Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Computer keeps trying to connect to "Pinball corp"


  • This topic is locked This topic is locked
37 replies to this topic

#1 guitarzanaz

guitarzanaz

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 30 March 2013 - 09:17 AM

I'm reposting this because I originally tried to attach the dds files and it didn't seem to work. So I just copied and pasted this time. Not sure if that's how I'm supposed to do it. 

 

 

Hi everyone. Malwarebytes keeps saying its blocking my computer from connecting with the IP address for Pinball corp. I recently got infected with "whitesmoke" in my chrome browser. I ran TDSKiller and ADwCleaner and that got rid of a lot of toolbars and what not I had on my computer for who knows how long. But I'm still having the Pinball corp issue. The DDS logs are attached.

 

Thanks in advance for your help!

 

 

DDS (Ver_2012-11-20.01) - NTFS_x86 
Internet Explorer: 8.0.6001.18702  BrowserJavaVersion: 10.15.2
Run by Gregg Jantzen at 20:44:26 on 2013-03-26
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.2038.660 [GMT -7:00]
.
AV: AVG Internet Security 2013 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: AVG Internet Security 2013 *Enabled* 
FW: McAfee Firewall *Enabled* 
.
============== Running Processes ================
.
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe
C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoEJCD.exe
C:\Program Files\AVG\AVG2013\avgfws.exe
C:\Program Files\AVG\AVG2013\avgwdsvc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\McAfee Online Backup\MOBKbackup.exe
C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
C:\Program Files\McAfee\MAT\McPvTray.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\AVG SafeGuard toolbar\vprot.exe
c:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGAA.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\McAfee Security Scan\3.0.318\SSScheduler.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\GoogleCrashHandler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FARNGAA.EXE
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\PROGRA~1\Intuit\QUICKB~1\QBDBMgr.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
C:\WINDOWS\system32\calc.exe
C:\Program Files\Common Files\Intuit\QuickBooks\axlbridge.exe
C:\PROGRA~1\Intuit\QUICKB~1\dbextclr11.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
c:\PROGRA~1\mcafee\SITEAD~1\saui.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Runtime Software\DriveImage XML\dixml.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\msdtc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
uDefault_Page_URL = hxxp://www.msn.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
mSearchAssistant = hxxp://www.google.com/ie
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
dURLSearchHooks: {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - <orphaned>
BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: MSS+ Identifier: {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - c:\program files\mcafee security scan\3.0.318\McAfeeMSS_IE.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: McAfee Phishing Filter: {27B4851A-3207-45A2-B947-BE8AFE6163AB} - 
BHO: Windows Live Family Safety Browser Helper Class: {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - c:\program files\windows live\family safety\fssbho.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - <orphaned>
BHO: DriveLetterAccess: {5CA3D70E-1895-11CF-8E15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - <orphaned>
BHO: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20110611015322.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Browse For Change BHO: {912C156F-05CF-4B62-851A-96E167A677B0} - 
BHO: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - c:\program files\epson software\easy photo print\EPTBL.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.8313.1002\swg.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: GetSavin 5.0: {E541D5C4-2EC7-4D1C-A64B-7996D29A3396} - 
BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - c:\program files\epson software\easy photo print\EPTBL.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
EB: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - <orphaned>
EB: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - <orphaned>
uRun: [OE_OEM] "c:\program files\trend micro\internet security 12\tmas_oe\TMAS_OEMon.exe"
uRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
uRun: [Search Protection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [Google Update] "c:\documents and settings\gregg jantzen\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [EPSON NX620 Series] c:\windows\system32\spool\drivers\w32x86\3\e_fatigaa.exe /fu "c:\windows\temp\E_S231F.tmp" /EF "HKCU"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [WinCalendarV3] "c:\program files\sapro systems wincalendarv3\WinCalendarV3_SysTray.exe /q /c"
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [MimBoot] c:\progra~1\musicm~1\musicm~3\mimboot.exe
mRun: [masqform.exe] c:\program files\pureedge\viewer 6.0\masqform.exe -UpdateCurrentUser
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [ISUSPM Startup] "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
mRun: [IntelMeM] c:\program files\intel\modem event monitor\IntelMEM.exe
mRun: [fssui] "c:\program files\windows live\family safety\fsui.exe" -autorun
mRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\AppleSyncNotifier.exe
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [DLA] c:\windows\system32\dla\DLACTRLW.EXE
mRun: [Windows Defender] "c:\program files\windows defender\MSASCui.exe" -hide
mRun: [THGuard] "c:\program files\trojanhunter 5.0\THGuard.exe"
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [DVDLauncher] "c:\program files\cyberlink\powerdvd\DVDLauncher.exe"
mRun: [EEventManager] "c:\program files\epson software\event manager\EEventManager.exe"
mRun: [IntelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe"
mRun: [MBkLogonHook] <no file>
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
dRun: [WinCalendarV3] "c:\program files\sapro systems wincalendarv3\WinCalendarV3_SysTray.exe" /q /c
StartupFolder: c:\docume~1\greggj~1\startm~1\programs\startup\zooskm~1.lnk - c:\program files\zooskmessenger\ZooskMessenger.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\intuit~1.lnk - c:\program files\common files\intuit\dataprotect\IntuitDataProtect.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~2.lnk - c:\program files\logitech\desktop messenger\8876480\program\LogitechDesktopMessenger.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\3.0.318\SSScheduler.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\nikonm~1.lnk - c:\program files\common files\nikon\monitor\NkMonitor.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quickb~2.lnk - c:\program files\common files\intuit\quickbooks\qbupdate\qbupdate.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quickb~1.lnk - c:\program files\intuit\quickbooks 2012\QBW32.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Add to Google Photos Screensa&ver - <no file>
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/5/b/0/5b0d4654-aa20-495c-b89f-c1c34c691085/LegitCheckControl.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdate/content/opuc3.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1343771717078
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - hxxp://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://www.adobe.com/products/acrobat/nos/gp.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.0.1 205.171.2.25
TCP: Interfaces\{855FB003-4AB6-4A8B-91F2-5CDD66409A4C} : DHCPNameServer = 192.168.0.1 205.171.2.25
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\McSnIePl.dll
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Handler: intu-help-qb5 - {867FCB77-9823-4cd6-8210-D85F968D466F} - c:\program files\intuit\quickbooks 2012\HelpAsyncPluggableProtocol.dll
Handler: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - 
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\gregg jantzen\application data\mozilla\firefox\profiles\m4gt5qw3.default\
FF - prefs.js: browser.startup.homepage - hxxp://mysearch.avg.com/?cid={D714C0EE-D0FB-4508-9433-A7285FF0FE98}&mid=945229b08b6247d38967d16d3d14575c-63ee2f9ef65bfb979519ac2a3b1cad250122abfc&lang=en&ds=AVG&pr=pr&d=2013-03-25 10:37:54&v=15.0.0.2&pid=safeguard&sg=1&sap=hp
FF - plugin: c:\documents and settings\gregg jantzen\local settings\application data\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\progra~1\mcafee\msc\npMcSnFFPl.dll
FF - plugin: c:\progra~1\yahoo!\common\npyaxmpb.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\google updater\2.4.2432.1652\npCIDetect14.dll
FF - plugin: c:\program files\google\update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.115\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\google\update\1.3.21.99\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\mcafee security scan\3.0.318\npMcAfeeMSS.dll
FF - plugin: c:\program files\mcafee\siteadvisor\NPMcFFPlg32.dll
FF - plugin: c:\program files\mcafee\supportability\mvt\NPMVTPlugin.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npunagi2.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - plugin: c:\windows\system32\npwmsdrm.dll
FF - ExtSQL: !HIDDEN! 2009-09-02 03:00; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-2-8 60216]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-2-8 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-2-8 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-2-8 39224]
R0 McPvDrv;McPvDrv Driver;c:\windows\system32\drivers\McPvDrv.sys [2011-9-10 64048]
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2010-1-5 459728]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-2-26 208184]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22328]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-2-8 170808]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-2-14 182072]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-3-25 33624]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2010-5-13 89368]
R1 MOBKFilter;MOBKFilter;c:\windows\system32\drivers\MOBK.sys [2010-5-13 54776]
R2 AutoInstallEJCD;Auto Install Eject CD Service;c:\docume~1\greggj~1\locals~1\temp\rarsfx0\AutoInstallEJCDSVC.exe [2010-7-8 16384]
R2 avgfws;AVG Firewall;c:\program files\avg\avg2013\avgfws.exe [2013-2-19 1418184]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2013-2-19 282624]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [2011-8-7 21992]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-4-29 54752]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-3-25 398184]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-3-25 682344]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-5-13 214904]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-5-13 214904]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-5-13 214904]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 McShield;McAfee McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-5-13 165000]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-5-13 159832]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-5-13 148520]
R2 MOBKbackup;McAfee Online Backup;c:\program files\mcafee online backup\MOBKbackup.exe [2010-2-5 229688]
R2 QBVSS;QBIDPService;c:\program files\common files\intuit\dataprotect\QBIDPService.exe [2011-8-19 1248256]
R2 sprtlisten;SupportSoft Listener Service;c:\program files\common files\supportsoft\bin\sprtlisten.exe [2009-3-19 1213728]
R2 vToolbarUpdater15.0.0;vToolbarUpdater15.0.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.0.0\ToolbarUpdater.exe [2013-3-25 990896]
R2 ZDCNDIS5;ZDCNDIS5 NDIS5.1 Protocol Driver;c:\windows\system32\ZDCndis5.sys [2010-7-8 20736]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [2012-1-12 30944]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-5-13 57432]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-3-25 21104]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2010-5-13 179248]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2010-5-13 59288]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-5-13 337912]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2010-5-13 83688]
R3 QWXN720;Qwest 802.11n XN720 Driver;c:\windows\system32\drivers\WLANUHN.sys [2010-7-8 453120]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2013-2-27 4937264]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 gupdate1ca804f5cbf98b4;Google Update Service (gupdate1ca804f5cbf98b4);c:\program files\google\update\GoogleUpdate.exe [2009-12-18 133104]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-5-13 214904]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [2012-1-12 30944]
S3 cpuz134;cpuz134;\??\c:\docume~1\greggj~1\locals~1\temp\cpuz134\cpuz134_x32.sys --> c:\docume~1\greggj~1\locals~1\temp\cpuz134\cpuz134_x32.sys [?]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-4-28 704872]
S3 InventoriaService;Inventoria Stock Manager;c:\program files\nch software\inventoria\inventoria.exe [2011-8-31 1384964]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.0.318\McCHSvc.exe [2013-2-5 235216]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2010-5-13 83688]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-5-13 85984]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2005-8-16 14336]
.
=============== Created Last 30 ================
.
2013-03-27 03:26:48 -------- d-----w- c:\program files\Runtime Software
2013-03-26 04:56:46 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\AVG Secure Search
2013-03-26 02:49:16 -------- d-----w- c:\program files\ESET
2013-03-25 21:45:32 -------- d-----w- c:\documents and settings\gregg jantzen\application data\AVG2013
2013-03-25 17:38:37 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\AVG SafeGuard toolbar
2013-03-25 17:38:17 -------- d-----w- c:\documents and settings\gregg jantzen\application data\TuneUp Software
2013-03-25 17:38:04 -------- d-----w- c:\documents and settings\all users\application data\AVG SafeGuard toolbar
2013-03-25 17:37:55 -------- d-----w- c:\documents and settings\gregg jantzen\application data\AVG SafeGuard toolbar
2013-03-25 17:37:50 33624 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-03-25 17:37:34 -------- d-----w- c:\program files\common files\AVG Secure Search
2013-03-25 17:37:33 -------- d-----w- c:\program files\AVG SafeGuard toolbar
2013-03-25 15:27:35 -------- d--h--w- C:\$AVG
2013-03-25 15:27:34 -------- d-----w- c:\documents and settings\all users\application data\AVG2013
2013-03-25 15:26:33 -------- d-----w- c:\program files\AVG
2013-03-25 15:18:29 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\MFAData
2013-03-25 15:18:29 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\Avg2013
2013-03-25 15:18:29 -------- d-----w- c:\documents and settings\all users\application data\MFAData
2013-03-25 13:53:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-25 13:53:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-03-25 04:33:32 -------- d-----w- c:\documents and settings\gregg jantzen\application data\MAGIX
2013-03-25 04:32:09 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\Xara
2013-03-25 04:32:09 -------- d-----w- c:\documents and settings\all users\application data\MAGIX
2013-03-25 04:31:12 -------- d-----w- c:\documents and settings\all users\application data\Xara
2013-03-25 04:20:29 -------- d-----w- c:\documents and settings\gregg jantzen\local settings\application data\CRE
2013-03-21 22:27:26 -------- d-----w- c:\documents and settings\all users\application data\WinCalendarV3
2013-03-21 22:27:14 -------- d-----w- c:\program files\Sapro Systems WinCalendarV3
2013-03-01 17:32:20 22328 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-02-27 06:40:46 208184 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
.
==================== Find3M  ====================
.
2013-03-25 04:32:15 120200 ----a-w- c:\windows\system32\DLLDEV32i.dll
2013-03-13 14:10:00 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-13 14:10:00 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-22 18:04:51 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-02-22 18:04:47 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-02-22 18:04:47 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-02-22 18:04:47 143872 ----a-w- c:\windows\system32\javacpl.cpl
2013-02-14 10:52:46 182072 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-02-12 00:32:23 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-12 00:32:23 12928 ------w- c:\windows\system32\drivers\usb8023x.sys
2013-02-08 11:37:56 245048 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-02-08 11:37:52 60216 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-02-08 11:37:44 170808 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-02-08 11:37:40 39224 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-02-05 20:05:47 916480 ----a-w- c:\windows\system32\wininet.dll
2013-02-05 20:05:46 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-02-05 20:05:46 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-02-05 05:53:57 385024 ----a-w- c:\windows\system32\html.iec
2013-01-26 03:55:44 552448 ----a-w- c:\windows\system32\oleaut32.dll
2013-01-07 01:19:45 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-07 00:37:01 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-04 01:20:00 1867264 ----a-w- c:\windows\system32\win32k.sys
2013-01-02 06:49:10 1292288 ----a-w- c:\windows\system32\quartz.dll
2007-12-09 03:52:34 12413440 -c--a-w- c:\program files\avgas-setup-7.5.1.43.exe
2007-12-09 02:50:44 401720 -c--a-w- c:\program files\HiJackThis.exe
2007-12-09 02:50:44 401720 -c--a-w- c:\program files\Gregg Jantzen.exe
2006-09-14 01:27:15 128280 -c--a-w- c:\program files\293623.exe
.
=================== ROOTKIT  ====================
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600 
.
CreateFile("\\.\PHYSICALDRIVE0"): The process cannot access the file because it is being used by another process.
device: opened successfully
user: error reading MBR 
.
Disk trace:
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys iomdisk.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 
c:\windows\system32\drivers\iomdisk.sys Iomega Corporation Iomega Disk Filter Driver
1 ntkrnlpa!IofCallDriver[0x804EF1F0] -> \Device\Harddisk0\DR0[0x8A6BCAB8]
3 CLASSPNP[0xBA0E8FD7] -> ntkrnlpa!IofCallDriver[0x804EF1F0] -> [0x8A6E4AC8]
5 iomdisk[0xBA109DA4] -> ntkrnlpa!IofCallDriver[0x804EF1F0] -> \Device\Ide\IdeDeviceP1T0L0-e[0x8A6BEB00]
kernel: MBR read successfully
_asm { MOV AX, 0x0; MOV SS, AX; MOV SP, 0x7c00; MOV DS, AX; CLD ; MOV CX, 0x80; MOV SI, SP; MOV DI, 0x600; MOV ES, AX; REP MOVSD ; JMP FAR 0x0:0x62d;  }
user != kernel MBR !!! 
.
============= FINISH: 20:46:35.85 ===============
 
