Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

fbi moneypak virus on windows xp


  • Please log in to reply
16 replies to this topic

#1 Sfontenot

Sfontenot

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 06 December 2012 - 09:57 AM

My desktop computer has been infected with the money pak virus and has locked the computer. can you help me remove the virus

Edited by hamluis, 06 December 2012 - 12:19 PM.
Moved from Malware Removal Logs to Am I Infected, no logs - Hamluis.


BC AdBot (Login to Remove)

 


#2 robocop321

robocop321

  • Members
  • 114 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:03:01 PM

Posted 13 December 2012 - 01:25 PM

Hello, please use our guide and let me know.

Remove the FBI MoneyPak Ransomware or the Reveton Trojan

#3 robocop321

robocop321

  • Members
  • 114 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:03:01 PM

Posted 17 December 2012 - 11:06 AM

I assume you are having trouble accessing your PC as you haven't replied.
Let me know how your PC is doing please.

Edited by robocop321, 17 December 2012 - 12:49 PM.


#4 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 17 December 2012 - 02:57 PM

I assume you are having trouble accessing your PC as you haven't replied.
Let me know how your PC is doing please.

I have been downloading the kit and have just finished with the first scan. I have been busy with my crazy work schedule and apologize for not getting back to you in a timely manner. I will notify you if my progress.

#5 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 17 December 2012 - 02:59 PM

I have been downloading the kit and have just finished with the first scan. I have been busy with my crazy work schedule and apologize for not getting back to you in a timely manner. I will notify you if my progress.

#6 robocop321

robocop321

  • Members
  • 114 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:03:01 PM

Posted 17 December 2012 - 03:30 PM

Ok good to know your still there :)

#7 C.L.C

C.L.C

  • Members
  • 42 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Brainerd, In Central Minnesota USA
  • Local time:09:01 AM

Posted 17 December 2012 - 04:12 PM

If that doesn't work I know HitmanPro will remove it for sure. It's a paid application, but you can do a free scan and if it finds an infection it will give you a free 30 day license so you can remove the threat.

HitmanPro

#8 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 17 December 2012 - 04:18 PM

Thanks for the info

#9 C.L.C

C.L.C

  • Members
  • 42 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Brainerd, In Central Minnesota USA
  • Local time:09:01 AM

Posted 17 December 2012 - 04:22 PM

Silly me, I forgot to ask you if you can log into Windows normally? If you can't you should still be able to download and run the program from safe mode with networking.

#10 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 20 December 2012 - 01:26 PM

I hav finished with the download and scan from Emsisoft. I can get onto the intenet however not like before-it takes a couple of more keystrokes..I am trying to load Secunia but an unable to access this program. The computer seems to moving at a snail's pace as well. Any suggestions.

#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:01 AM

Posted 22 December 2012 - 10:08 PM

Please run theses also///

Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results.



>>>

ADW Cleaner

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

>>>>

I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image
      icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

NOTE:Sometimes if ESET finds no infections it will not create a log.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#12 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 25 December 2012 - 12:28 PM

here are the logs. What next.

