Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Canít open anything after Slow Boot-up with no start button/taskbar


  • This topic is locked This topic is locked
13 replies to this topic

#1 mrallyn

mrallyn

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 26 March 2013 - 10:31 AM

I’m not sure if I have a virus/malware or computer is malfunctioning so I thought I would ask for help again. My computer is an Acer 3620; running XP; Office Home Ed

 

Here’s my problem, first - it takes 5-7 minutes to boot up; second – after it is booted, I have a white line where my start button and taskbar use to be but all of my icons and documents are on the desktop but have a continuous blinking hourglass; third – I can open folders only and see all my documents and pictures but nothing will open or run (word, pictures, iexporer). I tried to copy everything to a flash drive and it won’t let me do that either.

 

Here’s what happen when I click any MS Office - Error message from Microsoft Office Word: This document could not be registered. “It will not be possible to create a links from this document to other documents.” I can’t reinstall any programs.

 

Nothing happens when I click on other icons but a linking hour glass. I can run old tools from BP – gmer/mini tool box/defogger.

 

When I hit ctrl alt delete – task manager box comes up – BCMWLTRY.EXE and drwtsn23.exe both blink on and off.

 

I can’t shutdown or restart using ctrl alt delete because I get error message: bcmwltry.exe application error “The exception unknown software exception (0xe06d7363) occurred in the application at location 0x7c812afb

 

I must take out battery and unplug to turn off computer because it will not turn off holding down the on/off button.

 

Any help will be appreciated.



BC AdBot (Login to Remove)

 


#2 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:09:03 AM

Posted 28 March 2013 - 01:17 PM

Hi

 

From the symptoms you're mentioned it seems like there are hardware related issues. However I'll help you here first to see if there's any signs of malware.

 

---------------

 

Hello,

I will be helping you with your problems. Please be patient while I assist you.

Some points for you to keep in mind while I am helping you to make things go easier and faster for both of us

  • Please do NOT run, install or uninstall any programs,  unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not attach logs or use code boxes, just copy and paste the text.
    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.
  • Please read every post completely before doing anything.
    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.
  • Please provide feedback about your experience as we go.
    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.

NOTE: At the top of your post, click on the Watch Topic Button, select Immediate Notification, and click on Proceed. This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of heartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.
- Do NOT backup any unknown files ending in .exe, .com, .scr, .pif, and .bat since files of these types are more likely to be infected.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.

----------------------------------------------

Please do the following:

step1.gif

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!

  • Double-click on TDSSKiller.exe on your desktop to run the tool for known TDSS variants.
  • Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click on change parameters
  • Under Objects to scan, check the boxes next to Verify file digital signatures, Detect TDLFS file system, then click OK.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • Note: If Cure is not an option, Skip instead, do NOT choose Delete or Quarantine unless instructed.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the full contents of that file in your next reply. - If the log is too long, then split it into multiple posts.

 

step2.gif

Please download AdwCleaner by Xplode onto your desktop.

  • Double click on AdwCleaner.exe to run the tool.
  • Click on Search.
  • A logfile will automatically open after the scan has finished.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[R1].txt as well.

 

step3.gif

Please download Farbar Service Scanner and run it on the computer with the issue.

  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press Scan.
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the full contents of the log in your next reply.

 

step4.gif

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices (Only Problems)
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • List Restore points

NOTE: When using "Reset FF Proxy Settings" option Firefox should be closed.

Click Go and post the full contents of the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.


Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#3 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 05:42 AM

Good Morning Dev.  Thank you for helping me. I cannot go online with my computer so I had to download the Tdsskiller on my flash drive. I cannot save it on my desktop but I could get the log to save-as on the flashdrive. It is lengthy so I will use two posts for the complete log. Another thing, the adware link is flagged as unsafe. I will download it and scan and post the log in another post.

 

The Tdsskiller log is below: Post #1 of 2

 

03:55:55.0328 0648  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
03:55:55.0390 0648  ============================================================
03:55:55.0390 0648  Current date / time: 2013/03/29 03:55:55.0390
03:55:55.0390 0648  SystemInfo:
03:55:55.0390 0648 
03:55:55.0390 0648  OS Version: 5.1.2600 ServicePack: 3.0
03:55:55.0390 0648  Product type: Workstation
03:55:55.0390 0648  ComputerName: ACER-Q6HGWEOL3C
03:55:55.0390 0648  UserName: Acer User
03:55:55.0390 0648  Windows directory: C:\WINDOWS
03:55:55.0390 0648  System windows directory: C:\WINDOWS
03:55:55.0390 0648  Processor architecture: Intel x86
03:55:55.0390 0648  Number of processors: 1
03:55:55.0390 0648  Page size: 0x1000
03:55:55.0390 0648  Boot type: Normal boot
03:55:55.0390 0648  ============================================================
03:55:58.0765 0648  Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
03:55:58.0781 0648  Drive \Device\Harddisk1\DR2 - Size: 0x1DE000000 (7.47 Gb), SectorSize: 0x200, Cylinders: 0x3CE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
03:55:58.0781 0648  ============================================================
03:55:58.0781 0648  \Device\Harddisk0\DR0:
03:55:58.0781 0648  MBR partitions:
03:55:58.0781 0648  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950A5C1
03:55:58.0781 0648  \Device\Harddisk1\DR2:
03:55:58.0781 0648  MBR partitions:
03:55:58.0781 0648  \Device\Harddisk1\DR2\Partition1: MBR, Type 0xC, StartLBA 0x8D8, BlocksNum 0xEEF728
03:55:58.0781 0648  ============================================================
03:55:58.0843 0648  C: <-> \Device\Harddisk0\DR0\Partition1
03:55:58.0843 0648  ============================================================
03:55:58.0859 0648  Initialize success
03:55:58.0859 0648  ============================================================
03:56:06.0828 0580  ============================================================
03:56:06.0828 0580  Scan started
03:56:06.0828 0580  Mode: Manual;
03:56:06.0828 0580  ============================================================
03:56:10.0328 0580  ================ Scan system memory ========================
03:56:10.0328 0580  System memory - ok
03:56:10.0328 0580  ================ Scan services =============================
03:56:11.0296 0580  Abiosdsk - ok
03:56:11.0296 0580  abp480n5 - ok
03:56:11.0593 0580  [ 8FD99680A539792A30E97944FDAECF17 ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
03:56:11.0734 0580  ACPI - ok
03:56:11.0781 0580  [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC          C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
03:56:11.0796 0580  ACPIEC - ok
03:56:11.0796 0580  adpu160m - ok
03:56:11.0968 0580  [ 8BED39E3C35D6A489438B8141717A557 ] aec             C:\WINDOWS\system32\drivers\aec.sys
03:56:11.0984 0580  aec - ok
03:56:12.0078 0580  [ 2C5C22990156A1063E19AD162191DC1D ] AegisP          C:\WINDOWS\system32\DRIVERS\AegisP.sys
03:56:12.0078 0580  AegisP - ok
03:56:12.0343 0580  [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
03:56:12.0453 0580  AFD - ok
03:56:12.0468 0580  Aha154x - ok
03:56:12.0484 0580  aic78u2 - ok
03:56:12.0484 0580  aic78xx - ok
03:56:14.0109 0580  [ 95AA37BEC6C72C277C2CAEAEE736DD2D ] ALCXWDM         C:\WINDOWS\system32\drivers\ALCXWDM.SYS
03:56:15.0640 0580  ALCXWDM - ok
03:56:15.0734 0580  [ 8C515081584A38AA007909CD02020B3D ] ALG             C:\WINDOWS\System32\alg.exe
03:56:15.0765 0580  ALG - ok
03:56:15.0781 0580  AliIde - ok
03:56:15.0781 0580  amsint - ok
03:56:16.0218 0580  [ 7389DADC8D9B828634355290330F998F ] AR5211          C:\WINDOWS\system32\DRIVERS\ar5211.sys
03:56:16.0562 0580  AR5211 - ok
03:56:16.0578 0580  asc - ok
03:56:16.0593 0580  asc3350p - ok
03:56:16.0609 0580  asc3550 - ok
03:56:17.0656 0580  [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
03:56:17.0781 0580  aspnet_state - ok
03:56:17.0937 0580  [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
03:56:17.0953 0580  AsyncMac - ok
03:56:18.0093 0580  [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
03:56:18.0093 0580  atapi - ok
03:56:18.0109 0580  Atdisk - ok
03:56:18.0171 0580  [ 9916C1225104BA14794209CFA8012159 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
03:56:18.0281 0580  Atmarpc - ok
03:56:18.0375 0580  [ D9F724AA26C010A217C97606B160ED68 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
03:56:18.0437 0580  audstub - ok
03:56:19.0218 0580  [ D45B7995761253A92AB071D576114F28 ] AVG Security Toolbar Service C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe
03:56:19.0328 0580  AVG Security Toolbar Service - ok
03:56:19.0390 0580  [ 0C5941AF0B6BF2FDF378937392865217 ] Avgfwdx         C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
03:56:19.0390 0580  Avgfwdx - ok
03:56:19.0421 0580  [ 0C5941AF0B6BF2FDF378937392865217 ] Avgfwfd         C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
03:56:19.0421 0580  Avgfwfd - ok
03:56:21.0171 0580  [ 2F0C5AE2352F22B587EDC2829C971262 ] avgfws          C:\Program Files\AVG\AVG10\avgfws.exe
03:56:22.0937 0580  avgfws - ok
03:56:28.0796 0580  [ 7A0F6A3E0E41425B9BA54616B482668A ] AVGIDSAgent     C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
03:56:33.0859 0580  AVGIDSAgent - ok
03:56:34.0000 0580  [ 2D18221AAB3DB2D408D6C55C0F23090A ] AVGIDSDriver    C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys
03:56:34.0000 0580  AVGIDSDriver - ok
03:56:34.0078 0580  [ 1AF676DB3F3D4CC709CFAB2571CF5FC3 ] AVGIDSEH        C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys
03:56:34.0093 0580  AVGIDSEH - ok
03:56:34.0140 0580  [ 4C51E233C87F9EC7598551DE554BC99D ] AVGIDSFilter    C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys
03:56:34.0140 0580  AVGIDSFilter - ok
03:56:34.0203 0580  [ C3FC426E54F55C1CC3219E415B88E10C ] AVGIDSShim      C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys
03:56:34.0203 0580  AVGIDSShim - ok
03:56:34.0531 0580  [ 4E796D3D2C3182B13B3E3B5A2AD4EF0A ] Avgldx86        C:\WINDOWS\system32\DRIVERS\avgldx86.sys
03:56:34.0531 0580  Avgldx86 - ok
03:56:34.0640 0580  [ 5639DE66B37D02BD22DF4CF3155FBA60 ] Avgmfx86        C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
03:56:34.0640 0580  Avgmfx86 - ok
03:56:34.0687 0580  [ D1BAF652EDA0AE70896276A1FB32C2D4 ] Avgrkx86        C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
03:56:34.0703 0580  Avgrkx86 - ok
03:56:35.0218 0580  [ AAF0EBCAD95F2164CFFB544E00392498 ] Avgtdix         C:\WINDOWS\system32\DRIVERS\avgtdix.sys
03:56:35.0234 0580  Avgtdix - ok
03:56:35.0578 0580  [ FC2BC51120A945F7C70376495E4E7737 ] avgwd           C:\Program Files\AVG\AVG10\avgwdsvc.exe
03:56:35.0796 0580  avgwd - ok
03:56:36.0156 0580  [ 38CA1443660D0F5F06887C6A2E692AEB ] BCM43XX         C:\WINDOWS\system32\DRIVERS\bcmwl5.sys
03:56:36.0390 0580  BCM43XX - ok
03:56:36.0453 0580  [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
03:56:36.0484 0580  Beep - ok
03:56:36.0500 0580  btaudio - ok
03:56:36.0515 0580  BTDriver - ok
03:56:36.0546 0580  BTKRNL - ok
03:56:36.0562 0580  BTWDNDIS - ok
03:56:36.0750 0580  catchme - ok
03:56:36.0812 0580  [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
03:56:36.0828 0580  cbidf2k - ok
03:56:36.0843 0580  cd20xrnt - ok
03:56:36.0906 0580  [ C1B486A7658353D33A10CC15211A873B ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
03:56:36.0953 0580  Cdaudio - ok
03:56:37.0062 0580  [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
03:56:37.0125 0580  Cdfs - ok
03:56:37.0203 0580  [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
03:56:37.0296 0580  Cdrom - ok
03:56:37.0296 0580  Changer - ok
03:56:37.0359 0580  [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] cisvc           C:\WINDOWS\system32\cisvc.exe
03:56:37.0375 0580  cisvc - ok
03:56:37.0406 0580  [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
03:56:37.0437 0580  ClipSrv - ok
03:56:37.0546 0580  [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
03:56:37.0734 0580  clr_optimization_v2.0.50727_32 - ok
03:56:37.0828 0580  [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt          C:\WINDOWS\system32\DRIVERS\CmBatt.sys
03:56:37.0843 0580  CmBatt - ok
03:56:37.0843 0580  CmdIde - ok
03:56:37.0875 0580  [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt        C:\WINDOWS\system32\DRIVERS\compbatt.sys
03:56:37.0890 0580  Compbatt - ok
03:56:37.0906 0580  COMSysApp - ok
03:56:37.0921 0580  Cpqarray - ok
03:56:37.0953 0580  dac2w2k - ok
03:56:37.0953 0580  dac960nt - ok
03:56:38.0000 0580  [ E70AC14F6ADDCC9589CF513AF725178C ] DigiNet         C:\WINDOWS\system32\DRIVERS\diginet.sys
03:56:38.0015 0580  DigiNet - ok
03:56:38.0046 0580  DigiRefresh - ok
03:56:38.0125 0580  [ 044452051F3E02E7963599FC8F4F3E25 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
03:56:38.0140 0580  Disk - ok
03:56:38.0156 0580  dmadmin - ok
03:56:38.0781 0580  [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys
03:56:39.0359 0580  dmboot - ok
03:56:39.0546 0580  [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
03:56:39.0640 0580  dmio - ok
03:56:39.0750 0580  [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
03:56:39.0765 0580  dmload - ok
03:56:39.0875 0580  [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
03:56:39.0875 0580  DMusic - ok
03:56:40.0156 0580  [ 3E4B043F8BC6BE1D4820CC6C9C500306 ] dot4            C:\WINDOWS\system32\DRIVERS\Dot4.sys
03:56:40.0281 0580  dot4 - ok
03:56:40.0328 0580  [ 77CE63A8A34AE23D9FE4C7896D1DEBE7 ] Dot4Print       C:\WINDOWS\system32\DRIVERS\Dot4Prt.sys
03:56:40.0406 0580  Dot4Print - ok
03:56:40.0437 0580  [ BD05306428DA63369692477DDC0F6F5F ] Dot4Scan        C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys
03:56:40.0484 0580  Dot4Scan - ok
03:56:40.0531 0580  [ 6EC3AF6BB5B30E488A0C559921F012E1 ] dot4usb         C:\WINDOWS\system32\DRIVERS\dot4usb.sys
03:56:40.0593 0580  dot4usb - ok
03:56:40.0593 0580  dpti2o - ok
03:56:40.0640 0580  [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
03:56:40.0640 0580  drmkaud - ok
03:56:40.0765 0580  [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog        C:\WINDOWS\system32\services.exe
03:56:41.0140 0580  Eventlog - ok
03:56:41.0281 0580  [ 38D332A6D56AF32635675F132548343E ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
03:56:41.0375 0580  Fastfat - ok
03:56:41.0453 0580  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc             C:\WINDOWS\system32\drivers\Fdc.sys
03:56:41.0484 0580  Fdc - ok
03:56:41.0546 0580  [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
03:56:41.0546 0580  Fips - ok
03:56:41.0562 0580  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk        C:\WINDOWS\system32\drivers\Flpydisk.sys
03:56:41.0593 0580  Flpydisk - ok
03:56:41.0734 0580  [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
03:56:41.0812 0580  FltMgr - ok
03:56:41.0968 0580  [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
03:56:42.0000 0580  FontCache3.0.0.0 - ok
03:56:42.0031 0580  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
03:56:42.0062 0580  Fs_Rec - ok
03:56:42.0171 0580  [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
03:56:42.0265 0580  Ftdisk - ok
03:56:42.0312 0580  [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
03:56:42.0343 0580  Gpc - ok
03:56:42.0359 0580  hpn - ok
03:56:42.0375 0580  hpt3xx - ok
03:56:42.0765 0580  [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
03:56:42.0765 0580  HTTP - ok
03:56:42.0781 0580  i2omgmt - ok
03:56:42.0796 0580  i2omp - ok
03:56:42.0968 0580  [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt        C:\WINDOWS\system32\DRIVERS\i8042prt.sys
03:56:43.0078 0580  i8042prt - ok
03:56:44.0031 0580  [ AFA7C99D211A2AFF21A287BC4264CDE6 ] ialm            C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
03:56:44.0046 0580  ialm - ok
03:56:44.0984 0580  [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc           c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
03:56:45.0609 0580  idsvc - ok
03:56:45.0656 0580  [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
03:56:45.0687 0580  Imapi - ok
03:56:45.0843 0580  [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService    C:\WINDOWS\system32\imapi.exe
03:56:45.0953 0580  ImapiService - ok
03:56:45.0968 0580  ini910u - ok
03:56:46.0000 0580  IntelIde - ok
03:56:46.0078 0580  [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
03:56:46.0093 0580  intelppm - ok
03:56:46.0171 0580  [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw           C:\WINDOWS\system32\drivers\ip6fw.sys
03:56:46.0203 0580  ip6fw - ok
03:56:46.0265 0580  [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
03:56:46.0281 0580  IpFilterDriver - ok
03:56:46.0312 0580  [ B87AB476DCF76E72010632B5550955F5 ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
03:56:46.0328 0580  IpInIp - ok
03:56:46.0468 0580  [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
03:56:46.0468 0580  IpNat - ok
03:56:46.0562 0580  [ 23C74D75E36E7158768DD63D92789A91 ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
03:56:46.0609 0580  IPSec - ok
03:56:46.0640 0580  [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
03:56:46.0656 0580  IRENUM - ok
03:56:46.0703 0580  [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
03:56:46.0734 0580  isapnp - ok
03:56:46.0781 0580  [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
03:56:46.0796 0580  Kbdclass - ok
03:56:46.0968 0580  [ 692BCF44383D056AED41B045A323D378 ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
03:56:47.0000 0580  kmixer - ok
03:56:47.0187 0580  [ B467646C54CC746128904E1654C750C1 ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
03:56:47.0375 0580  KSecDD - ok
03:56:47.0406 0580  lbrtfdc - ok
03:56:47.0875 0580  [ B0E0C879A09BFC7CD7F792D185E4DEA5 ] LexBceS         C:\WINDOWS\system32\LEXBCES.EXE
03:56:48.0484 0580  LexBceS - ok
03:56:48.0656 0580  LMIInfo - ok
03:56:48.0734 0580  [ 4477689E2D8AE6B78BA34C9AF4CC1ED1 ] lmimirr         C:\WINDOWS\system32\DRIVERS\lmimirr.sys
03:56:48.0750 0580  lmimirr - ok
03:56:48.0765 0580  LMIRfsClientNP - ok
03:56:48.0828 0580  [ 3FAA563DDF853320F90259D455A01D79 ] LMIRfsDriver    C:\WINDOWS\system32\drivers\LMIRfsDriver.sys
03:56:48.0859 0580  LMIRfsDriver - ok
03:56:48.0937 0580  [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
03:56:48.0953 0580  MBAMProtector - ok
03:56:49.0421 0580  [ 43683E970F008C93C9429EF428147A54 ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
03:56:49.0781 0580  MBAMService - ok
03:56:49.0875 0580  [ 0DB7527DB188C7D967A37BB51BBF3963 ] MBAMSwissArmy   C:\WINDOWS\system32\drivers\mbamswissarmy.sys
03:56:49.0953 0580  MBAMSwissArmy - ok
03:56:50.0218 0580  [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.189\McCHSvc.exe
03:56:50.0390 0580  McComponentHostService - ok
03:56:51.0656 0580  [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
03:56:51.0734 0580  Microsoft Office Groove Audit Service - ok
03:56:51.0906 0580  [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
03:56:51.0968 0580  mnmdd - ok
03:56:52.0125 0580  [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc         C:\WINDOWS\System32\mnmsrvc.exe
03:56:52.0156 0580  mnmsrvc - ok
03:56:52.0296 0580  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
03:56:52.0421 0580  Modem - ok
03:56:52.0515 0580  [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
03:56:52.0531 0580  Mouclass - ok
03:56:52.0593 0580  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
03:56:52.0656 0580  MountMgr - ok
03:56:52.0671 0580  mraid35x - ok
03:56:52.0843 0580  [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
03:56:52.0843 0580  MRxDAV - ok
03:56:53.0187 0580  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
03:56:53.0468 0580  MRxSmb - ok
03:56:53.0531 0580  [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
03:56:53.0531 0580  MSDTC - ok
03:56:53.0562 0580  [ C941EA2454BA8350021D774DAF0F1027 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
03:56:53.0593 0580  Msfs - ok
03:56:53.0625 0580  MSIServer - ok
03:56:53.0671 0580  [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
03:56:53.0671 0580  MSKSSRV - ok
03:56:53.0687 0580  [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
03:56:53.0703 0580  MSPCLOCK - ok
03:56:53.0734 0580  [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
03:56:53.0750 0580  MSPQM - ok
03:56:53.0796 0580  [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
03:56:53.0812 0580  mssmbios - ok
03:56:53.0906 0580  [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
03:56:53.0968 0580  Mup - ok
03:56:54.0125 0580  [ 1DF7F42665C94B825322FAE71721130D ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
03:56:54.0234 0580  NDIS - ok
03:56:54.0296 0580  [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
03:56:54.0296 0580  NdisTapi - ok
03:56:54.0406 0580  [ F927A4434C5028758A842943EF1A3849 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
03:56:54.0406 0580  Ndisuio - ok
03:56:54.0484 0580  [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
03:56:54.0546 0580  NdisWan - ok
03:56:54.0625 0580  [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
03:56:54.0656 0580  NDProxy - ok