 
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP1137: 2/2/2013 10:13:16 AM - Installed Java 7 Update 13
RP1138: 2/3/2013 11:28:59 AM - System Checkpoint
RP1139: 2/4/2013 12:40:06 PM - System Checkpoint
RP1140: 2/5/2013 3:35:09 PM - System Checkpoint
RP1141: 2/6/2013 5:09:09 PM - System Checkpoint
RP1142: 2/7/2013 5:28:11 PM - System Checkpoint
RP1143: 2/8/2013 5:58:53 PM - System Checkpoint
RP1144: 2/9/2013 6:16:13 PM - System Checkpoint
RP1145: 2/10/2013 6:49:58 PM - System Checkpoint
RP1146: 2/11/2013 7:53:54 PM - System Checkpoint
RP1147: 2/12/2013 9:31:23 PM - System Checkpoint
RP1148: 2/14/2013 12:30:50 AM - System Checkpoint
RP1149: 2/14/2013 3:00:32 AM - Software Distribution Service 3.0
RP1150: 2/15/2013 1:04:57 PM - System Checkpoint
RP1151: 2/16/2013 1:26:58 PM - System Checkpoint
RP1152: 2/17/2013 1:29:34 PM - System Checkpoint
RP1153: 2/17/2013 4:26:57 PM - Unsigned driver install
RP1154: 2/18/2013 4:33:04 PM - System Checkpoint
RP1155: 2/19/2013 7:10:29 PM - System Checkpoint
RP1156: 2/20/2013 8:35:35 PM - System Checkpoint
RP1157: 2/21/2013 9:55:35 PM - System Checkpoint
RP1158: 2/22/2013 11:03:40 AM - Removed Java 7 Update 13
RP1159: 2/22/2013 11:04:33 AM - Installed Java 7 Update 15
RP1160: 2/22/2013 9:51:28 PM - Unsigned driver install
RP1161: 2/23/2013 10:04:30 PM - System Checkpoint
RP1162: 2/24/2013 10:04:46 PM - System Checkpoint
RP1163: 2/26/2013 12:45:49 AM - System Checkpoint
RP1164: 2/27/2013 1:08:10 AM - System Checkpoint
RP1165: 2/28/2013 1:40:34 AM - System Checkpoint
RP1166: 3/1/2013 8:41:19 PM - System Checkpoint
RP1167: 3/3/2013 1:58:33 AM - System Checkpoint
RP1168: 3/4/2013 2:50:38 AM - System Checkpoint
RP1169: 3/5/2013 3:29:58 AM - System Checkpoint
RP1170: 3/6/2013 5:14:37 AM - System Checkpoint
RP1171: 3/7/2013 6:26:34 AM - System Checkpoint
RP1172: 3/8/2013 9:03:41 AM - System Checkpoint
RP1173: 3/9/2013 9:26:32 AM - System Checkpoint
RP1174: 3/10/2013 9:30:05 AM - System Checkpoint
RP1175: 3/11/2013 10:57:30 AM - System Checkpoint
RP1176: 3/12/2013 1:13:09 PM - System Checkpoint
RP1177: 3/13/2013 1:53:09 PM - System Checkpoint
RP1178: 3/14/2013 3:00:34 AM - Software Distribution Service 3.0
RP1179: 3/15/2013 4:07:39 AM - System Checkpoint
RP1180: 3/16/2013 4:16:09 AM - System Checkpoint
RP1181: 3/16/2013 6:56:40 PM - Software Distribution Service 3.0
RP1182: 3/17/2013 7:37:42 PM - System Checkpoint
RP1183: 3/18/2013 10:12:15 PM - System Checkpoint
RP1184: 3/22/2013 4:35:33 PM - System Checkpoint
RP1185: 3/23/2013 5:27:07 PM - System Checkpoint
RP1186: 3/24/2013 5:39:34 PM - System Checkpoint
RP1187: 3/25/2013 8:26:29 AM - Installed AVG 2013
RP1188: 3/25/2013 8:27:08 AM - Installed AVG 2013
RP1189: 3/25/2013 2:58:09 PM - Software Distribution Service 3.0
RP1190: 3/25/2013 10:02:52 PM - Removed Bing Bar
RP1191: 3/25/2013 10:13:48 PM - Removed Bonjour
RP1192: 3/25/2013 10:17:15 PM - Removed Quicken 2011.
RP1193: 3/26/2013 8:36:15 PM - Unsigned driver install
.
==== Installed Programs ======================
.
Acrobat.com
Adobe AIR
Adobe Download Manager
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Photoshop Album 2.0 Starter Edition
Adobe Reader X (10.1.6)
Adobe Shockwave Player 11
AIM 7
AnswerWorks 5.0 English Runtime
AOLIcon
Apple Application Support
Apple Mobile Device Support
Apple Software Update
AVG 2013
Camera Window
Canon Camera Window for ZoomBrowser EX
Canon i860
Canon PhotoRecord
Canon RAW Image Task for ZoomBrowser EX
Canon RemoteCapture Task for ZoomBrowser EX
Canon Utilities PhotoStitch 3.1
Canon Utilities ZoomBrowser EX
CDDRV_Installer
ClientTools
Compatibility Pack for the 2007 Office system
CPUID CPU-Z 1.58
Critical Update for Windows Media Player 11 (KB959772)
Dell Driver Reset Tool
Dell System Restore
Digital Content Portal
DivX Version Checker
DriveImage XML (Private Edition)
EducateU
Epson CreativeZone
Epson Easy Photo Print 2
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
Epson Easy Photo Print Plug-in for Windows Live Photo Gallery
Epson Easy Photo Print Plug-in for Windows Live Photo Gallery Setup
Epson Event Manager
EPSON NX510 Series Printer Uninstall
EPSON NX620 Series Printer Uninstall
EPSON Scan
erLT
ESET Online Scanner v3
ESPNMotion
GemMaster Mystic
getPlus®_ocx
GetSavin
GIMP 2.6.11
Google Chrome
Google Talk (remove only)
Google Toolbar for Internet Explorer
Google Update Helper
Google Updater
High Definition Audio Driver Package - KB835221
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 10 (KB903157)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB2158563)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB2756822)
Hotfix for Windows XP (KB2779562)
Hotfix for Windows XP (KB915800-v4)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB954708)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
ICS Viewer 6.0
InstallIQ Updater
Intel® 537EP V9x DF PCI Modem
Intel® Graphics Media Accelerator Driver
Intel® PRO Network Connections Drivers
Intel® PROSet for Wired Connections
Internet Explorer Default Page
Inventoria Stock Manager
iPhone Configuration Utility
iTunes
Java 2 Runtime Environment, SE v1.4.2_03
Java 7 Update 15
Java Auto Updater
Java™ 6 Update 3
Java™ 6 Update 31
Java™ 6 Update 5
Java™ 6 Update 7
JavaFX 2.1.1
Junk Mail filter update
KhalInstallWrapper
Learn2 Player (Uninstall Only)
Logitech Desktop Messenger
Logitech SetPoint
Malwarebytes Anti-Malware version 1.70.0.1100
McAfee Backup and Restore
McAfee Online Backup
McAfee Security Scan Plus
McAfee Total Protection
McAfee Virtual Technician
Microsoft .NET Framework 1.0 Hotfix (KB2572066)
Microsoft .NET Framework 1.0 Hotfix (KB2604042)
Microsoft .NET Framework 1.0 Hotfix (KB2656378)
Microsoft .NET Framework 1.0 Hotfix (KB953295)
Microsoft .NET Framework 1.0 Hotfix (KB979904)
Microsoft .NET Framework 1.0 Security Update (KB2698035)
Microsoft .NET Framework 1.0 Security Update (KB2742607)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Base Smart Card Cryptographic Service Provider Package
Microsoft Calculator Plus
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft IntelliPoint 7.0
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft National Language Support Downlevel APIs
Microsoft Office 2003 Primary Interop Assemblies
Microsoft Office File Validation Add-In
Microsoft Office Live Add-in 1.5
Microsoft Office Outlook Connector
Microsoft Office Standard Edition 2003
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Photo Story 2 LE
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft VC9 runtime libraries
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft Visual Studio 2005 Tools for Office Runtime
MileageWiz
MobileMe Control Panel
Modem Event Monitor
Modem Helper
Modem On Hold
Mozilla Firefox 11.0 (x86 en-US)
MSN
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB2758694)
Musicmatch for Windows Media Player
Musicmatch® Jukebox
My.Freeze.com NetAssistant
Napster
Napster Burn Engine
NetZeroInstallers
Nikon Message Center
Nikon Transfer
OpenOffice.org Installer 1.0
Otto
Philips Songbird
PhotoStitch
PIXresizer 2.0.4
PowerDVD 5.5
QuickBooks
QuickBooks Pro 2012
QuickTime
Qwest Installer
Qwest QuickAssist Desktop Tools
RAW Image Task
RemoteCapture Task
ResizerXT v1.2
Rhapsody
Safari
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2416472)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2530548)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2586448)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2647516)
Security Update for Windows Internet Explorer 8 (KB2675157)
Security Update for Windows Internet Explorer 8 (KB2699988)
Security Update for Windows Internet Explorer 8 (KB2722913)
Security Update for Windows Internet Explorer 8 (KB2744842)
Security Update for Windows Internet Explorer 8 (KB2761465)
Security Update for Windows Internet Explorer 8 (KB2792100)
Security Update for Windows Internet Explorer 8 (KB2797052)
Security Update for Windows Internet Explorer 8 (KB2799329)
Security Update for Windows Internet Explorer 8 (KB2809289)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 10 (KB911565)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Search 4 - KB963093
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2160329)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2279986)
Security Update for Windows XP (KB2286198)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2476687)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479628)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485376)
Security Update for Windows XP (KB2491683)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2503665)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2524375)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2536276)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2544893)
Security Update for Windows XP (KB2555917)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2621440)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB2641653)
Security Update for Windows XP (KB2646524)
Security Update for Windows XP (KB2647518)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2660465)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2685939)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2695962)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2705219)
Security Update for Windows XP (KB2707511)
Security Update for Windows XP (KB2709162)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2718523)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135)
Security Update for Windows XP (KB2724197)
Security Update for Windows XP (KB2727528)
Security Update for Windows XP (KB2731847)
Security Update for Windows XP (KB2753842-v2)
Security Update for Windows XP (KB2753842)
Security Update for Windows XP (KB2757638)
Security Update for Windows XP (KB2758857)
Security Update for Windows XP (KB2761226)
Security Update for Windows XP (KB2770660)
Security Update for Windows XP (KB2778344)
Security Update for Windows XP (KB2779030)
Security Update for Windows XP (KB2780091)
Security Update for Windows XP (KB2799494)
Security Update for Windows XP (KB2802968)
Security Update for Windows XP (KB2807986)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981852)
Security Update for Windows XP (KB981957)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
Security Update for Windows XP (KB982802)
Segoe UI
Sonic Encoders
Sonic UDF Reader
Sony USB Driver
Sublime Text 2 Build 2139
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Windows Internet Explorer 8 (KB2598845)
Update for Windows Internet Explorer 8 (KB2632503)
Update for Windows Internet Explorer 8 (KB975364)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows Media Player 10 (KB910393)
Update for Windows Media Player 10 (KB913800)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB2492386)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2607712)
Update for Windows XP (KB2616676)
Update for Windows XP (KB2641690)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2718704)
Update for Windows XP (KB2736233)
Update for Windows XP (KB2749655)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB961503)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971029)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update Rollup 2 for Windows XP Media Center Edition 2005
WebFldrs XP
WinCalendarV3
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live Mail
Windows Live Messenger
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Live Writer
Windows Management Framework Core
Windows Media Format 11 runtime
Windows Media Player 10
Windows Media Player 10 Hotfix - KB895316
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
Windows Media Player 11
Windows Media Player Firefox Plugin
Windows Search 4.0
Windows XP Media Center Edition 2005 KB2502898
Windows XP Media Center Edition 2005 KB2619340
Windows XP Media Center Edition 2005 KB2628259
Windows XP Media Center Edition 2005 KB908246
Windows XP Media Center Edition 2005 KB925766
Windows XP Media Center Edition 2005 KB973768
Windows XP Service Pack 3
WinUndelete
Yahoo! Messenger
Yahoo! Software Update
Yahoo! Toolbar
.
==== Event Viewer Messages From Past Week ========
.
3/26/2013 8:36:11 PM, error: VolSnap [12]  - The shadow copy of volume C: became low on diff area space before it was properly installed.
3/25/2013 9:54:00 PM, error: DCOM [10000]  - Unable to start a DCOM Server: {26608B46-476A-4BF1-9CC6-AFEA28EBBC17}. The error: "%193" Happened while starting this command: c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
3/25/2013 6:22:41 PM, error: DCOM [10000]  - Unable to start a DCOM Server: {9B3BEB4E-1C5E-4A5F-BB36-2F6587DD34E2}. The error: "%193" Happened while starting this command: c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
3/25/2013 6:22:37 PM, error: Service Control Manager [7000]  - The MCSTRM service failed to start due to the following error:  The system cannot find the file specified.
3/25/2013 6:22:37 PM, error: Service Control Manager [7000]  - The Iomega Activity Disk2 service failed to start due to the following error:  The system cannot find the file specified.
3/24/2013 6:17:10 AM, error: DCOM [10000]  - Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}. The error: "%193" Happened while starting this command: c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
3/22/2013 1:01:53 PM, error: Service Control Manager [7034]  - The QBCFMonitorService service terminated unexpectedly.  It has done this 1 time(s).
.
==== End Of File ===========================
 


BC AdBot (Login to Remove)

 


#2 Maurice Naggar

Maurice Naggar

    Eradicator de malware


  • Malware Response Team
  • 1,088 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:12:58 AM

Posted 30 March 2013 - 09:46 AM

Hello,

This system has two secuity suites installed and each with an active firewall too.
AVG Internet Security 2013 + McAfee Anti-Virus and Anti-Spyware

Pick one to keep, and Uninstall the other, then logoff and restart the system.
Tell me which one you kept.
If you do not have a license for McAfee or if it was only a trial, then uninstall it.

After that is squared away,
Close any open work documents, if any, saving your work.
Make sure to close any other programs that you started before.

Please download Junkware Removal Tool by Thisisu to your Desktop.
  • Please close your security software to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or 7 or 8, right-mouse click JRT.exe and select Run as administrator.
  • The tool will open and display information and disclaimer in a Command prompt window.
  • I'd suggest you close all internet browsers at this point.
  • Press a key on keyboard to start scanning your system.
  • Please be very patient as this will take several minutes to complete, depending on your system's specifications.
  • There are approximatly 12 phases or so in this tool. You will see each phase listed in the Command prompt window.
  • On completion, a log (JRT.txt) is saved to your Desktop and will automatically open. And the command prompt will have been closed.
  • Please post the contents of JRT.txt into a new reply.
  • Re-enable your security software.

~Maurice Naggar
MS-MVP (Oct 2002 - Sept 2010)

#3 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 30 March 2013 - 09:07 PM

Thanks for the reply! Sorry about all the post's on the same subject, when I was trying to upload it it was saying the server was having problems....so I guess it was uploading anyways.

 

Here's the log you asked for, thanks again!

 

 

Version: 4.7.6 (03.30.2013:2)
OS: Microsoft Windows XP x86
Ran by Gregg Jantzen on Sat 03/30/2013 at 18:54:27.65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\DisplayName
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\URL
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] hkey_local_machine\software\classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{443789b7-f39c-4b5c-9287-da72d38f4fe6}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{443789b7-f39c-4b5c-9287-da72d38f4fe6}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{81017ea9-9aa8-4a6a-9734-7af40e7d593f}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{912c156f-05cf-4b62-851a-96e167a677b0}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{912c156f-05cf-4b62-851a-96e167a677b0}
Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{91607fa7-3c2f-4f90-93e3-d5337a6b0ac2}
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\Documents and Settings\All Users\application data\w3i"
Successfully deleted: [Folder] "C:\Program Files\w3i"
 