07:49:02.0000 7416 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
07:49:04.0000 7416 ============================================================
07:49:04.0000 7416 Current date / time: 2012/12/24 07:49:04.0000
07:49:04.0000 7416 SystemInfo:
07:49:04.0000 7416
07:49:04.0000 7416 OS Version: 5.1.2600 ServicePack: 3.0
07:49:04.0000 7416 Product type: Workstation
07:49:04.0000 7416 ComputerName: STEPHEN-2TZF3K9
07:49:04.0000 7416 UserName: Owner
07:49:04.0000 7416 Windows directory: C:\WINDOWS
07:49:04.0000 7416 System windows directory: C:\WINDOWS
07:49:04.0000 7416 Processor architecture: Intel x86
07:49:04.0000 7416 Number of processors: 1
07:49:04.0000 7416 Page size: 0x1000
07:49:04.0000 7416 Boot type: Normal boot
07:49:04.0000 7416 ============================================================
07:49:08.0937 7416 Drive \Device\Harddisk0\DR0 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
07:49:09.0000 7416 Drive \Device\Harddisk1\DR1 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
07:49:09.0156 7416 Drive \Device\Harddisk2\DR4 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
07:49:09.0156 7416 ============================================================
07:49:09.0156 7416 \Device\Harddisk0\DR0:
07:49:09.0187 7416 MBR partitions:
07:49:09.0187 7416 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x94FE97E
07:49:09.0187 7416 \Device\Harddisk1\DR1:
07:49:09.0203 7416 MBR partitions:
07:49:09.0203 7416 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x94FE97E
07:49:09.0203 7416 \Device\Harddisk2\DR4:
07:49:09.0203 7416 MBR partitions:
07:49:09.0203 7416 \Device\Harddisk2\DR4\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950E0D1
07:49:09.0203 7416 ============================================================
07:49:09.0328 7416 C: <-> \Device\Harddisk0\DR0\Partition1
07:49:09.0390 7416 F: <-> \Device\Harddisk1\DR1\Partition1
07:49:09.0421 7416 G: <-> \Device\Harddisk2\DR4\Partition1
07:49:09.0421 7416 ============================================================
07:49:09.0421 7416 Initialize success
07:49:09.0421 7416 ============================================================
07:50:08.0500 5600 ============================================================
07:50:08.0500 5600 Scan started
07:50:08.0500 5600 Mode: Manual; TDLFS;
07:50:08.0500 5600 ============================================================
07:50:08.0875 5600 ================ Scan system memory ========================
07:50:08.0875 5600 System memory - ok
07:50:08.0890 5600 ================ Scan services =============================
07:50:09.0015 5600 [ F7EABCA8375EA2DC6F35C4BCA4757515 ] A2DDA C:\Documents and Settings\Administrator.STEPHEN-2TZF3K9.001\My Documents\EmsisoftEmergencyKit\Run\a2ddax86.sys
07:50:09.0093 5600 A2DDA - ok
07:50:09.0203 5600 Abiosdsk - ok
07:50:09.0218 5600 abp480n5 - ok
07:50:09.0281 5600 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
07:50:09.0281 5600 ACPI - ok
07:50:09.0343 5600 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
07:50:09.0359 5600 ACPIEC - ok
07:50:09.0468 5600 [ 95CE557D16A75606CCC2D7F3B0B0BCCB ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
07:50:09.0484 5600 AdobeFlashPlayerUpdateSvc - ok
07:50:09.0500 5600 adpu160m - ok
07:50:09.0562 5600 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
07:50:09.0562 5600 aec - ok
07:50:09.0625 5600 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
07:50:09.0625 5600 AFD - ok
07:50:09.0640 5600 Aha154x - ok
07:50:09.0656 5600 aic78u2 - ok
07:50:09.0671 5600 aic78xx - ok
07:50:09.0718 5600 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
07:50:09.0718 5600 Alerter - ok
07:50:09.0750 5600 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
07:50:09.0796 5600 ALG - ok
07:50:09.0812 5600 AliIde - ok
07:50:09.0828 5600 amsint - ok
07:50:09.0968 5600 [ 3DEBBECF665DCDDE3A95D9B902010817 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
07:50:09.0968 5600 Apple Mobile Device - ok
07:50:09.0984 5600 AppMgmt - ok
07:50:10.0000 5600 asc - ok
07:50:10.0015 5600 asc3350p - ok
07:50:10.0031 5600 asc3550 - ok
07:50:10.0171 5600 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
07:50:10.0234 5600 aspnet_state - ok
07:50:10.0281 5600 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
07:50:10.0281 5600 AsyncMac - ok
07:50:10.0328 5600 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\ATAPI.SYS
07:50:10.0328 5600 atapi - ok
07:50:10.0343 5600 Atdisk - ok
07:50:10.0375 5600 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
07:50:10.0375 5600 Atmarpc - ok
07:50:10.0437 5600 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
07:50:10.0484 5600 AudioSrv - ok
07:50:10.0531 5600 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
07:50:10.0562 5600 audstub - ok
07:50:10.0609 5600 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwdx C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
07:50:10.0609 5600 Avgfwdx - ok
07:50:10.0625 5600 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
07:50:10.0625 5600 Avgfwfd - ok
07:50:10.0750 5600 [ 733D86815BEB34E2982BC7F561C35AE3 ] avgfws C:\Program Files\AVG\AVG2013\avgfws.exe
07:50:10.0812 5600 avgfws - ok
07:50:11.0140 5600 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
07:50:11.0437 5600 AVGIDSAgent - ok
07:50:11.0500 5600 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
07:50:11.0531 5600 AVGIDSDriver - ok
07:50:11.0578 5600 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
07:50:11.0578 5600 AVGIDSHX - ok
07:50:11.0625 5600 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
07:50:11.0625 5600 AVGIDSShim - ok
07:50:11.0703 5600 [ D53D35031365A0ECCB1DC1BC1B15B18E ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
07:50:11.0718 5600 Avgldx86 - ok
07:50:11.0781 5600 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\WINDOWS\system32\DRIVERS\avglogx.sys
07:50:11.0796 5600 Avglogx - ok
07:50:11.0843 5600 [ 6C7C00B8DD22B4343B47FED148387057 ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
07:50:11.0843 5600 Avgmfx86 - ok
07:50:11.0890 5600 [ F3D57358DE0B8B3491013C615754A7C7 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
07:50:11.0890 5600 Avgrkx86 - ok
07:50:11.0953 5600 [ BA73B38E9033FC6018DB736B635706AE ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
07:50:11.0953 5600 Avgtdix - ok
07:50:12.0015 5600 [ 34F335FEC0D7A7A4D329390B7C7B59B8 ] avgtp C:\WINDOWS\system32\drivers\avgtpx86.sys
07:50:12.0031 5600 avgtp - ok
07:50:12.0093 5600 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
07:50:12.0109 5600 avgwd - ok
07:50:12.0171 5600 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
07:50:12.0171 5600 Beep - ok
07:50:12.0250 5600 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
07:50:12.0375 5600 BITS - ok
07:50:12.0484 5600 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
07:50:12.0546 5600 Bonjour Service - ok
07:50:12.0609 5600 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
07:50:12.0609 5600 Browser - ok
07:50:12.0656 5600 [ C945DC4EEE3F624DFD07788EA7F0DB0A ] bvrp_pci C:\WINDOWS\System32\drivers\bvrp_pci.sys
07:50:12.0718 5600 bvrp_pci - ok
07:50:12.0765 5600 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
07:50:12.0781 5600 cbidf2k - ok
07:50:12.0828 5600 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
07:50:12.0828 5600 CCDECODE - ok
07:50:12.0843 5600 cd20xrnt - ok
07:50:12.0890 5600 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
07:50:12.0890 5600 Cdaudio - ok
07:50:12.0906 5600 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
07:50:12.0921 5600 Cdfs - ok
07:50:12.0937 5600 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
07:50:12.0937 5600 Cdrom - ok
07:50:12.0953 5600 Changer - ok
07:50:13.0000 5600 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
07:50:13.0000 5600 CiSvc - ok
07:50:13.0046 5600 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
07:50:13.0046 5600 ClipSrv - ok
07:50:13.0125 5600 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
07:50:13.0234 5600 clr_optimization_v2.0.50727_32 - ok
07:50:13.0281 5600 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
07:50:13.0609 5600 clr_optimization_v4.0.30319_32 - ok
07:50:13.0625 5600 CmdIde - ok
07:50:13.0640 5600 COMSysApp - ok
07:50:13.0671 5600 Cpqarray - ok
07:50:13.0718 5600 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
07:50:13.0765 5600 CryptSvc - ok
07:50:13.0765 5600 dac2w2k - ok
07:50:13.0796 5600 dac960nt - ok
07:50:13.0859 5600 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
07:50:13.0921 5600 DcomLaunch - ok
07:50:14.0093 5600 [ 34AE0DFA3EE3B5B9975042D87332D0B7 ] DefaultTabUpdate C:\Documents and Settings\Owner\Application Data\DefaultTab\DefaultTab\DTUpdate.exe
07:50:14.0203 5600 DefaultTabUpdate - ok
07:50:14.0265 5600 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
07:50:14.0265 5600 Dhcp - ok
07:50:14.0312 5600 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
07:50:14.0312 5600 Disk - ok
07:50:14.0328 5600 dmadmin - ok
07:50:14.0421 5600 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
07:50:14.0453 5600 dmboot - ok
07:50:14.0484 5600 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
07:50:14.0484 5600 dmio - ok
07:50:14.0531 5600 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
07:50:14.0531 5600 dmload - ok
07:50:14.0578 5600 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
07:50:14.0578 5600 dmserver - ok
07:50:14.0609 5600 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
07:50:14.0609 5600 DMusic - ok
07:50:14.0671 5600 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
07:50:14.0671 5600 Dnscache - ok
07:50:14.0718 5600 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
07:50:14.0750 5600 Dot3svc - ok
07:50:14.0765 5600 dpti2o - ok
07:50:14.0812 5600 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
07:50:14.0812 5600 drmkaud - ok
07:50:14.0875 5600 [ 7D91DC6342248369F94D6EBA0CF42E99 ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
07:50:14.0890 5600 E100B - ok
07:50:14.0937 5600 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
07:50:14.0937 5600 EapHost - ok
07:50:15.0000 5600 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
07:50:15.0031 5600 ERSvc - ok
07:50:15.0078 5600 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
07:50:15.0093 5600 Eventlog - ok
07:50:15.0156 5600 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\System32\es.dll
07:50:15.0187 5600 EventSystem - ok
07:50:15.0218 5600 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
07:50:15.0234 5600 Fastfat - ok
07:50:15.0296 5600 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
07:50:15.0296 5600 FastUserSwitchingCompatibility - ok
07:50:15.0328 5600 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
07:50:15.0328 5600 Fdc - ok
07:50:15.0375 5600 [ 64795F5368272D034A108D34C0F4E44F ] FilterService C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
07:50:15.0375 5600 FilterService - ok
07:50:15.0421 5600 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
07:50:15.0437 5600 Fips - ok
07:50:15.0453 5600 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
07:50:15.0453 5600 Flpydisk - ok
07:50:15.0515 5600 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
07:50:15.0515 5600 FltMgr - ok
07:50:15.0609 5600 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
07:50:15.0640 5600 FontCache3.0.0.0 - ok
07:50:15.0656 5600 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
07:50:15.0656 5600 Fs_Rec - ok
07:50:15.0687 5600 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
07:50:15.0687 5600 Ftdisk - ok
07:50:15.0734 5600 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
07:50:15.0765 5600 GEARAspiWDM - ok
07:50:15.0812 5600 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
07:50:15.0812 5600 Gpc - ok
07:50:15.0937 5600 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
07:50:15.0937 5600 gupdate - ok
07:50:15.0953 5600 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
07:50:15.0953 5600 gupdatem - ok
07:50:16.0078 5600 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
07:50:16.0140 5600 helpsvc - ok
07:50:16.0187 5600 HidServ - ok
07:50:16.0234 5600 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys
07:50:16.0234 5600 hidusb - ok
07:50:16.0296 5600 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
07:50:16.0296 5600 hkmsvc - ok
07:50:16.0312 5600 hpn - ok
07:50:16.0359 5600 [ D03D10F7DED688FECF50F8FBF1EA9B8A ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
07:50:16.0406 5600 HPZid412 - ok
07:50:16.0421 5600 [ 89F41658929393487B6B7D13C8528CE3 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
07:50:16.0453 5600 HPZipr12 - ok
07:50:16.0484 5600 [ ABCB05CCDBF03000354B9553820E39F8 ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
07:50:16.0484 5600 HPZius12 - ok
07:50:16.0562 5600 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
07:50:16.0562 5600 HSFHWBS2 - ok
07:50:16.0625 5600 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
07:50:16.0687 5600 HSF_DP - ok
07:50:16.0750 5600 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
07:50:16.0781 5600 HTTP - ok
07:50:16.0828 5600 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
07:50:16.0859 5600 HTTPFilter - ok
07:50:16.0875 5600 i2omgmt - ok
07:50:16.0875 5600 i2omp - ok
07:50:16.0921 5600 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
07:50:16.0921 5600 i8042prt - ok
07:50:17.0046 5600 [ 9A883C3C4D91292C0D09DE7C728E781C ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
07:50:17.0140 5600 ialm - ok
07:50:17.0265 5600 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
07:50:17.0343 5600 idsvc - ok
07:50:17.0375 5600 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
07:50:17.0375 5600 Imapi - ok
07:50:17.0421 5600 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\System32\imapi.exe
07:50:17.0437 5600 ImapiService - ok
07:50:17.0453 5600 ini910u - ok
07:50:17.0468 5600 IntelIde - ok
07:50:17.0515 5600 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
07:50:17.0515 5600 intelppm - ok
07:50:17.0609 5600 [ 7BDB4E00E1CB174B56E5B2C31DDE68A7 ] IntuitUpdateService C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
07:50:17.0609 5600 IntuitUpdateService - ok
07:50:17.0656 5600 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
07:50:17.0656 5600 ip6fw - ok
07:50:17.0703 5600 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
07:50:17.0718 5600 IpFilterDriver - ok
07:50:17.0750 5600 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
07:50:17.0750 5600 IpInIp - ok
07:50:17.0812 5600 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
07:50:17.0812 5600 IpNat - ok
07:50:17.0921 5600 [ 178FE38B7740F598391EB2F51AE4CCAC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
07:50:18.0000 5600 iPod Service - ok
07:50:18.0046 5600 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
07:50:18.0046 5600 IPSec - ok
07:50:18.0093 5600 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
07:50:18.0093 5600 IRENUM - ok
07:50:18.0140 5600 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
07:50:18.0140 5600 isapnp - ok
07:50:18.0250 5600 [ 39133291CB607BDD87CFC565A4A1E7A5 ] JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe
07:50:18.0265 5600 JavaQuickStarterService - ok
07:50:18.0312 5600 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
07:50:18.0312 5600 Kbdclass - ok
07:50:18.0359 5600 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
07:50:18.0375 5600 kmixer - ok
07:50:18.0437 5600 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
07:50:18.0468 5600 KSecDD - ok
07:50:18.0515 5600 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
07:50:18.0562 5600 lanmanserver - ok
07:50:18.0609 5600 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
07:50:18.0640 5600 lanmanworkstation - ok
07:50:18.0656 5600 lbrtfdc - ok
07:50:19.0265 5600 [ 24A7D535BD9E58E5BC1AC52EF7E2EC8E ] LeapFrog Connect Device Service C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
07:50:20.0078 5600 LeapFrog Connect Device Service - ok
07:50:20.0125 5600 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
07:50:20.0156 5600 LmHosts - ok
07:50:20.0281 5600 [ 2D0AB9D29E6B0C42CCE955B5A8E0D62D ] LVcKap C:\WINDOWS\system32\DRIVERS\LVcKap.sys
07:50:20.0406 5600 LVcKap - ok
07:50:20.0531 5600 [ A3963E3D997C3646E1D3338EB88A48E9 ] LVMVDrv C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys
07:50:20.0640 5600 LVMVDrv - ok
07:50:20.0765 5600 [ 2154EA3701F4F1F8F2AB7750B41F149B ] lvpopflt C:\WINDOWS\system32\DRIVERS\lvpopflt.sys
07:50:20.0843 5600 lvpopflt - ok
07:50:20.0875 5600 [ 39C767BD6D99C23D28E71B6E0CBA3129 ] LVPr2Mon C:\WINDOWS\system32\drivers\LVPr2Mon.sys
07:50:20.0875 5600 LVPr2Mon - ok
07:50:20.0937 5600 [ 44B3B997E25C5D9A81D6C501451A96D7 ] LVPrcSrv c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe
07:50:20.0953 5600 LVPrcSrv - ok
07:50:20.0984 5600 [ 6E59BC28A41F8A2B702D345A5604652F ] lvselsus C:\WINDOWS\system32\DRIVERS\lvselsus.sys
07:50:20.0984 5600 lvselsus - ok
07:50:21.0031 5600 [ 7B4607C0C664DA98753508F85BB10694 ] LVSrvLauncher C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe
07:50:21.0031 5600 LVSrvLauncher - ok
07:50:21.0078 5600 [ 6AD3F5275F117F08C12EAB2233A9E3FB ] LVUSBSta C:\WINDOWS\system32\drivers\lvusbsta.sys
07:50:21.0078 5600 LVUSBSta - ok
07:50:21.0171 5600 [ B48E599A8CF96876760C7EE62C1352EC ] LVUVC C:\WINDOWS\system32\DRIVERS\lvuvc.sys
07:50:21.0234 5600 LVUVC - ok
07:50:21.0265 5600 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
07:50:21.0265 5600 mdmxsdk - ok
07:50:21.0312 5600 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
07:50:21.0312 5600 Messenger - ok
07:50:21.0375 5600 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
07:50:21.0390 5600 mnmdd - ok
07:50:21.0437 5600 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
07:50:21.0453 5600 mnmsrvc - ok
07:50:21.0515 5600 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
07:50:21.0515 5600 Modem - ok
07:50:21.0562 5600 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
07:50:21.0578 5600 MODEMCSA - ok
07:50:21.0593 5600 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
07:50:21.0593 5600 Mouclass - ok
07:50:21.0609 5600 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
07:50:21.0625 5600 MountMgr - ok
07:50:21.0687 5600 [ 7E34BFA1A7B60BBA1DA03D677F16CD63 ] MpFilter C:\WINDOWS\system32\DRIVERS\MpFilter.sys
07:50:21.0703 5600 MpFilter - ok
07:50:21.0875 5600 [ A69630D039C38018689190234F866D77 ] MpKsl110c98d8 c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{35784337-FA2F-477C-8E05-5839BB6F1C29}\MpKsl110c98d8.sys
07:50:21.0875 5600 MpKsl110c98d8 - ok
07:50:21.0890 5600 mraid35x - ok
07:50:21.0937 5600 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
07:50:21.0953 5600 MRxDAV - ok
07:50:22.0046 5600 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
07:50:22.0109 5600 MRxSmb - ok
07:50:22.0156 5600 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
07:50:22.0171 5600 MSDTC - ok
07:50:22.0203 5600 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
07:50:22.0203 5600 Msfs - ok
07:50:22.0218 5600 MSIServer - ok
07:50:22.0265 5600 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
07:50:22.0281 5600 MSKSSRV - ok
07:50:22.0390 5600 [ 90DC23D940551DB35367FB1E40575B25 ] MsMpSvc c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
07:50:22.0390 5600 MsMpSvc - ok
07:50:22.0437 5600 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
07:50:22.0437 5600 MSPCLOCK - ok
07:50:22.0468 5600 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
07:50:22.0468 5600 MSPQM - ok
07:50:22.0500 5600 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
07:50:22.0500 5600 mssmbios - ok
07:50:22.0562 5600 MSSQL$MICROSOFTBCM - ok
07:50:22.0625 5600 [ CB7524C21727404BD3140DCA32DEB7DE ] MSSQLServerADHelper C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
07:50:22.0656 5600 MSSQLServerADHelper - ok
07:50:22.0687 5600 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
07:50:22.0687 5600 MSTEE - ok
07:50:22.0750 5600 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
07:50:22.0750 5600 Mup - ok
07:50:22.0796 5600 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
07:50:22.0796 5600 NABTSFEC - ok
07:50:22.0875 5600 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
07:50:22.0890 5600 napagent - ok
07:50:22.0937 5600 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
07:50:22.0937 5600 NDIS - ok
07:50:22.0984 5600 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
07:50:22.0984 5600 NdisIP - ok
07:50:23.0031 5600 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
07:50:23.0046 5600 NdisTapi - ok
07:50:23.0093 5600 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
07:50:23.0093 5600 Ndisuio - ok
07:50:23.0140 5600 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
07:50:23.0140 5600 NdisWan - ok
07:50:23.0203 5600 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
07:50:23.0203 5600 NDProxy - ok
07:50:23.0265 5600 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\WINDOWS\system32\HPZinw12.dll
07:50:23.0312 5600 Net Driver HPZ12 - ok
07:50:23.0375 5600 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
07:50:23.0375 5600 NetBIOS - ok
07:50:23.0390 5600 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
07:50:23.0406 5600 NetBT - ok
07:50:23.0453 5600 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
07:50:23.0484 5600 NetDDE - ok
07:50:23.0500 5600 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
07:50:23.0500 5600 NetDDEdsdm - ok
07:50:23.0546 5600 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\System32\lsass.exe
07:50:23.0546 5600 Netlogon - ok
07:50:23.0578 5600 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
07:50:23.0578 5600 Netman - ok
07:50:23.0640 5600 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
07:50:23.0734 5600 NetTcpPortSharing - ok
07:50:23.0765 5600 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
07:50:23.0781 5600 Nla - ok
07:50:23.0859 5600 [ B400ED9FA710F2E5FC3C1CB14D7947B0 ] NMSAccessU C:\Program Files\BurnAware Free\nmsaccessu.exe
07:50:24.0000 5600 NMSAccessU - ok
07:50:24.0046 5600 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
07:50:24.0046 5600 Npfs - ok
07:50:24.0125 5600 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
07:50:24.0187 5600 Ntfs - ok
07:50:24.0218 5600 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
07:50:24.0218 5600 NtLmSsp - ok
07:50:24.0296 5600 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
07:50:24.0359 5600 NtmsSvc - ok
07:50:24.0390 5600 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
07:50:24.0390 5600 Null - ok
07:50:24.0437 5600 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
07:50:24.0437 5600 NwlnkFlt - ok
07:50:24.0453 5600 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
07:50:24.0453 5600 NwlnkFwd - ok
07:50:24.0500 5600 [ 94F1743DC981373CFA8688365FBC6FB0 ] OMCI C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS
07:50:24.0531 5600 OMCI - ok
07:50:24.0593 5600 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
07:50:24.0593 5600 ose - ok
07:50:24.0656 5600 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
07:50:24.0656 5600 Parport - ok
07:50:24.0687 5600 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
07:50:24.0687 5600 PartMgr - ok
07:50:24.0734 5600 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
07:50:24.0734 5600 ParVdm - ok
07:50:24.0765 5600 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
07:50:24.0765 5600 PCI - ok
07:50:24.0781 5600 PCIDump - ok
07:50:24.0796 5600 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
07:50:24.0796 5600 PCIIde - ok
07:50:24.0859 5600 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
07:50:24.0859 5600 Pcmcia - ok
07:50:24.0875 5600 PDCOMP - ok
07:50:24.0890 5600 PDFRAME - ok
07:50:24.0890 5600 PDRELI - ok
07:50:24.0906 5600 PDRFRAME - ok
07:50:24.0921 5600 perc2 - ok
07:50:24.0937 5600 perc2hib - ok
07:50:24.0984 5600 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
07:50:24.0984 5600 PlugPlay - ok
07:50:25.0046 5600 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
07:50:25.0078 5600 Pml Driver HPZ12 - ok
07:50:25.0109 5600 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\System32\lsass.exe
07:50:25.0109 5600 PolicyAgent - ok
07:50:25.0156 5600 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
07:50:25.0156 5600 PptpMiniport - ok
07:50:25.0171 5600 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
07:50:25.0187 5600 Processor - ok
07:50:25.0203 5600 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
07:50:25.0203 5600 ProtectedStorage - ok
07:50:25.0218 5600 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
07:50:25.0218 5600 PSched - ok
07:50:25.0281 5600 [ D24DFD16A1E2A76034DF5AA18125C35D ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
07:50:25.0343 5600 PSI - ok
07:50:25.0406 5600 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
07:50:25.0406 5600 Ptilink - ok
07:50:25.0421 5600 ql1080 - ok
07:50:25.0437 5600 Ql10wnt - ok
07:50:25.0453 5600 ql12160 - ok
07:50:25.0453 5600 ql1240 - ok
07:50:25.0468 5600 ql1280 - ok
07:50:25.0500 5600 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
07:50:25.0500 5600 RasAcd - ok
07:50:25.0546 5600 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
07:50:25.0546 5600 RasAuto - ok
07:50:25.0593 5600 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
07:50:25.0593 5600 Rasl2tp - ok
07:50:25.0656 5600 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
07:50:25.0703 5600 RasMan - ok
07:50:25.0734 5600 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
07:50:25.0734 5600 RasPppoe - ok
07:50:25.0750 5600 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
07:50:25.0750 5600 Raspti - ok
07:50:25.0781 5600 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
07:50:25.0781 5600 Rdbss - ok
07:50:25.0812 5600 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
07:50:25.0812 5600 RDPCDD - ok
07:50:25.0890 5600 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
07:50:25.0906 5600 RDPWD - ok
07:50:25.0953 5600 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
07:50:25.0968 5600 RDSessMgr - ok
07:50:26.0031 5600 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
07:50:26.0046 5600 redbook - ok
07:50:26.0093 5600 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
07:50:26.0093 5600 RemoteAccess - ok
07:50:26.0125 5600 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
07:50:26.0140 5600 RpcLocator - ok
07:50:26.0187 5600 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
07:50:26.0187 5600 RpcSs - ok
07:50:26.0250 5600 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
07:50:26.0265 5600 RSVP - ok
07:50:26.0296 5600 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
07:50:26.0312 5600 SamSs - ok
07:50:26.0375 5600 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
07:50:26.0375 5600 SCardSvr - ok
07:50:26.0453 5600 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
07:50:26.0500 5600 Schedule - ok
07:50:26.0546 5600 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
07:50:26.0546 5600 Secdrv - ok
07:50:26.0593 5600 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
07:50:26.0625 5600 seclogon - ok
07:50:26.0843 5600 [ 306F9390976E41063D21AB9AB6D48122 ] Secunia PSI Agent C:\Program Files\Secunia\PSI\PSIA.exe
07:50:27.0031 5600 Secunia PSI Agent - ok
07:50:27.0125 5600 [ B9C7617C1E8AB6FDFF75D3C8DAFCB4C8 ] senfilt C:\WINDOWS\system32\drivers\senfilt.sys
07:50:27.0171 5600 senfilt - ok
07:50:27.0234 5600 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
07:50:27.0234 5600 SENS - ok
07:50:27.0265 5600 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
07:50:27.0265 5600 serenum - ok
07:50:27.0312 5600 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
07:50:27.0328 5600 Serial - ok
07:50:27.0390 5600 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
07:50:27.0390 5600 Sfloppy - ok
07:50:27.0468 5600 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
07:50:27.0562 5600 SharedAccess - ok
07:50:27.0578 5600 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
07:50:27.0578 5600 ShellHWDetection - ok
07:50:27.0593 5600 Simbad - ok
07:50:27.0671 5600 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
07:50:27.0687 5600 SkypeUpdate - ok
07:50:27.0718 5600 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
07:50:27.0718 5600 SLIP - ok
07:50:27.0796 5600 [ C6D9959E493682F872A639B6EC1B4A08 ] smwdm C:\WINDOWS\system32\drivers\smwdm.sys
07:50:27.0812 5600 smwdm - ok
07:50:27.0828 5600 Sparrow - ok
07:50:27.0875 5600 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
07:50:27.0875 5600 splitter - ok
07:50:27.0953 5600 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
07:50:27.0953 5600 Spooler - ok
07:50:27.0968 5600 SQLAgent$MICROSOFTBCM - ok
07:50:28.0000 5600 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
07:50:28.0000 5600 sr - ok
07:50:28.0093 5600 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\System32\srsvc.dll
07:50:28.0156 5600 srservice - ok
07:50:28.0218 5600 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
07:50:28.0265 5600 Srv - ok
07:50:28.0343 5600 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
07:50:28.0406 5600 SSDPSRV - ok
07:50:28.0453 5600 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
07:50:28.0453 5600 StillCam - ok
07:50:28.0515 5600 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
07:50:28.0593 5600 stisvc - ok
07:50:28.0640 5600 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
07:50:28.0671 5600 streamip - ok
07:50:28.0703 5600 [ C86A229BB5CB5DC47498B2C530A9458E ] SWDUMon C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
07:50:28.0734 5600 SWDUMon - ok
07:50:28.0765 5600 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
07:50:28.0765 5600 swenum - ok
07:50:28.0796 5600 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
07:50:28.0796 5600 swmidi - ok
07:50:28.0812 5600 SwPrv - ok
07:50:28.0828 5600 symc810 - ok
07:50:28.0843 5600 symc8xx - ok
07:50:28.0859 5600 sym_hi - ok
07:50:28.0875 5600 sym_u3 - ok
07:50:28.0921 5600 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
07:50:28.0921 5600 sysaudio - ok
07:50:29.0000 5600 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
07:50:29.0000 5600 SysmonLog - ok
07:50:29.0062 5600 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
07:50:29.0125 5600 TapiSrv - ok
07:50:29.0187 5600 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\TCPIP.SYS
07:50:29.0234 5600 Tcpip - ok
07:50:29.0484 5600 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
07:50:29.0500 5600 TDPIPE - ok
07:50:29.0531 5600 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
07:50:29.0531 5600 TDTCP - ok
07:50:29.0578 5600 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
07:50:29.0593 5600 TermDD - ok
07:50:29.0640 5600 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
07:50:29.0703 5600 TermService - ok
07:50:29.0734 5600 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
07:50:29.0750 5600 Themes - ok
07:50:29.0750 5600 TosIde - ok
07:50:29.0781 5600 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
07:50:29.0828 5600 TrkWks - ok
07:50:29.0875 5600 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
07:50:29.0875 5600 Udfs - ok
07:50:29.0890 5600 ultra - ok
07:50:29.0968 5600 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
07:50:30.0031 5600 Update - ok
07:50:30.0093 5600 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
07:50:30.0109 5600 upnphost - ok
07:50:30.0140 5600 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
07:50:30.0140 5600 UPS - ok
07:50:30.0203 5600 [ 83CAFCB53201BBAC04D822F32438E244 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
07:50:30.0203 5600 USBAAPL - ok
07:50:30.0265 5600 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
07:50:30.0265 5600 usbaudio - ok
07:50:30.0328 5600 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
07:50:30.0390 5600 usbccgp - ok
07:50:30.0453 5600 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
07:50:30.0453 5600 usbehci - ok
07:50:30.0531 5600 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
07:50:30.0531 5600 usbhub - ok
07:50:30.0578 5600 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
07:50:30.0578 5600 usbprint - ok
07:50:30.0609 5600 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
07:50:30.0640 5600 usbscan - ok
07:50:30.0687 5600 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
07:50:30.0718 5600 USBSTOR - ok
07:50:30.0781 5600 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
07:50:30.0781 5600 usbuhci - ok
07:50:30.0812 5600 [ BEE793D4A059CAEA55D6AC20E19B3A8F ] USB_RNDIS C:\WINDOWS\system32\DRIVERS\usb8023.sys
07:50:30.0812 5600 USB_RNDIS - ok
07:50:30.0859 5600 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
07:50:30.0875 5600 VgaSave - ok
07:50:30.0875 5600 ViaIde - ok
07:50:30.0953 5600 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
07:50:30.0953 5600 VolSnap - ok
07:50:31.0015 5600 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
07:50:31.0031 5600 VSS - ok
07:50:31.0109 5600 [ 7DB85B78309C05C9F06F469ED976DC9E ] vToolbarUpdater13.2.0 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe
07:50:31.0187 5600 vToolbarUpdater13.2.0 - ok
07:50:31.0265 5600 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\System32\w32time.dll
07:50:31.0312 5600 W32Time - ok
07:50:31.0359 5600 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
07:50:31.0359 5600 Wanarp - ok
07:50:31.0375 5600 WDICA - ok
07:50:31.0421 5600 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
07:50:31.0421 5600 wdmaud - ok
07:50:31.0453 5600 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
07:50:31.0500 5600 WebClient - ok
07:50:31.0593 5600 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
07:50:31.0656 5600 winachsf - ok
07:50:31.0781 5600 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
07:50:31.0859 5600 winmgmt - ok
07:50:32.0312 5600 [ 94667CBB8AE2F50672C8E49B8011B10D ] WiselinkPro C:\Program Files\SAMSUNG\SAMSUNG PC Share Manager\WiselinkPro.exe
07:50:35.0812 5600 WiselinkPro - ok
07:50:35.0859 5600 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
07:50:35.0875 5600 WmdmPmSN - ok
07:50:35.0937 5600 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
07:50:35.0937 5600 WmiApSrv - ok
07:50:36.0062 5600 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
07:50:36.0109 5600 WMPNetworkSvc - ok
07:50:36.0218 5600 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
07:50:36.0296 5600 WPFFontCache_v0400 - ok
07:50:36.0328 5600 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
07:50:36.0390 5600 wscsvc - ok
07:50:36.0437 5600 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
07:50:36.0453 5600 WSTCODEC - ok
07:50:36.0531 5600 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
07:50:36.0546 5600 wuauserv - ok
07:50:36.0593 5600 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
07:50:36.0609 5600 WudfPf - ok
07:50:36.0640 5600 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
07:50:36.0640 5600 WudfRd - ok
07:50:36.0671 5600 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
07:50:36.0703 5600 WudfSvc - ok
07:50:36.0781 5600 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
07:50:36.0796 5600 WZCSVC - ok
07:50:36.0843 5600 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
07:50:36.0859 5600 xmlprov - ok
07:50:36.0890 5600 ================ Scan global ===============================
07:50:36.0968 5600 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
07:50:37.0046 5600 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
07:50:37.0125 5600 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
07:50:37.0156 5600 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
07:50:37.0171 5600 [Global] - ok
07:50:37.0171 5600 ================ Scan MBR ==================================
07:50:37.0203 5600 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
07:50:37.0453 5600 \Device\Harddisk0\DR0 - ok
07:50:37.0484 5600 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
07:50:37.0937 5600 \Device\Harddisk1\DR1 - ok
07:50:37.0953 5600 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR4
07:50:38.0109 5600 \Device\Harddisk2\DR4 - ok
07:50:38.0125 5600 ================ Scan VBR ==================================
07:50:38.0125 5600 [ 9A164366E9939F9EBB8CA43BA155ED7E ] \Device\Harddisk0\DR0\Partition1
07:50:38.0125 5600 \Device\Harddisk0\DR0\Partition1 - ok
07:50:38.0140 5600 [ 4DA31CFC2AACF07C97E9CFF115908ABB ] \Device\Harddisk1\DR1\Partition1
07:50:38.0140 5600 \Device\Harddisk1\DR1\Partition1 - ok
07:50:38.0156 5600 [ 01A496F192FA0079E2361E1867FC9EAC ] \Device\Harddisk2\DR4\Partition1
07:50:38.0156 5600 \Device\Harddisk2\DR4\Partition1 - ok
07:50:38.0171 5600 ============================================================
07:50:38.0171 5600 Scan finished
07:50:38.0171 5600 ============================================================
07:50:38.0187 7984 Detected object count: 0
07:50:38.0187 7984 Actual detected object count: 0
07:51:30.0984 8012 ============================================================
07:51:30.0984 8012 Scan started
07:51:30.0984 8012 Mode: Manual; TDLFS;
07:51:30.0984 8012 ============================================================
07:51:31.0343 8012 ================ Scan system memory ========================
07:51:31.0343 8012 System memory - ok
07:51:31.0343 8012 ================ Scan services =============================
07:51:31.0468 8012 [ F7EABCA8375EA2DC6F35C4BCA4757515 ] A2DDA C:\Documents and Settings\Administrator.STEPHEN-2TZF3K9.001\My Documents\EmsisoftEmergencyKit\Run\a2ddax86.sys
07:51:31.0468 8012 A2DDA - ok
07:51:31.0562 8012 Abiosdsk - ok
07:51:31.0578 8012 abp480n5 - ok
07:51:31.0640 8012 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
07:51:31.0640 8012 ACPI - ok
07:51:31.0687 8012 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
07:51:31.0703 8012 ACPIEC - ok
07:51:31.0812 8012 [ 95CE557D16A75606CCC2D7F3B0B0BCCB ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
07:51:31.0828 8012 AdobeFlashPlayerUpdateSvc - ok
07:51:31.0828 8012 adpu160m - ok
07:51:31.0890 8012 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
07:51:31.0890 8012 aec - ok
07:51:31.0968 8012 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
07:51:31.0968 8012 AFD - ok
07:51:31.0968 8012 Aha154x - ok
07:51:31.0984 8012 aic78u2 - ok
07:51:32.0000 8012 aic78xx - ok
07:51:32.0046 8012 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
07:51:32.0046 8012 Alerter - ok
07:51:32.0093 8012 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
07:51:32.0093 8012 ALG - ok
07:51:32.0093 8012 AliIde - ok
07:51:32.0109 8012 amsint - ok
07:51:32.0265 8012 [ 3DEBBECF665DCDDE3A95D9B902010817 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
07:51:32.0265 8012 Apple Mobile Device - ok
07:51:32.0281 8012 AppMgmt - ok
07:51:32.0296 8012 asc - ok
07:51:32.0296 8012 asc3350p - ok
07:51:32.0312 8012 asc3550 - ok
07:51:32.0640 8012 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
07:51:32.0640 8012 aspnet_state - ok
07:51:32.0687 8012 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
07:51:32.0687 8012 AsyncMac - ok
07:51:32.0734 8012 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\ATAPI.SYS
07:51:32.0734 8012 atapi - ok
07:51:32.0750 8012 Atdisk - ok
07:51:32.0781 8012 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
07:51:32.0781 8012 Atmarpc - ok
07:51:32.0828 8012 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
07:51:32.0828 8012 AudioSrv - ok
07:51:32.0890 8012 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
07:51:32.0890 8012 audstub - ok
07:51:32.0937 8012 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwdx C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
07:51:32.0937 8012 Avgfwdx - ok
07:51:32.0953 8012 [ 8BE661C16FBF84A73BCEC84B6B4A9DB5 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
07:51:32.0953 8012 Avgfwfd - ok
07:51:33.0078 8012 [ 733D86815BEB34E2982BC7F561C35AE3 ] avgfws C:\Program Files\AVG\AVG2013\avgfws.exe
07:51:33.0078 8012 avgfws - ok
07:51:33.0406 8012 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
07:51:33.0453 8012 AVGIDSAgent - ok
07:51:33.0515 8012 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
07:51:33.0515 8012 AVGIDSDriver - ok
07:51:33.0546 8012 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
07:51:33.0546 8012 AVGIDSHX - ok
07:51:33.0562 8012 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
07:51:33.0562 8012 AVGIDSShim - ok
07:51:33.0578 8012 [ D53D35031365A0ECCB1DC1BC1B15B18E ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
07:51:33.0593 8012 Avgldx86 - ok
07:51:33.0640 8012 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\WINDOWS\system32\DRIVERS\avglogx.sys
07:51:33.0640 8012 Avglogx - ok
07:51:33.0671 8012 [ 6C7C00B8DD22B4343B47FED148387057 ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
07:51:33.0671 8012 Avgmfx86 - ok
07:51:33.0718 8012 [ F3D57358DE0B8B3491013C615754A7C7 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
07:51:33.0718 8012 Avgrkx86 - ok
07:51:33.0750 8012 [ BA73B38E9033FC6018DB736B635706AE ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
07:51:33.0750 8012 Avgtdix - ok
07:51:33.0828 8012 [ 34F335FEC0D7A7A4D329390B7C7B59B8 ] avgtp C:\WINDOWS\system32\drivers\avgtpx86.sys
07:51:33.0828 8012 avgtp - ok
07:51:33.0875 8012 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
07:51:33.0890 8012 avgwd - ok
07:51:33.0953 8012 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
07:51:33.0953 8012 Beep - ok
07:51:34.0015 8012 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
07:51:34.0015 8012 BITS - ok
07:51:34.0125 8012 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
07:51:34.0140 8012 Bonjour Service - ok
07:51:34.0187 8012 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
07:51:34.0187 8012 Browser - ok
07:51:34.0234 8012 [ C945DC4EEE3F624DFD07788EA7F0DB0A ] bvrp_pci C:\WINDOWS\System32\drivers\bvrp_pci.sys
07:51:34.0234 8012 bvrp_pci - ok
07:51:34.0281 8012 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
07:51:34.0281 8012 cbidf2k - ok
07:51:34.0328 8012 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
07:51:34.0328 8012 CCDECODE - ok
07:51:34.0343 8012 cd20xrnt - ok
07:51:34.0390 8012 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
07:51:34.0390 8012 Cdaudio - ok
07:51:34.0421 8012 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
07:51:34.0421 8012 Cdfs - ok
07:51:34.0437 8012 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
07:51:34.0437 8012 Cdrom - ok
07:51:34.0453 8012 Changer - ok
07:51:34.0500 8012 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
07:51:34.0500 8012 CiSvc - ok
07:51:34.0531 8012 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
07:51:34.0531 8012 ClipSrv - ok
07:51:34.0593 8012 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
07:51:34.0609 8012 clr_optimization_v2.0.50727_32 - ok
07:51:34.0656 8012 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
07:51:34.0656 8012 clr_optimization_v4.0.30319_32 - ok
07:51:34.0671 8012 CmdIde - ok
07:51:34.0687 8012 COMSysApp - ok
07:51:34.0703 8012 Cpqarray - ok
07:51:34.0750 8012 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
07:51:34.0750 8012 CryptSvc - ok
07:51:34.0765 8012 dac2w2k - ok
07:51:34.0781 8012 dac960nt - ok
07:51:34.0875 8012 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
07:51:34.0875 8012 DcomLaunch - ok
07:51:35.0046 8012 [ 34AE0DFA3EE3B5B9975042D87332D0B7 ] DefaultTabUpdate C:\Documents and Settings\Owner\Application Data\DefaultTab\DefaultTab\DTUpdate.exe
07:51:35.0046 8012 DefaultTabUpdate - ok
07:51:35.0125 8012 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
07:51:35.0125 8012 Dhcp - ok
07:51:35.0171 8012 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
07:51:35.0171 8012 Disk - ok
07:51:35.0187 8012 dmadmin - ok
07:51:35.0265 8012 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
07:51:35.0281 8012 dmboot - ok
07:51:35.0312 8012 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
07:51:35.0312 8012 dmio - ok
07:51:35.0359 8012 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
07:51:35.0359 8012 dmload - ok
07:51:35.0406 8012 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
07:51:35.0406 8012 dmserver - ok
07:51:35.0453 8012 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
07:51:35.0453 8012 DMusic - ok
07:51:35.0515 8012 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
07:51:35.0515 8012 Dnscache - ok
07:51:35.0562 8012 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
07:51:35.0578 8012 Dot3svc - ok
07:51:35.0578 8012 dpti2o - ok
07:51:35.0625 8012 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
07:51:35.0625 8012 drmkaud - ok
07:51:35.0687 8012 [ 7D91DC6342248369F94D6EBA0CF42E99 ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
07:51:35.0687 8012 E100B - ok
07:51:35.0734 8012 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
07:51:35.0734 8012 EapHost - ok
07:51:35.0796 8012 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
07:51:35.0796 8012 ERSvc - ok
07:51:35.0843 8012 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
07:51:35.0843 8012 Eventlog - ok
07:51:35.0937 8012 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\System32\es.dll
07:51:35.0937 8012 EventSystem - ok
07:51:35.0968 8012 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
07:51:35.0968 8012 Fastfat - ok
07:51:36.0015 8012 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
07:51:36.0031 8012 FastUserSwitchingCompatibility - ok
07:51:36.0046 8012 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
07:51:36.0046 8012 Fdc - ok
07:51:36.0109 8012 [ 64795F5368272D034A108D34C0F4E44F ] FilterService C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys
07:51:36.0109 8012 FilterService - ok
07:51:36.0156 8012 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
07:51:36.0156 8012 Fips - ok
07:51:36.0218 8012 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
07:51:36.0218 8012 Flpydisk - ok
07:51:36.0281 8012 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
07:51:36.0281 8012 FltMgr - ok
07:51:36.0375 8012 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
07:51:36.0375 8012 FontCache3.0.0.0 - ok
07:51:36.0406 8012 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
07:51:36.0406 8012 Fs_Rec - ok
07:51:36.0437 8012 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
07:51:36.0437 8012 Ftdisk - ok
07:51:36.0484 8012 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
07:51:36.0484 8012 GEARAspiWDM - ok
07:51:36.0546 8012 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
07:51:36.0546 8012 Gpc - ok
07:51:36.0656 8012 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
07:51:36.0656 8012 gupdate - ok
07:51:36.0671 8012 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
07:51:36.0671 8012 gupdatem - ok
07:51:36.0765 8012 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
07:51:36.0765 8012 helpsvc - ok
07:51:36.0781 8012 HidServ - ok
07:51:36.0812 8012 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys
07:51:36.0812 8012 hidusb - ok
07:51:36.0859 8012 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
07:51:36.0859 8012 hkmsvc - ok
07:51:36.0875 8012 hpn - ok
07:51:36.0937 8012 [ D03D10F7DED688FECF50F8FBF1EA9B8A ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
07:51:36.0937 8012 HPZid412 - ok
07:51:36.0984 8012 [ 89F41658929393487B6B7D13C8528CE3 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
07:51:36.0984 8012 HPZipr12 - ok
07:51:37.0015 8012 [ ABCB05CCDBF03000354B9553820E39F8 ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
07:51:37.0015 8012 HPZius12 - ok
07:51:37.0078 8012 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
07:51:37.0078 8012 HSFHWBS2 - ok
07:51:37.0156 8012 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
07:51:37.0171 8012 HSF_DP - ok
07:51:37.0234 8012 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
07:51:37.0234 8012 HTTP - ok
07:51:37.0281 8012 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
07:51:37.0296 8012 HTTPFilter - ok
07:51:37.0312 8012 i2omgmt - ok
07:51:37.0328 8012 i2omp - ok
07:51:37.0359 8012 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
07:51:37.0359 8012 i8042prt - ok
07:51:37.0468 8012 [ 9A883C3C4D91292C0D09DE7C728E781C ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
07:51:37.0484 8012 ialm - ok
07:51:37.0578 8012 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
07:51:37.0593 8012 idsvc - ok
07:51:37.0625 8012 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
07:51:37.0625 8012 Imapi - ok
07:51:37.0687 8012 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\System32\imapi.exe
07:51:37.0687 8012 ImapiService - ok
07:51:37.0703 8012 ini910u - ok
07:51:37.0718 8012 IntelIde - ok
07:51:37.0796 8012 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
07:51:37.0796 8012 intelppm - ok
07:51:37.0890 8012 [ 7BDB4E00E1CB174B56E5B2C31DDE68A7 ] IntuitUpdateService C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
07:51:37.0890 8012 IntuitUpdateService - ok
07:51:37.0953 8012 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
07:51:37.0968 8012 ip6fw - ok
07:51:38.0015 8012 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
07:51:38.0015 8012 IpFilterDriver - ok
07:51:38.0046 8012 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
07:51:38.0046 8012 IpInIp - ok
07:51:38.0109 8012 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
07:51:38.0109 8012 IpNat - ok
07:51:38.0203 8012 [ 178FE38B7740F598391EB2F51AE4CCAC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
07:51:38.0218 8012 iPod Service - ok
07:51:38.0265 8012 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
07:51:38.0265 8012 IPSec - ok
07:51:38.0296 8012 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
07:51:38.0296 8012 IRENUM - ok
07:51:38.0343 8012 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
07:51:38.0343 8012 isapnp - ok
07:51:38.0453 8012 [ 39133291CB607BDD87CFC565A4A1E7A5 ] JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe
07:51:38.0468 8012 JavaQuickStarterService - ok
07:51:38.0515 8012 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
07:51:38.0515 8012 Kbdclass - ok
07:51:38.0546 8012 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
07:51:38.0546 8012 kmixer - ok
07:51:38.0593 8012 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
07:51:38.0609 8012 KSecDD - ok
07:51:38.0656 8012 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
07:51:38.0656 8012 lanmanserver - ok
07:51:38.0718 8012 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
07:51:38.0718 8012 lanmanworkstation - ok
07:51:38.0734 8012 lbrtfdc - ok
07:51:39.0078 8012 [ 24A7D535BD9E58E5BC1AC52EF7E2EC8E ] LeapFrog Connect Device Service C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
07:51:39.0125 8012 LeapFrog Connect Device Service - ok
07:51:39.0187 8012 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
07:51:39.0187 8012 LmHosts - ok
07:51:39.0328 8012 [ 2D0AB9D29E6B0C42CCE955B5A8E0D62D ] LVcKap C:\WINDOWS\system32\DRIVERS\LVcKap.sys
07:51:39.0343 8012 LVcKap - ok
07:51:39.0468 8012 [ A3963E3D997C3646E1D3338EB88A48E9 ] LVMVDrv C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys
07:51:39.0484 8012 LVMVDrv - ok
07:51:39.0593 8012 [ 2154EA3701F4F1F8F2AB7750B41F149B ] lvpopflt C:\WINDOWS\system32\DRIVERS\lvpopflt.sys
07:51:39.0609 8012 lvpopflt - ok
07:51:39.0640 8012 [ 39C767BD6D99C23D28E71B6E0CBA3129 ] LVPr2Mon C:\WINDOWS\system32\drivers\LVPr2Mon.sys
07:51:39.0656 8012 LVPr2Mon - ok
07:51:39.0718 8012 [ 44B3B997E25C5D9A81D6C501451A96D7 ] LVPrcSrv c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe
07:51:39.0718 8012 LVPrcSrv - ok
07:51:39.0734 8012 [ 6E59BC28A41F8A2B702D345A5604652F ] lvselsus C:\WINDOWS\system32\DRIVERS\lvselsus.sys
07:51:39.0750 8012 lvselsus - ok
07:51:39.0781 8012 [ 7B4607C0C664DA98753508F85BB10694 ] LVSrvLauncher C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe
07:51:39.0781 8012 LVSrvLauncher - ok
07:51:39.0812 8012 [ 6AD3F5275F117F08C12EAB2233A9E3FB ] LVUSBSta C:\WINDOWS\system32\drivers\lvusbsta.sys
07:51:39.0828 8012 LVUSBSta - ok
07:51:39.0890 8012 [ B48E599A8CF96876760C7EE62C1352EC ] LVUVC C:\WINDOWS\system32\DRIVERS\lvuvc.sys
07:51:39.0906 8012 LVUVC - ok
07:51:39.0921 8012 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
07:51:39.0921 8012 mdmxsdk - ok
07:51:40.0000 8012 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
07:51:40.0000 8012 Messenger - ok
07:51:40.0046 8012 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
07:51:40.0046 8012 mnmdd - ok
07:51:40.0093 8012 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
07:51:40.0093 8012 mnmsrvc - ok
07:51:40.0140 8012 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
07:51:40.0140 8012 Modem - ok
07:51:40.0203 8012 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
07:51:40.0203 8012 MODEMCSA - ok
07:51:40.0250 8012 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
07:51:40.0250 8012 Mouclass - ok
07:51:40.0265 8012 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
07:51:40.0265 8012 MountMgr - ok
07:51:40.0343 8012 [ 7E34BFA1A7B60BBA1DA03D677F16CD63 ] MpFilter C:\WINDOWS\system32\DRIVERS\MpFilter.sys
07:51:40.0343 8012 MpFilter - ok
07:51:40.0500 8012 [ A69630D039C38018689190234F866D77 ] MpKsl110c98d8 c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{35784337-FA2F-477C-8E05-5839BB6F1C29}\MpKsl110c98d8.sys
07:51:40.0515 8012 MpKsl110c98d8 - ok
07:51:40.0515 8012 mraid35x - ok
07:51:40.0562 8012 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
07:51:40.0562 8012 MRxDAV - ok
07:51:40.0640 8012 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
07:51:40.0656 8012 MRxSmb - ok
07:51:40.0687 8012 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
07:51:40.0687 8012 MSDTC - ok
07:51:40.0734 8012 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
07:51:40.0734 8012 Msfs - ok
07:51:40.0750 8012 MSIServer - ok
07:51:40.0796 8012 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
07:51:40.0812 8012 MSKSSRV - ok
07:51:40.0906 8012 [ 90DC23D940551DB35367FB1E40575B25 ] MsMpSvc c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
07:51:40.0906 8012 MsMpSvc - ok
07:51:40.0937 8012 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
07:51:40.0937 8012 MSPCLOCK - ok
07:51:40.0968 8012 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
07:51:40.0984 8012 MSPQM - ok
07:51:41.0031 8012 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
07:51:41.0031 8012 mssmbios - ok
07:51:41.0078 8012 MSSQL$MICROSOFTBCM - ok
07:51:41.0140 8012 [ CB7524C21727404BD3140DCA32DEB7DE ] MSSQLServerADHelper C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
07:51:41.0140 8012 MSSQLServerADHelper - ok
07:51:41.0171 8012 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
07:51:41.0171 8012 MSTEE - ok
07:51:41.0218 8012 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
07:51:41.0218 8012 Mup - ok
07:51:41.0281 8012 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
07:51:41.0281 8012 NABTSFEC - ok
07:51:41.0343 8012 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
07:51:41.0343 8012 napagent - ok
07:51:41.0390 8012 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
07:51:41.0390 8012 NDIS - ok
07:51:41.0421 8012 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
07:51:41.0421 8012 NdisIP - ok
07:51:41.0468 8012 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
07:51:41.0484 8012 NdisTapi - ok
07:51:41.0531 8012 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
07:51:41.0531 8012 Ndisuio - ok
07:51:41.0546 8012 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
07:51:41.0546 8012 NdisWan - ok
07:51:41.0609 8012 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
07:51:41.0609 8012 NDProxy - ok
07:51:41.0656 8012 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\WINDOWS\system32\HPZinw12.dll
07:51:41.0656 8012 Net Driver HPZ12 - ok
07:51:41.0703 8012 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
07:51:41.0703 8012 NetBIOS - ok
07:51:41.0734 8012 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
07:51:41.0734 8012 NetBT - ok
07:51:41.0781 8012 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
07:51:41.0781 8012 NetDDE - ok
07:51:41.0796 8012 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
07:51:41.0812 8012 NetDDEdsdm - ok
07:51:41.0859 8012 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\System32\lsass.exe
07:51:41.0859 8012 Netlogon - ok
07:51:41.0890 8012 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
07:51:41.0890 8012 Netman - ok
07:51:41.0937 8012 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
07:51:41.0937 8012 NetTcpPortSharing - ok
07:51:41.0984 8012 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
07:51:41.0984 8012 Nla - ok
07:51:42.0078 8012 [ B400ED9FA710F2E5FC3C1CB14D7947B0 ] NMSAccessU C:\Program Files\BurnAware Free\nmsaccessu.exe
07:51:42.0093 8012 NMSAccessU - ok
07:51:42.0140 8012 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
07:51:42.0140 8012 Npfs - ok
07:51:42.0218 8012 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
07:51:42.0218 8012 Ntfs - ok
07:51:42.0265 8012 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
07:51:42.0265 8012 NtLmSsp - ok
07:51:42.0359 8012 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
07:51:42.0359 8012 NtmsSvc - ok
07:51:42.0390 8012 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
07:51:42.0406 8012 Null - ok
07:51:42.0437 8012 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
07:51:42.0437 8012 NwlnkFlt - ok
07:51:42.0453 8012 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
07:51:42.0453 8012 NwlnkFwd - ok
07:51:42.0500 8012 [ 94F1743DC981373CFA8688365FBC6FB0 ] OMCI C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS
07:51:42.0500 8012 OMCI - ok
07:51:42.0562 8012 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
07:51:42.0562 8012 ose - ok
07:51:42.0625 8012 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
07:51:42.0625 8012 Parport - ok
07:51:42.0656 8012 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
07:51:42.0656 8012 PartMgr - ok
07:51:42.0703 8012 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
07:51:42.0703 8012 ParVdm - ok
07:51:42.0718 8012 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
07:51:42.0734 8012 PCI - ok
07:51:42.0734 8012 PCIDump - ok
07:51:42.0921 8012 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
07:51:42.0921 8012 PCIIde - ok
07:51:42.0984 8012 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
07:51:42.0984 8012 Pcmcia - ok
07:51:43.0000 8012 PDCOMP - ok
07:51:43.0015 8012 PDFRAME - ok
07:51:43.0046 8012 PDRELI - ok
07:51:43.0062 8012 PDRFRAME - ok
07:51:43.0078 8012 perc2 - ok
07:51:43.0093 8012 perc2hib - ok
07:51:43.0156 8012 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
07:51:43.0156 8012 PlugPlay - ok
07:51:43.0234 8012 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
07:51:43.0234 8012 Pml Driver HPZ12 - ok
07:51:43.0281 8012 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\System32\lsass.exe
07:51:43.0281 8012 PolicyAgent - ok
07:51:43.0343 8012 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
07:51:43.0343 8012 PptpMiniport - ok
07:51:43.0359 8012 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
07:51:43.0359 8012 Processor - ok
07:51:43.0375 8012 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
07:51:43.0390 8012 ProtectedStorage - ok
07:51:43.0406 8012 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
07:51:43.0406 8012 PSched - ok
07:51:43.0453 8012 [ D24DFD16A1E2A76034DF5AA18125C35D ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
07:51:43.0453 8012 PSI - ok
07:51:43.0500 8012 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
07:51:43.0500 8012 Ptilink - ok
07:51:43.0515 8012 ql1080 - ok
07:51:43.0531 8012 Ql10wnt - ok
07:51:43.0546 8012 ql12160 - ok
07:51:43.0546 8012 ql1240 - ok
07:51:43.0562 8012 ql1280 - ok
07:51:43.0578 8012 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
07:51:43.0578 8012 RasAcd - ok
07:51:43.0625 8012 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
07:51:43.0640 8012 RasAuto - ok
07:51:43.0671 8012 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
07:51:43.0671 8012 Rasl2tp - ok
07:51:43.0734 8012 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
07:51:43.0734 8012 RasMan - ok
07:51:43.0750 8012 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
07:51:43.0750 8012 RasPppoe - ok
07:51:43.0781 8012 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
07:51:43.0781 8012 Raspti - ok
07:51:43.0812 8012 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
07:51:43.0812 8012 Rdbss - ok
07:51:43.0828 8012 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
07:51:43.0828 8012 RDPCDD - ok
07:51:43.0890 8012 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
07:51:43.0890 8012 RDPWD - ok
07:51:43.0937 8012 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
07:51:43.0953 8012 RDSessMgr - ok
07:51:43.0984 8012 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
07:51:43.0984 8012 redbook - ok
07:51:44.0046 8012 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
07:51:44.0046 8012 RemoteAccess - ok
07:51:44.0109 8012 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
07:51:44.0125 8012 RpcLocator - ok
07:51:44.0171 8012 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
07:51:44.0171 8012 RpcSs - ok
07:51:44.0234 8012 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
07:51:44.0250 8012 RSVP - ok
07:51:44.0281 8012 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
07:51:44.0296 8012 SamSs - ok
07:51:44.0343 8012 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
07:51:44.0359 8012 SCardSvr - ok
07:51:44.0406 8012 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
07:51:44.0421 8012 Schedule - ok
07:51:44.0453 8012 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
07:51:44.0453 8012 Secdrv - ok
07:51:44.0500 8012 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
07:51:44.0500 8012 seclogon - ok
07:51:44.0687 8012 [ 306F9390976E41063D21AB9AB6D48122 ] Secunia PSI Agent C:\Program Files\Secunia\PSI\PSIA.exe
07:51:44.0703 8012 Secunia PSI Agent - ok
07:51:44.0796 8012 [ B9C7617C1E8AB6FDFF75D3C8DAFCB4C8 ] senfilt C:\WINDOWS\system32\drivers\senfilt.sys
07:51:44.0796 8012 senfilt - ok
07:51:44.0843 8012 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
07:51:44.0859 8012 SENS - ok
07:51:44.0875 8012 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
07:51:44.0875 8012 serenum - ok
07:51:44.0906 8012 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
07:51:44.0906 8012 Serial - ok
07:51:44.0984 8012 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
07:51:44.0984 8012 Sfloppy - ok
07:51:45.0046 8012 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
07:51:45.0046 8012 SharedAccess - ok
07:51:45.0078 8012 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
07:51:45.0078 8012 ShellHWDetection - ok
07:51:45.0093 8012 Simbad - ok
07:51:45.0156 8012 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
07:51:45.0156 8012 SkypeUpdate - ok
07:51:45.0203 8012 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
07:51:45.0203 8012 SLIP - ok
07:51:45.0281 8012 [ C6D9959E493682F872A639B6EC1B4A08 ] smwdm C:\WINDOWS\system32\drivers\smwdm.sys
07:51:45.0281 8012 smwdm - ok
07:51:45.0296 8012 Sparrow - ok
07:51:45.0359 8012 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
07:51:45.0359 8012 splitter - ok
07:51:45.0406 8012 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
07:51:45.0406 8012 Spooler - ok
07:51:45.0421 8012 SQLAgent$MICROSOFTBCM - ok
07:51:45.0453 8012 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
07:51:45.0453 8012 sr - ok
07:51:45.0515 8012 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\System32\srsvc.dll
07:51:45.0515 8012 srservice - ok
07:51:45.0578 8012 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
07:51:45.0593 8012 Srv - ok
07:51:45.0625 8012 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
07:51:45.0625 8012 SSDPSRV - ok
07:51:45.0703 8012 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
07:51:45.0703 8012 StillCam - ok
07:51:45.0765 8012 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
07:51:45.0781 8012 stisvc - ok
07:51:45.0812 8012 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
07:51:45.0812 8012 streamip - ok
07:51:45.0875 8012 [ C86A229BB5CB5DC47498B2C530A9458E ] SWDUMon C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
07:51:45.0875 8012 SWDUMon - ok
07:51:45.0906 8012 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
07:51:45.0906 8012 swenum - ok
07:51:45.0937 8012 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
07:51:45.0937 8012 swmidi - ok
07:51:45.0953 8012 SwPrv - ok
07:51:45.0968 8012 symc810 - ok
07:51:45.0984 8012 symc8xx - ok
07:51:46.0000 8012 sym_hi - ok
07:51:46.0015 8012 sym_u3 - ok
07:51:46.0062 8012 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
07:51:46.0062 8012 sysaudio - ok
07:51:46.0140 8012 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
07:51:46.0140 8012 SysmonLog - ok
07:51:46.0156 8012 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
07:51:46.0171 8012 TapiSrv - ok
07:51:46.0234 8012 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\TCPIP.SYS
07:51:46.0234 8012 Tcpip - ok
07:51:46.0281 8012 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
07:51:46.0296 8012 TDPIPE - ok
07:51:46.0312 8012 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
07:51:46.0312 8012 TDTCP - ok
07:51:46.0359 8012 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
07:51:46.0359 8012 TermDD - ok
07:51:46.0421 8012 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
07:51:46.0421 8012 TermService - ok
07:51:46.0468 8012 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
07:51:46.0468 8012 Themes - ok
07:51:46.0484 8012 TosIde - ok
07:51:46.0531 8012 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
07:51:46.0531 8012 TrkWks - ok
07:51:46.0578 8012 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
07:51:46.0578 8012 Udfs - ok
07:51:46.0593 8012 ultra - ok
07:51:46.0656 8012 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
07:51:46.0656 8012 Update - ok
07:51:46.0718 8012 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
07:51:46.0718 8012 upnphost - ok
07:51:46.0734 8012 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
07:51:46.0750 8012 UPS - ok
07:51:46.0781 8012 [ 83CAFCB53201BBAC04D822F32438E244 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
07:51:46.0781 8012 USBAAPL - ok
07:51:46.0843 8012 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
07:51:46.0843 8012 usbaudio - ok
07:51:46.0890 8012 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
07:51:46.0890 8012 usbccgp - ok
07:51:46.0937 8012 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
07:51:46.0953 8012 usbehci - ok
07:51:47.0015 8012 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
07:51:47.0015 8012 usbhub - ok
07:51:47.0046 8012 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
07:51:47.0046 8012 usbprint - ok
07:51:47.0062 8012 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
07:51:47.0062 8012 usbscan - ok
07:51:47.0125 8012 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
07:51:47.0125 8012 USBSTOR - ok
07:51:47.0187 8012 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
07:51:47.0187 8012 usbuhci - ok
07:51:47.0234 8012 [ BEE793D4A059CAEA55D6AC20E19B3A8F ] USB_RNDIS C:\WINDOWS\system32\DRIVERS\usb8023.sys
07:51:47.0234 8012 USB_RNDIS - ok
07:51:47.0265 8012 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
07:51:47.0281 8012 VgaSave - ok
07:51:47.0281 8012 ViaIde - ok
07:51:47.0343 8012 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
07:51:47.0343 8012 VolSnap - ok
07:51:47.0390 8012 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
07:51:47.0390 8012 VSS - ok
07:51:47.0484 8012 [ 7DB85B78309C05C9F06F469ED976DC9E ] vToolbarUpdater13.2.0 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe
07:51:47.0484 8012 vToolbarUpdater13.2.0 - ok
07:51:47.0546 8012 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\System32\w32time.dll
07:51:47.0546 8012 W32Time - ok
07:51:47.0578 8012 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
07:51:47.0578 8012 Wanarp - ok
07:51:47.0593 8012 WDICA - ok
07:51:47.0625 8012 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
07:51:47.0625 8012 wdmaud - ok
07:51:47.0671 8012 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
07:51:47.0671 8012 WebClient - ok
07:51:47.0750 8012 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
07:51:47.0765 8012 winachsf - ok
07:51:47.0875 8012 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
07:51:47.0875 8012 winmgmt - ok
07:51:48.0312 8012 [ 94667CBB8AE2F50672C8E49B8011B10D ] WiselinkPro C:\Program Files\SAMSUNG\SAMSUNG PC Share Manager\WiselinkPro.exe
07:51:48.0390 8012 WiselinkPro - ok
07:51:48.0421 8012 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
07:51:48.0421 8012 WmdmPmSN - ok
07:51:48.0515 8012 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
07:51:48.0515 8012 WmiApSrv - ok
07:51:48.0625 8012 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
07:51:48.0640 8012 WMPNetworkSvc - ok
07:51:48.0750 8012 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
07:51:48.0750 8012 WPFFontCache_v0400 - ok
07:51:48.0796 8012 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
07:51:48.0812 8012 wscsvc - ok
07:51:48.0875 8012 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
07:51:48.0875 8012 WSTCODEC - ok
07:51:48.0921 8012 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
07:51:48.0921 8012 wuauserv - ok
07:51:48.0968 8012 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
07:51:48.0968 8012 WudfPf - ok
07:51:49.0000 8012 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
07:51:49.0000 8012 WudfRd - ok
07:51:49.0031 8012 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
07:51:49.0031 8012 WudfSvc - ok
07:51:49.0109 8012 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
07:51:49.0109 8012 WZCSVC - ok
07:51:49.0156 8012 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
07:51:49.0156 8012 xmlprov - ok
07:51:49.0187 8012 ================ Scan global ===============================
07:51:49.0234 8012 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
07:51:49.0312 8012 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
07:51:49.0375 8012 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
07:51:49.0421 8012 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
07:51:49.0421 8012 [Global] - ok
07:51:49.0437 8012 ================ Scan MBR ==================================
07:51:49.0453 8012 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
07:51:49.0687 8012 \Device\Harddisk0\DR0 - ok
07:51:49.0718 8012 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
07:51:50.0156 8012 \Device\Harddisk1\DR1 - ok
07:51:50.0171 8012 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR4
07:51:50.0281 8012 \Device\Harddisk2\DR4 - ok
07:51:50.0281 8012 ================ Scan VBR ==================================
07:51:50.0281 8012 [ 9A164366E9939F9EBB8CA43BA155ED7E ] \Device\Harddisk0\DR0\Partition1
07:51:50.0281 8012 \Device\Harddisk0\DR0\Partition1 - ok
07:51:50.0296 8012 [ 4DA31CFC2AACF07C97E9CFF115908ABB ] \Device\Harddisk1\DR1\Partition1
07:51:50.0312 8012 \Device\Harddisk1\DR1\Partition1 - ok
07:51:50.0312 8012 [ 01A496F192FA0079E2361E1867FC9EAC ] \Device\Harddisk2\DR4\Partition1
07:51:50.0312 8012 \Device\Harddisk2\DR4\Partition1 - ok
07:51:50.0328 8012 ============================================================
07:51:50.0328 8012 Scan finished
07:51:50.0328 8012 ============================================================
07:51:50.0343 2532 Detected object count: 0
07:51:50.0343 2532 Actual detected object count: 0
07:57:04.0437 7264 Deinitialize success