03:56:54.0703 0580  [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
03:56:54.0812 0580  NetBIOS - ok
03:56:55.0000 0580  [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
03:56:55.0109 0580  NetBT - ok
03:56:55.0343 0580  [ B857BA82860D7FF85AE29B095645563B ] NetDDE          C:\WINDOWS\system32\netdde.exe
03:56:55.0500 0580  NetDDE - ok
03:56:55.0578 0580  [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
03:56:55.0578 0580  NetDDEdsdm - ok
03:56:55.0703 0580  [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon        C:\WINDOWS\system32\lsass.exe
03:56:55.0781 0580  Netlogon - ok
03:56:56.0265 0580  [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
03:56:56.0437 0580  NetTcpPortSharing - ok
03:56:56.0593 0580  [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
03:56:56.0625 0580  Npfs - ok
03:56:57.0015 0580  [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
03:56:57.0609 0580  Ntfs - ok
03:56:57.0656 0580  [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp         C:\WINDOWS\System32\lsass.exe
03:56:57.0671 0580  NtLmSsp - ok
03:56:57.0718 0580  [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null            C:\WINDOWS\system32\drivers\Null.sys
03:56:57.0734 0580  Null - ok
03:56:57.0765 0580  [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
03:56:57.0781 0580  NwlnkFlt - ok
03:56:57.0812 0580  [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
03:56:57.0859 0580  NwlnkFwd - ok
03:56:58.0312 0580  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
03:56:58.0609 0580  odserv - ok
03:56:59.0187 0580  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
03:56:59.0515 0580  ose - ok
03:56:59.0765 0580  [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport         C:\WINDOWS\system32\drivers\Parport.sys
03:56:59.0921 0580  Parport - ok
03:56:59.0953 0580  [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
03:57:00.0031 0580  PartMgr - ok
03:57:00.0156 0580  [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
03:57:00.0234 0580  ParVdm - ok
03:57:00.0296 0580  [ A219903CCF74233761D92BEF471A07B1 ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
03:57:00.0453 0580  PCI - ok
03:57:00.0468 0580  PCIDump - ok
03:57:00.0562 0580  [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde          C:\WINDOWS\system32\DRIVERS\pciide.sys
03:57:00.0562 0580  PCIIde - ok
03:57:00.0734 0580  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia          C:\WINDOWS\system32\DRIVERS\pcmcia.sys
03:57:00.0796 0580  Pcmcia - ok
03:57:00.0812 0580  PDCOMP - ok
03:57:00.0828 0580  PDFRAME - ok
03:57:00.0843 0580  PDRELI - ok
03:57:00.0859 0580  PDRFRAME - ok
03:57:00.0859 0580  perc2 - ok
03:57:00.0875 0580  perc2hib - ok
03:57:01.0015 0580  [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay        C:\WINDOWS\system32\services.exe
03:57:01.0031 0580  PlugPlay - ok
03:57:01.0046 0580  [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent     C:\WINDOWS\system32\lsass.exe
03:57:01.0046 0580  PolicyAgent - ok
03:57:01.0109 0580  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
03:57:01.0140 0580  PptpMiniport - ok
03:57:01.0187 0580  [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor       C:\WINDOWS\system32\DRIVERS\processr.sys
03:57:01.0203 0580  Processor - ok
03:57:01.0234 0580  [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
03:57:01.0234 0580  ProtectedStorage - ok
03:57:01.0296 0580  [ 09298EC810B07E5D582CB3A3F9255424 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
03:57:01.0343 0580  PSched - ok
03:57:01.0390 0580  [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
03:57:01.0406 0580  Ptilink - ok
03:57:01.0421 0580  ql1080 - ok
03:57:01.0437 0580  Ql10wnt - ok
03:57:01.0453 0580  ql12160 - ok
03:57:01.0453 0580  ql1240 - ok
03:57:01.0468 0580  ql1280 - ok
03:57:01.0515 0580  [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
03:57:01.0515 0580  RasAcd - ok
03:57:01.0578 0580  [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
03:57:01.0609 0580  Rasl2tp - ok
03:57:01.0656 0580  [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
03:57:01.0687 0580  RasPppoe - ok
03:57:01.0703 0580  [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
03:57:01.0718 0580  Raspti - ok
03:57:01.0890 0580  [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
03:57:02.0000 0580  Rdbss - ok
03:57:02.0015 0580  [ 4912D5B403614CE99C28420F75353332 ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
03:57:02.0031 0580  RDPCDD - ok
03:57:02.0156 0580  [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
03:57:02.0281 0580  rdpdr - ok
03:57:02.0500 0580  [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
03:57:02.0593 0580  RDPWD - ok
03:57:02.0718 0580  [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
03:57:02.0812 0580  RDSessMgr - ok
03:57:02.0890 0580  [ F828DD7E1419B6653894A8F97A0094C5 ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
03:57:02.0937 0580  redbook - ok
03:57:03.0234 0580  [ 616F6E52CAE254727A886BA8EDA1BEEA ] RichVideo       C:\Program Files\CyberLink\Shared files\RichVideo.exe
03:57:03.0343 0580  RichVideo - ok
03:57:03.0625 0580  [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator      C:\WINDOWS\System32\locator.exe
03:57:03.0671 0580  RpcLocator - ok
03:57:03.0859 0580  [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP            C:\WINDOWS\System32\rsvp.exe
03:57:03.0937 0580  RSVP - ok
03:57:04.0140 0580  [ 4A0AE7891FCF74ACC848B109294CB80F ] RTL8023xp       C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
03:57:04.0187 0580  RTL8023xp - ok
03:57:04.0328 0580  [ D507C1400284176573224903819FFDA3 ] rtl8139         C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
03:57:04.0343 0580  rtl8139 - ok
03:57:04.0421 0580  [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs           C:\WINDOWS\system32\lsass.exe
03:57:04.0421 0580  SamSs - ok
03:57:04.0640 0580  [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
03:57:04.0765 0580  SCardSvr - ok
03:57:04.0875 0580  [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
03:57:04.0953 0580  Secdrv - ok
03:57:05.0125 0580  [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial          C:\WINDOWS\system32\drivers\Serial.sys
03:57:05.0203 0580  Serial - ok
03:57:05.0250 0580  [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
03:57:05.0281 0580  Sfloppy - ok
03:57:05.0296 0580  Simbad - ok
03:57:05.0328 0580  Sparrow - ok
03:57:05.0390 0580  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
03:57:05.0390 0580  splitter - ok
03:57:05.0515 0580  [ 60784F891563FB1B767F70117FC2428F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
03:57:05.0562 0580  Spooler - ok
03:57:05.0656 0580  [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
03:57:05.0703 0580  sr - ok
03:57:05.0968 0580  [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
03:57:05.0984 0580  Srv - ok
03:57:06.0046 0580  [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
03:57:06.0046 0580  swenum - ok
03:57:06.0500 0580  [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard     C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
03:57:06.0765 0580  SwitchBoard - ok
03:57:06.0843 0580  [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
03:57:06.0843 0580  swmidi - ok
03:57:06.0859 0580  SwPrv - ok
03:57:06.0875 0580  symc810 - ok
03:57:06.0890 0580  symc8xx - ok
03:57:06.0906 0580  sym_hi - ok
03:57:06.0921 0580  sym_u3 - ok
03:57:07.0218 0580  [ 062E75F20D9BDCA40344D85262F74748 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
03:57:07.0343 0580  SynTP - ok
03:57:07.0453 0580  [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
03:57:07.0453 0580  sysaudio - ok
03:57:07.0593 0580  [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
03:57:07.0656 0580  SysmonLog - ok
03:57:07.0984 0580  [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
03:57:08.0218 0580  Tcpip - ok
03:57:08.0296 0580  [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
03:57:08.0328 0580  TDPIPE - ok
03:57:08.0390 0580  [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
03:57:08.0453 0580  TDTCP - ok
03:57:08.0546 0580  [ 88155247177638048422893737429D9E ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
03:57:08.0609 0580  TermDD - ok
03:57:08.0703 0580  [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr         C:\WINDOWS\System32\tlntsvr.exe
03:57:08.0750 0580  TlntSvr - ok
03:57:08.0796 0580  TosIde - ok
03:57:08.0906 0580  [ 5F226C681049FB1DF1578AF32BB641F1 ] TPkd            C:\WINDOWS\system32\drivers\TPkd.sys
03:57:09.0015 0580  TPkd - ok
03:57:09.0093 0580  [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
03:57:09.0171 0580  Udfs - ok
03:57:09.0187 0580  ultra - ok
03:57:09.0484 0580  [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
03:57:09.0718 0580  Update - ok
03:57:09.0796 0580  [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS             C:\WINDOWS\System32\ups.exe
03:57:09.0812 0580  UPS - ok
03:57:09.0890 0580  [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
03:57:09.0906 0580  usbccgp - ok
03:57:09.0953 0580  [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
03:57:09.0984 0580  usbehci - ok
03:57:10.0078 0580  [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
03:57:10.0125 0580  usbhub - ok
03:57:10.0187 0580  [ A717C8721046828520C9EDF31288FC00 ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
03:57:10.0203 0580  usbprint - ok
03:57:10.0250 0580  [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
03:57:10.0265 0580  usbscan - ok
03:57:10.0328 0580  [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
03:57:10.0343 0580  USBSTOR - ok
03:57:10.0390 0580  [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci         C:\WINDOWS\system32\DRIVERS\usbuhci.sys
03:57:10.0406 0580  usbuhci - ok
03:57:10.0437 0580  [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
03:57:10.0453 0580  VgaSave - ok
03:57:10.0500 0580  ViaIde - ok
03:57:10.0578 0580  [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
03:57:10.0609 0580  VolSnap - ok
03:57:10.0890 0580  [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS             C:\WINDOWS\System32\vssvc.exe
03:57:11.0171 0580  VSS - ok
03:57:11.0234 0580  [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
03:57:11.0312 0580  Wanarp - ok
03:57:11.0328 0580  WDICA - ok
03:57:11.0406 0580  [ 6768ACF64B18196494413695F0C3A00F ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
03:57:11.0406 0580  wdmaud - ok
03:57:11.0546 0580  wltrysvc - ok
03:57:11.0656 0580  [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi         C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
03:57:11.0703 0580  WmiAcpi - ok
03:57:12.0171 0580  [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv        C:\WINDOWS\System32\wbem\wmiapsrv.exe
03:57:12.0265 0580  WmiApSrv - ok
03:57:13.0140 0580  [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc   C:\Program Files\Windows Media Player\WMPNetwk.exe
03:57:13.0718 0580  WMPNetworkSvc - ok
03:57:13.0781 0580  [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb          C:\WINDOWS\system32\DRIVERS\wpdusb.sys
03:57:13.0812 0580  WpdUsb - ok
03:57:13.0875 0580  [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL         C:\WINDOWS\System32\drivers\ws2ifsl.sys
03:57:13.0875 0580  WS2IFSL - ok
03:57:13.0968 0580  [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf          C:\WINDOWS\system32\DRIVERS\WudfPf.sys
03:57:14.0015 0580  WudfPf - ok
03:57:14.0109 0580  [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd          C:\WINDOWS\system32\DRIVERS\wudfrd.sys
03:57:14.0156 0580  WudfRd - ok
03:57:14.0203 0580  ================ Scan global ===============================
03:57:14.0281 0580  [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
03:57:14.0531 0580  [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
03:57:14.0906 0580  [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
03:57:15.0000 0580  [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
03:57:15.0000 0580  [Global] - ok
03:57:15.0015 0580  ================ Scan MBR ==================================
03:57:15.0046 0580  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
03:57:17.0390 0580  \Device\Harddisk0\DR0 - ok
03:57:17.0406 0580  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR2
03:57:22.0015 0580  \Device\Harddisk1\DR2 - ok
03:57:22.0015 0580  ================ Scan VBR ==================================
03:57:22.0031 0580  [ 04E7ED7381F650DC0102AA36C0CE854B ] \Device\Harddisk0\DR0\Partition1
03:57:22.0031 0580  \Device\Harddisk0\DR0\Partition1 - ok
03:57:22.0046 0580  [ F039C9F26DE76C157E86F7332EA9F370 ] \Device\Harddisk1\DR2\Partition1
03:57:22.0046 0580  \Device\Harddisk1\DR2\Partition1 - ok
03:57:22.0046 0580  ============================================================
03:57:22.0046 0580  Scan finished
03:57:22.0046 0580  ============================================================
03:57:22.0093 1944  Detected object count: 0
03:57:22.0093 1944  Actual detected object count: 0
03:59:27.0203 0156  ============================================================
03:59:27.0203 0156  Scan started
03:59:27.0203 0156  Mode: Manual; SigCheck; TDLFS;
03:59:27.0203 0156  ============================================================
03:59:29.0078 0156  ================ Scan system memory ========================
03:59:29.0093 0156  System memory - ok
03:59:29.0109 0156  ================ Scan services =============================
03:59:30.0875 0156  Abiosdsk - ok
03:59:30.0890 0156  abp480n5 - ok
03:59:31.0218 0156  [ 8FD99680A539792A30E97944FDAECF17 ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
03:59:31.0593 0156  ACPI ( UnsignedFile.Multi.Generic ) - warning
03:59:31.0593 0156  ACPI - detected UnsignedFile.Multi.Generic (1)
03:59:31.0640 0156  [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC          C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
03:59:31.0656 0156  ACPIEC ( UnsignedFile.Multi.Generic ) - warning
03:59:31.0656 0156  ACPIEC - detected UnsignedFile.Multi.Generic (1)
03:59:31.0656 0156  adpu160m - ok
03:59:31.0796 0156  [ 8BED39E3C35D6A489438B8141717A557 ] aec             C:\WINDOWS\system32\drivers\aec.sys
03:59:31.0812 0156  aec ( UnsignedFile.Multi.Generic ) - warning
03:59:31.0812 0156  aec - detected UnsignedFile.Multi.Generic (1)
03:59:31.0890 0156  [ 2C5C22990156A1063E19AD162191DC1D ] AegisP          C:\WINDOWS\system32\DRIVERS\AegisP.sys
03:59:31.0890 0156  AegisP ( UnsignedFile.Multi.Generic ) - warning
03:59:31.0890 0156  AegisP - detected UnsignedFile.Multi.Generic (1)
03:59:32.0015 0156  [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
03:59:32.0031 0156  AFD ( UnsignedFile.Multi.Generic ) - warning
03:59:32.0031 0156  AFD - detected UnsignedFile.Multi.Generic (1)
03:59:32.0046 0156  Aha154x - ok
03:59:32.0062 0156  aic78u2 - ok
03:59:32.0078 0156  aic78xx - ok
03:59:33.0593 0156  [ 95AA37BEC6C72C277C2CAEAEE736DD2D ] ALCXWDM         C:\WINDOWS\system32\drivers\ALCXWDM.SYS
03:59:35.0062 0156  ALCXWDM ( UnsignedFile.Multi.Generic ) - warning
03:59:35.0062 0156  ALCXWDM - detected UnsignedFile.Multi.Generic (1)
03:59:35.0171 0156  [ 8C515081584A38AA007909CD02020B3D ] ALG             C:\WINDOWS\System32\alg.exe
03:59:35.0203 0156  ALG ( UnsignedFile.Multi.Generic ) - warning
03:59:35.0203 0156  ALG - detected UnsignedFile.Multi.Generic (1)
03:59:35.0234 0156  AliIde - ok
03:59:35.0250 0156  amsint - ok
03:59:35.0781 0156  [ 7389DADC8D9B828634355290330F998F ] AR5211          C:\WINDOWS\system32\DRIVERS\ar5211.sys
03:59:35.0968 0156  AR5211 ( UnsignedFile.Multi.Generic ) - warning
03:59:35.0968 0156  AR5211 - detected UnsignedFile.Multi.Generic (1)
03:59:35.0984 0156  asc - ok
03:59:35.0984 0156  asc3350p - ok
03:59:36.0000 0156  asc3550 - ok
03:59:37.0234 0156  [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
03:59:37.0343 0156  aspnet_state - ok
03:59:37.0390 0156  [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
03:59:37.0406 0156  AsyncMac ( UnsignedFile.Multi.Generic ) - warning
03:59:37.0406 0156  AsyncMac - detected UnsignedFile.Multi.Generic (1)
03:59:37.0609 0156  [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
03:59:37.0625 0156  atapi ( UnsignedFile.Multi.Generic ) - warning
03:59:37.0625 0156  atapi - detected UnsignedFile.Multi.Generic (1)
03:59:37.0640 0156  Atdisk - ok
03:59:37.0703 0156  [ 9916C1225104BA14794209CFA8012159 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
03:59:37.0718 0156  Atmarpc ( UnsignedFile.Multi.Generic ) - warning
03:59:37.0718 0156  Atmarpc - detected UnsignedFile.Multi.Generic (1)
03:59:37.0781 0156  [ D9F724AA26C010A217C97606B160ED68 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
03:59:37.0796 0156  audstub ( UnsignedFile.Multi.Generic ) - warning
03:59:37.0796 0156  audstub - detected UnsignedFile.Multi.Generic (1)
03:59:38.0390 0156  [ D45B7995761253A92AB071D576114F28 ] AVG Security Toolbar Service C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe
03:59:38.0828 0156  AVG Security Toolbar Service - ok
03:59:38.0937 0156  [ 0C5941AF0B6BF2FDF378937392865217 ] Avgfwdx         C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
03:59:39.0000 0156  Avgfwdx - ok
03:59:39.0031 0156  [ 0C5941AF0B6BF2FDF378937392865217 ] Avgfwfd         C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
03:59:39.0046 0156  Avgfwfd - ok
03:59:40.0937 0156  [ 2F0C5AE2352F22B587EDC2829C971262 ] avgfws          C:\Program Files\AVG\AVG10\avgfws.exe
03:59:43.0750 0156  avgfws - ok
03:59:48.0593 0156  [ 7A0F6A3E0E41425B9BA54616B482668A ] AVGIDSAgent     C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
03:59:55.0046 0156  AVGIDSAgent - ok
03:59:55.0203 0156  [ 2D18221AAB3DB2D408D6C55C0F23090A ] AVGIDSDriver    C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys
03:59:55.0250 0156  AVGIDSDriver - ok
03:59:55.0312 0156  [ 1AF676DB3F3D4CC709CFAB2571CF5FC3 ] AVGIDSEH        C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys
03:59:55.0343 0156  AVGIDSEH - ok
03:59:55.0390 0156  [ 4C51E233C87F9EC7598551DE554BC99D ] AVGIDSFilter    C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys
03:59:55.0437 0156  AVGIDSFilter - ok
03:59:55.0484 0156  [ C3FC426E54F55C1CC3219E415B88E10C ] AVGIDSShim      C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys
03:59:55.0515 0156  AVGIDSShim - ok
03:59:55.0703 0156  [ 4E796D3D2C3182B13B3E3B5A2AD4EF0A ] Avgldx86        C:\WINDOWS\system32\DRIVERS\avgldx86.sys
03:59:55.0750 0156  Avgldx86 - ok
03:59:55.0812 0156  [ 5639DE66B37D02BD22DF4CF3155FBA60 ] Avgmfx86        C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
03:59:55.0843 0156  Avgmfx86 - ok
03:59:55.0875 0156  [ D1BAF652EDA0AE70896276A1FB32C2D4 ] Avgrkx86        C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
03:59:55.0906 0156  Avgrkx86 - ok
03:59:56.0109 0156  [ AAF0EBCAD95F2164CFFB544E00392498 ] Avgtdix         C:\WINDOWS\system32\DRIVERS\avgtdix.sys
03:59:56.0156 0156  Avgtdix - ok
03:59:56.0359 0156  [ FC2BC51120A945F7C70376495E4E7737 ] avgwd           C:\Program Files\AVG\AVG10\avgwdsvc.exe
03:59:56.0406 0156  avgwd - ok
03:59:56.0671 0156  [ 38CA1443660D0F5F06887C6A2E692AEB ] BCM43XX         C:\WINDOWS\system32\DRIVERS\bcmwl5.sys
03:59:56.0921 0156  BCM43XX ( UnsignedFile.Multi.Generic ) - warning
03:59:56.0921 0156  BCM43XX - detected UnsignedFile.Multi.Generic (1)
03:59:57.0031 0156  [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
03:59:57.0046 0156  Beep ( UnsignedFile.Multi.Generic ) - warning
03:59:57.0046 0156  Beep - detected UnsignedFile.Multi.Generic (1)
03:59:57.0109 0156  btaudio - ok
03:59:57.0109 0156  BTDriver - ok
03:59:57.0125 0156  BTKRNL - ok
03:59:57.0140 0156  BTWDNDIS - ok
03:59:57.0640 0156  catchme - ok
03:59:57.0750 0156  [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
03:59:57.0765 0156  cbidf2k ( UnsignedFile.Multi.Generic ) - warning
03:59:57.0765 0156  cbidf2k - detected UnsignedFile.Multi.Generic (1)
03:59:57.0765 0156  cd20xrnt - ok
03:59:57.0906 0156  [ C1B486A7658353D33A10CC15211A873B ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
03:59:57.0921 0156  Cdaudio ( UnsignedFile.Multi.Generic ) - warning
03:59:57.0921 0156  Cdaudio - detected UnsignedFile.Multi.Generic (1)
03:59:58.0046 0156  [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
03:59:58.0062 0156  Cdfs ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0062 0156  Cdfs - detected UnsignedFile.Multi.Generic (1)
03:59:58.0156 0156  [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
03:59:58.0203 0156  Cdrom ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0203 0156  Cdrom - detected UnsignedFile.Multi.Generic (1)
03:59:58.0203 0156  Changer - ok
03:59:58.0312 0156  [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] cisvc           C:\WINDOWS\system32\cisvc.exe
03:59:58.0343 0156  cisvc ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0343 0156  cisvc - detected UnsignedFile.Multi.Generic (1)
03:59:58.0390 0156  [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
03:59:58.0406 0156  ClipSrv ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0406 0156  ClipSrv - detected UnsignedFile.Multi.Generic (1)
03:59:58.0609 0156  [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
03:59:58.0656 0156  clr_optimization_v2.0.50727_32 - ok
03:59:58.0796 0156  [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt          C:\WINDOWS\system32\DRIVERS\CmBatt.sys
03:59:58.0843 0156  CmBatt ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0843 0156  CmBatt - detected UnsignedFile.Multi.Generic (1)
03:59:58.0859 0156  CmdIde - ok
03:59:58.0921 0156  [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt        C:\WINDOWS\system32\DRIVERS\compbatt.sys
03:59:58.0937 0156  Compbatt ( UnsignedFile.Multi.Generic ) - warning
03:59:58.0937 0156  Compbatt - detected UnsignedFile.Multi.Generic (1)
03:59:58.0953 0156  COMSysApp - ok
03:59:58.0984 0156  Cpqarray - ok
03:59:59.0000 0156  dac2w2k - ok
03:59:59.0000 0156  dac960nt - ok
03:59:59.0046 0156  [ E70AC14F6ADDCC9589CF513AF725178C ] DigiNet         C:\WINDOWS\system32\DRIVERS\diginet.sys
03:59:59.0109 0156  DigiNet - ok
03:59:59.0156 0156  DigiRefresh - ok
03:59:59.0234 0156  [ 044452051F3E02E7963599FC8F4F3E25 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
03:59:59.0250 0156  Disk ( UnsignedFile.Multi.Generic ) - warning
03:59:59.0250 0156  Disk - detected UnsignedFile.Multi.Generic (1)
03:59:59.0265 0156  dmadmin - ok
03:59:59.0906 0156  [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys



#4 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 05:44 AM

The Tdsskiller log is below: Post #2 of 2

 

04:00:00.0281 0156  dmboot ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0296 0156  dmboot - detected UnsignedFile.Multi.Generic (1)
04:00:00.0406 0156  [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
04:00:00.0437 0156  dmio ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0437 0156  dmio - detected UnsignedFile.Multi.Generic (1)
04:00:00.0468 0156  [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
04:00:00.0484 0156  dmload ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0484 0156  dmload - detected UnsignedFile.Multi.Generic (1)
04:00:00.0562 0156  [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
04:00:00.0578 0156  DMusic ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0578 0156  DMusic - detected UnsignedFile.Multi.Generic (1)
04:00:00.0750 0156  [ 3E4B043F8BC6BE1D4820CC6C9C500306 ] dot4            C:\WINDOWS\system32\DRIVERS\Dot4.sys
04:00:00.0765 0156  dot4 ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0765 0156  dot4 - detected UnsignedFile.Multi.Generic (1)
04:00:00.0812 0156  [ 77CE63A8A34AE23D9FE4C7896D1DEBE7 ] Dot4Print       C:\WINDOWS\system32\DRIVERS\Dot4Prt.sys
04:00:00.0828 0156  Dot4Print ( UnsignedFile.Multi.Generic ) - warning
04:00:00.0828 0156  Dot4Print - detected UnsignedFile.Multi.Generic (1)
04:00:00.0843 0156  [ BD05306428DA63369692477DDC0F6F5F ] Dot4Scan        C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys
04:00:01.0015 0156  Dot4Scan ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0015 0156  Dot4Scan - detected UnsignedFile.Multi.Generic (1)
04:00:01.0078 0156  [ 6EC3AF6BB5B30E488A0C559921F012E1 ] dot4usb         C:\WINDOWS\system32\DRIVERS\dot4usb.sys
04:00:01.0078 0156  dot4usb ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0078 0156  dot4usb - detected UnsignedFile.Multi.Generic (1)
04:00:01.0093 0156  dpti2o - ok
04:00:01.0140 0156  [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
04:00:01.0140 0156  drmkaud ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0140 0156  drmkaud - detected UnsignedFile.Multi.Generic (1)
04:00:01.0281 0156  [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog        C:\WINDOWS\system32\services.exe
04:00:01.0312 0156  Eventlog ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0312 0156  Eventlog - detected UnsignedFile.Multi.Generic (1)
04:00:01.0562 0156  [ 38D332A6D56AF32635675F132548343E ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
04:00:01.0578 0156  Fastfat ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0578 0156  Fastfat - detected UnsignedFile.Multi.Generic (1)
04:00:01.0734 0156  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc             C:\WINDOWS\system32\drivers\Fdc.sys
04:00:01.0734 0156  Fdc ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0734 0156  Fdc - detected UnsignedFile.Multi.Generic (1)
04:00:01.0828 0156  [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
04:00:01.0843 0156  Fips ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0843 0156  Fips - detected UnsignedFile.Multi.Generic (1)
04:00:01.0953 0156  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk        C:\WINDOWS\system32\drivers\Flpydisk.sys
04:00:01.0968 0156  Flpydisk ( UnsignedFile.Multi.Generic ) - warning
04:00:01.0968 0156  Flpydisk - detected UnsignedFile.Multi.Generic (1)
04:00:02.0234 0156  [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
04:00:02.0265 0156  FltMgr ( UnsignedFile.Multi.Generic ) - warning
04:00:02.0265 0156  FltMgr - detected UnsignedFile.Multi.Generic (1)
04:00:02.0671 0156  [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
04:00:02.0718 0156  FontCache3.0.0.0 - ok
04:00:02.0796 0156  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
04:00:02.0843 0156  Fs_Rec ( UnsignedFile.Multi.Generic ) - warning
04:00:02.0843 0156  Fs_Rec - detected UnsignedFile.Multi.Generic (1)
04:00:03.0031 0156  [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
04:00:03.0078 0156  Ftdisk ( UnsignedFile.Multi.Generic ) - warning
04:00:03.0078 0156  Ftdisk - detected UnsignedFile.Multi.Generic (1)
04:00:03.0312 0156  [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
04:00:03.0437 0156  Gpc ( UnsignedFile.Multi.Generic ) - warning
04:00:03.0437 0156  Gpc - detected UnsignedFile.Multi.Generic (1)
04:00:03.0453 0156  hpn - ok
04:00:03.0468 0156  hpt3xx - ok
04:00:03.0718 0156  [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
04:00:03.0750 0156  HTTP ( UnsignedFile.Multi.Generic ) - warning
04:00:03.0796 0156  HTTP - detected UnsignedFile.Multi.Generic (1)
04:00:03.0796 0156  i2omgmt - ok
04:00:03.0812 0156  i2omp - ok
04:00:03.0906 0156  [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt        C:\WINDOWS\system32\DRIVERS\i8042prt.sys
04:00:03.0984 0156  i8042prt ( UnsignedFile.Multi.Generic ) - warning
04:00:03.0984 0156  i8042prt - detected UnsignedFile.Multi.Generic (1)
04:00:04.0843 0156  [ AFA7C99D211A2AFF21A287BC4264CDE6 ] ialm            C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
04:00:05.0500 0156  ialm ( UnsignedFile.Multi.Generic ) - warning
04:00:05.0500 0156  ialm - detected UnsignedFile.Multi.Generic (1)
04:00:06.0390 0156  [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc           c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
04:00:06.0953 0156  idsvc - ok
04:00:07.0015 0156  [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
04:00:07.0031 0156  Imapi ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0031 0156  Imapi - detected UnsignedFile.Multi.Generic (1)
04:00:07.0171 0156  [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService    C:\WINDOWS\system32\imapi.exe
04:00:07.0203 0156  ImapiService ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0203 0156  ImapiService - detected UnsignedFile.Multi.Generic (1)
04:00:07.0218 0156  ini910u - ok
04:00:07.0234 0156  IntelIde - ok
04:00:07.0343 0156  [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
04:00:07.0359 0156  intelppm ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0359 0156  intelppm - detected UnsignedFile.Multi.Generic (1)
04:00:07.0406 0156  [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw           C:\WINDOWS\system32\drivers\ip6fw.sys
04:00:07.0421 0156  ip6fw ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0421 0156  ip6fw - detected UnsignedFile.Multi.Generic (1)
04:00:07.0484 0156  [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
04:00:07.0500 0156  IpFilterDriver ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0500 0156  IpFilterDriver - detected UnsignedFile.Multi.Generic (1)
04:00:07.0531 0156  [ B87AB476DCF76E72010632B5550955F5 ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
04:00:07.0546 0156  IpInIp ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0546 0156  IpInIp - detected UnsignedFile.Multi.Generic (1)
04:00:07.0703 0156  [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
04:00:07.0734 0156  IpNat ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0734 0156  IpNat - detected UnsignedFile.Multi.Generic (1)
04:00:07.0812 0156  [ 23C74D75E36E7158768DD63D92789A91 ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
04:00:07.0828 0156  IPSec ( UnsignedFile.Multi.Generic ) - warning
04:00:07.0828 0156  IPSec - detected UnsignedFile.Multi.Generic (1)
04:00:07.0859 0156  [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
04:00:08.0031 0156  IRENUM ( UnsignedFile.Multi.Generic ) - warning
04:00:08.0031 0156  IRENUM - detected UnsignedFile.Multi.Generic (1)
04:00:08.0093 0156  [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
04:00:08.0125 0156  isapnp ( UnsignedFile.Multi.Generic ) - warning
04:00:08.0125 0156  isapnp - detected UnsignedFile.Multi.Generic (1)
04:00:08.0187 0156  [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
04:00:08.0203 0156  Kbdclass ( UnsignedFile.Multi.Generic ) - warning
04:00:08.0203 0156  Kbdclass - detected UnsignedFile.Multi.Generic (1)
04:00:08.0453 0156  [ 692BCF44383D056AED41B045A323D378 ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
04:00:08.0484 0156  kmixer ( UnsignedFile.Multi.Generic ) - warning
04:00:08.0484 0156  kmixer - detected UnsignedFile.Multi.Generic (1)
04:00:08.0656 0156  [ B467646C54CC746128904E1654C750C1 ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
04:00:08.0687 0156  KSecDD ( UnsignedFile.Multi.Generic ) - warning
04:00:08.0687 0156  KSecDD - detected UnsignedFile.Multi.Generic (1)
04:00:08.0734 0156  lbrtfdc - ok
04:00:09.0062 0156  [ B0E0C879A09BFC7CD7F792D185E4DEA5 ] LexBceS         C:\WINDOWS\system32\LEXBCES.EXE
04:00:09.0156 0156  LexBceS ( UnsignedFile.Multi.Generic ) - warning
04:00:09.0187 0156  LexBceS - detected UnsignedFile.Multi.Generic (1)
04:00:09.0265 0156  LMIInfo - ok
04:00:09.0531 0156  [ 4477689E2D8AE6B78BA34C9AF4CC1ED1 ] lmimirr         C:\WINDOWS\system32\DRIVERS\lmimirr.sys
04:00:09.0765 0156  lmimirr - ok
04:00:09.0765 0156  LMIRfsClientNP - ok
04:00:09.0921 0156  [ 3FAA563DDF853320F90259D455A01D79 ] LMIRfsDriver    C:\WINDOWS\system32\drivers\LMIRfsDriver.sys
04:00:10.0015 0156  LMIRfsDriver - ok
04:00:10.0125 0156  [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
04:00:10.0203 0156  MBAMProtector - ok
04:00:10.0937 0156  [ 43683E970F008C93C9429EF428147A54 ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
04:00:11.0328 0156  MBAMService - ok
04:00:11.0640 0156  [ 0DB7527DB188C7D967A37BB51BBF3963 ] MBAMSwissArmy   C:\WINDOWS\system32\drivers\mbamswissarmy.sys
04:00:11.0703 0156  MBAMSwissArmy - ok
04:00:12.0000 0156  [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.189\McCHSvc.exe
04:00:12.0031 0156  McComponentHostService - ok
04:00:13.0781 0156  [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
04:00:13.0812 0156  Microsoft Office Groove Audit Service - ok
04:00:13.0968 0156  [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
04:00:14.0000 0156  mnmdd ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0000 0156  mnmdd - detected UnsignedFile.Multi.Generic (1)
04:00:14.0125 0156  [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc         C:\WINDOWS\System32\mnmsrvc.exe
04:00:14.0140 0156  mnmsrvc ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0140 0156  mnmsrvc - detected UnsignedFile.Multi.Generic (1)
04:00:14.0250 0156  [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
04:00:14.0281 0156  Modem ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0281 0156  Modem - detected UnsignedFile.Multi.Generic (1)
04:00:14.0328 0156  [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
04:00:14.0343 0156  Mouclass ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0343 0156  Mouclass - detected UnsignedFile.Multi.Generic (1)
04:00:14.0390 0156  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
04:00:14.0406 0156  MountMgr ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0406 0156  MountMgr - detected UnsignedFile.Multi.Generic (1)
04:00:14.0421 0156  mraid35x - ok
04:00:14.0546 0156  [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
04:00:14.0562 0156  MRxDAV ( UnsignedFile.Multi.Generic ) - warning
04:00:14.0562 0156  MRxDAV - detected UnsignedFile.Multi.Generic (1)
04:00:14.0890 0156  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
04:00:15.0187 0156  MRxSmb ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0187 0156  MRxSmb - detected UnsignedFile.Multi.Generic (1)
04:00:15.0250 0156  [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
04:00:15.0265 0156  MSDTC ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0265 0156  MSDTC - detected UnsignedFile.Multi.Generic (1)
04:00:15.0296 0156  [ C941EA2454BA8350021D774DAF0F1027 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
04:00:15.0312 0156  Msfs ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0312 0156  Msfs - detected UnsignedFile.Multi.Generic (1)
04:00:15.0328 0156  MSIServer - ok
04:00:15.0375 0156  [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
04:00:15.0390 0156  MSKSSRV ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0390 0156  MSKSSRV - detected UnsignedFile.Multi.Generic (1)
04:00:15.0421 0156  [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
04:00:15.0437 0156  MSPCLOCK ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0437 0156  MSPCLOCK - detected UnsignedFile.Multi.Generic (1)
04:00:15.0453 0156  [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
04:00:15.0468 0156  MSPQM ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0468 0156  MSPQM - detected UnsignedFile.Multi.Generic (1)
04:00:15.0515 0156  [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
04:00:15.0531 0156  mssmbios ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0531 0156  mssmbios - detected UnsignedFile.Multi.Generic (1)
04:00:15.0625 0156  [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
04:00:15.0656 0156  Mup ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0656 0156  Mup - detected UnsignedFile.Multi.Generic (1)
04:00:15.0796 0156  [ 1DF7F42665C94B825322FAE71721130D ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
04:00:15.0828 0156  NDIS ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0828 0156  NDIS - detected UnsignedFile.Multi.Generic (1)
04:00:15.0875 0156  [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
04:00:15.0890 0156  NdisTapi ( UnsignedFile.Multi.Generic ) - warning
04:00:15.0890 0156  NdisTapi - detected UnsignedFile.Multi.Generic (1)
04:00:15.0937 0156  [ F927A4434C5028758A842943EF1A3849 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
04:00:16.0093 0156  Ndisuio ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0093 0156  Ndisuio - detected UnsignedFile.Multi.Generic (1)
04:00:16.0171 0156  [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
04:00:16.0203 0156  NdisWan ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0203 0156  NdisWan - detected UnsignedFile.Multi.Generic (1)
04:00:16.0265 0156  [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
04:00:16.0312 0156  NDProxy ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0312 0156  NDProxy - detected UnsignedFile.Multi.Generic (1)
04:00:16.0406 0156  [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
04:00:16.0421 0156  NetBIOS ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0421 0156  NetBIOS - detected UnsignedFile.Multi.Generic (1)
04:00:16.0593 0156  [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
04:00:16.0609 0156  NetBT ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0609 0156  NetBT - detected UnsignedFile.Multi.Generic (1)
04:00:16.0765 0156  [ B857BA82860D7FF85AE29B095645563B ] NetDDE          C:\WINDOWS\system32\netdde.exe
04:00:16.0812 0156  NetDDE ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0812 0156  NetDDE - detected UnsignedFile.Multi.Generic (1)
04:00:16.0921 0156  [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
04:00:16.0937 0156  NetDDEdsdm ( UnsignedFile.Multi.Generic ) - warning
04:00:16.0937 0156  NetDDEdsdm - detected UnsignedFile.Multi.Generic (1)
04:00:17.0156 0156  [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon        C:\WINDOWS\system32\lsass.exe
04:00:17.0218 0156  Netlogon ( UnsignedFile.Multi.Generic ) - warning
04:00:17.0218 0156  Netlogon - detected UnsignedFile.Multi.Generic (1)
04:00:17.0609 0156  [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
04:00:17.0656 0156  NetTcpPortSharing - ok
04:00:17.0796 0156  [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
04:00:17.0843 0156  Npfs ( UnsignedFile.Multi.Generic ) - warning
04:00:17.0843 0156  Npfs - detected UnsignedFile.Multi.Generic (1)
04:00:18.0265 0156  [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
04:00:18.0468 0156  Ntfs ( UnsignedFile.Multi.Generic ) - warning
04:00:18.0468 0156  Ntfs - detected UnsignedFile.Multi.Generic (1)
04:00:18.0500 0156  [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp         C:\WINDOWS\System32\lsass.exe
04:00:18.0546 0156  NtLmSsp ( UnsignedFile.Multi.Generic ) - warning
04:00:18.0546 0156  NtLmSsp - detected UnsignedFile.Multi.Generic (1)
04:00:18.0593 0156  [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null            C:\WINDOWS\system32\drivers\Null.sys
04:00:18.0625 0156  Null ( UnsignedFile.Multi.Generic ) - warning
04:00:18.0625 0156  Null - detected UnsignedFile.Multi.Generic (1)
04:00:18.0671 0156  [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
04:00:18.0687 0156  NwlnkFlt ( UnsignedFile.Multi.Generic ) - warning
04:00:18.0687 0156  NwlnkFlt - detected UnsignedFile.Multi.Generic (1)
04:00:18.0718 0156  [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
04:00:18.0750 0156  NwlnkFwd ( UnsignedFile.Multi.Generic ) - warning
04:00:18.0750 0156  NwlnkFwd - detected UnsignedFile.Multi.Generic (1)
04:00:19.0281 0156  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
04:00:19.0500 0156  odserv - ok
04:00:19.0687 0156  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
04:00:19.0734 0156  ose - ok
04:00:19.0875 0156  [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport         C:\WINDOWS\system32\drivers\Parport.sys
04:00:19.0890 0156  Parport ( UnsignedFile.Multi.Generic ) - warning
04:00:19.0890 0156  Parport - detected UnsignedFile.Multi.Generic (1)
04:00:19.0968 0156  [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
04:00:19.0984 0156  PartMgr ( UnsignedFile.Multi.Generic ) - warning
04:00:19.0984 0156  PartMgr - detected UnsignedFile.Multi.Generic (1)
04:00:20.0203 0156  [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
04:00:20.0218 0156  ParVdm ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0218 0156  ParVdm - detected UnsignedFile.Multi.Generic (1)
04:00:20.0296 0156  [ A219903CCF74233761D92BEF471A07B1 ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
04:00:20.0312 0156  PCI ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0312 0156  PCI - detected UnsignedFile.Multi.Generic (1)
04:00:20.0328 0156  PCIDump - ok
04:00:20.0390 0156  [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde          C:\WINDOWS\system32\DRIVERS\pciide.sys
04:00:20.0406 0156  PCIIde ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0406 0156  PCIIde - detected UnsignedFile.Multi.Generic (1)
04:00:20.0531 0156  [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia          C:\WINDOWS\system32\DRIVERS\pcmcia.sys
04:00:20.0562 0156  Pcmcia ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0562 0156  Pcmcia - detected UnsignedFile.Multi.Generic (1)
04:00:20.0578 0156  PDCOMP - ok
04:00:20.0593 0156  PDFRAME - ok
04:00:20.0593 0156  PDRELI - ok
04:00:20.0625 0156  PDRFRAME - ok
04:00:20.0640 0156  perc2 - ok
04:00:20.0656 0156  perc2hib - ok
04:00:20.0781 0156  [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay        C:\WINDOWS\system32\services.exe
04:00:20.0812 0156  PlugPlay ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0812 0156  PlugPlay - detected UnsignedFile.Multi.Generic (1)
04:00:20.0828 0156  [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent     C:\WINDOWS\system32\lsass.exe
04:00:20.0843 0156  PolicyAgent ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0843 0156  PolicyAgent - detected UnsignedFile.Multi.Generic (1)
04:00:20.0937 0156  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
04:00:20.0953 0156  PptpMiniport ( UnsignedFile.Multi.Generic ) - warning
04:00:20.0953 0156  PptpMiniport - detected UnsignedFile.Multi.Generic (1)
04:00:21.0015 0156  [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor       C:\WINDOWS\system32\DRIVERS\processr.sys
04:00:21.0031 0156  Processor ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0031 0156  Processor - detected UnsignedFile.Multi.Generic (1)
04:00:21.0046 0156  [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
04:00:21.0078 0156  ProtectedStorage ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0078 0156  ProtectedStorage - detected UnsignedFile.Multi.Generic (1)
04:00:21.0125 0156  [ 09298EC810B07E5D582CB3A3F9255424 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
04:00:21.0156 0156  PSched ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0156 0156  PSched - detected UnsignedFile.Multi.Generic (1)
04:00:21.0265 0156  [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
04:00:21.0281 0156  Ptilink ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0281 0156  Ptilink - detected UnsignedFile.Multi.Generic (1)
04:00:21.0281 0156  ql1080 - ok
04:00:21.0296 0156  Ql10wnt - ok
04:00:21.0312 0156  ql12160 - ok
04:00:21.0312 0156  ql1240 - ok
04:00:21.0328 0156  ql1280 - ok
04:00:21.0375 0156  [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
04:00:21.0421 0156  RasAcd ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0421 0156  RasAcd - detected UnsignedFile.Multi.Generic (1)
04:00:21.0500 0156  [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
04:00:21.0546 0156  Rasl2tp ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0546 0156  Rasl2tp - detected UnsignedFile.Multi.Generic (1)
04:00:21.0593 0156  [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
04:00:21.0609 0156  RasPppoe ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0609 0156  RasPppoe - detected UnsignedFile.Multi.Generic (1)
04:00:21.0625 0156  [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
04:00:21.0656 0156  Raspti ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0656 0156  Raspti - detected UnsignedFile.Multi.Generic (1)
04:00:21.0890 0156  [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
04:00:21.0906 0156  Rdbss ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0906 0156  Rdbss - detected UnsignedFile.Multi.Generic (1)
04:00:21.0953 0156  [ 4912D5B403614CE99C28420F75353332 ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
04:00:21.0984 0156  RDPCDD ( UnsignedFile.Multi.Generic ) - warning
04:00:21.0984 0156  RDPCDD - detected UnsignedFile.Multi.Generic (1)
04:00:22.0437 0156  [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
04:00:22.0468 0156  rdpdr ( UnsignedFile.Multi.Generic ) - warning
04:00:22.0468 0156  rdpdr - detected UnsignedFile.Multi.Generic (1)
04:00:22.0593 0156  [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
04:00:22.0625 0156  RDPWD ( UnsignedFile.Multi.Generic ) - warning
04:00:22.0625 0156  RDPWD - detected UnsignedFile.Multi.Generic (1)
04:00:22.0750 0156  [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
04:00:22.0781 0156  RDSessMgr ( UnsignedFile.Multi.Generic ) - warning
04:00:22.0781 0156  RDSessMgr - detected UnsignedFile.Multi.Generic (1)
04:00:22.0859 0156  [ F828DD7E1419B6653894A8F97A0094C5 ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
04:00:22.0890 0156  redbook ( UnsignedFile.Multi.Generic ) - warning
04:00:22.0890 0156  redbook - detected UnsignedFile.Multi.Generic (1)
04:00:23.0187 0156  [ 616F6E52CAE254727A886BA8EDA1BEEA ] RichVideo       C:\Program Files\CyberLink\Shared files\RichVideo.exe
04:00:23.0234 0156  RichVideo - ok
04:00:23.0343 0156  [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator      C:\WINDOWS\System32\locator.exe
04:00:23.0359 0156  RpcLocator ( UnsignedFile.Multi.Generic ) - warning
04:00:23.0359 0156  RpcLocator - detected UnsignedFile.Multi.Generic (1)
04:00:23.0484 0156  [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP            C:\WINDOWS\System32\rsvp.exe
04:00:23.0515 0156  RSVP ( UnsignedFile.Multi.Generic ) - warning
04:00:23.0515 0156  RSVP - detected UnsignedFile.Multi.Generic (1)
04:00:23.0593 0156  [ 4A0AE7891FCF74ACC848B109294CB80F ] RTL8023xp       C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
04:00:23.0609 0156  RTL8023xp ( UnsignedFile.Multi.Generic ) - warning
04:00:23.0609 0156  RTL8023xp - detected UnsignedFile.Multi.Generic (1)
04:00:23.0671 0156  [ D507C1400284176573224903819FFDA3 ] rtl8139         C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
04:00:23.0718 0156  rtl8139 ( UnsignedFile.Multi.Generic ) - warning
04:00:23.0718 0156  rtl8139 - detected UnsignedFile.Multi.Generic (1)
04:00:23.0781 0156  [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs           C:\WINDOWS\system32\lsass.exe
04:00:23.0796 0156  SamSs ( UnsignedFile.Multi.Generic ) - warning
04:00:23.0796 0156  SamSs - detected UnsignedFile.Multi.Generic (1)
04:00:23.0968 0156  [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
04:00:24.0031 0156  SCardSvr ( UnsignedFile.Multi.Generic ) - warning
04:00:24.0031 0156  SCardSvr - detected UnsignedFile.Multi.Generic (1)
04:00:24.0109 0156  [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
04:00:24.0125 0156  Secdrv ( UnsignedFile.Multi.Generic ) - warning
04:00:24.0125 0156  Secdrv - detected UnsignedFile.Multi.Generic (1)
04:00:24.0515 0156  [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial          C:\WINDOWS\system32\drivers\Serial.sys
04:00:24.0562 0156  Serial ( UnsignedFile.Multi.Generic ) - warning
04:00:24.0562 0156  Serial - detected UnsignedFile.Multi.Generic (1)
04:00:24.0656 0156  [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
04:00:24.0703 0156  Sfloppy ( UnsignedFile.Multi.Generic ) - warning
04:00:24.0703 0156  Sfloppy - detected UnsignedFile.Multi.Generic (1)
04:00:24.0734 0156  Simbad - ok
04:00:24.0750 0156  Sparrow - ok
04:00:24.0843 0156  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
04:00:24.0859 0156  splitter ( UnsignedFile.Multi.Generic ) - warning
04:00:24.0859 0156  splitter - detected UnsignedFile.Multi.Generic (1)
04:00:25.0218 0156  [ 60784F891563FB1B767F70117FC2428F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
04:00:25.0265 0156  Spooler ( UnsignedFile.Multi.Generic ) - warning
04:00:25.0265 0156  Spooler - detected UnsignedFile.Multi.Generic (1)
04:00:25.0421 0156  [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
04:00:25.0437 0156  sr ( UnsignedFile.Multi.Generic ) - warning
04:00:25.0437 0156  sr - detected UnsignedFile.Multi.Generic (1)
04:00:25.0875 0156  [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
04:00:26.0078 0156  Srv ( UnsignedFile.Multi.Generic ) - warning
04:00:26.0078 0156  Srv - detected UnsignedFile.Multi.Generic (1)
04:00:26.0156 0156  [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
04:00:26.0187 0156  swenum ( UnsignedFile.Multi.Generic ) - warning
04:00:26.0187 0156  swenum - detected UnsignedFile.Multi.Generic (1)
04:00:26.0625 0156  [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard     C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
04:00:26.0843 0156  SwitchBoard ( UnsignedFile.Multi.Generic ) - warning
04:00:26.0843 0156  SwitchBoard - detected UnsignedFile.Multi.Generic (1)
04:00:26.0921 0156  [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
04:00:26.0937 0156  swmidi ( UnsignedFile.Multi.Generic ) - warning
04:00:26.0937 0156  swmidi - detected UnsignedFile.Multi.Generic (1)
04:00:26.0953 0156  SwPrv - ok
04:00:26.0968 0156  symc810 - ok
04:00:27.0000 0156  symc8xx - ok
04:00:27.0000 0156  sym_hi - ok
04:00:27.0015 0156  sym_u3 - ok
04:00:27.0218 0156  [ 062E75F20D9BDCA40344D85262F74748 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
04:00:27.0234 0156  SynTP ( UnsignedFile.Multi.Generic ) - warning
04:00:27.0234 0156  SynTP - detected UnsignedFile.Multi.Generic (1)
04:00:27.0296 0156  [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
04:00:27.0328 0156  sysaudio ( UnsignedFile.Multi.Generic ) - warning
04:00:27.0328 0156  sysaudio - detected UnsignedFile.Multi.Generic (1)
04:00:27.0421 0156  [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
04:00:27.0453 0156  SysmonLog ( UnsignedFile.Multi.Generic ) - warning
04:00:27.0453 0156  SysmonLog - detected UnsignedFile.Multi.Generic (1)
04:00:27.0718 0156  [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
04:00:27.0906 0156  Tcpip ( UnsignedFile.Multi.Generic ) - warning
04:00:27.0906 0156  Tcpip - detected UnsignedFile.Multi.Generic (1)
04:00:27.0953 0156  [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
04:00:27.0968 0156  TDPIPE ( UnsignedFile.Multi.Generic ) - warning
04:00:27.0968 0156  TDPIPE - detected UnsignedFile.Multi.Generic (1)
04:00:28.0015 0156  [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
04:00:28.0031 0156  TDTCP ( UnsignedFile.Multi.Generic ) - warning
04:00:28.0031 0156  TDTCP - detected UnsignedFile.Multi.Generic (1)
04:00:28.0093 0156  [ 88155247177638048422893737429D9E ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
04:00:28.0312 0156  TermDD ( UnsignedFile.Multi.Generic ) - warning
04:00:28.0312 0156  TermDD - detected UnsignedFile.Multi.Generic (1)
04:00:28.0500 0156  [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr         C:\WINDOWS\System32\tlntsvr.exe
04:00:28.0531 0156  TlntSvr ( UnsignedFile.Multi.Generic ) - warning
04:00:28.0531 0156  TlntSvr - detected UnsignedFile.Multi.Generic (1)
04:00:28.0546 0156  TosIde - ok
04:00:28.0703 0156  [ 5F226C681049FB1DF1578AF32BB641F1 ] TPkd            C:\WINDOWS\system32\drivers\TPkd.sys
04:00:28.0750 0156  TPkd - ok
04:00:28.0828 0156  [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
04:00:28.0890 0156  Udfs ( UnsignedFile.Multi.Generic ) - warning
04:00:28.0890 0156  Udfs - detected UnsignedFile.Multi.Generic (1)
04:00:28.0906 0156  ultra - ok
04:00:29.0296 0156  [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
04:00:29.0500 0156  Update ( UnsignedFile.Multi.Generic ) - warning
04:00:29.0500 0156  Update - detected UnsignedFile.Multi.Generic (1)
04:00:29.0578 0156  [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS             C:\WINDOWS\System32\ups.exe
04:00:29.0593 0156  UPS ( UnsignedFile.Multi.Generic ) - warning
04:00:29.0593 0156  UPS - detected UnsignedFile.Multi.Generic (1)
04:00:29.0718 0156  [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
04:00:29.0750 0156  usbccgp ( UnsignedFile.Multi.Generic ) - warning
04:00:29.0750 0156  usbccgp - detected UnsignedFile.Multi.Generic (1)
04:00:29.0828 0156  [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
04:00:29.0875 0156  usbehci ( UnsignedFile.Multi.Generic ) - warning
04:00:29.0875 0156  usbehci - detected UnsignedFile.Multi.Generic (1)
04:00:29.0984 0156  [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
04:00:30.0062 0156  usbhub ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0062 0156  usbhub - detected UnsignedFile.Multi.Generic (1)
04:00:30.0109 0156  [ A717C8721046828520C9EDF31288FC00 ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
04:00:30.0265 0156  usbprint ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0265 0156  usbprint - detected UnsignedFile.Multi.Generic (1)
04:00:30.0312 0156  [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
04:00:30.0359 0156  usbscan ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0359 0156  usbscan - detected UnsignedFile.Multi.Generic (1)
04:00:30.0437 0156  [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
04:00:30.0453 0156  USBSTOR ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0453 0156  USBSTOR - detected UnsignedFile.Multi.Generic (1)
04:00:30.0515 0156  [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci         C:\WINDOWS\system32\DRIVERS\usbuhci.sys
04:00:30.0562 0156  usbuhci ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0562 0156  usbuhci - detected UnsignedFile.Multi.Generic (1)
04:00:30.0593 0156  [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
04:00:30.0625 0156  VgaSave ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0625 0156  VgaSave - detected UnsignedFile.Multi.Generic (1)
04:00:30.0640 0156  ViaIde - ok
04:00:30.0703 0156  [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
04:00:30.0718 0156  VolSnap ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0718 0156  VolSnap - detected UnsignedFile.Multi.Generic (1)
04:00:30.0921 0156  [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS             C:\WINDOWS\System32\vssvc.exe
04:00:30.0968 0156  VSS ( UnsignedFile.Multi.Generic ) - warning
04:00:30.0968 0156  VSS - detected UnsignedFile.Multi.Generic (1)
04:00:31.0015 0156  [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
04:00:31.0046 0156  Wanarp ( UnsignedFile.Multi.Generic ) - warning
04:00:31.0046 0156  Wanarp - detected UnsignedFile.Multi.Generic (1)
04:00:31.0062 0156  WDICA - ok
04:00:31.0125 0156  [ 6768ACF64B18196494413695F0C3A00F ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
04:00:31.0156 0156  wdmaud ( UnsignedFile.Multi.Generic ) - warning
04:00:31.0156 0156  wdmaud - detected UnsignedFile.Multi.Generic (1)
04:00:31.0234 0156  wltrysvc - ok
04:00:31.0281 0156  [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi         C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
04:00:31.0296 0156  WmiAcpi ( UnsignedFile.Multi.Generic ) - warning
04:00:31.0296 0156  WmiAcpi - detected UnsignedFile.Multi.Generic (1)
04:00:31.0515 0156  [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv        C:\WINDOWS\System32\wbem\wmiapsrv.exe
04:00:31.0546 0156  WmiApSrv ( UnsignedFile.Multi.Generic ) - warning
04:00:31.0546 0156  WmiApSrv - detected UnsignedFile.Multi.Generic (1)
04:00:32.0546 0156  [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc   C:\Program Files\Windows Media Player\WMPNetwk.exe
04:00:33.0078 0156  WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
04:00:33.0078 0156  WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
04:00:33.0171 0156  [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb          C:\WINDOWS\system32\DRIVERS\wpdusb.sys
04:00:33.0187 0156  WpdUsb ( UnsignedFile.Multi.Generic ) - warning
04:00:33.0187 0156  WpdUsb - detected UnsignedFile.Multi.Generic (1)
04:00:33.0328 0156  [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL         C:\WINDOWS\System32\drivers\ws2ifsl.sys
04:00:33.0375 0156  WS2IFSL ( UnsignedFile.Multi.Generic ) - warning
04:00:33.0375 0156  WS2IFSL - detected UnsignedFile.Multi.Generic (1)
04:00:33.0593 0156  [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf          C:\WINDOWS\system32\DRIVERS\WudfPf.sys
04:00:33.0656 0156  WudfPf ( UnsignedFile.Multi.Generic ) - warning
04:00:33.0656 0156  WudfPf - detected UnsignedFile.Multi.Generic (1)
04:00:33.0734 0156  [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd          C:\WINDOWS\system32\DRIVERS\wudfrd.sys
04:00:33.0781 0156  WudfRd ( UnsignedFile.Multi.Generic ) - warning
04:00:33.0781 0156  WudfRd - detected UnsignedFile.Multi.Generic (1)
04:00:33.0828 0156  ================ Scan global ===============================
04:00:33.0890 0156  [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
04:00:34.0125 0156  [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
04:00:34.0343 0156  [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
04:00:34.0437 0156  [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
04:00:34.0437 0156  [Global] - ok
04:00:34.0453 0156  ================ Scan MBR ==================================
04:00:34.0500 0156  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
04:00:36.0250 0156  \Device\Harddisk0\DR0 - ok
04:00:36.0296 0156  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR2
04:00:41.0156 0156  \Device\Harddisk1\DR2 - ok
04:00:41.0171 0156  ================ Scan VBR ==================================
04:00:41.0171 0156  [ 04E7ED7381F650DC0102AA36C0CE854B ] \Device\Harddisk0\DR0\Partition1
04:00:41.0203 0156  \Device\Harddisk0\DR0\Partition1 - ok
04:00:41.0203 0156  [ F039C9F26DE76C157E86F7332EA9F370 ] \Device\Harddisk1\DR2\Partition1
04:00:41.0203 0156  \Device\Harddisk1\DR2\Partition1 - ok
04:00:41.0218 0156  ============================================================
04:00:41.0218 0156  Scan finished
04:00:41.0218 0156  ============================================================
04:00:41.0328 1932  Detected object count: 157
04:00:41.0328 1932  Actual detected object count: 157
04:05:46.0421 1932  ACPI ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  ACPI ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  ACPIEC ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  ACPIEC ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  aec ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  aec ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  AegisP ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  AegisP ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  AFD ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  AFD ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  ALCXWDM ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  ALCXWDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  ALG ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  ALG ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0421 1932  AR5211 ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0421 1932  AR5211 ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  AsyncMac ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  AsyncMac ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  atapi ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  atapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  Atmarpc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  Atmarpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  audstub ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  audstub ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  BCM43XX ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  BCM43XX ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  Beep ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  Beep ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  cbidf2k ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  cbidf2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0437 1932  Cdaudio ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0437 1932  Cdaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  Cdfs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  Cdfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  Cdrom ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  Cdrom ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  cisvc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  cisvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  ClipSrv ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  ClipSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  CmBatt ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  CmBatt ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  Compbatt ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  Compbatt ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0453 1932  Disk ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0453 1932  Disk ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  dmboot ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  dmboot ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  dmio ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  dmio ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  dmload ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  dmload ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  DMusic ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  DMusic ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  dot4 ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  dot4 ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  Dot4Print ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  Dot4Print ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0468 1932  Dot4Scan ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0468 1932  Dot4Scan ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  dot4usb ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  dot4usb ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  drmkaud ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  drmkaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  Eventlog ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  Eventlog ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  Fastfat ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  Fastfat ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  Fdc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  Fdc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  Fips ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  Fips ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  Flpydisk ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  Flpydisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0484 1932  FltMgr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0484 1932  FltMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  Fs_Rec ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  Fs_Rec ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  Ftdisk ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  Ftdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  Gpc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  Gpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  HTTP ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  i8042prt ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  i8042prt ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  ialm ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  ialm ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  Imapi ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  Imapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0500 1932  ImapiService ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0500 1932  ImapiService ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  intelppm ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  intelppm ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  ip6fw ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  ip6fw ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  IpFilterDriver ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  IpFilterDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  IpInIp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  IpInIp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  IpNat ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  IpNat ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0515 1932  IPSec ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0515 1932  IPSec ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  IRENUM ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  IRENUM ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  isapnp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  isapnp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  Kbdclass ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  Kbdclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  kmixer ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  kmixer ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  KSecDD ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  KSecDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  LexBceS ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  LexBceS ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  mnmdd ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  mnmdd ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0531 1932  mnmsrvc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0531 1932  mnmsrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  Modem ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  Modem ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  Mouclass ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  Mouclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  MountMgr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  MountMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  MRxDAV ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  MRxDAV ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  MRxSmb ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  MRxSmb ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0546 1932  MSDTC ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0546 1932  MSDTC ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  Msfs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  Msfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  MSKSSRV ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  MSKSSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  MSPCLOCK ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  MSPCLOCK ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  MSPQM ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  MSPQM ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  mssmbios ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  mssmbios ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  Mup ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  Mup ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  NDIS ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  NDIS ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0562 1932  NdisTapi ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0562 1932  NdisTapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  Ndisuio ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  Ndisuio ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  NdisWan ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  NdisWan ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  NDProxy ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  NDProxy ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  NetBIOS ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  NetBIOS ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  NetBT ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  NetBT ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0578 1932  NetDDE ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0578 1932  NetDDE ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  NetDDEdsdm ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  NetDDEdsdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  Netlogon ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  Netlogon ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  Npfs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  Npfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  Ntfs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  Ntfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  NtLmSsp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  NtLmSsp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0593 1932  Null ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0593 1932  Null ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  NwlnkFlt ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  NwlnkFlt ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  NwlnkFwd ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  NwlnkFwd ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  Parport ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  Parport ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  PartMgr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  PartMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  ParVdm ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  ParVdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  PCI ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  PCI ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  PCIIde ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  PCIIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0609 1932  Pcmcia ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0609 1932  Pcmcia ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  PlugPlay ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  PlugPlay ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  PolicyAgent ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  PolicyAgent ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  PptpMiniport ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  PptpMiniport ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  Processor ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  Processor ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  ProtectedStorage ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  ProtectedStorage ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0625 1932  PSched ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0625 1932  PSched ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  Ptilink ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  Ptilink ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  RasAcd ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  RasAcd ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  Rasl2tp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  Rasl2tp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  RasPppoe ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  RasPppoe ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  Raspti ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  Raspti ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  Rdbss ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  Rdbss ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  RDPCDD ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  RDPCDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0640 1932  rdpdr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0640 1932  rdpdr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  RDPWD ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  RDPWD ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  RDSessMgr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  RDSessMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  redbook ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  redbook ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  RpcLocator ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  RpcLocator ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  RSVP ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  RSVP ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  RTL8023xp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  RTL8023xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  rtl8139 ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  rtl8139 ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0656 1932  SamSs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0656 1932  SamSs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  SCardSvr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  SCardSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  Secdrv ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  Secdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  Serial ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  Serial ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  Sfloppy ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  Sfloppy ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  splitter ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  splitter ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  Spooler ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  Spooler ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0671 1932  sr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0671 1932  sr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  Srv ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  Srv ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  swenum ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  swenum ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  swmidi ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  swmidi ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  SynTP ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  SynTP ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0687 1932  sysaudio ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0687 1932  sysaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  SysmonLog ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  SysmonLog ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  Tcpip ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  Tcpip ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  TDPIPE ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  TDPIPE ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  TDTCP ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  TDTCP ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  TermDD ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  TermDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0703 1932  TlntSvr ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0703 1932  TlntSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  Udfs ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  Udfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  Update ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  Update ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  UPS ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  UPS ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  usbccgp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  usbccgp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  usbehci ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  usbehci ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  usbhub ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  usbhub ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  usbprint ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  usbprint ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0718 1932  usbscan ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0718 1932  usbscan ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  USBSTOR ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  USBSTOR ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  usbuhci ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  usbuhci ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  VgaSave ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  VgaSave ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  VolSnap ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  VolSnap ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  VSS ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  VSS ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  Wanarp ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  Wanarp ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  wdmaud ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  wdmaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0734 1932  WmiAcpi ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0734 1932  WmiAcpi ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WmiApSrv ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WmiApSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WpdUsb ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WpdUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WS2IFSL ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WS2IFSL ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WudfPf ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WudfPf ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:05:46.0750 1932  WudfRd ( UnsignedFile.Multi.Generic ) - skipped by user
04:05:46.0750 1932  WudfRd ( UnsignedFile.Multi.Generic ) - User select action: Skip
04:08:30.0765 0900  Deinitialize success
 