 
 
~~~ FireFox
 
Successfully deleted: [Folder] C:\Documents and Settings\Gregg Jantzen\Application Data\mozilla\firefox\profiles\m4gt5qw3.default\extensions\getsavin@jetpack
Successfully deleted: [Folder] C:\Documents and Settings\Gregg Jantzen\Application Data\mozilla\firefox\profiles\m4gt5qw3.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
Successfully deleted the following from C:\Documents and Settings\Gregg Jantzen\Application Data\mozilla\firefox\profiles\m4gt5qw3.default\prefs.js
 
user_pref("aim_toolbar.search.searchtype", "web");
user_pref("browser.startup.homepage", "hxxp://mysearch.avg.com/?cid={D714C0EE-D0FB-4508-9433-A7285FF0FE98}&mid=945229b08b6247d38967d16d3d14575c-63ee2f9ef65bfb979519ac2a3b1cad2
user_pref("ibryte_browseforchange.installpixelfired", true);
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 03/30/2013 at 19:03:45.60
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


#4 Maurice Naggar

Maurice Naggar

    Eradicator de malware


  • Malware Response Team
  • 1,088 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:12:58 AM

Posted 30 March 2013 - 09:38 PM

Step 1
1. Go >> Here << and download ERUNT
(ERUNT (Emergency Recovery Utility NT) is a free program that allows you to keep a complete backup of your registry and restore it when needed.)
2. Install ERUNT by following the prompts
(use the default install settings but say no to the portion that asks you to add ERUNT to the start-up folder, if you like you can enable this option later)
3. Start ERUNT
(either by double clicking on the desktop icon or choosing to start the program at the end of the setup)
4. Choose a location for the backup
(the default location is C:\WINDOWS\ERDNT which is acceptable).
5. Make sure that at least the first two check boxes are ticked
6. Press OK
7. Press YES to create the folder.

Step 2
Set Windows to show all files and all folders.
On your Desktop, double click My Computer, from the menu options, select tools, then Folder Options, and then select VIEW Tab and look at all of settings listed.

"CHECK" (turn on) Display the contents of system folders.

Under column, Hidden files and folders----choose ( *select* ) Show hidden files and folders.
Next, un-check Hide extensions for known file types.
Next un-check Hide protected operating system files.

Step 3
Download Random's System Information Tool (RSIT) by random/random from here and save it to your desktop.
  • Double click on RSIT.exe to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)
  • Step 4
    Download Security Check by screen317 and save it to your Desktop: here
    • Run Security Check
    • Follow the onscreen instructions inside of the command window.
    • A Notepad document should open automatically called checkup.txt; close Notepad. We will need this log, too, so remember where you've saved it!
    Step 5
    Close all open browsers at this point.

    Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
    For directions on how, see How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
    Do NOT turn off the firewall

    Start Internet Explorer
    Using Internet Explorer browser only, go to BitDefender Quickscan website:
    http://quickscan.bitdefender.com

    and click "Start Scan".
    Observe your browser in case it shows a notice/message bar to allow download and installation of a tool.
    Allow the download and install of qsax.cab from BitDefender. Right-click the IE info bar and select Install to install the BitDefender quick scan module.
    If prompted, reply yes to allow it to run.
    Press the Allow button and follow prompts.

    Press the "Start Scan" once more.
    You'll see the EULA in a pop-up window. Click the I accept & then the OK button

    Note: The FAQ is here --> http://quickscan.bitdefender.com/faq/
    and that QuickScan has no removal capability.

    The site boasts a 60-second scan. Do have patience as it likely will take longer.
    It may seem to stall at moments, but have patience; it will move on.
    You'll see a progress bar at top right of window.

    Hopefully you will see a No infections found in the bar-winddow. Press the View Log button.
    The log report will show in your text editor. Save the log.
    Do a Select ALL, Copy. Then paste contents into your next reply.

    Step 6
    • Download & SAVE to your Desktop >> Tigzy's RogueKillerfrom here << or
      >> from here <<
    • Quit all programs that you may have started.
    • Please disconnect any USB or external drives from the computer before you run this scan!
    • For Vista or Windows 7, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.
      For Windows XP, double-click to start.
    • Wait until Prescan has finished ...
    • Click on Scan.
    • Click on Report and copy/paste the content of the notepad into your next reply.
    Step 7
    RE-Enable your antivirus program.

    Copy & Paste contents of Log.txt & Info.txt & Checkup.txt & log from Bitdefender & RogueKiller log.
    Use separate replies as needed if logs do not fit into one reply box.

~Maurice Naggar
MS-MVP (Oct 2002 - Sept 2010)

#5 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 01:43 PM

Was able to go through all the steps accept for "security check". It said my operating system wasn't supported. Here's the logs or the rest. 

 

 

info.txt logfile of random's system information tool 1.08 2013-03-31 11:17:54
 
======Uninstall list======
 
-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe Flash Player 11 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_6_602_180_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_6_602_180_Plugin.exe -maintain plugin
Adobe Photoshop Album 2.0 Starter Edition-->MsiExec.exe /I{11B569C2-4BF6-4ED0-9D17-A4273943CB24}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
AIM 7-->C:\Program Files\AIM\uninst.exe
AVG 2013-->"C:\Program Files\AVG\AVG2013\avgmfapx.exe" /AppMode=SETUP /Uninstall
Canon Camera Window for ZoomBrowser EX-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{FC3EEA54-C009-4D75-B753-3CD871BF3EBA} 
Canon i860-->C:\WINDOWS\system32\CNMCP56.exe "-PRINTERNAMECanon i860" "-HELPERDLLC:\BJPrinter\CNMWINDOWS\Canon i860 Installer\Inst2\cnmis.dll" "-RCDLLC:\BJPrinter\CNMWINDOWS\Canon i860 Installer\Inst2\cnmi0409.dll"
Canon RAW Image Task for ZoomBrowser EX-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{FAF0DAD8-1EA7-4FEF-80E5-8D8D6EBD5A23} 
Canon RemoteCapture Task for ZoomBrowser EX-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{2236B741-6631-49AE-B76E-3E14CA01CC87} 
Canon Utilities PhotoStitch 3.1-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{03CDDD00-BD57-4326-9480-4C74449AF597} 
CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
CPUID CPU-Z 1.58-->"C:\Program Files\CPUID\CPU-Z\unins000.exe"
Critical Update for Windows Media Player 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Epson Easy Photo Print Plug-in for Windows Live Photo Gallery-->C:\Program Files\Epson Software\Common\Easy Photo Print Plugin\WLPG_E\EPPUNINS.EXE /R
Epson Event Manager-->MsiExec.exe /X{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}
EPSON NX510 Series Printer Uninstall-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FINSFIA.EXE /R /APD /P:"EPSON NX510 Series"
EPSON NX620 Series Printer Uninstall-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FINSGAA.EXE /R /APD /P:"EPSON NX620 Series"
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
ERUNT 1.1j-->"C:\Program Files\ERUNT\unins000.exe"
ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
ESPNMotion-->C:\PROGRA~1\ESPNMO~1\UNWISE.EXE /u C:\PROGRA~1\ESPNMO~1\INSTALL.LOG
GemMaster Mystic-->"C:\Program Files\GemMaster\uninstallgemmaster.exe"
getPlus®_ocx-->rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\inf\GETPLUSo.INF, DefaultUninstall
GetSavin-->C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\getsavin\uninst.exe
GIMP 2.6.11-->"C:\Program Files\GIMP-2.0\setup\unins000.exe"
Google Talk (remove only)-->"C:\Program Files\Google\Google Talk\uninstall.exe"
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_94DDE1EDD1CDF6A3.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Updater-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
High Definition Audio Driver Package - KB835221-->C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
Hotfix for Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 10 (KB903157)-->"C:\WINDOWS\$NtUninstallKB903157$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2158563)-->"C:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2443685)-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2570791)-->"C:\WINDOWS\$NtUninstallKB2570791$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2633952)-->"C:\WINDOWS\$NtUninstallKB2633952$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2756822)-->"C:\WINDOWS\$NtUninstallKB2756822$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB2779562)-->"C:\WINDOWS\$NtUninstallKB2779562$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB954708)-->"C:\WINDOWS\$NtUninstallKB954708$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB979306)-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
Intel® 537EP V9x DF PCI Modem-->rundll32 IntelCci.dll,iSMUninstallation "Intel® 537EP V9x DF PCI Modem"
Intel® PRO Network Connections Drivers-->Prounstl.exe
Inventoria Stock Manager-->C:\Program Files\NCH Software\Inventoria\uninst.exe
Java 7 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217015FF}
Java™ 6 Update 31-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216031FF}
JavaFX 2.1.1-->MsiExec.exe /X{1111706F-666A-4037-7777-211328764D10}
KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
Malwarebytes Anti-Malware version 1.70.0.1100-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
McAfee Backup and Restore-->C:\Program Files\McAfee\MBK\mbklaunch.exe /uninstall
Microsoft .NET Framework 1.0 Hotfix (KB2572066)-->"C:\WINDOWS\$NtUninstallKB2572066$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Hotfix (KB2604042)-->"C:\WINDOWS\$NtUninstallKB2604042$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Hotfix (KB2656378)-->"C:\WINDOWS\$NtUninstallKB2656378$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Hotfix (KB953295)-->"C:\WINDOWS\$NtUninstallKB953295$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Hotfix (KB979904)-->"C:\WINDOWS\$NtUninstallKB979904$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Security Update (KB2698035)-->"C:\WINDOWS\$NtUninstallKB2698035$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.0 Security Update (KB2742607)-->"C:\WINDOWS\$NtUninstallKB2742607$\spuninst\spuninst.exe"
Microsoft .NET Framework 1.1 Security Update (KB2698023)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2698023\M2698023Uninstall.msp"
Microsoft .NET Framework 1.1 Security Update (KB2742597)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2742597\M2742597Uninstall.msp"
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 4 Client Profile-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Extended-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{0A0CADCF-78DA-33C4-A350-CD51849B9702}
Microsoft Base Smart Card Cryptographic Service Provider Package-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Plus! Photo Story 2 LE-->MsiExec.exe /X{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual Studio 2005 Tools for Office Runtime-->C:\Program Files\Common Files\Microsoft Shared\VSTO\8.0\Microsoft Visual Studio 2005 Tools for Office Runtime\install.exe
Mozilla Firefox 11.0 (x86 en-US)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP3 Parser (KB2758694)-->MsiExec.exe /I{1D95BA90-F4F8-47EC-A882-441C99D30C1E}
MSXML 4.0 SP3 Parser-->MsiExec.exe /I{196467F1-C11F-4F76-858B-5812ADC83B94}
OpenOffice.org Installer 1.0-->MsiExec.exe /X{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}
Otto-->"C:\Program Files\EnglishOtto\uninstallotto.exe"
Philips Songbird-->C:\Program Files\Philips\Philips Songbird\Philips-Songbird-Uninstall.exe
PIXresizer 2.0.4-->"C:\Program Files\PIXresizer\unins000.exe"
QuickBooks Pro 2012-->msiexec.exe /I {25E202D1-D8E7-46AF-B4B0-157D9993A93E} UNIQUE_NAME="pro" QBFULLNAME="QuickBooks Pro 2012" ADDREMOVE=1 QB_IS_SUBSCRIPTION=0
QuickBooks-->MsiExec.exe /I{25E202D1-D8E7-46AF-B4B0-157D9993A93E}
ResizerXT v1.2-->C:\WINDOWS\st6unst.exe -n "C:\Program Files\ResizerXT\ST6UNST.LOG"  
Rhapsody-->C:\PROGRA~1\Rhapsody\Unwise32.exe /A C:\PROGRA~1\Rhapsody\install.log
Security Update for Microsoft .NET Framework 4 Extended (KB2416472)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {7A2C18A1-D2A2-3177-82F1-5FE9CC08ECB0} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {42A3562E-8B4E-39A4-B82D-CC12F82889E3} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Extended
Security Update for Microsoft Windows (KB2564958)-->"C:\WINDOWS\$NtUninstallKB2564958$\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2183461)-->"C:\WINDOWS\ie8updates\KB2183461-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2360131)-->"C:\WINDOWS\ie8updates\KB2360131-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2416400)-->"C:\WINDOWS\ie8updates\KB2416400-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2482017)-->"C:\WINDOWS\ie8updates\KB2482017-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2497640)-->"C:\WINDOWS\ie8updates\KB2497640-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2510531)-->"C:\WINDOWS\ie8updates\KB2510531-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2530548)-->"C:\WINDOWS\ie8updates\KB2530548-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2544521)-->"C:\WINDOWS\ie8updates\KB2544521-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2559049)-->"C:\WINDOWS\ie8updates\KB2559049-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2586448)-->"C:\WINDOWS\ie8updates\KB2586448-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2618444)-->"C:\WINDOWS\ie8updates\KB2618444-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2647516)-->"C:\WINDOWS\ie8updates\KB2647516-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2675157)-->"C:\WINDOWS\ie8updates\KB2675157-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2699988)-->"C:\WINDOWS\ie8updates\KB2699988-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2722913)-->"C:\WINDOWS\ie8updates\KB2722913-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2744842)-->"C:\WINDOWS\ie8updates\KB2744842-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2761465)-->"C:\WINDOWS\ie8updates\KB2761465-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2792100)-->"C:\WINDOWS\ie8updates\KB2792100-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2797052)-->"C:\WINDOWS\ie8updates\KB2797052-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2799329)-->"C:\WINDOWS\ie8updates\KB2799329-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB2809289)-->"C:\WINDOWS\ie8updates\KB2809289-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB981332)-->"C:\WINDOWS\ie8updates\KB981332-IE8\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 8 (KB982381)-->"C:\WINDOWS\ie8updates\KB982381-IE8\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Security Update for Windows Media Player (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows Search 4 - KB963093-->"C:\WINDOWS\$NtUninstallKB963093$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2079403)-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2115168)-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2121546)-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2160329)-->"C:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2279986)-->"C:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2286198)-->"C:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2296011)-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2296199)-->"C:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2347290)-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2360937)-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2387149)-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2393802)-->"C:\WINDOWS\$NtUninstallKB2393802$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2412687)-->"C:\WINDOWS\$NtUninstallKB2412687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2419632)-->"C:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2423089)-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2436673)-->"C:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2440591)-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2443105)-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2476490)-->"C:\WINDOWS\$NtUninstallKB2476490$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2476687)-->"C:\WINDOWS\$NtUninstallKB2476687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2478960)-->"C:\WINDOWS\$NtUninstallKB2478960$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2478971)-->"C:\WINDOWS\$NtUninstallKB2478971$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2479628)-->"C:\WINDOWS\$NtUninstallKB2479628$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2481109)-->"C:\WINDOWS\$NtUninstallKB2481109$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2483185)-->"C:\WINDOWS\$NtUninstallKB2483185$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2485376)-->"C:\WINDOWS\$NtUninstallKB2485376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2491683)-->"C:\WINDOWS\$NtUninstallKB2491683$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2503658)-->"C:\WINDOWS\$NtUninstallKB2503658$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2503665)-->"C:\WINDOWS\$NtUninstallKB2503665$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2506212)-->"C:\WINDOWS\$NtUninstallKB2506212$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2506223)-->"C:\WINDOWS\$NtUninstallKB2506223$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2507618)-->"C:\WINDOWS\$NtUninstallKB2507618$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2507938)-->"C:\WINDOWS\$NtUninstallKB2507938$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2508272)-->"C:\WINDOWS\$NtUninstallKB2508272$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2508429)-->"C:\WINDOWS\$NtUninstallKB2508429$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2509553)-->"C:\WINDOWS\$NtUninstallKB2509553$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2511455)-->"C:\WINDOWS\$NtUninstallKB2511455$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2524375)-->"C:\WINDOWS\$NtUninstallKB2524375$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2535512)-->"C:\WINDOWS\$NtUninstallKB2535512$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2536276)-->"C:\WINDOWS\$NtUninstallKB2536276$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2536276-v2)-->"C:\WINDOWS\$NtUninstallKB2536276-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2544893)-->"C:\WINDOWS\$NtUninstallKB2544893$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2544893-v2)-->"C:\WINDOWS\$NtUninstallKB2544893-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2555917)-->"C:\WINDOWS\$NtUninstallKB2555917$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2562937)-->"C:\WINDOWS\$NtUninstallKB2562937$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2566454)-->"C:\WINDOWS\$NtUninstallKB2566454$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2567053)-->"C:\WINDOWS\$NtUninstallKB2567053$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2567680)-->"C:\WINDOWS\$NtUninstallKB2567680$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2570222)-->"C:\WINDOWS\$NtUninstallKB2570222$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2570947)-->"C:\WINDOWS\$NtUninstallKB2570947$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2584146)-->"C:\WINDOWS\$NtUninstallKB2584146$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2585542)-->"C:\WINDOWS\$NtUninstallKB2585542$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2592799)-->"C:\WINDOWS\$NtUninstallKB2592799$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2598479)-->"C:\WINDOWS\$NtUninstallKB2598479$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2603381)-->"C:\WINDOWS\$NtUninstallKB2603381$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2618451)-->"C:\WINDOWS\$NtUninstallKB2618451$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2620712)-->"C:\WINDOWS\$NtUninstallKB2620712$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2621440)-->"C:\WINDOWS\$NtUninstallKB2621440$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2624667)-->"C:\WINDOWS\$NtUninstallKB2624667$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2631813)-->"C:\WINDOWS\$NtUninstallKB2631813$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2633171)-->"C:\WINDOWS\$NtUninstallKB2633171$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2639417)-->"C:\WINDOWS\$NtUninstallKB2639417$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2641653)-->"C:\WINDOWS\$NtUninstallKB2641653$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2646524)-->"C:\WINDOWS\$NtUninstallKB2646524$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2647518)-->"C:\WINDOWS\$NtUninstallKB2647518$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2653956)-->"C:\WINDOWS\$NtUninstallKB2653956$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2655992)-->"C:\WINDOWS\$NtUninstallKB2655992$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2659262)-->"C:\WINDOWS\$NtUninstallKB2659262$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2660465)-->"C:\WINDOWS\$NtUninstallKB2660465$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2661637)-->"C:\WINDOWS\$NtUninstallKB2661637$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2676562)-->"C:\WINDOWS\$NtUninstallKB2676562$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2685939)-->"C:\WINDOWS\$NtUninstallKB2685939$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2686509)-->"C:\WINDOWS\$NtUninstallKB2686509$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2691442)-->"C:\WINDOWS\$NtUninstallKB2691442$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2695962)-->"C:\WINDOWS\$NtUninstallKB2695962$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2698365)-->"C:\WINDOWS\$NtUninstallKB2698365$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2705219)-->"C:\WINDOWS\$NtUninstallKB2705219$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2707511)-->"C:\WINDOWS\$NtUninstallKB2707511$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2709162)-->"C:\WINDOWS\$NtUninstallKB2709162$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2712808)-->"C:\WINDOWS\$NtUninstallKB2712808$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2718523)-->"C:\WINDOWS\$NtUninstallKB2718523$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2719985)-->"C:\WINDOWS\$NtUninstallKB2719985$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2723135)-->"C:\WINDOWS\$NtUninstallKB2723135$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2724197)-->"C:\WINDOWS\$NtUninstallKB2724197$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2727528)-->"C:\WINDOWS\$NtUninstallKB2727528$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2731847)-->"C:\WINDOWS\$NtUninstallKB2731847$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2753842)-->"C:\WINDOWS\$NtUninstallKB2753842$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2753842-v2)-->"C:\WINDOWS\$NtUninstallKB2753842-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2757638)-->"C:\WINDOWS\$NtUninstallKB2757638$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2758857)-->"C:\WINDOWS\$NtUninstallKB2758857$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2761226)-->"C:\WINDOWS\$NtUninstallKB2761226$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2770660)-->"C:\WINDOWS\$NtUninstallKB2770660$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2778344)-->"C:\WINDOWS\$NtUninstallKB2778344$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2779030)-->"C:\WINDOWS\$NtUninstallKB2779030$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2780091)-->"C:\WINDOWS\$NtUninstallKB2780091$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2799494)-->"C:\WINDOWS\$NtUninstallKB2799494$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2802968)-->"C:\WINDOWS\$NtUninstallKB2802968$\spuninst\spuninst.exe"