# AdwCleaner v2.102 - Logfile created 12/24/2012 at 08:55:48
# Updated 23/12/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Owner - STEPHEN-2TZF3K9
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\OQ773K55\AdwCleaner[1].exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Documents and Settings\All Users\Application Data\AVG Secure Search
Deleted on reboot : C:\Program Files\Common Files\AVG Secure Search
File Deleted : C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
Folder Deleted : C:\DOCUME~1\Owner\LOCALS~1\Temp\AskSearch
Folder Deleted : C:\Documents and Settings\dona\Local Settings\Application Data\AskToolbar
Folder Deleted : C:\Documents and Settings\Owner\Application Data\AVG Secure Search
Folder Deleted : C:\Documents and Settings\Owner\Application Data\DefaultTab
Folder Deleted : C:\Documents and Settings\Owner\Local Settings\Application Data\AskToolbar
Folder Deleted : C:\Documents and Settings\Owner\Local Settings\Application Data\AVG Secure Search
Folder Deleted : C:\WINDOWS\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registry] *****

Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\AppDataLow\Software\DefaultTab
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\AskToolbar
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\Default Tab
Key Deleted : HKCU\Software\DefaultTab
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\wecarereminder
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEHelperv2.5.0.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\IEHelperv250.WeCareReminder
Key Deleted : HKLM\SOFTWARE\Classes\IEHelperv250.WeCareReminder.1
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B12920CF-BE13-4C09-890D-1B6EFFFE2FBE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\Software\Default Tab
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5B6CDA-8F90-4740-9A8C-28AC5D3C73FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DefaultTab
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

*************************

AdwCleaner[R1].txt - [10994 octets] - [24/12/2012 08:21:27]
AdwCleaner[S1].txt - [469 octets] - [24/12/2012 08:52:55]
AdwCleaner[S2].txt - [10780 octets] - [24/12/2012 08:55:48]

########## EOF - C:\AdwCleaner[S2].txt - [10841 octets] ##########


C:\Documents and Settings\Owner\Application Data\Sun\Java\Deployment\cache\6.0\2\928c9c2-157cfbc6 Java/Agent.CE trojan deleted - quarantined
C:\Documents and Settings\Owner\Application Data\Sun\Java\Deployment\cache\6.0\30\4cc1331e-72f739aa Java/Agent.BH trojan deleted - quarantined
C:\Documents and Settings\Owner\Application Data\Sun\Java\Deployment\cache\6.0\51\4efcae33-1500f4dd a variant of Java/Exploit.Agent.NEA trojan deleted - quarantined
C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\JRQGFKZV\frostwire-5.1.4.windows[1].exe Win32/OpenCandy application cleaned by deleting - quarantined
C:\Program Files\FrostWire 5\frostwire-installer.exe Win32/OpenCandy application cleaned by deleting - quarantined

#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:01 AM

Posted 25 December 2012 - 08:51 PM

How is it now??