#5 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 05:52 AM

Here is the AdwCleaner log:

 

# AdwCleaner v1.801 - Logfile created 03/29/2013 at 04:44:40

# Updated 14/08/2012 by Xplode

# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)

# User : Acer User - ACER-Q6HGWEOL3C

# Boot Mode : Normal

# Running from : F:\adwcleaner.exe

# Option [Search]

 

***** [Services] *****

 

***** [Files / Folders] *****

 

***** [Registry] *****

 

***** [Registre - GUID] *****

 

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v3.6.17 (en-US)

Profile name : default

File : C:\Documents and Settings\Acer User\Application Data\Mozilla\Firefox\Profiles\h9wyamtn.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [6295 octets] - [23/08/2012 04:09:34]

AdwCleaner[R2].txt - [6355 octets] - [23/08/2012 04:12:15]

AdwCleaner[S1].txt - [6590 octets] - [23/08/2012 04:12:44]

AdwCleaner[R3].txt - [1048 octets] - [25/08/2012 17:00:34]

AdwCleaner[R4].txt - [1108 octets] - [25/08/2012 17:01:07]

AdwCleaner[R5].txt - [1169 octets] - [25/03/2013 02:34:26]

AdwCleaner[R6].txt - [1100 octets] - [29/03/2013 04:44:40]

########## EOF - C:\AdwCleaner[R6].txt - [1228 octets] ##########



#6 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 07:02 AM

Here are the results log of the Farbar Service Scanner:

 

Farbar Service Scanner Version: 03-03-2013
Ran by Acer User (administrator) on 29-03-2013 at 05:43:25
Running from "F:\"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============
Dnscache Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Dnscache. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Dnscache. The value does not exist.
The ServiceDll of Dnscache service is OK.

Dhcp Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Dhcp. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Dhcp. The value does not exist.
The ServiceDll of Dhcp service is OK.


Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is unreachable
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo IP returned error. Yahoo IP is unreachable
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.

netman Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of netman. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of netman. The value does not exist.
The ServiceDll of netman service is OK.

winmgmt Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of winmgmt. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of winmgmt. The value does not exist.
The ServiceDll of winmgmt service is OK.


Firewall Disabled Policy:
==================


System Restore:
============
Srservice Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Srservice. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Srservice. The value does not exist.
The ServiceDll of Srservice: "C:\WINDOWS\system32\srsvc.dll".


System Restore Disabled Policy:
========================


Security Center:
============
wscsvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of wscsvc. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of wscsvc. The value does not exist.
The ServiceDll of wscsvc service is OK.

winmgmt Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of winmgmt. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of winmgmt. The value does not exist.
The ServiceDll of winmgmt service is OK.


Windows Update:
============
wuauserv Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of wuauserv. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of wuauserv. The value does not exist.
The ServiceDll of wuauserv: "C:\WINDOWS\system32\wuauserv.dll".

BITS Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of BITS. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of BITS. The value does not exist.
The ServiceDll of BITS: "C:\WINDOWS\system32\qmgr.dll".

EventSystem Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of EventSystem. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of EventSystem. The value does not exist.
The ServiceDll of EventSystem: "C:\WINDOWS\system32\es.dll".

cryptsvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of cryptsvc. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of cryptsvc. The value does not exist.
The ServiceDll of cryptsvc: "%SystemRoot%\System32\cryptsvc.dll".


Windows Autoupdate Disabled Policy:
============================

RpcSs Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of RpcSs. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of RpcSs. The value does not exist.
The ServiceDll of RpcSs service is OK.


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll
[2004-10-26 20:13] - [2008-04-13 19:12] - 0006656 ____A (Microsoft Corporation) 35321FB577CDC98CE3EB3A3EB9E4610A

C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe
[2001-08-23 07:00] - [2008-04-13 19:12] - 0039424 ____A (Microsoft Corporation) 0F6FDB0BF52FF2B715A1411729E550EC

C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe
[2001-08-23 07:00] - [2009-02-06 06:11] - 0110592 ____A (Microsoft Corporation) 65DF52F5B8B6E9BBD183505225C37315


Extra List:
=======
AegisP(8) Avgfwfd(9) Avgtdix(10) DigiNet(11) Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4)
0x0B0000000500000001000000020000000300000004000000090000000A0000000600000007000000080000000B000000
IpSec Tag value is correct.

**** End of log ****



#7 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 07:14 AM

Finally, a copy of the MiniToolBox results log:

 

MiniToolBox by Farbar  Version:05-03-2013
Ran by Acer User (administrator) on 29-03-2013 at 05:47:02
Running from "F:\"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration

 

Could not flush the DNS Resolver Cache: Function failed during execution.

 


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1       localhost

========================= IP Configuration: ================================


WARNING: Could not obtain host information from machine: [ACER-Q6HGWEOL3C]. Some commands may not be available.
The RPC server is unavailable.

 

# ----------------------------------
# Interface IP Configuration        
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Wireless Network Connection"

set address name="Wireless Network Connection" source=dhcp
set dns name="Wireless Network Connection" source=dhcp register=PRIMARY
set wins name="Wireless Network Connection" source=dhcp

# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp


popd
# End of interface IP configuration

 


Windows IP Configuration

 

        Host Name . . . . . . . . . . . . : acer-q6hgweol3c

        Primary Dns Suffix  . . . . . . . :

        Node Type . . . . . . . . . . . . : Broadcast

        IP Routing Enabled. . . . . . . . : No

        WINS Proxy Enabled. . . . . . . . : No

 

Ethernet adapter Wireless Network Connection:

 

        Media State . . . . . . . . . . . : Media disconnected

        Description . . . . . . . . . . . : Broadcom 802.11g Network Adapter

        Physical Address. . . . . . . . . : 00-16-CE-0C-13-D9

 

Ethernet adapter Local Area Connection:

 

        Media State . . . . . . . . . . . : Media disconnected

        Description . . . . . . . . . . . : Realtek RTL8139/810x Family Fast Ethernet NIC

        Physical Address. . . . . . . . . : 00-0A-E4-F4-EE-6D

Server:  UnKnown
Address:  127.0.0.1

Ping request could not find host google.com. Please check the name and try again.

Server:  UnKnown
Address:  127.0.0.1

Ping request could not find host yahoo.com. Please check the name and try again.

 

Pinging 127.0.0.1 with 32 bytes of data:

 

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

 

Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 16 ce 0c 13 d9 ...... Broadcom 802.11g Network Adapter - Packet Scheduler Miniport
0x3 ...00 0a e4 f4 ee 6d ...... Realtek RTL8139 Family PCI Fast Ethernet NIC - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1   1
  255.255.255.255  255.255.255.255  255.255.255.255               3   1
  255.255.255.255  255.255.255.255  255.255.255.255               2   1
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (03/26/2013 08:32:08 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:32:04 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:31:51 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:14:15 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:13:57 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:10:20 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:10:17 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:10:15 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:10:12 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.

Error: (03/26/2013 08:10:10 AM) (Source: EventSystem) (User: )
Description: The COM+ Event System detected a bad return code during its internal processing.  HRESULT was 800706BA from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.  Please contact Microsoft Product Support Services to report this error.


System errors:
=============
Error: (03/26/2013 08:39:25 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 08:39:20 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 08:39:15 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 08:39:10 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 07:44:14 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 07:44:09 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 07:44:04 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 07:43:59 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 07:43:54 AM) (Source: 0) (User: )
Description: \Device\ACPIEC

Error: (03/26/2013 00:13:22 AM) (Source: 0) (User: )
Description: \Device\ACPIEC


Microsoft Office Sessions:
=========================

=========================== Installed Programs ============================

A+ Spanish
Adobe AIR (Version: 2.5.1.17730)
Adobe Community Help (Version: 3.0.0)
Adobe Community Help (Version: 3.0.0.400)
Adobe Flash Player 10 ActiveX (Version: 10.2.159.1)
Adobe Flash Player 10 Plugin (Version: 10.3.181.14)
Adobe Media Player (Version: 1.8)
Adobe Photoshop CS5 (Version: 12.0)
Adobe Reader X (10.0.1) (Version: 10.0.1)
AVG 2011 (Version: 10.0.1424)
AVG 2011 (Version: 10.0.2437)
Broadcom 802.11 Network Adapter
Canon MP280 series MP Drivers
CyberLink PowerDirector (Version: 8.0.2013)
Intel® Graphics Media Accelerator Driver for Mobile (Version: 6.14.10.4384)
Interlok driver setup x32 (Version: 5.8.5)
J2SE Runtime Environment 5.0 (Version: 1.5.0)
Lexmark Supplies Monitor
Lexmark Z23-Z33
Malwarebytes Anti-Malware version 1.62.0.1300 (Version: 1.62.0.1300)
McAfee Security Scan Plus (Version: 2.0.189.1)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Office 2007 Primary Interop Assemblies (Version: 12.0.4518.1014)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Software Update for Web Folders  (English) 12 (Version: 12.0.6612.1000)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio 2005 Tools for Office Runtime (Version: 8.0.60940.0)
Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC90_ATL_x86 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (Version: 1.00.0000)
Mozilla Firefox (3.6.17) (Version: 3.6.17 (en-US))
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
PDF Settings CS5 (Version: 10.0)
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver (Version: 1.60)
SmartSound Quicktracks Plugin (Version: 3.0.3.0)
Synaptics Pointing Device Driver (Version: 7.13.2.0)
The Print Shop® 6.0 Deluxe
Ulead Photo Express 4.0 My Custom Edition
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft Office Outlook 2007 (KB2596598) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2687310) 32-Bit Edition
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2607712) (Version: 1)
Update for Windows XP (KB2616676) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
WebFldrs XP (Version: 9.50.5318)
Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3 (Version: 20080414.031525)
YouTube Downloader 2.7.2

========================= Memory info: ===================================

Percentage of memory in use: 27%
Total physical RAM: 1526.42 MB
Available physical RAM: 1111.15 MB
Total Pagefile: 3524.23 MB
Available Pagefile: 3211.48 MB
Total Virtual: 2047.88 MB
Available Virtual: 1996.17 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:74.52 GB) (Free:47.68 GB) NTFS
3 Drive f: (USB20FD) (Removable) (Total:7.45 GB) (Free:0.91 GB) FAT32

========================= Users: ========================================

User accounts for \\

Acer User                Administrator            ASPNET                  
Guest                    HelpAssistant            SUPPORT_388945a0        

========================= Minidump Files ==================================

C:\WINDOWS\Minidump\Mini081212-01.dmp
C:\WINDOWS\Minidump\Mini081412-01.dmp
C:\WINDOWS\Minidump\Mini081412-02.dmp
C:\WINDOWS\Minidump\Mini081512-01.dmp

**** End of log ****



#8 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:09:03 AM

Posted 29 March 2013 - 10:26 AM

Hi

It seems that many of the services have been removed - probably due to current or past malware.

Please do the following next:

:step1:

  • Download the file here to your desktop.
  • Double click it
  • If asked if you wish to open the file click run.
  • If asked if you wish to merge it into the registry click yes.

 

:step2:

Do the same as :step1: but for the below file next:
here


:step3:

Restart the computer


:step4:

Please rerun Farbar Service Scanner on the computer with the issue.

  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

:step5:

How is the computer running now?


Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#9 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 03:25 PM

Completed Step 1(Downloaded RpcSs - ran and clicked yes) and Step 2 (Downloaded wuauserv) then restarted. Took 7.5 minutes to reboot. The start button and taskbar returned. My AVG Identity Protection detected a threat - File c:\WINDOWS\SYSTEM32|LEXPPS.EXE - Threat Unknown - 2 choices - move to vault or allow - cannot exit.

I had to temporarily disable AVG before the laptop would read the flashdrive with Farbar Service Scanner on it. I still cannot save it to the desktop.

 

Here is the Farbar new log: 

 

Farbar Service Scanner Version: 03-03-2013
Ran by Acer User (administrator) on 29-03-2013 at 13:57:54
Running from "F:\"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============
Dnscache Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Dnscache. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Dnscache. The value does not exist.
The ServiceDll of Dnscache service is OK.

Dhcp Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Dhcp. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Dhcp. The value does not exist.
The ServiceDll of Dhcp service is OK.


Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is unreachable
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo IP returned error. Yahoo IP is unreachable
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open sharedaccess registry key. The service key does not exist.

netman Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of netman. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of netman. The value does not exist.
The ServiceDll of netman service is OK.

winmgmt Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of winmgmt. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of winmgmt. The value does not exist.
The ServiceDll of winmgmt service is OK.


Firewall Disabled Policy:
==================


System Restore:
============
Srservice Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of Srservice. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of Srservice. The value does not exist.
The ServiceDll of Srservice: "C:\WINDOWS\system32\srsvc.dll".


System Restore Disabled Policy:
========================


Security Center:
============
wscsvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of wscsvc. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of wscsvc. The value does not exist.
The ServiceDll of wscsvc service is OK.

winmgmt Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of winmgmt. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of winmgmt. The value does not exist.
The ServiceDll of winmgmt service is OK.


Windows Update:
============
BITS Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of BITS. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of BITS. The value does not exist.
The ServiceDll of BITS: "C:\WINDOWS\system32\qmgr.dll".

EventSystem Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of EventSystem. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of EventSystem. The value does not exist.
The ServiceDll of EventSystem: "C:\WINDOWS\system32\es.dll".

cryptsvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of cryptsvc. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of cryptsvc. The value does not exist.
The ServiceDll of cryptsvc: "%SystemRoot%\System32\cryptsvc.dll".


Windows Autoupdate Disabled Policy:
============================


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll
[2004-10-26 20:13] - [2008-04-13 19:12] - 0006656 ____A (Microsoft Corporation) 35321FB577CDC98CE3EB3A3EB9E4610A

C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe
[2001-08-23 07:00] - [2008-04-13 19:12] - 0039424 ____A (Microsoft Corporation) 0F6FDB0BF52FF2B715A1411729E550EC

C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe
[2001-08-23 07:00] - [2009-02-06 06:11] - 0110592 ____A (Microsoft Corporation) 65DF52F5B8B6E9BBD183505225C37315


Extra List:
=======
AegisP(8) Avgfwfd(9) Avgtdix(10) DigiNet(11) Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4)
0x0B0000000500000001000000020000000300000004000000090000000A0000000600000007000000080000000B000000
IpSec Tag value is correct.

**** End of log ****

 



#10 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:09:03 AM

Posted 29 March 2013 - 06:28 PM

Hi
 
C:\WINDOWS\SYSTEM32\LEXPPS.EXE is fine - see here for more info. It's likely a false positive detection.
 
Please do the following next:
 
:step1:
 
Please download Rkill by Grinler from Link 1 below and save it to your desktop.

  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista, Windows 7 or 8, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and use the one provided in Link 3.
  • If the tool does not run from any of the links provided, please let me know.
  • Do not reboot the computer - otherwise you may need to run the application again.
  • A log should either open, or be saved to your desktop (probably named rkill.txt) - please post this in your next reply.

Edited by dev00790, 29 March 2013 - 06:34 PM.

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#11 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 29 March 2013 - 09:08 PM

Good evening Dev,

 

I ran the Rkill and the log is below. I read your instructions so I want you to be aware that before I could run the Rkill download from my flashdrive, I had to temporarily disable the AVG again. My laptop will not read the drive until it is disabled.  

 

The Rkill scan log is lengthy:

 

Rkill 2.4.7 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 03/29/2013 06:24:41 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * C:\WINDOWS\system32\LEXBCES.EXE (PID: 1708) [WD-HEUR]
 * C:\WINDOWS\system32\LEXPPS.EXE (PID: 1760) [WD-HEUR]
 * C:\WINDOWS\System32\wltrysvc.exe (PID: 200) [WD-HEUR]
 * C:\WINDOWS\SOUNDMAN.EXE (PID: 2168) [WD-HEUR]
 * C:\WINDOWS\System32\igfxtray.exe (PID: 2220) [WD-HEUR]
 * C:\WINDOWS\System32\WLTRAY.exe (PID: 2252) [WD-HEUR]
 * C:\WINDOWS\system32\LXSUPMON.EXE (PID: 2512) [WD-HEUR]
 * C:\Program Files\Java\jre1.5.0\bin\jusched.exe (PID: 2528) [FI]

8 proccesses terminated!

Possibly Patched Files.

 * C:\WINDOWS\system32\services.exe
 * C:\WINDOWS\system32\lsass.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\spoolsv.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\ctfmon.exe

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * HTTPFilter [Missing Service]
 * SharedAccess [Missing Service]
 * Dot3svc [Missing Service]
 * EapHost [Missing Service]
 * hkmsvc [Missing Service]

 * Alerter [Missing ImagePath]
 * AppMgmt [Missing ImagePath]
 * AudioSrv [Missing ImagePath]
 * BITS [Missing ImagePath]
 * Browser [Missing ImagePath]
 * CryptSvc [Missing ImagePath]
 * Dhcp [Missing ImagePath]
 * dmserver [Missing ImagePath]
 * Dnscache [Missing ImagePath]
 * ERSvc [Missing ImagePath]
 * EventSystem [Missing ImagePath]
 * FastUserSwitchingCompatibility [Missing ImagePath]
 * helpsvc [Missing ImagePath]
 * HidServ [Missing ImagePath]
 * LanmanServer [Missing ImagePath]
 * lanmanworkstation [Missing ImagePath]
 * LmHosts [Missing ImagePath]
 * Messenger [Missing ImagePath]
 * Netman [Missing ImagePath]
 * Nla [Missing ImagePath]
 * NtmsSvc [Missing ImagePath]
 * RasAuto [Missing ImagePath]
 * RasMan [Missing ImagePath]
 * RemoteAccess [Missing ImagePath]
 * Schedule [Missing ImagePath]
 * seclogon [Missing ImagePath]
 * SENS [Missing ImagePath]
 * ShellHWDetection [Missing ImagePath]
 * srservice [Missing ImagePath]
 * SSDPSRV [Missing ImagePath]
 * stisvc [Missing ImagePath]
 * TapiSrv [Missing ImagePath]
 * Themes [Missing ImagePath]
 * TrkWks [Missing ImagePath]
 * upnphost [Missing ImagePath]
 * W32Time [Missing ImagePath]
 * WebClient [Missing ImagePath]
 * winmgmt [Missing ImagePath]
 * WmdmPmSN [Missing ImagePath]
 * wscsvc [Missing ImagePath]
 * WZCSVC [Missing ImagePath]
 * xmlprov [Missing ImagePath]
 * napagent [Missing ImagePath]

Searching for Missing Digital Signatures:

 * C:\WINDOWS\System32\appmgmts.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\appmgmts.dll : 167,936 : 08/04/2004 00:56 AM : 9c3c12975c97119412802b181fbeeffe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\appmgmts.dll : 167,936 : 04/13/2008 07:11 PM : d8849f77c0b66226335a59d26cb4edc6 [Pos Repl]

 * C:\WINDOWS\System32\browser.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\browser.dll : 77,312 : 08/04/2004 00:56 AM : e3cfccdda4edd1d0dc9168b2e18f27b8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\browser.dll : 77,824 : 04/13/2008 07:11 PM : a06ce3399d16db864f55faeb1f1927a9 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\4a0e4531b96faf560594eec84d879de6\sp3gdr\browser.dll : 78,336 : 07/06/2012 00:58 AM : cfd4e51402da9838b5a04ae680af54a0 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\4a0e4531b96faf560594eec84d879de6\sp3qfe\browser.dll : 78,336 : 07/06/2012 00:58 AM : fc6d1d80588d371f0321e15a75b2f8f2 [Pos Repl]

 * C:\WINDOWS\System32\clipsrv.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe : 33,280 : 08/04/2004 00:56 AM : c8dec22c4137d7a90f8bdf41ca4b82ae [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe : 33,280 : 04/13/2008 07:12 PM : 34cbe729f38138217f9c80212a2a0c82 [Pos Repl]

 * C:\WINDOWS\System32\comctl32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\comctl32.dll : 611,328 : 08/04/2004 00:56 AM : a77dfb85faee49d66c74da6024ebc69b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2296011$\comctl32.dll : 617,472 : 04/13/2008 07:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\comctl32.dll : 617,472 : 04/13/2008 07:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\comctl32.dll : 617,472 : 08/23/2010 07:12 AM : 93afb83fbc1f9443cac722fca63d73bf [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll : 921,088 : 08/23/2001 07:00 AM : aef3d788dbf40c7c4d204ea45eb0c505 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll : 1,050,624 : 08/04/2004 07:57 AM : 5af68a5e44734a082442668e9c787743 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll : 1,054,208 : 04/13/2008 07:12 PM : bd38d1ebe24a46bd3eda059560afba12 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll : 1,054,208 : 08/23/2010 07:12 AM : 736b12b725aeb2b07f0241a9f680cb10 [Pos Repl]

 * C:\WINDOWS\System32\comres.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\comres.dll : 792,064 : 08/04/2004 07:56 AM : 6728270cb7dbb776ed086f5ac4c82310 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\comres.dll : 792,064 : 04/13/2008 07:11 PM : 1280a158c722fa95a80fb7aebe78fa7d [Pos Repl]

 * C:\WINDOWS\System32\cryptsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll : 60,416 : 08/04/2004 07:56 AM : 10654f9ddcea9c46cfb77554231be73b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll : 62,464 : 04/13/2008 07:11 PM : 3d4e199942e29207970e04315d02ad3b [Pos Repl]

 * C:\WINDOWS\System32\csrss.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\csrss.exe : 6,144 : 08/04/2004 07:56 AM : f12b178b1678d778cfd3ff1fc38c71fb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\csrss.exe : 6,144 : 04/13/2008 07:12 PM : 44f275c64738ea2056e3d9580c23b60f [Pos Repl]

 * C:\WINDOWS\System32\ctfmon.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe : 15,360 : 08/04/2004 07:56 AM : 24232996a38c0b0cf151c2140ae29fc8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe : 15,360 : 04/13/2008 07:12 PM : 5f1d5f88303d4a4dbc8e5f97ba967cc3 [Pos Repl]

 * C:\WINDOWS\System32\d3d8.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d8.dll : 1,179,648 : 08/04/2004 07:56 AM : 42803ec60803c1a0754671e9183458f1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d8.dll : 1,179,648 : 04/13/2008 07:11 PM : f099b129022170f2df9e1c0185c9bcfb [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\d3d8.dll : 1,179,648 : 04/13/2008 07:11 PM : f099b129022170f2df9e1c0185c9bcfb [Pos Repl]

 * C:\WINDOWS\System32\d3d8thk.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d8thk.dll : 8,192 : 08/04/2004 07:56 AM : 8d9210e9858d525646251dfa1fe37ebe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d8thk.dll : 8,192 : 04/13/2008 07:11 PM : 31b067c412fa1a9bad3ca2a63d7da440 [Pos Repl]

 * C:\WINDOWS\System32\d3d9.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d9.dll : 1,689,088 : 08/04/2004 07:56 AM : d67bdbbda86cc9aeebbaf3217c1717d8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d9.dll : 1,689,088 : 04/13/2008 07:11 PM : 0607cbc6fa20114cb491efe4b2f9efad [Pos Repl]

 * C:\WINDOWS\System32\ddraw.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ddraw.dll : 266,240 : 08/04/2004 07:56 AM : 7ed462f353b3d915a418a689fa881f96 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ddraw.dll : 279,552 : 04/13/2008 07:11 PM : a340cd71eb535a3dd751b5f28723e50c [Pos Repl]

 * C:\WINDOWS\System32\dllhost.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe : 5,120 : 08/04/2004 07:56 AM : dd87db7387b9eb441c5674888a0d840c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dllhost.exe : 5,120 : 04/13/2008 07:12 PM : 0a9ba6af531afe7fa5e4fb973852d863 [Pos Repl]

 * C:\WINDOWS\System32\drivers\acpiec.sys [NoSig]

 * C:\WINDOWS\System32\drivers\acpi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\acpi.sys : 187,776 : 08/04/2004 07:07 AM : a10c7534f7223f4a73a948967d00e69b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\acpi.sys : 187,776 : 04/13/2008 01:36 PM : 8fd99680a539792a30e97944fdaecf17 [Pos Repl]

