 c:\windows\system32\win32spl.dll
- 2011-05-17 13:32 . 2010-11-20 13:27 751104 c:\windows\system32\win32spl.dll
+ 2012-08-15 14:49 . 2012-06-29 03:47 237056 c:\windows\system32\url.dll
- 2012-04-12 07:04 . 2012-02-28 06:48 237056 c:\windows\system32\url.dll
+ 2012-08-15 13:11 . 2012-05-05 08:36 503808 c:\windows\system32\srcore.dll
+ 2012-08-15 13:11 . 2012-02-11 06:36 559104 c:\windows\system32\spoolsv.exe
- 2011-05-17 13:32 . 2010-11-20 13:25 559104 c:\windows\system32\spoolsv.exe
+ 2009-07-14 01:19 . 2009-07-14 01:40 151552 c:\windows\system32\spool\drivers\x64\3\EP0NO000.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 128000 c:\windows\system32\spool\drivers\x64\3\EP0NLMUI.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 606720 c:\windows\system32\spool\drivers\x64\3\EP0NH44L.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:27 686592 c:\windows\system32\spool\drivers\x64\3\EP0NGR00.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 737280 c:\windows\system32\spool\drivers\x64\3\EP0NDW00.DLL
+ 2012-01-23 17:15 . 2012-01-23 17:15 122880 c:\windows\system32\SlotMaximizerAg.dll
+ 2012-06-13 23:55 . 2012-04-26 05:41 149504 c:\windows\system32\rdpcorekmts.dll
- 2012-03-14 08:16 . 2012-01-25 06:38 149504 c:\windows\system32\rdpcorekmts.dll
- 2012-01-11 06:56 . 2011-10-26 05:25 366592 c:\windows\system32\qdvd.dll
+ 2012-06-24 10:48 . 2012-05-04 11:00 366592 c:\windows\system32\qdvd.dll
- 2011-05-17 13:32 . 2010-11-20 13:27 209920 c:\windows\system32\profsvc.dll
+ 2012-06-13 23:55 . 2012-05-01 05:40 209920 c:\windows\system32\profsvc.dll
+ 2009-07-14 02:36 . 2012-07-15 16:51 638672 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-07-15 16:51 111752 c:\windows\system32\perfc009.dat
+ 2011-01-07 19:02 . 2011-01-07 19:02 827728 c:\windows\system32\msvcr100.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 608080 c:\windows\system32\msvcp100.dll
+ 2012-08-15 00:55 . 2012-08-15 00:55 417992 c:\windows\system32\Macromed\Flash\FlashUtil64_11_3_300_271_ActiveX.exe
+ 2012-08-15 00:55 . 2012-08-15 00:55 513224 c:\windows\system32\Macromed\Flash\FlashUtil64_11_3_300_271_ActiveX.dll
+ 2012-08-15 13:11 . 2012-05-14 05:26 956928 c:\windows\system32\localspl.dll
+ 2012-08-15 14:49 . 2012-06-29 03:44 816640 c:\windows\system32\jscript.dll
+ 2012-08-15 14:49 . 2012-06-29 03:43 173056 c:\windows\system32\ieUnatt.exe
- 2011-11-29 16:49 . 2011-11-29 16:49 173056 c:\windows\system32\ieUnatt.exe
+ 2012-08-15 14:49 . 2012-06-29 03:35 248320 c:\windows\system32\ieui.dll
- 2012-04-12 07:04 . 2012-02-28 06:39 248320 c:\windows\system32\ieui.dll
+ 2009-07-14 04:45 . 2012-08-15 14:56 341224 c:\windows\system32\FNTCACHE.DAT
- 2009-07-14 05:30 . 2012-04-23 07:38 143360 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-08-19 19:20 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-04-23 07:37 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2009-07-14 05:30 . 2012-08-19 19:16 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2012-07-28 01:39 . 2012-07-28 01:39 204952 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ativvsvl.dat
+ 2012-07-28 01:39 . 2012-07-28 01:39 157144 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ativvsva.dat
+ 2012-07-28 01:13 . 2012-07-28 01:13 109568 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiuxpag.dll
+ 2012-07-28 01:13 . 2012-07-28 01:13 129536 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiuxp64.dll
+ 2012-07-28 01:13 . 2012-07-28 01:13 103936 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiu9p64.dll
+ 2012-07-28 02:08 . 2012-07-28 02:08 120320 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atitmm64.dll
+ 2010-08-27 18:33 . 2010-08-27 18:33 332800 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ATIODE.exe
+ 2012-07-28 01:14 . 2012-07-28 01:14 368640 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atikmpag.sys
+ 2012-04-12 19:30 . 2012-04-12 19:30 637743 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiicdxx.dat
+ 2012-07-28 02:09 . 2012-07-28 02:09 239616 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiesrxx.exe
+ 2012-07-28 02:10 . 2012-07-28 02:10 534528 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atieclxx.exe
+ 2012-07-28 02:10 . 2012-07-28 02:10 442368 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\ATIDEMGX.dll
+ 2012-07-28 02:15 . 2012-07-28 02:15 931328 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticfx32.dll
+ 2009-05-11 21:35 . 2009-05-11 21:35 118784 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atibtmon.exe
+ 2012-07-28 02:15 . 2012-07-28 02:15 163840 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiapfxx.exe
+ 2012-07-28 01:15 . 2012-07-28 01:15 368640 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiadlxy.dll
+ 2012-07-28 01:15 . 2012-07-28 01:15 540160 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiadlxx.dll
+ 2012-05-23 01:29 . 2012-05-23 01:29 204952 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ativvsvl.dat
+ 2012-05-23 01:29 . 2012-05-23 01:29 157144 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ativvsva.dat
+ 2012-05-23 02:01 . 2012-05-23 02:01 120320 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atitmm64.dll
+ 2010-08-27 18:33 . 2010-08-27 18:33 332800 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ATIODE.exe
+ 2012-05-23 01:08 . 2012-05-23 01:08 367616 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atikmpag.sys
+ 2012-04-12 19:30 . 2012-04-12 19:30 637743 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiicdxx.dat
+ 2012-05-23 02:02 . 2012-05-23 02:02 239616 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiesrxx.exe
+ 2012-05-23 02:03 . 2012-05-23 02:03 532992 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atieclxx.exe
+ 2012-05-23 02:03 . 2012-05-23 02:03 442368 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\ATIDEMGX.dll
+ 2012-05-23 02:08 . 2012-05-23 02:08 924160 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticfx32.dll
+ 2009-05-11 21:35 . 2009-05-11 21:35 118784 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atibtmon.exe
+ 2012-05-23 02:08 . 2012-05-23 02:08 163840 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiapfxx.exe
+ 2012-05-23 01:09 . 2012-05-23 01:09 368640 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiadlxy.dll
+ 2012-05-23 01:09 . 2012-05-23 01:09 539136 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiadlxx.dll
+ 2012-04-06 01:29 . 2012-04-06 01:29 204952 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ativvsvl.dat
+ 2012-04-06 01:29 . 2012-04-06 01:29 157144 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ativvsva.dat
+ 2012-04-06 02:14 . 2012-04-06 02:14 120320 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atitmm64.dll
+ 2010-08-27 18:33 . 2010-08-27 18:33 332800 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ATIODE.exe
+ 2012-04-06 01:10 . 2012-04-06 01:10 343040 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atikmpag.sys
+ 2012-01-10 21:10 . 2012-01-10 21:10 601728 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiicdxx.dat
+ 2012-04-06 02:16 . 2012-04-06 02:16 236544 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiesrxx.exe
+ 2012-04-06 02:16 . 2012-04-06 02:16 503808 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atieclxx.exe
+ 2012-04-06 02:16 . 2012-04-06 02:16 442368 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\ATIDEMGX.dll
+ 2012-04-06 02:21 . 2012-04-06 02:21 909312 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticfx32.dll
+ 2009-05-11 21:35 . 2009-05-11 21:35 118784 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atibtmon.exe
+ 2012-04-06 02:22 . 2012-04-06 02:22 159744 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiapfxx.exe
+ 2012-04-06 01:11 . 2012-04-06 01:11 360448 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiadlxy.dll
+ 2012-04-06 01:11 . 2012-04-06 01:11 514560 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiadlxx.dll
+ 2011-05-17 13:30 . 2010-11-20 13:24 229376 c:\windows\system32\DriverStore\FileRepository\bth.inf_amd64_neutral_de0494b6391d872c\fsquirt.exe
+ 2012-08-15 14:51 . 2012-07-06 20:07 552960 c:\windows\system32\DriverStore\FileRepository\bth.inf_amd64_neutral_de0494b6391d872c\bthport.sys
+ 2009-07-14 05:31 . 2012-08-15 14:54 399360 c:\windows\system32\DriverStore\drvindex.dat
- 2009-07-14 05:31 . 2011-11-22 17:45 399360 c:\windows\system32\DriverStore\drvindex.dat
- 2012-03-14 08:16 . 2012-02-17 04:58 210944 c:\windows\system32\drivers\rdpwd.sys
+ 2012-06-13 23:54 . 2012-04-28 03:55 210944 c:\windows\system32\drivers\rdpwd.sys
+ 2009-12-02 19:23 . 2012-03-21 00:44 203888 c:\windows\system32\drivers\MpFilter.sys
+ 2012-06-13 23:54 . 2012-04-24 05:37 184320 c:\windows\system32\cryptsvc.dll
+ 2012-06-13 23:54 . 2012-04-24 05:37 140288 c:\windows\system32\cryptnet.dll
+ 2012-08-15 13:11 . 2012-07-04 22:13 136704 c:\windows\system32\browser.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 158536 c:\windows\system32\atl100.dll
+ 2012-04-06 01:29 . 2012-04-06 01:29 204952 c:\windows\system32\ativvsvl.dat
+ 2012-04-06 01:29 . 2012-04-06 01:29 157144 c:\windows\system32\ativvsva.dat
+ 2012-04-12 19:30 . 2012-04-12 19:30 637743 c:\windows\system32\atiicdxx.dat
+ 2012-02-05 07:03 . 2012-08-24 00:45 609224 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2009-07-14 05:01 . 2012-08-24 00:45 308564 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-12-15 18:01 . 2011-12-15 18:01 226600 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationHost_v0400.dll
+ 2012-04-21 15:03 . 2012-04-21 15:03 616024 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.Drawing.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 156440 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.AddIn.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 598784 c:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 598784 c:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll
+ 2012-05-10 15:43 . 2012-02-10 23:29 172320 c:\windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationHostDLL.dll
- 2012-04-11 23:36 . 2012-01-26 23:31 630784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll
+ 2012-06-13 23:53 . 2012-04-23 22:33 630784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 486144 c:\windows\Microsoft.NET\Framework64\v2.0.50727\SOS.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 182056 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationHost_v0400.dll
+ 2012-04-21 15:03 . 2012-04-21 15:03 616024 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Drawing.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 156440 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.AddIn.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 518400 c:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 518400 c:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 957200 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 957200 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 386824 c:\windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 131360 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2012-06-13 23:53 . 2012-04-23 22:35 630784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
- 2012-04-11 23:36 . 2012-01-26 23:33 630784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2012-05-10 15:44 . 2012-01-04 02:51 389888 c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2012-05-10 15:44 . 2012-01-04 02:50 364816 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2012-05-10 15:44 . 2012-01-04 02:50 996624 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 616024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 156440 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn\v4.0_4.0.0.0__b77a5c561934e089\System.AddIn.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2012-07-02 22:42 . 2012-07-02 22:42 207360 c:\windows\Installer\6ce5c.msi
+ 2012-08-09 20:27 . 2012-08-09 20:27 389632 c:\windows\Installer\63e1d.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 920064 c:\windows\Installer\63e18.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 799232 c:\windows\Installer\63e13.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 783360 c:\windows\Installer\63e0e.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 793088 c:\windows\Installer\63e09.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 877056 c:\windows\Installer\63e04.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 773120 c:\windows\Installer\63dff.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 904192 c:\windows\Installer\63dfa.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 785408 c:\windows\Installer\63df5.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 804864 c:\windows\Installer\63df0.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 768512 c:\windows\Installer\63deb.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 774656 c:\windows\Installer\63de6.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 820736 c:\windows\Installer\63de1.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 840192 c:\windows\Installer\63ddc.msi
+ 2012-08-09 20:25 . 2012-08-09 20:25 784896 c:\windows\Installer\63dd7.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 814080 c:\windows\Installer\63dd2.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 796672 c:\windows\Installer\63dcd.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 775680 c:\windows\Installer\63dc8.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 788992 c:\windows\Installer\63dc3.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 728576 c:\windows\Installer\63dbe.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 927744 c:\windows\Installer\63db9.msi
+ 2012-08-09 20:24 . 2012-08-09 20:24 804864 c:\windows\Installer\63db4.msi
+ 2012-08-09 20:23 . 2012-08-09 20:23 779264 c:\windows\Installer\63daf.msi
+ 2012-08-09 20:23 . 2012-08-09 20:23 809472 c:\windows\Installer\63daa.msi
+ 2012-05-04 20:52 . 2012-05-04 20:52 507392 c:\windows\Installer\63d9a.msi
+ 2012-08-09 20:26 . 2012-08-09 20:26 623616 c:\windows\Installer\63b93.msi
+ 2010-04-20 20:48 . 2010-04-20 20:48 168960 c:\windows\Installer\2870493.msi
+ 2011-02-20 03:08 . 2011-02-20 03:08 163840 c:\windows\Installer\27fa0.msi
+ 2012-07-14 23:24 . 2012-07-14 23:24 371272 c:\windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeIcon.exe
+ 2012-04-25 07:01 . 2012-04-25 07:01 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\SCEP.exe
+ 2012-04-25 07:01 . 2012-04-25 07:01 123352 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\MSE.exe
+ 2012-04-25 07:01 . 2012-04-25 07:01 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\INTUNE.exe
+ 2012-04-25 07:01 . 2012-04-25 07:01 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\FEP.exe
+ 2012-04-25 07:01 . 2012-04-25 07:01 109563 c:\windows\Installer\{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}\EPP.exe
+ 2010-03-18 17:16 . 2010-03-18 17:16 181096 c:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_X86.dll
+ 2010-03-18 18:27 . 2010-03-18 18:27 225640 c:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_AMD64.dll
+ 2009-01-19 00:00 . 2009-01-19 00:00 598016 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA7FFFFB7449A0100000010\9.1.0\AXSLE.dll
+ 2012-01-03 07:37 . 2012-01-03 07:37 320456 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA7FFFFB7449A0100000010\9.1.0\adobearmhelper.exe
+ 2012-01-03 07:37 . 2012-01-03 07:37 843712 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA7FFFFB7449A0100000010\9.1.0\adobearm.exe
+ 2012-06-14 07:17 . 2012-06-14 07:17 337408 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\16388554692d4234ba0a74c838a203ce\WindowsFormsIntegration.ni.dll
+ 2012-06-14 07:26 . 2012-06-14 07:26 337408 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\08becdcc9bd647c4e4d07ceea7fe4895\WindowsFormsIntegration.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 231424 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\fb43d84bc59b21e8a7f3e36d616eea90\UIAutomationTypes.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 122368 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\26f12a0a3baed2a227cf30aaeae03913\UIAutomationProvider.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 645120 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClient\1c3c298326e9ac14796516ac1da09a16\UIAutomationClient.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 528896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\307eea660f877dc40ae90882ce554757\System.Xml.Linq.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 256000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\b4afa252d0f0e27b0b5e8fcb2cc5b3a7\System.Windows.Input.Manipulations.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 903168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\8c0ee7b970cc4e8c2986c7898af71661\System.Transactions.ni.dll
+ 2012-06-14 07:26 . 2012-06-14 07:26 281088 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\ca5505a49a075ee7ad2535f89d9ea992\System.ServiceProcess.ni.dll
+ 2012-06-14 07:16 . 2012-06-14 07:16 281088 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\84cf60f1e403f10f44055b3d319aa79c\System.ServiceProcess.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 108032 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\eb4fb369926faaffede7aaf317fd6532\System.ServiceModel.Channels.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 517120 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\e5ab3c37897bb578bdbfe6b7e0558ad8\System.ServiceModel.Routing.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 946688 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Security\e48b6a8c491a96d1bc601795532af605\System.Security.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 376832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\7590828d50338d512b11a4d3f87d69a2\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 987648 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\21d5b44ef01ccfa69e79674a51707de0\System.Runtime.Remoting.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 176640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Numerics\5f2bfb0585061dc256ee9587d430959f\System.Numerics.ni.dll
+ 2012-05-10 21:48 . 2012-05-10 21:48 933376 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Net\6996a415485a84fef2d2556b0462336f\System.Net.ni.dll
+ 2012-06-14 07:16 . 2012-06-14 07:16 781824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\5f4314268d576f7c0052b9008a6830d9\System.Messaging.ni.dll
+ 2012-06-14 07:26 . 2012-06-14 07:26 781824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\0d8257087be3e57b071d1d5ccd705c2f\System.Messaging.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 521728 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\92d266f677605e5475b7f39c063c4a9d\System.Management.Instrumentation.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 531456 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\07a0e1efc063042be3e8faf62b413a12\System.IO.Log.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 290816 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\7fd39b9a208214e6e5eba4e9396409f1\System.IdentityModel.Selectors.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 348672 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\8e10d4f2a408dc5a9740f8d0df5cebac\System.EnterpriseServices.Wrapper.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 512000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\521f5bccf74318a4777597b0c01fda1e\System.Dynamic.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 632832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\6a8bd7d373c988a585e90bb61c5ec8cc\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 141824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Device\78dd02d104bb15bc3820c06bd2876239\System.Device.ni.dll
+ 2012-05-10 21:46 . 2012-05-10 21:46 176128 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\97d1aaf3733b107ecdbecb9d21050ff4\System.Data.DataSetExtensions.ni.dll
+ 2012-06-14 07:16 . 2012-06-14 07:16 181760 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuratio#\52792a7ce63196551c29f5201562c1ae\System.Configuration.Install.ni.dll
+ 2012-05-10 21:46 . 2012-05-10 21:46 255488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\a4f91f2dfd1656ef2e42917963f6bf50\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 871936 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\b1c67ee2e0e6e78c31985069fbc82596\System.AddIn.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 560640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\c69fb0f955adc7ca80cd5f2fd730edea\System.Activities.DurableInstancing.ni.dll
+ 2012-05-10 21:34 . 2012-05-10 21:34 432128 c:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\11fc863fa4f5092fca4f2ce25a9ac361\SMSvcHost.ni.exe
+ 2012-05-10 21:43 . 2012-05-10 21:43 185344 c:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\50e8e826488639e549589ba34666933e\SMDiagnostics.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 428032 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\722c0236432dd5ccc047481d3ebbd49e\PresentationFramework.Royale.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 622592 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\6739c3715c9e38dbdfbfd57b424a3094\PresentationFramework.Aero.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 802304 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\3e7359f5f0fb68565314f88f6ec2d67a\PresentationFramework.Luna.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 349184 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\263748f3d18955b9e467710da1e8546f\PresentationFramework.Classic.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 289280 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\bd41686106b4e8a91545ae7695196829\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-06-14 07:23 . 2012-06-14 07:23 289280 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\88618d3ecf29f3fdeb504a7e8128d109\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 600064 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\6480551111832c83ee88bcf756a72533\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-10 21:34 . 2012-05-10 21:34 279552 c:\windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\0e81a3996f7cbff23fc01bea4185a918\CustomMarshalers.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 253952 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\44752ffa92ebb7170951a41898d8b9c6\WindowsFormsIntegration.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 196096 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\0a80fd3af7e48eb9cc9099fee5814dff\UIAutomationTypes.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 484352 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\7a9f70fa774076a7ec19bc03e7064d0d\UIAutomationClient.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 393216 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\4837a5c6204d53e7aa4f7dd94b98207c\System.Xml.Linq.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 189440 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\c477bbff1e4662263255a1bf17bd9c2a\System.Windows.Input.Manipulations.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 649728 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\67a386434938003bceb0752e979dabb3\System.Transactions.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 221696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\5552b27237c3dbe4f21a10e97adf2edc\System.ServiceProcess.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 369664 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\dc86fe1c7a6e3a7ce9e9c1f13d9b1e8e\System.ServiceModel.Routing.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 736768 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Security\5a3beae8b211b91bfc620c029cf4c2d4\System.Security.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 311296 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\5a4d233916a69d48fa12a9f7f103d893\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 762880 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\65f0d70169a0e73b45307dddbd86f92b\System.Runtime.Remoting.ni.dll
+ 2012-05-10 21:31 . 2012-05-10 21:31 145408 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\7b7719d46a4da2e91e8c501347e48ab9\System.Numerics.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 657408 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Net\dd25ddcfa0417d40e3f1385e30abcd6f\System.Net.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 626176 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\a730931e386537e3c229e049c9a6d271\System.Messaging.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 395264 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\08397796343d5730a29f42e61c7f6ee7\System.Management.Instrumentation.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 413696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\ff1250d2409bd16283c423650d6fd3f6\System.IO.Log.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 229888 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\e60675d3ba7fa94924489dc8466ebff5\System.IdentityModel.Selectors.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 236032 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\bb40644f323a93fa9bc09be350918ef3\System.EnterpriseServices.Wrapper.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 787456 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\bb40644f323a93fa9bc09be350918ef3\System.EnterpriseServices.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 377856 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Dynamic\a9b1e597aaa263dea2cf8754440bd271\System.Dynamic.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 470528 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\e41e86da56bb60523251e0e08210a77b\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 913920 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\94d45f7f28d81304d7fa83bcea849141\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 112640 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Device\4c50d8a951546d6dffdc8bcb23f47a7b\System.Device.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 134656 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\7803f4398a527a87d5cace8023e93e8b\System.Data.DataSetExtensions.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 982528 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\623d2a0f11dd82bb9bc13d1cb981b239\System.Configuration.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 148480 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\c7d60a49e43964b1ae17e9a080376c6d\System.Configuration.Install.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 693760 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\877ef74350e6d374ca8f80b489a8cc8e\System.ComponentModel.Composition.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\4330e93f9d0ef85f1a972e11c2ac5156\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 624128 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\0c67d9fc14856eb7d8b4e405aef79960\System.AddIn.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 411136 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\2b046f2d5f056b906d7b25b75ca23575\System.Activities.DurableInstancing.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 317952 c:\windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\4847f66153121ec4ed532909f7c152be\SMSvcHost.ni.exe
+ 2012-05-11 00:17 . 2012-05-11 00:17 143360 c:\windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\bb97517e4ca64e02282fca24612ce8ad\SMDiagnostics.ni.dll
+ 2012-05-10 21:37 . 2012-05-10 21:37 309760 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\ef6e3eb351fe12a5766be7c956c35d95\PresentationFramework.Classic.ni.dll
+ 2012-05-10 21:37 . 2012-05-10 21:37 387072 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e49a124fdad0f1db135f03a49f18fb48\PresentationFramework.Royale.ni.dll
+ 2012-05-10 21:37 . 2012-05-10 21:37 595968 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\a5fa2a1cfc6e9fdc39d9a8f2baa57bc9\PresentationFramework.Aero.ni.dll
+ 2012-05-10 21:37 . 2012-05-10 21:37 755712 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\141f0a8fbfb83604fa3dd43dbe8fa0f4\PresentationFramework.Luna.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 219136 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\cb90e8f4f8a6b23eb9f56c7e2e866bcf\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 418816 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\01c5ff7a1ea0463414736df5d449e0a9\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\f11d5fea7ded12068e8cdb8b2f1bdbd9\CustomMarshalers.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 468992 c:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\ad7f43afb4f124acae4d503b40f591c1\WsatConfig.ni.exe
+ 2012-06-14 07:51 . 2012-06-14 07:51 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\f4d304fcbfda323997083a1f88b83719\WindowsFormsIntegration.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\cefe28fde401a6a5718d1718c345fb37\WindowsFormsIntegration.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 253952 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\bf634b0e2e28466c6ed6ae1eb602b09f\UIAutomationTypes.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\1ff8fb81d6f045f1dc6f50be95444292\UIAutomationProvider.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 653312 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\1f36e020c3563e0ff414f13138e238e1\UIAutomationClient.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 304128