Pleas run >>>>
MiniToolBox
Please download MiniToolBox, save it to your desktop and run it.Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.


TFC
Please download TFC (Temp File Cleaner) by Old Timer and save it to your desktop.
alternate download link
  • Save any unsaved work. TFC will close ALL open programs including your browser!
  • Double-click on TFC.exe to run it. If you are using Vista, right-click on the file and choose Run As Administrator.
  • Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
  • TFC will clear out all temp folders for all user accounts (temp, IE temp, Java, FF, Opera, Chrome, Safari), including Administrator, All Users, LocalService, NetworkService, and any other accounts in the user folder.
  • Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway to ensure a complete clean.
Note: It is normal for the computer to be slow to boot after running TFC cleaner the first time.



Please download Rkill by Grinler and save it to your desktop.Link 1
Link 2
  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • If the tool does not run from any of the links provided, please let me know.
Do not reboot the computer, you will need to run the application again.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#14 Sfontenot

Sfontenot
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:09:01 AM

Posted 28 December 2012 - 10:01 AM

Here are the results

Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 12/28/2012 08:53:12 AM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Possibly Patched Files.

* C:\WINDOWS\system32\services.exe
* C:\WINDOWS\system32\lsass.exe
* C:\WINDOWS\system32\svchost.exe
* C:\WINDOWS\system32\svchost.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\system32\spoolsv.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\Explorer.EXE
* C:\WINDOWS\system32\ctfmon.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\System32\svchost.exe
* C:\WINDOWS\System32\svchost.exe

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Policies\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* No issues found.

Searching for Missing Digital Signatures:

* C:\WINDOWS\System32\browser.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2705219-v2\SP3QFE\browser.dll : 78,336 : 07/06/2012 00:58 AM : fc6d1d80588d371f0321e15a75b2f8f2 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\browser.dll : 77,312 : 08/04/2004 00:56 AM : e3cfccdda4edd1d0dc9168b2e18f27b8 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2705219-v2$\browser.dll : 77,824 : 04/13/2008 07:11 PM : a06ce3399d16db864f55faeb1f1927a9 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\browser.dll : 77,824 : 04/13/2008 07:11 PM : a06ce3399d16db864f55faeb1f1927a9 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\browser.dll : 78,336 : 07/06/2012 07:58 AM : cfd4e51402da9838b5a04ae680af54a0 [Pos Repl]

* C:\WINDOWS\System32\clipsrv.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe : 33,280 : 08/04/2004 07:56 AM : c8dec22c4137d7a90f8bdf41ca4b82ae [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe : 33,280 : 04/13/2008 07:12 PM : 34cbe729f38138217f9c80212a2a0c82 [Pos Repl]

* C:\WINDOWS\System32\comctl32.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\comctl32.dll : 617,472 : 08/25/2006 07:45 AM : b0124cb21d28b1c9f678b566b6b57d92 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2296011$\comctl32.dll : 617,472 : 04/13/2008 07:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB923191$\comctl32.dll : 611,328 : 08/04/2004 07:56 AM : a77dfb85faee49d66c74da6024ebc69b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\comctl32.dll : 617,472 : 04/13/2008 07:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\comctl32.dll : 617,472 : 08/23/2010 07:12 AM : 93afb83fbc1f9443cac722fca63d73bf [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll : 921,088 : 07/16/2003 03:20 PM : aef3d788dbf40c7c4d204ea45eb0c505 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll : 921,600 : 07/16/2003 03:20 PM : 76b90bd220f1b1cc9e183c6b1ae9fbb4 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll : 1,050,624 : 08/04/2004 03:57 AM : 5af68a5e44734a082442668e9c787743 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll : 1,054,208 : 08/25/2006 03:45 AM : c4e80875c1cf1222fc5efd0314ae5c01 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll : 1,054,208 : 04/13/2008 07:12 PM : bd38d1ebe24a46bd3eda059560afba12 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll : 1,054,208 : 08/23/2010 07:12 AM : 736b12b725aeb2b07f0241a9f680cb10 [Pos Repl]

* C:\WINDOWS\System32\comres.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\comres.dll : 792,064 : 08/04/2004 07:56 AM : 6728270cb7dbb776ed086f5ac4c82310 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\comres.dll : 792,064 : 04/13/2008 07:11 PM : 1280a158c722fa95a80fb7aebe78fa7d [Pos Repl]

* C:\WINDOWS\System32\cryptsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll : 60,416 : 08/04/2004 07:56 AM : 10654f9ddcea9c46cfb77554231be73b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll : 62,464 : 04/13/2008 07:11 PM : 3d4e199942e29207970e04315d02ad3b [Pos Repl]

* C:\WINDOWS\System32\csrss.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\csrss.exe : 6,144 : 08/04/2004 07:56 AM : f12b178b1678d778cfd3ff1fc38c71fb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\csrss.exe : 6,144 : 04/13/2008 07:12 PM : 44f275c64738ea2056e3d9580c23b60f [Pos Repl]

* C:\WINDOWS\System32\ctfmon.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe : 15,360 : 08/04/2004 07:56 AM : 24232996a38c0b0cf151c2140ae29fc8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe : 15,360 : 04/13/2008 07:12 PM : 5f1d5f88303d4a4dbc8e5f97ba967cc3 [Pos Repl]

* C:\WINDOWS\System32\d3d8.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\d3d8.dll : 1,179,648 : 08/04/2004 07:56 AM : 42803ec60803c1a0754671e9183458f1 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\d3d8.dll : 1,179,648 : 04/13/2008 07:11 PM : f099b129022170f2df9e1c0185c9bcfb [Pos Repl]

* C:\WINDOWS\System32\d3d8thk.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\d3d8thk.dll : 8,192 : 08/04/2004 07:56 AM : 8d9210e9858d525646251dfa1fe37ebe [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\d3d8thk.dll : 8,192 : 04/13/2008 07:11 PM : 31b067c412fa1a9bad3ca2a63d7da440 [Pos Repl]

* C:\WINDOWS\System32\d3d9.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\d3d9.dll : 1,689,088 : 08/04/2004 07:56 AM : d67bdbbda86cc9aeebbaf3217c1717d8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\d3d9.dll : 1,689,088 : 04/13/2008 07:11 PM : 0607cbc6fa20114cb491efe4b2f9efad [Pos Repl]

* C:\WINDOWS\System32\ddraw.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ddraw.dll : 266,240 : 08/04/2004 07:56 AM : 7ed462f353b3d915a418a689fa881f96 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ddraw.dll : 279,552 : 04/13/2008 07:11 PM : a340cd71eb535a3dd751b5f28723e50c [Pos Repl]

* C:\WINDOWS\System32\dllhost.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe : 5,120 : 08/04/2004 07:56 AM : dd87db7387b9eb441c5674888a0d840c [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dllhost.exe : 5,120 : 04/13/2008 07:12 PM : 0a9ba6af531afe7fa5e4fb973852d863 [Pos Repl]

* C:\WINDOWS\System32\drivers\acpiec.sys [NoSig]

* C:\WINDOWS\System32\drivers\acpi.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\acpi.sys : 187,776 : 08/04/2004 07:07 AM : a10c7534f7223f4a73a948967d00e69b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\acpi.sys : 187,776 : 04/13/2008 01:36 PM : 8fd99680a539792a30e97944fdaecf17 [Pos Repl]

* C:\WINDOWS\System32\drivers\aec.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\aec.sys : 142,464 : 08/04/2004 07:39 AM : 841f385c6cfaf66b58fbd898722bb4f0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\aec.sys : 142,592 : 04/13/2008 01:39 AM : 8bed39e3c35d6a489438b8141717a557 [Pos Repl]

* C:\WINDOWS\System32\drivers\afd.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\afd.sys : 138,496 : 10/16/2008 00:07 AM : 38d7b715504da4741df35e3594fe2099 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2592799\SP3QFE\afd.sys : 138,496 : 08/17/2011 00:41 AM : f6b7b1ecd7b41736bdb6ff4b092bcb79 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\afd.sys : 138,368 : 06/20/2008 00:44 AM : d99ddffb33deacdcf20717cb520379f6 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\afd.sys : 138,496 : 06/20/2008 00:40 AM : e3049b90fe06f3f740b7cfda44995e2c [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\afd.sys : 138,496 : 06/20/2008 00:48 AM : d6ee6014241d034e63c49a50cb2b442a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956803\SP2QFE\afd.sys : 138,368 : 08/14/2008 00:48 AM : 6a0397376853e604de8e1e7a87fc08ac [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956803\SP3GDR\afd.sys : 138,496 : 08/14/2008 00:04 AM : 7e775010ef291da96ad17ca4b17137d7 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956803\SP3QFE\afd.sys : 138,496 : 08/14/2008 00:34 AM : 4d43e74f2a1239d53929b82600f1971c [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\afd.sys : 138,368 : 08/14/2008 07:51 AM : 55e6e1c51b6d30e54335750955453702 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2509553$\afd.sys : 138,496 : 08/14/2008 07:04 AM : 7e775010ef291da96ad17ca4b17137d7 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2592799$\afd.sys : 138,496 : 10/16/2008 07:43 AM : 7618d5218f2a614672ec61a80d854a37 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748$\afd.sys : 138,112 : 04/13/2008 02:19 PM : 322d0e36693d6e24a2398bee62a268cd [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748_0$\afd.sys : 138,496 : 08/04/2004 02:14 AM : 5ac495f4cb807b2b98ad2ad591e6d92e [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956803$\afd.sys : 138,496 : 06/20/2008 02:40 AM : e3049b90fe06f3f740b7cfda44995e2c [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956803_0$\afd.sys : 138,368 : 06/20/2008 02:44 AM : 944ca435bfcfc82cc1ed9e3a7d731aa9 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\afd.sys : 138,112 : 04/13/2008 02:19 PM : 322d0e36693d6e24a2398bee62a268cd [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\afd.sys : 138,496 : 08/17/2011 02:49 AM : 1e44bc1e83d8fd2305f8d452db109cf9 [Pos Repl]

* C:\WINDOWS\System32\drivers\agp440.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\agp440.sys : 42,368 : 08/04/2004 02:07 AM : 2c428fa0c3e3a01ed93c9b2a27d8d4bb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\agp440.sys : 42,368 : 04/13/2008 01:36 PM : 08fd04aa961bdc77fb983f328334e3d7 [Pos Repl]

* C:\WINDOWS\System32\drivers\amdk6.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\amdk6.sys : 36,992 : 08/04/2004 02:59 AM : dad16a9d5c873e7219e6b43802ed316a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\amdk6.sys : 37,376 : 04/13/2008 01:31 PM : d7701d7e72243286cc88c9973d891057 [Pos Repl]

* C:\WINDOWS\System32\drivers\amdk7.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\amdk7.sys : 37,376 : 08/04/2004 02:59 AM : 680ad1c1bb16239e28d8f33a54a7a3c7 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\amdk7.sys : 37,760 : 04/13/2008 01:31 PM : 8fce268cdbdd83b23419d1f35f42c7b1 [Pos Repl]

* C:\WINDOWS\System32\drivers\arp1394.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\arp1394.sys : 60,800 : 08/04/2004 02:58 AM : f0d692b0bffb46e30eb3cea168bbc49f [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\arp1394.sys : 60,800 : 04/13/2008 01:51 PM : b5b8a80875c1dededa8b02765642c32f [Pos Repl]

* C:\WINDOWS\System32\drivers\asyncmac.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\asyncmac.sys : 14,336 : 08/04/2004 02:05 AM : 02000abf34af4c218c35d257024807d6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\asyncmac.sys : 14,336 : 04/13/2008 01:57 PM : b153affac761e7f5fcfa822b9c4e97bc [Pos Repl]

* C:\WINDOWS\System32\drivers\atapi.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\atapi.sys : 95,360 : 08/04/2004 02:59 AM : cdfe4411a69c224bd1d11b2da92dac51 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\atapi.sys : 96,512 : 04/13/2008 01:40 PM : 9f3a2f5aa6875c72bf062c712cfa2674 [Pos Repl]

* C:\WINDOWS\System32\drivers\audstub.sys [NoSig]

* C:\WINDOWS\System32\drivers\beep.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\beep.sys : 4,224 : 07/16/2003 03:24 PM : da1f27d85e0d1525f6621372e7b685e9 [Pos Repl]

* C:\WINDOWS\System32\drivers\bridge.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\bridge.sys : 71,552 : 08/04/2004 02:59 AM : e4e6a0922e3d983728c9ad4e8d466954 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\bridge.sys : 71,552 : 04/13/2008 01:53 PM : f934d1b230f84e1d19dd00ac5a7a83ed [Pos Repl]

* C:\WINDOWS\System32\drivers\bthport.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys : 272,128 : 06/13/2008 00:52 AM : 956e7e86bb00e792c8ff3afb2f8e460d [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys : 272,128 : 06/13/2008 00:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys : 272,128 : 06/13/2008 00:27 AM : 51d05d5a8a7d93ab0b1a8d6a38db3ca4 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\bthport.sys : 272,128 : 06/13/2008 02:10 AM : 95ef6f3f386d93ee1e4d9ca45a50252a [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951376-v2$\bthport.sys : 273,024 : 04/13/2008 01:46 PM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951376-v2_0$\bthport.sys : 274,304 : 08/04/2004 01:10 AM : 30b76ec553b202890e90a93a4e1a27b5 [Pos Repl]
+-> C:\WINDOWS\Driver Cache\i386\bthport.sys : 272,128 : 06/13/2008 01:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\bthport.sys : 273,024 : 04/13/2008 01:46 PM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\bthport.sys : 272,128 : 06/13/2008 01:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]

* C:\WINDOWS\System32\drivers\cbidf2k.sys [NoSig]

* C:\WINDOWS\System32\drivers\cdaudio.sys [NoSig]

* C:\WINDOWS\System32\drivers\cdfs.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\cdfs.sys : 63,744 : 08/04/2004 01:14 AM : cd7d5152df32b47f4e36f710b35aae02 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\cdfs.sys : 63,744 : 04/13/2008 02:14 PM : c885b02847f5d2fd45a24e219ed93b32 [Pos Repl]

* C:\WINDOWS\System32\drivers\cdrom.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys : 49,536 : 08/04/2004 01:59 AM : af9c19b3100fe010496b1a27181fbf72 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\cdrom.sys : 62,976 : 04/13/2008 01:40 PM : 1f4260cc5b42272d71f79e570a27a4fe [Pos Repl]

* C:\WINDOWS\System32\drivers\classpnp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\classpnp.sys : 49,664 : 08/04/2004 01:14 AM : d86173b401470f06d9810f7962969ddf [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\classpnp.sys : 49,536 : 04/13/2008 02:16 PM : fe47dd8fe6d7768ff94ebec6c74b2719 [Pos Repl]

* C:\WINDOWS\System32\drivers\cpqdap01.sys [NoSig]

* C:\WINDOWS\System32\drivers\crusoe.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\crusoe.sys : 36,480 : 08/04/2004 01:59 AM : 6af1684ccaac3f7ef4ee9ba65eb0677a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\crusoe.sys : 36,736 : 04/13/2008 01:31 PM : f50d9bdbb25cce075e514dc07472a22f [Pos Repl]

* C:\WINDOWS\System32\drivers\diskdump.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\diskdump.sys : 14,208 : 08/04/2004 01:59 AM : d16c81677a9be399c63cd2ea486472a5 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\diskdump.sys : 14,208 : 04/13/2008 01:40 PM : e65e2353a5d74ea89971cb918eeeb2f6 [Pos Repl]

* C:\WINDOWS\System32\drivers\disk.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\disk.sys : 36,352 : 08/04/2004 01:59 AM : 00ca44e4534865f8a3b64f7c0984bff0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\disk.sys : 36,352 : 04/13/2008 01:40 PM : 044452051f3e02e7963599fc8f4f3e25 [Pos Repl]

* C:\WINDOWS\System32\drivers\dmboot.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dmboot.sys : 799,744 : 08/04/2004 01:07 AM : c0fbb516e06e243f0cf31f597e7ebf7d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dmboot.sys : 799,744 : 04/13/2008 01:44 PM : d992fe1274bde0f84ad826acae022a41 [Pos Repl]

* C:\WINDOWS\System32\drivers\dmio.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dmio.sys : 153,344 : 08/04/2004 01:07 AM : f5e7b358a732d09f4bcf2824b88b9e28 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dmio.sys : 153,344 : 04/13/2008 01:44 PM : 7c824cf7bbde77d95c08005717a95f6f [Pos Repl]

* C:\WINDOWS\System32\drivers\dmload.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\dmload.sys : 5,888 : 07/16/2003 03:27 PM : e9317282a63ca4d188c0df5e09c6ac5f [Pos Repl]

* C:\WINDOWS\System32\drivers\DMusic.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dmusic.sys : 52,864 : 08/04/2004 01:07 AM : a6f881284ac1150e37d9ae47ff601267 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dmusic.sys : 52,864 : 04/13/2008 01:45 PM : 8a208dfcf89792a484e76c40e5f50b45 [Pos Repl]

* C:\WINDOWS\System32\drivers\drmkaud.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\drmkaud.sys : 2,944 : 08/04/2004 01:07 AM : 1ed4dbbae9f5d558dbba4cc450e3eb2e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\drmkaud.sys : 2,944 : 04/13/2008 01:45 PM : 8f5fcff8e8848afac920905fbd9d33c8 [Pos Repl]

* C:\WINDOWS\System32\drivers\drmk.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\drmk.sys : 60,288 : 08/04/2004 01:07 AM : ff86422268de771d571e123eb7092c6a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\drmk.sys : 60,160 : 04/13/2008 01:45 PM : 6cb08593487f5701d2d2254e693eafce [Pos Repl]

* C:\WINDOWS\System32\drivers\dxapi.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\dxapi.sys : 10,496 : 07/16/2003 03:27 PM : fe97d0343acfdebdd578fc67cc91fa87 [Pos Repl]

* C:\WINDOWS\System32\drivers\dxg.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dxg.sys : 71,040 : 08/04/2004 01:00 AM : d3dac8432110aad0b02a58b4459ab835 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dxg.sys : 71,168 : 04/13/2008 01:38 PM : ac7280566a7bb85cb3291f04ddc1198e [Pos Repl]

* C:\WINDOWS\System32\drivers\dxgthk.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\dxgthk.sys : 3,328 : 07/16/2003 03:27 PM : a73f5d6705b1d820c19b18782e176efd [Pos Repl]

* C:\WINDOWS\System32\drivers\fastfat.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\fastfat.sys : 143,360 : 08/04/2004 01:14 AM : 3117f595e9615e04f05a54fc15a03b20 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\fastfat.sys : 143,744 : 04/13/2008 02:14 PM : 38d332a6d56af32635675f132548343e [Pos Repl]

* C:\WINDOWS\System32\drivers\fdc.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\fdc.sys : 27,392 : 08/04/2004 01:59 AM : ced2e8396a8838e59d8fd529c680e02c [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\fdc.sys : 27,392 : 04/13/2008 01:40 PM : 92cdd60b6730b9f50f6a1a0c1f8cdc81 [Pos Repl]

* C:\WINDOWS\System32\drivers\fips.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\fips.sys : 34,944 : 07/16/2003 03:28 PM : e153ab8a11de5452bcf5ac7652dbf3ed [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\fips.sys : 44,544 : 04/13/2008 01:33 PM : d45926117eb9fa946a6af572fbe1caa3 [Pos Repl]

* C:\WINDOWS\System32\drivers\flpydisk.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\flpydisk.sys : 20,480 : 08/04/2004 03:59 AM : 0dd1de43115b93f4d85e889d7a86f548 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\flpydisk.sys : 20,480 : 04/13/2008 01:40 PM : 9d27e7b80bfcdf1cdd9b555862d5e7f0 [Pos Repl]

* C:\WINDOWS\System32\drivers\fltMgr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\fltmgr.sys : 124,800 : 08/04/2004 03:01 AM : 157754f0df355a9e0a6f54721914f9c6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\fltmgr.sys : 129,792 : 04/13/2008 01:32 PM : b2cf4b0786f8212cb92ed2b50c6db6b0 [Pos Repl]

* C:\WINDOWS\System32\drivers\fs_rec.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\fs_rec.sys : 7,936 : 07/16/2003 03:28 PM : 3e1e2bd4f39b0e2b7dc4f4d2bcc2779a [Pos Repl]

* C:\WINDOWS\System32\drivers\fsvga.sys [NoSig]

* C:\WINDOWS\System32\drivers\ftdisk.sys [NoSig]

* C:\WINDOWS\System32\drivers\hidclass.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\hidclass.sys : 36,224 : 08/04/2004 03:08 AM : 378055ab8dda86228683c697c4e11685 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\hidclass.sys : 36,864 : 04/13/2008 01:45 PM : 1af592532532a402ed7c060f6954004f [Pos Repl]

* C:\WINDOWS\System32\drivers\hidparse.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\hidparse.sys : 24,960 : 08/04/2004 03:08 AM : 5fff41cd5108e9051d255c37825af697 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\hidparse.sys : 24,960 : 04/13/2008 01:45 PM : 96eccf28fdbf1b2cc12725818a63628d [Pos Repl]

* C:\WINDOWS\System32\drivers\hidusb.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\hidusb.sys : 9,600 : 07/16/2003 03:29 PM : 1de6783b918f540149aa69943bdfeba8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\hidusb.sys : 10,368 : 04/13/2008 01:45 PM : ccf82c5ec8a7326c3066de870c06daf1 [Pos Repl]

* C:\WINDOWS\System32\drivers\http.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB970430\SP3QFE\http.sys : 265,728 : 10/20/2009 00:21 AM : 937031c085718c1c04a9c0864625ec6b [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\http.sys : 263,040 : 08/04/2004 03:00 AM : c19b522a9ae0bbc3293397f3055e80a1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB970430$\http.sys : 264,832 : 04/13/2008 01:53 PM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
+-> C:\WINDOWS\Driver Cache\i386\http.sys : 265,728 : 10/20/2009 01:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\http.sys : 264,832 : 04/13/2008 01:53 PM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\http.sys : 265,728 : 10/20/2009 01:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]

* C:\WINDOWS\System32\drivers\i8042prt.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\i8042prt.sys : 52,736 : 08/04/2004 01:14 AM : 5502b58eef7486ee6f93f3f164dcb808 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\i8042prt.sys : 52,480 : 04/13/2008 02:18 PM : 4a0b06aa8943c1e332520f7440c0aa30 [Pos Repl]

* C:\WINDOWS\System32\drivers\imapi.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\imapi.sys : 41,856 : 08/04/2004 01:00 AM : f8aa320c6a0409c0380e5d8a99d76ec6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\imapi.sys : 42,112 : 04/13/2008 01:40 PM : 083a052659f5310dd8b6a6cb05edcf8e [Pos Repl]

* C:\WINDOWS\System32\drivers\intelppm.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\intelppm.sys : 36,096 : 08/04/2004 01:59 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\intelppm.sys : 36,352 : 04/13/2008 01:31 PM : 8c953733d8f36eb2133f5bb58808b66b [Pos Repl]
+-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\intelppm.sys : 36,096 : 08/04/2004 00:59 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]

* C:\WINDOWS\System32\drivers\ip6fw.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ip6fw.sys : 29,056 : 08/04/2004 01:00 AM : 4448006b6bc60e6c027932cfc38d6855 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ip6fw.sys : 36,608 : 04/13/2008 01:53 PM : 3bb22519a194418d5fec05d800a19ad0 [Pos Repl]