 * C:\WINDOWS\System32\drivers\aec.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\aec.sys : 142,464 : 08/04/2004 07:39 AM : 841f385c6cfaf66b58fbd898722bb4f0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\aec.sys : 142,592 : 04/13/2008 01:39 AM : 8bed39e3c35d6a489438b8141717a557 [Pos Repl]

 * C:\WINDOWS\System32\drivers\afd.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2503665\SP3QFE\afd.sys : 138,496 : 02/16/2011 00:25 AM : 8d499b1276012eb907e7a9e0f4d8fda4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\afd.sys : 138,496 : 10/16/2008 00:07 AM : 38d7b715504da4741df35e3594fe2099 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2592799\SP3QFE\afd.sys : 138,496 : 08/17/2011 00:41 AM : f6b7b1ecd7b41736bdb6ff4b092bcb79 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\afd.sys : 138,368 : 06/20/2008 00:44 AM : d99ddffb33deacdcf20717cb520379f6 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\afd.sys : 138,496 : 06/20/2008 00:40 AM : e3049b90fe06f3f740b7cfda44995e2c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\afd.sys : 138,496 : 06/20/2008 00:48 AM : d6ee6014241d034e63c49a50cb2b442a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956803\SP2QFE\afd.sys : 138,368 : 08/14/2008 00:48 AM : 6a0397376853e604de8e1e7a87fc08ac [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956803\SP3GDR\afd.sys : 138,496 : 08/14/2008 00:04 AM : 7e775010ef291da96ad17ca4b17137d7 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956803\SP3QFE\afd.sys : 138,496 : 08/14/2008 00:34 AM : 4d43e74f2a1239d53929b82600f1971c [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\afd.sys : 138,368 : 08/14/2008 07:51 AM : 55e6e1c51b6d30e54335750955453702 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2503665$\afd.sys : 138,496 : 10/16/2008 07:43 AM : 7618d5218f2a614672ec61a80d854a37 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2509553$\afd.sys : 138,496 : 08/14/2008 07:04 AM : 7e775010ef291da96ad17ca4b17137d7 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2592799$\afd.sys : 138,496 : 02/16/2011 07:22 AM : 355556d9e580915118cd7ef736653a89 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\afd.sys : 138,112 : 04/13/2008 02:19 PM : 322d0e36693d6e24a2398bee62a268cd [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\afd.sys : 138,496 : 08/04/2004 02:14 AM : 5ac495f4cb807b2b98ad2ad591e6d92e [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956803$\afd.sys : 138,496 : 06/20/2008 02:40 AM : e3049b90fe06f3f740b7cfda44995e2c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956803_0$\afd.sys : 138,368 : 06/20/2008 02:44 AM : 944ca435bfcfc82cc1ed9e3a7d731aa9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\afd.sys : 138,112 : 04/13/2008 02:19 PM : 322d0e36693d6e24a2398bee62a268cd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\afd.sys : 138,496 : 08/17/2011 02:49 AM : 1e44bc1e83d8fd2305f8d452db109cf9 [Pos Repl]

 * C:\WINDOWS\System32\drivers\agp440.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\agp440.sys : 42,368 : 08/04/2004 02:07 AM : 2c428fa0c3e3a01ed93c9b2a27d8d4bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\agp440.sys : 42,368 : 04/13/2008 01:36 PM : 08fd04aa961bdc77fb983f328334e3d7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\amdk6.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\amdk6.sys : 36,992 : 08/04/2004 02:59 AM : dad16a9d5c873e7219e6b43802ed316a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\amdk6.sys : 37,376 : 04/13/2008 01:31 PM : d7701d7e72243286cc88c9973d891057 [Pos Repl]

 * C:\WINDOWS\System32\drivers\amdk7.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\amdk7.sys : 37,376 : 08/04/2004 02:59 AM : 680ad1c1bb16239e28d8f33a54a7a3c7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\amdk7.sys : 37,760 : 04/13/2008 01:31 PM : 8fce268cdbdd83b23419d1f35f42c7b1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\arp1394.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\arp1394.sys : 60,800 : 08/04/2004 02:58 AM : f0d692b0bffb46e30eb3cea168bbc49f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\arp1394.sys : 60,800 : 04/13/2008 01:51 PM : b5b8a80875c1dededa8b02765642c32f [Pos Repl]

 * C:\WINDOWS\System32\drivers\asyncmac.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\asyncmac.sys : 14,336 : 08/04/2004 02:05 AM : 02000abf34af4c218c35d257024807d6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\asyncmac.sys : 14,336 : 04/13/2008 01:57 PM : b153affac761e7f5fcfa822b9c4e97bc [Pos Repl]

 * C:\WINDOWS\System32\drivers\atapi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\atapi.sys : 95,360 : 08/04/2004 02:59 AM : cdfe4411a69c224bd1d11b2da92dac51 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\atapi.sys : 96,512 : 04/13/2008 01:40 PM : 9f3a2f5aa6875c72bf062c712cfa2674 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys : 86,656 : 08/23/2001 00:00 AM : a64013e98426e1877cb653685c5c0009 [Pos Repl]

 * C:\WINDOWS\System32\drivers\audstub.sys [NoSig]

 * C:\WINDOWS\System32\drivers\battc.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\battc.sys : 14,080 : 08/17/2001 02:57 AM : ea22edadf90c0aba8319454b2a07b700 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\battc.sys : 14,208 : 04/13/2008 01:36 PM : 0d93976f7801b7fcd8135cc77257bbd0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\beep.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\beep.sys : 4,224 : 08/23/2001 01:00 AM : da1f27d85e0d1525f6621372e7b685e9 [Pos Repl]

 * C:\WINDOWS\System32\drivers\bridge.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\bridge.sys : 71,552 : 08/04/2004 02:59 AM : e4e6a0922e3d983728c9ad4e8d466954 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\bridge.sys : 71,552 : 04/13/2008 01:53 PM : f934d1b230f84e1d19dd00ac5a7a83ed [Pos Repl]

 * C:\WINDOWS\System32\drivers\bthport.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys : 272,128 : 06/13/2008 00:52 AM : 956e7e86bb00e792c8ff3afb2f8e460d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys : 272,128 : 06/13/2008 00:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys : 272,128 : 06/13/2008 00:27 AM : 51d05d5a8a7d93ab0b1a8d6a38db3ca4 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\bthport.sys : 272,128 : 06/13/2008 02:10 AM : 95ef6f3f386d93ee1e4d9ca45a50252a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951376-v2$\bthport.sys : 273,024 : 04/13/2008 01:46 PM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951376-v2_0$\bthport.sys : 274,304 : 08/04/2004 01:10 AM : 30b76ec553b202890e90a93a4e1a27b5 [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\bthport.sys : 272,128 : 06/13/2008 01:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\bthport.sys : 273,024 : 04/13/2008 01:46 PM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\bthport.sys : 272,128 : 06/13/2008 01:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]

 * C:\WINDOWS\System32\drivers\cbidf2k.sys [NoSig]

 * C:\WINDOWS\System32\drivers\cdaudio.sys [NoSig]

 * C:\WINDOWS\System32\drivers\cdfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cdfs.sys : 63,744 : 08/04/2004 01:14 AM : cd7d5152df32b47f4e36f710b35aae02 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cdfs.sys : 63,744 : 04/13/2008 02:14 PM : c885b02847f5d2fd45a24e219ed93b32 [Pos Repl]

 * C:\WINDOWS\System32\drivers\cdrom.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys : 49,536 : 08/04/2004 01:59 AM : af9c19b3100fe010496b1a27181fbf72 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cdrom.sys : 62,976 : 04/13/2008 01:40 PM : 1f4260cc5b42272d71f79e570a27a4fe [Pos Repl]

 * C:\WINDOWS\System32\drivers\classpnp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\classpnp.sys : 49,664 : 08/04/2004 01:14 AM : d86173b401470f06d9810f7962969ddf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\classpnp.sys : 49,536 : 04/13/2008 02:16 PM : fe47dd8fe6d7768ff94ebec6c74b2719 [Pos Repl]

 * C:\WINDOWS\System32\drivers\CmBatt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cmbatt.sys : 14,080 : 08/04/2004 01:07 AM : 4266be808f85826aedf3c64c1e240203 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cmbatt.sys : 13,952 : 04/13/2008 01:36 PM : 0f6c187d38d98f8df904589a5f94d411 [Pos Repl]

 * C:\WINDOWS\System32\drivers\compbatt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\compbatt.sys : 9,344 : 08/17/2001 01:58 AM : df1b1a24bf52d0ebc01ed4ece8979f50 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\compbatt.sys : 10,240 : 04/13/2008 01:36 PM : 6e4c9f21f0fae8940661144f41b13203 [Pos Repl]

 * C:\WINDOWS\System32\drivers\cpqdap01.sys [NoSig]

 * C:\WINDOWS\System32\drivers\crusoe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\crusoe.sys : 36,480 : 08/04/2004 01:59 AM : 6af1684ccaac3f7ef4ee9ba65eb0677a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\crusoe.sys : 36,736 : 04/13/2008 01:31 PM : f50d9bdbb25cce075e514dc07472a22f [Pos Repl]

 * C:\WINDOWS\System32\drivers\diskdump.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\diskdump.sys : 14,208 : 08/04/2004 01:59 AM : d16c81677a9be399c63cd2ea486472a5 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\diskdump.sys : 14,208 : 04/13/2008 01:40 PM : e65e2353a5d74ea89971cb918eeeb2f6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\disk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\disk.sys : 36,352 : 08/04/2004 01:59 AM : 00ca44e4534865f8a3b64f7c0984bff0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\disk.sys : 36,352 : 04/13/2008 01:40 PM : 044452051f3e02e7963599fc8f4f3e25 [Pos Repl]

 * C:\WINDOWS\System32\drivers\dmboot.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmboot.sys : 799,744 : 08/04/2004 01:07 AM : c0fbb516e06e243f0cf31f597e7ebf7d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmboot.sys : 799,744 : 04/13/2008 01:44 PM : d992fe1274bde0f84ad826acae022a41 [Pos Repl]

 * C:\WINDOWS\System32\drivers\dmio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmio.sys : 153,344 : 08/04/2004 01:07 AM : f5e7b358a732d09f4bcf2824b88b9e28 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmio.sys : 153,344 : 04/13/2008 01:44 PM : 7c824cf7bbde77d95c08005717a95f6f [Pos Repl]

 * C:\WINDOWS\System32\drivers\dmload.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dmload.sys : 5,888 : 08/23/2001 01:00 AM : e9317282a63ca4d188c0df5e09c6ac5f [Pos Repl]

 * C:\WINDOWS\System32\drivers\DMusic.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmusic.sys : 52,864 : 08/04/2004 01:07 AM : a6f881284ac1150e37d9ae47ff601267 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmusic.sys : 52,864 : 04/13/2008 01:45 PM : 8a208dfcf89792a484e76c40e5f50b45 [Pos Repl]

 * C:\WINDOWS\System32\drivers\drmkaud.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\drmkaud.sys : 2,944 : 08/04/2004 01:07 AM : 1ed4dbbae9f5d558dbba4cc450e3eb2e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\drmkaud.sys : 2,944 : 04/13/2008 01:45 PM : 8f5fcff8e8848afac920905fbd9d33c8 [Pos Repl]

 * C:\WINDOWS\System32\drivers\drmk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\drmk.sys : 60,288 : 08/04/2004 01:07 AM : ff86422268de771d571e123eb7092c6a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\drmk.sys : 60,160 : 04/13/2008 01:45 PM : 6cb08593487f5701d2d2254e693eafce [Pos Repl]

 * C:\WINDOWS\System32\drivers\dxapi.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dxapi.sys : 10,496 : 08/23/2001 01:00 AM : fe97d0343acfdebdd578fc67cc91fa87 [Pos Repl]

 * C:\WINDOWS\System32\drivers\dxg.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dxg.sys : 71,040 : 08/04/2004 01:00 AM : d3dac8432110aad0b02a58b4459ab835 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dxg.sys : 71,168 : 04/13/2008 01:38 PM : ac7280566a7bb85cb3291f04ddc1198e [Pos Repl]

 * C:\WINDOWS\System32\drivers\dxgthk.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dxgthk.sys : 3,328 : 08/23/2001 01:00 AM : a73f5d6705b1d820c19b18782e176efd [Pos Repl]

 * C:\WINDOWS\System32\drivers\fastfat.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fastfat.sys : 143,360 : 08/04/2004 01:14 AM : 3117f595e9615e04f05a54fc15a03b20 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fastfat.sys : 143,744 : 04/13/2008 02:14 PM : 38d332a6d56af32635675f132548343e [Pos Repl]

 * C:\WINDOWS\System32\drivers\fdc.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fdc.sys : 27,392 : 08/04/2004 01:59 AM : ced2e8396a8838e59d8fd529c680e02c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fdc.sys : 27,392 : 04/13/2008 01:40 PM : 92cdd60b6730b9f50f6a1a0c1f8cdc81 [Pos Repl]

 * C:\WINDOWS\System32\drivers\fips.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fips.sys : 34,944 : 08/23/2001 01:00 AM : e153ab8a11de5452bcf5ac7652dbf3ed [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fips.sys : 44,544 : 04/13/2008 01:33 PM : d45926117eb9fa946a6af572fbe1caa3 [Pos Repl]

 * C:\WINDOWS\System32\drivers\flpydisk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\flpydisk.sys : 20,480 : 08/04/2004 01:59 AM : 0dd1de43115b93f4d85e889d7a86f548 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\flpydisk.sys : 20,480 : 04/13/2008 01:40 PM : 9d27e7b80bfcdf1cdd9b555862d5e7f0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\fltMgr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fltmgr.sys : 124,800 : 08/04/2004 01:01 AM : 157754f0df355a9e0a6f54721914f9c6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fltmgr.sys : 129,792 : 04/13/2008 01:32 PM : b2cf4b0786f8212cb92ed2b50c6db6b0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\fs_rec.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\fs_rec.sys : 7,936 : 08/23/2001 01:00 AM : 3e1e2bd4f39b0e2b7dc4f4d2bcc2779a [Pos Repl]

 * C:\WINDOWS\System32\drivers\fsvga.sys [NoSig]

 * C:\WINDOWS\System32\drivers\ftdisk.sys [NoSig]

 * C:\WINDOWS\System32\drivers\hidclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hidclass.sys : 36,224 : 08/04/2004 01:08 AM : 378055ab8dda86228683c697c4e11685 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hidclass.sys : 36,864 : 04/13/2008 01:45 PM : 1af592532532a402ed7c060f6954004f [Pos Repl]

 * C:\WINDOWS\System32\drivers\hidparse.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hidparse.sys : 24,960 : 08/04/2004 01:08 AM : 5fff41cd5108e9051d255c37825af697 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hidparse.sys : 24,960 : 04/13/2008 01:45 PM : 96eccf28fdbf1b2cc12725818a63628d [Pos Repl]

 * C:\WINDOWS\System32\drivers\http.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB970430\SP3QFE\http.sys : 265,728 : 10/20/2009 00:21 AM : 937031c085718c1c04a9c0864625ec6b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\http.sys : 263,040 : 08/04/2004 01:00 AM : c19b522a9ae0bbc3293397f3055e80a1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB970430$\http.sys : 264,832 : 04/13/2008 01:53 PM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\http.sys : 265,728 : 10/20/2009 01:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\http.sys : 264,832 : 04/13/2008 01:53 PM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\http.sys : 265,728 : 10/20/2009 01:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]

 * C:\WINDOWS\System32\drivers\i8042prt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\i8042prt.sys : 52,736 : 08/04/2004 01:14 AM : 5502b58eef7486ee6f93f3f164dcb808 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\i8042prt.sys : 52,480 : 04/13/2008 02:18 PM : 4a0b06aa8943c1e332520f7440c0aa30 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\i8042prt.sys : 50,944 : 08/23/2001 00:00 AM : 54ae656490b33f84b4417194aa127b25 [Pos Repl]

 * C:\WINDOWS\System32\drivers\imapi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\imapi.sys : 41,856 : 08/04/2004 01:00 AM : f8aa320c6a0409c0380e5d8a99d76ec6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\imapi.sys : 42,112 : 04/13/2008 01:40 PM : 083a052659f5310dd8b6a6cb05edcf8e [Pos Repl]

 * C:\WINDOWS\System32\drivers\intelppm.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\intelppm.sys : 36,096 : 08/04/2004 01:59 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\intelppm.sys : 36,352 : 04/13/2008 01:31 PM : 8c953733d8f36eb2133f5bb58808b66b [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\i386\intelppm.sys : 36,096 : 08/04/2004 00:59 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ip6fw.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ip6fw.sys : 29,056 : 08/04/2004 01:00 AM : 4448006b6bc60e6c027932cfc38d6855 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ip6fw.sys : 36,608 : 04/13/2008 01:53 PM : 3bb22519a194418d5fec05d800a19ad0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ipfltdrv.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ipfltdrv.sys : 32,896 : 08/23/2001 01:00 AM : 731f22ba402ee4b62748adaf6363c182 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ipinip.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipinip.sys : 20,992 : 08/04/2004 01:04 AM : e1ec7f5da720b640cd8fb8424f1b14bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipinip.sys : 20,864 : 04/13/2008 01:57 PM : b87ab476dcf76e72010632b5550955f5 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ipnat.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipnat.sys : 134,912 : 08/04/2004 01:04 AM : b5a8e215ac29d24d60b4d1250ef05ace [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipnat.sys : 152,832 : 04/13/2008 01:57 PM : cc748ea12c6effde940ee98098bf96bb [Pos Repl]

 * C:\WINDOWS\System32\drivers\ipsec.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipsec.sys : 74,752 : 08/04/2004 01:14 AM : 64537aa5c003a6afeee1df819062d0d1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipsec.sys : 75,264 : 04/13/2008 02:19 PM : 23c74d75e36e7158768dd63d92789a91 [Pos Repl]

 * C:\WINDOWS\System32\drivers\irenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\irenum.sys : 11,264 : 08/04/2004 01:00 AM : 50708daa1b1cbb7d6ac1cf8f56a24410 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\irenum.sys : 11,264 : 04/13/2008 01:54 PM : c93c9ff7b04d772627a3646d89f7bf89 [Pos Repl]

 * C:\WINDOWS\System32\drivers\isapnp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys : 35,840 : 08/17/2001 02:58 PM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\isapnp.sys : 37,248 : 04/13/2008 01:36 PM : 05a299ec56e52649b1cf2fc52d20f2d7 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\isapnp.sys : 35,840 : 08/23/2001 00:00 AM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]

 * C:\WINDOWS\System32\drivers\kbdclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\kbdclass.sys : 24,576 : 08/04/2004 02:58 AM : ebdee8a2ee5393890a1acee971c4c246 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\kbdclass.sys : 24,576 : 04/13/2008 01:39 PM : 463c1ec80cd17420a542b7f36a36f128 [Pos Repl]

 * C:\WINDOWS\System32\drivers\kmixer.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\kmixer.sys : 171,776 : 08/04/2004 02:07 AM : d93cad07c5683db066b0b2d2d3790ead [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\kmixer.sys : 172,416 : 04/13/2008 01:45 PM : 692bcf44383d056aed41b045a323d378 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ksecdd.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\ksecdd.sys : 92,544 : 06/22/2009 00:35 AM : 1be7cc2535d760ae4d481576eb789f24 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3GDR\ksecdd.sys : 92,928 : 06/24/2009 00:18 AM : b467646c54cc746128904e1654c750c1 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\ksecdd.sys : 92,928 : 06/24/2009 00:28 AM : c6ebf1d6ad71df30db49b8d3287e1368 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ksecdd.sys : 92,544 : 06/22/2009 02:34 AM : 674d3e5a593475915dc6643317192403 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389$\ksecdd.sys : 92,288 : 04/13/2008 01:31 PM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389_0$\ksecdd.sys : 92,032 : 08/04/2004 01:59 AM : eb7ffe87fd367ea8fca0506f74a87fbb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ksecdd.sys : 92,288 : 04/13/2008 01:31 PM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ksecdd.sys : 92,928 : 06/24/2009 01:18 AM : b467646c54cc746128904e1654c750c1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ks.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ks.sys : 140,928 : 08/04/2004 01:15 AM : b9540e258f952650de8dec68719a5c97 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ks.sys : 141,056 : 04/13/2008 02:16 PM : 0753515f78df7f271a5e61c20bcd36a1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\mcd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\mcd.sys : 7,680 : 08/23/2001 02:00 AM : d1f8be91ed4ddb671d42e473e3fe71ab [Pos Repl]

 * C:\WINDOWS\System32\drivers\mf.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mf.sys : 63,744 : 08/04/2004 01:07 AM : 729d83e56c29c510258a6e9e79ffddc3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mf.sys : 63,744 : 04/13/2008 01:36 PM : a7da20ab18a1bdae28b0f349e57da0d1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\mnmdd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\mnmdd.sys : 4,224 : 08/23/2001 01:00 AM : 4ae068242760a1fb6e1a44bf4e16afa6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\modem.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\modem.sys : 30,080 : 08/04/2004 01:08 AM : 6fc6f9d7acc36dca9b914565a3aeda05 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\modem.sys : 30,080 : 04/13/2008 02:00 PM : dfcbad3cec1c5f964962ae10e0bcc8e1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\mouclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mouclass.sys : 23,040 : 08/04/2004 01:58 AM : 34e1f0031153e491910e12551400192c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mouclass.sys : 23,040 : 04/13/2008 01:39 PM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\mouclass.sys : 22,016 : 08/23/2001 00:00 AM : e534ccba5714e8bfff4fb97d6453898f [Pos Repl]

 * C:\WINDOWS\System32\drivers\mountmgr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mountmgr.sys : 42,240 : 08/04/2004 01:58 AM : 65653f3b4477f3c63e68a9659f85ee2e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mountmgr.sys : 42,368 : 04/13/2008 01:39 PM : a80b9a0bad1b73637dbcbba7df72d3fd [Pos Repl]

 * C:\WINDOWS\System32\drivers\mqac.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB971032\SP2QFE\mqac.sys : 91,776 : 06/22/2009 00:30 AM : 9229e191fe206628be17d1e67a5faed9 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mqac.sys : 72,960 : 08/04/2004 01:58 AM : db07b0088cdfd20c2a22e675120ede34 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971032$\mqac.sys : 72,960 : 08/04/2004 01:58 AM : db07b0088cdfd20c2a22e675120ede34 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mqac.sys : 92,544 : 04/13/2008 01:39 PM : 70c14f5cca5cf73f8a645c73a01d8726 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mqac.sys : 91,776 : 06/22/2009 01:48 AM : eee50bf24caeedb515a8f3b22756d3bb [Pos Repl]

 * C:\WINDOWS\System32\drivers\mrxdav.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mrxdav.sys : 181,248 : 08/04/2004 01:00 AM : 46edcc8f2db2f322c24f48785cb46366 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mrxdav.sys : 180,608 : 04/13/2008 01:32 PM : 11d42bb6206f33fbb3ba0288d3ef81bd [Pos Repl]

 * C:\WINDOWS\System32\drivers\mrxsmb.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2511455\SP3QFE\mrxsmb.sys : 457,472 : 02/17/2011 00:19 AM : fb7dfd15d760ad339837a470f0e780d3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2536276-v2\SP3QFE\mrxsmb.sys : 457,856 : 07/15/2011 00:29 AM : fb2fccc70f7174c7bf64f48e96d3adf4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB980232\SP2QFE\mrxsmb.sys : 457,216 : 02/24/2010 00:48 AM : 3500e756812e716351f2d341ae1d5623 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB980232\SP3GDR\mrxsmb.sys : 455,680 : 02/24/2010 00:11 AM : f3aefb11abc521122b67095044169e98 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB980232\SP3QFE\mrxsmb.sys : 457,216 : 02/24/2010 00:57 AM : d09b9f0b9960dd41e73127b7814c115f [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mrxsmb.sys : 454,016 : 02/24/2010 01:31 AM : fb6c89bb3ce282b08bdb1e3c179e1c39 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2511455$\mrxsmb.sys : 455,680 : 02/24/2010 01:11 AM : f3aefb11abc521122b67095044169e98 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2536276-v2$\mrxsmb.sys : 455,936 : 02/17/2011 01:18 AM : 0ea4d8ed179b75f8afa7998ba22285ca [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB980232$\mrxsmb.sys : 456,576 : 04/13/2008 02:17 PM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB980232_0$\mrxsmb.sys : 451,456 : 08/04/2004 02:15 AM : 1fd607fc67f7f7c633c3da65bfc53d18 [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\mrxsmb.sys : 456,320 : 07/15/2011 01:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mrxsmb.sys : 456,576 : 04/13/2008 02:17 PM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\7662ce4d10dbc4afae84f95151b83183\SP3GDR\mrxsmb.sys : 456,320 : 04/29/2011 00:19 AM : 0dc719e9b15e902346e87e9dcd5751fa [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\7662ce4d10dbc4afae84f95151b83183\SP3QFE\mrxsmb.sys : 457,856 : 04/29/2011 00:47 AM : 8dd801e28eb76fda2a38907882a0036f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mrxsmb.sys : 456,320 : 07/15/2011 02:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\msfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msfs.sys : 19,072 : 08/04/2004 02:00 AM : 561b3a4333ca2dbdba28b5b956822519 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msfs.sys : 19,072 : 04/13/2008 01:32 PM : c941ea2454ba8350021d774daf0f1027 [Pos Repl]

 * C:\WINDOWS\System32\drivers\msgpc.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msgpc.sys : 35,072 : 08/04/2004 02:04 AM : c0f1d4a21de5a415df8170616703debf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msgpc.sys : 35,072 : 04/13/2008 01:56 PM : 0a02c63c8b144bd8c86b103dee7c86a2 [Pos Repl]

 * C:\WINDOWS\System32\drivers\MSKSSRV.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mskssrv.sys : 7,552 : 08/04/2004 02:58 AM : ae431a8dd3c1d0d0610cdbac16057ad0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mskssrv.sys : 7,552 : 04/13/2008 01:39 PM : d1575e71568f4d9e14ca56b7b0453bf1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\MSPCLOCK.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mspclock.sys : 5,376 : 08/04/2004 02:58 AM : 13e75fef9dfeb08eeded9d0246e1f448 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mspclock.sys : 5,376 : 04/13/2008 01:39 PM : 325bb26842fc7ccc1fcce2c457317f3e [Pos Repl]

 * C:\WINDOWS\System32\drivers\MSPQM.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mspqm.sys : 4,992 : 08/04/2004 02:58 AM : 1988a33ff19242576c3d0ef9ce785da7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mspqm.sys : 4,992 : 04/13/2008 01:39 PM : bad59648ba099da4a17680b39730cb3d [Pos Repl]

 * C:\WINDOWS\System32\drivers\mssmbios.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mssmbios.sys : 15,488 : 08/04/2004 02:07 AM : 469541f8bfd2b32659d5d463a6714bce [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mssmbios.sys : 15,488 : 04/13/2008 01:36 PM : af5f4f3f14a8ea2c26de30f7a1e17136 [Pos Repl]

 * C:\WINDOWS\System32\drivers\mup.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2535512\SP3QFE\mup.sys : 105,472 : 04/21/2011 00:52 AM : f7b1ad991491f02af6da70b00b8bf114 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mup.sys : 107,904 : 08/04/2004 02:15 AM : 82035e0f41c2dd05ae41d27fe6cf7de1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2535512$\mup.sys : 105,344 : 04/13/2008 02:17 PM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mup.sys : 105,344 : 04/13/2008 02:17 PM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mup.sys : 105,472 : 04/21/2011 02:37 AM : de6a75f5c270e756c5508d94b6cf68f5 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ndis.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndis.sys : 182,912 : 08/04/2004 02:14 AM : 558635d3af1c7546d26067d5d9b6959e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndis.sys : 182,656 : 04/13/2008 02:20 PM : 1df7f42665c94b825322fae71721130d [Pos Repl]