Security Update for Windows XP (KB2807986)-->"C:\WINDOWS\$NtUninstallKB2807986$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Security Update for Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Security Update for Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Security Update for Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
Security Update for Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Security Update for Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Security Update for Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Security Update for Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Security Update for Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Security Update for Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Security Update for Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977165)-->"C:\WINDOWS\$NtUninstallKB977165$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Security Update for Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978251)-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978262)-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Security Update for Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979559)-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979683)-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Security Update for Windows XP (KB979687)-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Security Update for Windows XP (KB980436)-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981322)-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981852)-->"C:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981957)-->"C:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe"
Security Update for Windows XP (KB981997)-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982132)-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982214)-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982665)-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Security Update for Windows XP (KB982802)-->"C:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe"
Sonic UDF Reader-->MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
Sublime Text 2 Build 2139-->"C:\Program Files\Sublime Text 2\unins000.exe"
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2600217)-->c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {5D9961AC-7C99-36A2-9EF0-34678AED5384} /parameterfolder Extended
Update for Windows Internet Explorer 8 (KB2598845)-->"C:\WINDOWS\ie8updates\KB2598845-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB2632503)-->"C:\WINDOWS\ie8updates\KB2632503-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB975364)-->"C:\WINDOWS\ie8updates\KB975364-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB976662)-->"C:\WINDOWS\ie8updates\KB976662-IE8\spuninst\spuninst.exe"
Update for Windows Internet Explorer 8 (KB980182)-->"C:\WINDOWS\ie8updates\KB980182-IE8\spuninst\spuninst.exe"
Update for Windows Media Player 10 (KB910393)-->"C:\WINDOWS\$NtUninstallKB910393$\spuninst\spuninst.exe"
Update for Windows Media Player 10 (KB913800)-->"C:\WINDOWS\$NtUninstallKB913800$\spuninst\spuninst.exe"
Update for Windows XP (KB2141007)-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Update for Windows XP (KB2345886)-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Update for Windows XP (KB2467659)-->"C:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Update for Windows XP (KB2492386)-->"C:\WINDOWS\$NtUninstallKB2492386$\spuninst\spuninst.exe"
Update for Windows XP (KB2541763)-->"C:\WINDOWS\$NtUninstallKB2541763$\spuninst\spuninst.exe"
Update for Windows XP (KB2607712)-->"C:\WINDOWS\$NtUninstallKB2607712$\spuninst\spuninst.exe"
Update for Windows XP (KB2616676)-->"C:\WINDOWS\$NtUninstallKB2616676$\spuninst\spuninst.exe"
Update for Windows XP (KB2641690)-->"C:\WINDOWS\$NtUninstallKB2641690$\spuninst\spuninst.exe"
Update for Windows XP (KB2661254-v2)-->"C:\WINDOWS\$NtUninstallKB2661254-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB2718704)-->"C:\WINDOWS\$NtUninstallKB2718704$\spuninst\spuninst.exe"
Update for Windows XP (KB2736233)-->"C:\WINDOWS\$NtUninstallKB2736233$\spuninst\spuninst.exe"
Update for Windows XP (KB2749655)-->"C:\WINDOWS\$NtUninstallKB2749655$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Update for Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Update for Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Update for Windows XP (KB961503)-->"C:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
Update for Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Update for Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Update for Windows XP (KB971029)-->"C:\WINDOWS\$NtUninstallKB971029$\spuninst\spuninst.exe"
Update for Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Update for Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Update for Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Update Rollup 2 for Windows XP Media Center Edition 2005-->C:\WINDOWS\$NtUninstallKB900325$\spuninst\spuninst.exe
WinCalendarV3-->"C:\Program Files\Sapro Systems WinCalendarV3\FullUninstaller.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live Communications Platform-->MsiExec.exe /I{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Live Writer-->MsiExec.exe /X{178832DE-9DE0-4C87-9F82-9315A9B03985}
Windows Management Framework Core-->"C:\WINDOWS\$968930Uinstall_KB968930$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 10 Hotfix - KB895316-->"C:\WINDOWS\$NtUninstallKB895316$\spuninst\spuninst.exe"
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]-->C:\WINDOWS\$NtUninstallEmeraldQFE2$\spuninst\spuninst.exe
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB2502898-->"C:\WINDOWS\$NtUninstallKB2502898$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB2619340-->"C:\WINDOWS\$NtUninstallKB2619340$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB2628259-->"C:\WINDOWS\$NtUninstallKB2628259$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB908246-->"C:\WINDOWS\$NtUninstallKB908246$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB925766-->"C:\WINDOWS\$NtUninstallKB925766$\spuninst\spuninst.exe"
Windows XP Media Center Edition 2005 KB973768-->"C:\WINDOWS\$NtUninstallKB973768$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinUndelete-->C:\PROGRA~1\WINUND~1\UNWISE.EXE C:\PROGRA~1\WINUND~1\INSTALL.LOG
Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yahoo! Software Update-->C:\PROGRA~1\Yahoo!\SOFTWA~1\UNINST~1.EXE
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
 
======Hosts File======
 
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
 
======Security center information======
 
AV: AVG Internet Security 2013
AV: McAfee Anti-Virus and Anti-Spyware
FW: AVG Internet Security 2013
FW: McAfee Firewall
 
======System event log======
 
Computer Name: JANTZENSCOMP
Event Code: 10000
Message: Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}.
The error:
"%193"
Happened while starting this command:
c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
 
Record Number: 204769
Source Name: DCOM
Time Written: 20130321210519.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
Computer Name: JANTZENSCOMP
Event Code: 10000
Message: Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}.
The error:
"%193"
Happened while starting this command:
c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
 
Record Number: 204768
Source Name: DCOM
Time Written: 20130321210519.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
Computer Name: JANTZENSCOMP
Event Code: 10000
Message: Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}.
The error:
"%193"
Happened while starting this command:
c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
 
Record Number: 204767
Source Name: DCOM
Time Written: 20130321210020.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
Computer Name: JANTZENSCOMP
Event Code: 10000
Message: Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}.
The error:
"%193"
Happened while starting this command:
c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
 
Record Number: 204766
Source Name: DCOM
Time Written: 20130321210019.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
Computer Name: JANTZENSCOMP
Event Code: 10000
Message: Unable to start a DCOM Server: {DDC6C82A-BCD6-480F-BAE7-9F406F687A53}.
The error:
"%193"
Happened while starting this command:
c:\PROGRA~1\mcafee\msc\mcmscsub.dll -Embedding
 
Record Number: 204765
Source Name: DCOM
Time Written: 20130321205651.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
=====Application event log=====
 
Computer Name: JANTZENSCOMP
Event Code: 4
Message: An unexpected error has occured in "QuickBooks":
Returning NULL QBWinInstance Handle
Record Number: 40640
Source Name: QuickBooks
Time Written: 20121205152038.000000-420
Event Type: error
User: 
 
Computer Name: JANTZENSCOMP
Event Code: 4
Message: An unexpected error has occured in "QuickBooks":
Returning NULL QBWinInstance Handle
Record Number: 40639
Source Name: QuickBooks
Time Written: 20121205152038.000000-420
Event Type: error
User: 
 
Computer Name: JANTZENSCOMP
Event Code: 4
Message: An unexpected error has occured in "QuickBooks":
Returning NULL QBWinInstance Handle
Record Number: 40638
Source Name: QuickBooks
Time Written: 20121205152038.000000-420
Event Type: error
User: 
 
Computer Name: JANTZENSCOMP
Event Code: 1000
Message: Faulting application isuspm.exe, version 4.50.100.33433, faulting module isuspm.exe, version 4.50.100.33433, fault address 0x0001cde3.
 
Record Number: 40637
Source Name: Application Error
Time Written: 20121205151929.000000-420
Event Type: error
User: 
 
Computer Name: JANTZENSCOMP
Event Code: 5022
Message: 
Record Number: 40630
Source Name: McLogEvent
Time Written: 20121205151617.000000-420
Event Type: error
User: NT AUTHORITY\SYSTEM
 
======Environment variables======
 
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Common Files\DivX Shared\;C:\Program Files\Common Files\Intuit\QBPOSSDKRuntime;C:\WINDOWS\system32\WindowsPowerShell\v1.0;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=0409
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.PSC1
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"asl.log"=Destination=file;OnFirstLog=command,environment
"PSModulePath"=C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\
"CLASSPATH"=.;C:\Program Files\Java\jre7\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre7\lib\ext\QTJava.zip
 
-----------------EOF-----------------
 
Logfile of random's system information tool 1.08 (written by random/random)
Run by Gregg Jantzen at 2013-03-31 11:17:10
Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (16%) free of 72 GB
Total RAM: 2038 MB (22% free)
 
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:17:47 AM, on 3/31/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
 
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe
C:\Program Files\AVG\AVG2013\avgfws.exe
C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoEJCD.exe
C:\Program Files\AVG\AVG2013\avgwdsvc.exe
C:\Program Files\Microsoft\BingBar\SeaPort.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Java\jre7\bin\jqs.exe
c:\PROGRA~1\mcafee\SITEAD~1\McSACore.exe
C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\PROGRA~1\MUSICM~1\MUSICM~3\MMDiag.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
c:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\GoogleCrashHandler.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\WINDOWS\explorer.exe
C:\Program Files\AVG\AVG2013\avgidsagent.exe
C:\Program Files\AVG\AVG2013\avgrsx.exe
C:\Program Files\AVG\AVG2013\avgcsrvx.exe
C:\Program Files\AVG\AVG2013\avgemcx.exe
C:\Program Files\AVG\AVG2013\avgnsx.exe
C:\Program Files\AVG\AVG2013\avgcsrvx.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\system32\calc.exe
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
c:\PROGRA~1\mcafee\SITEAD~1\saui.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Gregg Jantzen\My Documents\Downloads\RSIT-1.06.exe
C:\Program Files\trend micro\Gregg Jantzen.exe
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.yahoo.com/search?fr=mcafee&p=%s
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll (file missing)
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: (no name) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: GetSavin 5.0 - {E541D5C4-2EC7-4D1C-A64B-7996D29A3396} - C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\getsavin\ie\getsavin_1364184601.dll (file missing)
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: (no name) - {06C7AD57-B655-418D-9AB8-9526A6D2E052} - (no file)
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~3\mimboot.exe
O4 - HKLM\..\Run: [masqform.exe] C:\Program Files\PureEdge\Viewer 6.0\masqform.exe -UpdateCurrentUser
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 5.0\THGuard.exe"
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [Qwest 11n Wireless WPS Tool] C:\Program Files\Qwest 11n Wireless WPS Tool\WpsCenter.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Intuit SyncManager] C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe  startup
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [WinCalendarV3] "C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe" /q /c
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG SafeGuard toolbar\vprot.exe"
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [Search Protection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [EPSON NX620 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGAA.EXE /FU "C:\WINDOWS\TEMP\E_S231F.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WinCalendarV3] "C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe /q /c"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [WinCalendarV3] "C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe" /q /c (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Startup: ZooskMessenger.lnk = C:\Program Files\ZooskMessenger\ZooskMessenger.exe
O4 - Global Startup: Intuit Data Protect.lnk = C:\Program Files\Common Files\Intuit\DataProtect\IntuitDataProtect.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: QuickBooks_Standard_21.lnk = C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - 
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1343771717078
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: intu-help-qb5 - {867FCB77-9823-4CD6-8210-D85F968D466F} - C:\Program Files\Intuit\QuickBooks 2012\HelpAsyncPluggableProtocol.dll
O18 - Protocol: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - mscoree.dll (file missing)
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: McAfee Application Installer Cleanup (0281451364721807) (0281451364721807mcinstcleanup) - McAfee, Inc. - C:\WINDOWS\TEMP\028145~1.EXE
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - Unknown owner - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Auto Install Eject CD Service (AutoInstallEJCD) - Unknown owner - C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: Google Update Service (gupdate1ca804f5cbf98b4) (gupdate1ca804f5cbf98b4) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inventoria Stock Manager (InventoriaService) - Unknown owner - C:\Program Files\NCH Software\Inventoria\inventoria.exe
O23 - Service: Iomega Activity Disk2 - Unknown owner - C:\WINDOWS\
O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\McSACore.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - Unknown owner - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe (file missing)
O23 - Service: McAfee Scanner (McODS) - Unknown owner - C:\Program Files\McAfee\VirusScan\mcods.exe (file missing)
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: QBCFMonitorService - Intuit - C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
O23 - Service: Intuit QuickBooks FCS (QBFCService) - Intuit Inc. - C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
O23 - Service: QBIDPService (QBVSS) - Intuit Inc. - C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
O23 - Service: SupportSoft Listener Service (sprtlisten) - SupportSoft, Inc. - C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\supportsoft\bin\ssrc.exe
O23 - Service: vToolbarUpdater15.0.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
 
--
End of file - 19612 bytes
 
======Scheduled tasks folder======
 
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Google Software Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-124138293-3828297314-1937649411-1005Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-124138293-3828297314-1937649411-1005UA.job
C:\WINDOWS\tasks\inventoriaShakeIcon.job
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 0cb0a69a-0c7a-474e-8045-a25e64e18b1e.job
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 779fb95b-e1d4-4751-910e-fd3ef49f854c.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{78463DB5-CA88-4E0A-A5C6-32F3F76A9AD1}.job
 
======Registry dump======
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-12-18 68832]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}]
McAfee Phishing Filter - c:\progra~1\mcafee\msk\mskapbho.dll []
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 113512]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2006-06-13 110652]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java™ Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-02-22 461216]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9}]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-12-18 192144]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll [2012-12-18 1000984]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-02-22 170912]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E541D5C4-2EC7-4D1C-A64B-7996D29A3396}]
GetSavin 5.0 - C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\getsavin\ie\getsavin_1364184601.dll []
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28 160496]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]
{06C7AD57-B655-418D-9AB8-9526A6D2E052}
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-12-18 192144]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-03-23 118784]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-03-23 77824]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-03-23 94208]