* C:\WINDOWS\System32\drivers\ipfltdrv.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\ipfltdrv.sys : 32,896 : 07/16/2003 03:30 PM : 731f22ba402ee4b62748adaf6363c182 [Pos Repl]

* C:\WINDOWS\System32\drivers\ipinip.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ipinip.sys : 20,992 : 08/04/2004 01:04 AM : e1ec7f5da720b640cd8fb8424f1b14bb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ipinip.sys : 20,864 : 04/13/2008 01:57 PM : b87ab476dcf76e72010632b5550955f5 [Pos Repl]

* C:\WINDOWS\System32\drivers\ipnat.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ipnat.sys : 134,912 : 08/04/2004 01:04 AM : b5a8e215ac29d24d60b4d1250ef05ace [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ipnat.sys : 152,832 : 04/13/2008 01:57 PM : cc748ea12c6effde940ee98098bf96bb [Pos Repl]

* C:\WINDOWS\System32\drivers\ipsec.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ipsec.sys : 74,752 : 08/04/2004 01:14 AM : 64537aa5c003a6afeee1df819062d0d1 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ipsec.sys : 75,264 : 04/13/2008 02:19 PM : 23c74d75e36e7158768dd63d92789a91 [Pos Repl]

* C:\WINDOWS\System32\drivers\irenum.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\irenum.sys : 11,264 : 08/04/2004 01:00 AM : 50708daa1b1cbb7d6ac1cf8f56a24410 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\irenum.sys : 11,264 : 04/13/2008 01:54 PM : c93c9ff7b04d772627a3646d89f7bf89 [Pos Repl]

* C:\WINDOWS\System32\drivers\isapnp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys : 35,840 : 07/16/2003 03:30 PM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\isapnp.sys : 37,248 : 04/13/2008 01:36 PM : 05a299ec56e52649b1cf2fc52d20f2d7 [Pos Repl]
+-> C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\isapnp.sys : 35,840 : 07/16/2003 03:30 PM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]

* C:\WINDOWS\System32\drivers\kbdclass.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\kbdclass.sys : 24,576 : 08/04/2004 03:58 AM : ebdee8a2ee5393890a1acee971c4c246 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\kbdclass.sys : 24,576 : 04/13/2008 01:39 PM : 463c1ec80cd17420a542b7f36a36f128 [Pos Repl]

* C:\WINDOWS\System32\drivers\kmixer.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\kmixer.sys : 171,776 : 08/04/2004 03:07 AM : d93cad07c5683db066b0b2d2d3790ead [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\kmixer.sys : 172,416 : 04/13/2008 01:45 PM : 692bcf44383d056aed41b045a323d378 [Pos Repl]

* C:\WINDOWS\System32\drivers\ksecdd.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\ksecdd.sys : 92,928 : 06/24/2009 00:28 AM : c6ebf1d6ad71df30db49b8d3287e1368 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ksecdd.sys : 92,032 : 08/04/2004 03:59 AM : eb7ffe87fd367ea8fca0506f74a87fbb [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB968389$\ksecdd.sys : 92,288 : 04/13/2008 01:31 PM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ksecdd.sys : 92,288 : 04/13/2008 01:31 PM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ksecdd.sys : 92,928 : 06/24/2009 01:18 AM : b467646c54cc746128904e1654c750c1 [Pos Repl]

* C:\WINDOWS\System32\drivers\ks.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ks.sys : 140,928 : 08/04/2004 01:15 AM : b9540e258f952650de8dec68719a5c97 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ks.sys : 141,056 : 04/13/2008 02:16 PM : 0753515f78df7f271a5e61c20bcd36a1 [Pos Repl]

* C:\WINDOWS\System32\drivers\mcd.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\mcd.sys : 7,680 : 07/16/2003 03:32 PM : d1f8be91ed4ddb671d42e473e3fe71ab [Pos Repl]

* C:\WINDOWS\System32\drivers\mf.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mf.sys : 63,744 : 08/04/2004 01:07 AM : 729d83e56c29c510258a6e9e79ffddc3 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mf.sys : 63,744 : 04/13/2008 01:36 PM : a7da20ab18a1bdae28b0f349e57da0d1 [Pos Repl]

* C:\WINDOWS\System32\drivers\mnmdd.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\mnmdd.sys : 4,224 : 07/16/2003 03:33 PM : 4ae068242760a1fb6e1a44bf4e16afa6 [Pos Repl]

* C:\WINDOWS\System32\drivers\modem.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\modem.sys : 30,080 : 08/04/2004 01:08 AM : 6fc6f9d7acc36dca9b914565a3aeda05 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\modem.sys : 30,080 : 04/13/2008 02:00 PM : dfcbad3cec1c5f964962ae10e0bcc8e1 [Pos Repl]

* C:\WINDOWS\System32\drivers\mouclass.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mouclass.sys : 23,040 : 08/04/2004 01:58 AM : 34e1f0031153e491910e12551400192c [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mouclass.sys : 23,040 : 04/13/2008 01:39 PM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]

* C:\WINDOWS\System32\drivers\mountmgr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mountmgr.sys : 42,240 : 08/04/2004 01:58 AM : 65653f3b4477f3c63e68a9659f85ee2e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mountmgr.sys : 42,368 : 04/13/2008 01:39 PM : a80b9a0bad1b73637dbcbba7df72d3fd [Pos Repl]

* C:\WINDOWS\System32\drivers\mrxdav.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mrxdav.sys : 181,248 : 08/04/2004 01:00 AM : 46edcc8f2db2f322c24f48785cb46366 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mrxdav.sys : 180,608 : 04/13/2008 01:32 PM : 11d42bb6206f33fbb3ba0288d3ef81bd [Pos Repl]

* C:\WINDOWS\System32\drivers\mrxsmb.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2536276-v2\SP3QFE\mrxsmb.sys : 457,856 : 07/15/2011 00:29 AM : fb2fccc70f7174c7bf64f48e96d3adf4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\mrxsmb.sys : 448,128 : 10/27/2004 08:15 PM : a1be3cb080dcc0a8270d21e3ca3b7005 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\mrxsmb.sys : 454,400 : 05/05/2006 08:16 AM : 7412ce77c6fd823f8889b4df420c680b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys : 455,936 : 10/24/2008 08:41 AM : 7170ab42b51954def2781a4d1cce65f4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB978251\SP3QFE\mrxsmb.sys : 456,832 : 12/04/2009 08:25 AM : 602549d1e8a622e5746991f6c56b21ca [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB980232\SP3QFE\mrxsmb.sys : 457,216 : 02/24/2010 08:57 AM : d09b9f0b9960dd41e73127b7814c115f [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\mrxsmb.sys : 453,120 : 05/05/2006 01:41 AM : 025af03ce51645c62f3b6907a7e2be5e [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2536276-v2$\mrxsmb.sys : 455,680 : 02/24/2010 01:11 AM : f3aefb11abc521122b67095044169e98 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB914389$\mrxsmb.sys : 451,456 : 08/04/2004 01:15 AM : 1fd607fc67f7f7c633c3da65bfc53d18 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB957097$\mrxsmb.sys : 456,576 : 04/13/2008 02:17 PM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB978251$\mrxsmb.sys : 455,296 : 10/24/2008 02:21 AM : 60ae98742484e7ab80c3c1450e708148 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB980232$\mrxsmb.sys : 455,424 : 12/04/2009 02:22 AM : 421f7b922cec5a5f340e7574a98f7b7c [Pos Repl]
+-> C:\WINDOWS\Driver Cache\i386\mrxsmb.sys : 456,320 : 07/15/2011 01:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mrxsmb.sys : 456,576 : 04/13/2008 02:17 PM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\mrxsmb.sys : 456,320 : 07/15/2011 02:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]

* C:\WINDOWS\System32\drivers\msfs.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msfs.sys : 19,072 : 08/04/2004 02:00 AM : 561b3a4333ca2dbdba28b5b956822519 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msfs.sys : 19,072 : 04/13/2008 01:32 PM : c941ea2454ba8350021d774daf0f1027 [Pos Repl]

* C:\WINDOWS\System32\drivers\msgpc.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msgpc.sys : 35,072 : 08/04/2004 02:04 AM : c0f1d4a21de5a415df8170616703debf [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msgpc.sys : 35,072 : 04/13/2008 01:56 PM : 0a02c63c8b144bd8c86b103dee7c86a2 [Pos Repl]

* C:\WINDOWS\System32\drivers\MSKSSRV.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mskssrv.sys : 7,552 : 08/04/2004 02:58 AM : ae431a8dd3c1d0d0610cdbac16057ad0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mskssrv.sys : 7,552 : 04/13/2008 01:39 PM : d1575e71568f4d9e14ca56b7b0453bf1 [Pos Repl]

* C:\WINDOWS\System32\drivers\MSPCLOCK.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mspclock.sys : 5,376 : 08/04/2004 02:58 AM : 13e75fef9dfeb08eeded9d0246e1f448 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mspclock.sys : 5,376 : 04/13/2008 01:39 PM : 325bb26842fc7ccc1fcce2c457317f3e [Pos Repl]

* C:\WINDOWS\System32\drivers\MSPQM.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mspqm.sys : 4,992 : 08/04/2004 02:58 AM : 1988a33ff19242576c3d0ef9ce785da7 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mspqm.sys : 4,992 : 04/13/2008 01:39 PM : bad59648ba099da4a17680b39730cb3d [Pos Repl]

* C:\WINDOWS\System32\drivers\mssmbios.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mssmbios.sys : 15,488 : 08/04/2004 02:07 AM : 469541f8bfd2b32659d5d463a6714bce [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mssmbios.sys : 15,488 : 04/13/2008 01:36 PM : af5f4f3f14a8ea2c26de30f7a1e17136 [Pos Repl]

* C:\WINDOWS\System32\drivers\mup.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2535512\SP3QFE\mup.sys : 105,472 : 04/21/2011 08:52 AM : f7b1ad991491f02af6da70b00b8bf114 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\mup.sys : 107,904 : 08/04/2004 02:15 AM : 82035e0f41c2dd05ae41d27fe6cf7de1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2535512$\mup.sys : 105,344 : 04/13/2008 02:17 PM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mup.sys : 105,344 : 04/13/2008 02:17 PM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\mup.sys : 105,472 : 04/21/2011 02:37 AM : de6a75f5c270e756c5508d94b6cf68f5 [Pos Repl]

* C:\WINDOWS\System32\drivers\ndis.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ndis.sys : 182,912 : 08/04/2004 02:14 AM : 558635d3af1c7546d26067d5d9b6959e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ndis.sys : 182,656 : 04/13/2008 02:20 PM : 1df7f42665c94b825322fae71721130d [Pos Repl]

* C:\WINDOWS\System32\drivers\ndistapi.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2566454\SP3QFE\ndistapi.sys : 10,496 : 07/08/2011 08:51 AM : 091735a5f20acb1dc147383a905ae002 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ndistapi.sys : 9,600 : 07/16/2003 03:37 PM : 08d43bbdacdf23f34d79e44ed35c1b4c [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2566454$\ndistapi.sys : 10,112 : 04/13/2008 01:57 PM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ndistapi.sys : 10,112 : 04/13/2008 01:57 PM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ndistapi.sys : 10,496 : 07/08/2011 01:02 AM : 0109c4f3850dfbab279542515386ae22 [Pos Repl]

* C:\WINDOWS\System32\drivers\ndisuio.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ndisuio.sys : 12,928 : 08/04/2004 01:03 AM : 34d6cd56409da9a7ed573e1c90a308bf [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ndisuio.sys : 14,592 : 04/13/2008 01:55 PM : f927a4434c5028758a842943ef1a3849 [Pos Repl]

* C:\WINDOWS\System32\drivers\ndiswan.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ndiswan.sys : 91,776 : 08/04/2004 01:14 AM : 0b90e255a9490166ab368cd55a529893 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ndiswan.sys : 91,520 : 04/13/2008 02:20 PM : edc1531a49c80614b2cfda43ca8659ab [Pos Repl]

* C:\WINDOWS\System32\drivers\ndproxy.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2440591\SP3QFE\ndproxy.sys : 40,960 : 11/03/2010 08:55 AM : 816460bd4b4acd27937d1d0813e2e9e9 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ndproxy.sys : 38,016 : 07/16/2003 03:37 PM : 59fc3fb44d2669bc144fd87826bb571f [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2440591$\ndproxy.sys : 40,576 : 04/13/2008 01:57 PM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ndproxy.sys : 40,576 : 04/13/2008 01:57 PM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ndproxy.sys : 40,960 : 11/02/2010 01:17 AM : 9282bd12dfb069d3889eb3fcc1000a9b [Pos Repl]

* C:\WINDOWS\System32\drivers\netbios.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\netbios.sys : 34,560 : 08/04/2004 01:03 AM : 3a2aca8fc1d7786902ca434998d7ceb4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\netbios.sys : 34,688 : 04/13/2008 01:56 PM : 5d81cf9a2f1a3a756b66cf684911cdf0 [Pos Repl]

* C:\WINDOWS\System32\drivers\netbt.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\netbt.sys : 162,816 : 08/04/2004 01:14 AM : 0c80e410cd2f47134407ee7dd19cc86b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\netbt.sys : 162,816 : 04/13/2008 02:21 PM : 74b2b2f5bea5e9a3dc021d685551bd3d [Pos Repl]

* C:\WINDOWS\System32\drivers\nic1394.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\nic1394.sys : 61,824 : 08/04/2004 01:58 AM : 5c5c53db4fef16cf87b9911c7e8c6fbc [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\nic1394.sys : 61,824 : 04/13/2008 01:51 PM : e9e47cfb2d461fa0fc75b7a74c6383ea [Pos Repl]

* C:\WINDOWS\System32\drivers\nikedrv.sys [NoSig]

* C:\WINDOWS\System32\drivers\nmnt.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\nmnt.sys : 40,320 : 08/04/2004 01:59 AM : 60cf8c7192b3614f240838ddbaa4a245 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\nmnt.sys : 40,320 : 04/13/2008 01:53 PM : 1e421a6bcf2203cc61b821ada9de878b [Pos Repl]

* C:\WINDOWS\System32\drivers\npfs.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\npfs.sys : 30,848 : 08/04/2004 01:00 AM : 4f601bcb8f64ea3ac0994f98fed03f8e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\npfs.sys : 30,848 : 04/13/2008 01:32 PM : 3182d64ae053d6fb034f44b6def8034a [Pos Repl]

* C:\WINDOWS\System32\drivers\ntfs.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ntfs.sys : 574,592 : 08/04/2004 01:15 AM : b78be402c3f63dd55521f73876951cdd [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ntfs.sys : 574,976 : 04/13/2008 02:15 PM : 78a08dd6a8d65e697c18e1db01c5cdca [Pos Repl]

* C:\WINDOWS\System32\drivers\null.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\null.sys : 2,944 : 07/16/2003 03:40 PM : 73c1e1f395918bc2c6dd67af7591a3ad [Pos Repl]

* C:\WINDOWS\System32\drivers\nwlnkflt.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\nwlnkflt.sys : 12,416 : 07/16/2003 03:40 PM : b305f3fad35083837ef46a0bbce2fc57 [Pos Repl]

* C:\WINDOWS\System32\drivers\nwlnkfwd.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\nwlnkfwd.sys : 32,512 : 07/16/2003 03:40 PM : c99b3415198d1aab7227f2c88fd664b9 [Pos Repl]

* C:\WINDOWS\System32\drivers\nwlnkipx.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\nwlnkipx.sys : 88,448 : 08/04/2004 01:03 AM : 79ea3fcda7067977625b3363a2657c80 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\nwlnkipx.sys : 88,320 : 04/13/2008 01:56 PM : 8b8b1be2dba4025da6786c645f77f123 [Pos Repl]

* C:\WINDOWS\System32\drivers\nwlnknb.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\nwlnknb.sys : 63,232 : 07/16/2003 03:40 PM : 56d34a67c05e94e16377c60609741ff8 [Pos Repl]

* C:\WINDOWS\System32\drivers\nwlnkspx.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\nwlnkspx.sys : 55,936 : 07/16/2003 03:40 PM : c0bb7d1615e1acbdc99757f6ceaf8cf0 [Pos Repl]

* C:\WINDOWS\System32\drivers\oprghdlr.sys [NoSig]

* C:\WINDOWS\System32\drivers\p3.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\p3.sys : 42,496 : 08/04/2004 01:59 AM : 3e16eff2a6fed2d8d7f5a66dfe65d183 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\p3.sys : 42,752 : 04/13/2008 01:31 PM : c90018bafdc7098619a4a95b046b30f3 [Pos Repl]

* C:\WINDOWS\System32\drivers\parport.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\parport.sys : 80,128 : 08/04/2004 01:59 AM : 29744eb4ce659dfe3b4122deb45bc478 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\parport.sys : 80,128 : 04/13/2008 01:40 PM : 5575faf8f97ce5e713d108c2a58d7c7c [Pos Repl]

* C:\WINDOWS\System32\drivers\partmgr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\partmgr.sys : 18,688 : 07/16/2003 03:41 PM : 3334430c29dc338092f79c38ef7b4cd0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\partmgr.sys : 19,712 : 04/13/2008 01:40 PM : beb3ba25197665d82ec7065b724171c6 [Pos Repl]

* C:\WINDOWS\System32\drivers\parvdm.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\parvdm.sys : 6,784 : 07/16/2003 03:41 PM : 70e98b3fd8e963a6a46a2e6247e0bea1 [Pos Repl]

* C:\WINDOWS\System32\drivers\pciidex.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\pciidex.sys : 25,088 : 08/04/2004 03:59 AM : 520b91ab011456b940d9b05fc91108ff [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\pciidex.sys : 24,960 : 04/13/2008 01:40 PM : 52e60f29221d0d1ac16737e8dbf7c3e9 [Pos Repl]

* C:\WINDOWS\System32\drivers\pci.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\pci.sys : 68,224 : 08/04/2004 03:07 AM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\pci.sys : 68,224 : 04/13/2008 01:36 PM : a219903ccf74233761d92bef471a07b1 [Pos Repl]

* C:\WINDOWS\System32\drivers\pcmcia.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\pcmcia.sys : 119,936 : 08/04/2004 03:07 AM : 82a087207decec8456fbe8537947d579 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\pcmcia.sys : 120,192 : 04/13/2008 01:36 PM : 9e89ef60e9ee05e3f2eef2da7397f1c1 [Pos Repl]

* C:\WINDOWS\System32\drivers\portcls.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\portcls.sys : 145,792 : 08/04/2004 03:15 AM : 5b0f00e43a7094c0b7e433cb42c79164 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\portcls.sys : 146,048 : 04/13/2008 02:19 PM : e82a496c3961efc6828b508c310ce98f [Pos Repl]

* C:\WINDOWS\System32\drivers\processr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\processr.sys : 35,328 : 08/04/2004 03:59 AM : 0d97d88720a4087ec93af7dbb303b30a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\processr.sys : 35,840 : 04/13/2008 01:31 PM : a32bebaf723557681bfc6bd93e98bd26 [Pos Repl]

* C:\WINDOWS\System32\drivers\psched.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\psched.sys : 69,120 : 08/04/2004 03:04 AM : 48671f327553dcf1d27f6197f622a668 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\psched.sys : 69,120 : 04/13/2008 01:56 PM : 09298ec810b07e5d582cb3a3f9255424 [Pos Repl]

* C:\WINDOWS\System32\drivers\ptilink.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\ptilink.sys : 17,792 : 07/16/2003 03:42 PM : 80d317bd1c3dbc5d4fe7b1678c60cadd [Pos Repl]

* C:\WINDOWS\System32\drivers\rasacd.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\rasacd.sys : 8,832 : 07/16/2003 03:42 PM : fe0d99d6f31e4fad8159f690d68ded9c [Pos Repl]

* C:\WINDOWS\System32\drivers\rasl2tp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\rasl2tp.sys : 51,328 : 08/04/2004 03:14 AM : 98faeb4a4dcf812ba1c6fca4aa3e115c [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rasl2tp.sys : 51,328 : 04/13/2008 02:19 PM : 11b4a627bc9614b885c4969bfa5ff8a6 [Pos Repl]

* C:\WINDOWS\System32\drivers\raspppoe.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\raspppoe.sys : 41,472 : 08/04/2004 03:05 AM : 7306eeed8895454cbed4669be9f79faa [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\raspppoe.sys : 41,472 : 04/13/2008 01:57 PM : 5bc962f2654137c9909c3d4603587dee [Pos Repl]

* C:\WINDOWS\System32\drivers\raspptp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\raspptp.sys : 48,384 : 08/04/2004 03:14 AM : 1c5cc65aac0783c344f16353e60b72ac [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\raspptp.sys : 48,384 : 04/13/2008 02:19 PM : efeec01b1d3cf84f16ddd24d9d9d8f99 [Pos Repl]

* C:\WINDOWS\System32\drivers\raspti.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\raspti.sys : 16,512 : 07/16/2003 03:42 PM : fdbb1d60066fcfbb7452fd8f9829b242 [Pos Repl]

* C:\WINDOWS\System32\drivers\rawwan.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\rawwan.sys : 34,432 : 07/16/2003 03:42 PM : 01524cd237223b18adbb48f70083f101 [Pos Repl]

* C:\WINDOWS\System32\drivers\rdbss.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\rdbss.sys : 174,592 : 10/27/2004 08:14 PM : d0fef8156d2d2fec557c100956d76887 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\rdbss.sys : 174,592 : 05/05/2006 08:22 AM : ed375ce745c42a14f10753f7022ecd6a [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\rdbss.sys : 174,592 : 05/05/2006 03:47 AM : 03b965b1ca47f6ef60eb5e51cb50e0af [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB914389$\rdbss.sys : 176,512 : 08/04/2004 03:20 AM : 29d66245adba878fff574cd66abd2884 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rdbss.sys : 175,744 : 04/13/2008 02:28 PM : 7ad224ad1a1437fe28d89cf22b17780a [Pos Repl]

* C:\WINDOWS\System32\drivers\rdpcdd.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\rdpcdd.sys : 4,224 : 07/16/2003 03:42 PM : 4912d5b403614ce99c28420f75353332 [Pos Repl]

* C:\WINDOWS\System32\drivers\rdpdr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\rdpdr.sys : 196,864 : 08/04/2004 03:01 AM : a2cae2c60bc37e0751ef9dda7ceaf4ad [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rdpdr.sys : 196,224 : 04/13/2008 01:32 PM : 15cabd0f7c00c47c70124907916af3f1 [Pos Repl]

* C:\WINDOWS\System32\drivers\rdpwd.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2723135-v2\SP3QFE\rdpwd.sys : 139,784 : 07/04/2012 08:59 AM : c7d9bc54354b8c706abf172d48313f1b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB899591\SP2QFE\rdpwd.sys : 139,528 : 06/09/2005 11:06 PM : 047bea21274c8a4a233674a76c958c2c [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\rdpwd.sys : 139,528 : 06/09/2005 11:09 PM : b54cd38a9ebfbf2b3561426e3fe26f62 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2723135-v2$\rdpwd.sys : 139,656 : 04/13/2008 07:13 PM : 6728e45b66f93c08f11de2e316fc70dd [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB899591$\rdpwd.sys : 139,400 : 08/04/2004 07:01 AM : d4f5643d7714ef499ae9527fdcd50894 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rdpwd.sys : 139,656 : 04/13/2008 07:13 PM : 6728e45b66f93c08f11de2e316fc70dd [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\rdpwd.sys : 139,784 : 07/04/2012 07:05 AM : 43af5212bd8fb5ba6eed9754358bd8f7 [Pos Repl]

* C:\WINDOWS\System32\drivers\redbook.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\redbook.sys : 57,472 : 08/04/2004 07:59 AM : b31b4588e4086d8d84adbf9845c2402b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\redbook.sys : 57,600 : 04/13/2008 01:40 PM : f828dd7e1419b6653894a8f97a0094c5 [Pos Repl]

* C:\WINDOWS\System32\drivers\rmcast.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\rmcast.sys : 202,496 : 07/13/2006 11:43 AM : bcea2b2bf1b6dddd11e65b7478f2d19a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\rmcast.sys : 203,008 : 05/08/2008 11:14 AM : b1f077190ba1cfa0a2a2afae9e7fde2b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\rmcast.sys : 203,136 : 05/08/2008 11:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\rmcast.sys : 203,136 : 05/08/2008 11:58 AM : c711645c76b8ed87c021bf6165e52795 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\rmcast.sys : 202,752 : 05/08/2008 07:28 AM : d18208ed6c768663b08c972eaa7a8b60 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB919007$\rmcast.sys : 200,064 : 07/16/2003 03:43 PM : 35e81b908ae4e97fc7bdf4607c516ff4 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB950762$\rmcast.sys : 202,624 : 04/13/2008 01:55 PM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB950762_0$\rmcast.sys : 202,240 : 07/13/2006 01:48 AM : 9d54c7c15847b933e03d6e7c9307bae5 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rmcast.sys : 202,624 : 04/13/2008 01:55 PM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\rmcast.sys : 203,136 : 05/08/2008 01:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]