 * C:\WINDOWS\System32\drivers\ndistapi.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2566454\SP3QFE\ndistapi.sys : 10,496 : 07/08/2011 00:51 AM : 091735a5f20acb1dc147383a905ae002 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndistapi.sys : 9,600 : 08/23/2001 02:00 AM : 08d43bbdacdf23f34d79e44ed35c1b4c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2566454$\ndistapi.sys : 10,112 : 04/13/2008 01:57 PM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndistapi.sys : 10,112 : 04/13/2008 01:57 PM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndistapi.sys : 10,496 : 07/08/2011 01:02 AM : 0109c4f3850dfbab279542515386ae22 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ndisuio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndisuio.sys : 12,928 : 08/04/2004 01:03 AM : 34d6cd56409da9a7ed573e1c90a308bf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndisuio.sys : 14,592 : 04/13/2008 01:55 PM : f927a4434c5028758a842943ef1a3849 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ndiswan.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndiswan.sys : 91,776 : 08/04/2004 01:14 AM : 0b90e255a9490166ab368cd55a529893 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndiswan.sys : 91,520 : 04/13/2008 02:20 PM : edc1531a49c80614b2cfda43ca8659ab [Pos Repl]

 * C:\WINDOWS\System32\drivers\ndproxy.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2440591\SP3QFE\ndproxy.sys : 40,960 : 11/03/2010 00:55 AM : 816460bd4b4acd27937d1d0813e2e9e9 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndproxy.sys : 38,016 : 08/23/2001 01:00 AM : 59fc3fb44d2669bc144fd87826bb571f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2440591$\ndproxy.sys : 40,576 : 04/13/2008 01:57 PM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndproxy.sys : 40,576 : 04/13/2008 01:57 PM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndproxy.sys : 40,960 : 11/02/2010 01:17 AM : 9282bd12dfb069d3889eb3fcc1000a9b [Pos Repl]

 * C:\WINDOWS\System32\drivers\netbios.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netbios.sys : 34,560 : 08/04/2004 01:03 AM : 3a2aca8fc1d7786902ca434998d7ceb4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netbios.sys : 34,688 : 04/13/2008 01:56 PM : 5d81cf9a2f1a3a756b66cf684911cdf0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\netbt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netbt.sys : 162,816 : 08/04/2004 01:14 AM : 0c80e410cd2f47134407ee7dd19cc86b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netbt.sys : 162,816 : 04/13/2008 02:21 PM : 74b2b2f5bea5e9a3dc021d685551bd3d [Pos Repl]

 * C:\WINDOWS\System32\drivers\nic1394.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nic1394.sys : 61,824 : 08/04/2004 01:58 AM : 5c5c53db4fef16cf87b9911c7e8c6fbc [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nic1394.sys : 61,824 : 04/13/2008 01:51 PM : e9e47cfb2d461fa0fc75b7a74c6383ea [Pos Repl]

 * C:\WINDOWS\System32\drivers\nikedrv.sys [NoSig]

 * C:\WINDOWS\System32\drivers\nmnt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nmnt.sys : 40,320 : 08/04/2004 01:59 AM : 60cf8c7192b3614f240838ddbaa4a245 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nmnt.sys : 40,320 : 04/13/2008 01:53 PM : 1e421a6bcf2203cc61b821ada9de878b [Pos Repl]

 * C:\WINDOWS\System32\drivers\npfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\npfs.sys : 30,848 : 08/04/2004 01:00 AM : 4f601bcb8f64ea3ac0994f98fed03f8e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\npfs.sys : 30,848 : 04/13/2008 01:32 PM : 3182d64ae053d6fb034f44b6def8034a [Pos Repl]

 * C:\WINDOWS\System32\drivers\ntfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntfs.sys : 574,592 : 08/04/2004 01:15 AM : b78be402c3f63dd55521f73876951cdd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntfs.sys : 574,976 : 04/13/2008 02:15 PM : 78a08dd6a8d65e697c18e1db01c5cdca [Pos Repl]

 * C:\WINDOWS\System32\drivers\null.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\null.sys : 2,944 : 08/23/2001 02:00 AM : 73c1e1f395918bc2c6dd67af7591a3ad [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwlnkflt.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkflt.sys : 12,416 : 08/23/2001 02:00 AM : b305f3fad35083837ef46a0bbce2fc57 [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwlnkfwd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkfwd.sys : 32,512 : 08/23/2001 02:00 AM : c99b3415198d1aab7227f2c88fd664b9 [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwlnkipx.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nwlnkipx.sys : 88,448 : 08/04/2004 01:03 AM : 79ea3fcda7067977625b3363a2657c80 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nwlnkipx.sys : 88,320 : 04/13/2008 01:56 PM : 8b8b1be2dba4025da6786c645f77f123 [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwlnknb.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnknb.sys : 63,232 : 08/23/2001 01:00 AM : 56d34a67c05e94e16377c60609741ff8 [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwlnkspx.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkspx.sys : 55,936 : 08/23/2001 01:00 AM : c0bb7d1615e1acbdc99757f6ceaf8cf0 [Pos Repl]

 * C:\WINDOWS\System32\drivers\nwrdr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nwrdr.sys : 163,584 : 08/04/2004 01:02 AM : 03373a79440473062c6f3aedec6a49c8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nwrdr.sys : 163,584 : 04/13/2008 01:34 PM : 36b9b950e3d2e100970a48d8bad86740 [Pos Repl]

 * C:\WINDOWS\System32\drivers\oprghdlr.sys [NoSig]

 * C:\WINDOWS\System32\drivers\p3.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\p3.sys : 42,496 : 08/04/2004 01:59 AM : 3e16eff2a6fed2d8d7f5a66dfe65d183 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\p3.sys : 42,752 : 04/13/2008 01:31 PM : c90018bafdc7098619a4a95b046b30f3 [Pos Repl]

 * C:\WINDOWS\System32\drivers\parport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\parport.sys : 80,128 : 08/04/2004 01:59 AM : 29744eb4ce659dfe3b4122deb45bc478 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\parport.sys : 80,128 : 04/13/2008 01:40 PM : 5575faf8f97ce5e713d108c2a58d7c7c [Pos Repl]

 * C:\WINDOWS\System32\drivers\partmgr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\partmgr.sys : 18,688 : 08/23/2001 01:00 AM : 3334430c29dc338092f79c38ef7b4cd0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\partmgr.sys : 19,712 : 04/13/2008 01:40 PM : beb3ba25197665d82ec7065b724171c6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\parvdm.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\parvdm.sys : 6,784 : 08/23/2001 01:00 AM : 70e98b3fd8e963a6a46a2e6247e0bea1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\pciidex.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pciidex.sys : 25,088 : 08/04/2004 01:59 AM : 520b91ab011456b940d9b05fc91108ff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pciidex.sys : 24,960 : 04/13/2008 01:40 PM : 52e60f29221d0d1ac16737e8dbf7c3e9 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\pciidex.sys : 23,680 : 08/23/2001 00:00 AM : 9ea1e5058f8bc648b4d14425189d85a4 [Pos Repl]

 * C:\WINDOWS\System32\drivers\pci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pci.sys : 68,224 : 08/04/2004 01:07 AM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pci.sys : 68,224 : 04/13/2008 01:36 PM : a219903ccf74233761d92bef471a07b1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\pci.sys : 62,464 : 08/23/2001 00:00 AM : 1f96eecdf5d1e3385ac44c6a457b381f [Pos Repl]

 * C:\WINDOWS\System32\drivers\pcmcia.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pcmcia.sys : 119,936 : 08/04/2004 01:07 AM : 82a087207decec8456fbe8537947d579 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pcmcia.sys : 120,192 : 04/13/2008 01:36 PM : 9e89ef60e9ee05e3f2eef2da7397f1c1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\portcls.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\portcls.sys : 145,792 : 08/04/2004 01:15 AM : 5b0f00e43a7094c0b7e433cb42c79164 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\portcls.sys : 146,048 : 04/13/2008 02:19 PM : e82a496c3961efc6828b508c310ce98f [Pos Repl]

 * C:\WINDOWS\System32\drivers\processr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\processr.sys : 35,328 : 08/04/2004 01:59 AM : 0d97d88720a4087ec93af7dbb303b30a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\processr.sys : 35,840 : 04/13/2008 01:31 PM : a32bebaf723557681bfc6bd93e98bd26 [Pos Repl]

 * C:\WINDOWS\System32\drivers\psched.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\psched.sys : 69,120 : 08/04/2004 01:04 AM : 48671f327553dcf1d27f6197f622a668 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\psched.sys : 69,120 : 04/13/2008 01:56 PM : 09298ec810b07e5d582cb3a3f9255424 [Pos Repl]

 * C:\WINDOWS\System32\drivers\ptilink.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ptilink.sys : 17,792 : 08/23/2001 01:00 AM : 80d317bd1c3dbc5d4fe7b1678c60cadd [Pos Repl]

 * C:\WINDOWS\System32\drivers\rasacd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rasacd.sys : 8,832 : 08/23/2001 01:00 AM : fe0d99d6f31e4fad8159f690d68ded9c [Pos Repl]

 * C:\WINDOWS\System32\drivers\rasl2tp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rasl2tp.sys : 51,328 : 08/04/2004 01:14 AM : 98faeb4a4dcf812ba1c6fca4aa3e115c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rasl2tp.sys : 51,328 : 04/13/2008 02:19 PM : 11b4a627bc9614b885c4969bfa5ff8a6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\raspppoe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\raspppoe.sys : 41,472 : 08/04/2004 01:05 AM : 7306eeed8895454cbed4669be9f79faa [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\raspppoe.sys : 41,472 : 04/13/2008 01:57 PM : 5bc962f2654137c9909c3d4603587dee [Pos Repl]

 * C:\WINDOWS\System32\drivers\raspptp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\raspptp.sys : 48,384 : 08/04/2004 01:14 AM : 1c5cc65aac0783c344f16353e60b72ac [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\raspptp.sys : 48,384 : 04/13/2008 02:19 PM : efeec01b1d3cf84f16ddd24d9d9d8f99 [Pos Repl]

 * C:\WINDOWS\System32\drivers\raspti.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\raspti.sys : 16,512 : 08/23/2001 02:00 AM : fdbb1d60066fcfbb7452fd8f9829b242 [Pos Repl]

 * C:\WINDOWS\System32\drivers\rawwan.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rawwan.sys : 34,432 : 08/23/2001 02:00 AM : 01524cd237223b18adbb48f70083f101 [Pos Repl]

 * C:\WINDOWS\System32\drivers\rdbss.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rdbss.sys : 176,512 : 08/04/2004 01:20 AM : 29d66245adba878fff574cd66abd2884 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rdbss.sys : 175,744 : 04/13/2008 02:28 PM : 7ad224ad1a1437fe28d89cf22b17780a [Pos Repl]

 * C:\WINDOWS\System32\drivers\rdpcdd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rdpcdd.sys : 4,224 : 08/23/2001 02:00 AM : 4912d5b403614ce99c28420f75353332 [Pos Repl]

 * C:\WINDOWS\System32\drivers\rdpdr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rdpdr.sys : 196,864 : 08/04/2004 01:01 AM : a2cae2c60bc37e0751ef9dda7ceaf4ad [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rdpdr.sys : 196,224 : 04/13/2008 01:32 PM : 15cabd0f7c00c47c70124907916af3f1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\rdpwd.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2570222\SP3QFE\rdpwd.sys : 139,656 : 06/24/2011 00:09 AM : 3348e61a78ba4f79c795aad6565d3b6f [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2621440\SP3QFE\rdpwd.sys : 139,784 : 01/09/2012 00:19 AM : 2d293b720c206473a05950ce007db12a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2685939\SP3QFE\rdpwd.sys : 139,656 : 05/02/2012 00:45 AM : 997c59b9955f911ec460241dd9e01b04 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2723135\SP3QFE\rdpwd.sys : 139,784 : 07/04/2012 00:59 AM : c7d9bc54354b8c706abf172d48313f1b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rdpwd.sys : 139,400 : 08/04/2004 01:01 AM : d4f5643d7714ef499ae9527fdcd50894 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2570222$\rdpwd.sys : 139,656 : 04/13/2008 07:13 PM : 6728e45b66f93c08f11de2e316fc70dd [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2621440$\rdpwd.sys : 139,656 : 06/24/2011 07:10 AM : fc105dd312ed64eb66bff111e8ec6eac [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2685939$\rdpwd.sys : 139,784 : 01/09/2012 07:20 AM : 5b3055daa788bd688594d2f5981f2a83 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2723135$\rdpwd.sys : 139,656 : 05/02/2012 07:46 AM : 6589db6e5969f8eee594cf71171c5028 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rdpwd.sys : 139,656 : 04/13/2008 07:13 PM : 6728e45b66f93c08f11de2e316fc70dd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rdpwd.sys : 139,784 : 07/04/2012 07:05 AM : 43af5212bd8fb5ba6eed9754358bd8f7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\redbook.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\redbook.sys : 57,472 : 08/04/2004 07:59 AM : b31b4588e4086d8d84adbf9845c2402b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\redbook.sys : 57,600 : 04/13/2008 01:40 PM : f828dd7e1419b6653894a8f97a0094c5 [Pos Repl]

 * C:\WINDOWS\System32\drivers\rmcast.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\rmcast.sys : 203,008 : 05/08/2008 00:14 AM : b1f077190ba1cfa0a2a2afae9e7fde2b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\rmcast.sys : 203,136 : 05/08/2008 00:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\rmcast.sys : 203,136 : 05/08/2008 00:58 AM : c711645c76b8ed87c021bf6165e52795 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rmcast.sys : 202,752 : 05/08/2008 07:28 AM : d18208ed6c768663b08c972eaa7a8b60 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950762$\rmcast.sys : 202,624 : 04/13/2008 01:55 PM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950762_0$\rmcast.sys : 200,064 : 08/23/2001 01:00 AM : 35e81b908ae4e97fc7bdf4607c516ff4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rmcast.sys : 202,624 : 04/13/2008 01:55 PM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rmcast.sys : 203,136 : 05/08/2008 01:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]

 * C:\WINDOWS\System32\drivers\rndismp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rndismp.sys : 30,080 : 08/04/2004 01:04 AM : 7ce8b277f3207ea82d7d22ad348befc6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rndismp.sys : 30,592 : 04/13/2008 01:56 PM : 601844cbcf617ff8c868130ca5b2039d [Pos Repl]

 * C:\WINDOWS\System32\drivers\rootmdm.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rootmdm.sys : 5,888 : 08/23/2001 01:00 AM : d8b0b4ade32574b2d9c5cc34dc0dbbe7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\scsiport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\scsiport.sys : 96,256 : 08/04/2004 01:59 AM : d7fd0ff761e28ac0ea35ad71e0cd67e9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\scsiport.sys : 96,384 : 04/13/2008 01:40 PM : 76c465f570e90c28942d52ccb2580a10 [Pos Repl]

 * C:\WINDOWS\System32\drivers\sdbus.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sdbus.sys : 67,584 : 08/04/2004 01:07 AM : 02fc71b020ec8700ee8a46c58bc6f276 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sdbus.sys : 79,232 : 04/13/2008 01:36 PM : 8d04819a3ce51b9eb47e5689b44d43c4 [Pos Repl]

 * C:\WINDOWS\System32\drivers\serenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\serenum.sys : 15,488 : 08/04/2004 01:59 AM : a2d868aeeff612e70e213c451a70cafb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\serenum.sys : 15,744 : 04/13/2008 01:40 PM : 0f29512ccd6bead730039fb4bd2c85ce [Pos Repl]

 * C:\WINDOWS\System32\drivers\serial.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\serial.sys : 64,896 : 08/04/2004 01:15 AM : cd9404d115a00d249f70a371b46d5a26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\serial.sys : 64,512 : 04/13/2008 02:15 PM : cca207a8896d4c6a0c9ce29a4ae411a7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\sffdisk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sffdisk.sys : 11,136 : 08/04/2004 01:59 AM : 1d9f1bec651815741f088a8fb88e17ee [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sffdisk.sys : 11,904 : 04/13/2008 01:40 PM : 0fa803c64df0914b41f807ea276bf2a6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\sffp_sd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sffp_sd.sys : 10,240 : 08/04/2004 01:59 AM : 586499fd312ffd7f78553f408e71682e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sffp_sd.sys : 11,008 : 04/13/2008 01:40 PM : c17c331e435ed8737525c86a7557b3ac [Pos Repl]

 * C:\WINDOWS\System32\drivers\sfloppy.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfloppy.sys : 11,392 : 08/04/2004 01:59 AM : 0d13b6df6e9e101013a7afb0ce629fe0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfloppy.sys : 11,392 : 04/13/2008 01:40 PM : 8e6b8c671615d126fdc553d1e2de5562 [Pos Repl]

 * C:\WINDOWS\System32\drivers\smclib.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\smclib.sys : 14,592 : 08/23/2001 01:00 AM : 017daecf0ed3aa731313433601ec40fa [Pos Repl]

 * C:\WINDOWS\System32\drivers\sonydcam.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sonydcam.sys : 25,472 : 08/04/2004 01:09 AM : addc9e4757a68ab60562ad3cb9c288d6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sonydcam.sys : 25,344 : 04/13/2008 01:46 PM : 489703624dac94ed943c2abda022a1cd [Pos Repl]

 * C:\WINDOWS\System32\drivers\splitter.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\splitter.sys : 6,400 : 08/04/2004 01:07 AM : 8e186b8f23295d1e42c573b82b80d548 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\splitter.sys : 6,272 : 04/13/2008 01:45 PM : ab8b92451ecb048a4d1de7c3ffcb4a9f [Pos Repl]

 * C:\WINDOWS\System32\drivers\sr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sr.sys : 73,472 : 08/04/2004 01:06 AM : e41b6d037d6cd08461470af04500dc24 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sr.sys : 73,472 : 04/13/2008 01:36 PM : 76bb022c2fb6902fd5bdd4f78fc13a5d [Pos Repl]

 * C:\WINDOWS\System32\drivers\srv.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2345886\SP3QFE\srv.sys : 357,248 : 08/26/2010 00:37 AM : 70cd8b8dd2a680b128617c19eb0ab94f [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2508429\SP3QFE\srv.sys : 357,888 : 02/17/2011 00:19 AM : 9b390283569ea58d43d2586032b892f5 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB971468\SP2QFE\srv.sys : 352,640 : 12/31/2009 00:06 AM : d4af9861c3b6a2163d26dc6b9cf05e2a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB971468\SP3GDR\srv.sys : 353,792 : 12/31/2009 00:50 AM : 89220b427890aa1dffd1a02648ae51c3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB971468\SP3QFE\srv.sys : 353,792 : 01/01/2010 00:58 AM : 30efed0c77d59ae0cacb0b5c756767ed [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982214\SP3QFE\srv.sys : 354,304 : 06/21/2010 00:18 AM : 422e4508508015c7d12f40bf9763f158 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\srv.sys : 352,640 : 12/31/2009 01:14 AM : 7a4f147cc6b133f905f6e65e2f8669fb [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2345886$\srv.sys : 354,304 : 06/21/2010 01:27 AM : da852e3e0bf1cea75d756f9866241e57 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2508429$\srv.sys : 357,248 : 08/26/2010 01:39 AM : 0f6aefad3641a657e18081f52d0c15af [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971468$\srv.sys : 334,848 : 04/13/2008 02:15 PM : 5252605079810904e31c332e241cd59b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971468_0$\srv.sys : 336,256 : 08/04/2004 02:14 AM : 20b7e396720353e4117d64d9dcb926ca [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB982214$\srv.sys : 353,792 : 12/31/2009 02:50 AM : 89220b427890aa1dffd1a02648ae51c3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\srv.sys : 334,848 : 04/13/2008 02:15 PM : 5252605079810904e31c332e241cd59b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\srv.sys : 357,888 : 02/17/2011 02:18 AM : 47ddfc2f003f7f9f0592c6874962a2e7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\stream.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\stream.sys : 48,640 : 08/04/2004 02:08 AM : c43356072eb3e88cd62958db10cead47 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\stream.sys : 49,408 : 04/13/2008 01:45 PM : 3e5d89099ded9e86e5639f411693218f [Pos Repl]

 * C:\WINDOWS\System32\drivers\swenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\swenum.sys : 4,352 : 08/04/2004 02:58 AM : 03c1bae4766e2450219d20b993d6e046 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\swenum.sys : 4,352 : 04/13/2008 01:39 PM : 3941d127aef12e93addf6fe6ee027e0f [Pos Repl]

 * C:\WINDOWS\System32\drivers\swmidi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\swmidi.sys : 54,272 : 08/17/2001 03:00 PM : 94abc808fc4b6d7d2bbf42b85e25bb4d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\swmidi.sys : 56,576 : 04/13/2008 01:45 PM : 8ce882bcc6cf8a62f2b2323d95cb3d01 [Pos Repl]

 * C:\WINDOWS\System32\drivers\sysaudio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sysaudio.sys : 60,800 : 08/04/2004 03:15 AM : 650ad082d46bac0e64c9c0e0928492fd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sysaudio.sys : 60,800 : 04/13/2008 02:15 PM : 8b83f3ed0f1688b4958f77cd6d2bf290 [Pos Repl]

 * C:\WINDOWS\System32\drivers\tape.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tape.sys : 14,976 : 08/04/2004 03:59 AM : a2a9ca0d1a9ac1ff54220aa0789fe5cf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tape.sys : 14,976 : 04/13/2008 01:40 PM : fd6093e3decd925f1cffc8a0dd539d72 [Pos Repl]

 * C:\WINDOWS\System32\drivers\tcpip6.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 00:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip6.sys : 225,920 : 06/20/2008 00:32 AM : 7195e0ce397545e657a81ece9dfbc1c9 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip6.sys : 225,856 : 06/20/2008 00:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 00:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB978338\SP2QFE\tcpip6.sys : 226,880 : 02/11/2010 00:08 AM : 7dda159deda4fef8523eefc34e524013 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB978338\SP3GDR\tcpip6.sys : 226,880 : 02/11/2010 00:02 AM : 4e53bbcc4be37d7a4bd6ef1098c89ff7 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB978338\SP3QFE\tcpip6.sys : 226,880 : 02/11/2010 00:36 AM : f4a3c6abe7818b1b53f58fa1adb605cd [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tcpip6.sys : 226,880 : 02/11/2010 03:01 AM : be4007ab8c9b62e3688fc2f469b98190 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\tcpip6.sys : 225,664 : 04/13/2008 02:00 PM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip6.sys : 223,616 : 08/04/2004 02:07 AM : 4d58bb1ae8841aafd8790ad7e1e3b8ea [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB978338$\tcpip6.sys : 225,856 : 06/20/2008 02:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB978338_0$\tcpip6.sys : 225,920 : 06/20/2008 02:52 AM : 00586ed87ab564b03870a2a3dcc84b55 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tcpip6.sys : 225,664 : 04/13/2008 02:00 PM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tcpip6.sys : 226,880 : 02/11/2010 02:02 AM : 4e53bbcc4be37d7a4bd6ef1098c89ff7 [Pos Repl]

 * C:\WINDOWS\System32\Drivers\tcpip.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 00:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys : 360,960 : 06/20/2008 00:44 AM : 744e57c99232201ae98c49168b918f48 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys : 361,600 : 06/20/2008 00:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 00:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys : 360,320 : 06/20/2008 02:45 AM : 2a5554fc5b1e04e131230e3ce035c3f9 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys : 361,344 : 04/13/2008 02:20 PM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys : 359,040 : 08/04/2004 02:14 AM : 9f4b36614a0fc234525ba224957de55c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tcpip.sys : 361,344 : 04/13/2008 02:20 PM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tcpip.sys : 361,600 : 06/20/2008 02:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]

 * C:\WINDOWS\System32\drivers\tdi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdi.sys : 18,560 : 08/04/2004 02:07 AM : 6891b74ab9a016064e82a419388d0601 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdi.sys : 19,072 : 04/13/2008 02:00 PM : 0539d5e53587f82d1b4fd74c5be205cf [Pos Repl]

 * C:\WINDOWS\System32\drivers\tdpipe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdpipe.sys : 12,040 : 08/04/2004 02:01 AM : 38d437cf2d98965f239b0abcd66dcb0f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdpipe.sys : 12,040 : 04/13/2008 07:13 PM : 6471a66807f5e104e4885f5b67349397 [Pos Repl]

 * C:\WINDOWS\System32\drivers\tdtcp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdtcp.sys : 21,896 : 08/04/2004 02:01 AM : ed0580af02502d00ad8c4c066b156be9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdtcp.sys : 21,896 : 04/13/2008 07:13 PM : c56b6d0402371cf3700eb322ef3aaf61 [Pos Repl]

 * C:\WINDOWS\System32\drivers\termdd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\termdd.sys : 40,840 : 08/04/2004 02:01 AM : a540a99c281d933f3d69d55e48727f47 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\termdd.sys : 40,840 : 04/13/2008 07:13 PM : 88155247177638048422893737429d9e [Pos Repl]

 * C:\WINDOWS\System32\drivers\tosdvd.sys [NoSig]

 * C:\WINDOWS\System32\drivers\tunmp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tunmp.sys : 12,416 : 08/04/2004 02:03 AM : 87a0e9e18c10a9e454238e3330e2a26d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tunmp.sys : 12,288 : 04/13/2008 01:56 PM : 8f861eda21c05857eb8197300a92501c [Pos Repl]

 * C:\WINDOWS\System32\drivers\udfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\udfs.sys : 66,176 : 08/04/2004 02:00 AM : 12f70256f140cd7d52c58c7048fde657 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\udfs.sys : 66,048 : 04/13/2008 01:32 PM : 5787b80c2e3c5e2f56c2a233d91fa2c9 [Pos Repl]

 * C:\WINDOWS\System32\drivers\update.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\update.sys : 209,408 : 08/04/2004 02:58 AM : aff2e5045961bbc0a602bb6f95eb1345 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\update.sys : 384,768 : 04/13/2008 01:39 PM : 402ddc88356b1bac0ee3dd1580c76a31 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usb8023.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usb8023.sys : 12,672 : 08/04/2004 02:04 AM : af090265ec388bab320f1ff7e7a7d5ea [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usb8023.sys : 12,800 : 04/13/2008 01:56 PM : bee793d4a059caea55d6ac20e19b3a8f [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbcamd2.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd2.sys : 23,936 : 08/23/2001 02:00 AM : 61018ba9df6b63e51d9753c980e73ec2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbcamd2.sys : 25,728 : 04/13/2008 01:45 PM : ce97845d2e3f0d274b8bac1ed07c6149 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbcamd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd.sys : 23,808 : 08/23/2001 02:00 AM : 2654eecc6fb13603ebddcd5c8ea943d1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbcamd.sys : 25,600 : 04/13/2008 01:45 PM : 1c1a47b40c23358245aa8d0443b6935e [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbccgp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbccgp.sys : 31,616 : 08/04/2004 02:08 AM : bffd9f120cc63bcbaa3d840f3eef9f79 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbccgp.sys : 32,128 : 04/13/2008 01:45 PM : 173f317ce0db8e21322e71b7e60a27e8 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbccgp.sys : 32,128 : 04/13/2008 01:45 AM : 173f317ce0db8e21322e71b7e60a27e8 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbd.sys [NoSig]