c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\769b7666d915de95db5b63ec22bf3e42\TaskScheduler.ni.dll
+ 2012-06-14 07:51 . 2012-06-14 07:51 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\681410f842337dccc72eb059738c3ced\TaskScheduler.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 529920 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\de45d043775d8c805f6feca40d7a9ed2\System.Xml.Linq.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\72b4992e45d232251a273a59eb3333d5\System.Web.Routing.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\181702fb83901c085401957c6f731cf4\System.Web.Routing.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 261120 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.RegularE#\76662ce36d2141e45513e64386073cc2\System.Web.RegularExpressions.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\b905eb57b631a30c60caa4d68c186963\System.Web.Entity.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\9b9d3e3e44dc7d03bb96033a5b829a6b\System.Web.Entity.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\e412dfbf1aa49bbe345a02a4d23104f5\System.Web.Entity.Design.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\ad2339c5f0fd9aa8a9989800825da487\System.Web.Entity.Design.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\8309dc5dd39b93f3e105a4d455b74a00\System.Web.DynamicData.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\815769f953ebe3f84439d522c97317b8\System.Web.DynamicData.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\c8144ee08dccdac183527e53c86aa901\System.Web.Abstractions.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\a79640760b61cc1c23ac3cfdfa6f0f3f\System.Web.Abstractions.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 921600 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Transactions\ec95ad2463c5588fc8ef552b3f375ee6\System.Transactions.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 295424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f71d2f65d0f149c75ac7a569dbcc8500\System.ServiceProcess.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 295424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\05acafa7eb44049849a5aafd39147ee5\System.ServiceProcess.ni.dll
+ 2012-05-10 21:57 . 2012-05-10 21:57 928768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Security\1875b50d0228f29aef00bed38ab594d6\System.Security.ni.dll
+ 2012-05-10 21:59 . 2012-05-10 21:59 396288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\807759890a40e4047c35a24e64dc76d5\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 916480 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\3b3581851a728bef36f319e9d4c72499\System.Net.ni.dll
+ 2012-06-14 07:47 . 2012-06-14 07:47 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\d5d612f7d372f500e3062e3814e79d75\System.Messaging.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\b4297ef47e0839fce0145f665349dcc9\System.Messaging.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 534016 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\599954438a668c94dd38e8e7e506ac2a\System.Management.Instrumentation.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 569856 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\fd51741bfd973ad507bbd141e98932f8\System.IO.Log.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 294400 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\ef6abe121bb11bff2514bfdfb7e76b7a\System.IdentityModel.Selectors.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 446464 c:\windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\d50cde53634ccbb5e0231738784ff4b8\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 288768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\fbc02e9f5a14bb93082ebc88bc577413\System.Drawing.Design.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 288768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\e7abd70c16a5e638a7121fc5f68484cc\System.Drawing.Design.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 649728 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\4bb1134d9b166434327385ddf3c5dd54\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 629760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\7c4ce1b8a2f83ef29aa6d5f126ab5b71\System.Data.Services.Design.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 194560 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\19d1414f1ca718ce4d0c07e7305b3450\System.Data.DataSetExtensions.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 192000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuratio#\a88ca70ab9641b8236149bc5dd8d1564\System.Configuration.Install.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 192000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuratio#\4aebed13b5309398cd809454cafe472f\System.Configuration.Install.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 132096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\9536bb262c4f1ea389d287ab669767d4\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-10 22:06 . 2012-05-10 22:06 890880 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\84262138e2e9f34c88fd282caa82baa5\System.AddIn.ni.dll
+ 2012-05-10 22:06 . 2012-05-10 22:06 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\176899be7b920fb20408ff49e636a776\System.AddIn.Contract.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 297984 c:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\ee0608cd62dfb37016016884fc39e425\sysglobl.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 525824 c:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\9fa1abf006689e262527ae50d452e97e\SMSvcHost.ni.exe
+ 2012-05-11 00:22 . 2012-05-11 00:22 349184 c:\windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\2eac9c598de3341eba5c16787c74f220\SMDiagnostics.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 282624 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\89de197bdde5984658045ade41c2c9b9\PresentationFramework.Classic.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 620544 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\7ffb91db770d0b09921f623bc5d68b4f\PresentationFramework.Luna.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 463360 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\4f3567165e2a444fc9a62980c4d0ea82\PresentationFramework.Aero.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 317440 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\205bb33cef9ae6b906ceadd6f2861c86\PresentationFramework.Royale.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\bc8a2d99d8ebd29f94905072ccf4b3b8\napsnap.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\2f1bad2fb963482a02443d5e7fece2b6\napsnap.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\bb4947f0ecc925a7bcfd129b6eec8f9b\napinit.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\b79da521cf602154b475ea740cc7fd3b\napinit.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 175104 c:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\5f0ae15f9d1cade37fbfaacff7e64bff\naphlpr.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 127488 c:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\5346ceca518baf5e5fa3fed9f900f792\napcrypt.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 184320 c:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\8f792883d0adad8c7beccf24aed65817\MSBuild.ni.exe
+ 2012-05-11 00:24 . 2012-05-11 00:24 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\926d20041c179cebc6f4398155b1b2c4\MMCFxCommon.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\67240ddde494b9cc05cd732ccd099668\MMCFxCommon.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 681984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\b78beede8a3c9720095dde4a4a162acc\Microsoft.WSMan.Management.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 122368 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\83222514e209f186ad3a1c3794168bfd\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 105984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\a843956bb452503139683304de4cc8f6\Microsoft.Vsa.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 584192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\c56d6513e4b239b1b1dbe29b0588321a\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 713216 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fb0d102ca78bd05fe7064b9e6be30fc7\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 237056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\b21fa6ff448b99a97319e18c166c03e2\Microsoft.PowerShell.Security.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 999936 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6c3fe42a14ac5b48ebd43be290973d24\Microsoft.PowerShell.GraphicalHost.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 416768 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\2572e94f9d0b412cdc529c8d74fdb689\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f4faec8b6d3e2c327c68070963ec1750\Microsoft.MediaCenter.ITVVM.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 164864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f04ccbbf5199d2b264f1b1175be44686\Microsoft.MediaCenter.Mheg.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 219648 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f015188310f7613f819fcf032f98705a\Microsoft.MediaCenter.iTv.Media.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e29cbd30a31d3c8dae19eb17f70c4ec4\Microsoft.MediaCenter.iTv.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c5f4ab28f67d5bf0cc221ef81e7f6966\Microsoft.MediaCenter.iTv.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 370176 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\6dbd502a13b5e3caae0b1f2b4847612f\Microsoft.MediaCenter.Playback.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 522240 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\514667153fd74307d21e7f50b79858c9\Microsoft.MediaCenter.Interop.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\409dae089f2e041343cff71f822cd505\Microsoft.MediaCenter.ITVVM.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 965632 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\18367b9a0b9e9261d1d9e371230af87c\Microsoft.MediaCenter.Sports.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\803188573fb19785a94284e097c48a67\Microsoft.ManagementConsole.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\718cd5a598ed3e225a73b2aba7bcc1e1\Microsoft.ManagementConsole.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 244736 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\d68a27daca73749e4438a47e61643c3c\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 198656 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\3151235c1c38db94fd44e3c6f290ff38\Microsoft.Build.Utilities.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 121344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\cf5e9b5d10682467a9e03358a6d6258f\Microsoft.Build.Framework.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 142336 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0f233d0eb396065719e83ab573a72cc5\Microsoft.Build.Framework.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 294912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\2416af06edb993f98a751acb69f67016\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-06-14 07:13 . 2012-06-14 07:13 107008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\2e54c0c284ab2337d24b5f5d26f457e1\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 380928 c:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\74e4adc90675c3b1365825c7e78b5ce9\Mcx2Dvcs.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 547328 c:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\4a1f9a648a3928d42b77a91666d9aa8a\mcupdate.ni.exe
+ 2012-05-11 00:23 . 2012-05-11 00:23 533504 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\40d70417c04f9ccb5fdecb5b9be5a6a3\mcstoredb.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\927ada02b440d95fdf36a37ee96aaa54\mcplayerinterop.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\4ae6ccc32dafb4e3765b9db05585bd48\mcplayerinterop.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\b0db345fd62a84c98fd8b0bf3c72e8bb\mcGlidHostObj.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\35023ad5cb299ca2020bd660f5dba2fc\mcGlidHostObj.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\3fc113fe40d0145cd87afca2d107bf6d\MCESidebarCtrl.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\bc5df15ee827e248dd6f819874a85718\EventViewer.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\0bd8d37bc6f648d092e1d8034609a107\EventViewer.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 969216 c:\windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\584d419d4c837ea19f7f450a807b0273\ehRecObj.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 661504 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\20c3505378a50f4859c9b2e7dcbb5fa2\ehiWUapi.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 933888 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\2f9f48ad6496c9103043db1c21a651fd\ehiwmp.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 145408 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\0955237aa3c1cb3a643248b8c58ec34c\ehiUserXp.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 196096 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\7998173654fa518876cc97e37b86d465\ehiiTv.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 397824 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\6c97aa6908f96ac9816ce74e4f6251ac\ehiExtens.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 110080 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\a501747a95523297a8a1f119df8b1642\ehiBmlDataCarousel.ni.dll
+ 2012-06-14 07:13 . 2012-06-14 07:13 125440 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\880c8b97f2b065a3bbe27b7c37581d17\ehiActivScp.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\24d3859bba3ed02775f22c50ae5ab5a6\ehExtHost.ni.exe
+ 2012-06-14 07:47 . 2012-06-14 07:47 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\08c9aa18b306aa47ddc0ae4a63b05d04\ehExtHost.ni.exe
+ 2012-05-11 00:22 . 2012-05-11 00:22 313856 c:\windows\assembly\NativeImages_v2.0.50727_64\ehCIR\ff7ef4caed03d6934669d1a39877a8ac\ehCIR.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 348672 c:\windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\b7916689137fd0bc9ba1ba5a27e2a38a\CustomMarshalers.ni.dll
+ 2012-05-11 00:21 . 2012-05-11 00:21 640000 c:\windows\assembly\NativeImages_v2.0.50727_64\ComSvcConfig\cc6e6febcd804604bf4d92d0eb8ec6ae\ComSvcConfig.ni.exe
+ 2012-05-11 00:21 . 2012-05-11 00:21 971264 c:\windows\assembly\NativeImages_v2.0.50727_64\BDATunePIA\d18719c2df1334364cac199bb9c86adf\BDATunePIA.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 321024 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\9d60139fdead64a892985181d663989f\WsatConfig.ni.exe
+ 2012-06-14 07:52 . 2012-06-14 07:52 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\df0359a76d328cac78d2eb8187dedc29\WindowsLiveLocal.WriterPlugin.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 851968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\f2b8292f10120babf7e0bef15500757d\WindowsLive.Writer.BlogClient.ni.dll
+ 2012-05-10 22:52 . 2012-05-10 22:52 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\dbbb5914ff727ce0f6793177c4da31ba\WindowsLive.Writer.Interop.SHDocVw.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 108544 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\d8ef9a917c6ae2af0629ec779879bd8e\WindowsLive.Writer.Passport.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\cca051320b90ccdff24499d39b3f95df\WindowsLive.Writer.FileDestinations.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 319488 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\91eaa4412030c5f993ae12cee84c8be9\WindowsLive.Writer.Interop.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 843776 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8cbb193835d1c56734d4e1ce810bdb07\WindowsLive.Writer.Controls.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 594944 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7d5b1cab9a5bd55b13e9edf36c53a5c5\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\760dd39014baf3be47ced54f99465d7a\WindowsLive.Writer.SpellChecker.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\6d2e8a42e5eb6dcb8c5ea9a7c883b3d9\WindowsLive.Writer.Instrumentation.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 118784 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49f36717a3e8d62dba630434d8e93f5d\WindowsLive.Writer.Extensibility.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 428032 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49615853d101d2904b8949988fa05de8\WindowsLive.Writer.Localization.ni.dll
+ 2012-05-10 22:52 . 2012-05-10 22:52 152064 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\2d682c7c8f1a3d806989d2149f79d625\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-05-10 22:52 . 2012-05-10 22:52 334848 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\233d02a1f648e60c273df807d0240b43\WindowsLive.Writer.Interop.Mshtml.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\1099eeb1f6f9792d80dea9ac5243d491\WindowsLive.Writer.BrowserControl.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 258560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\01d1ef447119fc58961adff850921e35\WindowsLive.Writer.Mshtml.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 145920 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\66da5ccbc8ef08451164bfba524d88b4\WindowsLive.Client.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\f2f8201dd3453250dfd9ed1afce630a0\WindowsFormsIntegration.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\d8af9a65cf0ed85d47360796e2645a06\UIAutomationTypes.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\779b08c46960a1824503aa6f089673fa\UIAutomationClient.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 245248 c:\windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\f3e052584df9c614407da662dd3c3df3\TaskScheduler.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\64de6810023adccdc56ddae13bdd6b03\System.Xml.Linq.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\06e4119a0a3484bb0ca667a16145ce74\System.Web.Routing.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\2b129372a27469195acbe3b6b81786ef\System.Web.RegularExpressions.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 860160 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\4f13c2c06fb97f6659473f02802b377b\System.Web.Extensions.Design.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\bc239944bca7cc6b6ddb473259183c7d\System.Web.Entity.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 301568 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\3701488fb9e601ebe963db25b784d684\System.Web.Entity.Design.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\a09cc9877f51f16a4610b702155e8b70\System.Web.DynamicData.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\c6aad1edcc51862ceb26b6b65dad1490\System.Web.Abstractions.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 627200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\80fae9f16f80075535e72458ef293f7a\System.Transactions.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\69ca4a43ba14b66689715ad62aed70e6\System.ServiceProcess.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 680448 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\054fcff18035c210487b0888e6461192\System.Security.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 310784 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ff4e90c5842525f7a7456639de090d8\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 771584 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\03dee80574f4ec770b6f77ca030ded6c\System.Runtime.Remoting.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\0b5f082230e3486412e0fa333290e85a\System.Net.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\2b4d6976393bf5643a4ef2d8dffdf75b\System.Messaging.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\8280490a2939075b726fd051d9010cc0\System.Management.Instrumentation.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\a03191ed937f6c1dc827b53d94ea0176\System.IO.Log.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\100d39c2f8985cb93e26feef86ba5212\System.IdentityModel.Selectors.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 280064 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\168755d010e5a96ac940b0ddd27616a4\System.EnterpriseServices.Wrapper.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 628224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\168755d010e5a96ac940b0ddd27616a4\System.EnterpriseServices.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\912a0776c2bfd35ff76bd0b8ba977ed4\System.Drawing.Design.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\55545e89f96539ef93375524d1145a6f\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 888320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\4d73a7649876bb6e54a01ccbf235919b\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 462336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\e36e03067b12bc35fcc3787dc81022c8\System.Data.Services.Design.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 763392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\5a29fff52e2c3d13ec15e8701027ab17\System.Data.Entity.Design.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\940f62a5d077405e0b324422afb6ff2c\System.Data.DataSetExtensions.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 971264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\498d2033c60fe5b777cf923b71b25972\System.Configuration.Install.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 634368 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\a90ec436f1d2c5cb0133a53c2e47d61a\System.AddIn.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 232448 c:\windows\assembly\NativeImages_v2.0.50727_32\sysglobl\1ed79278fe139272e868e3a53d736f22\sysglobl.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\1b0b19607668635281fa260707f4352f\SMSvcHost.ni.exe
+ 2012-05-10 22:53 . 2012-05-10 22:53 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\9e7bf69d97febe4ed1a288c787e5d9ca\SMDiagnostics.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 226816 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ae55e761d480fe15781156d1311a1837\PresentationFramework.Classic.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8e56489276063ededde74e597a121df3\PresentationFramework.Aero.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7df1f379457aa5f39183903d115b5479\PresentationFramework.Royale.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\496bc57a53989bb83ec58865fa34be1d\PresentationFramework.Luna.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\acfafa161ea232928cb02b01c50acf1c\napsnap.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\0abec246c5ca6ec4858bfd3ab84da0ec\napinit.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\e0c40329b9cdd7f141a3702d79eb4bda\naphlpr.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\74a8b6419deb005337a1e43ec2502134\MSBuild.ni.exe
+ 2012-06-14 07:53 . 2012-06-14 07:53 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\1e03b7c2539c5376f0665a4aba04efbd\MMCFxCommon.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 531968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\070505350ec9daa3343b3cd2bc8cf59e\Microsoft.WSMan.Management.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\1e639225ba30d7f182b893ddacea506b\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d4c36b363fcd1ca494218e74ba606e99\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 786432 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ba2ca86f5d270f493501848843d2f227\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\607324a312b1c6d7fbede8300e8cee91\Microsoft.PowerShell.GraphicalHost.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\1f1185444c8a12ace85ba4c2d49f41f8\Microsoft.PowerShell.Security.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\12715b7e3e89758161053520b57764b2\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\622b582866fca37f113bd97ae4c6d1f6\Microsoft.ManagementConsole.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\7e59b3b84ca3c61adfc0dc74a65ea177\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\07e346ee0e3f7433f2de7a72fadd6713\Microsoft.Build.Utilities.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\432160eff3b1f9301c6a74c2e647e03d\Microsoft.Build.Engine.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\8297305de86377d0070a983d99a7f943\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\541a5bb4d0f8490e506f885a4b435566\mcstoredb.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\02577b78c6ed2f9bda301de888dccad8\EventViewer.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\5ae5c6732ef8e7115baaeb66fd69cdd2\ehRecObj.ni.dll
+ 2012-06-14 07:17 . 2012-06-14 07:17 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\fbfc09fefc5a4d33f9a009f0157875f0\ehiVidCtl.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\cbf3a07d3ab873b19f47d6a24f06c796\ehiProxy.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\5cc4a5672758f4732ef430b3431f47fc\ehiExtens.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\a6b8eb80cfbdd927b2fa4ecb69fc0209\ehExtHost32.ni.exe
+ 2012-05-10 22:53 . 2012-05-10 22:53 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\626d0ac2f4ada682d7ca6c4ebf821469\CustomMarshalers.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\3912b69593af13d0922279a063e5af66\ComSvcConfig.ni.exe
+ 2012-05-10 22:52 . 2012-05-10 22:52 621568 c:\windows\assembly\NativeImages_v2.0.50727_32\BDATunePIA\e1c3540ffb669448747187f76c6ebe82\BDATunePIA.ni.dll
+ 2012-06-13 23:53 . 2012-04-23 22:35 630784 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2012-04-11 23:36 . 2012-01-26 23:33 630784 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2011-05-17 13:29 . 2010-11-05 01:53 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
+ 2012-05-10 15:44 . 2012-01-04 02:50 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 532480 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2011-05-17 13:33 . 2010-11-05 01:53 532480 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2012-05-10 15:43 . 2012-02-10 23:29 358912 c:\windows\assembly\GAC_64\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2011-05-17 13:32 . 2010-11-05 01:52 358912 c:\windows\assembly\GAC_64\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2011-05-17 13:32 . 2010-11-05 01:53 372736 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 372736 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-08-15 14:49 . 2012-06-29 00:09 1129472 c:\windows\SysWOW64\wininet.dll
+ 2012-08-15 14:49 . 2012-06-29 00:09 1103872 c:\windows\SysWOW64\urlmon.dll
+ 2012-01-23 17:29 . 2012-01-23 17:29 2478592 c:\windows\SysWOW64\SlotMaximizerBe.dll
+ 2012-06-13 23:55 . 2012-05-04 10:03 3913072 c:\windows\SysWOW64\ntoskrnl.exe
- 2012-04-12 07:03 . 2012-03-06 05:59 3913072 c:\windows\SysWOW64\ntoskrnl.exe
+ 2012-06-13 23:55 . 2012-05-04 10:03 3968368 c:\windows\SysWOW64\ntkrnlpa.exe
- 2012-04-12 07:03 . 2012-03-06 05:59 3968368 c:\windows\SysWOW64\ntkrnlpa.exe
+ 2012-06-13 23:54 . 2012-04-07 11:26 2342400 c:\windows\SysWOW64\msi.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 4422992 c:\windows\SysWOW64\mfc100u.dll
+ 2011-06-11 05:58 . 2011-06-11 05:58 4397384 c:\windows\SysWOW64\mfc100.dll
+ 2012-08-15 14:49 . 2012-06-29 00:16 1800704 c:\windows\SysWOW64\jscript9.dll
+ 2012-08-15 14:49 . 2012-06-29 00:01 1793024 c:\windows\SysWOW64\iertutil.dll
+ 2012-08-15 14:48 . 2012-06-29 00:27 9737728 c:\windows\SysWOW64\ieframe.dll
+ 2012-05-10 15:44 . 2012-03-03 05:31 1077248 c:\windows\SysWOW64\DWrite.dll
- 2012-03-14 08:16 . 2012-02-10 05:38 1077248 c:\windows\SysWOW64\DWrite.dll
+ 2012-06-13 23:54 . 2012-04-24 04:36 1158656 c:\windows\SysWOW64\crypt32.dll
+ 2012-04-06 01:34 . 2012-04-06 01:34 1831424 c:\windows\SysWOW64\atiumdmv.dll
+ 2012-08-15 14:49 . 2012-06-29 03:49 1392128 c:\windows\system32\wininet.dll
+ 2012-08-15 13:11 . 2012-07-18 18:15 3148800 c:\windows\system32\win32k.sys
+ 2012-08-15 14:49 . 2012-06-29 03:49 1346048 c:\windows\system32\urlmon.dll
+ 2012-05-10 15:43 . 2012-03-31 05:40 1402880 c:\windows\system32\spool\drivers\x64\3\JNWDRV.dll
- 2009-07-14 00:03 . 2009-07-14 01:41 1402880 c:\windows\system32\spool\drivers\x64\3\JNWDRV.dll
+ 2009-07-14 01:20 . 2009-07-14 01:40 2379776 c:\windows\system32\spool\drivers\x64\3\EP0NUI60.DLL
+ 2009-07-14 01:19 . 2009-07-14 01:40 4642816 c:\windows\system32\spool\drivers\x64\3\EP0NRE8M.DLL
+ 2009-07-14 01:20 . 2009-07-14 01:40 3237376 c:\windows\system32\spool\drivers\x64\3\EP0NOE14.DLL
+ 2012-01-23 17:15 . 2012-01-23 17:15 2478592 c:\windows\system32\SlotMaximizerBe.dll
+ 2012-06-13 23:55 . 2012-05-04 11:06 5559664 c:\windows\system32\ntoskrnl.exe
+ 2012-06-13 23:54 . 2012-04-07 12:31 3216384 c:\windows\system32\msi.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 5523280 c:\windows\system32\mfc100u.dll
+ 2011-01-07 19:02 . 2011-01-07 19:02 5493576 c:\windows\system32\mfc100.dll
+ 2012-08-15 14:49 . 2012-06-29 03:56 2312704 c:\windows\system32\jscript9.dll
+ 2012-08-15 14:49 . 2012-06-29 03:42 2144768 c:\windows\system32\iertutil.dll
+ 2012-05-10 15:44 . 2012-03-03 06:35 1544704 c:\windows\system32\DWrite.dll
+ 2012-07-28 01:32 . 2012-07-28 01:32 4751872 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiumdva.dll
+ 2012-07-28 04:09 . 2012-07-28 04:09 5538984 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiumdag.dll
+ 2012-07-28 01:41 . 2012-07-28 01:41 4266496 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiumd6a.dll
+ 2012-07-28 01:25 . 2012-07-28 01:25 6676480 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atiumd64.dll
+ 2012-07-28 01:51 . 2012-07-28 01:51 7052288 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atidxx64.dll
+ 2012-07-28 02:07 . 2012-07-28 02:07 6430208 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atidxx32.dll
+ 2012-07-28 02:13 . 2012-07-28 02:13 1100288 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticfx64.dll