"MimBoot"=C:\PROGRA~1\MUSICM~1\MUSICM~3\mimboot.exe [2006-09-18 8192]
"masqform.exe"=C:\Program Files\PureEdge\Viewer 6.0\masqform.exe [2003-12-03 1052672]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-06-10 81920]
"ISUSPM Startup"=c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-06-10 249856]
"IntelMeM"=C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe [2003-09-03 221184]
"fssui"=C:\Program Files\Windows Live\Family Safety\fsui.exe [2010-04-28 647528]
"DellSupportCenter"=C:\Program Files\Dell Support Center\bin\sprtcmd.exe /P DellSupportCenter []
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-10-06 59240]
"Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2006-06-13 127036]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe -hide []
"THGuard"=C:\Program Files\TrojanHunter 5.0\THGuard.exe []
"ehTray"=C:\WINDOWS\ehome\ehtray.exe [2005-09-29 67584]
"DVDLauncher"=C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe [2005-02-23 53248]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2009-12-03 976320]
"IntelliPoint"=c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2009-06-01 1468296]
"MBkLogonHook"= []
"Qwest 11n Wireless WPS Tool"=C:\Program Files\Qwest 11n Wireless WPS Tool\WpsCenter.exe [2009-03-23 1212416]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-01-28 59720]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"Intuit SyncManager"=C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe [2012-10-25 2643320]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
""= []
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2012-10-25 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2013-02-18 152392]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"WinCalendarV3"=C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe [2012-12-09 80416]
"AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2013-03-13 4394032]
"vProt"=C:\Program Files\AVG SafeGuard toolbar\vprot.exe [2013-03-25 1219248]
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OE_OEM"=C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe []
"DellSupportCenter"=C:\Program Files\Dell Support Center\bin\sprtcmd.exe /P DellSupportCenter []
"Search Protection"=C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe []
"Google Update"=C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-03 136176]
"EPSON NX620 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGAA.EXE [2010-01-12 201216]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"WinCalendarV3"=C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe [2012-12-09 80416]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-07-09 68856]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-11-01 4763008]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\!AVG Anti-Spyware]
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe /minimized []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]
C:\Program Files\AIM6\aim6.exe /d locale=en-US ee://aol/imApp []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel Photo Downloader]
C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe -startup []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
C:\Program Files\Google\Google Talk\googletalk.exe [2007-01-01 3739648]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HostManager]
C:\Program Files\Common Files\AOL\1135824426\ee\AOLSoftware.exe []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2013-02-18 152392]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2010-04-16 3872080]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MySpaceIM]
C:\Program Files\MySpace\IM\MySpaceIM.exe []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Philips Device Listener]
C:\Program Files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe [2011-03-03 380416]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
C:\Program Files\Picasa2\PicasaMediaDetector.exe []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QwestTouchPointAgent]
C:\Program Files\Qwest\Desktop\QwestTouchPointAgent.exe [2010-05-31 45992]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe /nosplash /minimized []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-07-09 68856]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe  -osboot []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uniblue RegistryBooster 2]
C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE [2009-05-26 4351216]
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^America Online 9.0 Tray Icon.lnk]
C:\Program Files\America Online 9.0\aoltray.exe -check []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Gregg Jantzen^Start Menu^Programs^Startup^Picture Motion Browser Media Check Tool.lnk]
C:\PROGRA~1\Sony\SONYPI~1\VOLUME~1\SPUVOL~1.EXE /nobaloononstart []
 
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"YahooAUService"=2
"Messenger"=3
 
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Intuit Data Protect.lnk - C:\Program Files\Common Files\Intuit\DataProtect\IntuitDataProtect.exe
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
Nikon Monitor.lnk - C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
QuickBooks Update Agent.lnk - C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
QuickBooks_Standard_21.lnk - C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
 
C:\Documents and Settings\Gregg Jantzen\Start Menu\Programs\Startup
ERUNT AutoBackup.lnk - C:\Program Files\ERUNT\AUTOBACK.EXE
ZooskMessenger.lnk - C:\Program Files\ZooskMessenger\ZooskMessenger.exe
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-03-23 139264]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2008-05-02 72208]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-18 113024]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SupportSoft RemoteAssist]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WdfLoadGroup]
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=255
"HonorAutoRunSetting"=1
 
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe"="C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe:*:Enabled:McAfee Network Agent"
"C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"C:\Program Files\Common Files\AOL\1135824426\ee\aolsoftware.exe"="C:\Program Files\Common Files\AOL\1135824426\ee\aolsoftware.exe:*:Enabled:AOL Services"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
"C:\Program Files\Qwest\QuickConnect\QuickConnect.exe"="C:\Program Files\Qwest\QuickConnect\QuickConnect.exe:*:Enabled:QuickConnect"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\iBryte\browseforchange\ibrytedesktop.exe"="C:\Program Files\iBryte\browseforchange\ibrytedesktop.exe:*:Enabled:iBryteDesktop"
 
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
"C:\Program Files\Qwest\QuickConnect\QuickConnect.exe"="C:\Program Files\Qwest\QuickConnect\QuickConnect.exe:*:Enabled:QuickConnect"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
 
======List of files/folders created in the last 3 months======
 
2013-03-31 11:17:10 ----D---- C:\rsit
2013-03-31 11:07:40 ----D---- C:\Program Files\ERUNT
2013-03-31 02:22:36 ----D---- C:\WINDOWS\LastGood
2013-03-30 18:53:02 ----D---- C:\JRT
2013-03-30 07:24:48 ----D---- C:\Documents and Settings\Gregg Jantzen\Application Data\SUPERAntiSpyware.com
2013-03-26 20:26:48 ----D---- C:\Program Files\Runtime Software
2013-03-26 08:04:43 ----A---- C:\AdwCleaner[S2].txt
2013-03-26 08:03:46 ----A---- C:\AdwCleaner[R2].txt
2013-03-25 21:45:21 ----A---- C:\AdwCleaner[S1].txt
2013-03-25 21:43:57 ----A---- C:\AdwCleaner[R1].txt
2013-03-25 19:49:16 ----D---- C:\Program Files\ESET
2013-03-25 19:44:49 ----A---- C:\TDSSKiller.2.8.16.0_25.03.2013_19.44.49_log.txt
2013-03-25 14:45:32 ----D---- C:\Documents and Settings\Gregg Jantzen\Application Data\AVG2013
2013-03-25 10:38:17 ----D---- C:\Documents and Settings\Gregg Jantzen\Application Data\TuneUp Software
2013-03-25 10:38:04 ----D---- C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar
2013-03-25 10:37:55 ----D---- C:\Documents and Settings\Gregg Jantzen\Application Data\AVG SafeGuard toolbar
2013-03-25 10:37:50 ----A---- C:\WINDOWS\system32\drivers\avgtpx86.sys
2013-03-25 10:37:34 ----D---- C:\Program Files\Common Files\AVG Secure Search
2013-03-25 10:37:33 ----D---- C:\Program Files\AVG SafeGuard toolbar
2013-03-25 08:27:35 ----HD---- C:\$AVG
2013-03-25 08:27:34 ----D---- C:\Documents and Settings\All Users\Application Data\AVG2013
2013-03-25 08:26:33 ----D---- C:\Program Files\AVG
2013-03-25 08:18:29 ----D---- C:\Documents and Settings\All Users\Application Data\MFAData
2013-03-25 06:53:49 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-03-25 06:53:49 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2013-03-24 21:57:11 ----A---- C:\WINDOWS\Reimage.ini
2013-03-24 21:33:32 ----D---- C:\Documents and Settings\Gregg Jantzen\Application Data\MAGIX
2013-03-24 21:32:09 ----D---- C:\Documents and Settings\All Users\Application Data\MAGIX
2013-03-24 21:31:12 ----D---- C:\Documents and Settings\All Users\Application Data\Xara
2013-03-21 15:27:26 ----D---- C:\Documents and Settings\All Users\Application Data\WinCalendarV3
2013-03-21 15:27:14 ----D---- C:\Program Files\Sapro Systems WinCalendarV3
2013-03-16 19:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2013-03-01 10:32:20 ----A---- C:\WINDOWS\system32\drivers\avgidsshimx.sys
2013-02-26 23:40:46 ----A---- C:\WINDOWS\system32\drivers\avgidsdriverx.sys
2013-02-22 11:05:32 ----A---- C:\WINDOWS\system32\javaws.exe
2013-02-22 11:05:10 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-02-22 11:05:10 ----A---- C:\WINDOWS\system32\javaw.exe
2013-02-22 11:05:09 ----A---- C:\WINDOWS\system32\java.exe
2013-02-20 19:39:15 ----D---- C:\Program Files\iPod
2013-02-20 19:39:09 ----D---- C:\Program Files\iTunes
2013-02-20 19:39:09 ----D---- C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-02-14 03:52:46 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2013-02-14 03:11:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2778344$
2013-02-14 03:09:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2799494$
2013-02-14 03:08:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2802968$
2013-02-14 03:08:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2780091$
2013-02-08 04:37:58 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2013-02-08 04:37:56 ----A---- C:\WINDOWS\system32\drivers\avglogx.sys
2013-02-08 04:37:52 ----A---- C:\WINDOWS\system32\drivers\avgidshx.sys
2013-02-08 04:37:44 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2013-02-08 04:37:40 ----A---- C:\WINDOWS\system32\drivers\avgrkx86.sys
2013-01-09 12:22:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2742607$
2013-01-09 12:21:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
 
======List of files/folders modified in the last 3 months======
 
2013-03-31 11:17:46 ----D---- C:\Program Files\Trend Micro
2013-03-31 11:17:18 ----D---- C:\WINDOWS\Temp
2013-03-31 11:16:27 ----D---- C:\WINDOWS\Prefetch
2013-03-31 11:09:56 ----D---- C:\WINDOWS\ERDNT
2013-03-31 11:07:40 ----D---- C:\Program Files
2013-03-31 02:28:01 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-03-31 02:22:58 ----HD---- C:\WINDOWS\inf
2013-03-31 02:22:36 ----D---- C:\WINDOWS
2013-03-30 19:09:22 ----D---- C:\WINDOWS\system32\drivers
2013-03-30 18:54:23 ----D---- C:\WINDOWS\ERUNT
2013-03-30 18:29:27 ----D---- C:\WINDOWS\system32\CatRoot2
2013-03-30 18:29:10 ----A---- C:\WINDOWS\ModemLog_Intel® 537EP V9x DF PCI Modem.txt
2013-03-30 18:26:26 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
2013-03-30 18:25:30 ----D---- C:\Program Files\McAfee
2013-03-30 18:25:25 ----D---- C:\Program Files\Common Files\Mcafee
2013-03-30 18:25:01 ----D---- C:\Config.Msi
2013-03-30 18:20:34 ----SD---- C:\WINDOWS\Tasks
2013-03-30 18:17:13 ----SHD---- C:\WINDOWS\Installer
2013-03-30 18:17:12 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-03-30 07:24:47 ----D---- C:\Program Files\SUPERAntiSpyware
2013-03-27 06:52:34 ----D---- C:\Program Files\Windows Live
2013-03-26 23:17:39 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-03-26 23:17:19 ----D---- C:\Program Files\Microsoft
2013-03-26 20:43:59 ----SHD---- C:\System Volume Information
2013-03-26 20:35:32 ----D---- C:\WINDOWS\repair
2013-03-26 20:35:23 ----D---- C:\WINDOWS\Registration
2013-03-26 07:40:02 ----D---- C:\Program Files\Common Files
2013-03-25 22:20:12 ----D---- C:\WINDOWS\WinSxS
2013-03-25 22:18:00 ----D---- C:\Program Files\Quicken
2013-03-25 22:17:44 ----A---- C:\WINDOWS\QUICKEN.INI
2013-03-25 22:17:39 ----D---- C:\WINDOWS\system32
2013-03-25 16:08:48 ----D---- C:\Program Files\backups
2013-03-25 08:18:30 ----D---- C:\Documents and Settings\All Users\Application Data\COMMON FILES
2013-03-25 07:52:59 ----HD---- C:\WINDOWS\$NtUninstallKB888795$
2013-03-25 06:50:01 ----D---- C:\Program Files\Mozilla Firefox
2013-03-24 21:32:15 ----A---- C:\WINDOWS\system32\DLLDEV32i.dll
2013-03-24 21:31:50 ----RSD---- C:\WINDOWS\Fonts
2013-03-24 21:30:13 ----D---- C:\Program Files\MSXML 4.0
2013-03-24 21:08:32 ----D---- C:\WINDOWS\Resources
2013-03-16 19:00:12 ----RSHD---- C:\WINDOWS\system32\dllcache
2013-03-16 18:57:08 ----HD---- C:\WINDOWS\$hf_mig$
2013-03-14 03:32:38 ----D---- C:\Program Files\Microsoft Silverlight
2013-03-14 03:07:20 ----A---- C:\WINDOWS\system32\MRT.exe
2013-03-14 03:07:14 ----A---- C:\WINDOWS\imsins.BAK
2013-03-14 03:07:00 ----D---- C:\Program Files\Internet Explorer
2013-03-14 03:06:45 ----D---- C:\WINDOWS\ie8updates
2013-03-13 07:10:00 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-02-28 19:33:07 ----A---- C:\WINDOWS\system32\mshtml.dll
2013-02-22 11:04:47 ----A---- C:\WINDOWS\system32\npDeployJava1.dll
2013-02-22 11:04:47 ----A---- C:\WINDOWS\system32\deployJava1.dll
2013-02-20 19:39:13 ----D---- C:\Program Files\Common Files\Apple
2013-02-14 03:14:41 ----D---- C:\WINDOWS\Microsoft.NET
2013-02-14 03:13:23 ----RSD---- C:\WINDOWS\assembly
2013-02-14 03:03:45 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-02-05 13:05:47 ----N---- C:\WINDOWS\system32\occache.dll
2013-02-05 13:05:47 ----A---- C:\WINDOWS\system32\wininet.dll
2013-02-05 13:05:47 ----A---- C:\WINDOWS\system32\urlmon.dll
2013-02-05 13:05:47 ----A---- C:\WINDOWS\system32\url.dll
2013-02-05 13:05:47 ----A---- C:\WINDOWS\system32\mstime.dll
2013-02-05 13:05:46 ----N---- C:\WINDOWS\system32\jsproxy.dll
2013-02-05 13:05:46 ----A---- C:\WINDOWS\system32\mshtmled.dll
2013-02-05 13:05:46 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2013-02-05 13:05:46 ----A---- C:\WINDOWS\system32\msfeeds.dll
2013-02-05 13:05:46 ----A---- C:\WINDOWS\system32\licmgr10.dll
2013-02-05 13:05:46 ----A---- C:\WINDOWS\system32\iertutil.dll
2013-02-05 13:05:45 ----N---- C:\WINDOWS\system32\iedkcs32.dll
2013-02-05 13:05:45 ----A---- C:\WINDOWS\system32\iepeers.dll
2013-02-05 13:05:45 ----A---- C:\WINDOWS\system32\ieframe.dll
2013-02-04 22:54:07 ----N---- C:\WINDOWS\system32\ie4uinit.exe
2013-01-25 20:55:44 ----A---- C:\WINDOWS\system32\oleaut32.dll
2013-01-09 19:44:27 ----D---- C:\Program Files\Common Files\Adobe
2013-01-06 18:19:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2013-01-06 17:37:01 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2013-01-01 23:49:10 ----A---- C:\WINDOWS\system32\quartz.dll
 
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
 
R0 AVGIDSHX;AVGIDSHX; C:\WINDOWS\system32\DRIVERS\avgidshx.sys [2013-02-08 60216]
R0 Avglogx;AVG Logging Driver; C:\WINDOWS\system32\DRIVERS\avglogx.sys [2013-02-08 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2013-02-08 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2013-02-08 39224]
R0 DRVMCDB;DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [2006-06-12 89264]
R0 iomdisk;Iomega Devices Disk Filter Services; C:\WINDOWS\System32\DRIVERS\iomdisk.sys [2004-12-03 50898]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys [2013-02-26 208184]
R1 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys [2013-03-01 22328]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2013-02-08 170808]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2013-02-14 182072]
R1 avgtp;avgtp; \??\C:\WINDOWS\system32\drivers\avgtpx86.sys []
R1 Cdr4_xp;Cdr4_xp; C:\WINDOWS\system32\drivers\Cdr4_xp.sys [2006-11-04 2432]
R1 Cdralw2k;Cdralw2k; C:\WINDOWS\system32\drivers\Cdralw2k.sys [2006-11-04 2560]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2006-03-17 5660]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2006-03-17 22684]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2006-06-13 25724]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2006-06-13 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2006-06-13 86844]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2006-06-13 14716]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2006-06-13 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2006-06-13 88476]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2006-06-13 94460]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2006-03-17 40544]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 ZDCNDIS5;ZDCNDIS5 NDIS5.1 Protocol Driver; \??\C:\WINDOWS\system32\ZDCNDIS5.sys []
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2012-01-12 30944]
R3 E100B;Intel® PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2004-10-14 155648]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2012-08-21 26840]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-03-23 1166972]
R3 IntelC51;IntelC51; C:\WINDOWS\system32\DRIVERS\IntelC51.sys [2004-03-06 1233525]
R3 IntelC52;IntelC52; C:\WINDOWS\system32\DRIVERS\IntelC52.sys [2004-03-06 647929]
R3 IntelC53;IntelC53; C:\WINDOWS\system32\DRIVERS\IntelC53.sys [2004-06-16 61157]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [2008-02-29 28944]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mohfilt;mohfilt; C:\WINDOWS\system32\DRIVERS\mohfilt.sys [2004-03-06 37048]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 QWXN720;Qwest 802.11n XN720 Driver; C:\WINDOWS\system32\DRIVERS\WLANUHN.sys [2009-03-23 453120]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2005-08-17 1022040]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S2 MCSTRM;MCSTRM; C:\WINDOWS\system32\drivers\MCSTRM.sys []
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2012-01-12 30944]
S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\catchme.sys []
S3 cpuz134;cpuz134; \??\C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys []
S3 MagicTune;MagicTune; C:\WINDOWS\system32\drivers\MTiCtwl.sys []
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 NuidFltr;NUID filter driver; C:\WINDOWS\system32\DRIVERS\NuidFltr.sys [2009-05-09 14736]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 Point32;Microsoft IntelliPoint Filter Driver; C:\WINDOWS\system32\DRIVERS\point32.sys [2009-06-01 27792]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys []
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-01-30 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
 
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
 
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-07-11 116608]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 AutoInstallEJCD;Auto Install Eject CD Service; C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe [2009-03-23 16384]
R2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG2013\avgfws.exe [2013-02-19 1418184]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [2013-02-27 4937264]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [2013-02-19 282624]
R2 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2006-10-09 237568]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 102912]
R2 EPSON_EB_RPCV4_01;EPSON V5 Service4(01); C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE [2007-12-16 143872]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-10 113664]
R2 Iomega App Services;Iomega App Services; C:\PROGRA~1\Iomega\System32\AppServices.exe [2004-12-03 73728]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-02-22 170912]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\McSACore.exe [2012-01-13 95200]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 QBCFMonitorService;QBCFMonitorService; C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [2012-12-06 45056]
R2 QBVSS;QBIDPService; C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe [2011-08-19 1248256]
R2 sprtlisten;SupportSoft Listener Service; C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe [2009-03-19 1213728]
R2 vToolbarUpdater15.0.0;vToolbarUpdater15.0.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe [2013-03-25 990896]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-02-18 553288]
S2 0281451364721807mcinstcleanup;McAfee Application Installer Cleanup (0281451364721807); C:\WINDOWS\TEMP\028145~1.EXE [2012-06-14 828032]
S2 BBSvc;Bing Bar Update Service; C:\Program Files\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-13 267776]
S2 gupdate1ca804f5cbf98b4;Google Update Service (gupdate1ca804f5cbf98b4); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-18 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-18 194032]
S2 Iomega Activity Disk2;Iomega Activity Disk2;  []
S2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-12-14 398184]
S2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe /McCoreSvc []