 * C:\WINDOWS\System32\drivers\usbehci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbehci.sys : 26,624 : 08/04/2004 02:08 AM : 15e993ba2f6946b2bfbbfcd30398621e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbehci.sys : 30,208 : 04/13/2008 01:45 PM : 65dcf09d0e37d4c6b11b5b0b76d470a7 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbhub.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbhub.sys : 57,600 : 08/04/2004 02:08 AM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbhub.sys : 59,520 : 04/13/2008 01:45 PM : 1ab3cdde553b6e064d2e754efe20285c [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbhub.sys : 50,688 : 08/23/2001 00:00 AM : 1766faa3a5079d0db3efb331dac587ed [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbhub.sys : 50,688 : 08/17/2001 03:03 PM : 1766faa3a5079d0db3efb331dac587ed [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbhub.sys : 50,688 : 08/17/2001 03:03 PM : 1766faa3a5079d0db3efb331dac587ed [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbhub.sys : 50,688 : 08/17/2001 03:03 PM : 1766faa3a5079d0db3efb331dac587ed [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbintel.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbintel.sys : 16,000 : 08/04/2004 02:08 AM : 2853fd4c4489e0f8bfcf78efcdb7e998 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbintel.sys : 15,872 : 04/13/2008 01:45 PM : 290913dc4f1125e5a82de52579a44c43 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbport.sys : 142,976 : 08/04/2004 02:08 AM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbport.sys : 143,872 : 04/13/2008 01:45 PM : 791912e524cc2cc6f50b5f2b52d1eb71 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbport.sys : 123,264 : 08/23/2001 03:00 AM : 81d55a273810e5b20456e4decb7e00ff [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbport.sys : 123,264 : 08/17/2001 03:03 PM : 81d55a273810e5b20456e4decb7e00ff [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbport.sys : 123,264 : 08/17/2001 03:03 PM : 81d55a273810e5b20456e4decb7e00ff [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbport.sys : 123,264 : 08/17/2001 03:03 PM : 81d55a273810e5b20456e4decb7e00ff [Pos Repl]

 * C:\WINDOWS\System32\drivers\USBSTOR.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys : 26,496 : 08/04/2004 02:08 AM : 6cd7b22193718f1d17a47a1cd6d37e75 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbstor.sys : 26,368 : 04/13/2008 01:45 PM : a32426d9b14a089eaa1d922e0c5801a9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbstor.sys : 26,368 : 04/13/2008 01:45 PM : a32426d9b14a089eaa1d922e0c5801a9 [Pos Repl]

 * C:\WINDOWS\System32\drivers\usbuhci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbuhci.sys : 20,480 : 08/04/2004 02:08 AM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbuhci.sys : 20,608 : 04/13/2008 01:45 PM : 26496f9dee2d787fc3e61ad54821ffe6 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbuhci.sys : 18,944 : 08/23/2001 03:00 AM : b8f6119fd7df389d823ba27a3023e150 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbuhci.sys : 18,944 : 08/17/2001 03:03 PM : b8f6119fd7df389d823ba27a3023e150 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbuhci.sys : 18,944 : 08/17/2001 03:03 PM : b8f6119fd7df389d823ba27a3023e150 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbuhci.sys : 18,944 : 08/17/2001 03:03 PM : b8f6119fd7df389d823ba27a3023e150 [Pos Repl]

 * C:\WINDOWS\System32\drivers\vga.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\vga.sys : 20,992 : 08/04/2004 02:07 AM : 8a60edd72b4ea5aea8202daf0e427925 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\vga.sys : 20,992 : 04/13/2008 01:44 PM : 0d3a8fafceacd8b7625cd549757a7df1 [Pos Repl]

 * C:\WINDOWS\System32\drivers\videoprt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\videoprt.sys : 79,744 : 08/04/2004 02:07 AM : d5a9d123f5ed7c9965a481bd20cf66d8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\videoprt.sys : 81,664 : 04/13/2008 01:44 PM : e28726b72c46821a28830e077d39a55b [Pos Repl]

 * C:\WINDOWS\System32\drivers\volsnap.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys : 52,352 : 08/04/2004 02:00 AM : ee4660083deba849ff6c485d944b379b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\volsnap.sys : 52,352 : 04/13/2008 01:41 PM : 4c8fcb5cc53aab716d810740fe59d025 [Pos Repl]

 * C:\WINDOWS\System32\drivers\wanarp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wanarp.sys : 34,560 : 08/04/2004 02:04 AM : 984ef0b9788abf89974cfed4bfbaacbc [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wanarp.sys : 34,560 : 04/13/2008 01:57 PM : e20b95baedb550f32dd489265c1da1f6 [Pos Repl]

 * C:\WINDOWS\System32\drivers\wdmaud.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wdmaud.sys : 82,944 : 08/04/2004 02:15 AM : 2797f33ebf50466020c430ee4f037933 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wdmaud.sys : 83,072 : 04/13/2008 02:17 PM : 6768acf64b18196494413695f0c3a00f [Pos Repl]

 * C:\WINDOWS\System32\drivers\wmilib.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\wmilib.sys : 4,352 : 08/23/2001 02:00 AM : 2f31b7f954bed437f2c75026c65caf7b [Pos Repl]

 * C:\WINDOWS\System32\drivers\ws2ifsl.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ws2ifsl.sys : 12,032 : 08/23/2001 02:00 AM : 6abe6e225adb5a751622a9cc3bc19ce8 [Pos Repl]

 * C:\WINDOWS\System32\dsound.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dsound.dll : 367,616 : 08/04/2004 02:56 AM : 55e148c01296696588eafa425782c3e8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dsound.dll : 367,616 : 04/13/2008 07:11 PM : 4d83ed8bddec431fc8ad907b47cfb6e3 [Pos Repl]

 * C:\WINDOWS\System32\dssenh.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dssenh.dll : 137,216 : 08/04/2004 02:31 AM : cacd2c63a79268d131ea37e85524cc44 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dssenh.dll : 138,752 : 04/13/2008 07:37 AM : fede68bf80052bad393afd5c2e60dcb0 [Pos Repl]

 * C:\WINDOWS\System32\es.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\es.dll : 253,952 : 07/07/2008 03:06 PM : a4ab3dca4a383f0df4988abdeb84f9a4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\es.dll : 253,952 : 07/07/2008 03:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\es.dll : 253,952 : 07/07/2008 03:23 PM : f17f6226bdc0cd5f0bef0daf84d29bec [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\es.dll : 253,952 : 07/07/2008 03:32 PM : 60d1a6342238378bfb7545c81ee3606c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950974$\es.dll : 246,272 : 04/13/2008 07:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950974_0$\es.dll : 243,200 : 08/04/2004 07:56 AM : acd36a2dd7d1e9d8a060aa651dc07e63 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\es.dll : 246,272 : 04/13/2008 07:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\es.dll : 253,952 : 07/07/2008 03:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]

 * C:\WINDOWS\System32\eventlog.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll : 55,808 : 08/04/2004 07:56 AM : 82b24cb70e5944e6e34662205a2a5b78 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\eventlog.dll : 56,320 : 04/13/2008 07:11 PM : 6d4feb43ee538fc5428cc7f0565aa656 [Pos Repl]

 * C:\WINDOWS\System32\hid.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hid.dll : 20,992 : 08/04/2004 07:56 AM : 18afee0ede045b6255408d634372dc29 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hid.dll : 20,992 : 04/13/2008 07:11 PM : 8973122796e3b5d6b5900fc186e55fea [Pos Repl]

 * C:\WINDOWS\System32\hnetcfg.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hnetcfg.dll : 344,064 : 08/04/2004 07:56 AM : 765b30c776a1780b46b479fe614f707c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll : 344,064 : 04/13/2008 07:11 PM : 3cb32d3b8cbe79899d63280bb7a83cd9 [Pos Repl]

 * C:\WINDOWS\System32\imm32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\imm32.dll : 110,080 : 08/04/2004 07:56 AM : 87ca7ce6469577f059297b9d6556d66d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\imm32.dll : 110,080 : 04/13/2008 07:11 PM : 0da85218e92526972a821587e6a8bf8f [Pos Repl]

 * C:\WINDOWS\System32\ipsecsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipsecsvc.dll : 182,784 : 08/04/2004 07:56 AM : d1e299962b5956005113ec4ab1e0d9b7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipsecsvc.dll : 183,808 : 04/13/2008 07:11 PM : 332760fba1655fcfd35bd6f4fd871300 [Pos Repl]

 * C:\WINDOWS\System32\kernel32.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB959426\SP2QFE\kernel32.dll : 989,184 : 03/21/2009 03:54 AM : 80202858d245ff07daa1739c57a3e19b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB959426\SP3GDR\kernel32.dll : 989,696 : 03/21/2009 03:06 AM : b921fb870c9ac0d509b2ccabbbbe95f3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB959426\SP3QFE\kernel32.dll : 991,744 : 03/21/2009 03:59 AM : da11d9d6ecbdf0f93436a4b7c13f7bec [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\kernel32.dll : 986,112 : 03/21/2009 07:18 AM : b6acaed7588295129791e0e6a2b0fade [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB959426$\kernel32.dll : 989,696 : 04/13/2008 07:11 PM : c24b983d211c34da8fcc1ac38477971d [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB959426_0$\kernel32.dll : 983,552 : 08/04/2004 07:56 AM : 888190e31455fad793312f8d087146eb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\kernel32.dll : 989,696 : 04/13/2008 07:11 PM : c24b983d211c34da8fcc1ac38477971d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\kernel32.dll : 989,696 : 03/21/2009 07:06 AM : b921fb870c9ac0d509b2ccabbbbe95f3 [Pos Repl]

 * C:\WINDOWS\System32\ksuser.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ksuser.dll : 4,096 : 08/04/2004 07:56 AM : cbcd254547689bff80c9f547b20911e9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ksuser.dll : 4,096 : 04/13/2008 07:11 PM : 9b9f1c38d559047b8ac0dba2d5febde9 [Pos Repl]

 * C:\WINDOWS\System32\linkinfo.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\linkinfo.dll : 18,944 : 08/04/2004 07:56 AM : c2bbd044c741ea4292016c36f718d2e4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\linkinfo.dll : 19,968 : 04/13/2008 07:11 PM : 2dc5a8019e2387987905f77c664e4be2 [Pos Repl]

 * C:\WINDOWS\System32\lpk.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\lpk.dll : 22,016 : 08/04/2004 07:56 AM : 74d66b3de265e8789153414e75175f26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\lpk.dll : 22,016 : 04/13/2008 07:11 PM : 012df358cebaa23acb26d82077820817 [Pos Repl]

 * C:\WINDOWS\System32\lsass.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\lsass.exe : 13,312 : 08/04/2004 07:56 AM : 84885f9b82f4d55c6146ebf6065d75d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\lsass.exe : 13,312 : 04/13/2008 07:12 PM : bf2466b3e18e970d8a976fb95fc1ca85 [Pos Repl]

 * C:\WINDOWS\System32\mfc40u.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll : 953,856 : 09/18/2010 03:18 AM : 842900dedbc8e3e8dbcccb298fd88f65 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mfc40u.dll : 924,432 : 08/23/2001 07:00 AM : ddf8d47acf8fc3fe5f7f2b95c4d4d136 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2387149$\mfc40u.dll : 927,504 : 04/13/2008 07:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mfc40u.dll : 927,504 : 04/13/2008 07:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mfc40u.dll : 953,856 : 09/18/2010 07:53 AM : e76a5c202e68af5a322d16b5a78f48b9 [Pos Repl]

 * C:\WINDOWS\System32\midimap.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\midimap.dll : 18,944 : 08/04/2004 07:56 AM : 3b4702155bb2ae9dc00c06a68834bdfa [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\midimap.dll : 18,944 : 04/13/2008 07:11 PM : 5c12660a97822f6e61576943b49aaad6 [Pos Repl]

 * C:\WINDOWS\System32\msgsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msgsvc.dll : 33,792 : 08/04/2004 07:56 AM : 95fd808e4ac22aba025a7b3eac0375d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msgsvc.dll : 33,792 : 04/13/2008 07:11 PM : 986b1ff5814366d71e0ac5755c88f2d3 [Pos Repl]

 * C:\WINDOWS\System32\mshtml.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2416400-IE8\SP3QFE\mshtml.dll : 5,960,704 : 11/05/2010 07:27 PM : 864e69f32656a7121444ba0193d7b64b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2482017-IE8\SP3QFE\mshtml.dll : 5,962,240 : 12/20/2010 05:58 PM : 2a2c070ec691ce410533a1da7aa3cd86 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2497640-IE8\SP3QFE\mshtml.dll : 5,964,800 : 02/22/2011 05:27 PM : 3422847aa07e37076a87d0b7d5044dc6 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2530548-IE8\SP3QFE\mshtml.dll : 5,967,360 : 05/30/2011 05:17 PM : d0b1db576941cb0b6669b8752ffac79a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2559049-IE8\SP3QFE\mshtml.dll : 5,971,456 : 07/25/2011 05:15 AM : bce7ccebad6c8955d2b4c3b246bd0e57 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2586448-IE8\SP3QFE\mshtml.dll : 5,972,992 : 10/03/2011 05:34 AM : 1240a6b7b470bed0aa6c9fec7ab0ea26 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2618444-IE8\SP3QFE\mshtml.dll : 5,978,624 : 11/04/2011 02:19 PM : 699421e2e1313c18671a703953cae14b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2647516-IE8\SP3QFE\mshtml.dll : 5,980,160 : 12/17/2011 01:45 PM : 49b88a833eca99efbffc5aae5cc998ed [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2675157-IE8\SP3QFE\mshtml.dll : 5,980,672 : 03/01/2012 01:58 AM : 5dbb0c997ad276bce9d30cd609bdbf67 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2699988-IE8\SP3QFE\mshtml.dll : 6,009,344 : 05/11/2012 01:41 AM : 55f148b94246a77fb4ac33346671cac8 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3GDR\mshtml.dll : 3,073,024 : 04/16/2010 01:09 AM : 6b930309a4a246d133a49eade11e5773 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3QFE\mshtml.dll : 3,073,536 : 04/16/2010 01:00 AM : 9574d5b0c784da0fd8f6a9bb37936a52 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381-IE8\SP3QFE\mshtml.dll : 5,953,024 : 05/06/2010 01:36 AM : 9be28f749a7fe7f8f177c6aa2e9da609 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mshtml.dll : 3,003,392 : 08/04/2004 07:56 AM : 376e0843b2356ca91cec8d9837a56ff7 [Pos Repl]
 +-> C:\WINDOWS\ie8\mshtml.dll : 3,003,392 : 08/04/2004 07:56 AM : 376e0843b2356ca91cec8d9837a56ff7 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2416400-IE8\mshtml.dll : 5,950,976 : 05/06/2010 07:41 AM : c7b7a88cc7d7aba5c395145bf92f46f7 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2482017-IE8\mshtml.dll : 5,959,168 : 11/05/2010 07:26 PM : d7cca87057901c87ed8cc40ddcc7fa1b [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2497640-IE8\mshtml.dll : 5,961,216 : 12/20/2010 05:59 PM : 1edcec5d649dbac37ed9ffb5a14ceb0c [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2530548-IE8\mshtml.dll : 5,962,240 : 02/22/2011 05:06 PM : c2ef2335f1b6c2be20a67d9098f6c9a1 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2559049-IE8\mshtml.dll : 5,964,800 : 05/30/2011 05:19 PM : 22ba5235ea846eda87f68a1dcc2bfcf9 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2586448-IE8\mshtml.dll : 5,969,920 : 07/25/2011 05:17 AM : 23b3c8e9f3f280180573569253ce98ab [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2618444-IE8\mshtml.dll : 5,971,456 : 10/03/2011 05:35 AM : 4963cb503600fc3bcbdbfba51fba1fac [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2647516-IE8\mshtml.dll : 5,978,112 : 11/04/2011 02:20 PM : dd8d655e1881b70a5259a23a6018a6c2 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2675157-IE8\mshtml.dll : 5,979,136 : 12/17/2011 01:46 PM : a9259cd226283cd4f798c00909754a94 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2699988-IE8\mshtml.dll : 5,978,624 : 03/01/2012 01:01 AM : dade53318d8e5335ee2e1745f1c3fc4d [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB982381-IE8\mshtml.dll : 5,937,152 : 03/08/2009 01:41 AM : d469a0eba2ef5c6bee8065b7e3196e5e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mshtml.dll : 3,066,880 : 04/13/2008 07:11 PM : a706e122b398fe1ab85cb9b75d044223 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\06af2d630217aa32a4f6f6b9c5c1a3ba\SP3GDR\mshtml.dll : 6,008,320 : 07/02/2012 00:49 AM : 13d2e016b784730a98f24d6e5beed22f [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\06af2d630217aa32a4f6f6b9c5c1a3ba\SP3QFE\mshtml.dll : 6,010,368 : 07/02/2012 00:48 AM : df599ac52b62de001e42d36f92b45e68 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\mshtml.dll : 5,950,976 : 05/06/2010 00:41 AM : c7b7a88cc7d7aba5c395145bf92f46f7 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\mshtml.dll : 5,953,024 : 05/06/2010 00:36 AM : 9be28f749a7fe7f8f177c6aa2e9da609 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mshtml.dll : 6,007,808 : 05/11/2012 07:42 AM : 886b62a906b3967cbbf0fd2c833a30bf [Pos Repl]

 * C:\WINDOWS\System32\msimg32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msimg32.dll : 4,608 : 08/04/2004 07:56 AM : b5331f2b6f37c66c29c847f3b94ff900 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msimg32.dll : 4,608 : 04/13/2008 07:11 PM : affc87e2501fce8f09d4c10ba6421ccf [Pos Repl]

 * C:\WINDOWS\System32\mspmsnsv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mspmsnsv.dll : 52,224 : 08/04/2004 07:56 AM : c086483e3dba8c1c0a687ec8d5b3d4c1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallWMFDist11$\mspmsnsv.dll : 52,224 : 04/13/2008 07:12 PM : c7e39ea41233e9f5b86c8da3a9f1e4a8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mspmsnsv.dll : 52,224 : 08/04/2004 07:56 AM : c086483e3dba8c1c0a687ec8d5b3d4c1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mspmsnsv.dll : 27,136 : 10/18/2006 10:47 PM : c51b4a5c05a5475708e3c81c7765b71d [Pos Repl]

 * C:\WINDOWS\System32\msprivs.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msprivs.dll : 48,128 : 08/04/2004 07:56 AM : 6bec17053284e847cf1fbb8c9a181e1e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msprivs.dll : 48,128 : 04/13/2008 10:23 AM : c6bb1d1500db4a0e224cb65e6c7e8a80 [Pos Repl]

 * C:\WINDOWS\System32\msvcrt.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msvcrt.dll : 343,040 : 08/04/2004 07:56 AM : b0fefa816d61ec66aa765ddf534eab5e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msvcrt.dll : 343,040 : 04/13/2008 07:12 PM : 355edbb4d412b01f1740c17e3f50fa00 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll : 322,560 : 08/23/2001 07:00 AM : 4200be3808f6406dbe45a7b88dae5035 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll : 343,040 : 08/04/2004 07:57 AM : 98ec447e00229afd88d5161a25d065da [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll : 343,040 : 04/13/2008 07:12 PM : d7075e95aa599ee77b7a89d39296bd3d [Pos Repl]

 * C:\WINDOWS\System32\mswsock.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 01:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\mswsock.dll : 245,248 : 06/20/2008 01:36 AM : 1dfca7713ea5a70d5d93b436aea0317a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\mswsock.dll : 245,248 : 06/20/2008 01:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 01:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mswsock.dll : 245,248 : 06/20/2008 07:41 AM : 097722f235a1fb698bf9234e01b52637 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2509553$\mswsock.dll : 245,248 : 06/20/2008 07:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\mswsock.dll : 245,248 : 04/13/2008 07:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\mswsock.dll : 245,248 : 08/04/2004 07:56 AM : 4e74af063c3271fbea20dd940cfd1184 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mswsock.dll : 245,248 : 04/13/2008 07:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mswsock.dll : 245,248 : 06/20/2008 07:02 AM : 943337d786a56729263071623bbb9de5 [Pos Repl]

 * C:\WINDOWS\System32\netlogon.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll : 408,064 : 02/06/2009 01:46 AM : 6c476d33d82f1054849790181e8f7772 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll : 408,064 : 02/06/2009 01:46 AM : 6c476d33d82f1054849790181e8f7772 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll : 407,040 : 08/04/2004 07:56 AM : 96353fcecba774bb8da74a1c6507015a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netlogon.dll : 407,040 : 04/13/2008 07:12 PM : 1b7f071c51b77c272875c3a23e1e4550 [Pos Repl]

 * C:\WINDOWS\System32\netman.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netman.dll : 198,144 : 08/04/2004 07:56 AM : dab9e6c7105d2ef49876fe92c524f565 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netman.dll : 198,144 : 04/13/2008 07:12 PM : 13e67b55b3abd7bf3fe7aae5a0f9a9de [Pos Repl]

 * C:\WINDOWS\System32\ntkrnlpa.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe : 2,069,376 : 12/09/2010 06:39 PM : f67cd97282e0abfaf91a9a1359b16f2d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe : 2,069,376 : 10/25/2011 06:52 AM : db19fff0c805664cb95062c027b11fe9 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe : 2,069,120 : 04/11/2012 06:42 AM : 063a0f8a90d8e2b802e5243fe9aabcf3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe : 2,069,120 : 05/04/2012 06:41 AM : 8e99a0ce02c1beda6c0935a4dde9ceaa [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\ntkrnlpa.exe : 2,062,976 : 02/06/2009 06:49 AM : 9d832af3fd1917db0e1e8b2f000a2e3a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\ntkrnlpa.exe : 2,066,048 : 02/07/2009 07:02 PM : 5ba7f2141bc6db06100d0e5a732c617a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe : 2,066,176 : 02/06/2009 07:30 AM : 607352b9cb3d708c67f6039097801b5a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP2QFE\ntkrnlpa.exe : 2,063,744 : 02/17/2010 07:57 AM : 1811afc2fadb60b88947e3d08e250860 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP3GDR\ntkrnlpa.exe : 2,066,816 : 02/16/2010 07:25 AM : a046c627ec20456e2959b7bd628e1fd0 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe : 2,066,944 : 02/16/2010 07:12 AM : ded8b5a89b085284634502e9d75ac78c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe : 2,066,944 : 04/28/2010 07:14 AM : 756362706de8bc92f11e197c98a73844 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntkrnlpa.exe : 2,058,368 : 02/16/2010 07:39 AM : 1ee6b94aca7be115a1813bbca65099a8 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2393802$\ntkrnlpa.exe : 2,066,816 : 04/27/2010 07:05 AM : dc57abed7bde1487e658968b4423bed7 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2633171$\ntkrnlpa.exe : 2,069,376 : 12/09/2010 07:07 AM : 84ff488e249dbd2050eb39ea81c6f5c2 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2676562$\ntkrnlpa.exe : 2,069,376 : 10/25/2011 07:52 AM : ce1a2fedbd001ecdc5ad1975afad040a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2707511$\ntkrnlpa.exe : 2,069,120 : 04/11/2012 07:35 AM : 0c9e44d256948fa68ae10d67984862ce [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\ntkrnlpa.exe : 2,065,792 : 04/13/2008 01:31 PM : 109f8e3e3c82e337bb71b6bc9b895d61 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572_0$\ntkrnlpa.exe : 2,056,832 : 08/04/2004 01:58 AM : 947fb1d86d14afcffdb54bf837ec25d0 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB979683$\ntkrnlpa.exe : 2,066,048 : 02/07/2009 07:02 PM : 5ba7f2141bc6db06100d0e5a732c617a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB979683_0$\ntkrnlpa.exe : 2,057,728 : 02/06/2009 07:49 AM : 3006410e24772cc6953f0b5c01beb35f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB981852$\ntkrnlpa.exe : 2,066,816 : 02/16/2010 07:25 AM : a046c627ec20456e2959b7bd628e1fd0 [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe : 2,069,120 : 05/04/2012 07:32 AM : 5dd80d56af1cefbff4f25951069b55bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntkrnlpa.exe : 2,065,792 : 04/13/2008 01:31 PM : 109f8e3e3c82e337bb71b6bc9b895d61 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ntkrnlpa.exe : 2,069,120 : 05/04/2012 01:32 AM : 5dd80d56af1cefbff4f25951069b55bb [Pos Repl]

 * C:\WINDOWS\System32\ntmssvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntmssvc.dll : 435,200 : 08/04/2004 07:56 AM : b62f29c00ac55a761b2e45877d85ea0f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntmssvc.dll : 435,200 : 04/13/2008 07:12 PM : 156f64a3345bd23c600655fb4d10bc08 [Pos Repl]

 * C:\WINDOWS\System32\ntoskrnl.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe : 2,192,768 : 12/09/2010 07:43 AM : a531bbd3de13121c1380ed7dc99082db [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe : 2,192,768 : 10/25/2011 07:34 AM : f512c662874d7545e5bd8005e6800a44 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe : 2,192,640 : 04/11/2012 07:22 AM : 8d061bb825bc606c2b1c6f7452d1baaa [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe : 2,192,640 : 05/04/2012 07:20 AM : 099a0f80a563ebe935f4a9750f96c219 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\ntoskrnl.exe : 2,186,112 : 02/06/2009 07:32 AM : 6a936e9d7badaf3caaeed1e1966ec1b0 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\ntoskrnl.exe : 2,189,056 : 02/06/2009 07:08 AM : 7a95b10a73737ebf24139aaa63f5212b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe : 2,189,184 : 02/07/2009 07:35 PM : efe8eace83eaad5849a7a548fb75b584 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP2QFE\ntoskrnl.exe : 2,186,880 : 02/16/2010 07:37 AM : 97e2bf68857818a4d142b872404dc41b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP3GDR\ntoskrnl.exe : 2,189,952 : 02/17/2010 07:10 AM : d41c3cbad0e1c0728d1cdfd541f60cfa [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe : 2,190,080 : 02/16/2010 07:52 AM : e1f653a542449d54fa2d27463d99b6b6 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB981852\SP3QFE\ntoskrnl.exe : 2,190,080 : 04/27/2010 07:50 AM : a2abbec40cdb57454645d06b7ebd22f5 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntoskrnl.exe : 2,181,376 : 02/16/2010 07:19 AM : ebb75b113e74e90074382347b74d652b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2393802$\ntoskrnl.exe : 2,189,952 : 04/27/2010 09:25 PM : 472059774023f80eb7227eaf9a7acda1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2633171$\ntoskrnl.exe : 2,192,768 : 12/09/2010 09:38 AM : 64c1adf6df629f340c5a439fe0ef8ed1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2676562$\ntoskrnl.exe : 2,192,768 : 10/25/2011 09:33 AM : 892cddff7ef96951b9b0b50974070e47 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2707511$\ntoskrnl.exe : 2,192,640 : 04/11/2012 09:10 AM : 536168936ebf326e36c655ec5ae34b03 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\ntoskrnl.exe : 2,188,928 : 04/13/2008 02:27 PM : 0c89243c7c3ee199b96fcc16990e0679 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572_0$\ntoskrnl.exe : 2,180,992 : 08/04/2004 02:19 AM : ce218bc7088681faa06633e218596ca7 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB979683$\ntoskrnl.exe : 2,189,056 : 02/06/2009 02:08 AM : 7a95b10a73737ebf24139aaa63f5212b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB979683_0$\ntoskrnl.exe : 2,180,480 : 02/06/2009 02:24 AM : facebb0ca3154f77009cdfee78a00bbb [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB981852$\ntoskrnl.exe : 2,189,952 : 02/17/2010 02:10 AM : d41c3cbad0e1c0728d1cdfd541f60cfa [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe : 2,192,640 : 05/04/2012 07:12 AM : ddf0cb8cd3c6007cdf4ad8f0409ed930 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntoskrnl.exe : 2,188,928 : 04/13/2008 02:27 PM : 0c89243c7c3ee199b96fcc16990e0679 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ntoskrnl.exe : 2,192,640 : 05/04/2012 02:12 AM : ddf0cb8cd3c6007cdf4ad8f0409ed930 [Pos Repl]