+ 2012-05-23 01:23 . 2012-05-23 01:23 4729344 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiumdva.dll
+ 2012-05-23 01:28 . 2012-05-23 01:28 5480448 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiumdag.dll
+ 2012-05-23 01:31 . 2012-05-23 01:31 4246528 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiumd6a.dll
+ 2012-05-23 01:19 . 2012-05-23 01:19 6605312 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atiumd64.dll
+ 2012-05-23 01:44 . 2012-05-23 01:44 6914560 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atidxx64.dll
+ 2012-05-23 02:00 . 2012-05-23 02:00 6301184 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atidxx32.dll
+ 2012-05-23 02:06 . 2012-05-23 02:06 1090560 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticfx64.dll
+ 2012-04-06 01:22 . 2012-04-06 01:22 4795904 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumdva.dll
+ 2012-04-06 01:34 . 2012-04-06 01:34 1831424 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumdmv.dll
+ 2012-04-06 01:34 . 2012-04-06 01:34 6203392 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumdag.dll
+ 2012-04-06 01:35 . 2012-04-06 01:35 1120768 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumd6v.dll
+ 2012-04-06 01:34 . 2012-04-06 01:34 4731904 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumd6a.dll
+ 2012-04-06 01:23 . 2012-04-06 01:23 7431680 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atiumd64.dll
+ 2012-04-06 01:54 . 2012-04-06 01:54 7479296 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atidxx64.dll
+ 2012-04-06 02:13 . 2012-04-06 02:13 6800896 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atidxx32.dll
+ 2012-04-06 02:20 . 2012-04-06 02:20 1067520 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticfx64.dll
+ 2012-05-10 15:43 . 2012-03-30 11:35 1918320 c:\windows\system32\drivers\tcpip.sys
+ 2012-06-13 23:54 . 2012-04-24 05:37 1462272 c:\windows\system32\crypt32.dll
+ 2012-04-06 01:35 . 2012-04-06 01:35 1120768 c:\windows\system32\atiumd6v.dll
- 2009-07-14 04:45 . 2012-04-12 11:30 7113171 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45 . 2012-08-15 14:59 7113171 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2011-12-03 14:39 . 2012-08-24 00:45 9666740 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-402035426-1599880845-4127718658-1001-8192.dat
+ 2011-12-11 23:43 . 2012-08-24 00:45 4439932 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-402035426-1599880845-4127718658-1001-12288.dat
+ 2012-01-19 17:08 . 2012-01-19 17:08 1369872 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WindowsBase.dll
+ 2012-01-19 17:08 . 2012-01-19 17:08 6429992 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationFramework.dll
+ 2012-01-19 17:52 . 2012-01-19 17:52 3825952 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationCore.dll
+ 2012-03-15 17:17 . 2012-03-15 17:17 5029672 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.Windows.Forms.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 3512072 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 3512072 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 4970768 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorlib.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 4970768 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorlib.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 1455376 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordbi.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 1455376 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordbi.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 1515792 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 1515792 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 1512712 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
+ 2011-12-15 18:01 . 2011-12-15 18:01 9793280 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
- 2011-11-22 04:57 . 2011-11-22 04:57 9793280 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
+ 2012-05-10 15:43 . 2012-02-10 23:29 2256152 c:\windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll
+ 2012-06-13 23:55 . 2012-03-21 22:30 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll
- 2011-11-22 21:22 . 2011-03-29 22:32 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 3190784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.dll
- 2012-02-14 23:32 . 2011-10-31 23:15 3190784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.dll
+ 2012-06-13 23:55 . 2012-03-21 22:30 4927488 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll
- 2011-05-17 13:29 . 2010-11-05 01:56 4927488 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 9992464 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 4567040 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll
- 2011-11-22 21:22 . 2011-07-08 22:31 4567040 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 1577232 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 1756432 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscordacwks.dll
+ 2012-01-19 17:08 . 2012-01-19 17:08 1369872 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsBase.dll
+ 2012-01-19 17:08 . 2012-01-19 17:08 6429992 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationFramework.dll
+ 2012-01-19 17:08 . 2012-01-19 17:08 3790112 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationCore.dll
+ 2012-03-15 17:17 . 2012-03-15 17:17 5029672 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Windows.Forms.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 3512072 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 3512072 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 5201168 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorlib.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 5201168 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorlib.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 1143568 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordacwks.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 1143568 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordacwks.dll
+ 2011-12-15 17:08 . 2011-12-15 17:08 6727424 c:\windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
- 2011-11-22 03:31 . 2011-11-22 03:31 6727424 c:\windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 1737496 c:\windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll
- 2011-11-22 21:22 . 2011-03-29 22:33 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2012-06-13 23:55 . 2012-03-21 22:32 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2012-05-10 15:44 . 2012-01-04 02:51 3190784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2012-02-14 23:32 . 2011-10-31 23:16 3190784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2011-05-17 13:29 . 2010-11-05 01:58 4927488 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2012-06-13 23:55 . 2012-03-21 22:32 4927488 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2012-05-10 15:44 . 2012-01-04 02:51 5925136 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2012-05-10 15:44 . 2012-01-04 02:50 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
- 2011-11-22 21:22 . 2011-07-08 22:33 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1369872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 5029672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 6429992 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 3825952 c:\windows\Microsoft.NET\assembly\GAC_64\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 3790112 c:\windows\Microsoft.NET\assembly\GAC_32\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-06-14 07:18 . 2012-06-14 07:18 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-04-12 07:08 . 2012-04-12 07:08 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-06-14 07:19 . 2012-06-14 07:19 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-04-23 02:46 . 2012-04-23 02:46 1187328 c:\windows\Installer\8d72dff.msp
+ 2012-03-15 18:26 . 2012-03-15 18:26 4212736 c:\windows\Installer\8d72df7.msp
+ 2011-06-29 01:27 . 2011-06-29 01:27 4028928 c:\windows\Installer\720c943.msp
+ 2012-03-26 23:21 . 2012-03-26 23:21 7622656 c:\windows\Installer\70d545e.msi
+ 2012-08-09 20:33 . 2012-08-09 20:33 1802240 c:\windows\Installer\63e31.msi
+ 2012-08-09 20:28 . 2012-08-09 20:28 1885696 c:\windows\Installer\63da5.msi
+ 2012-08-09 20:28 . 2012-08-09 20:28 2811392 c:\windows\Installer\63da0.msi
+ 2012-08-09 20:33 . 2012-08-09 20:33 8312832 c:\windows\Installer\63b99.msi
+ 2012-06-26 22:03 . 2012-06-26 22:03 3875840 c:\windows\Installer\3739322.msp
+ 2012-04-26 15:03 . 2012-04-26 15:03 2363392 c:\windows\Installer\28707b5.msi
+ 2012-08-21 02:57 . 2012-08-21 02:57 1606656 c:\windows\Installer\273bf3a.msi
+ 2012-07-31 16:18 . 2012-07-31 16:18 5018624 c:\windows\Installer\206e2.msp
+ 2012-04-05 02:38 . 2012-04-05 02:38 2831360 c:\windows\Installer\1e16e70c.msp
+ 2012-04-05 02:38 . 2012-04-05 02:38 3620864 c:\windows\Installer\1e16e69e.msp
+ 2012-04-29 01:43 . 2012-04-29 01:43 8459264 c:\windows\Installer\1e16e676.msp
+ 2011-01-08 00:05 . 2011-01-08 00:05 4583936 c:\windows\Installer\10500ecb.msp
+ 2011-08-17 14:49 . 2011-08-17 14:49 4683624 c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6612\WRD12CNV.DLL
+ 2011-07-07 07:58 . 2011-07-07 07:58 1616240 c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6612\OGL.DLL
+ 2012-05-10 21:41 . 2012-05-10 21:41 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\e41f5739292f4771c64a55940369efd2\WindowsBase.ni.dll
+ 2012-06-14 07:23 . 2012-06-14 07:23 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\e286701acf74012d3aa4a21953f03b6b\WindowsBase.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 1430016 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClients#\6ee9d76d9f1e618cd6fb94b13355bcc9\UIAutomationClientsideProviders.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 7037952 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml\28ca4f076264ab07f1d00a6c9623dc49\System.Xml.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 2449408 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\df013cbfec0defc7e9997cdaa90b89bc\System.Xaml.ni.dll
+ 2012-06-14 07:26 . 2012-06-14 07:26 5645824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Form#\950f64ba9fb22ca06c5b2b9cf6f5f4b4\System.Windows.Forms.DataVisualization.ni.dll
+ 2012-06-14 07:17 . 2012-06-14 07:17 5645824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Form#\45461dd5eeff35a78d0182def45b21f7\System.Windows.Forms.DataVisualization.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 2236416 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\bc6df78c506c89659ab7be738179b2ba\System.Web.Services.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 2735616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Speech\cd7c3aed4408c3554c30a8f0236b90e1\System.Speech.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 1918976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\94289b88c5b494f572cd7114fa995487\System.ServiceModel.Activities.ni.dll
+ 2012-05-10 21:49 . 2012-05-10 21:49 1579008 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\2dbc7aabd92cc0d470acb455c498d919\System.ServiceModel.Discovery.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 3412992 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\affb28e2d9cc3c19de0758e7e8c68e8f\System.Runtime.Serialization.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 1348096 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\b37e6f4b1d742031f328504eb99d0f6c\System.Runtime.DurableInstancing.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 1467392 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Printing\d2de16284459454472a6875185c64d08\System.Printing.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 1467392 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Printing\682ea473b36fc9043d982c4f5a667568\System.Printing.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 1470464 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management\b83f2453b4538b2e80fe09cfd94dce00\System.Management.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 1416192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\60bf6251873ef465abcebeb9a24b7932\System.IdentityModel.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 1098752 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\8e10d4f2a408dc5a9740f8d0df5cebac\System.EnterpriseServices.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 2303488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\dadeee26c90fecbf3196eba10dc077b4\System.Drawing.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 2305024 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\1225ef41527a975de83f22328d0a3b93\System.Drawing.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 1217024 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\a68116468a194678fd04167067134712\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 1622528 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\3a737af86a6a819af97a6d1a04c0e944\System.DirectoryServices.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 2403328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\ad9ff5d55f7ea22e80c39e0ff0240984\System.Deployment.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 2403328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\8fce722dc334f83b7695e7f64a629986\System.Deployment.ni.dll
+ 2012-05-10 21:44 . 2012-05-10 21:44 8601600 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data\0ec8effb7b9d03ae69d37922813bc880\System.Data.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 3390976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.SqlXml\0eb72df497fad5c273ff16f88b0fb950\System.Data.SqlXml.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 1799168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\536e12016ad3adc78e0708b77e6b9219\System.Data.Services.Client.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 3386368 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Linq\86553c1d7f3e66c17fc3e0274de7a2de\System.Data.Linq.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 1257472 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\6aea67f24827961ce1d48356715389d8\System.Configuration.ni.dll
+ 2012-05-10 21:46 . 2012-05-10 21:46 1007616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\eac19ca5a18a6d08cd247e68b618ba68\System.ComponentModel.Composition.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 5695488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities\3869077874ba987242c791b3a18b2f8b\System.Activities.ni.dll
+ 2012-06-14 07:26 . 2012-06-14 07:26 5048832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\707f90689caf41ad429bf3ad373503cb\System.Activities.Presentation.ni.dll
+ 2012-06-14 07:16 . 2012-06-14 07:16 5048832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\201c37951ad7baf71b37fa3c55097e58\System.Activities.Presentation.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 2064896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.C#\96083298999a677341c98fc2bf01b248\System.Activities.Core.Presentation.ni.dll
+ 2012-05-10 21:45 . 2012-05-10 21:45 4233216 c:\windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\fe1704ff12348776e6b70dd4a2c69163\ReachFramework.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 4233216 c:\windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\16c9569b75a9f47c38b60ba733936e1a\ReachFramework.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 2056704 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\9c3d6b3ddef66cac069b6ab1fec514f8\PresentationUI.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 2056704 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\32bece98175466e5a63d120d96e33269\PresentationUI.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 1838080 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\b455b3f0fc3f58bdc2b3daf5cc0a04dc\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-06-14 07:22 . 2012-06-14 07:22 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\70e2694fe050bd480b9f61f935ca2da5\Microsoft.VisualBasic.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\44f8907ea08f9c7ff390b17a925a98fd\Microsoft.VisualBasic.ni.dll
+ 2012-06-14 07:22 . 2012-06-14 07:22 1838080 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\4435d0313c51c0e2d022384e24f7e280\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-05-10 21:41 . 2012-05-10 21:41 1623040 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\16425c121db8083cbaa51f619c9e51e7\Microsoft.VisualBasic.Activities.Compiler.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 1526784 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\5284682fcf04815a86233bcaf696da66\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-10 21:48 . 2012-05-10 21:48 3313664 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.JScript\4b1d24a96b3882f9e77445e48a7c59ee\Microsoft.JScript.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 2009600 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.CSharp\1ff62486cdefbfc2dab41b686a9aa4e2\Microsoft.CSharp.ni.dll
+ 2012-06-14 07:20 . 2012-06-14 07:20 3858432 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\21f37f9f5162af7efb52169012bd111e\WindowsBase.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 1063424 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClients#\24ed0e1df6a605cdb2088f87ae2ab8ff\UIAutomationClientsideProviders.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 9091584 c:\windows\assembly\NativeImages_v4.0.30319_32\System\6f9f0467e8b2dd3f69b015c8e30ac945\System.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 5617664 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\d1f299160424bad90fe9f658661389e2\System.Xml.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 1782272 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\d234eceae699d070b5a5712ce776c01f\System.Xaml.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 4587008 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\7f0476e4df01ca2219f7db531408e91c\System.Windows.Forms.DataVisualization.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 1885696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Services\b37cc0aa41e7feaba9f290da4da91d71\System.Web.Services.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 2012160 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Speech\f368c85283c4e6c9650dd1c8d369dcc5\System.Speech.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 1140736 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\ec057796972ce41b751eaa3a8306fbcb\System.ServiceModel.Discovery.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 1393152 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\5055b60e339143bbace5871f5fe4b114\System.ServiceModel.Activities.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 2647040 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\8a9fac9cb825b5d2db0bdb867fff940e\System.Runtime.Serialization.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 1021952 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\79ac99fe5274fb82ffcff2c15f71854c\System.Runtime.DurableInstancing.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 1060864 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Printing\f87f8bc0bc9563096150f23f6c220e7b\System.Printing.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 1218560 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management\0c2b0d52156447592f33edf4116b7e7d\System.Management.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 1072640 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\bd28f26b18b8ffeee1a0fbaa98f5810e\System.IdentityModel.ni.dll
+ 2012-06-14 07:20 . 2012-06-14 07:20 1666048 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\8c40f40ef36622109793788049fbe9ab\System.Drawing.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 1172992 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\0fe1e56d17858b6156a3a46330f75f27\System.DirectoryServices.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 1880064 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\e899cda47704280f54949c69b78c55cc\System.Deployment.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 6815232 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data\99d0f7ba920eea1117e45dcd9fec0eb5\System.Data.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 2550272 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.SqlXml\fdb98c6d783fe167c1dc0022f27b7cd6\System.Data.SqlXml.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 1343488 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\b894a1df3e6d58ada8f1aa303465ca23\System.Data.Services.Client.ni.dll
+ 2012-05-10 21:33 . 2012-05-10 21:33 2517504 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\82c0c56ff8259e1440cfd0d5727a26d8\System.Data.Linq.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 7069184 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\ed91b57205429a23bb91f4499059a459\System.Core.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 4129280 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities\51025a1c89f6fd752a5396a059d608b2\System.Activities.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 3757568 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\36299fad6b7b591cfb6bd9e50dbd33df\System.Activities.Presentation.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 1546752 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\66893548d2b2cad29cabf3b3578f356f\System.Activities.Core.Presentation.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 2906624 c:\windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\442af6f7c8b447bdec3ad8d23da89c5a\ReachFramework.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 1641984 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\cf455da9b8fedf66767c1a7ab3eea9c9\PresentationUI.ni.dll
+ 2012-05-11 00:17 . 2012-05-11 00:17 1172480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\42a7f127f3fda82fb12c6a6e144d08c1\Microsoft.VisualBasic.Activities.Compiler.ni.dll
+ 2012-06-14 07:28 . 2012-06-14 07:28 1136640 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\40e4b755f030a61f0b2e729258fc6d2a\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-06-14 07:27 . 2012-06-14 07:27 1838080 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\09c2f8f606e09d85cfe6e0ad89fbe729\Microsoft.VisualBasic.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 1085952 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\9a37f4e64ce5b856ac3892fef064c7de\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 2452480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.JScript\cfcc92c125ddfaabad24abe61cfc0471\Microsoft.JScript.ni.dll
+ 2012-05-10 21:32 . 2012-05-10 21:32 1616896 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.CSharp\9912b6d76c1017b5af6ef24730f550ca\Microsoft.CSharp.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 4962816 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\4bcc5a6e9e9d25e068fc304bd7eda6af\WindowsBase.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 1459712 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\783df1ee260d3df406fa80afa38502d4\UIAutomationClientsideProviders.ni.dll
+ 2012-05-10 21:57 . 2012-05-10 21:57 6948864 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml\24d1b7ccbedaa3602bae6a6acea9929e\System.Xml.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\b7d8410b7226a2654823657f0a714441\System.WorkflowServices.ni.dll
+ 2012-06-14 07:51 . 2012-06-14 07:51 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\70cc5e8a5a3372fe0b104c1b20392cd2\System.WorkflowServices.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 2711040 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\aa638ba79250284eb4af4adaa4a4117b\System.Workflow.Runtime.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 2711040 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\8ac687b7f43937c81f1c49d14975c740\System.Workflow.Runtime.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\996dc2af3b9e5c111130935f298908c6\System.Workflow.ComponentModel.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\6fdec1a3278d87cbbc5211736d446d32\System.Workflow.ComponentModel.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\178797db84abae2eeaed835bd28ca52c\System.Workflow.Activities.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\052fd2c15eb37e00cecf33f6d13d9b09\System.Workflow.Activities.ni.dll
+ 2012-06-14 07:43 . 2012-06-14 07:43 2292224 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\a32734087cd0db5607d5744ca63235d7\System.Web.Services.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 2292224 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\6a0b589c4c1467f6b783991842a0f961\System.Web.Services.ni.dll
+ 2012-06-14 07:51 . 2012-06-14 07:51 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\af7689e8cbec5d2755497be23c30e293\System.Web.Mobile.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\395c96f5d2a876805d3846d396081c79\System.Web.Mobile.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\e4860ce9959b3593834516b4a6a75593\System.Web.Extensions.Design.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\baa7ed93207641c186f79f82ee22aea0\System.Web.Extensions.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\768ea257d75839979b4efb2d49d653f6\System.Web.Extensions.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\2c47bc5d426a7cf9ffef1425eda08184\System.Web.Extensions.Design.ni.dll
+ 2012-05-11 00:29 . 2012-05-11 00:29 2727936 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Speech\ca51f026916139f886519fdf6d6c73e9\System.Speech.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 2312704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\56ee9b5f220583c1c7374a61ad904044\System.ServiceModel.Web.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 3073536 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\265531568722647aab229a2cec195b3d\System.Runtime.Serialization.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 1022976 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\2a02b172fa4cf3d93ce7388b67b2a199\System.Runtime.Remoting.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 1463808 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\f0bcd188487600cb07ce08dfd7b471ba\System.Printing.ni.dll
+ 2012-06-14 07:43 . 2012-06-14 07:43 1463808 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\b964519964d302b4977e1380d8d15f1a\System.Printing.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 1472000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management\fd4a8227569e64d657b80483da8ffe78\System.Management.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 1444352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\d1f21a29e79e73b5401fae156f339f67\System.IdentityModel.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 1081344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\d50cde53634ccbb5e0231738784ff4b8\System.EnterpriseServices.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 2317312 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\92c038385ee5b9840e941f9c84b988df\System.Drawing.ni.dll
+ 2012-06-14 07:41 . 2012-06-14 07:41 2318848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\222eb8aa336953a6b0216db2b0c4770d\System.Drawing.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 1230848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\39d16229a3d5c6e7c1594ef10758bf75\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 1640448 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\152ef61928f1c300fdad8fa6d5905880\System.DirectoryServices.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 2444288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\7c7024b309424dfaf8abae617f669fa0\System.Deployment.ni.dll
+ 2012-06-14 07:40 . 2012-06-14 07:40 2444288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\6e4e9b07f376d445df1718c0011fa99b\System.Deployment.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 8681472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data\ea1848ec07c70f3d3c3445f4fbdae87a\System.Data.ni.dll
+ 2012-05-10 21:57 . 2012-05-10 21:57 3463680 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.SqlXml\7f6f74f1cc0ea6c40a2d6707b12af818\System.Data.SqlXml.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 2805760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\0679fe5f3f9164f499e50cdade962ba3\System.Data.Services.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 1868288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\2e9de1acfb7974cad94b747442ca325f\System.Data.Services.Client.ni.dll
+ 2012-05-10 22:02 . 2012-05-10 22:02 1506816 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.OracleC#\97429a1c70c94c49850be3f944a32a2e\System.Data.OracleClient.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 3480576 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\2ec3d436b861d35c586b710a570e170d\System.Data.Linq.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 1080320 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\b7b5364bc524988f7ca5b8c20a24119d\System.Data.Entity.Design.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 3315200 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Core\766ce7ee1a2e4f2a85fd90e7572f5d53\System.Core.ni.dll
+ 2012-05-10 21:56 . 2012-05-10 21:56 1308160 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\193d03ca60573c92f92d9b07fa5bc243\System.Configuration.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 3116032 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\d6379f3503f00cf1c2bb4f6118efdbd9\ReachFramework.ni.dll
+ 2012-06-14 07:43 . 2012-06-14 07:43 3116032 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\1f88a3693c8ddd527a130aff49dc58b3\ReachFramework.ni.dll
+ 2012-06-14 07:43 . 2012-06-14 07:43 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\b91c32fab08ba62d8c7681cc596895be\PresentationUI.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\5fa575ebe76aab9d9fd07ce601c0d2e1\PresentationUI.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 1884160 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\4fbff79b8ebf082d08c0080923ff5036\PresentationBuildTasks.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\d0c041e321cf4d752d5113a0cdbccbaa\Narrator.ni.exe