S2 SupportSoft RemoteAssist;SupportSoft RemoteAssist; C:\Program Files\Common Files\supportsoft\bin\ssrc.exe [2009-03-19 382320]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-13 253656]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 getPlusHelper;getPlus® Helper; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-18 133104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 InventoriaService;Inventoria Stock Manager; C:\Program Files\NCH Software\Inventoria\inventoria.exe [2011-08-31 1384964]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2008-05-02 121360]
S3 McODS;McAfee Scanner; C:\Program Files\McAfee\VirusScan\mcods.exe []
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 NetSvc;Intel NCS NetService; C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe [2004-11-19 147456]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 QBFCService;Intuit QuickBooks FCS; C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [2011-08-19 61440]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-01-30 913408]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 YahooAUService;Yahoo! Updater; C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
 
-----------------EOF-----------------
 
 


QuickScan 32-bit v0.9.9.118
---------------------------
Scan date:  Sun Mar 31 11:21:52 2013
Machine ID: 3038EC47
 
 
 
No infection found.
-------------------
 
 
 
Processes
---------
            AutoEJCD Application                      912    C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoEJCD.exe
            AutoInstallEJCDSvc.exe                    848    C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSvc.exe
            AVG Internet Security                     872    C:\Program Files\AVG\AVG2013\avgfws.exe
            AVG Internet Security                    3624    C:\Program Files\AVG\AVG2013\avgui.exe
            AVG Internet Security                     996    C:\Program Files\AVG\AVG2013\avgwdsvc.exe
            Bing Bar                                 1740    C:\Program Files\Microsoft\BingBar\SeaPort.EXE
            Core Service                              552    C:\Program Files\SUPERAntiSpyware\SASCore.exe
            Cyberlink PowerCinema 3.0                3136    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
            Drive Letter Access Component            1852    C:\WINDOWS\system32\DLA\DLACTRLW.EXE
            EEventManager Application                1780    C:\Program Files\Epson Software\Event Manager\EEventManager.exe
            EPSON Status Monitor 3                    696    C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE
            EPSON Status Monitor 3                    608    C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE
            Google Chrome                             588    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
            Google Chrome                            6024    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
            Google Chrome                            3888    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
            Google Chrome                            5164    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
            Google Chrome                            2708    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
            Google Update                            3632    C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\GoogleCrashHandler.exe
            InstallShield Update Service             2904    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
            Intel Modem Event Monitor Application    1368    C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
            Intel® Common User Interface           2228    C:\WINDOWS\system32\hkcmd.exe
            Intel® Common User Interface            788    C:\WINDOWS\system32\igfxpers.exe
            Iomega App Services                      1092    C:\PROGRA~1\Iomega\System32\AppServices.exe
            iTunes                                   3680    C:\Program Files\iPod\bin\iPodService.exe
            iTunes                                    576    C:\Program Files\iTunes\iTunesHelper.exe
            Java™ Platform SE 7 U15               1196    C:\Program Files\Java\jre7\bin\jqs.exe
            Java™ Platform SE Auto Updater 2 0    5776    C:\Program Files\Common Files\Java\Java Update\jucheck.exe
            Java™ Platform SE Auto Updater 2 0    3440    C:\Program Files\Common Files\Java\Java Update\jusched.exe
            Logitech Desktop Messenger               5124    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
            Logitech SetPoint                        5584    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
            Logitech SetPoint                        5996    C:\Program Files\Logitech\SetPoint\SetPoint.exe
            McAfee SiteAdvisor                       2028    C:\PROGRA~1\McAfee\SITEAD~1\McSACore.exe
            McAfee SiteAdvisor                       5528    C:\PROGRA~1\McAfee\SITEAD~1\saUI.exe
            Microsoft IntelliPoint                   3456    C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
            Microsoft IntelliPoint                   2796    C:\Program Files\Microsoft IntelliPoint\ipoint.exe
            Microsoft Office 2003                    4384    C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
            Microsoft® Windows® Operating System     1992    C:\WINDOWS\ehome\ehrecvr.exe
            Microsoft® Windows® Operating System      544    C:\WINDOWS\ehome\ehSched.exe
            Microsoft® Windows® Operating System      724    C:\WINDOWS\ehome\ehtray.exe
            Microsoft® Windows® Operating System     4024    C:\WINDOWS\ehome\mcrdsvc.exe
            Microsoft® Windows® Operating System     2444    C:\WINDOWS\system32\calc.exe
            Microsoft® Windows® Operating System     1560    C:\WINDOWS\system32\notepad.exe
            Microsoft® Windows® Operating System     1604    C:\WINDOWS\system32\notepad.exe
            Microsoft® Windows® Operating System     4664    C:\WINDOWS\system32\notepad.exe
            Microsoft® Windows® Operating System     5884    C:\WINDOWS\system32\searchfilterhost.exe
            Microsoft® Windows® Operating System     3312    C:\WINDOWS\system32\searchprotocolhost.exe
            Microsoft® Windows® Operating System      360    C:\WINDOWS\system32\spoolsv.exe
            MobileDeviceService                       580    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
            Musicmatch Jukebox                       3536    C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
            Musicmatch Jukebox                       3436    C:\PROGRA~1\MUSICM~1\MUSICM~3\MMDiag.exe
            Nikon Transfer                           4748    C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
            QBIDPService                             2308    C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
            QuickBooks                               6000    C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
            QuickBooks Automatic Update              5600    C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
            QuickBooks for Windows                   2140    C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
            sprtlisten Module                        2412    C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
            ToolbarU Application                     2728    C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
(verified)  Microsoft® Windows® Operating System     3528    C:\WINDOWS\explorer.exe
(verified)  Microsoft® Windows® Operating System     1256    C:\WINDOWS\system32\csrss.exe
(verified)  Microsoft® Windows® Operating System     3812    C:\WINDOWS\system32\ctfmon.exe
(verified)  Microsoft® Windows® Operating System     1336    C:\WINDOWS\system32\lsass.exe
(verified)  Microsoft® Windows® Operating System     3008    C:\WINDOWS\system32\searchindexer.exe
(verified)  Microsoft® Windows® Operating System     1324    C:\WINDOWS\system32\services.exe
(verified)  Microsoft® Windows® Operating System     1188    C:\WINDOWS\system32\smss.exe
(verified)  Microsoft® Windows® Operating System     1716    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1620    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1580    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1532    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System      428    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     2468    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     2508    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1840    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1664    C:\WINDOWS\system32\svchost.exe
(verified)  Microsoft® Windows® Operating System     1280    C:\WINDOWS\system32\winlogon.exe
(verified)  Windows® Internet Explorer               4592    C:\Program Files\Internet Explorer\iexplore.exe
(verified)  Windows® Internet Explorer               5772    C:\Program Files\Internet Explorer\iexplore.exe
 
 
Network activity
----------------
Process chrome.exe (588) connected on port 80 (HTTP) --> 68.177.32.11
Process chrome.exe (588) connected on port 443 (HTTP over SSL) --> 74.125.224.136
Process chrome.exe (588) connected on port 80 (HTTP) --> 68.177.32.11
Process McSACore.exe (2028) connected on port 443 (HTTP over SSL) --> 8.18.25.10
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.217
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.166
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.211
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.211
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.211
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.211
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.166
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 96.17.143.139
Process iexplore.exe (5772) connected on port 80 (HTTP) --> 74.125.224.217
 
Process svchost.exe (1580) listens on ports: 135 (RPC)
Process EEventManager.exe (1780) listens on ports: 2968
Process QBCFMonitorService.exe (2140) listens on ports: 8019
Process sprtlisten.exe (2412) listens on ports: 641
 
 
Autoruns and critical files
---------------------------
            Adobe Reader and Acrobat Manager         C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
            Adobe® Flash® Player Update Service      C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
            Apple Push                               C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
            Apple Software Update                    C:\Program Files\Apple Software Update\SoftwareUpdate.exe
            AUTOBACK.EXE                             C:\Program Files\ERUNT\AUTOBACK.EXE
            AVG Internet Security                    C:\Program Files\AVG\AVG2013\avgui.exe
            Cyberlink PowerCinema 3.0                C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
            Data Protect                             C:\Program Files\Common Files\Intuit\DataProtect\IntuitDataProtect.exe
            Drive Letter Access Component            C:\WINDOWS\system32\DLA\DLACTRLW.EXE
            EEventManager Application                C:\Program Files\Epson Software\Event Manager\EEventManager.exe
            EPSON Status Monitor 3                   C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGAA.EXE
            Google Updater                           C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            ICS Viewer                               C:\Program Files\PureEdge\Viewer 6.0\masqform.exe
            InstallShield Update Service             C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
            InstallShield Update Service             c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
            Intel Modem Event Monitor Application    C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
            Intel® Common User Interface           C:\WINDOWS\system32\hkcmd.exe
            Intel® Common User Interface           C:\WINDOWS\system32\igfxdev.dll
            Intel® Common User Interface           C:\WINDOWS\system32\igfxpers.exe
            Intel® Common User Interface           C:\WINDOWS\system32\igfxtray.exe
            IntuitSyncManager                        C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe 
            Inventoria Stock Manager                 C:\Program Files\NCH Software\Inventoria\inventoria.exe
            iTunes                                   C:\Program Files\iTunes\iTunesHelper.exe
            Java™ Platform SE Auto Updater 2 0    C:\Program Files\Common Files\Java\Java Update\jusched.exe
            Logitech Desktop Messenger               C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
            Logitech SetPoint                        c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
            Logitech SetPoint                        C:\Program Files\Logitech\SetPoint\SetPoint.exe
            Logitech SetPoint                        C:\WINDOWS\KHALMNPR.EXE
            Microsoft IntelliPoint                   C:\Program Files\Microsoft IntelliPoint\ipoint.exe
            Microsoft® Windows® Operating System     C:\Program Files\Windows Desktop Search\WindowsSearch.exe
            Microsoft® Windows® Operating System     C:\WINDOWS\ehome\ehtray.exe
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\CRYPT32.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\cryptnet.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\System32\CSCDLL.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\System32\dimsntfy.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\dumprep.exe
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\SHELL32.dll
            Microsoft® Windows® Operating System     c:\windows\system32\userinit.exe
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\WlNotify.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\WPDShServiceObj.dll
            MobileMe                                 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
            Musicmatch Jukebox                       C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mimboot.exe
            Nikon Transfer                           C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
            QuickBooks                               C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
            QuickBooks Automatic Update              C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
            QuickTime                                C:\Program Files\QuickTime\qttask.exe
            SuperAntiSpyware                         C:\Program Files\SUPERAntiSpyware\SASSEH.DLL
            SUPERAntiSpyware                         C:\Program Files\SUPERAntiSpyware\SASTask.exe
            SUPERAntiSpyware                         C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
            VProtect Application                     C:\Program Files\AVG SafeGuard toolbar\vprot.exe
            WinCal_HotKeyAndSysTray                  C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe
            Windows Genuine Advantage                C:\WINDOWS\system32\WgaLogon.dll
            Windows Live Family Safety Filter        C:\Program Files\Windows Live\Family Safety\fsui.exe
            Windows® Search                          C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll
            WpsCenter 应用程序                           C:\Program Files\Qwest 11n Wireless WPS Tool\WpsCenter.exe
(verified)  Google Update                            C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
(verified)  Google Update                            C:\Program Files\Google\Update\GoogleUpdate.exe
(verified)  GoogleToolbarNotifier                    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(verified)  Microsoft® Windows® Operating System     C:\WINDOWS\system32\BROWSEUI.dll
(verified)  Microsoft® Windows® Operating System     C:\WINDOWS\system32\ctfmon.exe
(verified)  Microsoft® Windows® Operating System     C:\WINDOWS\system32\logonui.exe
(verified)  Microsoft® Windows® Operating System     C:\WINDOWS\system32\sclgntfy.dll
(verified)  Microsoft® Windows® Operating System     C:\WINDOWS\system32\stobject.dll
(verified)  Windows® Internet Explorer               C:\WINDOWS\system32\msfeedssync.exe
(verified)  Windows® Internet Explorer               C:\WINDOWS\system32\webcheck.dll
 
 
Browser plugins
---------------
             npMailUtil Dynamic Link Library         C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{c2f863cd-0429-48c7-bb54-db756a951760}\components\MailUtil.dll
            AcroIEHelper Library                     C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            AcroIEHelperShim Library                 C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
            Adobe Acrobat                            C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
            Adobe Acrobat                            C:\Program Files\Internet Explorer\plugins\nppdf32.dll
            Adobe Acrobat                            C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
            Adobe® Flash® Player ActiveX             C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
            AOL Media Playback Control               C:\WINDOWS\Downloaded Program Files\ampAx3.0.84.2.dll
            AOL Media Playback Plugin                C:\Program Files\Mozilla Firefox\plugins\npunagi2.dll
            Bitdefender QuickScan                    C:\WINDOWS\Downloaded Program Files\qsax.dll
            Drive Letter Access Component            c:\windows\system32\dla\dlashx_w.dll
            Epson Easy Photo Print (TBL)             c:\program files\epson software\easy photo print\eptbl.dll
            Family Safety Browser Helper Object Lib  c:\program files\windows live\family safety\fssbho.dll
            getPlus+®                              C:\WINDOWS\Downloaded Program Files\gp.ocx
            getPlusPlus for Adobe 16260              C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
            Google Toolbar for Internet Explorer     c:\program files\google\google toolbar\googletoolbar_32.dll
            Google Update                            C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\npGoogleUpdate3.dll
            Google Update                            C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
            Google Updater                           C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
            GoogleToolbarNotifier                    C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll
            InstallShield Update Service             C:\WINDOWS\Downloaded Program Files\isusweb.dll
            Java Deployment Toolkit 7.0.150.3        C:\WINDOWS\system32\npDeployJava1.dll
            Java™ Platform SE 7 U15               C:\Program Files\Java\jre7\bin\jp2ssv.dll
            Java™ Platform SE 7 U15               C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
            Java™ Platform SE 7 U15               C:\Program Files\Java\jre7\bin\ssv.dll
            mailcount.dll                            C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{c2f863cd-0429-48c7-bb54-db756a951760}\components\mailcount.dll
            McAfee SiteAdvisor                       C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
            McAfee SiteAdvisor                       c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll
            McAfee SiteAdvisor                       C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
            Microsoft Office Live Plug-in for Firef  C:\Program Files\Microsoft\Office Live\npOLW.dll
            Microsoft® Windows Media Player Firefox  C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\System32\mswsock.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\system32\rsvpsp.dll
            Microsoft® Windows® Operating System     C:\WINDOWS\System32\winrnr.dll
            npGoogleGadgetPluginFirefoxWin.dll       C:\Program Files\Mozilla Firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
            npitunes.dll                             C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
            NPSWF32_11_6_602_180.dll                 C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
            QuickTime Plug-in 7.7.3                  C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
            Shockwave for Director                   C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
            Shockwave for Director                   C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
            Silverlight Plug-In                      c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
            TODO: <Product name>                     C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components\XPATLCOM.dll
            unagiuninst.exe                          C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
            Windows Live® Photo Gallery              C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