* C:\WINDOWS\System32\drivers\rndismp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\rndismp.sys : 30,080 : 08/04/2004 01:04 AM : 7ce8b277f3207ea82d7d22ad348befc6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rndismp.sys : 30,592 : 04/13/2008 01:56 PM : 601844cbcf617ff8c868130ca5b2039d [Pos Repl]

* C:\WINDOWS\System32\drivers\rootmdm.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\rootmdm.sys : 5,888 : 07/16/2003 03:43 PM : d8b0b4ade32574b2d9c5cc34dc0dbbe7 [Pos Repl]

* C:\WINDOWS\System32\drivers\scsiport.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\scsiport.sys : 96,256 : 08/04/2004 01:59 AM : d7fd0ff761e28ac0ea35ad71e0cd67e9 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\scsiport.sys : 96,384 : 04/13/2008 01:40 PM : 76c465f570e90c28942d52ccb2580a10 [Pos Repl]

* C:\WINDOWS\System32\drivers\sdbus.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sdbus.sys : 67,584 : 08/04/2004 01:07 AM : 02fc71b020ec8700ee8a46c58bc6f276 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sdbus.sys : 79,232 : 04/13/2008 01:36 PM : 8d04819a3ce51b9eb47e5689b44d43c4 [Pos Repl]

* C:\WINDOWS\System32\drivers\serenum.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\serenum.sys : 15,488 : 08/04/2004 01:59 AM : a2d868aeeff612e70e213c451a70cafb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\serenum.sys : 15,744 : 04/13/2008 01:40 PM : 0f29512ccd6bead730039fb4bd2c85ce [Pos Repl]

* C:\WINDOWS\System32\drivers\serial.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\serial.sys : 64,896 : 08/04/2004 01:15 AM : cd9404d115a00d249f70a371b46d5a26 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\serial.sys : 64,512 : 04/13/2008 02:15 PM : cca207a8896d4c6a0c9ce29a4ae411a7 [Pos Repl]

* C:\WINDOWS\System32\drivers\sffdisk.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sffdisk.sys : 11,136 : 08/04/2004 01:59 AM : 1d9f1bec651815741f088a8fb88e17ee [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sffdisk.sys : 11,904 : 04/13/2008 01:40 PM : 0fa803c64df0914b41f807ea276bf2a6 [Pos Repl]

* C:\WINDOWS\System32\drivers\sffp_sd.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sffp_sd.sys : 10,240 : 08/04/2004 01:59 AM : 586499fd312ffd7f78553f408e71682e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sffp_sd.sys : 11,008 : 04/13/2008 01:40 PM : c17c331e435ed8737525c86a7557b3ac [Pos Repl]

* C:\WINDOWS\System32\drivers\sfloppy.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sfloppy.sys : 11,392 : 08/04/2004 01:59 AM : 0d13b6df6e9e101013a7afb0ce629fe0 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sfloppy.sys : 11,392 : 04/13/2008 01:40 PM : 8e6b8c671615d126fdc553d1e2de5562 [Pos Repl]

* C:\WINDOWS\System32\drivers\smclib.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\smclib.sys : 14,592 : 07/16/2003 03:45 PM : 017daecf0ed3aa731313433601ec40fa [Pos Repl]

* C:\WINDOWS\System32\drivers\sonydcam.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sonydcam.sys : 25,472 : 08/04/2004 01:09 AM : addc9e4757a68ab60562ad3cb9c288d6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sonydcam.sys : 25,344 : 04/13/2008 01:46 PM : 489703624dac94ed943c2abda022a1cd [Pos Repl]

* C:\WINDOWS\System32\drivers\splitter.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\splitter.sys : 6,400 : 08/04/2004 01:07 AM : 8e186b8f23295d1e42c573b82b80d548 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\splitter.sys : 6,272 : 04/13/2008 01:45 PM : ab8b92451ecb048a4d1de7c3ffcb4a9f [Pos Repl]

* C:\WINDOWS\System32\drivers\sr.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sr.sys : 73,472 : 08/04/2004 01:06 AM : e41b6d037d6cd08461470af04500dc24 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sr.sys : 73,472 : 04/13/2008 01:36 PM : 76bb022c2fb6902fd5bdd4f78fc13a5d [Pos Repl]

* C:\WINDOWS\System32\drivers\srv.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2345886\SP3QFE\srv.sys : 357,248 : 08/26/2010 11:37 AM : 70cd8b8dd2a680b128617c19eb0ab94f [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2508429\SP3QFE\srv.sys : 357,888 : 02/17/2011 11:19 AM : 9b390283569ea58d43d2586032b892f5 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB923414\SP2QFE\srv.sys : 332,928 : 08/14/2006 11:00 AM : 5230953c21c811b5fc1ff31ae2b48097 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB957095\SP2QFE\srv.sys : 333,056 : 08/28/2008 11:35 AM : 5bfa06b8583279d277ccb469a9983998 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB957095\SP3GDR\srv.sys : 333,824 : 09/08/2008 11:41 AM : 4f8a43adef66f135564085a9dca96a26 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB957095\SP3QFE\srv.sys : 333,824 : 09/08/2008 11:37 AM : ae4d13b572399b206b43d65da4d9983d [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB958687\SP3QFE\srv.sys : 333,952 : 12/11/2008 11:33 AM : e89b42b216bc86ada4345908284519cb [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB971468\SP3QFE\srv.sys : 353,792 : 01/01/2010 11:58 AM : 30efed0c77d59ae0cacb0b5c756767ed [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB982214\SP3QFE\srv.sys : 354,304 : 06/21/2010 11:18 AM : 422e4508508015c7d12f40bf9763f158 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\srv.sys : 333,056 : 08/28/2008 01:04 AM : 7a0111577d8046633d5162a3ce15e9e1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2345886$\srv.sys : 354,304 : 06/21/2010 01:27 AM : da852e3e0bf1cea75d756f9866241e57 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2508429$\srv.sys : 357,248 : 08/26/2010 01:39 AM : 0f6aefad3641a657e18081f52d0c15af [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB923414$\srv.sys : 336,256 : 08/04/2004 01:14 AM : 20b7e396720353e4117d64d9dcb926ca [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB957095$\srv.sys : 334,848 : 04/13/2008 02:15 PM : 5252605079810904e31c332e241cd59b [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB957095_0$\srv.sys : 332,928 : 08/14/2006 02:34 AM : ea554a3ffc3f536fe8320eb38f5e4843 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB958687$\srv.sys : 333,824 : 09/08/2008 02:41 AM : 4f8a43adef66f135564085a9dca96a26 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB971468$\srv.sys : 333,952 : 12/11/2008 02:57 AM : 3bb03f2ba89d2be417206c373d2af17c [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB982214$\srv.sys : 353,792 : 12/31/2009 02:50 AM : 89220b427890aa1dffd1a02648ae51c3 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\srv.sys : 334,848 : 04/13/2008 02:15 PM : 5252605079810904e31c332e241cd59b [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\srv.sys : 357,888 : 02/17/2011 02:18 AM : 47ddfc2f003f7f9f0592c6874962a2e7 [Pos Repl]

* C:\WINDOWS\System32\drivers\stream.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\stream.sys : 48,640 : 08/04/2004 02:08 AM : c43356072eb3e88cd62958db10cead47 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\stream.sys : 49,408 : 04/13/2008 01:45 PM : 3e5d89099ded9e86e5639f411693218f [Pos Repl]

* C:\WINDOWS\System32\drivers\swenum.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\swenum.sys : 4,352 : 08/04/2004 02:58 AM : 03c1bae4766e2450219d20b993d6e046 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\swenum.sys : 4,352 : 04/13/2008 01:39 PM : 3941d127aef12e93addf6fe6ee027e0f [Pos Repl]

* C:\WINDOWS\System32\drivers\swmidi.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\swmidi.sys : 54,272 : 08/17/2001 05:00 PM : 94abc808fc4b6d7d2bbf42b85e25bb4d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\swmidi.sys : 56,576 : 04/13/2008 01:45 PM : 8ce882bcc6cf8a62f2b2323d95cb3d01 [Pos Repl]

* C:\WINDOWS\System32\drivers\sysaudio.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sysaudio.sys : 60,800 : 08/04/2004 05:15 AM : 650ad082d46bac0e64c9c0e0928492fd [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sysaudio.sys : 60,800 : 04/13/2008 02:15 PM : 8b83f3ed0f1688b4958f77cd6d2bf290 [Pos Repl]

* C:\WINDOWS\System32\drivers\tape.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\tape.sys : 14,976 : 08/04/2004 05:59 AM : a2a9ca0d1a9ac1ff54220aa0789fe5cf [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tape.sys : 14,976 : 04/13/2008 01:40 PM : fd6093e3decd925f1cffc8a0dd539d72 [Pos Repl]

* C:\WINDOWS\System32\drivers\tcpip6.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 11:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB922819\SP2QFE\tcpip6.sys : 225,664 : 08/16/2006 11:13 AM : a026ea381b026d05a4a3d2388d80c3b8 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip6.sys : 225,920 : 06/20/2008 11:32 AM : 7195e0ce397545e657a81ece9dfbc1c9 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip6.sys : 225,856 : 06/20/2008 11:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 11:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB978338\SP3QFE\tcpip6.sys : 226,880 : 02/11/2010 11:36 AM : f4a3c6abe7818b1b53f58fa1adb605cd [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\tcpip6.sys : 225,920 : 06/20/2008 05:52 AM : 00586ed87ab564b03870a2a3dcc84b55 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB922819$\tcpip6.sys : 223,616 : 08/04/2004 05:07 AM : 4d58bb1ae8841aafd8790ad7e1e3b8ea [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748$\tcpip6.sys : 225,664 : 04/13/2008 02:00 PM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip6.sys : 225,664 : 08/16/2006 02:37 AM : dccacdd2747ada221aece5c9ada5d551 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB978338$\tcpip6.sys : 225,856 : 06/20/2008 02:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tcpip6.sys : 225,664 : 04/13/2008 02:00 PM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\tcpip6.sys : 226,880 : 02/11/2010 02:02 AM : 4e53bbcc4be37d7a4bd6ef1098c89ff7 [Pos Repl]

* C:\WINDOWS\System32\Drivers\tcpip.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 11:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys : 360,576 : 04/20/2006 11:18 AM : b2220c618b42a2212a59d91ebd6fc4b4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys : 360,960 : 06/20/2008 11:44 AM : 744e57c99232201ae98c49168b918f48 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys : 361,600 : 06/20/2008 11:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 11:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys : 360,320 : 06/20/2008 02:45 AM : 2a5554fc5b1e04e131230e3ce035c3f9 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB917953$\tcpip.sys : 359,040 : 08/04/2004 02:14 AM : 9f4b36614a0fc234525ba224957de55c [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys : 361,344 : 04/13/2008 02:20 PM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys : 359,808 : 04/20/2006 02:51 AM : 1dbf125862891817f374f407626967f4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tcpip.sys : 361,344 : 04/13/2008 02:20 PM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\tcpip.sys : 361,600 : 06/20/2008 02:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]

* C:\WINDOWS\System32\drivers\tdi.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\tdi.sys : 18,560 : 08/04/2004 02:07 AM : 6891b74ab9a016064e82a419388d0601 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tdi.sys : 19,072 : 04/13/2008 02:00 PM : 0539d5e53587f82d1b4fd74c5be205cf [Pos Repl]

* C:\WINDOWS\System32\drivers\tdpipe.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\tdpipe.sys : 12,040 : 08/04/2004 02:01 AM : 38d437cf2d98965f239b0abcd66dcb0f [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tdpipe.sys : 12,040 : 04/13/2008 07:13 PM : 6471a66807f5e104e4885f5b67349397 [Pos Repl]

* C:\WINDOWS\System32\drivers\tdtcp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\tdtcp.sys : 21,896 : 08/04/2004 02:01 AM : ed0580af02502d00ad8c4c066b156be9 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tdtcp.sys : 21,896 : 04/13/2008 07:13 PM : c56b6d0402371cf3700eb322ef3aaf61 [Pos Repl]

* C:\WINDOWS\System32\drivers\termdd.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\termdd.sys : 40,840 : 08/04/2004 02:01 AM : a540a99c281d933f3d69d55e48727f47 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\termdd.sys : 40,840 : 04/13/2008 07:13 PM : 88155247177638048422893737429d9e [Pos Repl]

* C:\WINDOWS\System32\drivers\tosdvd.sys [NoSig]

* C:\WINDOWS\System32\drivers\tunmp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\tunmp.sys : 12,416 : 08/04/2004 02:03 AM : 87a0e9e18c10a9e454238e3330e2a26d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tunmp.sys : 12,288 : 04/13/2008 01:56 PM : 8f861eda21c05857eb8197300a92501c [Pos Repl]

* C:\WINDOWS\System32\drivers\udfs.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\udfs.sys : 66,176 : 08/04/2004 02:00 AM : 12f70256f140cd7d52c58c7048fde657 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\udfs.sys : 66,048 : 04/13/2008 01:32 PM : 5787b80c2e3c5e2f56c2a233d91fa2c9 [Pos Repl]

* C:\WINDOWS\System32\drivers\update.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\update.sys : 209,408 : 08/04/2004 02:58 AM : aff2e5045961bbc0a602bb6f95eb1345 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\update.sys : 384,768 : 04/13/2008 01:39 PM : 402ddc88356b1bac0ee3dd1580c76a31 [Pos Repl]

* C:\WINDOWS\System32\drivers\usb8023.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usb8023.sys : 12,672 : 08/04/2004 02:04 AM : af090265ec388bab320f1ff7e7a7d5ea [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usb8023.sys : 12,800 : 04/13/2008 01:56 PM : bee793d4a059caea55d6ac20e19b3a8f [Pos Repl]

* C:\WINDOWS\System32\drivers\usbcamd2.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd2.sys : 23,936 : 07/16/2003 03:27 PM : 61018ba9df6b63e51d9753c980e73ec2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbcamd2.sys : 25,728 : 04/13/2008 01:45 PM : ce97845d2e3f0d274b8bac1ed07c6149 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbcamd.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd.sys : 23,808 : 07/16/2003 03:27 PM : 2654eecc6fb13603ebddcd5c8ea943d1 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbcamd.sys : 25,600 : 04/13/2008 01:45 PM : 1c1a47b40c23358245aa8d0443b6935e [Pos Repl]

* C:\WINDOWS\System32\drivers\usbccgp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbccgp.sys : 31,616 : 08/04/2004 03:08 AM : bffd9f120cc63bcbaa3d840f3eef9f79 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbccgp.sys : 32,128 : 04/13/2008 01:45 PM : 173f317ce0db8e21322e71b7e60a27e8 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbd.sys [NoSig]

* C:\WINDOWS\System32\drivers\usbehci.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbehci.sys : 26,624 : 08/04/2004 03:08 AM : 15e993ba2f6946b2bfbbfcd30398621e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbehci.sys : 30,208 : 04/13/2008 01:45 PM : 65dcf09d0e37d4c6b11b5b0b76d470a7 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbhub.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbhub.sys : 57,600 : 08/04/2004 03:08 AM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbhub.sys : 59,520 : 04/13/2008 01:45 PM : 1ab3cdde553b6e064d2e754efe20285c [Pos Repl]

* C:\WINDOWS\System32\drivers\usbintel.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbintel.sys : 16,000 : 08/04/2004 03:08 AM : 2853fd4c4489e0f8bfcf78efcdb7e998 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbintel.sys : 15,872 : 04/13/2008 01:45 PM : 290913dc4f1125e5a82de52579a44c43 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbport.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbport.sys : 142,976 : 08/04/2004 03:08 AM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbport.sys : 143,872 : 04/13/2008 01:45 PM : 791912e524cc2cc6f50b5f2b52d1eb71 [Pos Repl]

* C:\WINDOWS\System32\drivers\USBSTOR.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys : 26,496 : 08/04/2004 03:08 AM : 6cd7b22193718f1d17a47a1cd6d37e75 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbstor.sys : 26,368 : 04/13/2008 01:45 PM : a32426d9b14a089eaa1d922e0c5801a9 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbuhci.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\usbuhci.sys : 20,480 : 08/04/2004 03:08 AM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usbuhci.sys : 20,608 : 04/13/2008 01:45 PM : 26496f9dee2d787fc3e61ad54821ffe6 [Pos Repl]

* C:\WINDOWS\System32\drivers\vga.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\vga.sys : 20,992 : 08/04/2004 03:07 AM : 8a60edd72b4ea5aea8202daf0e427925 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\vga.sys : 20,992 : 04/13/2008 01:44 PM : 0d3a8fafceacd8b7625cd549757a7df1 [Pos Repl]

* C:\WINDOWS\System32\drivers\videoprt.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\videoprt.sys : 79,744 : 08/04/2004 03:07 AM : d5a9d123f5ed7c9965a481bd20cf66d8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\videoprt.sys : 81,664 : 04/13/2008 01:44 PM : e28726b72c46821a28830e077d39a55b [Pos Repl]

* C:\WINDOWS\System32\drivers\volsnap.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys : 52,352 : 08/04/2004 03:00 AM : ee4660083deba849ff6c485d944b379b [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\volsnap.sys : 52,352 : 04/13/2008 01:41 PM : 4c8fcb5cc53aab716d810740fe59d025 [Pos Repl]

* C:\WINDOWS\System32\drivers\wanarp.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\wanarp.sys : 34,560 : 08/04/2004 03:04 AM : 984ef0b9788abf89974cfed4bfbaacbc [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wanarp.sys : 34,560 : 04/13/2008 01:57 PM : e20b95baedb550f32dd489265c1da1f6 [Pos Repl]

* C:\WINDOWS\System32\drivers\wdmaud.sys [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\wdmaud.sys : 82,944 : 08/04/2004 03:15 AM : 2797f33ebf50466020c430ee4f037933 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wdmaud.sys : 83,072 : 04/13/2008 02:17 PM : 6768acf64b18196494413695f0c3a00f [Pos Repl]

* C:\WINDOWS\System32\drivers\wmilib.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\wmilib.sys : 4,352 : 07/16/2003 03:52 PM : 2f31b7f954bed437f2c75026c65caf7b [Pos Repl]

* C:\WINDOWS\System32\drivers\ws2ifsl.sys [NoSig]
+-> C:\WINDOWS\system32\dllcache\ws2ifsl.sys : 12,032 : 07/16/2003 03:53 PM : 6abe6e225adb5a751622a9cc3bc19ce8 [Pos Repl]

* C:\WINDOWS\System32\dsound.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dsound.dll : 367,616 : 08/04/2004 03:56 AM : 55e148c01296696588eafa425782c3e8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dsound.dll : 367,616 : 04/13/2008 07:11 PM : 4d83ed8bddec431fc8ad907b47cfb6e3 [Pos Repl]

* C:\WINDOWS\System32\dssenh.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\dssenh.dll : 137,216 : 08/04/2004 03:31 AM : cacd2c63a79268d131ea37e85524cc44 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\dssenh.dll : 138,752 : 04/13/2008 07:37 AM : fede68bf80052bad393afd5c2e60dcb0 [Pos Repl]

* C:\WINDOWS\System32\es.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\es.dll : 253,952 : 07/07/2008 03:06 PM : a4ab3dca4a383f0df4988abdeb84f9a4 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\es.dll : 253,952 : 07/07/2008 03:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\es.dll : 253,952 : 07/07/2008 03:23 PM : f17f6226bdc0cd5f0bef0daf84d29bec [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\es.dll : 253,952 : 07/07/2008 03:32 PM : 60d1a6342238378bfb7545c81ee3606c [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB950974$\es.dll : 246,272 : 04/13/2008 07:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB950974_0$\es.dll : 243,200 : 08/04/2004 07:56 AM : acd36a2dd7d1e9d8a060aa651dc07e63 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\es.dll : 246,272 : 04/13/2008 07:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp1qfe\es.dll : 227,328 : 07/25/2005 11:31 PM : 01b2ef40aaaf29786b0f906c487dd56a [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2gdr\es.dll : 243,200 : 07/25/2005 11:39 PM : 34bbd9acc1538818f2c878898c64e793 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2qfe\es.dll : 243,200 : 07/25/2005 11:20 PM : 95f5fea4c6de2c3f28784d0dcc8f0dd3 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\es.dll : 253,952 : 07/07/2008 03:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]

* C:\WINDOWS\System32\eventlog.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll : 55,808 : 08/04/2004 07:56 AM : 82b24cb70e5944e6e34662205a2a5b78 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\eventlog.dll : 56,320 : 04/13/2008 07:11 PM : 6d4feb43ee538fc5428cc7f0565aa656 [Pos Repl]

* C:\WINDOWS\System32\hid.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\hid.dll : 20,992 : 08/04/2004 07:56 AM : 18afee0ede045b6255408d634372dc29 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\hid.dll : 20,992 : 04/13/2008 07:11 PM : 8973122796e3b5d6b5900fc186e55fea [Pos Repl]

* C:\WINDOWS\System32\hnetcfg.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\hnetcfg.dll : 344,064 : 08/04/2004 07:56 AM : 765b30c776a1780b46b479fe614f707c [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll : 344,064 : 04/13/2008 07:11 PM : 3cb32d3b8cbe79899d63280bb7a83cd9 [Pos Repl]

* C:\WINDOWS\System32\imm32.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\imm32.dll : 110,080 : 08/04/2004 07:56 AM : 87ca7ce6469577f059297b9d6556d66d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\imm32.dll : 110,080 : 04/13/2008 07:11 PM : 0da85218e92526972a821587e6a8bf8f [Pos Repl]

* C:\WINDOWS\System32\ipsecsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ipsecsvc.dll : 182,784 : 08/04/2004 07:56 AM : d1e299962b5956005113ec4ab1e0d9b7 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ipsecsvc.dll : 183,808 : 04/13/2008 07:11 PM : 332760fba1655fcfd35bd6f4fd871300 [Pos Repl]

* C:\WINDOWS\System32\ksuser.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ksuser.dll : 4,096 : 08/04/2004 07:56 AM : cbcd254547689bff80c9f547b20911e9 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ksuser.dll : 4,096 : 04/13/2008 07:11 PM : 9b9f1c38d559047b8ac0dba2d5febde9 [Pos Repl]

* C:\WINDOWS\System32\linkinfo.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\linkinfo.dll : 19,968 : 08/31/2005 08:44 PM : 648bf0b4dde4f7a1156dae7174d36efa [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\linkinfo.dll : 19,968 : 08/31/2005 08:41 PM : a1a688ee56cf3bbd24edeb815d48e9ba [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB900725$\linkinfo.dll : 18,944 : 08/04/2004 08:56 AM : c2bbd044c741ea4292016c36f718d2e4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\linkinfo.dll : 19,968 : 04/13/2008 07:11 PM : 2dc5a8019e2387987905f77c664e4be2 [Pos Repl]

* C:\WINDOWS\System32\lpk.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\lpk.dll : 22,016 : 08/04/2004 08:56 AM : 74d66b3de265e8789153414e75175f26 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\lpk.dll : 22,016 : 04/13/2008 07:11 PM : 012df358cebaa23acb26d82077820817 [Pos Repl]

* C:\WINDOWS\System32\lsass.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\lsass.exe : 13,312 : 08/04/2004 08:56 AM : 84885f9b82f4d55c6146ebf6065d75d2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\lsass.exe : 13,312 : 04/13/2008 07:12 PM : bf2466b3e18e970d8a976fb95fc1ca85 [Pos Repl]

* C:\WINDOWS\System32\mfc40u.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll : 953,856 : 09/18/2010 08:18 AM : 842900dedbc8e3e8dbcccb298fd88f65 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\mfc40u.dll : 924,432 : 07/16/2003 03:33 PM : ddf8d47acf8fc3fe5f7f2b95c4d4d136 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2387149$\mfc40u.dll : 927,504 : 04/13/2008 07:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mfc40u.dll : 927,504 : 04/13/2008 07:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\mfc40u.dll : 953,856 : 09/18/2010 07:53 AM : e76a5c202e68af5a322d16b5a78f48b9 [Pos Repl]

* C:\WINDOWS\System32\midimap.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\midimap.dll : 18,944 : 08/04/2004 07:56 AM : 3b4702155bb2ae9dc00c06a68834bdfa [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\midimap.dll : 18,944 : 04/13/2008 07:11 PM : 5c12660a97822f6e61576943b49aaad6 [Pos Repl]