+ 2012-06-14 07:50 . 2012-06-14 07:50 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\ac1ba76ed19d668ce53a74593f040453\Narrator.ni.exe
+ 2012-06-14 07:50 . 2012-06-14 07:50 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\df2557ab1b8e4389d846e13dc82eba57\MMCEx.ni.dll
+ 2012-05-11 00:27 . 2012-05-11 00:27 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\051b72a48f2c3f7ddd7353c7d5479b10\MMCEx.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\c79bf402b4840e3b0021f75cf467f82b\MIGUIControls.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\61812970c4743b686a67f28687e1dcb6\MIGUIControls.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\70b3f55017e9ddb67ce0f3c983eb6f37\Microsoft.VisualBasic.ni.dll
+ 2012-06-14 07:50 . 2012-06-14 07:50 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\1586ee919f86130df9771cf9b8d95d3a\Microsoft.VisualBasic.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 1598976 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\28ba52bc122353647f1b547506e2df7c\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 1131008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f5790625975320b1ffad63b476da9132\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f29b31b09b826a27cced362030561d00\Microsoft.PowerShell.Editor.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 2176512 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\d0328b4733d1a99d342a84928e319d4f\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ca7e936eed0de2436d87b2601ee3a20a\Microsoft.PowerShell.Editor.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\99049fd20c2a5e2779e879c2d95c96a2\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 2176512 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6caa366471176a065a96d77e8ba01eeb\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3040e2de07177c0a6a66a49de61fdc59\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 1516544 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\efdc3b97b3c9d01dd00959970d086937\Microsoft.MediaCenter.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 1170432 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c057be8bb6614cce013af3721fe34983\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll
+ 2012-06-14 07:47 . 2012-06-14 07:47 1516544 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\b2afc0af3d89ae00e973b4e6e9db382c\Microsoft.MediaCenter.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\73bfbdccdc1b0ae87f70a0ec594fee3c\Microsoft.MediaCenter.Bml.ni.dll
+ 2012-06-14 07:47 . 2012-06-14 07:47 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\653e1ee01f10d658d52ca42e17e74283\Microsoft.MediaCenter.UI.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5c50dfc78bd40be7ca0d850c781671e4\Microsoft.MediaCenter.UI.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\31fb31c16a37080687f869db6b443adf\Microsoft.MediaCenter.Bml.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 1142784 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\260d83ee2128a3388051cf416d4450b0\Microsoft.MediaCenter.Shell.ni.dll
+ 2012-05-11 00:26 . 2012-05-11 00:26 3213312 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\094f6a515ca31504f96b4bad5848d692\Microsoft.JScript.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\dac69844e6333484159a4cf544190906\Microsoft.Ink.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\a27890dd120635ba590a6fc9d9014197\Microsoft.Ink.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\588a688a0b71a211247d8e18b05d61e4\Microsoft.Build.Tasks.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4eeee4447f5045df9b4157d38d267de9\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4b362e9e25c33e371f06403edec8849a\Microsoft.Build.Tasks.ni.dll
+ 2012-06-14 07:49 . 2012-06-14 07:49 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\33730d136a34d2f4e56a0322f49ee9b6\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 1137152 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\f1a0df6a86ceb708c5e50338f12b77ba\Microsoft.Build.Engine.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 2544640 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\6b727c7aa69ae3e04a869908bfbae696\Microsoft.Build.Engine.ni.dll
+ 2012-06-14 07:47 . 2012-06-14 07:47 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\cc4844e7242c1e35d145bf2439f944c5\mcstore.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\208e6937e39f8f516536ba5f23e79687\mcstore.ni.dll
+ 2012-05-11 00:23 . 2012-05-11 00:23 4088320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcepg\596902addad034f4df2caf291b12d61d\mcepg.ni.dll
+ 2012-06-14 07:13 . 2012-06-14 07:13 2165248 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\dcabda0d241272e0e2f08eacbd15e0b1\ehiVidCtl.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 1201664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\0423915e377ec85d71ac216fafa77ab0\ehiProxy.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 1105408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b711e4f9c27aab65278296a924e29ee6\WindowsLive.Writer.ApplicationFramework.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 2002432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\579e9f2d0d25b50996964b4976002535\WindowsLive.Writer.CoreServices.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 6394368 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\15957be56fa7f94a83dd1b1d61341c71\WindowsLive.Writer.PostEditor.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 3347968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\46fce56db7685a586d3eeb7c373e3c1c\WindowsBase.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 1047552 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\3b452cde57280624e1085699fe8beb03\UIAutomationClientsideProviders.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 7967232 c:\windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 5452800 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 1358336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\e3e5aa45736b95804bf6bb7eca08a57b\System.WorkflowServices.ni.dll
+ 2012-06-14 07:47 . 2012-06-14 07:47 1917952 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\88bfc62ac0195a8ae673c444a3339505\System.Workflow.Runtime.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 4516352 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\cfb739be21092d5b8f7b4fde529e6aaa\System.Workflow.ComponentModel.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 2994688 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\a815fffab98375c1919df68b5b292725\System.Workflow.Activities.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\761fd1afc17f11bf6d49c3a7d16465ca\System.Web.Services.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 2209792 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\4a90802e36dee6e10d9bf54832cbf549\System.Web.Mobile.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 2404352 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\c45efc7ec92c1da8e67eb597559ec39c\System.Web.Extensions.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 1917952 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\83053c3eeb3255672d84c1ddc0ce8ef3\System.Speech.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 1707008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\ed560b26f2f86b3f07b7f6d384f92275\System.ServiceModel.Web.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\72a24b45e11d64eb2bc840aae9419ba5\System.Runtime.Serialization.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 1044480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\991dbe40be5b114ed705bb5b48e6b330\System.Printing.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 1051136 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\9b2f17fb61b7197f2a04108f5d1a1cc6\System.Management.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 8872960 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\a8495b797e6f7adddc5811a4e1f97db5\System.Management.Automation.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 1083392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\2ce8210219c7123610072357358df470\System.IdentityModel.ni.dll
+ 2012-06-14 07:45 . 2012-06-14 07:45 1591808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6bb439b3f87736d3248ae27d43e2c0d6\System.Drawing.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 1117184 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\ef0d8a4790c24a3a091170958bc7b976\System.DirectoryServices.ni.dll
+ 2012-06-14 07:45 . 2012-06-14 07:45 1806848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\3421b96c2885b8e4137a376ff3d95fa5\System.Deployment.ni.dll
+ 2012-05-10 22:04 . 2012-05-10 22:04 6611456 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\f3814b488d9e083cbbc623e01b389f09\System.Data.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 2508288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\e9774272e9fc6ca49e6c616a31783040\System.Data.SqlXml.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 2029568 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\3285887b33030a7ce453573d3bed4e95\System.Data.Services.ni.dll
+ 2012-05-11 00:16 . 2012-05-11 00:16 1378816 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\330d3ad45a00455b537047183e128def\System.Data.Services.Client.ni.dll
+ 2012-05-10 22:05 . 2012-05-10 22:05 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\0f4e07fb8b1b7e7133a98f478856f70c\System.Data.OracleClient.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\2fe1658f05b0a96fe25c956a31d27b06\System.Data.Linq.ni.dll
+ 2012-05-11 00:15 . 2012-05-11 00:15 9921536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\51a2589d5ee1c9c40fb6c56391570f9e\System.Data.Entity.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 2297856 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\dfd33f59a5803a3c73cf408362e6e0b7\System.Core.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 2157056 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\87f73de6e080d37be93adfc7d5c31d7a\ReachFramework.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\163517c8a195fb48f7ef6ee17c585bdb\PresentationUI.ni.dll
+ 2012-05-10 22:55 . 2012-05-10 22:55 1451520 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\b3f13707cbd5d48aabaa9ef5264c8a30\PresentationBuildTasks.ni.dll
+ 2012-06-14 07:54 . 2012-06-14 07:54 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\ceaa86fba2cd365b817db13a9aa59217\Narrator.ni.exe
+ 2012-06-14 07:53 . 2012-06-14 07:53 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\21abde8efab609732b2ade3f05234e79\MMCEx.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 6438912 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\0e7da0df83f0619e3b0e0a7d7ee05fa3\MIGUIControls.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\6c59a14a23f734093e80d6093e25302a\Microsoft.VisualBasic.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 1093120 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\cd9e47effec6549cdec61eb3aef99f7c\Microsoft.Transactions.Bridge.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\99ae5f32cd1dc3618659bc3c77f2b2a9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1704960 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\77b5496d214dd5034294b058c0bb0e8d\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\72765e5fab12761eb6d3f58180fa34d7\Microsoft.PowerShell.Editor.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\8ce1d10f94b40f054017865757552f2d\Microsoft.MediaCenter.UI.ni.dll
+ 2012-06-14 07:52 . 2012-06-14 07:52 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\7fab1ec8f5ed6a55a8a73b2c590bd7cd\Microsoft.MediaCenter.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 2335744 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\e3d2577e00aef6bc9b3e235eb83634f3\Microsoft.JScript.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\4d381048e3b9c0914c0f72c6aa0a599d\Microsoft.Ink.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\3893fa9a19b52dee8b2cc424840d5d08\Microsoft.Build.Tasks.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 1970176 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\1d2250044b1ecff755e26ed12f6d27cb\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\6b66f52dbd8f87e53c3c9a1de7ca5bba\Microsoft.Build.Engine.ni.dll
+ 2012-06-14 07:53 . 2012-06-14 07:53 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\3a4e56a8d1075cf0af0619c383b3e592\mcstore.ni.dll
+ 2012-05-10 22:54 . 2012-05-10 22:54 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\69b8de21b08c3412422c5918399ed702\mcepg.ni.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 1253376 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2011-05-17 13:33 . 2010-11-05 01:53 1253376 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2012-02-14 23:32 . 2011-10-31 23:16 3190784 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2012-05-10 15:44 . 2012-01-04 02:51 3190784 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2012-06-13 23:55 . 2012-03-21 22:32 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2011-11-22 21:22 . 2011-03-29 22:33 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-06-13 23:55 . 2012-03-21 22:32 4927488 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2011-05-17 13:29 . 2010-11-05 01:58 4927488 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 5283840 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2012-05-10 15:43 . 2012-02-10 23:29 2256152 c:\windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll
+ 2012-05-10 15:43 . 2012-02-10 23:29 3998208 c:\windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2011-11-22 21:22 . 2011-07-08 22:31 4567040 c:\windows\assembly\GAC_64\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-05-10 15:44 . 2012-01-04 03:34 4567040 c:\windows\assembly\GAC_64\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 1737496 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll
+ 2012-05-10 15:43 . 2012-02-10 23:31 4218880 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2011-05-17 13:33 . 2010-11-05 01:53 4218880 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-05-10 15:44 . 2012-01-04 02:50 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2011-11-22 21:22 . 2011-07-08 22:33 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-23 15:02 . 2012-08-23 15:02 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-08-17 20:48 . 2010-08-17 20:48 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-07-11 00:34 . 2012-06-09 04:41 12873728 c:\windows\SysWOW64\shell32.dll
+ 2012-08-15 14:48 . 2012-06-29 00:52 12317184 c:\windows\SysWOW64\mshtml.dll
+ 2009-07-14 02:34 . 2012-08-15 14:55 11010048 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
+ 2012-07-28 02:50 . 2012-07-28 02:50 20546560 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atioglxx.dll
+ 2012-07-28 03:19 . 2012-07-28 03:19 24935424 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atio6axx.dll
+ 2012-07-28 04:07 . 2012-07-28 04:07 10278912 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\atikmdag.sys
+ 2012-07-28 01:34 . 2012-07-28 01:34 16034304 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticaldd64.dll
+ 2012-07-28 01:30 . 2012-07-28 01:30 13605888 c:\windows\system32\DriverStore\FileRepository\c7144945.inf_amd64_neutral_c2d3a4f2e1878bb7\B143900\aticaldd.dll
+ 2012-05-23 02:43 . 2012-05-23 02:43 20467200 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atioglxx.dll
+ 2012-05-23 03:11 . 2012-05-23 03:11 24826368 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atio6axx.dll
+ 2012-05-23 03:15 . 2012-05-23 03:15 10248704 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\atikmdag.sys
+ 2012-05-23 01:26 . 2012-05-23 01:26 15703040 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticaldd64.dll
+ 2012-05-23 01:22 . 2012-05-23 01:22 13277696 c:\windows\system32\DriverStore\FileRepository\c7139735.inf_amd64_neutral_f3a877f59340d9cd\B139213\aticaldd.dll
+ 2012-04-06 01:50 . 2012-04-06 01:50 19753984 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atioglxx.dll
+ 2012-04-06 02:10 . 2012-04-06 02:10 26181632 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atio6axx.dll
+ 2012-04-06 05:22 . 2012-04-06 05:22 11174400 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\atikmdag.sys
+ 2012-04-06 01:29 . 2012-04-06 01:29 16090624 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticaldd64.dll
+ 2012-04-06 01:25 . 2012-04-06 01:25 13764096 c:\windows\system32\DriverStore\FileRepository\c7137813.inf_amd64_neutral_320292ee1f7728c6\B136646\aticaldd.dll
+ 2012-07-10 23:04 . 2012-07-10 23:04 17904640 c:\windows\Installer\99e67bc.msi
+ 2012-07-02 22:39 . 2012-07-02 22:39 12949504 c:\windows\Installer\6ce4e.msi
+ 2012-08-09 20:34 . 2012-08-09 20:34 16924160 c:\windows\Installer\63e42.msi
+ 2012-08-09 20:21 . 2012-08-09 20:21 14306816 c:\windows\Installer\63e23.msi
+ 2012-07-14 23:24 . 2012-07-14 23:24 19333120 c:\windows\Installer\206ce.msi
+ 2012-01-19 18:20 . 2012-01-19 18:20 11997696 c:\windows\Installer\1e16e6e2.msp
+ 2011-12-15 18:54 . 2011-12-15 18:54 39732736 c:\windows\Installer\1e16e6d6.msp
+ 2012-05-10 21:22 . 2012-05-10 21:22 20343808 c:\windows\Installer\1e16e65f.msp
+ 2012-07-18 19:53 . 2012-07-18 19:53 10937344 c:\windows\Installer\19d56c5.msp
+ 2011-08-04 00:53 . 2011-08-04 00:53 17324928 c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6612\MSO.DLL
+ 2012-05-10 21:31 . 2012-05-10 21:31 11880448 c:\windows\assembly\NativeImages_v4.0.30319_64\System\935aea6e7eae16674abdd96a68ec97af\System.ni.dll
+ 2012-06-14 07:25 . 2012-06-14 07:25 17355264 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\e883d90a0210bf99ca88f3b4ade53a24\System.Windows.Forms.ni.dll
+ 2012-06-14 07:16 . 2012-06-14 07:16 17355264 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\d9f25602d3fabd454ee8f8c0b7cd987f\System.Windows.Forms.ni.dll
+ 2012-05-10 21:48 . 2012-05-10 21:48 24551936 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\c4cc7eb7733c4221c32caccfd66ae320\System.ServiceModel.ni.dll
+ 2012-05-10 21:47 . 2012-05-10 21:47 18479616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity\9df4e7ae75baa7bbb1af30c8061a6e9b\System.Data.Entity.ni.dll
+ 2012-05-10 21:40 . 2012-05-10 21:40 10440192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Core\b64f213e823a591607c45fac4997801e\System.Core.ni.dll
+ 2012-06-14 07:24 . 2012-06-14 07:24 24407552 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\a3c3789d54894008501ce5891f1eeb40\PresentationFramework.ni.dll
+ 2012-05-10 21:43 . 2012-05-10 21:43 24407552 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\34c2013b5f730680bd610d6a98d2977f\PresentationFramework.ni.dll
+ 2012-06-14 07:23 . 2012-06-14 07:23 15908864 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\9d69a7a407bbc43a1bcb2da603af5840\PresentationCore.ni.dll
+ 2012-05-10 21:42 . 2012-05-10 21:42 15908864 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\4464e9df7184e3393b4cbb0f6dc286ba\PresentationCore.ni.dll
+ 2012-05-10 21:30 . 2012-05-10 21:30 19353600 c:\windows\assembly\NativeImages_v4.0.30319_64\mscorlib\6087fce8f76d9af69af496cb10b7d1ee\mscorlib.ni.dll
+ 2012-06-14 07:20 . 2012-06-14 07:20 13198336 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\3971e166cf827b6726e142f344061dc9\System.Windows.Forms.ni.dll
+ 2012-05-11 00:20 . 2012-05-11 00:20 18058752 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\cfece6f67593b4d8bb58d23b7fdcc470\System.ServiceModel.ni.dll
+ 2012-05-11 00:19 . 2012-05-11 00:19 13345792 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\7aa839fb16503243d6ae454ab334bcf4\System.Data.Entity.ni.dll
+ 2012-06-14 07:21 . 2012-06-14 07:21 18000896 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\199683f6e79076b634ee6cc0a82c0654\PresentationFramework.ni.dll
+ 2012-06-14 07:20 . 2012-06-14 07:20 11451904 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\e7dc084827f8df2dbdc819db5c633a0d\PresentationCore.ni.dll
+ 2012-05-10 21:31 . 2012-05-10 21:31 14412800 c:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll
+ 2012-05-10 21:56 . 2012-05-10 21:56 10624512 c:\windows\assembly\NativeImages_v2.0.50727_64\System\c40ec0f4cd203c880298f94c0427dd54\System.ni.dll
+ 2012-05-10 21:59 . 2012-05-10 21:59 17379840 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\e2ca64137e0da231edc4d158b153e4b7\System.Windows.Forms.ni.dll
+ 2012-06-14 07:41 . 2012-06-14 07:41 17383424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\dc5bb74eefdbf954cdfb70dd534d5564\System.Windows.Forms.ni.dll
+ 2012-06-14 07:43 . 2012-06-14 07:43 15270912 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web\95f38e7485bbe2b73b6055c45196fedd\System.Web.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 15270912 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web\1cb5a7cbd9cdf50f1d48cee830331c9f\System.Web.ni.dll
+ 2012-05-11 00:22 . 2012-05-11 00:22 23913984 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\f74b2d1b8cf279ff6bfe479f79e70fe9\System.ServiceModel.ni.dll
+ 2012-05-11 00:25 . 2012-05-11 00:25 11900928 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\00c4a761d0a5cafc00f34d763fe76ac4\System.Management.Automation.ni.dll
+ 2012-05-10 22:01 . 2012-05-10 22:01 13609472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Design\78c747493d14dd3db5134d26e623851c\System.Design.ni.dll
+ 2012-06-14 07:44 . 2012-06-14 07:44 13609472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Design\582144c0ee317038621aebc626187b56\System.Design.ni.dll
+ 2012-05-11 00:28 . 2012-05-11 00:28 13760000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\daaff9fe9c85fc171d426a3cb6766dbb\System.Data.Entity.ni.dll
+ 2012-05-10 22:00 . 2012-05-10 22:00 19198464 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\9aa6320f06da2553fb04e78722c739c8\PresentationFramework.ni.dll
+ 2012-06-14 07:42 . 2012-06-14 07:42 19198464 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\47054c4d5b7e522c21a9d57797410302\PresentationFramework.ni.dll
+ 2012-05-10 21:58 . 2012-05-10 21:58 16543232 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\4dc6e89ac37368291890ba27c374208b\PresentationCore.ni.dll
+ 2012-06-14 07:40 . 2012-06-14 07:40 16543232 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\3a9d13514a8c4c710fa5ce8e9b5393fe\PresentationCore.ni.dll
+ 2012-05-10 21:56 . 2012-05-10 21:56 15570944 c:\windows\assembly\NativeImages_v2.0.50727_64\mscorlib\f73f0a9c9a83dcd3ff428be509a7992f\mscorlib.ni.dll
+ 2012-05-11 00:24 . 2012-05-11 00:24 25470976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\d19a72cf466c23b193009386b25049ba\ehshell.ni.dll
+ 2012-06-14 07:48 . 2012-06-14 07:48 25470976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\0c1f96a4136efe532bbb8eb91d3de300\ehshell.ni.dll
+ 2012-06-14 07:45 . 2012-06-14 07:45 12436480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\7b7fbe651c6e72f12099a298654c9594\System.Windows.Forms.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 11833344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\a501b7960f6c6e2e39162b83f3303aaa\System.Web.ni.dll
+ 2012-05-10 22:53 . 2012-05-10 22:53 17478656 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\107779ca2708d2b31b2e1560e47f6d15\System.ServiceModel.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 10580480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\7c144f89b1f8f292d6940a1b2f8ffbec\System.Design.ni.dll
+ 2012-06-14 07:46 . 2012-06-14 07:46 14340608 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\e717a230496832656b05b515eb9f3bc5\PresentationFramework.ni.dll
+ 2012-06-14 07:45 . 2012-06-14 07:45 12237824 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\14a87218ea49639f38097e278b98a3da\PresentationCore.ni.dll
+ 2012-05-10 22:03 . 2012-05-10 22:03 11492864 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
2012-03-06 19:16 87440 ----a-w- c:\program files (x86)\adawaretb\adawareDx.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{6c97a91e-4524-4019-86af-2aa2d567bf5c}"= "c:\program files (x86)\adawaretb\adawareDx.dll" [2012-03-06 87440]
.
[HKEY_CLASSES_ROOT\clsid\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EADM"="c:\program files (x86)\Origin\Origin.exe" [2012-08-13 3414680]
"Steam"="c:\program files (x86)\Steam\Steam.exe" [2012-08-21 1353080]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Ad-Aware Antivirus"="c:\program files (x86)\Ad-Aware Antivirus\AdAwareLauncher --windows-run" [X]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
"Microsoft Default Manager"="c:\program files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-11-29 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-10-09 421736]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
"Ad-Aware Browsing Protection"="c:\programdata\Ad-Aware Browsing Protection\adawarebp.exe" [2011-10-21 198032]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-08-06 642216]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
NETGEAR WNDA3100v2 Smart Wizard.lnk - c:\program files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe [2011-9-7 4577760]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]
@="Ad-Aware Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]
@="Service"
.
R1 lbrrgkhj;lbrrgkhj;c:\windows\system32\drivers\lbrrgkhj.sys [x]
R1 munfzrnm;munfzrnm;c:\windows\system32\drivers\munfzrnm.sys [x]
R1 nrqgyvti;nrqgyvti;c:\windows\system32\drivers\nrqgyvti.sys [x]
R1 okaqbilq;okaqbilq;c:\windows\system32\drivers\okaqbilq.sys [x]
R1 qnepxaps;qnepxaps;c:\windows\system32\drivers\qnepxaps.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-03 160944]
R2 WSWNDA3100;WSWNDA3100;c:\program files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe [2010-08-19 272864]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560]
R3 BCMH43XX;Broadcom 802.11 USB Network Adapter Driver;c:\windows\system32\DRIVERS\bcmwlhigh664.sys [2009-11-06 838136]
R3 dc3d;MS Hardware Device Detection Driver (HID);c:\windows\system32\DRIVERS\dc3d.sys [2010-04-17 27536]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 MSICDSetup;MSICDSetup;D:\CDriver64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-21 98688]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;c:\windows\system32\DRIVERS\RTL8192su.sys [2010-01-07 676864]
R3 SaiHFF0C;SaiHFF0C;c:\windows\system32\DRIVERS\SaiHFF0C.sys [2007-05-01 171144]
R3 SaiUFF0C;SaiUFF0C;c:\windows\system32\DRIVERS\SaiUFF0C.sys [2007-05-01 34304]
R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Service;c:\windows\system32\DRIVERS\sbfwim.sys [2011-02-08 84568]
R3 sbhips;sbhips;c:\windows\system32\drivers\sbhips.sys [2011-04-05 60504]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2011-08-02 51712]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-04-17 1255736]
S0 SCMNdisP;General NDIS Protocol Driver;c:\windows\system32\DRIVERS\scmndisp.sys [2007-01-19 25312]
S1 SbFw;SbFw;c:\windows\system32\drivers\SbFw.sys [2011-04-05 253528]
S1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [2011-04-29 55384]
S1 SbTis;SbTis;c:\windows\system32\drivers\sbtis.sys [2011-04-05 94296]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 Ad-Aware Service;Ad-Aware Service;c:\program files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2012-03-29 1161072]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-07-28 239616]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-08-06 361984]
S2 AODDriver4.1;AODDriver4.1;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [2012-03-09 23816]
S2 Greg_Service;GRegService;c:\program files (x86)\eMachines\Registration\GregHSRW.exe [2009-08-28 1150496]
S2 SBAMSvc;Ad-Aware;c:\program files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe [2011-05-17 2804280]
S2 sbapifs;sbapifs;c:\windows\system32\DRIVERS\sbapifs.sys [2011-05-11 72280]
S2 Updater Service;Updater Service;c:\program files\eMachines\eMachines Updater\UpdaterService.exe [2009-07-04 240160]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2012-07-28 10278912]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2012-07-28 368640]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 SBFWIMCLMP;Sunbelt Software Firewall NDIS IM Filter Miniport;c:\windows\system32\DRIVERS\SBFWIM.sys [2011-02-08 84568]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-23 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-28 00:55]
.
2012-08-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402035426-1599880845-4127718658-1001Core.job
- c:\users\Tim\AppData\Local\Google\Update\GoogleUpdate.exe [2012-04-15 08:09]
.
2012-08-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402035426-1599880845-4127718658-1001UA.job
- c:\users\Tim\AppData\Local\Google\Update\GoogleUpdate.exe [2012-04-15 08:09]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-20 7981088]
"ProfilerU"="c:\program files\Saitek\SD6\Software\ProfilerU.exe" [2010-07-29 310272]
"SaiMfd"="c:\program files\Saitek\SD6\Software\SaiMfd.exe" [2010-07-29 158208]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uLocal Page = c:\windows\system32\blank.htm
mStart Page = about:blank
mLocal Page = c:\windows\SYSTEM32\blank.htm
uInternet Settings,ProxyOverride = <local>;*.local
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://www.ask.com/?l=dis&o=14196
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-402035426-1599880845-4127718658-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-402035426-1599880845-4127718658-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_USERS\S-1-5-21-402035426-1599880845-4127718658-1001\Software\SecuROM\License information*]
"datasecu"=hex:06,dc,7f,90,f1,60,ac,f8,80,23,54,bb,d4,a5,e9,47,82,44,d7,97,a6,
ea,fa,bd,11,6b,a2,ba,4f,33,04,4e,59,c3,94,c4,90,93,e5,c1,05,dd,3a,d6,4e,80,\
"rkeysecu"=hex:64,b6,bd,e1,3e,80,9e,c4,40,b4,90,83,87,8e,33,49
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\progra~2\AD-AWA~1\AdAware.exe
.
**************************************************************************
.
Completion time: 2012-08-23 21:07:39 - machine was rebooted
ComboFix-quarantined-files.txt 2012-08-24 01:07
ComboFix2.txt 2012-04-23 11:00
.
Pre-Run: 552,912,928,768 bytes free
Post-Run: 552,773,570,560 bytes free
.
- - End Of File - - D2E468A13324EC3A376B8F20C0CCB54A