 * C:\WINDOWS\System32\oakley.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB974392\SP2QFE\oakley.dll : 270,336 : 10/13/2009 07:45 AM : 6bb6599363ce631a7e3c221364e6facc [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB974392\SP3GDR\oakley.dll : 270,336 : 10/13/2009 07:30 AM : c5ff8682eada5b3b27a865f1c3ef9270 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB974392\SP3QFE\oakley.dll : 270,336 : 10/13/2009 07:38 AM : 7eadba6d371c60cca9e4db57c28c8045 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\oakley.dll : 266,752 : 10/13/2009 02:53 AM : e7e39b9152e6c27e5f608574ea6c5a52 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB974392$\oakley.dll : 270,336 : 04/13/2008 07:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB974392_0$\oakley.dll : 266,752 : 08/04/2004 07:56 AM : a76128be63eea6a3af521a0576d3ebf7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\oakley.dll : 270,336 : 04/13/2008 07:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\oakley.dll : 270,336 : 10/13/2009 07:30 AM : c5ff8682eada5b3b27a865f1c3ef9270 [Pos Repl]

 * C:\WINDOWS\System32\ole32.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2624667\SP3QFE\ole32.dll : 1,289,216 : 11/01/2011 07:05 AM : 7d9dde1ab4b00ddb173f5a16e9206517 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB979687\SP3QFE\ole32.dll : 1,289,216 : 07/16/2010 07:04 AM : 8d51fb47062f2a1a9efeccef338a4c46 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ole32.dll : 1,281,536 : 08/04/2004 07:56 AM : 4fe9d9fa62d020e35e0ac6d1aeeb96f0 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2624667$\ole32.dll : 1,288,192 : 07/16/2010 07:05 AM : 7a6a7900b5e322763430ba6fd9a31224 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB979687$\ole32.dll : 1,287,168 : 04/13/2008 07:12 PM : ecce74bc6168375016450a86a164d976 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ole32.dll : 1,287,168 : 04/13/2008 07:12 PM : ecce74bc6168375016450a86a164d976 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ole32.dll : 1,288,704 : 11/01/2011 07:07 AM : 6bad1bed9872e62049e487fb91ae2f3a [Pos Repl]

 * C:\WINDOWS\System32\olepro32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\olepro32.dll : 83,456 : 08/04/2004 07:56 AM : b48d3193dd1474dcbcc32bf4779ac698 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\olepro32.dll : 84,992 : 04/13/2008 07:12 PM : 5652f6ce1d9e9d8068b9d29bc21b5409 [Pos Repl]

 * C:\WINDOWS\System32\perfctrs.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\perfctrs.dll : 39,936 : 08/04/2004 07:56 AM : 96492c721c6ea517e2bfd5381fef55e3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\perfctrs.dll : 39,936 : 04/13/2008 07:12 PM : dbe2b62353660ecca0d75ea307a717e9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\perfctrs.dll : 39,936 : 04/13/2008 07:12 PM : dbe2b62353660ecca0d75ea307a717e9 [Pos Repl]

 * C:\WINDOWS\System32\powrprof.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\powrprof.dll : 17,408 : 08/04/2004 07:56 AM : 1b5f6923abb450692e9fe0672c897aed [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\powrprof.dll : 17,408 : 04/13/2008 07:12 PM : 50a166237a0fa771261275a405646cc0 [Pos Repl]

 * C:\WINDOWS\System32\psbase.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\psbase.dll : 96,768 : 08/04/2004 07:56 AM : 4d3ccdf22d2b4bae229ba73b81d13e26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\psbase.dll : 96,768 : 04/13/2008 07:12 PM : 22d89d84e8e081cda529dbf8c0255a38 [Pos Repl]

 * C:\WINDOWS\System32\pstorsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pstorsvc.dll : 34,304 : 08/04/2004 07:56 AM : 306b30a036db25fcb76b507fede07d58 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pstorsvc.dll : 34,304 : 04/13/2008 07:12 PM : 853d0d0c6f02d7bfdf1cf99dd7553732 [Pos Repl]

 * C:\WINDOWS\System32\qmgr.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\qmgr.dll : 382,464 : 08/04/2004 07:56 AM : 2c69ec7e5a311334d10dd95f338fccea [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB842773$\qmgr.dll : 179,200 : 08/23/2001 07:00 AM : 3e6acf2cd2e8c19b16e4b42d08ca3838 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\qmgr.dll : 409,088 : 04/13/2008 07:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]
 +-> C:\WINDOWS\system32\bits\qmgr.dll : 409,088 : 04/13/2008 07:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]

 * C:\WINDOWS\System32\rasadhlp.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rasadhlp.dll : 8,192 : 08/04/2004 07:56 AM : 4caec028c1e21c75e17877d4522d3db4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rasadhlp.dll : 7,680 : 04/13/2008 07:12 PM : 6f9bef24c578d5d6740e080bedd6a448 [Pos Repl]

 * C:\WINDOWS\System32\regsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\regsvc.dll : 59,904 : 08/04/2004 07:56 AM : 3151427db7d87107d1c5be58fac53960 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\regsvc.dll : 59,904 : 04/13/2008 07:12 PM : 5b19b557b0c188210a56a6b699d90b8f [Pos Repl]

 * C:\WINDOWS\System32\rpcss.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\rpcss.dll : 401,408 : 02/09/2009 07:01 AM : 24b5d53b9accc1e2edcf0a878d6659d4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\rpcss.dll : 401,408 : 02/09/2009 07:10 AM : 6b27a5c03dfb94b4245739065431322c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\rpcss.dll : 401,408 : 02/09/2009 07:56 AM : 9222562d44021b988b9f9f62207fb6f2 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rpcss.dll : 399,360 : 02/09/2009 07:20 AM : 01095febf33beea00c2a0730b9b3ec28 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\rpcss.dll : 399,360 : 04/13/2008 07:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572_0$\rpcss.dll : 395,776 : 08/04/2004 07:56 AM : 5c83a4408604f737717ab96371201680 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rpcss.dll : 399,360 : 04/13/2008 07:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rpcss.dll : 401,408 : 02/09/2009 07:10 AM : 6b27a5c03dfb94b4245739065431322c [Pos Repl]

 * C:\WINDOWS\System32\scecli.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\scecli.dll : 180,224 : 08/04/2004 07:56 AM : 0f78e27f563f2aaf74b91a49e2abf19a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\scecli.dll : 181,248 : 04/13/2008 07:12 PM : a86bb5e61bf3e39b62ab4c7e7085a084 [Pos Repl]

 * C:\WINDOWS\System32\schannel.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2541763\SP3QFE\schannel.dll : 151,552 : 04/29/2011 07:23 AM : 6fd5eec3703d7770c9029e774acc2294 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2585542\SP3QFE\schannel.dll : 152,064 : 11/16/2011 07:20 AM : d444009f7cd704c89f7f9e62396ed4f1 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2655992\SP3QFE\schannel.dll : 153,088 : 06/03/2012 11:31 PM : 26f1193092b9ac2586deb38dd1cbb25c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB960225\SP2QFE\schannel.dll : 144,896 : 12/05/2008 11:41 AM : f63b1a19104e59dd7dc8a79785a16317 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB960225\SP3GDR\schannel.dll : 144,896 : 12/05/2008 11:54 AM : 636c52fc618acb09ec356e9e82d072e2 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB960225\SP3QFE\schannel.dll : 144,896 : 12/05/2008 11:58 AM : 1cdfcf9d0fdc55d76ac3955bd04ac200 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\schannel.dll : 168,448 : 06/25/2009 11:17 AM : 3732492edd6c46454752f9ac78f2539e [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3GDR\schannel.dll : 147,456 : 06/25/2009 11:25 AM : bfdece69e293e6db4e25def862418428 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\schannel.dll : 147,456 : 06/25/2009 11:41 AM : e513ba8bc33fd00f35d69659b478b1df [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB980436\SP3QFE\schannel.dll : 149,504 : 06/30/2010 11:23 AM : e04b6497b6407d2f444e86b30680dc5a [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\schannel.dll : 168,448 : 06/25/2009 07:44 AM : 7b47c36b4f0170b8ef4f3b4efd371f67 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2541763$\schannel.dll : 149,504 : 06/30/2010 07:31 AM : 30ace70b3c0242f0d1ac3b4fa708710f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2585542$\schannel.dll : 151,552 : 04/29/2011 07:25 AM : abeedd547e939ad827b2e29dec754206 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2655992$\schannel.dll : 152,064 : 11/16/2011 07:21 AM : a645a78fcdabad67067324d7e6cd9f79 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB960225$\schannel.dll : 144,384 : 04/13/2008 07:12 PM : c61e8ecffdbf05ff71d079bbd35396b3 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB960225_0$\schannel.dll : 144,896 : 08/04/2004 07:56 AM : 29632e787dcfc0085a555c681eb82693 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389$\schannel.dll : 144,896 : 12/05/2008 07:54 AM : 636c52fc618acb09ec356e9e82d072e2 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389_0$\schannel.dll : 144,896 : 12/05/2008 07:12 AM : 2b9156e888c2bee2a8c3820268d935df [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB980436$\schannel.dll : 147,456 : 06/25/2009 07:25 AM : bfdece69e293e6db4e25def862418428 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\schannel.dll : 144,384 : 04/13/2008 07:12 PM : c61e8ecffdbf05ff71d079bbd35396b3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\schannel.dll : 152,576 : 06/03/2012 11:32 PM : 0f64207b49390c8063c36ae7cbf9c2db [Pos Repl]

 * C:\WINDOWS\System32\schedsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\schedsvc.dll : 190,976 : 08/04/2004 07:56 AM : 92360854316611f6cc471612213c3d92 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\schedsvc.dll : 192,512 : 04/13/2008 07:12 PM : 0a9a7365a1ca4319aa7c1d6cd8e4eafa [Pos Repl]

 * C:\WINDOWS\System32\services.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\services.exe : 110,592 : 02/06/2009 11:22 AM : 4712531ab7a01b7ee059853ca17d39bd [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\services.exe : 110,592 : 02/06/2009 11:11 AM : 65df52f5b8b6e9bbd183505225c37315 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe : 110,592 : 02/06/2009 11:06 AM : 020ceaaedc8eb655b6506b8c70d53bb6 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\services.exe : 110,592 : 02/06/2009 07:14 AM : 37561f8d4160d62da86d24ae41fae8de [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\services.exe : 108,544 : 04/13/2008 07:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572_0$\services.exe : 108,032 : 08/04/2004 07:56 AM : c6ce6eec82f187615d1002bb3bb50ed4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\services.exe : 108,544 : 04/13/2008 07:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\services.exe : 110,592 : 02/06/2009 07:11 AM : 65df52f5b8b6e9bbd183505225c37315 [Pos Repl]

 * C:\WINDOWS\System32\setupapi.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\setupapi.dll : 983,552 : 08/04/2004 07:56 AM : 7808313cbc634ee08346d5ddfef1cc5f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\setupapi.dll : 985,088 : 04/14/2008 07:42 AM : 24192246760e0e64435522e246b1d6c2 [Pos Repl]

 * C:\WINDOWS\System32\sfc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfc.dll : 5,120 : 08/04/2004 07:56 AM : e8a12a12ea9088b4327d49edca3add3e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfc.dll : 5,120 : 04/13/2008 07:12 PM : 96e1c926f22ee1bfbae82901a35f6bf3 [Pos Repl]

 * C:\WINDOWS\System32\sfcfiles.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfcfiles.dll : 1,580,544 : 08/04/2004 07:56 AM : 30a609e00bd1d4ffc49d6b5a432be7f2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfcfiles.dll : 1,614,848 : 04/13/2008 07:12 PM : 9dd07af82244867ca36681ea2d29ce79 [Pos Repl]

 * C:\WINDOWS\System32\shsvcs.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB971029\SP3QFE\shsvcs.dll : 135,168 : 07/27/2009 05:13 PM : 888cd7b39c37e13a2419becfaaf0a28c [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\shsvcs.dll : 134,656 : 08/04/2004 07:56 AM : e7518dc542d3ebdcb80edd98462c7821 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971029$\shsvcs.dll : 135,168 : 04/13/2008 07:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\shsvcs.dll : 135,168 : 04/13/2008 07:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\shsvcs.dll : 135,168 : 07/27/2009 06:17 PM : 99bc0b50f511924348be19c7c7313bbf [Pos Repl]

 * C:\WINDOWS\System32\smss.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\smss.exe : 50,688 : 08/04/2004 07:56 AM : bd7fb0957c716f1a60333aee04de2178 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\smss.exe : 50,688 : 04/13/2008 07:12 PM : 5f816c1f539266d2d4c78694239da0b5 [Pos Repl]

 * C:\WINDOWS\System32\spoolsv.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe : 58,880 : 08/17/2010 05:19 AM : 258dd5d4283fd9f9a7166be9ae45ce73 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe : 57,856 : 08/04/2004 07:56 AM : 7435b108b935e42ea92ca94f59c8e717 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2347290$\spoolsv.exe : 57,856 : 04/13/2008 07:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe : 57,856 : 04/13/2008 07:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\spoolsv.exe : 58,880 : 08/17/2010 07:17 AM : 60784f891563fb1b767f70117fc2428f [Pos Repl]

 * C:\WINDOWS\System32\srsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\srsvc.dll : 170,496 : 08/04/2004 07:56 AM : 92bdf74f12d6cbec43c94d4b7f804838 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\srsvc.dll : 171,008 : 04/13/2008 07:12 PM : 3805df0ac4296a34ba4bf93b346cc378 [Pos Repl]

 * C:\WINDOWS\System32\ssdpsrv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ssdpsrv.dll : 71,680 : 08/04/2004 07:56 AM : 4b8d61792f7175bed48859cc18ce4e38 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ssdpsrv.dll : 71,680 : 04/13/2008 07:12 PM : 0a5679b3714edab99e357057ee88fca6 [Pos Repl]

 * C:\WINDOWS\System32\svchost.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\svchost.exe : 14,336 : 08/04/2004 07:56 AM : 8f078ae4ed187aaabc0a305146de6716 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\svchost.exe : 14,336 : 04/13/2008 07:12 PM : 27c6d03bcdb8cfeb96b716f3d8be3e18 [Pos Repl]

 * C:\WINDOWS\System32\tapisrv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tapisrv.dll : 246,272 : 08/04/2004 07:56 AM : eb4a4187d74a8efdcbea3ea2cb1bdfbd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tapisrv.dll : 249,856 : 04/13/2008 07:12 PM : 3cb78c17bb664637787c9a1c98f79c38 [Pos Repl]

 * C:\WINDOWS\System32\termsrv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\termsrv.dll : 295,424 : 08/04/2004 07:56 AM : b60c877d16d9c880b952fda04adf16e6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\termsrv.dll : 295,424 : 04/13/2008 07:12 PM : ff3477c03be7201c294c35f684b3479f [Pos Repl]

 * C:\WINDOWS\System32\upnphost.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\upnphost.dll : 185,344 : 08/04/2004 07:56 AM : 0546477bde979e33294fe97f6b3de84a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\upnphost.dll : 185,856 : 04/13/2008 07:12 PM : 1ebafeb9a3fbdc41b8d9c7f0f687ad91 [Pos Repl]

 * C:\WINDOWS\System32\user32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\user32.dll : 577,024 : 08/04/2004 07:56 AM : c72661f8552ace7c5c85e16a3cf505c4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\user32.dll : 578,560 : 04/13/2008 07:12 PM : b26b135ff1b9f60c9388b4a7d16f600b [Pos Repl]

 * C:\WINDOWS\System32\userinit.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\userinit.exe : 24,576 : 08/04/2004 07:56 AM : 39b1ffb03c2296323832acbae50d2aff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\userinit.exe : 26,112 : 04/13/2008 07:12 PM : a93aee1928a9d7ce3e16d24ec7380f89 [Pos Repl]

 * C:\WINDOWS\System32\usp10.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB981322\SP3QFE\usp10.dll : 406,016 : 04/16/2010 05:29 AM : f8894bcc961d461674002b4bae7aecc1 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usp10.dll : 406,528 : 08/04/2004 07:56 AM : 2eb58f9dcd6ab320b46744a4ea48b2d2 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB981322$\usp10.dll : 406,016 : 04/13/2008 07:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usp10.dll : 406,016 : 04/13/2008 07:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usp10.dll : 406,016 : 04/16/2010 07:36 AM : 9e03dc5ab51cfd0190541ce2038d819d [Pos Repl]

 * C:\WINDOWS\System32\UxTheme.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\uxtheme.dll : 218,624 : 08/04/2004 07:56 AM : 2cde496666a975a2ce8f969f3042c8db [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\uxtheme.dll : 218,624 : 04/13/2008 07:12 PM : 7a2cc3719b255e6b5d74396183b7715b [Pos Repl]

 * C:\WINDOWS\System32\version.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\version.dll : 18,944 : 08/04/2004 07:56 AM : d38408967be738d0c1b47005bce8ceeb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\version.dll : 18,944 : 04/13/2008 07:12 PM : c7ce131408739b0b3a318be2d0032719 [Pos Repl]

 * C:\WINDOWS\System32\w32time.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\w32time.dll : 174,592 : 08/04/2004 07:56 AM : 2b281958f5d0cf99ed626e3ef39d5c8d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\w32time.dll : 175,104 : 04/13/2008 07:12 PM : 54af4b1d5459500ef0937f6d33b1914f [Pos Repl]

 * C:\WINDOWS\System32\wbem\wmiprvse.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\wmiprvse.exe : 227,840 : 02/06/2009 05:41 AM : 51a548a604aec2c362ca503b0cb03831 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\wmiprvse.exe : 227,840 : 02/06/2009 05:10 AM : 798a9e6828997eef4517ada8a2259831 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe : 227,840 : 02/06/2009 05:15 AM : f520ab392d58c0a1070268032d809382 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe : 227,840 : 02/06/2009 07:39 AM : 31fa172657e941e7cb15c5ccfe36a03e [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\wmiprvse.exe : 218,112 : 04/13/2008 07:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572_0$\wmiprvse.exe : 218,112 : 08/04/2004 07:56 AM : 075ea6c849ab0fe416a3d6dd65c3cf41 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe : 218,112 : 04/13/2008 07:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wmiprvse.exe : 227,840 : 02/06/2009 07:10 AM : 798a9e6828997eef4517ada8a2259831 [Pos Repl]

 * C:\WINDOWS\System32\wdigest.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\wdigest.dll : 59,392 : 06/25/2009 05:17 AM : 6e2aba80e627a6b2caccc6d0c60874b1 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3GDR\wdigest.dll : 54,272 : 06/25/2009 05:25 AM : 3aaf9b35939ff9e58ccd18d41655c2fc [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\wdigest.dll : 54,272 : 06/25/2009 05:41 AM : d9dcec3fa1b27689fc56e34c38d3f148 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wdigest.dll : 59,392 : 06/25/2009 07:44 AM : dbb2e47723a164b178836668a6ca4c1b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389$\wdigest.dll : 49,152 : 04/13/2008 07:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389_0$\wdigest.dll : 49,152 : 08/04/2004 07:56 AM : a8b82c5d30b7ab937e164ab349478fba [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wdigest.dll : 49,152 : 04/13/2008 07:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wdigest.dll : 54,272 : 06/25/2009 07:25 AM : 3aaf9b35939ff9e58ccd18d41655c2fc [Pos Repl]

 * C:\WINDOWS\System32\wiaservc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wiaservc.dll : 333,312 : 08/04/2004 07:56 AM : d9f6c4f6b1e188adafc42b561d9bc2e6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wiaservc.dll : 333,824 : 04/13/2008 07:12 PM : 8bad69cbac032d4bbacfce0306174c30 [Pos Repl]

 * C:\WINDOWS\System32\wininet.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2416400-IE8\SP3QFE\wininet.dll : 919,552 : 11/05/2010 07:27 PM : 9357c4249f4810fb0e49c13387a8a77c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2482017-IE8\SP3QFE\wininet.dll : 919,552 : 12/20/2010 05:58 PM : 5504b4ecce892eb82cd2c5fa71940ac1 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2497640-IE8\SP3QFE\wininet.dll : 919,552 : 02/22/2011 05:27 PM : a9fa95f0d7f511959ac721e4843e5967 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2530548-IE8\SP3QFE\wininet.dll : 919,552 : 04/25/2011 05:09 AM : 7f4f1697001b9e9a7924d219dc215903 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2559049-IE8\SP3QFE\wininet.dll : 919,552 : 06/23/2011 01:33 PM : 509cf67ae762a38e23a5455a0053853c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2586448-IE8\SP3QFE\wininet.dll : 919,552 : 08/22/2011 06:47 PM : 19630aebbfaeb06984cab91848270aaf [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2618444-IE8\SP3QFE\wininet.dll : 919,552 : 11/04/2011 02:19 PM : 4e4716caf514717814d07113ad0425b6 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2647516-IE8\SP3QFE\wininet.dll : 919,552 : 12/17/2011 01:45 PM : 84a48e9818e8440ddbfd8eec37c8a937 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2675157-IE8\SP3QFE\wininet.dll : 919,552 : 03/01/2012 01:58 AM : 4ec67fab39f37626ad6d9895fc094abf [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2699988-IE8\SP3QFE\wininet.dll : 920,064 : 05/16/2012 01:06 AM : 553ad35768cd27959391dd5aa82cef6f [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3GDR\wininet.dll : 667,136 : 04/16/2010 01:09 AM : b43b18fb0eb577856883e5a0708ab9ef [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3QFE\wininet.dll : 668,672 : 04/16/2010 01:01 AM : c3052a99a24f462b418632a05328bb38 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381-IE8\SP3QFE\wininet.dll : 919,040 : 05/06/2010 01:36 AM : c1490f68b44af8b781f52f12f564625d [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wininet.dll : 656,384 : 08/04/2004 07:56 AM : c0823fc5469663ba63e7db88f9919d70 [Pos Repl]
 +-> C:\WINDOWS\ie8\wininet.dll : 656,384 : 08/04/2004 07:56 AM : c0823fc5469663ba63e7db88f9919d70 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2416400-IE8\wininet.dll : 916,480 : 05/06/2010 07:41 AM : 2d9c7b010409372c34f725da5cced083 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2482017-IE8\wininet.dll : 916,480 : 11/05/2010 07:26 PM : 306a2b05ea9846278113964dc6e2c940 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2497640-IE8\wininet.dll : 916,480 : 12/20/2010 05:59 PM : 88014d62b5e3cdb0ac67948d86c926c8 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2530548-IE8\wininet.dll : 916,480 : 02/22/2011 05:06 PM : f192d49eefe297fa858b2c774ba2291d [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2559049-IE8\wininet.dll : 916,480 : 04/25/2011 05:11 AM : cc951c2212a200475a587a440e0aa804 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2586448-IE8\wininet.dll : 916,480 : 06/23/2011 01:36 PM : af4eddc6c0446fce5681b5ded52b8f0e [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2618444-IE8\wininet.dll : 916,480 : 08/22/2011 06:48 PM : 1a377838b4b468e37c3eeb5baa24f925 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2647516-IE8\wininet.dll : 916,992 : 11/04/2011 02:20 PM : 552263502ea8c24d301a0c43ff90b3ed [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2675157-IE8\wininet.dll : 916,992 : 12/17/2011 01:46 PM : f362d50fbdc6e34918df41bde1770e5c [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB2699988-IE8\wininet.dll : 916,992 : 03/01/2012 01:01 AM : 009e7b4c284f080608d7286484015ee5 [Pos Repl]
 +-> C:\WINDOWS\ie8updates\KB982381-IE8\wininet.dll : 914,944 : 03/08/2009 01:34 AM : 6ce32f7778061ccc5814d5e0f282d369 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wininet.dll : 666,112 : 04/13/2008 07:12 PM : 7a4f775abb2f1c97def3e73afa2faedd [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\06af2d630217aa32a4f6f6b9c5c1a3ba\SP3GDR\wininet.dll : 916,992 : 07/02/2012 00:49 AM : c4300cb4d20b1159dc77e01e8a2525ec [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\06af2d630217aa32a4f6f6b9c5c1a3ba\SP3QFE\wininet.dll : 920,064 : 07/02/2012 00:48 AM : efb2241de3aa6480521a16d0cb67b0ec [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3GDR\wininet.dll : 916,480 : 05/06/2010 00:41 AM : 2d9c7b010409372c34f725da5cced083 [Pos Repl]
 +-> C:\WINDOWS\SoftwareDistribution\Download\e9e3bc7b49018c1f53cc0d1bd73cad37\SP3QFE\wininet.dll : 919,040 : 05/06/2010 00:36 AM : c1490f68b44af8b781f52f12f564625d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wininet.dll : 916,992 : 05/16/2012 07:08 AM : 6b1774334e2975aa60596e54f5ea1430 [Pos Repl]

 * C:\WINDOWS\System32\winlogon.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe : 502,272 : 08/04/2004 07:56 AM : 01c3346c241652f43aed8e2149881bfe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\winlogon.exe : 507,904 : 04/13/2008 07:12 PM : ed0ef0a136dec83df69f04118870003e [Pos Repl]

 * C:\WINDOWS\System32\ws2_32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll : 82,944 : 08/04/2004 07:56 AM : 2ed0b7f12a60f90092081c50fa0ec2b2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll : 82,432 : 04/13/2008 07:12 PM : 2ccc474eb85ceaa3e1fa1726580a3e5a [Pos Repl]

 * C:\WINDOWS\System32\ws2help.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ws2help.dll : 19,968 : 08/04/2004 07:56 AM : 9beacb911ca61e5881102188ab7fb431 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2help.dll : 19,968 : 04/13/2008 07:12 PM : 9789e95e1d88eeb4b922bf3ea7779c28 [Pos Repl]

 * C:\WINDOWS\System32\wscntfy.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wscntfy.exe : 13,824 : 08/04/2004 07:56 AM : 49911dd39e023bb6c45e4e436cfbd297 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe : 13,824 : 04/13/2008 07:12 PM : f92e1076c42fcd6db3d72d8cfe9816d5 [Pos Repl]

 * C:\WINDOWS\System32\xmlprov.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\xmlprov.dll : 129,536 : 08/04/2004 07:56 AM : eef46dab68229a14da3d8e73c99e2959 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\xmlprov.dll : 129,024 : 04/13/2008 07:12 PM : 295d21f14c335b53cb8154e5b1f892b9 [Pos Repl]

 * C:\WINDOWS\explorer.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\explorer.exe : 1,032,192 : 08/04/2004 07:56 AM : a0732187050030ae399b241436565e64 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\explorer.exe : 1,033,728 : 04/13/2008 07:12 PM : 12896823fb95bfb3dc9b46bcaedc9923 [Pos Repl]

Checking HOSTS File:

 * HOSTS file entries found:

  127.0.0.1       localhost

Program finished at: 03/29/2013 06:39:35 PM
Execution time: 0 hours(s), 14 minute(s), and 54 seconds(s)



#12 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:09:03 AM

Posted 30 March 2013 - 08:22 AM

Hi
 
Since rKill log indicates there may be the possibility of patched drivers, please do the following next:
------------------------------
 
Please follow the instructions in ==>This Guide<== starting at Step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.


Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#13 mrallyn

mrallyn
  • Topic Starter

  • Members
  • 162 posts
  • OFFLINE
  •  
  • Local time:03:03 AM

Posted 30 March 2013 - 04:22 PM

Thanks again for your help.



#14 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,912 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:03 AM

Posted 30 March 2013 - 08:00 PM

Now that your log is properly posted, you should NOT make further changes to your computer (install/uninstall programs, use special fix tools, delete files, edit the registry, etc) unless advised by a Malware Removal Team member, nor should you continue to ask for help elsewhere. Doing so can result in system changes which may not show it the log you already posted. Further, any modifications you make on your own may cause confusion for the helper assisting you and could complicate the malware removal process which would extend the time it takes to clean your computer.

From this point on the Malware Removal Team should be the only members that you take advice from, until they have verified your log as clean.

Please be patient. It may take a while to get a response because the Malware Removal Team members are very busy working logs posted before yours. They are volunteers who will help you out as soon as possible. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the Malware Removal Team. Generally the staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response there will be 1 reply. A team member, looking for a new log to work may assume another MRL Team member is already assisting you and not open the thread to respond.

The current wait time is 1 - 2 days and ALL logs are answered.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

To avoid confusion, I am closing this topic.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users