* C:\WINDOWS\System32\msgsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msgsvc.dll : 33,792 : 08/04/2004 07:56 AM : 95fd808e4ac22aba025a7b3eac0375d2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msgsvc.dll : 33,792 : 04/13/2008 07:11 PM : 986b1ff5814366d71e0ac5755c88f2d3 [Pos Repl]

* C:\WINDOWS\System32\msimg32.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msimg32.dll : 4,608 : 08/04/2004 07:56 AM : b5331f2b6f37c66c29c847f3b94ff900 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msimg32.dll : 4,608 : 04/13/2008 07:11 PM : affc87e2501fce8f09d4c10ba6421ccf [Pos Repl]

* C:\WINDOWS\System32\mspmsnsv.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\mspmsnsv.dll : 52,224 : 08/04/2004 07:56 AM : c086483e3dba8c1c0a687ec8d5b3d4c1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallWMFDist11$\mspmsnsv.dll : 52,224 : 04/13/2008 07:12 PM : c7e39ea41233e9f5b86c8da3a9f1e4a8 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mspmsnsv.dll : 52,224 : 08/04/2004 07:56 AM : c086483e3dba8c1c0a687ec8d5b3d4c1 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\mspmsnsv.dll : 27,136 : 10/18/2006 09:47 PM : c51b4a5c05a5475708e3c81c7765b71d [Pos Repl]

* C:\WINDOWS\System32\msprivs.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msprivs.dll : 48,128 : 08/04/2004 07:56 AM : 6bec17053284e847cf1fbb8c9a181e1e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msprivs.dll : 48,128 : 04/13/2008 09:23 AM : c6bb1d1500db4a0e224cb65e6c7e8a80 [Pos Repl]

* C:\WINDOWS\System32\msvcrt.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\msvcrt.dll : 343,040 : 08/04/2004 07:56 AM : b0fefa816d61ec66aa765ddf534eab5e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\msvcrt.dll : 343,040 : 04/13/2008 07:12 PM : 355edbb4d412b01f1740c17e3f50fa00 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll : 322,560 : 07/16/2003 03:20 PM : 4200be3808f6406dbe45a7b88dae5035 [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.10.0_x-ww_d8862ba3\msvcrt.dll : 323,072 : 07/16/2003 03:20 PM : 70630cad245477f8db02b79d9a92834c [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll : 343,040 : 08/04/2004 03:57 AM : 98ec447e00229afd88d5161a25d065da [Pos Repl]
+-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll : 343,040 : 04/13/2008 07:12 PM : d7075e95aa599ee77b7a89d39296bd3d [Pos Repl]

* C:\WINDOWS\System32\mswsock.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 08:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\mswsock.dll : 245,248 : 06/20/2008 08:36 AM : 1dfca7713ea5a70d5d93b436aea0317a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\mswsock.dll : 245,248 : 06/20/2008 08:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 08:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\mswsock.dll : 245,248 : 06/20/2008 07:41 AM : 097722f235a1fb698bf9234e01b52637 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2509553$\mswsock.dll : 245,248 : 06/20/2008 07:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748$\mswsock.dll : 245,248 : 04/13/2008 07:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB951748_0$\mswsock.dll : 245,248 : 08/04/2004 07:56 AM : 4e74af063c3271fbea20dd940cfd1184 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\mswsock.dll : 245,248 : 04/13/2008 07:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\mswsock.dll : 245,248 : 06/20/2008 07:02 AM : 943337d786a56729263071623bbb9de5 [Pos Repl]

* C:\WINDOWS\System32\netlogon.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll : 407,040 : 08/04/2004 07:56 AM : 96353fcecba774bb8da74a1c6507015a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\netlogon.dll : 407,040 : 04/13/2008 07:12 PM : 1b7f071c51b77c272875c3a23e1e4550 [Pos Repl]

* C:\WINDOWS\System32\netman.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll : 197,632 : 08/22/2005 01:24 PM : 3516d8a18b36784b1005b950b84232e1 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\netman.dll : 197,632 : 08/22/2005 01:29 PM : 36739b39267914ba69ad0610a0299732 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB905414$\netman.dll : 198,144 : 08/04/2004 01:56 AM : dab9e6c7105d2ef49876fe92c524f565 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\netman.dll : 198,144 : 04/13/2008 07:12 PM : 13e67b55b3abd7bf3fe7aae5a0f9a9de [Pos Repl]

* C:\WINDOWS\System32\ntkrnlpa.exe [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe : 2,069,376 : 12/09/2010 06:39 PM : f67cd97282e0abfaf91a9a1359b16f2d [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe : 2,069,120 : 04/11/2012 06:42 AM : 063a0f8a90d8e2b802e5243fe9aabcf3 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2724197\SP3QFE\ntkrnlpa.exe : 2,069,632 : 08/21/2012 06:05 AM : b326d5e256d2f32b23e64f49debce31b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe : 2,056,832 : 03/01/2005 06:36 PM : d8aba3eab509627e707a3b14f00fbb6b [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe : 2,066,176 : 02/06/2009 06:30 AM : 607352b9cb3d708c67f6039097801b5a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe : 2,062,976 : 08/14/2008 06:18 AM : 63ec865dff6ccfc7bef94b5c50297cad [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe : 2,066,048 : 08/14/2008 06:33 AM : 4ac58f03eb94a72809949d757fc39d80 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe : 2,066,048 : 08/14/2008 06:39 PM : a25e9b86effb2af33bf51e676b68bfb0 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe : 2,066,176 : 08/04/2009 06:47 PM : 363b2bbee0aedc9e5433616d0ad0236a [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB977165\SP3QFE\ntkrnlpa.exe : 2,066,176 : 12/08/2009 11:10 PM : ffdce1eea79c678c40237d4e031e5b51 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe : 2,066,944 : 02/16/2010 11:12 AM : ded8b5a89b085284634502e9d75ac78c [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe : 2,066,944 : 04/28/2010 11:14 AM : 756362706de8bc92f11e197c98a73844 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ntkrnlpa.exe : 2,057,728 : 08/14/2008 01:22 AM : ba002228743b6824d87f0551dbc86d45 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2393802$\ntkrnlpa.exe : 2,066,816 : 04/27/2010 01:05 AM : dc57abed7bde1487e658968b4423bed7 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2676562$\ntkrnlpa.exe : 2,069,376 : 12/09/2010 01:07 AM : 84ff488e249dbd2050eb39ea81c6f5c2 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2724197$\ntkrnlpa.exe : 2,069,120 : 04/11/2012 01:35 AM : 0c9e44d256948fa68ae10d67984862ce [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe : 2,056,832 : 08/04/2004 01:58 AM : 947fb1d86d14afcffdb54bf837ec25d0 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956572$\ntkrnlpa.exe : 2,066,048 : 08/14/2008 01:33 AM : 4ac58f03eb94a72809949d757fc39d80 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956841$\ntkrnlpa.exe : 2,065,792 : 04/13/2008 01:31 PM : 109f8e3e3c82e337bb71b6bc9b895d61 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956841_0$\ntkrnlpa.exe : 2,056,832 : 03/01/2005 06:34 PM : 81013f36b21c7f72cf784cc6731e0002 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB971486$\ntkrnlpa.exe : 2,066,048 : 02/07/2009 06:02 PM : 5ba7f2141bc6db06100d0e5a732c617a [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB977165$\ntkrnlpa.exe : 2,066,048 : 08/04/2009 06:20 AM : 7437ba6f538e89381a2e3643aed296c7 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB979683$\ntkrnlpa.exe : 2,066,048 : 12/08/2009 06:43 AM : a6683e23468776f75eb2d8c6a02aad3b [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB981852$\ntkrnlpa.exe : 2,066,816 : 02/16/2010 06:25 AM : a046c627ec20456e2959b7bd628e1fd0 [Pos Repl]
+-> C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe : 2,069,632 : 08/21/2012 07:58 AM : b2d4fd49ddef6def6900daac5730f425 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ntkrnlpa.exe : 2,065,792 : 04/13/2008 01:31 PM : 109f8e3e3c82e337bb71b6bc9b895d61 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ntkrnlpa.exe : 2,069,632 : 08/21/2012 01:58 AM : b2d4fd49ddef6def6900daac5730f425 [Pos Repl]

* C:\WINDOWS\System32\ntmssvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ntmssvc.dll : 435,200 : 08/04/2004 06:56 AM : b62f29c00ac55a761b2e45877d85ea0f [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ntmssvc.dll : 435,200 : 04/13/2008 07:12 PM : 156f64a3345bd23c600655fb4d10bc08 [Pos Repl]

* C:\WINDOWS\System32\ntoskrnl.exe [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe : 2,192,768 : 12/09/2010 11:43 AM : a531bbd3de13121c1380ed7dc99082db [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe : 2,192,640 : 04/11/2012 11:22 AM : 8d061bb825bc606c2b1c6f7452d1baaa [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2724197\SP3QFE\ntoskrnl.exe : 2,193,024 : 08/21/2012 11:48 AM : eca5980e1a78dbf9cb7f49f76791c0d1 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe : 2,179,456 : 03/01/2005 07:04 PM : 28187802b7c368c0d3aef7d4c382aabb [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe : 2,189,184 : 02/07/2009 06:35 PM : efe8eace83eaad5849a7a548fb75b584 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe : 2,185,984 : 08/14/2008 06:57 AM : ce69dbd54221f2d40e49ff6db77c6507 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe : 2,189,184 : 08/14/2008 06:11 AM : eeaf32f8e15a24f62becb1bd403bb5c5 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe : 2,189,184 : 08/14/2008 07:11 PM : 31914172342bff330063f343ac6958fe [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe : 2,189,312 : 08/04/2009 07:56 AM : fde779ea1a564ebfe16f4e0f82b61bad [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB977165\SP3QFE\ntoskrnl.exe : 2,189,312 : 12/08/2009 11:52 PM : 05be3d9a71972223aff6a3c823ba51b1 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe : 2,190,080 : 02/16/2010 11:52 AM : e1f653a542449d54fa2d27463d99b6b6 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB981852\SP3QFE\ntoskrnl.exe : 2,190,080 : 04/27/2010 11:50 AM : a2abbec40cdb57454645d06b7ebd22f5 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ntoskrnl.exe : 2,180,352 : 08/14/2008 06:00 AM : 21c91da9cb53aa8a37041ba9684a8458 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2393802$\ntoskrnl.exe : 2,189,952 : 04/27/2010 09:25 PM : 472059774023f80eb7227eaf9a7acda1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2676562$\ntoskrnl.exe : 2,192,768 : 12/09/2010 09:38 AM : 64c1adf6df629f340c5a439fe0ef8ed1 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2724197$\ntoskrnl.exe : 2,192,640 : 04/11/2012 09:10 AM : 536168936ebf326e36c655ec5ae34b03 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB890859$\ntoskrnl.exe : 2,180,992 : 08/04/2004 09:19 AM : ce218bc7088681faa06633e218596ca7 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956572$\ntoskrnl.exe : 2,189,184 : 08/14/2008 09:11 AM : eeaf32f8e15a24f62becb1bd403bb5c5 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956841$\ntoskrnl.exe : 2,188,928 : 04/13/2008 02:27 PM : 0c89243c7c3ee199b96fcc16990e0679 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956841_0$\ntoskrnl.exe : 2,179,328 : 03/01/2005 06:59 PM : 4d4cf2c14550a4b7718e94a6e581856e [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB971486$\ntoskrnl.exe : 2,189,056 : 02/06/2009 06:08 AM : 7a95b10a73737ebf24139aaa63f5212b [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB977165$\ntoskrnl.exe : 2,189,184 : 08/04/2009 08:44 PM : 8415d9c7c050e7022aed8abf281be4a6 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB979683$\ntoskrnl.exe : 2,189,184 : 12/08/2009 01:27 PM : 78ec47f9b9a3a1d539262d8834c896ce [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB981852$\ntoskrnl.exe : 2,189,952 : 02/17/2010 01:10 AM : d41c3cbad0e1c0728d1cdfd541f60cfa [Pos Repl]
+-> C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe : 2,192,896 : 08/21/2012 07:29 AM : 49fb9f4a7ce25b82b1e00c402783f5c5 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ntoskrnl.exe : 2,188,928 : 04/13/2008 02:27 PM : 0c89243c7c3ee199b96fcc16990e0679 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ntoskrnl.exe : 2,192,896 : 08/21/2012 02:29 AM : 49fb9f4a7ce25b82b1e00c402783f5c5 [Pos Repl]

* C:\WINDOWS\System32\oakley.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB974392\SP3QFE\oakley.dll : 270,336 : 10/13/2009 11:38 AM : 7eadba6d371c60cca9e4db57c28c8045 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\oakley.dll : 266,752 : 08/04/2004 01:56 AM : a76128be63eea6a3af521a0576d3ebf7 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB974392$\oakley.dll : 270,336 : 04/13/2008 07:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\oakley.dll : 270,336 : 04/13/2008 07:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\oakley.dll : 270,336 : 10/13/2009 07:30 AM : c5ff8682eada5b3b27a865f1c3ef9270 [Pos Repl]

* C:\WINDOWS\System32\ole32.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2624667\SP3QFE\ole32.dll : 1,289,216 : 11/01/2011 11:05 AM : 7d9dde1ab4b00ddb173f5a16e9206517 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\ole32.dll : 1,284,608 : 01/13/2005 11:07 PM : 2e752611c9a9ae1b6bfd0da03cf7f17e [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB979687\SP3QFE\ole32.dll : 1,289,216 : 07/16/2010 11:04 AM : 8d51fb47062f2a1a9efeccef338a4c46 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\ole32.dll : 1,285,120 : 01/14/2005 07:55 AM : abdef60ced7c04ab35a415efb6b96d81 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2624667$\ole32.dll : 1,288,192 : 07/16/2010 07:05 AM : 7a6a7900b5e322763430ba6fd9a31224 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB873333$\ole32.dll : 1,281,536 : 08/04/2004 07:56 AM : 4fe9d9fa62d020e35e0ac6d1aeeb96f0 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB979687$\ole32.dll : 1,287,168 : 04/13/2008 07:12 PM : ecce74bc6168375016450a86a164d976 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ole32.dll : 1,287,168 : 04/13/2008 07:12 PM : ecce74bc6168375016450a86a164d976 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp1qfe\ole32.dll : 1,190,400 : 07/25/2005 11:31 PM : f07397dbdbd249d379cfdeee6d9bf545 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2gdr\ole32.dll : 1,285,120 : 07/25/2005 11:39 PM : ab8231d13692ac5088eb9c226b0c0576 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2qfe\ole32.dll : 1,285,632 : 07/25/2005 11:20 PM : a2f755e237fa2cdd748a80bfbe6657f3 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\ole32.dll : 1,288,704 : 11/01/2011 07:07 AM : 6bad1bed9872e62049e487fb91ae2f3a [Pos Repl]

* C:\WINDOWS\System32\olepro32.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\olepro32.dll : 83,456 : 08/04/2004 07:56 AM : b48d3193dd1474dcbcc32bf4779ac698 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\olepro32.dll : 84,992 : 04/13/2008 07:12 PM : 5652f6ce1d9e9d8068b9d29bc21b5409 [Pos Repl]

* C:\WINDOWS\System32\perfctrs.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\perfctrs.dll : 39,936 : 08/04/2004 07:56 AM : 96492c721c6ea517e2bfd5381fef55e3 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\perfctrs.dll : 39,936 : 04/13/2008 07:12 PM : dbe2b62353660ecca0d75ea307a717e9 [Pos Repl]

* C:\WINDOWS\System32\powrprof.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\powrprof.dll : 17,408 : 08/04/2004 07:56 AM : 1b5f6923abb450692e9fe0672c897aed [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\powrprof.dll : 17,408 : 04/13/2008 07:12 PM : 50a166237a0fa771261275a405646cc0 [Pos Repl]

* C:\WINDOWS\System32\psbase.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\psbase.dll : 96,768 : 08/04/2004 07:56 AM : 4d3ccdf22d2b4bae229ba73b81d13e26 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\psbase.dll : 96,768 : 04/13/2008 07:12 PM : 22d89d84e8e081cda529dbf8c0255a38 [Pos Repl]

* C:\WINDOWS\System32\pstorsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\pstorsvc.dll : 34,304 : 08/04/2004 07:56 AM : 306b30a036db25fcb76b507fede07d58 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\pstorsvc.dll : 34,304 : 04/13/2008 07:12 PM : 853d0d0c6f02d7bfdf1cf99dd7553732 [Pos Repl]

* C:\WINDOWS\System32\qmgr.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\qmgr.dll : 382,464 : 08/04/2004 07:56 AM : 2c69ec7e5a311334d10dd95f338fccea [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB842773$\qmgr.dll : 221,696 : 07/16/2003 03:42 PM : 6a1cf14d0e7d0b2241f552223769c8a7 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\qmgr.dll : 409,088 : 04/13/2008 07:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]
+-> C:\WINDOWS\system32\bits\qmgr.dll : 409,088 : 04/13/2008 07:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]

* C:\WINDOWS\System32\rasadhlp.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll : 7,680 : 06/26/2006 11:45 AM : b5d08c96b2dadaf5171fb69e341b272b [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\rasadhlp.dll : 8,192 : 06/26/2006 03:37 AM : 5f098bd2ae6b03044b085decffdf91ec [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB920683$\rasadhlp.dll : 8,192 : 08/04/2004 03:56 AM : 4caec028c1e21c75e17877d4522d3db4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rasadhlp.dll : 7,680 : 04/13/2008 07:12 PM : 6f9bef24c578d5d6740e080bedd6a448 [Pos Repl]

* C:\WINDOWS\System32\regsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\regsvc.dll : 59,904 : 08/04/2004 03:56 AM : 3151427db7d87107d1c5be58fac53960 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\regsvc.dll : 59,904 : 04/13/2008 07:12 PM : 5b19b557b0c188210a56a6b699d90b8f [Pos Repl]

* C:\WINDOWS\System32\rpcss.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\rpcss.dll : 395,776 : 01/13/2005 11:07 PM : 94456045beb4545b5ebe1dcc85951afa [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\rpcss.dll : 401,408 : 02/09/2009 11:56 AM : 9222562d44021b988b9f9f62207fb6f2 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\rpcss.dll : 395,776 : 01/14/2005 03:55 AM : 419899803ca479b73b02390318c787c0 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB873333$\rpcss.dll : 395,776 : 08/04/2004 03:56 AM : 5c83a4408604f737717ab96371201680 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956572$\rpcss.dll : 399,360 : 04/13/2008 07:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\rpcss.dll : 399,360 : 04/13/2008 07:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp1qfe\rpcss.dll : 276,992 : 07/25/2005 11:31 PM : 0d903904a1cddaa2ae29f48176c683d4 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2gdr\rpcss.dll : 397,824 : 07/25/2005 11:39 PM : ce94a2bd25e3e9f4d46a7373ff455c6d [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\b93f60ba19e546073f72c1a6c59659c8\sp2qfe\rpcss.dll : 398,336 : 07/25/2005 11:20 PM : c369df215d352b6f3a0b8c3469aa34f8 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\rpcss.dll : 401,408 : 02/09/2009 07:10 AM : 6b27a5c03dfb94b4245739065431322c [Pos Repl]

* C:\WINDOWS\System32\scecli.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\scecli.dll : 180,224 : 08/04/2004 07:56 AM : 0f78e27f563f2aaf74b91a49e2abf19a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\scecli.dll : 181,248 : 04/13/2008 07:12 PM : a86bb5e61bf3e39b62ab4c7e7085a084 [Pos Repl]

* C:\WINDOWS\System32\schannel.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2585542\SP3QFE\schannel.dll : 152,064 : 11/16/2011 11:20 AM : d444009f7cd704c89f7f9e62396ed4f1 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB2655992\SP3QFE\schannel.dll : 153,088 : 06/03/2012 11:31 PM : 26f1193092b9ac2586deb38dd1cbb25c [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB960225\SP3QFE\schannel.dll : 144,896 : 12/05/2008 11:58 AM : 1cdfcf9d0fdc55d76ac3955bd04ac200 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\schannel.dll : 147,456 : 06/25/2009 11:41 AM : e513ba8bc33fd00f35d69659b478b1df [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB980436\SP3QFE\schannel.dll : 149,504 : 06/30/2010 11:23 AM : e04b6497b6407d2f444e86b30680dc5a [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\schannel.dll : 144,896 : 08/04/2004 07:56 AM : 29632e787dcfc0085a555c681eb82693 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2655992$\schannel.dll : 149,504 : 06/30/2010 07:31 AM : 30ace70b3c0242f0d1ac3b4fa708710f [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB960225$\schannel.dll : 144,384 : 04/13/2008 07:12 PM : c61e8ecffdbf05ff71d079bbd35396b3 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB968389$\schannel.dll : 144,896 : 12/05/2008 07:54 AM : 636c52fc618acb09ec356e9e82d072e2 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB980436$\schannel.dll : 147,456 : 06/25/2009 07:25 AM : bfdece69e293e6db4e25def862418428 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\schannel.dll : 144,384 : 04/13/2008 07:12 PM : c61e8ecffdbf05ff71d079bbd35396b3 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\schannel.dll : 152,576 : 06/03/2012 11:32 PM : 0f64207b49390c8063c36ae7cbf9c2db [Pos Repl]

* C:\WINDOWS\System32\schedsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\schedsvc.dll : 190,976 : 08/04/2004 07:56 AM : 92360854316611f6cc471612213c3d92 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\schedsvc.dll : 192,512 : 04/13/2008 07:12 PM : 0a9a7365a1ca4319aa7c1d6cd8e4eafa [Pos Repl]

* C:\WINDOWS\System32\services.exe [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe : 110,592 : 02/06/2009 11:06 AM : 020ceaaedc8eb655b6506b8c70d53bb6 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\services.exe : 108,032 : 08/04/2004 07:56 AM : c6ce6eec82f187615d1002bb3bb50ed4 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956572$\services.exe : 108,544 : 04/13/2008 07:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\services.exe : 108,544 : 04/13/2008 07:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\services.exe : 110,592 : 02/06/2009 07:11 AM : 65df52f5b8b6e9bbd183505225c37315 [Pos Repl]

* C:\WINDOWS\System32\setupapi.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\setupapi.dll : 983,552 : 08/04/2004 07:56 AM : 7808313cbc634ee08346d5ddfef1cc5f [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\setupapi.dll : 985,088 : 04/14/2008 07:42 AM : 24192246760e0e64435522e246b1d6c2 [Pos Repl]

* C:\WINDOWS\System32\sfc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sfc.dll : 5,120 : 08/04/2004 07:56 AM : e8a12a12ea9088b4327d49edca3add3e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sfc.dll : 5,120 : 04/13/2008 07:12 PM : 96e1c926f22ee1bfbae82901a35f6bf3 [Pos Repl]

* C:\WINDOWS\System32\sfcfiles.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\sfcfiles.dll : 1,580,544 : 08/04/2004 07:56 AM : 30a609e00bd1d4ffc49d6b5a432be7f2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\sfcfiles.dll : 1,614,848 : 04/13/2008 07:12 PM : 9dd07af82244867ca36681ea2d29ce79 [Pos Repl]

* C:\WINDOWS\System32\shsvcs.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB971029\SP3QFE\shsvcs.dll : 135,168 : 07/27/2009 05:13 PM : 888cd7b39c37e13a2419becfaaf0a28c [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\shsvcs.dll : 134,656 : 08/04/2004 07:56 AM : e7518dc542d3ebdcb80edd98462c7821 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB971029$\shsvcs.dll : 135,168 : 04/13/2008 07:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\shsvcs.dll : 135,168 : 04/13/2008 07:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\shsvcs.dll : 135,168 : 07/27/2009 06:17 PM : 99bc0b50f511924348be19c7c7313bbf [Pos Repl]

* C:\WINDOWS\System32\smss.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\smss.exe : 50,688 : 08/04/2004 07:56 AM : bd7fb0957c716f1a60333aee04de2178 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\smss.exe : 50,688 : 04/13/2008 07:12 PM : 5f816c1f539266d2d4c78694239da0b5 [Pos Repl]

* C:\WINDOWS\System32\spoolsv.exe [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe : 58,880 : 08/17/2010 05:19 AM : 258dd5d4283fd9f9a7166be9ae45ce73 [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe : 57,856 : 06/10/2005 07:17 PM : ad3d9d191aea7b5445fe1d82ffbb4788 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe : 57,856 : 06/10/2005 06:53 PM : da81ec57acd4cdc3d4c51cf3d409af9f [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB2347290$\spoolsv.exe : 57,856 : 04/13/2008 07:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB896423$\spoolsv.exe : 57,856 : 08/04/2004 07:56 AM : 7435b108b935e42ea92ca94f59c8e717 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe : 57,856 : 04/13/2008 07:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\spoolsv.exe : 58,880 : 08/17/2010 07:17 AM : 60784f891563fb1b767f70117fc2428f [Pos Repl]