The computer is starting to run slower after i ran combofix. Restarted it in hopes of alliviating some processes that might of been slowing it down unintentionally but its still running slower than it was not even a few hours ago. still redirecting. The way i have been getting around it has been to click on the links in google then (alt+left) backing up then clicking again and the link will send me where it is supposed to send me, so the virus/trojan or whatever i have does not always redirect.

#5 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 08:30 PM

Also noticed java is out of date as well as adobe reader, going to update those and the virus definitions. had just updated, had no idea there was updates again. will keep you posted and post new log, had disabled some stuff for combofix too, this time i will keep those running for the new log

#6 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 23 August 2012 - 08:54 PM

Greetings

I want you to run these next,

tdsskiller:

Please read carefully and follow these steps.
  • Download TDSSKiller and save it to your Desktop.
  • doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.

Please download aswMBR to your desktop.
  • Double click the aswMBR.exe icon to run it
  • it will ask to download extra definitions - ALLOW IT
  • Click the Scan button to start the scan
  • On completion of the scan, click the save log button, save it to your desktop and post it in your next reply.

If you have any problems running either one come back and let me know

please reply with the reports from TDSSKiller and aswMBR

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#7 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 09:06 PM

thanks, getting right to it, may take a few!

#8 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 23 August 2012 - 09:21 PM

:thumbup2:
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#9 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 09:51 PM

22:16:20.0813 4052 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
22:16:21.0140 4052 ============================================================
22:16:21.0140 4052 Current date / time: 2012/08/23 22:16:21.0140
22:16:21.0140 4052 SystemInfo:
22:16:21.0140 4052
22:16:21.0140 4052 OS Version: 6.1.7601 ServicePack: 1.0
22:16:21.0140 4052 Product type: Workstation
22:16:21.0140 4052 ComputerName: TIM-PC
22:16:21.0140 4052 UserName: Tim
22:16:21.0140 4052 Windows directory: C:\Windows
22:16:21.0140 4052 System windows directory: C:\Windows
22:16:21.0140 4052 Running under WOW64
22:16:21.0140 4052 Processor architecture: Intel x64
22:16:21.0140 4052 Number of processors: 2
22:16:21.0140 4052 Page size: 0x1000
22:16:21.0140 4052 Boot type: Normal boot
22:16:21.0140 4052 ============================================================
22:16:22.0669 4052 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:16:22.0732 4052 ============================================================
22:16:22.0732 4052 \Device\Harddisk0\DR0:
22:16:22.0732 4052 MBR partitions:
22:16:22.0732 4052 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1800800, BlocksNum 0x32000
22:16:22.0732 4052 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1832800, BlocksNum 0x55D13000
22:16:22.0732 4052 ============================================================
22:16:22.0747 4052 C: <-> \Device\Harddisk0\DR0\Partition2
22:16:22.0747 4052 ============================================================
22:16:22.0747 4052 Initialize success
22:16:22.0747 4052 ============================================================
22:16:31.0982 3868 ============================================================
22:16:31.0982 3868 Scan started
22:16:31.0982 3868 Mode: Manual;
22:16:31.0982 3868 ============================================================
22:16:32.0372 3868 ================ Scan system memory ========================
22:16:32.0372 3868 System memory - ok
22:16:32.0372 3868 ================ Scan services =============================
22:16:32.0497 3868 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
22:16:32.0497 3868 1394ohci - ok
22:16:32.0528 3868 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
22:16:32.0528 3868 ACPI - ok
22:16:32.0544 3868 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
22:16:32.0560 3868 AcpiPmi - ok
22:16:32.0669 3868 [ FB182AD520910442ABF146BB325DE79B ] Ad-Aware Service C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
22:16:32.0684 3868 Ad-Aware Service - ok
22:16:32.0794 3868 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:16:32.0794 3868 AdobeFlashPlayerUpdateSvc - ok
22:16:32.0840 3868 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
22:16:32.0856 3868 adp94xx - ok
22:16:32.0872 3868 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
22:16:32.0887 3868 adpahci - ok
22:16:32.0903 3868 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
22:16:32.0918 3868 adpu320 - ok
22:16:32.0934 3868 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:16:32.0934 3868 AeLookupSvc - ok
22:16:32.0981 3868 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
22:16:32.0996 3868 AFD - ok
22:16:33.0028 3868 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
22:16:33.0028 3868 agp440 - ok
22:16:33.0059 3868 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
22:16:33.0059 3868 ALG - ok
22:16:33.0074 3868 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
22:16:33.0074 3868 aliide - ok
22:16:33.0137 3868 [ B3B263B419FC9E7B1D41E61FDAE45BD9 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
22:16:33.0137 3868 AMD External Events Utility - ok
22:16:33.0199 3868 AMD FUEL Service - ok
22:16:33.0215 3868 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
22:16:33.0215 3868 amdide - ok
22:16:33.0246 3868 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys
22:16:33.0277 3868 amdiox64 - ok
22:16:33.0293 3868 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
22:16:33.0308 3868 AmdK8 - ok
22:16:33.0527 3868 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
22:16:34.0463 3868 amdkmdag - ok
22:16:34.0510 3868 [ 957A4C13E1981B1701E600EF1E823C68 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
22:16:34.0868 3868 amdkmdap - ok
22:16:34.0884 3868 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
22:16:34.0884 3868 AmdPPM - ok
22:16:34.0931 3868 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:16:34.0931 3868 amdsata - ok
22:16:34.0946 3868 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
22:16:34.0946 3868 amdsbs - ok
22:16:34.0962 3868 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:16:34.0978 3868 amdxata - ok
22:16:35.0009 3868 [ 5B25D1A753CC3A3EDB909BB759AC1098 ] AODDriver4.1 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
22:16:35.0024 3868 AODDriver4.1 - ok
22:16:35.0056 3868 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
22:16:35.0071 3868 AppID - ok
22:16:35.0102 3868 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:16:35.0102 3868 AppIDSvc - ok
22:16:35.0149 3868 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
22:16:35.0149 3868 Appinfo - ok
22:16:35.0243 3868 [ D8E18021F91AD79CA8491CB5A5DA22D4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:16:35.0243 3868 Apple Mobile Device - ok
22:16:35.0290 3868 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
22:16:35.0290 3868 arc - ok
22:16:35.0305 3868 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
22:16:35.0321 3868 arcsas - ok
22:16:35.0336 3868 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:16:35.0336 3868 AsyncMac - ok
22:16:35.0352 3868 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
22:16:35.0368 3868 atapi - ok
22:16:35.0399 3868 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
22:16:35.0414 3868 AtiHDAudioService - ok
22:16:35.0461 3868 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:16:35.0461 3868 AudioEndpointBuilder - ok
22:16:35.0477 3868 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
22:16:35.0492 3868 AudioSrv - ok
22:16:35.0539 3868 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:16:35.0539 3868 AxInstSV - ok
22:16:35.0570 3868 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
22:16:35.0586 3868 b06bdrv - ok
22:16:35.0617 3868 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
22:16:35.0633 3868 b57nd60a - ok
22:16:35.0695 3868 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
22:16:35.0695 3868 BBSvc - ok
22:16:35.0758 3868 [ 9E84A931DBEE0292E38ED672F6293A99 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
22:16:35.0804 3868 BCM43XX - ok
22:16:35.0867 3868 [ E49110A58A32E9450356686A95DD7763 ] BCMH43XX C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
22:16:35.0929 3868 BCMH43XX - ok
22:16:35.0960 3868 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
22:16:35.0976 3868 BDESVC - ok
22:16:35.0976 3868 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
22:16:35.0992 3868 Beep - ok
22:16:36.0038 3868 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
22:16:36.0054 3868 BFE - ok
22:16:36.0085 3868 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
22:16:36.0101 3868 BITS - ok
22:16:36.0116 3868 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:16:36.0132 3868 blbdrive - ok
22:16:36.0179 3868 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:16:36.0179 3868 Bonjour Service - ok
22:16:36.0210 3868 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:16:36.0210 3868 bowser - ok
22:16:36.0226 3868 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:16:36.0241 3868 BrFiltLo - ok
22:16:36.0241 3868 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:16:36.0257 3868 BrFiltUp - ok
22:16:36.0288 3868 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
22:16:36.0288 3868 BridgeMP - ok
22:16:36.0319 3868 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
22:16:36.0319 3868 Browser - ok
22:16:36.0350 3868 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:16:36.0350 3868 Brserid - ok
22:16:36.0366 3868 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:16:36.0382 3868 BrSerWdm - ok
22:16:36.0382 3868 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:16:36.0397 3868 BrUsbMdm - ok
22:16:36.0413 3868 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:16:36.0413 3868 BrUsbSer - ok
22:16:36.0428 3868 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
22:16:36.0444 3868 BTHMODEM - ok
22:16:36.0460 3868 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
22:16:36.0460 3868 bthserv - ok
22:16:36.0506 3868 catchme - ok
22:16:36.0553 3868 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:16:36.0584 3868 cdfs - ok
22:16:36.0662 3868 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys
22:16:36.0662 3868 cdrom - ok
22:16:36.0694 3868 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
22:16:36.0709 3868 CertPropSvc - ok
22:16:36.0725 3868 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
22:16:36.0725 3868 circlass - ok
22:16:36.0756 3868 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
22:16:36.0756 3868 CLFS - ok
22:16:36.0818 3868 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:16:36.0818 3868 clr_optimization_v2.0.50727_32 - ok
22:16:36.0865 3868 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:16:36.0865 3868 clr_optimization_v2.0.50727_64 - ok
22:16:36.0928 3868 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:16:36.0943 3868 clr_optimization_v4.0.30319_32 - ok
22:16:36.0959 3868 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
22:16:36.0974 3868 clr_optimization_v4.0.30319_64 - ok
22:16:36.0990 3868 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:16:36.0990 3868 CmBatt - ok
22:16:37.0006 3868 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:16:37.0021 3868 cmdide - ok
22:16:37.0052 3868 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
22:16:37.0084 3868 CNG - ok
22:16:37.0099 3868 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
22:16:37.0099 3868 Compbatt - ok
22:16:37.0130 3868 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
22:16:37.0130 3868 CompositeBus - ok
22:16:37.0146 3868 COMSysApp - ok
22:16:37.0177 3868 [ 75DBD5DB9892D7451D0429BEC1AABE1A ] cpuz135 C:\Windows\system32\drivers\cpuz135_x64.sys
22:16:37.0193 3868 cpuz135 - ok
22:16:37.0193 3868 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
22:16:37.0193 3868 crcdisk - ok
22:16:37.0240 3868 [ 4F5414602E2544A4554D95517948B705 ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:16:37.0240 3868 CryptSvc - ok
22:16:37.0286 3868 [ 26C9DB5FB11AA1C90CA4B7A986CCA4F3 ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
22:16:37.0302 3868 dc3d - ok
22:16:37.0333 3868 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
22:16:37.0349 3868 DcomLaunch - ok
22:16:37.0364 3868 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
22:16:37.0380 3868 defragsvc - ok
22:16:37.0396 3868 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:16:37.0411 3868 DfsC - ok
22:16:37.0427 3868 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
22:16:37.0427 3868 Dhcp - ok
22:16:37.0442 3868 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
22:16:37.0458 3868 discache - ok
22:16:37.0458 3868 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
22:16:37.0474 3868 Disk - ok
22:16:37.0505 3868 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:16:37.0505 3868 Dnscache - ok
22:16:37.0552 3868 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
22:16:37.0552 3868 dot3svc - ok
22:16:37.0598 3868 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
22:16:37.0598 3868 DPS - ok
22:16:37.0614 3868 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:16:37.0614 3868 drmkaud - ok
22:16:37.0645 3868 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:16:37.0676 3868 DXGKrnl - ok
22:16:37.0708 3868 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
22:16:37.0708 3868 EapHost - ok
22:16:37.0801 3868 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
22:16:37.0895 3868 ebdrv - ok
22:16:37.0910 3868 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
22:16:37.0926 3868 EFS - ok
22:16:37.0973 3868 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:16:37.0988 3868 ehRecvr - ok
22:16:38.0004 3868 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
22:16:38.0020 3868 ehSched - ok
22:16:38.0035 3868 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
22:16:38.0051 3868 elxstor - ok
22:16:38.0082 3868 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:16:38.0098 3868 ErrDev - ok
22:16:38.0129 3868 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
22:16:38.0129 3868 EventSystem - ok
22:16:38.0160 3868 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
22:16:38.0160 3868 exfat - ok
22:16:38.0191 3868 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:16:38.0207 3868 fastfat - ok
22:16:38.0254 3868 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
22:16:38.0269 3868 Fax - ok
22:16:38.0269 3868 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:16:38.0285 3868 fdc - ok
22:16:38.0300 3868 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
22:16:38.0300 3868 fdPHost - ok
22:16:38.0316 3868 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
22:16:38.0316 3868 FDResPub - ok
22:16:38.0332 3868 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:16:38.0332 3868 FileInfo - ok
22:16:38.0363 3868 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:16:38.0363 3868 Filetrace - ok
22:16:38.0378 3868 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:16:38.0378 3868 flpydisk - ok
22:16:38.0394 3868 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:16:38.0410 3868 FltMgr - ok
22:16:38.0456 3868 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
22:16:38.0488 3868 FontCache - ok
22:16:38.0534 3868 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:16:38.0534 3868 FontCache3.0.0.0 - ok
22:16:38.0628 3868 [ A9FF65EA14E4CABFCC1BB8ECE111A249 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
22:16:38.0644 3868 ForceWare Intelligent Application Manager (IAM) - ok
22:16:38.0659 3868 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:16:38.0659 3868 FsDepends - ok
22:16:38.0690 3868 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:16:38.0690 3868 Fs_Rec - ok
22:16:38.0706 3868 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:16:38.0722 3868 fvevol - ok
22:16:38.0737 3868 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
22:16:38.0753 3868 gagp30kx - ok
22:16:38.0815 3868 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
22:16:38.0831 3868 GamesAppService - ok
22:16:38.0862 3868 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:16:38.0862 3868 GEARAspiWDM - ok
22:16:38.0909 3868 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
22:16:38.0924 3868 gpsvc - ok
22:16:38.0987 3868 [ 816FD5A6F3C2F3D600900096632FC60E ] Greg_Service C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe
22:16:39.0002 3868 Greg_Service - ok
22:16:39.0018 3868 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:16:39.0018 3868 hcw85cir - ok
22:16:39.0049 3868 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:16:39.0065 3868 HdAudAddService - ok
22:16:39.0096 3868 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:16:39.0096 3868 HDAudBus - ok
22:16:39.0112 3868 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
22:16:39.0127 3868 HidBatt - ok
22:16:39.0143 3868 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
22:16:39.0143 3868 HidBth - ok
22:16:39.0174 3868 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
22:16:39.0174 3868 HidIr - ok
22:16:39.0190 3868 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
22:16:39.0205 3868 hidserv - ok
22:16:39.0236 3868 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:16:39.0236 3868 HidUsb - ok
22:16:39.0268 3868 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:16:39.0283 3868 hkmsvc - ok
22:16:39.0330 3868 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:16:39.0330 3868 HomeGroupListener - ok
22:16:39.0377 3868 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:16:39.0377 3868 HomeGroupProvider - ok
22:16:39.0408 3868 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
22:16:39.0408 3868 HpSAMD - ok
22:16:39.0455 3868 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:16:39.0470 3868 HTTP - ok
22:16:39.0502 3868 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:16:39.0517 3868 hwpolicy - ok
22:16:39.0548 3868 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
22:16:39.0548 3868 i8042prt - ok
22:16:39.0595 3868 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:16:39.0611 3868 iaStorV - ok
22:16:39.0673 3868 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
22:16:39.0689 3868 IDriverT - ok
22:16:39.0720 3868 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:16:39.0736 3868 idsvc - ok
22:16:39.0767 3868 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
22:16:39.0767 3868 iirsp - ok
22:16:39.0798 3868 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
22:16:39.0814 3868 IKEEXT - ok
22:16:39.0907 3868 [ BC64B75E8E0A0B8982AB773483164E72 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
22:16:39.0954 3868 IntcAzAudAddService - ok
22:16:39.0985 3868 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
22:16:39.0985 3868 intelide - ok
22:16:40.0016 3868 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:16:40.0016 3868 intelppm - ok
22:16:40.0032 3868 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:16:40.0048 3868 IPBusEnum - ok
22:16:40.0079 3868 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:16:40.0079 3868 IpFilterDriver - ok
22:16:40.0126 3868 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:16:40.0126 3868 iphlpsvc - ok
22:16:40.0172 3868 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
22:16:40.0188 3868 IPMIDRV - ok
22:16:40.0204 3868 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:16:40.0219 3868 IPNAT - ok
22:16:40.0250 3868 [ 3C0D4B3E80FC4854CA325DD123CC4DED ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
22:16:40.0266 3868 iPod Service - ok
22:16:40.0282 3868 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:16:40.0297 3868 IRENUM - ok
22:16:40.0328 3868 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:16:40.0328 3868 isapnp - ok
22:16:40.0360 3868 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
22:16:40.0375 3868 iScsiPrt - ok
22:16:40.0406 3868 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:16:40.0406 3868 kbdclass - ok
22:16:40.0422 3868 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:16:40.0422 3868 kbdhid - ok
22:16:40.0438 3868 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
22:16:40.0438 3868 KeyIso - ok
22:16:40.0469 3868 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:16:40.0484 3868 KSecDD - ok
22:16:40.0516 3868 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:16:40.0516 3868 KSecPkg - ok
22:16:40.0531 3868 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
22:16:40.0531 3868 ksthunk - ok
22:16:40.0562 3868 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
22:16:40.0578 3868 KtmRm - ok
22:16:40.0609 3868 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
22:16:40.0609 3868 LanmanServer - ok
22:16:40.0656 3868 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:16:40.0656 3868 LanmanWorkstation - ok
22:16:40.0687 3868 lbrrgkhj - ok
22:16:40.0718 3868 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:16:40.0718 3868 lltdio - ok
22:16:40.0750 3868 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:16:40.0750 3868 lltdsvc - ok
22:16:40.0765 3868 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
22:16:40.0781 3868 lmhosts - ok
22:16:40.0796 3868 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
22:16:40.0796 3868 LSI_FC - ok
22:16:40.0812 3868 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
22:16:40.0828 3868 LSI_SAS - ok
22:16:40.0843 3868 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:16:40.0843 3868 LSI_SAS2 - ok
22:16:40.0859 3868 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:16:40.0859 3868 LSI_SCSI - ok
22:16:40.0874 3868 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
22:16:40.0874 3868 luafv - ok
22:16:40.0906 3868 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:16:40.0921 3868 Mcx2Svc - ok
22:16:40.0937 3868 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
22:16:40.0937 3868 megasas - ok
22:16:40.0952 3868 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
22:16:40.0968 3868 MegaSR - ok
22:16:40.0984 3868 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
22:16:40.0984 3868 MMCSS - ok
22:16:40.0999 3868 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
22:16:40.0999 3868 Modem - ok
22:16:41.0046 3868 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:16:41.0046 3868 monitor - ok
22:16:41.0062 3868 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:16:41.0062 3868 mouclass - ok
22:16:41.0077 3868 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:16:41.0093 3868 mouhid - ok
22:16:41.0124 3868 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:16:41.0124 3868 mountmgr - ok
22:16:41.0202 3868 [ 94C66EDEDCDB6A126880472F9A704D8E ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
22:16:41.0218 3868 MpFilter - ok
22:16:41.0250 3868 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
22:16:41.0265 3868 mpio - ok
22:16:41.0281 3868 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:16:41.0281 3868 mpsdrv - ok
22:16:41.0328 3868 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:16:41.0343 3868 MpsSvc - ok
22:16:41.0390 3868 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:16:41.0406 3868 MRxDAV - ok
22:16:41.0437 3868 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:16:41.0437 3868 mrxsmb - ok
22:16:41.0484 3868 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:16:41.0499 3868 mrxsmb10 - ok
22:16:41.0546 3868 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:16:41.0562 3868 mrxsmb20 - ok
22:16:41.0577 3868 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
22:16:41.0577 3868 msahci - ok
22:16:41.0593 3868 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:16:41.0609 3868 msdsm - ok
22:16:41.0624 3868 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
22:16:41.0624 3868 MSDTC - ok
22:16:41.0671 3868 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:16:41.0671 3868 Msfs - ok
22:16:41.0687 3868 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:16:41.0687 3868 mshidkmdf - ok
22:16:41.0733 3868 MSICDSetup - ok
22:16:41.0733 3868 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:16:41.0749 3868 msisadrv - ok
22:16:41.0765 3868 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:16:41.0780 3868 MSiSCSI - ok
22:16:41.0780 3868 msiserver - ok
22:16:41.0796 3868 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:16:41.0796 3868 MSKSSRV - ok
22:16:41.0874 3868 [ 59FAAF2C83C8169EA20F9E335E418907 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
22:16:41.0874 3868 MsMpSvc - ok
22:16:41.0889 3868 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:16:41.0905 3868 MSPCLOCK - ok
22:16:41.0905 3868 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:16:41.0905 3868 MSPQM - ok
22:16:41.0936 3868 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:16:41.0952 3868 MsRPC - ok
22:16:41.0983 3868 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
22:16:41.0983 3868 mssmbios - ok
22:16:41.0999 3868 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:16:41.0999 3868 MSTEE - ok
22:16:42.0014 3868 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
22:16:42.0014 3868 MTConfig - ok
22:16:42.0030 3868 munfzrnm - ok
22:16:42.0045 3868 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
22:16:42.0045 3868 Mup - ok
22:16:42.0092 3868 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
22:16:42.0108 3868 napagent - ok
22:16:42.0123 3868 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:16:42.0139 3868 NativeWifiP - ok
22:16:42.0170 3868 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
22:16:42.0170 3868 NDIS - ok
22:16:42.0201 3868 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:16:42.0201 3868 NdisCap - ok
22:16:42.0217 3868 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:16:42.0233 3868 NdisTapi - ok
22:16:42.0249 3868 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:16:42.0265 3868 Ndisuio - ok
22:16:42.0296 3868 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:16:42.0296 3868 NdisWan - ok
22:16:42.0327 3868 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:16:42.0327 3868 NDProxy - ok
22:16:42.0358 3868 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:16:42.0358 3868 NetBIOS - ok
22:16:42.0390 3868 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:16:42.0390 3868 NetBT - ok
22:16:42.0405 3868 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
22:16:42.0405 3868 Netlogon - ok
22:16:42.0436 3868 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
22:16:42.0452 3868 Netman - ok
22:16:42.0468 3868 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
22:16:42.0483 3868 netprofm - ok
22:16:42.0499 3868 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:16:42.0514 3868 NetTcpPortSharing - ok
22:16:42.0530 3868 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
22:16:42.0546 3868 nfrd960 - ok
22:16:42.0577 3868 [ 91B4E0273D2F6C24EF845F2B41311289 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
22:16:42.0592 3868 NisDrv - ok
22:16:42.0639 3868 [ 10A43829A9E606AF3EEF25A1C1665923 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
22:16:42.0655 3868 NisSrv - ok
22:16:42.0670 3868 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
22:16:42.0686 3868 NlaSvc - ok
22:16:42.0702 3868 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:16:42.0702 3868 Npfs - ok
22:16:42.0717 3868 nrqgyvti - ok
22:16:42.0733 3868 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
22:16:42.0748 3868 nsi - ok
22:16:42.0748 3868 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:16:42.0764 3868 nsiproxy - ok
22:16:42.0795 3868 [ C04F5DEF37E55F6A34428B050F44D3D6 ] nSvcIp C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
22:16:42.0795 3868 nSvcIp - ok
22:16:42.0873 3868 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:16:42.0920 3868 Ntfs - ok
22:16:42.0951 3868 [ D4012918D3A3847B44B888D56BC095D6 ] NuidFltr C:\Windows\system32\DRIVERS\NuidFltr.sys
22:16:42.0967 3868 NuidFltr - ok
22:16:42.0982 3868 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
22:16:42.0982 3868 Null - ok
22:16:43.0014 3868 [ A85B4F2EF3A7304A5399EF0526423040 ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x64.sys
22:16:43.0029 3868 NVENETFD - ok
22:16:43.0279 3868 [ E55CAB397F77D5208DB18A78B1B7C0D5 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:16:43.0575 3868 nvlddmkm - ok
22:16:43.0606 3868 [ 0AD267A4674805B61A5D7B911D2A978A ] NVNET C:\Windows\system32\DRIVERS\nvmf6264.sys
22:16:43.0622 3868 NVNET - ok
22:16:43.0653 3868 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:16:43.0653 3868 nvraid - ok
22:16:43.0700 3868 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:16:43.0700 3868 nvstor - ok
22:16:43.0731 3868 [ 7C7EEF51979658CE15BBC04F96A77D56 ] nvstor64 C:\Windows\system32\DRIVERS\nvstor64.sys
22:16:43.0747 3868 nvstor64 - ok
22:16:43.0778 3868 [ 43BC8151893AE6AFE42E149D663C2221 ] nvsvc C:\Windows\system32\nvvsvc.exe
22:16:43.0778 3868 nvsvc - ok
22:16:43.0809 3868 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:16:43.0809 3868 nv_agp - ok
22:16:43.0825 3868 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
22:16:43.0825 3868 ohci1394 - ok
22:16:43.0856 3868 okaqbilq - ok
22:16:43.0872 3868 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:16:43.0872 3868 p2pimsvc - ok
22:16:43.0903 3868 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
22:16:43.0903 3868 p2psvc - ok
22:16:43.0934 3868 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
22:16:43.0934 3868 Parport - ok
22:16:43.0965 3868 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:16:43.0965 3868 partmgr - ok
22:16:43.0981 3868 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:16:43.0996 3868 PcaSvc - ok
22:16:44.0028 3868 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
22:16:44.0028 3868 pci - ok
22:16:44.0043 3868 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
22:16:44.0043 3868 pciide - ok
22:16:44.0059 3868 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
22:16:44.0074 3868 pcmcia - ok
22:16:44.0090 3868 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
22:16:44.0090 3868 pcw - ok
22:16:44.0121 3868 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:16:44.0121 3868 PEAUTH - ok
22:16:44.0199 3868 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
22:16:44.0215 3868 PerfHost - ok
22:16:44.0277 3868 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
22:16:44.0308 3868 pla - ok
22:16:44.0340 3868 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:16:44.0355 3868 PlugPlay - ok
22:16:44.0371 3868 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:16:44.0371 3868 PNRPAutoReg - ok
22:16:44.0386 3868 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:16:44.0386 3868 PNRPsvc - ok
22:16:44.0418 3868 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:16:44.0433 3868 PolicyAgent - ok
22:16:44.0464 3868 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
22:16:44.0464 3868 Power - ok
22:16:44.0496 3868 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:16:44.0496 3868 PptpMiniport - ok
22:16:44.0527 3868 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
22:16:44.0527 3868 Processor - ok
22:16:44.0574 3868 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
22:16:44.0574 3868 ProfSvc - ok
22:16:44.0589 3868 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:16:44.0589 3868 ProtectedStorage - ok
22:16:44.0636 3868 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:16:44.0636 3868 Psched - ok
22:16:44.0683 3868 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
22:16:44.0714 3868 ql2300 - ok
22:16:44.0730 3868 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
22:16:44.0745 3868 ql40xx - ok
22:16:44.0745 3868 qnepxaps - ok
22:16:44.0761 3868 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
22:16:44.0776 3868 QWAVE - ok
22:16:44.0792 3868 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:16:44.0792 3868 QWAVEdrv - ok
22:16:44.0808 3868 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:16:44.0808 3868 RasAcd - ok
22:16:44.0839 3868 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:16:44.0839 3868 RasAgileVpn - ok
22:16:44.0854 3868 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
22:16:44.0870 3868 RasAuto - ok
22:16:44.0870 3868 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:16:44.0886 3868 Rasl2tp - ok
22:16:44.0901 3868 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
22:16:44.0917 3868 RasMan - ok
22:16:44.0932 3868 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:16:44.0932 3868 RasPppoe - ok
22:16:44.0948 3868 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:16:44.0948 3868 RasSstp - ok
22:16:44.0979 3868 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:16:44.0979 3868 rdbss - ok
22:16:44.0995 3868 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:16:44.0995 3868 rdpbus - ok
22:16:45.0026 3868 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:16:45.0026 3868 RDPCDD - ok
22:16:45.0042 3868 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:16:45.0042 3868 RDPENCDD - ok
22:16:45.0057 3868 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:16:45.0057 3868 RDPREFMP - ok
22:16:45.0088 3868 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:16:45.0104 3868 RDPWD - ok
22:16:45.0135 3868 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:16:45.0135 3868 rdyboost - ok
22:16:45.0166 3868 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
22:16:45.0166 3868 RemoteAccess - ok
22:16:45.0182 3868 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:16:45.0182 3868 RemoteRegistry - ok
22:16:45.0198 3868 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:16:45.0198 3868 RpcEptMapper - ok
22:16:45.0213 3868 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
22:16:45.0213 3868 RpcLocator - ok
22:16:45.0260 3868 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
22:16:45.0276 3868 RpcSs - ok
22:16:45.0291 3868 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:16:45.0291 3868 rspndr - ok
22:16:45.0338 3868 [ FC00C0DE6DC83DE1B2B01420E2195B21 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys
22:16:45.0354 3868 RTL8192su - ok
22:16:45.0400 3868 [ 248ABD858FF7DCC966E5A54529DDD225 ] SaiHFF0C C:\Windows\system32\DRIVERS\SaiHFF0C.sys
22:16:45.0463 3868 SaiHFF0C - ok
22:16:45.0494 3868 [ 9E7E53891D1747A01F491AB25B95135D ] SaiMini C:\Windows\system32\DRIVERS\SaiMini.sys
22:16:45.0510 3868 SaiMini - ok
22:16:45.0556 3868 [ B3B86BE19A0CAF025F679C39FD21E735 ] SaiNtBus C:\Windows\system32\drivers\SaiBus.sys
22:16:45.0572 3868 SaiNtBus - ok
22:16:45.0603 3868 [ 547B16D072A3AFCE5807BE20C3F4734B ] SaiUFF0C C:\Windows\system32\DRIVERS\SaiUFF0C.sys
22:16:45.0619 3868 SaiUFF0C - ok
22:16:45.0634 3868 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
22:16:45.0634 3868 SamSs - ok
22:16:45.0759 3868 [ C7D53053541A448FEBB1373ABBAF79EF ] SBAMSvc C:\Program Files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe
22:16:45.0790 3868 SBAMSvc - ok
22:16:45.0853 3868 [ DB7F9394B2F2D446DF14D46C61B0E94B ] sbapifs C:\Windows\system32\DRIVERS\sbapifs.sys
22:16:45.0853 3868 sbapifs - ok
22:16:45.0915 3868 [ CDB954C736D51DC5FA712C039AF4F683 ] SbFw C:\Windows\system32\drivers\SbFw.sys
22:16:45.0931 3868 SbFw - ok
22:16:45.0946 3868 [ 5DE22E3CB6140213DA2E0599B08D525C ] SBFWIMCL C:\Windows\system32\DRIVERS\sbfwim.sys
22:16:45.0962 3868 SBFWIMCL - ok
22:16:45.0978 3868 [ 5DE22E3CB6140213DA2E0599B08D525C ] SBFWIMCLMP C:\Windows\system32\DRIVERS\SBFWIM.sys
22:16:45.0993 3868 SBFWIMCLMP - ok
22:16:46.0009 3868 [ A5BC45F8C2F30350E7566799C86B2F5D ] sbhips C:\Windows\system32\drivers\sbhips.sys
22:16:46.0024 3868 sbhips - ok
22:16:46.0056 3868 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:16:46.0056 3868 sbp2port - ok
22:16:46.0071 3868 [ FD833BEE2FD9BEFDC0AFD1941A306D9E ] SBRE C:\Windows\system32\drivers\SBREdrv.sys
22:16:46.0087 3868 SBRE - ok
22:16:46.0102 3868 [ F9955774A6BF0A5CA696F591C7B80A79 ] SbTis C:\Windows\system32\drivers\sbtis.sys
22:16:46.0102 3868 SbTis - ok
22:16:46.0118 3868 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:16:46.0134 3868 SCardSvr - ok
22:16:46.0149 3868 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:16:46.0149 3868 scfilter - ok
22:16:46.0196 3868 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
22:16:46.0212 3868 Schedule - ok
22:16:46.0243 3868 [ 6011CDF54BB6F4C69F38FACCDAD73D7E ] SCMNdisP C:\Windows\system32\DRIVERS\scmndisp.sys
22:16:46.0258 3868 SCMNdisP - ok
22:16:46.0305 3868 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
22:16:46.0305 3868 SCPolicySvc - ok
22:16:46.0336 3868 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:16:46.0336 3868 SDRSVC - ok
22:16:46.0430 3868 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
22:16:46.0430 3868 SeaPort - ok
22:16:46.0461 3868 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:16:46.0461 3868 secdrv - ok
22:16:46.0492 3868 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
22:16:46.0492 3868 seclogon - ok
22:16:46.0508 3868 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
22:16:46.0508 3868 SENS - ok
22:16:46.0524 3868 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:16:46.0539 3868 SensrSvc - ok
22:16:46.0555 3868 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:16:46.0555 3868 Serenum - ok
22:16:46.0570 3868 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:16:46.0586 3868 Serial - ok
22:16:46.0617 3868 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
22:16:46.0617 3868 sermouse - ok
22:16:46.0664 3868 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
22:16:46.0664 3868 SessionEnv - ok
22:16:46.0695 3868 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
22:16:46.0695 3868 sffdisk - ok
22:16:46.0711 3868 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:16:46.0726 3868 sffp_mmc - ok
22:16:46.0742 3868 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
22:16:46.0742 3868 sffp_sd - ok
22:16:46.0758 3868 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
22:16:46.0773 3868 sfloppy - ok
22:16:46.0789 3868 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:16:46.0804 3868 SharedAccess - ok
22:16:46.0836 3868 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:16:46.0851 3868 ShellHWDetection - ok
22:16:46.0882 3868 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:16:46.0898 3868 SiSRaid2 - ok
22:16:46.0914 3868 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
22:16:46.0914 3868 SiSRaid4 - ok
22:16:46.0960 3868 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:16:46.0976 3868 SkypeUpdate - ok
22:16:46.0992 3868 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:16:47.0007 3868 Smb - ok
22:16:47.0038 3868 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:16:47.0038 3868 SNMPTRAP - ok
22:16:47.0054 3868 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
22:16:47.0054 3868 spldr - ok
22:16:47.0101 3868 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
22:16:47.0101 3868 Spooler - ok
22:16:47.0210 3868 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
22:16:47.0257 3868 sppsvc - ok
22:16:47.0272 3868 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:16:47.0288 3868 sppuinotify - ok
22:16:47.0319 3868 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
22:16:47.0335 3868 srv - ok
22:16:47.0366 3868 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:16:47.0397 3868 srv2 - ok
22:16:47.0428 3868 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:16:47.0428 3868 srvnet - ok
22:16:47.0460 3868 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:16:47.0460 3868 SSDPSRV - ok
22:16:47.0475 3868 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:16:47.0475 3868 SstpSvc - ok
22:16:47.0538 3868 Steam Client Service - ok
22:16:47.0569 3868 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
22:16:47.0569 3868 stexstor - ok
22:16:47.0616 3868 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
22:16:47.0616 3868 stisvc - ok
22:16:47.0647 3868 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
22:16:47.0647 3868 swenum - ok
22:16:47.0678 3868 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
22:16:47.0678 3868 swprv - ok
22:16:47.0756 3868 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
22:16:47.0787 3868 SysMain - ok
22:16:47.0803 3868 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:16:47.0803 3868 TabletInputService - ok
22:16:47.0818 3868 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
22:16:47.0834 3868 TapiSrv - ok
22:16:47.0850 3868 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
22:16:47.0850 3868 TBS - ok
22:16:47.0928 3868 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:16:47.0990 3868 Tcpip - ok
22:16:48.0037 3868 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:16:48.0052 3868 TCPIP6 - ok
22:16:48.0084 3868 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:16:48.0099 3868 tcpipreg - ok
22:16:48.0115 3868 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:16:48.0115 3868 TDPIPE - ok
22:16:48.0146 3868 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:16:48.0146 3868 TDTCP - ok
22:16:48.0162 3868 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:16:48.0177 3868 tdx - ok
22:16:48.0177 3868 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
22:16:48.0193 3868 TermDD - ok
22:16:48.0208 3868 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
22:16:48.0224 3868 TermService - ok
22:16:48.0240 3868 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
22:16:48.0255 3868 Themes - ok
22:16:48.0271 3868 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
22:16:48.0271 3868 THREADORDER - ok
22:16:48.0286 3868 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
22:16:48.0302 3868 TrkWks - ok
22:16:48.0318 3868 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:16:48.0333 3868 TrustedInstaller - ok
22:16:48.0365 3868 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:16:48.0381 3868 tssecsrv - ok
22:16:48.0397 3868 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
22:16:48.0397 3868 TsUsbFlt - ok
22:16:48.0443 3868 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:16:48.0459 3868 tunnel - ok
22:16:48.0475 3868 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
22:16:48.0475 3868 uagp35 - ok
22:16:48.0506 3868 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:16:48.0506 3868 udfs - ok
22:16:48.0537 3868 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:16:48.0537 3868 UI0Detect - ok
22:16:48.0568 3868 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:16:48.0568 3868 uliagpkx - ok
22:16:48.0599 3868 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
22:16:48.0599 3868 umbus - ok
22:16:48.0615 3868 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
22:16:48.0631 3868 UmPass - ok
22:16:48.0677 3868 [ 70DDE3A86DBEB1D6C3C30AD687B1877A ] Updater Service C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
22:16:48.0677 3868 Updater Service - ok
22:16:48.0709 3868 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
22:16:48.0709 3868 upnphost - ok
22:16:48.0740 3868 [ AA33FC47ED58C34E6E9261E4F850B7EB ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
22:16:48.0755 3868 USBAAPL64 - ok
22:16:48.0787 3868 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
22:16:48.0787 3868 usbaudio - ok
22:16:48.0802 3868 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:16:48.0818 3868 usbccgp - ok
22:16:48.0833 3868 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:16:48.0849 3868 usbcir - ok
22:16:48.0865 3868 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
22:16:48.0865 3868 usbehci - ok
22:16:48.0896 3868 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:16:48.0896 3868 usbhub - ok
22:16:48.0911 3868 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
22:16:48.0927 3868 usbohci - ok
22:16:48.0943 3868 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:16:48.0943 3868 usbprint - ok
22:16:48.0958 3868 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS
22:16:48.0974 3868 USBSTOR - ok
22:16:48.0989 3868 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:16:48.0989 3868 usbuhci - ok
22:16:49.0005 3868 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
22:16:49.0021 3868 UxSms - ok
22:16:49.0036 3868 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
22:16:49.0036 3868 VaultSvc - ok
22:16:49.0036 3868 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
22:16:49.0052 3868 vdrvroot - ok
22:16:49.0083 3868 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
22:16:49.0099 3868 vds - ok
22:16:49.0114 3868 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:16:49.0114 3868 vga - ok
22:16:49.0130 3868 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
22:16:49.0130 3868 VgaSave - ok
22:16:49.0161 3868 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
22:16:49.0161 3868 vhdmp - ok
22:16:49.0177 3868 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
22:16:49.0177 3868 viaide - ok
22:16:49.0192 3868 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:16:49.0208 3868 volmgr - ok
22:16:49.0239 3868 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:16:49.0239 3868 volmgrx - ok
22:16:49.0255 3868 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:16:49.0270 3868 volsnap - ok
22:16:49.0301 3868 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
22:16:49.0301 3868 vsmraid - ok
22:16:49.0364 3868 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
22:16:49.0380 3868 VSS - ok
22:16:49.0412 3868 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:16:49.0427 3868 vwifibus - ok
22:16:49.0443 3868 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:16:49.0443 3868 vwififlt - ok
22:16:49.0474 3868 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
22:16:49.0474 3868 W32Time - ok
22:16:49.0490 3868 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
22:16:49.0490 3868 WacomPen - ok
22:16:49.0521 3868 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:16:49.0536 3868 WANARP - ok
22:16:49.0552 3868 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:16:49.0552 3868 Wanarpv6 - ok
22:16:49.0614 3868 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:16:49.0646 3868 WatAdminSvc - ok
22:16:49.0677 3868 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
22:16:49.0724 3868 wbengine - ok
22:16:49.0724 3868 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:16:49.0739 3868 WbioSrvc - ok
22:16:49.0770 3868 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:16:49.0786 3868 wcncsvc - ok
22:16:49.0786 3868 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:16:49.0802 3868 WcsPlugInService - ok
22:16:49.0802 3868 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
22:16:49.0817 3868 Wd - ok
22:16:49.0833 3868 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:16:49.0848 3868 Wdf01000 - ok
22:16:49.0848 3868 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:16:49.0864 3868 WdiServiceHost - ok
22:16:49.0864 3868 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:16:49.0880 3868 WdiSystemHost - ok
22:16:49.0911 3868 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
22:16:49.0926 3868 WebClient - ok
22:16:49.0926 3868 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:16:49.0942 3868 Wecsvc - ok
22:16:49.0958 3868 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:16:49.0958 3868 wercplsupport - ok
22:16:49.0989 3868 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
22:16:49.0989 3868 WerSvc - ok
22:16:50.0004 3868 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:16:50.0004 3868 WfpLwf - ok
22:16:50.0020 3868 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:16:50.0020 3868 WIMMount - ok
22:16:50.0051 3868 WinDefend - ok
22:16:50.0051 3868 WinHttpAutoProxySvc - ok
22:16:50.0098 3868 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:16:50.0114 3868 Winmgmt - ok
22:16:50.0160 3868 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
22:16:50.0223 3868 WinRM - ok
22:16:50.0285 3868 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
22:16:50.0301 3868 WinUsb - ok
22:16:50.0394 3868 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
22:16:50.0457 3868 Wlansvc - ok
22:16:50.0660 3868 [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:16:50.0675 3868 wlidsvc - ok
22:16:50.0722 3868 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
22:16:50.0722 3868 WmiAcpi - ok
22:16:50.0738 3868 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:16:50.0738 3868 wmiApSrv - ok
22:16:50.0753 3868 WMPNetworkSvc - ok
22:16:50.0784 3868 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:16:50.0800 3868 WPCSvc - ok
22:16:50.0831 3868 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:16:50.0847 3868 WPDBusEnum - ok
22:16:50.0862 3868 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:16:50.0878 3868 ws2ifsl - ok
22:16:50.0909 3868 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
22:16:50.0925 3868 wscsvc - ok
22:16:50.0925 3868 WSearch - ok
22:16:50.0987 3868 [ A2C4DC335656FB7A5A3AC076282534CB ] WSWNDA3100 C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe
22:16:51.0143 3868 WSWNDA3100 - ok
22:16:51.0237 3868 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
22:16:51.0268 3868 wuauserv - ok
22:16:51.0284 3868 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:16:51.0299 3868 WudfPf - ok
22:16:51.0330 3868 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:16:51.0330 3868 WUDFRd - ok
22:16:51.0346 3868 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:16:51.0346 3868 wudfsvc - ok
22:16:51.0362 3868 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
22:16:51.0377 3868 WwanSvc - ok
22:16:51.0440 3868 ================ Scan global ===============================
22:16:51.0471 3868 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
22:16:51.0502 3868 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
22:16:51.0518 3868 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
22:16:51.0549 3868 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
22:16:51.0580 3868 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
22:16:51.0596 3868 [Global] - ok
22:16:51.0596 3868 ================ Scan MBR ==================================
22:16:51.0611 3868 [ 70E629B51C16B3C007730C6AE57144C9 ] \Device\Harddisk0\DR0
22:16:55.0074 3868 \Device\Harddisk0\DR0 - ok
22:16:55.0074 3868 ================ Scan VBR ==================================
22:16:55.0074 3868 [ 0FEB5D9F5FEBD723DEDC8A80FB5375A7 ] \Device\Harddisk0\DR0\Partition1
22:16:55.0074 3868 \Device\Harddisk0\DR0\Partition1 - ok
22:16:55.0106 3868 [ 2EE552DFF804291268A0B85D2ABA629A ] \Device\Harddisk0\DR0\Partition2
22:16:55.0106 3868 \Device\Harddisk0\DR0\Partition2 - ok
22:16:55.0106 3868 ============================================================
22:16:55.0106 3868 Scan finished
22:16:55.0106 3868 ============================================================
22:16:55.0121 1584 Detected object count: 0
22:16:55.0121 1584 Actual detected object count: 0