            Windows Presentation Foundation          c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
            Windows® Internet Explorer               C:\WINDOWS\system32\ieframe.dll
            Yahoo Application State Plugin           C:\Program Files\Yahoo!\Shared\npYState.dll
            Yahoo! activeX Plug-in Bridge            C:\Program Files\Yahoo!\Common\npyaxmpb.dll
            Yahoo! Single Instance for Mail          C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
(verified)  DivX Player Netscape Plugin              C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
(verified)  InstallShield Update Service             C:\WINDOWS\Downloaded Program Files\dwusplay.dll
(verified)  InstallShield Update Service             C:\WINDOWS\Downloaded Program Files\dwusplay.exe
(verified)  Microsoft Office 2003                    C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
(verified)  Microsoft® Windows Live Login Helper     C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 
 
Missing files
-------------
File not found: "c:\program files\microsoft\bingbar\bingext.dll"
  --> HKLM\Software\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\InprocServer32\"(default)"
  --> HKLM\Software\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\InprocServer32\"(default)"
 
File not found: C:\Program Files\Dell Support Center\bin\sprtcmd.exe
  --> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"DellSupportCenter"
  --> HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"DellSupportCenter"
 
File not found: C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe /q /c
  --> HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"WinCalendarV3"
 
File not found: C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
  --> HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"OE_OEM"
 
File not found: C:\Program Files\TrojanHunter 5.0\THGuard.exe
  --> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"THGuard"
 
File not found: C:\Program Files\Windows Defender\MSASCui.exe
  --> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Windows Defender"
 
File not found: C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
  --> HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"Search Protection"
 
File not found: c:\documents and settings\gregg jantzen\local settings\application data\getsavin\ie\getsavin_1364184601.dll
  --> HKLM\Software\Classes\CLSID\{E541D5C4-2EC7-4D1C-A64B-7996D29A3396}\InprocServer32\"(default)"
 
File not found: c:\progra~1\mcafee\msk\mskapbho.dll
  --> HKLM\Software\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\InprocServer32\"(default)"
 
 
Scan
----
MD5: 8fe6ab59cab8f2c038fea9522a5eeba7  C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE
MD5: ec6a73cd8413f68655e5e0b99c415a21  C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE
MD5: 625ea13387d3f2c003a6677d6ade6942  C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components\XPATLCOM.dll
MD5: bf605f72a7554e29c2fcbf75c42296fe  C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{c2f863cd-0429-48c7-bb54-db756a951760}\components\mailcount.dll
MD5: c29407ea98713dbeeb849036eca5b602  C:\Documents and Settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\extensions\{c2f863cd-0429-48c7-bb54-db756a951760}\components\MailUtil.dll
MD5: 27352aac3b0cce5c325cec3be4d83a9b  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\26.0.1410.43\chrome.dll
MD5: e56fe56a51bc05e9cc367b3cc2bbffa9  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\26.0.1410.43\ffmpegsumo.dll
MD5: 20b2fd7ba7b16b5b0297062f2dde5296  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\26.0.1410.43\icudt.dll
MD5: 689035d36092179300547ae4266a00ee  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\26.0.1410.43\pdf.dll
MD5: 1948bffb626f0065ba6911fe970e8483  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\26.0.1410.43\ppGoogleNaClPluginChrome.dll
MD5: b0bf698030db6561393ae753c6d3f936  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
MD5: a2cb17c6ecd68ab13d3589f626cf3e86  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
MD5: becdda0990debd72a30096533521ad73  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\GoogleCrashHandler.exe
MD5: e0ff893763ba82baabb869a351f0c455  C:\Documents and Settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\1.3.21.135\npGoogleUpdate3.dll
MD5: 1ecf935bbab892f612bb6e7b946bfd8a  C:\Documents and Settings\Gregg Jantzen\Local Settings\Temp\RarSFX0\AutoEJCD.exe
MD5: 88d02c0bd94e22fa7e3b98e96cb83bad  C:\Documents and Settings\Gregg Jantzen\Local Settings\Temp\RarSFX0\AutoInstallEJCDSVC.exe
MD5: a54da0409503c6993c5e017dc5057483  C:\Documents and Settings\Gregg Jantzen\Local Settings\Temp\RarSFX0\MSVCP60.DLL
MD5: 1ecf935bbab892f612bb6e7b946bfd8a  C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoEJCD.exe
MD5: 88d02c0bd94e22fa7e3b98e96cb83bad  C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSvc.exe
MD5: db988b4550db9bce86f9199d961057fc  C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
MD5: 34ebd4ff6a24d86bb4716d6afcc1a89b  C:\Program Files\Apple Software Update\SoftwareUpdate.exe
MD5: bc338374dbfe6531f35b1bda24232b43  C:\Program Files\AVG SafeGuard toolbar\vprot.exe
MD5: 5378ad5a54c074eba41b7d97fc96d63f  C:\Program Files\AVG\AVG2013\avgadvisorx.dll
MD5: 730e90935150048a4e5f392fcdd49da3  C:\Program Files\AVG\AVG2013\avgapps.dll
MD5: bbad10f039069325326cda0a68d55356  C:\Program Files\AVG\AVG2013\avgcfgx.dll
MD5: 414f57444511b818db23fa5cf89f3205  C:\Program Files\AVG\AVG2013\avgclitx.dll
MD5: 40e12972bb73c2927e19553e30eaee3c  C:\Program Files\AVG\AVG2013\avgcommx.dll
MD5: e69a7ad873caf58d3a39dd8b0db94724  C:\Program Files\AVG\AVG2013\avgcslx.dll
MD5: 57ee7b58e1da5e5d9d02590fbb3ca77f  C:\Program Files\AVG\AVG2013\avgdecider.dll
MD5: 126b84eab69bd5116cc5a89c5f9e23ff  C:\Program Files\AVG\AVG2013\avgfwcfg3dllx.dll
MD5: dc4739dd82eafd85299b4e87b5f63207  C:\Program Files\AVG\AVG2013\avgfws.exe
MD5: 9eed448e2c6306bfd8b2b19063fc21a1  C:\Program Files\AVG\AVG2013\avgidpmx.dll
MD5: 91ca748b04bf0e2cab06be29116e05c5  C:\Program Files\AVG\AVG2013\avgidpsdkx.dll
MD5: 0d8244a9db70bc6c36e2fb56f6039ab6  C:\Program Files\AVG\AVG2013\avgidsagent.exe
MD5: 6edbf91c10ee47ac4ac1c58e71f0245a  C:\Program Files\AVG\AVG2013\avgkrnlapix.dll
MD5: 2fef21eee9934bb10165aa02e530183c  C:\Program Files\AVG\AVG2013\avglngx.dll
MD5: 21139ed432efb4a8cdf715862dbdf9e0  C:\Program Files\AVG\AVG2013\avglogx.dll
MD5: ae4d9dc676a2517dee3e51978bcfe47c  C:\Program Files\AVG\AVG2013\avgntopensslx.dll
MD5: 099d9f937f6ee23672391b3a5bd6d7e5  C:\Program Files\AVG\AVG2013\avgntsqlitex.dll
MD5: 5bdb1e096dea119a4d205acb6e958175  C:\Program Files\AVG\AVG2013\avgopensslx.dll
MD5: 94bf8d688c98db6731890a2d3820c9da  C:\Program Files\AVG\AVG2013\avgscanx.dll
MD5: 6a0a8d20469efd39a4a3463a88811a57  C:\Program Files\AVG\AVG2013\avgsched.dll
MD5: 7f2a2dda32a0cdf28868864a87a05b23  C:\Program Files\AVG\AVG2013\avgsecapix.dll
MD5: 3b3d5e94a5f24417be2c179ddd883702  C:\Program Files\AVG\AVG2013\avgsysx.dll
MD5: ba92c496f08d78f7db263a20c36aa546  C:\Program Files\AVG\AVG2013\avgui.exe
MD5: ece9b82c7696ad211f9bd64e41df598b  C:\Program Files\AVG\AVG2013\avguires.dll
MD5: 575f93347da11cfd6c2e99a2a479cdaf  C:\Program Files\AVG\AVG2013\avgvvx.dll
MD5: bea22322ea2dfe41cf7ce22a6ede08ea  C:\Program Files\AVG\AVG2013\avgwd.dll
MD5: dc98337f0d2a9f6c0b6fb682297ece3b  C:\Program Files\AVG\AVG2013\avgwdsvc.exe
MD5: 1931311af80a54a4fe8f0862820fe015  C:\Program Files\AVG\AVG2013\avgwdwsc.dll
MD5: 569a07c4395ab391d0d0e437654d871a  C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
MD5: 40986a81053401e5379154818fa8733c  C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
MD5: 8f08f3d3a15c6a82f70ddc04554ca808  C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
MD5: 3cb07566302bceeb898de270a0bec175  C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
MD5: 60c079cb2150760263d1fe5ff6218961  C:\Program Files\Common Files\Apple\Apple Application Support\AppleVersions.dll
MD5: 46da8e7484ac7a52ce1d6e428398724b  C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
MD5: f6fd367c9eaaedf90cd7a7952ae0b336  C:\Program Files\Common Files\Apple\Apple Application Support\ASL.dll
MD5: af54247f97ccf3539de7505c09972ff9  C:\Program Files\Common Files\Apple\Apple Application Support\CFNetwork.dll
MD5: ef8cd3c64ee9c08980d6d06ccce46c68  C:\Program Files\Common Files\Apple\Apple Application Support\CoreFoundation.dll
MD5: 149d74e1128a86dc9cfb2851fbea11eb  C:\Program Files\Common Files\Apple\Apple Application Support\icudt46.dll
MD5: ff9831030678c7b6d70bac00f68f8976  C:\Program Files\Common Files\Apple\Apple Application Support\libdispatch.dll
MD5: fd86c605fd7ad4a41c01ec7a4a1e1c5d  C:\Program Files\Common Files\Apple\Apple Application Support\libicuin.dll
MD5: a3609397ef273b03295dbb10274be12c  C:\Program Files\Common Files\Apple\Apple Application Support\libicuuc.dll
MD5: 18301b40411b2108076ab685b4e4b6dc  C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MD5: 78865abc5f5d13190f8b35bd9044714a  C:\Program Files\Common Files\Apple\Apple Application Support\objc.dll
MD5: df1c1cd0c7ee95cc00d71e9e415e7bcd  C:\Program Files\Common Files\Apple\Apple Application Support\pthreadVC2.dll
MD5: c28fd3b37b6f18751c99e6022a2a9782  C:\Program Files\Common Files\Apple\Apple Application Support\SQLite3.dll
MD5: 64894527838c86454e2f378ff39fa336  C:\Program Files\Common Files\Apple\Apple Application Support\YSCrashDump.dll
MD5: a56ccbbfccedce2fd9c69fed24e035e3  C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MD5: 4fe5c6d40664ae07be5105874357d2ed  C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
MD5: 4327cf9a9d0864ca0ffc97fcda97315a  C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
MD5: 3417e5691ac9e5b6c3176d2b66dae82d  C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
MD5: 37cf3324f46ceb3a4f2686c617cbb35c  C:\Program Files\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
MD5: 24665b221424ffd7b71f0d2c398f2f4f  C:\Program Files\Common Files\Apple\Mobile Device Support\MobileDevice.dll
MD5: 10b2e2fca707501600d1deab1b71f699  C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
MD5: 583b7d111304be63d7d9cb65482d2187  C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
MD5: 9e109b03018763fdcb075ce74547be22  c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
MD5: 04c91a0c40904714eba36c6fc5038ffa  C:\Program Files\Common Files\Intuit\DataProtect\IntuitDataProtect.exe
MD5: 25fc19badf78b7fb1d835aac4b0b91a5  C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
MD5: 65e4bfc416f58b68d09bf2001c656679  C:\Program Files\Common Files\Intuit\Entitlement Client\v6.0\Client\EntitlementClientBootstrap.dll
MD5: a9e33645539c8fb2201fef0b02aaaabf  C:\Program Files\Common Files\Intuit\QuickBooks\addinmgr2.dll
MD5: 70ab0851582d87858832a9e2ba2c06b6  C:\Program Files\Common Files\Intuit\QuickBooks\CoLocator2.dll
MD5: 6bee1814470dc12fa20c53dfc3c97ebb  C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
MD5: c8da4746d1c87fe3e5dcc3ce86218b62  C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
MD5: 746040d4d0e8a76635e8fc6e824d49c2  C:\Program Files\Common Files\Intuit\QuickBooks\QBDBPortFinder.dll
MD5: 9dfec8c0a17f5bf345ba418ff3d2c841  C:\Program Files\Common Files\Intuit\QuickBooks\QBExcel2003ReportUpdater.dll
MD5: f8a06bbb558f822b21be1b58b1ee8661  C:\Program Files\Common Files\Intuit\QuickBooks\QBExcel2007ReportUpdater.dll
MD5: 172a02ed68423c839454dd8e12388d09  C:\Program Files\Common Files\Intuit\QuickBooks\QBInstanceFinder.dll
MD5: f5dd097058c147cde4c5aa476b2f3f2c  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\dbghelp.dll
MD5: ed3a835f8c65b4371e31eb922ee8293f  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\QBMsgMgrps.dll
MD5: 797143456ce43aaaaefe791c04c81d08  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\QBMsgRequestMgr.dll
MD5: 6ce36da39b0ea1879ab93b94b1e44a9a  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\QBSendError20.dll
MD5: ff562dab6bcec0427c46805bbb93e901  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\QBUChannel.dll
MD5: 64ae5305771907914386081b15cb92bd  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
MD5: 6a93b6759bc99792a0bdbb9e477ca09a  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\QBUServiceMgr.dll
MD5: fc2741a70b84d7e7ba5f51a352669ee8  C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\stlport_r50.dll
MD5: fc2741a70b84d7e7ba5f51a352669ee8  C:\Program Files\Common Files\Intuit\QuickBooks\stlport_r50.dll
MD5: a055fb9195bad9f2c7ad18b2fa9ff87c  C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe 
MD5: 5dfe72b9f1ff669070fc032090b7b982  C:\Program Files\Common Files\Java\Java Update\jucheck.exe
MD5: 12916e0642e92561c98b18a2a2d01b14  C:\Program Files\Common Files\Java\Java Update\jusched.exe
MD5: cf480a158502332be8afa589963bb0e1  c:\program files\common files\logishrd\bluetooth\LBTServ.dll
MD5: a0f7dc0080e4f97dc97de08b699e231b  C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
MD5: 2acbfef9984f0fe9849da857206ccecc  c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
MD5: 8a244848ba55750733fec7c2fcf39abd  C:\Program Files\Common Files\Logishrd\KHAL2\KHALAPI.DLL
MD5: 2027fe3aeab821a35df6a6394e7bc07b  C:\Program Files\Common Files\Logishrd\KHAL2\KHALHID.DLL
MD5: e80bd1af0ec504090654b747059a42e5  C:\Program Files\Common Files\Logishrd\KHAL2\KHALHPP.DLL
MD5: 148a9f671cf5f55a4089af2cea74df79  C:\Program Files\Common Files\Logishrd\KHAL2\KHALITCH.DLL
MD5: 19e0d28fe38f55ca4c63f77d3657959a  C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
MD5: 29d15e2a9c8d8d72c1689b12599c8f63  C:\Program Files\Common Files\Logishrd\KHAL2\KHALMOU.DLL
MD5: c47f66c47a1d2f5f6cc95184cf0375be  C:\Program Files\Common Files\Logishrd\KHAL2\KHALMW.DLL
MD5: 97cf0bc350d365d9c098f86d712bd297  C:\Program Files\Common Files\Logishrd\KHAL2\KHALUSB.DLL
MD5: 77e9ce0672e3d3d0399d9de2c657da2d  C:\Program Files\Common Files\Microsoft Shared\office11\mso.dll
MD5: d78de5bf832106865f9735951f11c4f1  C:\Program Files\Common Files\Microsoft Shared\office11\riched20.dll
MD5: b85bdaddd29a32e518e12cbe20e05f3d  C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\1033\VBE6INTL.DLL
MD5: eafef8a6a14b024c5f97d00d0d501078  C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\VBE6.DLL
MD5: 7cfc00b4501a14cf369f869ab8e79e68  C:\Program Files\Common Files\Microsoft Shared\Windows Live\msidcrl40.dll
MD5: c12ef776375161398861d819139d84c5  C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
MD5: 6bd79c3ef6b8ac9bb0b83e0f15478572  C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
MD5: 9a97b7024e2ca4d42046bf272997e14c  C:\Program Files\Common Files\supportsoft\bin\ssrc.exe
MD5: b3e3c57fd22e71ce20389372d972c6dc  C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
MD5: ea3329e06d7c794b788ceada90ab7000  c:\program files\epson software\easy photo print\eptbl.dll
MD5: 1568ff282e268082c67cf0c3ebcc9179  C:\Program Files\Epson Software\Event Manager\EEventManager.exe
MD5: fb8b3e6bf6445c22f30dfc26b200e569  C:\Program Files\Epson Software\Event Manager\epnsm.dll
MD5: 637124cdbff5819cb8a8478838a33048  C:\Program Files\Epson Software\Event Manager\ESPSUTL.dll
MD5: 2031dcc0083a134af9451cd1402ffce3  C:\Program Files\Epson Software\Event Manager\LcMgr.dll
MD5: 4956c57498ad08724ae41920a81b6963  C:\Program Files\Epson Software\Event Manager\ScanEngine30.dll
MD5: 17386c6e17a26bb0c9765577e446e7d9  C:\Program Files\Epson Software\Event Manager\ScnMgr10.dll
MD5: e00de20f0f6bed5cd2160247ddc9443b  C:\Program Files\ERUNT\AUTOBACK.EXE
MD5: 5d4bc124faae6730ac002cdb67bf1a1c  C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
MD5: b9497c5acaea521663bffbb321dd3afa  c:\program files\google\google toolbar\googletoolbar_32.dll
MD5: 358878e398ab0fb8b1ee176c2e3edf48  C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
MD5: 917a728a12f25fcf4636858fac9979fa  C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll
MD5: e0ff893763ba82baabb869a351f0c455  C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
MD5: bc02e491e88492b02363ce1b384ff7a7  C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
MD5: 9da26b773bd04b867a8e9f427cd048fc  C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
MD5: f361c67956c8aa1576883b2285dcb183  C:\Program Files\Internet Explorer\ieproxy.dll
MD5: f647d0bea553c1d0c251ce07da6a5511  C:\Program Files\Internet Explorer\plugins\nppdf32.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
MD5: 45f6aea51a1e7a84785ff945ffb58a6a  C:\Program Files\Internet Explorer\xpshims.dll
MD5: 40d15e471be22ca87c2496e38aa84661  C:\Program Files\Intuit\QuickBooks 2012\abmapi.dll
MD5: ffe81dbc1d9ea9a1e9416d5f555e1682  C:\Program Files\Intuit\QuickBooks 2012\Accountant.dll
MD5: 72cc588a3534a55660e9654cf58d8842  C:\Program Files\Intuit\QuickBooks 2012\ACE.dll
MD5: b62031fd405e4e289d2e105878c166b3  C:\Program Files\Intuit\QuickBooks 2012\ACM.dll
MD5: 264ffbbb1617ac3e20e196e59292f7d0  C:\Program Files\Intuit\QuickBooks 2012\ADR.dll
MD5: 96a19ccc5f1f4a753b4ea06c541b7e22  C:\Program Files\Intuit\QuickBooks 2012\APPCORE.dll
MD5: 0e335cc23183e6b1364bf940d2a37452  C:\Program Files\Intuit\QuickBooks 2012\BackupLib.dll
MD5: d3c2945f173b2b049272f41d45d3ad6c  C:\Program Files\Intuit\QuickBooks 2012\bizutil.dll
MD5: 1edbc38a8802b10b1c2e64a9213afc8d  C:\Program Files\Intuit\QuickBooks 2012\boost_regex-vc90-mt-p-1_33.dll
MD5: 24ee6f1419baebfbc2c9e879707993c5  C:\Program Files\Intuit\QuickBooks 2012\boost_serialization-vc90-mt-p-1_33.dll
MD5: a98ab9cf9d8b349fadf26fdf615d2eab  C:\Program Files\Intuit\QuickBooks 2012\cindexdb.dll
MD5: 90e4dd9f1b2ce933232452274a1c3e88  C:\Program Files\Intuit\QuickBooks 2012\DatabaseManager.dll
MD5: f5dd097058c147cde4c5aa476b2f3f2c  C:\Program Files\Intuit\QuickBooks 2012\dbghelp.dll
MD5: deb0c6e41c81f4ac37eda3e526520981  C:\Program Files\Intuit\QuickBooks 2012\dbicu11.dll
MD5: 89769b8dae658e1f301fa085ea5b9ff0  C:\Program Files\Intuit\QuickBooks 2012\dbicudt11.dll
MD5: ca6caf4453b483765e6a25fb491b9b56  C:\Program Files\Intuit\QuickBooks 2012\dblgen11.dll
MD5: 1535273f63c2ce11e73d85c58abc6118  C:\Program Files\Intuit\QuickBooks 2012\dblib11.dll
MD5: d3457333710200a7a803ec4b0a2508d3  C:\Program Files\Intuit\QuickBooks 2012\dbtool11.dll
MD5: ceef46e0054d406fbc996d64c0c23ce3  C:\Program Files\Intuit\QuickBooks 2012\DMAccountant.dll
MD5: 9559dea8a834bfaf5b021e8dc3c38c2d  C:\Program Files\Intuit\QuickBooks 2012\DMALIAS.dll
MD5: 372404507875963c54e89cc3af8c251c  C:\Program Files\Intuit\QuickBooks 2012\DMAttachedDoc.dll
MD5: 05a847a897bde2cbe15c390797918ffd  C:\Program Files\Intuit\QuickBooks 2012\DMAUDIT.dll
MD5: df03d819c9e70e4d61f6bd048b75979e  C:\Program Files\Intuit\QuickBooks 2012\DMBUDGET.dll
MD5: 224a84b59210d191b5f0b684fdbcaf7c  C:\Program Files\Intuit\QuickBooks 2012\DMCore.dll
MD5: 85c1bbc17e593394295773cf12e5345f  C:\Program Files\Intuit\QuickBooks 2012\DMCustomerNotes.dll
MD5: e7cfef777f7b01a450c6a9ef7f0e9125  C:\Program Files\Intuit\QuickBooks 2012\DMDATASYNC.dll
MD5: 88e0ce7400bd37d9fa40bf00d25790f0  C:\Program Files\Intuit\QuickBooks 2012\DMDQE.dll
MD5: f46abeaf662211f6dcde55b8fb090ce0  C:\Program Files\Intuit\QuickBooks 2012\DMEDL.dll
MD5: a8db540d20999f33be6d703c327d92cb  C:\Program Files\Intuit\QuickBooks 2012\DMGenPrefs.dll
MD5: 58f60f2ca7c62bf674a7e433afa45fc9  C:\Program Files\Intuit\QuickBooks 2012\DMInventory.dll
MD5: eedd523737a821ee55134732f54745b1  C:\Program Files\Intuit\QuickBooks 2012\DMMemorizedTransaction.dll
MD5: 0d613cde002023c77b7543ccaea1301d  C:\Program Files\Intuit\QuickBooks 2012\DMOLB.dll
MD5: f8e171ce4fc1cf197e4bdacfb9682b3f  C:\Program Files\Intuit\QuickBooks 2012\DMPAYROLL.dll
MD5: 593157ae4a6efccda313d0727f1809fd  C:\Program Files\Intuit\QuickBooks 2012\DMPREFS.dll
MD5: 827bb68f5e2b66e304833003c2f28812  C:\Program Files\Intuit\QuickBooks 2012\DMTIME.dll
MD5: 5b87f392cc1c9b7c3dc73d093214f1c7  C:\Program Files\Intuit\QuickBooks 2012\DMTXN.dll
MD5: 834b55fcc0fff5e7864fe8c7ac7a935d  C:\Program Files\Intuit\QuickBooks 2012\DMUI.dll
MD5: 89bef51524af02c88dec41724020d024  C:\Program Files\Intuit\QuickBooks 2012\DMUSERS.dll
MD5: 46ccb31c8634598963e0db7c7ec9a181  C:\Program Files\Intuit\QuickBooks 2012\DocumentManagement.dll
MD5: 72ecb98e0813f475da777c59a7b10802  C:\Program Files\Intuit\QuickBooks 2012\ELCORE.dll
MD5: 309c4babc9c1bee59df19858fd384261  C:\Program Files\Intuit\QuickBooks 2012\ESHELL.dll
MD5: 54611693dac763e5b6add80afbe7212a  C:\Program Files\Intuit\QuickBooks 2012\FeatureMgr.dll
MD5: cf6ed0aea0fcdac804f259f185326add  C:\Program Files\Intuit\QuickBooks 2012\Features.dll
MD5: b67f6cd9932ba01b250ccf447c833874  C:\Program Files\Intuit\QuickBooks 2012\FileManifest.dll
MD5: 80c6335e6264ed94b19d114b956bf250  C:\Program Files\Intuit\QuickBooks 2012\mbpopup.dll
MD5: 9bc31e86629f98ad18e42cf29726f8ba  C:\Program Files\Intuit\QuickBooks 2012\msgDBAddIn.dll
MD5: d6f5ee0c44e60c5fe03eb1f7e96e3510  C:\Program Files\Intuit\QuickBooks 2012\NAAuthTool.dll
MD5: 22e9a9ac0ed4e7bc15766bf887955be1  C:\Program Files\Intuit\QuickBooks 2012\OPAQUEBUFFER.dll
MD5: 0aa781fc90c1620f2f3ccbc26fcf8949  C:\Program Files\Intuit\QuickBooks 2012\paycore.dll
MD5: dfd932895eb7d6101bf7a70419848ed0  C:\Program Files\Intuit\QuickBooks 2012\PAYRES.dll
MD5: 1195416e7bc0cb547a9e161f571875ca  C:\Program Files\Intuit\QuickBooks 2012\PAYSERV.dll
MD5: 5c38ca72f9e4ec44e53cff0008c56b96  C:\Program Files\Intuit\QuickBooks 2012\PAYUTIL.dll