* C:\WINDOWS\System32\srsvc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\srsvc.dll : 170,496 : 08/04/2004 07:56 AM : 92bdf74f12d6cbec43c94d4b7f804838 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\srsvc.dll : 171,008 : 04/13/2008 07:12 PM : 3805df0ac4296a34ba4bf93b346cc378 [Pos Repl]

* C:\WINDOWS\System32\ssdpsrv.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ssdpsrv.dll : 71,680 : 08/04/2004 07:56 AM : 4b8d61792f7175bed48859cc18ce4e38 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ssdpsrv.dll : 71,680 : 04/13/2008 07:12 PM : 0a5679b3714edab99e357057ee88fca6 [Pos Repl]

* C:\WINDOWS\System32\svchost.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\svchost.exe : 14,336 : 08/04/2004 07:56 AM : 8f078ae4ed187aaabc0a305146de6716 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\svchost.exe : 14,336 : 04/13/2008 07:12 PM : 27c6d03bcdb8cfeb96b716f3d8be3e18 [Pos Repl]

* C:\WINDOWS\System32\tapisrv.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\tapisrv.dll : 249,344 : 07/08/2005 07:28 AM : 1418a3a6e76e5a2e3f5e43866e793a8b [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\tapisrv.dll : 249,344 : 07/08/2005 07:27 AM : fb78839b36025aa286a51289ed28b73e [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB893756$\tapisrv.dll : 246,272 : 08/04/2004 07:56 AM : eb4a4187d74a8efdcbea3ea2cb1bdfbd [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\tapisrv.dll : 249,856 : 04/13/2008 07:12 PM : 3cb78c17bb664637787c9a1c98f79c38 [Pos Repl]

* C:\WINDOWS\System32\termsrv.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\termsrv.dll : 295,424 : 08/04/2004 07:56 AM : b60c877d16d9c880b952fda04adf16e6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\termsrv.dll : 295,424 : 04/13/2008 07:12 PM : ff3477c03be7201c294c35f684b3479f [Pos Repl]

* C:\WINDOWS\System32\upnphost.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\upnphost.dll : 185,344 : 08/04/2004 07:56 AM : 0546477bde979e33294fe97f6b3de84a [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\upnphost.dll : 185,856 : 04/13/2008 07:12 PM : 1ebafeb9a3fbdc41b8d9c7f0f687ad91 [Pos Repl]

* C:\WINDOWS\System32\user32.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll : 577,024 : 03/02/2005 07:19 AM : 1800f293bccc8ede8a70e12b88d80036 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\user32.dll : 577,024 : 03/02/2005 07:09 AM : de2db164bbb35db061af0997e4499054 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB890859$\user32.dll : 577,024 : 08/04/2004 07:56 AM : c72661f8552ace7c5c85e16a3cf505c4 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\user32.dll : 578,560 : 04/13/2008 07:12 PM : b26b135ff1b9f60c9388b4a7d16f600b [Pos Repl]

* C:\WINDOWS\System32\userinit.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\userinit.exe : 24,576 : 08/04/2004 07:56 AM : 39b1ffb03c2296323832acbae50d2aff [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\userinit.exe : 26,112 : 04/13/2008 07:12 PM : a93aee1928a9d7ce3e16d24ec7380f89 [Pos Repl]

* C:\WINDOWS\System32\usp10.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB981322\SP3QFE\usp10.dll : 406,016 : 04/16/2010 07:29 AM : f8894bcc961d461674002b4bae7aecc1 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\usp10.dll : 406,528 : 08/04/2004 07:56 AM : 2eb58f9dcd6ab320b46744a4ea48b2d2 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB981322$\usp10.dll : 406,016 : 04/13/2008 07:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\usp10.dll : 406,016 : 04/13/2008 07:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\usp10.dll : 406,016 : 04/16/2010 07:36 AM : 9e03dc5ab51cfd0190541ce2038d819d [Pos Repl]

* C:\WINDOWS\System32\UxTheme.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\uxtheme.dll : 218,624 : 08/04/2004 07:56 AM : 2cde496666a975a2ce8f969f3042c8db [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\uxtheme.dll : 218,624 : 04/13/2008 07:12 PM : 7a2cc3719b255e6b5d74396183b7715b [Pos Repl]

* C:\WINDOWS\System32\version.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\version.dll : 18,944 : 08/04/2004 07:56 AM : d38408967be738d0c1b47005bce8ceeb [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\version.dll : 18,944 : 04/13/2008 07:12 PM : c7ce131408739b0b3a318be2d0032719 [Pos Repl]

* C:\WINDOWS\System32\w32time.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\w32time.dll : 174,592 : 08/04/2004 07:56 AM : 2b281958f5d0cf99ed626e3ef39d5c8d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\w32time.dll : 175,104 : 04/13/2008 07:12 PM : 54af4b1d5459500ef0937f6d33b1914f [Pos Repl]

* C:\WINDOWS\System32\wbem\wmiprvse.exe [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe : 227,840 : 02/06/2009 07:15 AM : f520ab392d58c0a1070268032d809382 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe : 218,112 : 08/04/2004 07:56 AM : 075ea6c849ab0fe416a3d6dd65c3cf41 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB956572$\wmiprvse.exe : 218,112 : 04/13/2008 07:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe : 218,112 : 04/13/2008 07:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\wmiprvse.exe : 227,840 : 02/06/2009 07:10 AM : 798a9e6828997eef4517ada8a2259831 [Pos Repl]

* C:\WINDOWS\System32\wdigest.dll [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB904942\SP2QFE\wdigest.dll : 49,152 : 03/23/2006 10:47 PM : 2f66af12e42a328a023f5492e495b84c [Pos Repl]
+-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\wdigest.dll : 54,272 : 06/25/2009 10:41 AM : d9dcec3fa1b27689fc56e34c38d3f148 [Pos Repl]
+-> C:\WINDOWS\$NtServicePackUninstall$\wdigest.dll : 49,152 : 03/23/2006 10:37 PM : c43d8f6ff8ac074ccd9b34b781e23e86 [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB904942$\wdigest.dll : 49,152 : 08/04/2004 10:56 AM : a8b82c5d30b7ab937e164ab349478fba [Pos Repl]
+-> C:\WINDOWS\$NtUninstallKB968389$\wdigest.dll : 49,152 : 04/13/2008 07:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wdigest.dll : 49,152 : 04/13/2008 07:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\355f788b6de8a3ec79e9aa172e6317f1\sp2gdr\wdigest.dll : 49,152 : 03/23/2006 10:37 PM : c43d8f6ff8ac074ccd9b34b781e23e86 [Pos Repl]
+-> C:\WINDOWS\SoftwareDistribution.old\Download\355f788b6de8a3ec79e9aa172e6317f1\sp2qfe\wdigest.dll : 49,152 : 03/23/2006 10:47 PM : 2f66af12e42a328a023f5492e495b84c [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\wdigest.dll : 54,272 : 06/25/2009 07:25 AM : 3aaf9b35939ff9e58ccd18d41655c2fc [Pos Repl]

* C:\WINDOWS\System32\wiaservc.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\wiaservc.dll : 333,312 : 08/04/2004 07:56 AM : d9f6c4f6b1e188adafc42b561d9bc2e6 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wiaservc.dll : 333,824 : 04/13/2008 07:12 PM : 8bad69cbac032d4bbacfce0306174c30 [Pos Repl]

* C:\WINDOWS\System32\winlogon.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe : 502,272 : 08/04/2004 07:56 AM : 01c3346c241652f43aed8e2149881bfe [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\winlogon.exe : 507,904 : 04/13/2008 07:12 PM : ed0ef0a136dec83df69f04118870003e [Pos Repl]

* C:\WINDOWS\System32\ws2_32.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll : 82,944 : 08/04/2004 07:56 AM : 2ed0b7f12a60f90092081c50fa0ec2b2 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll : 82,432 : 04/13/2008 07:12 PM : 2ccc474eb85ceaa3e1fa1726580a3e5a [Pos Repl]

* C:\WINDOWS\System32\ws2help.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\ws2help.dll : 19,968 : 08/04/2004 07:56 AM : 9beacb911ca61e5881102188ab7fb431 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\ws2help.dll : 19,968 : 04/13/2008 07:12 PM : 9789e95e1d88eeb4b922bf3ea7779c28 [Pos Repl]

* C:\WINDOWS\System32\wscntfy.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\wscntfy.exe : 13,824 : 08/04/2004 07:56 AM : 49911dd39e023bb6c45e4e436cfbd297 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe : 13,824 : 04/13/2008 07:12 PM : f92e1076c42fcd6db3d72d8cfe9816d5 [Pos Repl]

* C:\WINDOWS\System32\xmlprov.dll [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\xmlprov.dll : 129,536 : 08/04/2004 07:56 AM : eef46dab68229a14da3d8e73c99e2959 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\xmlprov.dll : 129,024 : 04/13/2008 07:12 PM : 295d21f14c335b53cb8154e5b1f892b9 [Pos Repl]

* C:\WINDOWS\explorer.exe [NoSig]
+-> C:\WINDOWS\$NtServicePackUninstall$\explorer.exe : 1,032,192 : 08/04/2004 07:56 AM : a0732187050030ae399b241436565e64 [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\explorer.exe : 1,033,728 : 04/13/2008 07:12 PM : 12896823fb95bfb3dc9b46bcaedc9923 [Pos Repl]

Checking HOSTS File:

* No issues found.

Program finished at: 12/28/2012 08:56:51 AM
Execution time: 0 hours(s), 3 minute(s), and 38 seconds(s)
MiniToolBox by Farbar Version: 25-11-2012
Ran by Owner (administrator) on 28-12-2012 at 08:06:00
Running from "C:\Documents and Settings\Owner\Desktop"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration



Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
Hosts file not detected in the default directory
========================= IP Configuration: ================================

Intel® PRO/100 VE Network Connection = Local Area Connection (Connected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : stephen-2tzf3k9

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Unknown

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No

DNS Suffix Search List. . . . . . : br.br.cox.net



Ethernet adapter Local Area Connection:



Connection-specific DNS Suffix . : br.br.cox.net

Description . . . . . . . . . . . : Intel® PRO/100 VE Network Connection

Physical Address. . . . . . . . . : 00-11-11-2A-E4-C8

Dhcp Enabled. . . . . . . . . . . : Yes

Autoconfiguration Enabled . . . . : Yes

IP Address. . . . . . . . . . . . : 192.168.1.108

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.1.1

DHCP Server . . . . . . . . . . . : 192.168.1.1

DNS Servers . . . . . . . . . . . : 68.105.28.12

68.105.29.12

68.105.28.11

Lease Obtained. . . . . . . . . . : Friday, December 28, 2012 7:43:33 AM

Lease Expires . . . . . . . . . . : Saturday, December 29, 2012 7:43:33 AM

Server: cdns2.cox.net
Address: 68.105.28.12

Name: google.com
Addresses: 74.125.227.99, 74.125.227.100, 74.125.227.101, 74.125.227.102
74.125.227.103, 74.125.227.104, 74.125.227.105, 74.125.227.110, 74.125.227.96
74.125.227.97, 74.125.227.98



Pinging google.com [74.125.227.100] with 32 bytes of data:



Reply from 74.125.227.100: bytes=32 time=23ms TTL=54

Reply from 74.125.227.100: bytes=32 time=22ms TTL=54



Ping statistics for 74.125.227.100:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 22ms, Maximum = 23ms, Average = 22ms

Server: cdns2.cox.net
Address: 68.105.28.12

Name: yahoo.com
Addresses: 72.30.38.140, 98.138.253.109, 98.139.183.24



Pinging yahoo.com [98.138.253.109] with 32 bytes of data:



Reply from 98.138.253.109: bytes=32 time=77ms TTL=51

Reply from 98.138.253.109: bytes=32 time=79ms TTL=51



Ping statistics for 98.138.253.109:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 77ms, Maximum = 79ms, Average = 78ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 11 11 2a e4 c8 ...... Intel® PRO/100 VE Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.108 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
169.254.0.0 255.255.0.0 192.168.1.108 192.168.1.108 20
192.168.1.0 255.255.255.0 192.168.1.108 192.168.1.108 20
192.168.1.108 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.1.255 255.255.255.255 192.168.1.108 192.168.1.108 20
224.0.0.0 240.0.0.0 192.168.1.108 192.168.1.108 20
255.255.255.255 255.255.255.255 192.168.1.108 192.168.1.108 1
Default Gateway: 192.168.1.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/28/2012 08:00:01 AM) (Source: Application Hang) (User: )
Description: Hanging application iexplore.exe, version 8.0.6001.18702, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (12/28/2012 07:58:59 AM) (Source: Application Hang) (User: )
Description: Hanging application iexplore.exe, version 8.0.6001.18702, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (12/28/2012 07:51:42 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: A connection with the server could not be established

Error: (12/28/2012 07:51:40 AM) (Source: crypt32) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/28/2012 07:51:40 AM) (Source: crypt32) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/28/2012 07:39:51 AM) (Source: Application Hang) (User: )
Description: Hanging application msimn.exe, version 6.0.2900.5512, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (12/27/2012 09:04:28 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: A connection with the server could not be established

Error: (12/27/2012 09:04:26 AM) (Source: crypt32) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/25/2012 09:01:07 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 0x80070490, P2 packagesnotapplicable, P3 unspecified, P4 11.1.3927.0, P5 mpsigstub.exe, P6 unspecified, P7 unspecified, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (12/25/2012 05:18:58 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This network connection does not exist.


System errors:
=============
Error: (12/28/2012 07:55:52 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to remove history of malware and other potentially unwanted software.

Time: 11/28/2012 7:53:43 AM

User: NT AUTHORITY\SYSTEM

Error Code: 0x80070005

Error description: Access is denied.

Error: (12/28/2012 07:46:09 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (12/28/2012 07:46:09 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (12/27/2012 08:51:35 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to remove history of malware and other potentially unwanted software.

Time: 11/27/2012 8:51:07 AM

User: NT AUTHORITY\SYSTEM

Error Code: 0x80070005

Error description: Access is denied.

Error: (12/26/2012 08:56:49 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to remove history of malware and other potentially unwanted software.

Time: 11/26/2012 8:56:23 AM

User: NT AUTHORITY\SYSTEM

Error Code: 0x80070005

Error description: Access is denied.

Error: (12/25/2012 09:03:23 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to remove history of malware and other potentially unwanted software.

Time: 11/25/2012 9:02:02 AM

User: NT AUTHORITY\SYSTEM

Error Code: 0x80070005

Error description: Access is denied.

Error: (12/25/2012 09:03:19 AM) (Source: Windows Update Agent) (User: )
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Microsoft Security Essentials - KB2310138 (Definition 1.141.2560.0).

Error: (12/25/2012 09:01:11 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to update signatures.

New Signature Version:

Previous Signature Version: 1.141.2500.0

Update Source: %NT AUTHORITY59

Update Stage: 3.0.8107.00

Source Path: 3.0.8107.01

Signature Type: %NT AUTHORITY602

Update Type: %NT AUTHORITY604

User: NT AUTHORITY\SYSTEM

Current Engine Version: %NT AUTHORITY605

Previous Engine Version: %NT AUTHORITY606

Error code: %NT AUTHORITY607

Error description: %NT AUTHORITY608

Error: (12/24/2012 09:07:49 AM) (Source: Microsoft Antimalware) (User: )
Description: %NT AUTHORITY60 has encountered an error trying to remove history of malware and other potentially unwanted software.

Time: 11/24/2012 9:07:29 AM

User: NT AUTHORITY\SYSTEM

Error Code: 0x80070005

Error description: Access is denied.

Error: (12/24/2012 08:58:33 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5


Microsoft Office Sessions:
=========================
Error: (12/28/2012 08:00:01 AM) (Source: Application Hang)(User: )
Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000

Error: (12/28/2012 07:58:59 AM) (Source: Application Hang)(User: )
Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000

Error: (12/28/2012 07:51:42 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtA connection with the server could not be established

Error: (12/28/2012 07:51:40 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabA required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/28/2012 07:51:40 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabA required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/28/2012 07:39:51 AM) (Source: Application Hang)(User: )
Description: msimn.exe6.0.2900.5512hungapp0.0.0.000000000

Error: (12/27/2012 09:04:28 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtA connection with the server could not be established

Error: (12/27/2012 09:04:26 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabA required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Error: (12/25/2012 09:01:07 AM) (Source: MPSampleSubmission)(User: )
Description: mptelemetry0x80070490packagesnotapplicableunspecified11.1.3927.0mpsigstub.exeunspecifiedunspecifiedNILNILNIL

Error: (12/25/2012 05:18:58 AM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThis network connection does not exist.


=========================== Installed Programs ============================

32 Bit HP CIO Components Installer (Version: 7.1.8)
Adobe AIR (Version: 2.5.1.17730)
Adobe Flash Player 11 ActiveX (Version: 11.5.502.135)
Adobe Flash Player 11 Plugin (Version: 11.5.502.135)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Adobe® Photoshop® Album Starter Edition 3.2 (Version: 3.2.0)
AnswerWorks 5.0 English Runtime (Version: 008.000.0003)
Apple Application Support (Version: 2.1.6)
Apple Mobile Device Support (Version: 4.0.0.97)
Apple Software Update (Version: 2.1.3.127)
AVG 2013 (Version: 13.0.2637)
AVG 2013 (Version: 13.0.2793)
AVG 2013 (Version: 13.0.2805)
AVG 2013 (Version: 2013.0.2805)
Bonjour (Version: 3.0.0.10)
BurnAware Free 2.1.7
BurnAware Professional 2.3.1
Business Contact Manager for Outlook 2003 (Version: 1.0.2002.1)
calibre (Version: 0.8.32)
Cole2k Media - Codec Pack (Advanced) 7.8.0
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Conexant D850 56K V.9x DFVc Modem
Coupon Printer for Windows (Version: 4.0)
DriverUpdate (Version: 2.2.25526)
ESET Online Scanner v3
FrostWire 4.17.2 (Version: 4.17.2.0)
FrostWire 5.3.5 (Version: 5.3.5.0)
Garmin Lifetime Updater (Version: 2.1.7)
Google Earth Plug-in (Version: 6.1.0.5001)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Update Helper (Version: 1.3.21.123)
Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000)
HP Photo Creations (Version: 1.0.0.2024)
HP Product Detection (Version: 11.14.0001)
HP Update (Version: 5.003.001.001)
HPDiagnosticAlert (Version: 1.00.0000)
Image Plugin (Version: 3.04.0226)
Intel® Extreme Graphics 2 Driver (Version: 6.14.10.4396)
Intel® PRO Network Adapters and Drivers
iTunes (Version: 10.5.2.11)
Java™ 6 Update 17 (Version: 6.0.170)
LeapFrog Connect (Version: 2.9.1.11093)
LeapFrog Tag Junior Plugin (Version: 2.8.7.11034)
LeapFrog Tag Plugin (Version: 2.8.7.11034)
Logitech Audio Echo Cancellation Component (Version: 10.00.1439)
Logitech QuickCam (Version: 10.00.1439)
Logitech Video Enumerator (Version: 10.00.1439)
Logitech® Camera Driver
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Antimalware (Version: 3.0.8107.0)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Easy Assist v2 (Version: 8.1.6416.0)
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Professional Edition 2003 (Version: 11.0.8173.0)
Microsoft Security Client (Version: 2.0.0657.0)
Microsoft Security Essentials (Version: 2.0.657.0)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Web Platform Installer 3.0 (Version: 3.0.5)
Microsoft Windows XP Video Decoder Checkup Utility
MobileMe Control Panel (Version: 3.1.8.0)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
OLYMPUS CAMEDIA Master 4.2
Quicken 2005 (Version: 14.00.0000)
QuickTime (Version: 7.71.80.42)
Safari (Version: 5.34.52.7)
SAMSUNG PC Share Manager (Version: 1.00.000)
SavetheChildren Reminder by We-Care.com v4.1.21.4 (Version: 4.1.21.4)
Secunia PSI (3.0.0.6001) (Version: 3.0.0.6001)
Skype web features (Version: 1.0.3971)
Skype™ 5.10 (Version: 5.10.116)
SoundMAX (Version: 5.12.01.5246)
Strongvault Online Backup (Version: 1.0.1.0)
Strongvault Online Backup (Version: 5.0.2.34)
Turbo Tax Audit Support Center 3.0
TurboTax 2008
TurboTax 2008 WinPerFedFormset (Version: 008.000.0341)
TurboTax 2008 WinPerProgramHelp (Version: 008.000.0219)
TurboTax 2008 WinPerReleaseEngine (Version: 008.000.0197)
TurboTax 2008 WinPerTaxSupport (Version: 008.000.1007)
TurboTax 2008 WinPerUserEducation (Version: 008.000.0433)
TurboTax 2008 wokiper (Version: 008.000.0110)
TurboTax 2008 wrapper (Version: 008.000.0065)
TurboTax 2009
TurboTax 2009 WinPerFedFormset (Version: 009.000.2881)
TurboTax 2009 WinPerReleaseEngine (Version: 009.000.0328)
TurboTax 2009 WinPerTaxSupport (Version: 009.000.0245)
TurboTax 2009 wlaiper (Version: 009.000.0897)
TurboTax 2009 wokiper (Version: 009.000.0742)
TurboTax 2009 wrapper (Version: 009.000.0145)
UMVPLStandalone (Version: 10.00.1439)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Windows Internet Explorer 8 (KB968220) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows Internet Explorer 8 (KB976749) (Version: 1)
Update for Windows Internet Explorer 8 (KB980182) (Version: 1)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB951072-v2) (Version: 2)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB955839) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
Use the entry named LeapFrog Connect to uninstall (LeapFrog Tag Junior Plugin)
Use the entry named LeapFrog Connect to uninstall (LeapFrog Tag Plugin) (Version: 2.8.7.11034)
WebFldrs XP (Version: 9.50.6513)
Windows Driver Package - LeapFrog (FlyUsb) USB (11/05/2008 1.1.1.0) (Version: 11/05/2008 1.1.1.0)
Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net (09/10/2009 02.03.05.012) (Version: 09/10/2009 02.03.05.012)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Internet Explorer 7 (Version: 20070813.185237)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3 (Version: 20080414.031525)

========================= Memory info: ===================================

Percentage of memory in use: 38%
Total physical RAM: 765.98 MB
Available physical RAM: 470.04 MB
Total Pagefile: 1492.59 MB
Available Pagefile: 920.94 MB
Total Virtual: 2047.88 MB
Available Virtual: 1969.88 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:74.5 GB) (Free:31.24 GB) NTFS
4 Drive f: () (Fixed) (Total:74.5 GB) (Free:27.62 GB) NTFS
5 Drive g: (EXTERNAL) (Fixed) (Total:74.53 GB) (Free:0.6 GB) NTFS

========================= Users: ========================================

User accounts for \\STEPHEN-2TZF3K9

Administrator ASPNET dona
Guest HelpAssistant Owner
SUPPORT_388945a0


**** End of log ****

#15 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:01 AM

Posted 28 December 2012 - 08:16 PM

Uninstall this Java™ 6 Update 17 (Version: 6.0.170) outdated versions are exploitable.

Let's rerun RKill and immediately run Malwarebytes.

Please download Malwarebytes Anti-Malware Posted Image and save it to your desktop.
  • Important!! When you save the mbam-setup file, rename it to something random (such as 123abc.exe) before beginning the download.
Malwarebytes may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.

  • Make sure you are connected to the Internet and double-click on the renamed file to install the application.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • Malwarebytes will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button and continue.
  • If you cannot update Malwarebytes or use the Internet to download any files to the infected computer, manually update the database by following the instructions in FAQ Section A: 4. Issues.
  • Under the Scanner tab, make sure the "Perform Quick Scan" option is selected.
  • Click on the Scan button.
  • When the scan is complete, click OK, then click the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked and then click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows the database version and your operating system.
  • Exit Malwarebytes when done.
Note: If Malwarebytes encounters a file that is difficult to remove, you will be asked to reboot your computer so it can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally will prevent Malwarebytes from removing all the malware.

-- Some types of malware will target Malwarebytes and other security tools to keep them from running properly. If that's the case, use Malwarebytes Chameleon and follow the onscreen instructions. The Chameleon folder can be accessed by opening the program folder for Malwarebytes Anti-Malware (normally C:\Program Files\Malwarebytes' Anti-Malware or C:\Program Files (x86)\Malwarebytes' Anti-Malware).
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users