#10 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 09:52 PM

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-08-23 22:18:22
-----------------------------
22:18:22.178 OS Version: Windows x64 6.1.7601 Service Pack 1
22:18:22.178 Number of processors: 2 586 0x602
22:18:22.178 ComputerName: TIM-PC UserName: Tim
22:18:25.001 Initialize success
22:19:30.085 AVAST engine defs: 12082400
22:20:19.889 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
22:20:19.889 Disk 0 Vendor: ST375052 CC44 Size: 715404MB BusType: 3
22:20:19.905 Disk 0 MBR read successfully
22:20:19.921 Disk 0 MBR scan
22:20:19.921 Disk 0 unknown MBR code
22:20:19.952 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 12288 MB offset 2048
22:20:20.014 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 25167872
22:20:20.139 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 703014 MB offset 25372672
22:20:20.248 Disk 0 scanning C:\Windows\system32\drivers
22:20:45.693 Service scanning
22:21:06.566 Service MSICDSetup D:\CDriver64.sys **LOCKED** 21
22:21:29.888 Modules scanning
22:21:29.903 Disk 0 trace - called modules:
22:21:29.919 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor64.sys
22:21:29.934 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c1d410]
22:21:29.950 3 CLASSPNP.SYS[fffff88001b7a43f] -> nt!IofCallDriver -> [0xfffffa80048aec20]
22:21:29.950 5 ACPI.sys[fffff88000e807a1] -> nt!IofCallDriver -> \Device\00000069[0xfffffa80048199c0]
22:21:37.266 AVAST engine scan C:\Windows
22:21:45.410 AVAST engine scan C:\Windows\system32
22:30:00.518 AVAST engine scan C:\Windows\system32\drivers
22:30:29.690 AVAST engine scan C:\Users\Tim
22:44:58.487 AVAST engine scan C:\ProgramData
22:48:46.356 Scan finished successfully
22:50:35.899 Disk 0 MBR has been saved successfully to "C:\Users\Tim\Desktop\MBR.dat"
22:50:36.009 The log file has been saved successfully to "C:\Users\Tim\Desktop\aswMBR.txt"


See any issues yet? :/

#11 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 23 August 2012 - 10:08 PM

Hello

See any issues yet? :/ - not really.

Lets get a deeper look into the system and see if something shows up.

Download and run OTL

Download OTL by Old Timer and save it to your Desktop.
  • Double click on OTL.exe to run it.
  • Under Output, ensure that Minimal Output is selected.
  • Under Extra Registry section, select Use SafeList.
  • Click the Scan All Users checkbox.
  • Click on Run Scan at the top left hand corner.
  • When done, two Notepad files will open.
    • OTL.txt <-- Will be opened and the that I need posted back here
    • Extra.txt <-- Will be minimized - save this one on your desktop in case I ask for it later
  • Please post the contents of OTL.txt in your next reply.

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#12 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 23 August 2012 - 10:53 PM

Yea, i have been trying for a while to find whats causing this, im usually pretty good at finding and getting rid of stuff but this is really ellusive and anoying, running the olt scan now.

#13 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 23 August 2012 - 11:13 PM

Don't worry I SHOULD find it sooner or later



gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#14 stormingcalm

stormingcalm
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:04:01 AM

Posted 24 August 2012 - 12:48 AM

OTL logfile created on: 8/23/2012 11:38:35 PM - Run 1
OTL by OldTimer - Version 3.2.58.1 Folder = C:\Users\Tim\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 2.43 Gb Available Physical Memory | 60.65% Memory free
8.00 Gb Paging File | 6.25 Gb Available in Paging File | 78.13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 686.54 Gb Total Space | 514.37 Gb Free Space | 74.92% Space Free | Partition Type: NTFS

Computer Name: TIM-PC | User Name: Tim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Tim\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
PRC - C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
PRC - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe (Lavasoft Limited)
PRC - C:\Program Files (x86)\Ad-Aware Antivirus\AdAware.exe (Lavasoft Limited)
PRC - C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
PRC - C:\Program Files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe (Sunbelt Software)
PRC - C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
PRC - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD)
PRC - C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe ()
PRC - C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe (Acer Incorporated)
PRC - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe (Acer)


========== Modules (No Company Name) ==========

MOD - C:\Program Files (x86)\Steam\bin\libcef.dll ()
MOD - C:\Program Files (x86)\Steam\bin\chromehtml.dll ()
MOD - C:\Program Files (x86)\Steam\bin\avutil-51.dll ()
MOD - C:\Program Files (x86)\Steam\bin\avformat-53.dll ()
MOD - C:\Program Files (x86)\Steam\bin\avcodec-53.dll ()
MOD - C:\Program Files (x86)\Ad-Aware Antivirus\ThreatWork.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe ()
MOD - C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvcLib.dll ()


========== Win32 Services (SafeList) ==========

SRV:64bit: - (AMD FUEL Service) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (NisSrv) -- c:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
SRV:64bit: - (MsMpSvc) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (Updater Service) -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe (Acer)
SRV:64bit: - (ForceWare Intelligent Application Manager (IAM) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe ()
SRV:64bit: - (nSvcIp) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe ()
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (Ad-Aware Service) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe (Lavasoft Limited)
SRV - (SBAMSvc) -- C:\Program Files (x86)\Ad-Aware Antivirus\Engine\SBAMSvc.exe (Sunbelt Software)
SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
SRV - (SeaPort) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
SRV - (GamesAppService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.)
SRV - (WSWNDA3100) -- C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe ()
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (Greg_Service) -- C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe (Acer Incorporated)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (Advanced Micro Devices)
DRV:64bit: - (NisDrv) -- C:\Windows\SysNative\drivers\NisDrvWFP.sys (Microsoft Corporation)
DRV:64bit: - (cpuz135) -- C:\Windows\SysNative\drivers\cpuz135_x64.sys (CPUID)
DRV:64bit: - (AODDriver4.1) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys (Advanced Micro Devices)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (sbapifs) -- C:\Windows\SysNative\drivers\sbapifs.sys (Sunbelt Software)
DRV:64bit: - (SBRE) -- C:\Windows\SysNative\drivers\SBREDrv.sys (Sunbelt Software)
DRV:64bit: - (SbFw) -- C:\Windows\SysNative\drivers\SbFw.sys (Sunbelt Software, Inc.)
DRV:64bit: - (SbTis) -- C:\Windows\SysNative\drivers\sbtis.sys (Sunbelt Software, Inc.)
DRV:64bit: - (sbhips) -- C:\Windows\SysNative\drivers\sbhips.sys (Sunbelt Software, Inc.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (SBFWIMCLMP) -- C:\Windows\SysNative\drivers\SbFwIm.sys (Sunbelt Software, Inc.)
DRV:64bit: - (SBFWIMCL) -- C:\Windows\SysNative\drivers\SbFwIm.sys (Sunbelt Software, Inc.)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (NVNET) -- C:\Windows\SysNative\drivers\nvmf6264.sys (NVIDIA Corporation)
DRV:64bit: - (SaiNtBus) -- C:\Windows\SysNative\drivers\SaiBus.sys (Saitek)
DRV:64bit: - (SaiMini) -- C:\Windows\SysNative\drivers\SaiMini.sys (Saitek)
DRV:64bit: - (dc3d) -- C:\Windows\SysNative\drivers\dc3d.sys (Microsoft Corporation)
DRV:64bit: - (amdiox64) -- C:\Windows\SysNative\drivers\amdiox64.sys (Advanced Micro Devices)
DRV:64bit: - (RTL8192su) -- C:\Windows\SysNative\drivers\RTL8192su.sys (Realtek Semiconductor Corporation )
DRV:64bit: - (BCMH43XX) -- C:\Windows\SysNative\drivers\bcmwlhigh664.sys (Broadcom Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (NVENETFD) -- C:\Windows\SysNative\drivers\nvm62x64.sys (NVIDIA Corporation)
DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (NuidFltr) -- C:\Windows\SysNative\drivers\nuidfltr.sys (Microsoft Corporation)
DRV:64bit: - (SaiHFF0C) -- C:\Windows\SysNative\drivers\SaiHFF0C.sys (Saitek)
DRV:64bit: - (SaiUFF0C) -- C:\Windows\SysNative\drivers\SaiUFF0C.sys (Saitek)
DRV:64bit: - (SCMNdisP) -- C:\Windows\SysNative\drivers\SCMNdisP.sys (Windows ® Codename Longhorn DDK provider)
DRV - (SBRE) -- C:\Windows\SysWOW64\drivers\SBREDrv.sys (Sunbelt Software)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emachines.com/rdr.aspx?b=ACEW&l=0409&m=et1331g&r=17360410g206p0405v105r4471s29s
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACEW
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ACEW_enUS375
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes\{D03E789C-99BB-447A-88BC-1F87FA71C524}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=FWV5&o=14193&src=kw&q={searchTerms}&locale=en_US&apn_ptnrs=FM&apn_dtid=TES002RAUS&apn_uid=11a6f961-e05c-452f-9343-918558d31288&apn_sauid=77133DFC-0280-43E8-8FAA-7780FD5DD88C
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}: "URL" = http://search.yahoo.com/search?p={searchTerms}
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaulturl: "http://search.yahoo.com/search?fr=ffsp1&p="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.ask.com/?l=dis&o=14196"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: FFToolbar@bitdefender.com:2.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.13.0.17701
FF - prefs.js..network.proxy.no_proxies_on: "localhost,127.0.0.1"
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.6.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.6.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Tim\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Tim\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/06/13 09:56:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/08/19 16:19:18 | 000,000,000 | ---D | M]

[2010/08/24 00:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\Extensions
[2010/06/29 19:24:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
[2012/04/23 04:12:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\extensions
[2012/04/23 04:12:49 | 000,000,000 | ---D | M] (Ad-Aware Security Toolbar) -- C:\Users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c}
[2011/11/25 08:49:18 | 000,002,568 | ---- | M] () -- C:\Users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\searchplugins\askcom.xml
[2012/07/02 18:42:40 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/11/09 01:58:19 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/09/03 13:31:12 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/09/03 00:49:07 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2012/07/02 18:42:40 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Tim\AppData\Local\Google\Chrome\Application\21.0.1180.83\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Tim\AppData\Local\Google\Chrome\Application\21.0.1180.83\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Tim\AppData\Local\Google\Chrome\Application\21.0.1180.83\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Tim\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Tim\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Tim\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\Tim\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Users\Tim\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/08/23 20:58:49 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Ad-Aware Security Toolbar) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll ()
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Ad-Aware Security Toolbar) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll ()
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [ProfilerU] C:\Program Files\Saitek\SD6\Software\ProfilerU.exe (Saitek)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SaiMfd] C:\Program Files\Saitek\SD6\Software\SaiMfd.exe (Saitek)
O4 - HKLM..\Run: [Ad-Aware Antivirus] C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001..\Run: [EADM] C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
O4 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001..\Run: [HydraVisionDesktopManager] C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD)
O4 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001..\Run: [Steam] C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Reg Error: Value error.)
O16 - DPF: {8F6E7FB2-E56B-4F66-A4E1-9765D2565280} http://www.worldwinner.com/games/launcher/ie/v2.22.01.0/iewwload.cab (WorldWinner ActiveX Launcher Control)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab (Java Plug-in 10.6.2)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab (SysInfo Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{272A523F-0910-4E25-BD6F-58E46D7E2BB3}: DhcpNameServer = 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{86901005-33F7-40D9-8FED-CAE95D89712C}: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8FD720BB-53D2-4871-BAD1-0A0DB76E85FD}: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C8AD1375-CE44-4881-B3AE-F99F254965B8}: DhcpNameServer = 209.18.47.61 209.18.47.62
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/08/23 22:15:18 | 000,000,000 | ---D | C] -- C:\Users\Tim\Desktop\Tools
[2012/08/23 22:04:59 | 004,731,392 | ---- | C] (AVAST Software) -- C:\Users\Tim\Desktop\aswMBR.exe
[2012/08/23 22:04:51 | 002,212,440 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Tim\Desktop\tdsskiller.exe
[2012/08/23 21:43:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012/08/23 21:42:50 | 000,246,760 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012/08/23 21:42:38 | 000,095,208 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2012/08/23 21:42:37 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012/08/23 21:42:37 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012/08/23 21:10:36 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/08/23 21:07:43 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/08/23 20:38:19 | 004,736,524 | R--- | C] (Swearware) -- C:\Users\Tim\Desktop\ComboFix.exe
[2012/08/20 23:15:00 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
[2012/08/20 23:00:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2012/08/20 23:00:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
[2012/08/20 23:00:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam
[2012/08/19 15:23:45 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2012/08/19 15:23:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2012/08/19 15:22:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2012/08/15 10:49:23 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2012/08/15 10:49:23 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2012/08/15 10:49:21 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2012/08/15 10:49:20 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2012/08/15 10:49:16 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2012/08/15 10:49:15 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2012/08/15 10:49:14 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2012/08/15 10:49:13 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2012/08/15 10:49:11 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2012/08/15 10:49:10 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2012/08/15 10:49:09 | 002,312,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2012/08/15 10:49:05 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2012/08/15 10:49:04 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2012/08/15 09:11:53 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2012/08/15 09:11:33 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2012/08/15 09:11:29 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2012/08/15 09:11:25 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2012/08/15 09:11:20 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2012/08/15 09:11:18 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2012/08/15 09:11:16 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2012/08/15 09:11:00 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2012/08/13 17:56:01 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core
[2012/08/13 17:41:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin Games
[2012/08/13 17:40:58 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Local\Origin
[2012/08/13 17:40:57 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\Origin
[2012/08/13 17:40:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
[2012/08/13 17:40:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin
[2012/08/13 17:39:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin
[2012/08/11 23:51:55 | 000,000,000 | ---D | C] -- C:\Users\Tim\Documents\My Spore Creations
[2012/08/11 23:51:41 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\SPORE
[2012/08/11 23:48:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2012/08/11 23:48:05 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Local\Downloaded Installations
[2012/08/11 23:39:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts
[2012/08/04 21:42:18 | 000,000,000 | ---D | C] -- C:\Users\Tim\Documents\OpenTTD
[2012/08/03 00:19:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
[2012/07/28 00:09:20 | 005,538,984 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
[2012/07/28 00:07:44 | 010,278,912 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2012/07/27 23:43:12 | 000,070,144 | ---- | C] (AMD) -- C:\Windows\SysNative\coinst_8.982.dll
[2012/07/27 23:19:34 | 024,935,424 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2012/07/27 22:50:10 | 020,546,560 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2012/07/27 22:47:24 | 000,075,776 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2012/07/27 22:47:16 | 000,065,024 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2012/07/27 22:47:10 | 000,063,488 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2012/07/27 22:47:06 | 000,056,320 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2012/07/27 22:46:56 | 016,464,896 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2012/07/27 22:46:06 | 013,013,504 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2012/07/27 22:15:50 | 000,163,840 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2012/07/27 22:15:42 | 000,931,328 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
[2012/07/27 22:13:56 | 001,100,288 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\aticfx64.dll
[2012/07/27 22:10:40 | 000,442,368 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\ATIDEMGX.dll
[2012/07/27 22:10:34 | 000,534,528 | ---- | C] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2012/07/27 22:09:44 | 000,239,616 | ---- | C] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2012/07/27 22:08:20 | 000,120,320 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2012/07/27 22:08:04 | 000,021,504 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2012/07/27 22:07:58 | 000,059,392 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atiedu64.dll
[2012/07/27 22:07:52 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\ati2edxx.dll
[2012/07/27 22:07:10 | 006,430,208 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2012/07/27 21:51:12 | 007,052,288 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atidxx64.dll
[2012/07/27 21:41:32 | 004,266,496 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2012/07/27 21:35:10 | 000,051,200 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2012/07/27 21:35:08 | 000,046,080 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2012/07/27 21:35:02 | 000,044,544 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2012/07/27 21:35:00 | 000,044,032 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2012/07/27 21:34:48 | 016,034,304 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2012/07/27 21:32:32 | 004,751,872 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
[2012/07/27 21:30:10 | 013,605,888 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2012/07/27 21:25:52 | 006,676,480 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2012/07/27 21:15:32 | 000,540,160 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2012/07/27 21:15:22 | 000,368,640 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2012/07/27 21:15:12 | 000,017,920 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2012/07/27 21:15:08 | 000,014,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2012/07/27 21:15:08 | 000,014,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2012/07/27 21:15:04 | 000,041,984 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2012/07/27 21:14:56 | 000,033,280 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2012/07/27 21:14:46 | 000,368,640 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2012/07/27 21:13:48 | 000,109,568 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2012/07/27 21:13:40 | 000,103,936 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2012/07/27 21:13:32 | 000,083,456 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
[2012/07/27 21:12:54 | 000,053,248 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2012/07/27 21:08:42 | 000,056,320 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2012/07/27 21:08:42 | 000,056,320 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2012/07/27 21:08:36 | 000,056,832 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2012/07/27 21:08:36 | 000,056,832 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012/08/23 23:54:01 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/08/23 23:19:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-402035426-1599880845-4127718658-1001UA.job
[2012/08/23 22:50:36 | 000,000,512 | ---- | M] () -- C:\Users\Tim\Desktop\MBR.dat
[2012/08/23 22:11:41 | 000,007,605 | ---- | M] () -- C:\Users\Tim\AppData\Local\Resmon.ResmonCfg
[2012/08/23 22:05:24 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Tim\Desktop\aswMBR.exe
[2012/08/23 22:04:59 | 002,212,440 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Tim\Desktop\tdsskiller.exe
[2012/08/23 21:42:24 | 000,095,208 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2012/08/23 21:42:19 | 000,246,760 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012/08/23 21:42:19 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012/08/23 21:42:18 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012/08/23 21:42:16 | 000,821,736 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npdeployJava1.dll
[2012/08/23 21:42:16 | 000,746,984 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2012/08/23 21:18:11 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/23 21:18:11 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/23 21:10:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/08/23 21:10:23 | 3220,725,760 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/23 20:58:49 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/08/23 20:38:24 | 004,736,524 | R--- | M] (Swearware) -- C:\Users\Tim\Desktop\ComboFix.exe
[2012/08/23 10:51:01 | 000,000,221 | ---- | M] () -- C:\Users\Tim\Desktop\Unreal Tournament Game of the Year Edition.url
[2012/08/23 10:19:00 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-402035426-1599880845-4127718658-1001Core.job
[2012/08/22 18:59:12 | 000,000,884 | ---- | M] () -- C:\Users\Tim\Desktop\World of Warcraft.lnk
[2012/08/21 21:57:00 | 000,000,220 | ---- | M] () -- C:\Users\Tim\Desktop\Return to Castle Wolfenstein.url
[2012/08/21 18:21:47 | 000,002,441 | ---- | M] () -- C:\Users\Tim\Desktop\Google Chrome.lnk
[2012/08/21 11:56:09 | 000,000,221 | ---- | M] () -- C:\Users\Tim\Desktop\Red Faction II.url
[2012/08/20 23:00:48 | 000,000,880 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk
[2012/08/19 16:19:19 | 000,001,977 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2012/08/19 14:55:38 | 000,000,000 | ---- | M] () -- C:\Users\Tim\defogger_reenable
[2012/08/17 19:20:44 | 000,021,760 | ---- | M] () -- C:\Users\Tim\Documents\cc_20120817_192031.reg
[2012/08/15 10:56:32 | 000,341,224 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/08/14 20:55:10 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012/08/14 20:55:10 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012/08/13 17:40:57 | 000,001,815 | ---- | M] () -- C:\Windows\WinInit.Ini
[2012/08/13 17:40:46 | 000,000,942 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk
[2012/08/12 01:03:17 | 000,000,190 | ---- | M] () -- C:\Users\Tim\Desktop\SPORE™.lnk
[2012/08/11 23:48:43 | 000,001,240 | ---- | M] () -- C:\Windows\SysWow64\ealregsnapshot1.reg
[2012/08/08 12:05:50 | 000,000,843 | ---- | M] () -- C:\Users\Public\Desktop\OpenTTD.lnk
[2012/08/03 00:28:19 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\StarCraft II.lnk
[2012/08/02 13:43:34 | 000,003,494 | ---- | M] () -- C:\Users\Tim\Documents\cc_20120802_134325.reg
[2012/07/30 22:11:18 | 001,231,481 | ---- | M] () -- C:\Users\Tim\Documents\Huge_melee.SC2Map
[2012/07/29 21:43:40 | 000,000,460 | ---- | M] () -- C:\Users\Tim\Documents\cc_20120729_214336.reg
[2012/07/28 21:03:15 | 000,000,798 | ---- | M] () -- C:\Windows\unins000.dat
[2012/07/28 21:03:11 | 000,715,038 | ---- | M] () -- C:\Windows\unins000.exe
[2012/07/28 00:09:20 | 005,538,984 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
[2012/07/28 00:07:44 | 010,278,912 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2012/07/27 23:43:12 | 000,070,144 | ---- | M] (AMD) -- C:\Windows\SysNative\coinst_8.982.dll
[2012/07/27 23:19:34 | 024,935,424 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2012/07/27 22:50:10 | 020,546,560 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2012/07/27 22:47:40 | 000,187,392 | ---- | M] () -- C:\Windows\SysNative\clinfo.exe
[2012/07/27 22:47:24 | 000,075,776 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2012/07/27 22:47:16 | 000,065,024 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2012/07/27 22:47:10 | 000,063,488 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2012/07/27 22:47:06 | 000,056,320 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2012/07/27 22:46:56 | 016,464,896 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2012/07/27 22:46:06 | 013,013,504 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2012/07/27 22:17:00 | 000,268,728 | ---- | M] () -- C:\Windows\SysWow64\atiapfxx.blb
[2012/07/27 22:17:00 | 000,268,728 | ---- | M] () -- C:\Windows\SysNative\atiapfxx.blb
[2012/07/27 22:15:50 | 000,163,840 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2012/07/27 22:15:42 | 000,931,328 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
[2012/07/27 22:13:56 | 001,100,288 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\aticfx64.dll
[2012/07/27 22:10:40 | 000,442,368 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\ATIDEMGX.dll
[2012/07/27 22:10:34 | 000,534,528 | ---- | M] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2012/07/27 22:09:44 | 000,239,616 | ---- | M] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2012/07/27 22:08:20 | 000,120,320 | ---- | M] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2012/07/27 22:08:04 | 000,021,504 | ---- | M] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2012/07/27 22:07:58 | 000,059,392 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atiedu64.dll
[2012/07/27 22:07:52 | 000,043,520 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\ati2edxx.dll
[2012/07/27 22:07:10 | 006,430,208 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2012/07/27 21:51:12 | 007,052,288 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atidxx64.dll
[2012/07/27 21:41:32 | 004,266,496 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2012/07/27 21:39:50 | 003,150,560 | ---- | M] () -- C:\Windows\SysNative\atiumd6a.cap
[2012/07/27 21:35:10 | 000,051,200 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2012/07/27 21:35:08 | 000,046,080 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2012/07/27 21:35:02 | 000,044,544 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2012/07/27 21:35:00 | 000,044,032 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2012/07/27 21:34:48 | 016,034,304 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2012/07/27 21:32:32 | 004,751,872 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
[2012/07/27 21:30:54 | 003,187,136 | ---- | M] () -- C:\Windows\SysWow64\atiumdva.cap
[2012/07/27 21:30:10 | 013,605,888 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2012/07/27 21:25:52 | 006,676,480 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2012/07/27 21:15:32 | 000,540,160 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2012/07/27 21:15:22 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2012/07/27 21:15:12 | 000,017,920 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2012/07/27 21:15:08 | 000,014,848 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2012/07/27 21:15:08 | 000,014,848 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2012/07/27 21:15:04 | 000,041,984 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2012/07/27 21:14:56 | 000,033,280 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2012/07/27 21:14:46 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2012/07/27 21:13:54 | 000,129,536 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiuxp64.dll
[2012/07/27 21:13:48 | 000,109,568 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2012/07/27 21:13:40 | 000,103,936 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2012/07/27 21:13:32 | 000,083,456 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
[2012/07/27 21:12:54 | 000,053,248 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2012/07/27 21:08:42 | 000,056,320 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2012/07/27 21:08:42 | 000,056,320 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2012/07/27 21:08:36 | 000,056,832 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2012/07/27 21:08:36 | 000,056,832 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2012/07/27 20:30:09 | 000,000,000 | ---- | M] () -- C:\Users\Tim\Desktop\New Bitmap Image.bmp
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012/08/23 22:50:35 | 000,000,512 | ---- | C] () -- C:\Users\Tim\Desktop\MBR.dat
[2012/08/23 10:51:01 | 000,000,221 | ---- | C] () -- C:\Users\Tim\Desktop\Unreal Tournament Game of the Year Edition.url
[2012/08/21 21:57:00 | 000,000,220 | ---- | C] () -- C:\Users\Tim\Desktop\Return to Castle Wolfenstein.url
[2012/08/21 11:56:09 | 000,000,221 | ---- | C] () -- C:\Users\Tim\Desktop\Red Faction II.url
[2012/08/20 23:00:48 | 000,000,880 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk
[2012/08/19 14:55:38 | 000,000,000 | ---- | C] () -- C:\Users\Tim\defogger_reenable
[2012/08/17 19:20:33 | 000,021,760 | ---- | C] () -- C:\Users\Tim\Documents\cc_20120817_192031.reg
[2012/08/13 17:40:46 | 000,000,942 | ---- | C] () -- C:\Users\Public\Desktop\Origin.lnk
[2012/08/12 01:03:17 | 000,000,190 | ---- | C] () -- C:\Users\Tim\Desktop\SPORE™.lnk
[2012/08/11 23:48:43 | 000,001,240 | ---- | C] () -- C:\Windows\SysWow64\ealregsnapshot1.reg
[2012/08/04 21:42:05 | 000,000,843 | ---- | C] () -- C:\Users\Public\Desktop\OpenTTD.lnk
[2012/08/02 13:43:27 | 000,003,494 | ---- | C] () -- C:\Users\Tim\Documents\cc_20120802_134325.reg
[2012/07/30 22:09:18 | 001,231,481 | ---- | C] () -- C:\Users\Tim\Documents\Huge_melee.SC2Map
[2012/07/29 21:43:38 | 000,000,460 | ---- | C] () -- C:\Users\Tim\Documents\cc_20120729_214336.reg
[2012/07/28 21:03:14 | 000,715,038 | ---- | C] () -- C:\Windows\unins000.exe
[2012/07/28 21:03:14 | 000,000,798 | ---- | C] () -- C:\Windows\unins000.dat
[2012/07/27 22:47:40 | 000,187,392 | ---- | C] () -- C:\Windows\SysNative\clinfo.exe
[2012/07/27 22:17:00 | 000,268,728 | ---- | C] () -- C:\Windows\SysWow64\atiapfxx.blb
[2012/07/27 22:17:00 | 000,268,728 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
[2012/07/27 21:39:50 | 003,150,560 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
[2012/07/27 21:30:54 | 003,187,136 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
[2012/07/27 20:30:09 | 000,000,000 | ---- | C] () -- C:\Users\Tim\Desktop\New Bitmap Image.bmp
[2012/06/15 10:01:30 | 000,000,019 | ---- | C] () -- C:\Windows\popcinfo.dat
[2012/05/11 23:37:36 | 000,000,410 | ---- | C] () -- C:\Users\Tim\AppData\Roaming\wklnhst.dat
[2012/05/10 01:39:05 | 000,066,936 | -HS- | C] () -- C:\Windows\dlinfo_0.drv
[2012/05/10 01:37:11 | 000,086,528 | ---- | C] () -- C:\Windows\bnetunin.exe
[2012/04/23 06:38:15 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/04/23 06:38:15 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/04/23 06:38:14 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/04/23 06:38:14 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/04/23 06:38:14 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/04/05 21:29:34 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/04/05 21:29:34 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/03/09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/02/04 17:26:57 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011/09/12 18:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/08/11 20:59:21 | 000,112,384 | ---- | C] () -- C:\ProgramData\bdinstall.bin
[2011/08/11 15:42:47 | 000,017,956 | -HS- | C] () -- C:\ProgramData\8t4571l7y6muy4s5xn3eks4jb
[2011/08/11 15:42:47 | 000,017,952 | -HS- | C] () -- C:\Users\Tim\AppData\Local\8t4571l7y6muy4s5xn3eks4jb
[2011/04/17 15:32:29 | 000,743,538 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/05/13 12:18:47 | 000,007,605 | ---- | C] () -- C:\Users\Tim\AppData\Local\Resmon.ResmonCfg

========== Files - Unicode (All) ==========
[2012/04/23 03:40:13 | 000,000,000 | ---- | M] ()(C:\Windows\SysNative\?????) -- C:\Windows\SysNative\獷楬汢捯污
[2012/04/23 03:39:18 | 000,000,000 | ---- | C] ()(C:\Windows\SysNative\?????) -- C:\Windows\SysNative\獷楬汢捯污

========== Alternate Data Streams ==========

@Alternate Data Stream - 16 bytes -> C:\Users\Tim\Downloads:Shareaza.GUID
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:DFC5A2B2

< End of report >

OTL Extras logfile created on: 8/23/2012 11:38:35 PM - Run 1
OTL by OldTimer - Version 3.2.58.1 Folder = C:\Users\Tim\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 2.43 Gb Available Physical Memory | 60.65% Memory free
8.00 Gb Paging File | 6.25 Gb Available in Paging File | 78.13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 686.54 Gb Total Space | 514.37 Gb Free Space | 74.92% Space Free | Partition Type: NTFS

Computer Name: TIM-PC | User Name: Tim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01F9B573-42A1-40B7-9DD6-3F710BC58E3E}" = lport=138 | protocol=17 | dir=in | app=system |
"{06BC11C4-211A-41C3-A536-3C330DF6E1C2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{25AF6F3A-3A26-4DC9-9A1D-20F9760B91A3}" = rport=138 | protocol=17 | dir=out | app=system |
"{2BDAB908-780F-43E9-869F-2A3DA38FCCB6}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{2F6BE3A7-9B56-49BB-AFB7-878EFFF09220}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{33913B54-202C-4053-8B13-E7A7DE86E35D}" = rport=10243 | protocol=6 | dir=out | app=system |
"{348F1358-0940-4D53-A9CB-909C79A8D7CD}" = lport=2869 | protocol=6 | dir=in | app=system |
"{35870F3A-25C0-4AE0-BD29-D02CBEBFF8CC}" = lport=139 | protocol=6 | dir=in | app=system |
"{36BC6F3B-F6A9-42C8-A5FE-D7580B13A8FD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{37A83D9F-7C6C-4511-B223-A9E747C6ED21}" = lport=137 | protocol=17 | dir=in | app=system |
"{540512B3-18C8-493B-A610-9CDABB80645B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5724385F-E536-4BF5-B6E1-0AF202EF83BB}" = lport=2869 | protocol=6 | dir=in | app=system |
"{57C38C24-6BA4-423D-82E9-F80D79B3EBC8}" = rport=445 | protocol=6 | dir=out | app=system |
"{68F81D1C-F0C3-4E22-8675-2CFC4BA327BC}" = rport=137 | protocol=17 | dir=out | app=system |
"{7565DDF5-9305-4D69-8624-6B02D3CACDED}" = lport=445 | protocol=6 | dir=in | app=system |
"{7CCA5FF1-1609-496B-B1FA-AD3D126CC41C}" = rport=139 | protocol=6 | dir=out | app=system |
"{7FF24D31-F8B5-4B31-88F7-B4F123970B85}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9C368A3E-88CF-411F-8D97-5F867BDC605C}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A5E193E0-9A2D-4644-8E57-9CA44E18CFC8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A7C779E8-409E-4DC6-AEBB-A329952CF9EA}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C235DE67-F433-4B57-8B07-FE3AC9D1B994}" = lport=10243 | protocol=6 | dir=in | app=system |
"{D86E3B98-9DBF-4AB8-B9AE-8222C4FBA1F2}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FEFA77AC-15D4-40F6-A9E5-F2AD6FF37031}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00E5B486-5B45-4762-9CD9-7A0F6B9F9C7F}" = protocol=17 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{05DF9811-2DE3-49D6-BF5E-0A8702FCBF85}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{0CDA6D8D-D4E8-480E-A0BE-59035E0AB05F}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization iv colonization\colonization.exe |
"{0CE529B4-0723-4A8A-BAFD-24AB73E15BAB}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{0E8E780A-6B1B-4A0F-A1DA-29BC99A5BEE1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{0F8DE6A6-B986-4F9D-84F1-E6D3B48E9A04}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{10A480C5-1394-47EC-8293-79B34B7DEBB5}" = protocol=17 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"{10CFCAF8-737F-403E-934F-70EFB4293DEC}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{16123FA2-87AC-4326-B690-B2B5E252FE5B}" = protocol=6 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe |
"{16B2F69C-5669-4F7C-A715-B311043D439E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{16E92766-02E2-4E65-A87C-A40C121413A9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{17FD9173-E813-42DB-8AD3-6C454A49309B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1A1C0F28-53F2-449D-89E2-BC186A91A94B}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe |
"{1C28B41E-CF6A-46B2-BC3C-515021EAFEDE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{28059C0D-DFA4-437B-84BD-D97CFA2442AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unreal tournament\system\unrealtournament.exe |
"{2A7940F1-E037-4589-B695-30C06D5EDF9C}" = protocol=6 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii public test.exe |
"{37D9D619-3D68-4CCB-950E-C949E4589150}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{3DD4CACA-02AC-4D82-B262-10F8858AE957}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{41398323-09CA-4EF6-A25D-15966293371D}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization iv colonization\colonization.exe |
"{471CDDA1-FA48-4168-B5D3-4F781829ABF3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\return to castle wolfenstein\wolfmp.exe |
"{4A70B3F3-35C4-40A1-9F65-AC694C3F1A39}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{4E3D0D92-7593-449B-93DF-DED93F71152E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\red faction ii\red faction ii.exe |
"{5C84B800-9E26-49DE-AD29-0F4DC2740F91}" = protocol=17 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii public test.exe |
"{64F2467C-5BF9-484C-A785-9E3B4B067FDA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6BF42ED6-2F71-432E-B3D0-6D2F072A8CE2}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{736E4982-A400-46C2-B71A-346785902ADE}" = protocol=6 | dir=in | app=c:\program files\ventrilo\ventrilo.exe |
"{7A296BB1-0489-44D7-B2E6-795FE0F7F08B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unreal tournament\system\unrealtournament.exe |
"{7D088235-125A-47EF-8C58-D684257DE102}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\beyond the sword\civ4beyondsword.exe |
"{803604BA-09FB-4817-A54C-3D63D06478ED}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\warlords\civ4warlords.exe |
"{85F96276-5A37-4EAA-B08C-C50C5F7C1315}" = protocol=6 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"{87401E94-DE48-4223-A03C-5BD07EE77822}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe |
"{87D6FA03-9463-4C99-901E-A1D3BD51F446}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\return to castle wolfenstein\wolfsp.exe |
"{89B3C4FC-7590-4FCF-8E90-C3AA710F89E3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe |
"{8C285628-81D9-4805-BED7-C1BF2AD47A0D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\red faction ii\red faction ii.exe |
"{8C2A80D3-EB25-4984-BA5A-B658822BD9E8}" = protocol=6 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii.exe |
"{8F205B47-169A-4A87-8619-058CA6728F3B}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\civilization4.exe |
"{9002825C-3142-45A8-832D-579BA6A5678C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{96DADCA0-47A0-41AA-926B-9CAF8B661865}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\beyond the sword\civ4beyondsword.exe |
"{972B345A-838F-4A28-849C-99F6449B3014}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\warlords\civ4warlords.exe |
"{99267EBB-4F99-4DD1-AA06-FAA5B3820FAC}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{9B9DC54D-30DD-4914-96C1-A043C58BDF7E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\return to castle wolfenstein\wolfsp.exe |
"{A5E41C25-B57B-4300-A8B5-96E69C3E647B}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{A9166EA5-0FAC-47DD-A64B-E7C59A9AE981}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{AACB3603-0C66-4F59-B178-B58258CB7277}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\firaxis games\sid meier's civilization 4 complete\civilization4.exe |
"{B235F6C3-4EB4-4C45-8FA9-BCE3EF770135}" = protocol=6 | dir=out | app=system |
"{B5216E8F-6C07-46B4-A663-B793F415FC38}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\return to castle wolfenstein\wolfmp.exe |
"{BF7BD8DD-5947-4137-9DD1-FD6D4479550D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C6A007A0-0DFB-44F1-B917-BE21A6C5BD1A}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{CBD0ECB9-8EA1-42EC-9A0D-D311310EF1B5}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe |
"{D1D79C17-BC6A-4D37-A2E0-C5B984F82FA2}" = protocol=17 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe |
"{D315469F-F004-42A0-BABF-9FAE2BC540DE}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{D5522E11-34CA-4F25-97F3-AB16B04EF4BC}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{D9D75B09-7CB0-4987-B2D8-CFFD5F0E8E45}" = protocol=17 | dir=in | app=c:\program files (x86)\starcraft ii\starcraft ii.exe |
"{DC6C014D-E755-4E88-8C6F-8F7B9A06D9D0}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E0C7D8AC-D21E-4D4F-9742-6BD37B4F2871}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E5B57896-04CA-44B0-8117-B67ED836448B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{EB27A105-0F9C-4760-80B5-FBA2C56640AD}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EC9277E1-3EB7-4B68-807B-3BC3956B12C5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F6DA01DE-848A-417A-B696-BE2001CA2760}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{FA37A22A-E406-43C8-BD43-4F965CD9709F}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FCD695DB-688C-4013-BACF-504CC6AE3222}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{363124F4-0907-415E-86E1-B7415FC128C2}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"TCP Query User{52C32D23-D729-4D3F-ABD2-87A4D4DB599F}C:\program files\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"TCP Query User{6984BF75-55A6-4CBD-B839-FEDEFE2346FE}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"TCP Query User{74CBC9C0-7CF7-4FDB-BC2E-A1B8D5DDEE9E}C:\diablo\diablo.exe" = protocol=6 | dir=in | app=c:\diablo\diablo.exe |
"TCP Query User{87685FDC-E448-45F1-85D7-16585C39E4F4}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe" = protocol=6 | dir=in | app=c:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe |
"TCP Query User{8EAB9939-739F-4C91-B859-73F1BB5DC5AF}C:\program files\world of warcraft\wow-3.3.3.11723-to-3.3.5.12213-enus-downloader.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\wow-3.3.3.11723-to-3.3.5.12213-enus-downloader.exe |
"TCP Query User{96F0AF24-7A46-4805-B1AA-D42C2A83B75C}C:\program files\world of warcraft\wow-3.3.5.12213-to-3.3.5.12340-enus-downloader.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\wow-3.3.5.12213-to-3.3.5.12340-enus-downloader.exe |
"TCP Query User{A2F93692-1008-4FDE-A5C5-32D6B0E72396}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{A3ECDF20-3821-4298-BF70-24D6253A1FAD}C:\program files\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\backgrounddownloader.exe |
"TCP Query User{CC953817-FBB7-4DB2-A4D2-C511F384CC78}C:\program files\world of warcraft\wow-3.3.5.12340-x86-win-enus-bkgnd-downloader.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\wow-3.3.5.12340-x86-win-enus-bkgnd-downloader.exe |
"TCP Query User{EBB73744-98DF-4101-AF93-E86489EE58C6}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"UDP Query User{2B400D03-90AC-47B0-9475-A2CA64955663}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"UDP Query User{38D94F70-5D56-40B8-946E-B289B0423275}C:\program files\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"UDP Query User{475935A9-5743-48C2-8A61-187EB0D00B47}C:\program files\world of warcraft\wow-3.3.5.12340-x86-win-enus-bkgnd-downloader.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\wow-3.3.5.12340-x86-win-enus-bkgnd-downloader.exe |
"UDP Query User{62B565D5-D9DB-4D9F-A507-F31A08552717}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"UDP Query User{6F8719B7-78F7-4B06-8846-3BA16CE9D7FE}C:\program files\world of warcraft\wow-3.3.3.11723-to-3.3.5.12213-enus-downloader.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\wow-3.3.3.11723-to-3.3.5.12213-enus-downloader.exe |
"UDP Query User{7FA845E0-B076-4347-A783-55E4D979C991}C:\diablo\diablo.exe" = protocol=17 | dir=in | app=c:\diablo\diablo.exe |
"UDP Query User{9AC88A90-923D-49A3-AD9C-9B862F821627}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"UDP Query User{B56AC4EC-B96F-41BE-B55B-0E1877A96AB8}C:\program files\world of warcraft\wow-3.3.5.12213-to-3.3.5.12340-enus-downloader.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\wow-3.3.5.12213-to-3.3.5.12340-enus-downloader.exe |
"UDP Query User{B72FFB61-7EC0-4B55-B735-698CCADC8DF8}C:\program files\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\backgrounddownloader.exe |
"UDP Query User{CF3ED3F5-C740-425F-8089-7756EE914649}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe" = protocol=17 | dir=in | app=c:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe |
"UDP Query User{FC21AED9-E2B3-493F-9F7B-91581C42B0E0}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{089E65D5-D06A-FE49-8D9C-9CABDF8858F5}" = ccc-utility64
"{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416027FF}" = Java™ 6 Update 27 (64-bit)
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6D41B4C4-FCD7-4F9B-99B9-A01F63F71F0F}" = Smart Technology Programming Software 7.0.2.7
"{6DB97EF8-603B-FB96-9B56-6F0D23E14263}" = AMD Media Foundation Decoders
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9C98CA38-4C1A-4AC8-B55C-169497C8826B}" = Apple Mobile Device Support
"{9CD0F7D3-B67F-4BF8-8784-D73AD229FF1E}" = iTunes
"{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}" = Microsoft Security Client
"{A01AF425-8AF4-821B-3981-F608519CB1D2}" = AMD Drag and Drop Transcoding
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2F6D87D-69E1-9FD2-4DD0-FB36124AA0E3}" = ATI AVIVO64 Codecs
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{D10B35A6-786F-2879-DC2F-EBBD735E51B8}" = AMD Fuel
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}" = Ventrilo Client for Windows x64
"{F4C71C2A-F068-8EEB-61AE-EA4707C57A1B}" = AMD Catalyst Install Manager
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.60.1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft Security Client" = Microsoft Security Essentials
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"WinRAR archiver" = WinRAR 4.01 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0008546E-DF6E-4CC1-AFD0-2CB8E16C95A2}" = Notifier
"{03EDED24-8375-407D-A721-4643D9768BE1}" = kgchlwn
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{073F22CE-9A5B-4A40-A604-C7270AC6BF34}" = ESSSONIC
"{0CE6E094-B07B-CC6B-F7FD-9D7BD7BE0D86}" = CCC Help Thai
"{113DE59D-B57A-4075-9D4F-5803DFA69EB7}" = Walgreens PictureMover
"{11F3F858-4131-4FFA-A560-3FE282933B6E}" = kgchday
"{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2656D0AB-9EA4-4C58-A117-635F3CED8B93}" = Microsoft UI Engine
"{26A24AE4-039D-4CA4-87B4-2F83216024F0}" = Java™ 6 Update 24
"{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java™ 6 Update 33
"{26A24AE4-039D-4CA4-87B4-2F83217006FF}" = Java 7 Update 6
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{30D1F3D2-54CF-481D-A005-F94B0E98FEEC}" = Sid Meier's Civilization 4 Complete
"{3857A262-3B88-127A-96DB-5317B0F9B78C}" = CCC Help Dutch
"{3993DBF6-32F6-488B-9009-E156075AF7B7}" = CCC Help Greek
"{3A090DC5-ADF9-6B83-1095-017754BEC3D0}" = CCC Help Finnish
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3BCD05CE-8CDE-9503-8794-D8CDB9FA8562}" = Catalyst Control Center InstallProxy
"{3C7839E7-21F4-49E0-B4D5-AC8ED818CCB0}" = NETGEAR WNDA3100v2 wireless USB 2.0 adapter
"{3D5044A5-97B8-45C0-B956-BB2376569188}" = Windows Live Movie Maker
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56AB063D-1450-4BDE-9F0D-E9C693429C51}" = netbrdg
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{59FB1BE3-155C-72B1-B5F6-B086DEB7D064}" = CCC Help Hungarian
"{5EEA2FBB-1AAF-56D0-C2E5-580ACEA4DED5}" = CCC Help Russian
"{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA
"{61BEA823-ECAF-49F1-8378-A59B3B8AD247}" = Microsoft Default Manager
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{65D85050-5610-4A91-A3B1-D5C744291AD4}" = PCDADDIN
"{67E03279-F703-408F-B4BF-46B5FC8D70CD}" = Microsoft Works
"{693C08A7-9E76-43FF-B11E-9A58175474C4}" = kgckids
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-emachines" = WildTangent Games App (eMachines Games)
"{7106B820-2071-2B46-7817-5F6ADD1FA112}" = CCC Help Polish
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{725B5F90-BD27-A74D-7685-48795904FCF3}" = CCC Help Japanese
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}" = Bing Bar
"{78887CA0-E5F1-3C99-B120-95310B217AB8}" = CCC Help French
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{82892947-1311-D6CA-8B79-2753E398FE32}" = CCC Help German
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{855E0BF8-5448-9681-B36E-B84029D355E4}" = CCC Help Danish
"{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS
"{8A8664E1-84C8-4936-891C-BC1F07797549}" = kgcvday
"{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{9090E44B-CFBA-47D4-2225-3037C539E7E9}" = Catalyst Control Center Graphics Previews Common
"{90DCE328-65D6-0CC0-14FF-A86D6EC57035}" = CCC Help Chinese Traditional
"{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui
"{91C3236F-645F-52FD-6A83-A4CE5EE8028D}" = CCC Help Czech
"{943A7AF0-C019-0CFB-BA79-F063E7980B25}" = AMD VISION Engine Control Center
"{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6
"{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BD54685-1496-46A5-AB62-357CD140ED8B}" = kgcinvt
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D8FEE90-0377-49A9-AEFB-525BDE549BA4}" = ESScore
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{A1588373-1D86-4D44-86C9-78ABD190F9CC}" = kgcmove
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A6CF1995-854B-0B57-BF9D-AD665C52493C}" = CCC Help Chinese Standard
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AB0670D8-C462-750A-D34D-F18D38C0D64E}" = CCC Help Swedish
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.5.2 MUI
"{AD59DD0E-E36C-9FF1-2F22-ADFA10A43D61}" = CCC Help Italian
"{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK
"{AFD89880-C544-4777-B645-FBF6D3391B11}" = Belkin F7D1101 Basic Wireless USB Adapter
"{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI
"{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore
"{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}" = Mumble 1.2.3
"{B997C2A0-4383-41BF-B76E-9B8B7ECFB267}" = KSU
"{C1C7818F-8270-BA45-D317-675187B9E33E}" = CCC Help Korean
"{C9115BBB-C00B-481A-FD6A-C2BCDC88D6A1}" = CCC Help Turkish
"{C99DCDA4-7407-4F72-A77E-C81C551D0C4E}" = PCDHELP
"{CA4A06DE-33A9-B191-D115-8CF214945154}" = HydraVision
"{cc937cbc-4be2-4227-9660-ff2f2a1d9467}" = Ad-Aware Antivirus
"{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Kodak EasyShare software
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR
"{E100AC00-5097-16FE-E007-3D5156FC2B93}" = CCC Help Portuguese
"{E18B549C-5D15-45DA-8D8F-8FD2BD946344}" = kgcbaby
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3AA13F6-F494-D77F-C678-B8E6F8B66448}" = CCC Help Spanish
"{E56685FB-BC75-3BC4-526A-15FD1278F174}" = Catalyst Control Center Localization All
"{E79987F0-0E34-42CC-B8FF-6C860AEEB26A}" = tooltips
"{ECA16F5B-C5FD-2021-09B1-CA7CB49FDF46}" = CCC Help Norwegian
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = eMachines Updater
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
"{EF2586BE-6016-DBED-06AB-569B429893A1}" = CCC Help English
"{EF36A836-BF89-4A4F-B079-057B0C68C1E0}" = Sid Meier's Civilization IV Colonization
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}" = kgcbase
"{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS
"{FDF9943A-3D5C-46B3-9679-586BD237DDEE}" = SKIN0001
"7th Legion" = 7th Legion
"Ad-Aware Browsing Protection" = Ad-Aware Browsing Protection
"adawaretb" = Ad-Aware Security Toolbar
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Afterburner" = MSI Afterburner 2.1.0
"Audacity_is1" = Audacity 1.2.6
"Battle.net" = Battle.net
"Diablo III" = Diablo III
"eMachines Registration" = eMachines Registration
"eMachines Screensaver" = eMachines ScreenSaver
"eMachines Welcome Center" = Welcome Center
"Free M4a to MP3 Converter_is1" = Free M4a to MP3 Converter 6.1
"Free WMA to MP3 Converter_is1" = Free WMA to MP3 Converter 1.16
"Identity Card" = Identity Card
"InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager
"InstallShield_{AFD89880-C544-4777-B645-FBF6D3391B11}" = Belkin F7D1101 Basic Wireless USB Adapter
"LimeWire" = LimeWire 5.6.2
"LPEConnectFix_is1" = LPEConnectFix 1.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.62.0.1300
"Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8)
"OpenTTD" = OpenTTD 1.2.1
"Origin" = Origin
"StarCraft II" = StarCraft II
"Steam App 13240" = Unreal Tournament: Game of the Year Edition
"Steam App 20550" = Red Faction II
"Steam App 9010" = Return to Castle Wolfenstein
"WildTangent emachines Master Uninstall" = eMachines Games
"WinLiveSuite_Wave3" = Windows Live Essentials
"World of Warcraft" = World of Warcraft
"World of Warcraft Beta" = World of Warcraft Beta

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-402035426-1599880845-4127718658-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only)
"Google Chrome" = Google Chrome
"World of Logs Client (4.2)" = World of Logs Client (4.2)

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 8/14/2012 2:14:04 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksCal.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/14/2012 2:14:04 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksdb.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/14/2012 2:14:05 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksss.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/14/2012 2:14:05 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksWP.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/15/2012 12:43:04 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll".Error in manifest or policy file "c:\Program
Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" on line 3. The value
"MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute
"version" in element "assemblyIdentity" is invalid.

Error - 8/15/2012 12:44:22 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842787
Description = Activation context generation failed for "c:\program files (x86)\windows
live\photo gallery\MovieMaker.Exe".Error in manifest or policy file "c:\program
files (x86)\windows live\photo gallery\WLMFDS.DLL" on line 8. Component identity
found in manifest does not match the identity of the component requested. Reference
is WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1". Definition
is WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1". Please use
sxstrace.exe for detailed diagnosis.

Error - 8/15/2012 12:45:38 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksCal.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/15/2012 12:45:38 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksdb.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/15/2012 12:45:39 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksss.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 8/15/2012 12:45:39 AM | Computer Name = Tim-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksWP.exe".
Dependent
Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

[ Media Center Events ]
Error - 8/30/2010 10:17:48 PM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 10:17:47 PM - Error connecting to the internet. 10:17:48 PM - Unable
to contact server..

Error - 8/31/2010 12:37:20 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 12:37:20 AM - Error connecting to the internet. 12:37:20 AM - Unable
to contact server..

Error - 8/31/2010 1:37:25 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 1:37:25 AM - Error connecting to the internet. 1:37:25 AM - Unable
to contact server..

Error - 8/31/2010 2:37:30 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 2:37:30 AM - Error connecting to the internet. 2:37:30 AM - Unable
to contact server..

Error - 8/31/2010 3:37:35 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 3:37:35 AM - Error connecting to the internet. 3:37:35 AM - Unable
to contact server..

Error - 9/1/2010 2:19:54 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 2:19:54 AM - Error connecting to the internet. 2:19:54 AM - Unable
to contact server..

Error - 9/2/2010 5:20:53 AM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 5:20:53 AM - Error connecting to the internet. 5:20:53 AM - Unable
to contact server..

Error - 9/3/2010 2:06:07 PM | Computer Name = Tim-PC | Source = MCUpdate | ID = 0
Description = 2:06:07 PM - Error connecting to the internet. 2:06:07 PM - Unable
to contact server..

[ System Events ]
Error - 8/23/2012 10:56:36 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:56:39 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:56:42 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:56:45 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:03 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:06 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:09 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:12 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:15 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.

Error - 8/23/2012 10:57:18 PM | Computer Name = Tim-PC | Source = cdrom | ID = 262155
Description = The driver detected a controller error on \Device\CdRom0.


< End of report >

#15 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,773 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:05:01 AM

Posted 24 August 2012 - 03:17 PM

Hello

Run this custom script and when it is complete I need to know how the computer is doing

Run OTL Script

  • Double-click OTL.exe to start the program.
  • Copy and Paste the following code into the Posted Image textbox. Do not include the word Code
    :OTL
    FF - user.js - File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
    O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
    O8:64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found
    O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Reg Error: Key error.)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
    O18:64bit: - Protocol\Handler\livecall - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
    O18:64bit: - Protocol\Handler\msnim - No CLSID value found
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
    O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    @Alternate Data Stream - 16 bytes -> C:\Users\Tim\Downloads:Shareaza.GUID
    @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:DFC5A2B2  
    IE - HKU\S-1-5-21-402035426-1599880845-4127718658-1001\..\SearchScopes\{D03E789C-99BB-447A-88BC-1F87FA71C524}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=FWV5&o=14193&src=kw&q={searchTerms}&locale=en_US&apn_ptnrs=FM&apn_dtid=TES002RAUS&apn_uid=11a6f961-e05c-452f-9343-918558d31288&apn_sauid=77133DFC-0280-43E8-8FAA-7780FD5DD88C
    FF - prefs.js..browser.search.defaultengine: "Ask.com"
    FF - prefs.js..browser.search.defaultenginename: "Ask.com"
    FF - prefs.js..browser.search.order.1: "Ask.com"
    FF - prefs.js..browser.search.selectedEngine: "Ask.com"
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://www.ask.com/?l=dis&o=14196"
    FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.13.0.17701
    FF - prefs.js..network.proxy.no_proxies_on: "localhost,127.0.0.1"
    [2011/11/25 08:49:18 | 000,002,568 | ---- | M] () -- C:\Users\Tim\AppData\Roaming\Mozilla\Firefox\Profiles\sbvfuwjk.default\searchplugins\askcom.xml
    [2011/08/11 15:42:47 | 000,017,956 | -HS- | C] () -- C:\ProgramData\8t4571l7y6muy4s5xn3eks4jb
    [2011/08/11 15:42:47 | 000,017,952 | -HS- | C] () -- C:\Users\Tim\AppData\Local\8t4571l7y6muy4s5xn3eks4jb
    :Files
    ipconfig /flushdns /c
    :Commands
    [PURITY]
    [emptyjava]
    [EMPTYFLASH]
    
  • Then click the Run Fix button at the top.
  • Click Posted Image.
  • OTL may ask to reboot the machine. Please do so if asked.
  • The report should appear in Notepad after the reboot.Copy and Paste that report in your next reply.

Let me know How things are doing

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users