MD5: cb801618a26bdd76695bc825d7ec2f5b  C:\Program Files\Intuit\QuickBooks 2012\payxsgen.dll
MD5: c0090db1e042193b22dd969950f8b063  C:\Program Files\Intuit\QuickBooks 2012\PM.dll
MD5: c4775fa418028d61565a0b56f194bcd6  C:\Program Files\Intuit\QuickBooks 2012\PortFile.dll
MD5: 3abf99d7f6082b5a4537eb7464a5543f  C:\Program Files\Intuit\QuickBooks 2012\PREFS.dll
MD5: da1b51b6193fc73327877722712596af  C:\Program Files\Intuit\QuickBooks 2012\PRNotificationLoader.dll
MD5: e4320c214490b82c2e93c2ecd0777496  C:\Program Files\Intuit\QuickBooks 2012\QBATTR32.dll
MD5: c22fc6143b0da67eb01a1cf94174a0f1  C:\Program Files\Intuit\QuickBooks 2012\qbbrow32.dll
MD5: 9ec66f8c991ad4fb56b0ea618521fb4e  C:\Program Files\Intuit\QuickBooks 2012\QBCHAO32.dll
MD5: 74eabff4ca2c2fb21cc0f4e67139aa76  C:\Program Files\Intuit\QuickBooks 2012\qbci32.dll
MD5: 34f88b96e9f27840853d58c285541200  C:\Program Files\Intuit\QuickBooks 2012\QBCompressor.dll
MD5: 82b508f0898c8b3054d97ba3bce529e2  C:\Program Files\Intuit\QuickBooks 2012\QBCONV32.dll
MD5: aaa7ea3e1130d3cd455137c2e0d2a4eb  C:\Program Files\Intuit\QuickBooks 2012\QBDomain.dll
MD5: 2c45997bdf7b55434bd93ec9c8c0be80  C:\Program Files\Intuit\QuickBooks 2012\qbform32.dll
MD5: 60d8e4bce79523e85315d49b81153082  C:\Program Files\Intuit\QuickBooks 2012\QBInbox.dll
MD5: fc05d66829cd8230105bcea99c37597b  C:\Program Files\Intuit\QuickBooks 2012\QBINTR32.dll
MD5: ba6b87f71992bb66eaf47ddcadfa286a  C:\Program Files\Intuit\QuickBooks 2012\QBITools.dll
MD5: 3b38a10cba324f53fdce6080d2edf193  C:\Program Files\Intuit\QuickBooks 2012\qblist32.dll
MD5: 416c1b840039e9d71ded051f65e133af  C:\Program Files\Intuit\QuickBooks 2012\QBMAPILibrary.dll
MD5: 14d0977e9eaacb15a458ace56ab62db6  C:\Program Files\Intuit\QuickBooks 2012\QBMAS32.dll
MD5: 6feac9d36f0d75329dfeabccaf4b6dfe  C:\Program Files\Intuit\QuickBooks 2012\QBMFCT32.dll
MD5: 0b5b295a79f757e6ffc9c5574e759680  C:\Program Files\Intuit\QuickBooks 2012\QBMSIntg.DLL
MD5: f1dc5019840fbad93ebdd3107d3bb3df  C:\Program Files\Intuit\QuickBooks 2012\QBOESD32.dll
MD5: 0cc911eb65f36b09e086a8219f02fa03  C:\Program Files\Intuit\QuickBooks 2012\QBONLI32.dll
MD5: a2ab9bc052bbe7066ac7ea2d8e9cdcb7  C:\Program Files\Intuit\QuickBooks 2012\qbot.dll
MD5: 5509fa5851c18b25e3bf6295214b8e03  C:\Program Files\Intuit\QuickBooks 2012\QBQWUT32.DLL
MD5: 46f11afae9ceeca33ab6594d4f069935  C:\Program Files\Intuit\QuickBooks 2012\QBSDKNotify.dll
MD5: 6ce36da39b0ea1879ab93b94b1e44a9a  C:\Program Files\Intuit\QuickBooks 2012\QBSendError20.dll
MD5: 87471586b3b32e4faf6dccb17a0e87dc  C:\Program Files\Intuit\QuickBooks 2012\QBSTYL32.dll
MD5: 19975818977451e9a3c1cc37c7c34333  C:\Program Files\Intuit\QuickBooks 2012\qbtool32.dll
MD5: 5004addb1b44783f4f485e6b86e729f5  C:\Program Files\Intuit\QuickBooks 2012\qbtxn32.dll
MD5: 9e7fcf19a363cdfe90d664fdd8898b24  C:\Program Files\Intuit\QuickBooks 2012\QBUtilities.dll
MD5: 4a667fef474cc7dc60b1e63eb9da3822  C:\Program Files\Intuit\QuickBooks 2012\QBW32.EXE
MD5: 758af0f51a9ce6654b567322679ea4f5  C:\Program Files\Intuit\QuickBooks 2012\qbwfls32.dll
MD5: ff145eae9fcb70da96faeb3f0e0a9d8d  C:\Program Files\Intuit\QuickBooks 2012\QBWIN32.dll
MD5: 74a61666ccae2e7f7191cd6c5d141f93  C:\Program Files\Intuit\QuickBooks 2012\QBWMain.dll
MD5: eb2f0d3ed653578fb5374359e7a02981  C:\Program Files\Intuit\QuickBooks 2012\qbwpsrun.dll
MD5: 5d8c7f8220a1a97ee635239b2bac8e4a  C:\Program Files\Intuit\QuickBooks 2012\QBWRPT32.dll
MD5: f5f89223674d5fd4dd0e6017397e17a7  C:\Program Files\Intuit\QuickBooks 2012\qbxladin.dll
MD5: d8e7f0d8cabac582669f7862a57b0684  C:\Program Files\Intuit\QuickBooks 2012\ReportInterop.dll
MD5: 6c446949aaec389e85068a53b94b7745  C:\Program Files\Intuit\QuickBooks 2012\sdkutil.dll
MD5: ce8b26e0ef2f663983873a9b5df3ec0d  C:\Program Files\Intuit\QuickBooks 2012\skucore.dll
MD5: be898323af20674c1adb083b5b30e9fb  C:\Program Files\Intuit\QuickBooks 2012\SSCE5232.dll
MD5: fc2741a70b84d7e7ba5f51a352669ee8  C:\Program Files\Intuit\QuickBooks 2012\stlport_r50.dll
MD5: b77ef061a57e9dbb8882e1ca5f3f491c  C:\Program Files\Intuit\QuickBooks 2012\TEJ32.dll
MD5: 5ed5b60fe35c53f158015a7bc720875d  C:\Program Files\Intuit\QuickBooks 2012\TIUpload.dll
MD5: efc7971f010fd224631c06d7ae7dd29e  C:\Program Files\Intuit\QuickBooks 2012\TRACKING.dll
MD5: cc413ba457a97d32f59d84d206bfa62b  C:\Program Files\Intuit\QuickBooks 2012\txncore.dll
MD5: 8de0ec05f9c36e8e7d81f38f8498187a  C:\Program Files\Intuit\QuickBooks 2012\TXNFORM.dll
MD5: e099c0070b3a4995fd758536049f8223  C:\Program Files\Intuit\QuickBooks 2012\ui.dll
MD5: 50779c0c5264445fc18c00a3fe65eafd  C:\Program Files\Intuit\QuickBooks 2012\UM.dll
MD5: 1f6ac791c6fe97726264f305c5db0f57  C:\Program Files\Iomega\System32\AppServices.exe
MD5: 02682ae021f0fb92f5768b49776b8b5b  C:\Program Files\iPod\bin\iPodService.exe
MD5: 10e168e28e47b09aab9bf218dbd83e5a  C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.DLL
MD5: b02bb5729be8bb6a83987b56e13bdf44  C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL
MD5: bc5e4f284065d426a0bf7fad3ca32450  C:\Program Files\iTunes\iTunesHelper.dll
MD5: 7be48c578124bbf4c1faafb4e718a4cc  C:\Program Files\iTunes\iTunesHelper.exe
MD5: 56dd8322e112b35e7986137eb64ea039  C:\Program Files\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.DLL
MD5: 6b7f83060a9a8b96380174f779472104  C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL
MD5: f00a0ef5835e1b96f783d617f1948704  C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
MD5: 02ddc8b36926a760e2d7edcceb828e42  C:\Program Files\Java\jre7\bin\jp2ssv.dll
MD5: 1758af653723679e3746fc7ddd93c69b  C:\Program Files\Java\jre7\bin\jqs.exe
MD5: 67ec459e42d3081dd8fd34356f7cafc1  C:\Program Files\Java\jre7\bin\MSVCR100.dll
MD5: afd9010dc500096809c2784551909304  C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
MD5: 12d0a8895cb4dccf28bc69df7d4ca3bf  C:\Program Files\Java\jre7\bin\ssv.dll
MD5: ad91a86a3687ba22295b787ae03997c8  C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.87-8876480SL\Program\backWeb.dll
MD5: 3d9d58418a5022a7951ca6cbd8f6d4ac  C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.87-8876480SL\Program\BWfiles.dll
MD5: 41fb48ce3f6eb64756d6972877d9f559  C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.87-8876480SL\Program\bwsec.dll
MD5: 17d2082d3c7085b62bd769938e0ddf3e  C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.87-8876480SL\Program\clntutil.dll
MD5: f8075cbd1a767566b79855b692474092  C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.87-8876480SL\Program\EN\ClientRc.dll
MD5: 941d1a2eec18d779b00d77e0e7dfec0d  C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWfiles-8876480.dll
MD5: 93ff72e0481ff11c832e21e732d46792  C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
MD5: eac0d6ab8d79426168be1140d8190361  C:\Program Files\Logitech\Desktop Messenger\8876480\Program\SyncExt.dll
MD5: 01e9b4de8290767bd05f1eff4eeca521  C:\Program Files\Logitech\SetPoint\GameHook.dll
MD5: b1efb8afe95483b29c96cf85e81e0a36  C:\Program Files\Logitech\SetPoint\IMHook.dll
MD5: 8eb7717bac088a69646f1d5474e8b50e  C:\Program Files\Logitech\SetPoint\kgame.dll
MD5: 8fe1f0decabaec25ca50df2a0901a761  C:\Program Files\Logitech\SetPoint\LCabHandler.dll
MD5: 1318c19ccc2e74f55137268c41ccf86f  C:\Program Files\Logitech\SetPoint\lgscroll.dll
MD5: 0c56004a95702b35e99bafe09f92ae87  C:\Program Files\Logitech\SetPoint\Macros\MacroCore.dll
MD5: d0948be9b3547b9669195d7f84fc09f7  C:\Program Files\Logitech\SetPoint\SetPoint.exe
MD5: 9261ce6e86e7caf12be049055be7b8fc  C:\Program Files\Logitech\SetPoint\SetPointCOM.dll
MD5: 38f2c84db3b6f94d12336df0a03c1595  C:\Program Files\Logitech\SetPoint\WebBrowserSupport.dll
MD5: 1acaa67676e9e7bda5e0c41b6e0decaf  C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
MD5: 916b8954ac3e06dc9e898affb41f3fb6  C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
MD5: 1e4ab28f1e71b24b5488505d4948a78f  c:\Program Files\McAfee\SiteAdvisor\mcbrwctl.dll
MD5: 7b17107d054a88c6d1ecc285b502d2d9  c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll
MD5: 6c3d154fff0a97a6c3d9f78d60c41655  c:\Program Files\McAfee\SiteAdvisor\McSACore.exe
MD5: 92f9cfd755e97d684d3fab48a037623c  c:\Program Files\McAfee\SiteAdvisor\McSACorePS.dll
MD5: 22e020fa26223c12bb32e7ab39703db7  C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
MD5: a85403902f18ff6d34407d52a89f42fd  c:\Program Files\McAfee\SiteAdvisor\sahook.dll
MD5: 1d8f0323ee013643a9b613269b6ca5f1  c:\Program Files\McAfee\SiteAdvisor\SaSSHMod.dll
MD5: 09f65c8cd07a1658694a5b06578731eb  c:\Program Files\McAfee\SiteAdvisor\saUI.exe
MD5: 4868ccbbf0fa9b0293b858c5ff8b3c02  c:\Program Files\McAfee\SiteAdvisor\saupkeep.dll
MD5: 9f69bbd50543ae3c1cc3a8efb6f21c93  c:\Program Files\Microsoft IntelliPoint\Components\Commands\dpghnt\dpghnt.dll
MD5: b5ef7d17cafe484f4d03f93af8ef736f  c:\Program Files\Microsoft IntelliPoint\dpgcmd.dll
MD5: a8c9390be4bbe641f715e1ae88b49db4  C:\Program Files\Microsoft IntelliPoint\dpgmkb.dll
MD5: 887bb46c52a144c0f44f1172667ddf8e  C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
MD5: 533f6171af18e6c57e0e75860d39e951  C:\Program Files\Microsoft IntelliPoint\ipoint.exe
MD5: 58e55d0d4f5cf9351f63408581964c13  C:\Program Files\Microsoft IntelliPoint\ipres.dll
MD5: 58f5a312a8af92566b2531b90ea45070  C:\Program Files\Microsoft IntelliPoint\sqmapi.dll
MD5: 8a9fe8f19898cfd982b35282f4f6f45c  C:\Program Files\Microsoft IntelliPoint\srres.dll
MD5: 1d6090a71801806de4e740e7380528b4  C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
MD5: 14cf9a1fe1d5bf34e27b9270ab9032c6  C:\Program Files\Microsoft Office\OFFICE11\GdiPlus.DLL
MD5: a5c14075b571af1c9592595be724d9d2  c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
MD5: 01a24b415926bb5f772dbe12459d97de  C:\Program Files\Microsoft\BingBar\BBSvc.EXE
MD5: 785de7abda13309d6065305542829e76  C:\Program Files\Microsoft\BingBar\SeaPort.EXE
MD5: 5a8831ec8ce83812abeeb76058931b3e  C:\Program Files\Microsoft\Office Live\OLConnectorResources.dll
MD5: 99f97c9fe748c37528c338a423577fcb  C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
MD5: e2318e8514abf50e3ecedab9465a90a1  C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
MD5: 50de44c184fa55883efcc7afff07af31  C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
MD5: 31ffc864d0dc812f0e320f49be93f617  C:\Program Files\Mozilla Firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
MD5: f647d0bea553c1d0c251ce07da6a5511  C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
MD5: fffe1079d20ed990f834b4d2d08f1d58  C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
MD5: c98ca7ddb7dacd34ae27da88b08f1ad0  C:\Program Files\Mozilla Firefox\plugins\npunagi2.dll
MD5: 76e5fdc61dc47b1e964913ef20862bb7  C:\Program Files\Musicmatch\Musicmatch Jukebox\AReadyLB.dll
MD5: 5589bd090a4fc78d5bbcb42550aba5ce  C:\Program Files\Musicmatch\Musicmatch Jukebox\AttributeInfo.dll
MD5: 8505d8bf5768ac6d140378c7312c7bd5  C:\Program Files\Musicmatch\Musicmatch Jukebox\AudibleObj.dll
MD5: 06a8d30f89bafe461cc7d46b2d7f9ca3  C:\Program Files\Musicmatch\Musicmatch Jukebox\BasicObjs.dll
MD5: fa2881ed93d7d36139b9bf3e82dd44bf  C:\Program Files\Musicmatch\Musicmatch Jukebox\CdDvd_DO.dll
MD5: 8f3b3c586aa7a8af6d8908dd8a05ed66  C:\Program Files\Musicmatch\Musicmatch Jukebox\CdDvd_Factory.dll
MD5: b3b99cfa034fc5f58ec57164c8b0e22b  C:\Program Files\Musicmatch\Musicmatch Jukebox\CDDVDAccess.dll
MD5: 6ef7d9a0b55912e81978d30ea3961754  C:\Program Files\MUSICMATCH\Musicmatch Jukebox\CoreDll.dll
MD5: edd0c83baf9002f8c8960cb66eddaa1e  C:\Program Files\Musicmatch\Musicmatch Jukebox\Crypt.dll
MD5: 90a4b5d3549edf371adb2b046ceb29ef  C:\Program Files\Musicmatch\Musicmatch Jukebox\DeviceManager.dll
MD5: 9449d49f702c89d50db07bcefacb4ec3  C:\Program Files\Musicmatch\Musicmatch Jukebox\DummyTagObj.dll
MD5: 5a63dc65e9b70cdbd4acfbf0d6011270  C:\Program Files\Musicmatch\Musicmatch Jukebox\Enforce.dll
MD5: eb7ed1ff22ab447fc0cea624ed254a1b  C:\Program Files\Musicmatch\Musicmatch Jukebox\EventMgr.dll
MD5: fa21fb2609e935bbe342b58d42a707a8  C:\Program Files\Musicmatch\Musicmatch Jukebox\FileCacheMgr.dll
MD5: 17acd98849ba63b0d421d2d89c7c33bc  C:\Program Files\Musicmatch\Musicmatch Jukebox\FileTagObj.dll
MD5: d912fb975bbe1eb222e97587901d2d81  C:\Program Files\Musicmatch\Musicmatch Jukebox\GraphicsUtils.dll
MD5: bd9bd64cacaf180a1dc7a360aed1cca0  C:\Program Files\Musicmatch\Musicmatch Jukebox\licmgr.dll
MD5: 61943f192bfcca4a8fde84cebe85b3e5  C:\Program Files\Musicmatch\Musicmatch Jukebox\LocalDisk_DO.dll
MD5: a6ede4233b0589ebb116e465696f3871  C:\Program Files\Musicmatch\Musicmatch Jukebox\LocalDisk_Factory.dll
MD5: becb7a62893d3cdb9710bb8fcb6c47a7  C:\Program Files\Musicmatch\Musicmatch Jukebox\Metadatacache.dll
MD5: e59868ac18aeb2ed86cd118b4fc39e61  C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exe
MD5: 11a6234b40d56c65dd147011529eb00d  C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mimboot.exe
MD5: 471511accedde7142c8509194936fca1  C:\Program Files\Musicmatch\Musicmatch Jukebox\mimDB.dll
MD5: 05e934211b39af034e6079582a4d6ddf  C:\Program Files\Musicmatch\Musicmatch Jukebox\mimJobs.dll
MD5: 99a37d2f2b68672ccfd6c54daf697e3b  C:\Program Files\Musicmatch\Musicmatch Jukebox\mimSessionManager.dll
MD5: a37db9d11c31751b94c15074d0eff176  C:\Program Files\MUSICMATCH\Musicmatch Jukebox\MMDiag.exe
MD5: 4940f7f3d1eab380b6d4d003a968f9af  C:\Program Files\Musicmatch\Musicmatch Jukebox\mmdrm.dll
MD5: 7b560e46c30b45a5184966ff603cd27d  C:\Program Files\Musicmatch\Musicmatch Jukebox\mmgit.dll
MD5: fb5e0622da8b3490433301dfdca061b1  C:\Program Files\Musicmatch\Musicmatch Jukebox\MMHttp.dll
MD5: 1e37359479f41acc436568b3c71e26b0  C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mmlicmgr.dll
MD5: 546844c66132f91d20c213509afd4584  C:\Program Files\Musicmatch\Musicmatch Jukebox\MMReg.dll
MD5: 5512f5b82246db615f9f01ab7d41cebd  C:\Program Files\Musicmatch\Musicmatch Jukebox\MusicNet.dll
MD5: 380c6b31af67a65e12fd141ed0a2ef56  C:\Program Files\Musicmatch\Musicmatch Jukebox\NetUtilsDLL.dll
MD5: 6f9287af43516b419bd5c5e948bd0078  C:\Program Files\Musicmatch\Musicmatch Jukebox\ObjectManager.dll
MD5: 6f3f777821a1bc4a7101bd158a9a0c14  C:\Program Files\Musicmatch\Musicmatch Jukebox\PlaylistFileObj.dll
MD5: 97b347525cc8f529afb35fd2a169d68c  C:\Program Files\Musicmatch\Musicmatch Jukebox\PlaylistM3UFileObj.dll
MD5: 008d33dec28c5171b7114df1cb50a09f  C:\Program Files\Musicmatch\Musicmatch Jukebox\PlaylistPLSFileObj.dll
MD5: 55f3ceb239731e1be10aed2b7684090f  C:\Program Files\Musicmatch\Musicmatch Jukebox\Plugins\Portable2004\WMDM\MDPlugin.dll
MD5: be584793c8bd1f358380a5e286a67a7d  C:\Program Files\Musicmatch\Musicmatch Jukebox\Portable_DO.dll
MD5: be5874578d95039d8b0c2c29d23ff4bb  C:\Program Files\Musicmatch\Musicmatch Jukebox\Portable_Factory.dll
MD5: ef1538b430046a1a95bd44daa6aabfe5  C:\Program Files\Musicmatch\Musicmatch Jukebox\PortableAgent.dll
MD5: da9328ea7db44407365609c6a906e110  C:\Program Files\Musicmatch\Musicmatch Jukebox\PortableDevice.dll
MD5: d81b1a86ea7049a2400ff5ffc7ed8d4c  C:\Program Files\Musicmatch\Musicmatch Jukebox\PortableDevice2.dll
MD5: 54c59dcd0f513abbce1f21084dcabdd2  C:\Program Files\Musicmatch\Musicmatch Jukebox\PortalServices2.dll
MD5: d22ca9e5bfd8ea54bf0673c331d88a47  C:\Program Files\Musicmatch\Musicmatch Jukebox\PXSDKPLS.dll
MD5: f323aaeeb42e288b99bfbab941c862e7  C:\Program Files\Musicmatch\Musicmatch Jukebox\RBCDRepository.dll
MD5: 823736ee0e2e360cda4475f685f32fd3  C:\Program Files\Musicmatch\Musicmatch Jukebox\SkinnedCtrls.dll
MD5: 61f98c9c0b1781af8c585a1e2d5ee065  C:\Program Files\Musicmatch\Musicmatch Jukebox\Stream_DO.dll
MD5: a38c716cfdc0a5fa6c0ece375ad302c3  C:\Program Files\Musicmatch\Musicmatch Jukebox\Stream_Factory.dll
MD5: 3f8fe237e2beadebcb20b1bd3370bde1  C:\Program Files\Musicmatch\Musicmatch Jukebox\ThreadUtils.dll
MD5: 63cab4a77a8003739bd2340681bd96e2  C:\Program Files\Musicmatch\Musicmatch Jukebox\TOD_DO.dll
MD5: 2e51091cb6b423cb23433159e4654f22  C:\Program Files\Musicmatch\Musicmatch Jukebox\TOD_Factory.dll
MD5: 26d3757acb7ca676f44456b94ac4d0c7  C:\Program Files\Musicmatch\Musicmatch Jukebox\TrackUtils.dll
MD5: 6134b9abf33e4c5541a29d5b4ea3a39a  C:\Program Files\Musicmatch\Musicmatch Jukebox\UsageBracketing.dll
MD5: 40a02332fe624ce28ba2e62ebf43608f  C:\Program Files\Musicmatch\Musicmatch Jukebox\WavMp3Tag.dll
MD5: 6f4e2a394a82c3576067b7995dccec99  C:\Program Files\Musicmatch\Musicmatch Jukebox\WinMsgObject.dll
MD5: 07ae17287fde2f1883bf1279bbff7c36  C:\Program Files\Musicmatch\Musicmatch Jukebox\WmaObj.dll
MD5: ef677fbd13f79110e153d10f410d8a41  C:\Program Files\Musicmatch\Musicmatch Jukebox\YDetectQFE.dll
MD5: 39ae86c8800cbe21b7fd1598c46dd325  C:\Program Files\NCH Software\Inventoria\inventoria.exe
MD5: 947da3ad94a7593bfa439939ac5e823b  C:\Program Files\NOS\bin\getPlus_Helper.dll
MD5: 1aaad39376c42f75271bdaf0db5f9308  C:\Program Files\PureEdge\Viewer 6.0\masqform.exe
MD5: 8dda2b606279753601f9415da503ca63  C:\Program Files\QuickTime\qttask.exe
MD5: 856ccdcb1313c8861e86a452e7972e56  C:\Program Files\Qwest 11n Wireless WPS Tool\WpsCenter.exe
MD5: e12afe35bed255ce65b527e9b4e1e581  C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3.dll
MD5: b0b59602def6444e44154d8aab7787d0  C:\Program Files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe
MD5: 01e81c84ad1d0acc61cf3cfd06632210  C:\Program Files\SUPERAntiSpyware\SASCore.exe
MD5: 39763504067962108505bff25f024345  C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
MD5: 77b9fc20084b48408ad3e87570eb4a85  C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
MD5: 2975c66459c426c20bc22d639df6b611  C:\Program Files\SUPERAntiSpyware\SASSEH.DLL
MD5: 9b4dd5c7508f8f75803ddf3baa4c5139  C:\Program Files\SUPERAntiSpyware\SASTask.exe
MD5: 751184df487a1b3c95cb29b0d0069c28  C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MD5: 994ad0d8550b8b26990a6e3aa0791502  C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll
MD5: b5c9f63c01fcfec3f64ec6a0940a1825  C:\Program Files\Windows Desktop Search\WindowsSearch.exe
MD5: 9ebca63a3e94bc4cfba409e6c68d1f68  c:\program files\windows live\family safety\fssbho.dll
MD5: 1b4bc5e32ac3ac67f412d97c793b5659  C:\Program Files\Windows Live\Family Safety\fsui.exe
MD5: 6efe29f123e58a6333f50beca863da42  C:\Program Files\Yahoo!\Common\npyaxmpb.dll
MD5: f64c4241fe5e519f62c47c361dc671d7  C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
MD5: 1f6ac791c6fe97726264f305c5db0f57  C:\PROGRA~1\Iomega\System32\AppServices.exe
MD5: 6c3d154fff0a97a6c3d9f78d60c41655  C:\PROGRA~1\McAfee\SITEAD~1\McSACore.exe
MD5: 09f65c8cd07a1658694a5b06578731eb  C:\PROGRA~1\McAfee\SITEAD~1\saUI.exe
MD5: a37db9d11c31751b94c15074d0eff176  C:\PROGRA~1\MUSICM~1\MUSICM~3\MMDiag.exe
MD5: 310c15fd8358b2c4cd7a5b98a112883f  C:\WINDOWS\AppPatch\AcGenral.DLL
MD5: 77e6673a112c98f99ef44776f4de2e4d  C:\WINDOWS\AppPatch\AcLayers.DLL
MD5: f9a16e4f8bb1542f93d23506b9e867fd  C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\44ae9f9afb2373055136d57ac6db3f96\mscorlib.ni.dll
MD5: b6a4d7fc6392dde073feee8406598c4c  C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\bf0b3689dd5e261097f2feb2ed0103e8\System.ServiceProcess.ni.dll
MD5: 3a9c70a5b5a1b9302e4a1029582242ca  C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\2c59490afc22def906d3ca96e1207ff9\System.ni.dll
MD5: 006c83751b9f17934b58085d0b7bda2c  C:\WINDOWS\Downloaded Program Files\ampAx3.0.84.2.dll
MD5: 387804211a84dca79a7238e4406a1f21  C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
MD5: 90e2b0c573cab9b25e11369884298f94  C:\WINDOWS\Downloaded Program Files\gp.ocx
MD5: d8fb851a9fbd62352fd74283f9c14c77  C:\WINDOWS\Downloaded Program Files\isusweb.dll
MD5: 56940b50ab0e5923822f47b0e4463885  C:\WINDOWS\Downloaded Program Files\qsax.dll
MD5: 6f678556a6fce04fc94f3435f6313705  C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
MD5: 0f0f5b564c5a3c9b38a6220230252567  C:\WINDOWS\eHome\ehProxy.dll
MD5: 5d1347aa5ae6e2f77d7f4f8372d95ac9  C:\WINDOWS\ehome\ehrecvr.exe
MD5: a53243709439ac2a4c216b817f8d7411  C:\WINDOWS\ehome\ehSched.exe
MD5: 6d280bc969218ae4a72180f907c32913  C:\WINDOWS\eHome\ehTrace.dll
MD5: 7e48b4958c131e9643ddcd2e7ca3fe9f  C:\WINDOWS\ehome\ehtray.exe
MD5: df0a511f38f16016bf658fca0090cb87  C:\WINDOWS\ehome\mcrdsvc.exe
MD5: e6a9f68d26a094fb78b98180a40a29fc  C:\WINDOWS\KHALMNPR.EXE
MD5: ab87eeffd18f2baafc274e7075ea6c67  c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
MD5: cdaf3e1a99f938153701bbe7375af1d7  c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\clr.dll
MD5: ea8332a740b8737c4c473c889c86dcb2  c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
MD5: bfdeda37de512bdee122f8339dbfe711  c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\culture.dll
MD5: f5df6846f30e9f54ea60ccaeb3fb2055  c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
MD5: ca96db062b430825262b189684e871d8  c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
MD5: e2318e8514abf50e3ecedab9465a90a1  C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
MD5: cfd4e51402da9838b5a04ae680af54a0  c:\windows\system32\browser.dll
MD5: 829e4805b0e12b383ee09abdc9e2dc3c  C:\WINDOWS\system32\calc.exe
MD5: f544eab543d0c9aaebedbf16ca13225e  C:\WINDOWS\system32\CNMLM56.DLL
MD5: 93afb83fbc1f9443cac722fca63d73bf  C:\WINDOWS\system32\comctl32.dll
MD5: ed0c0df222209e43ad9afbf3fe87dde0  C:\WINDOWS\system32\comsvcs.dll
MD5: f5430b03e141e098c78d5db46b00f8fc  C:\WINDOWS\system32\confmsp.dll
MD5: 8fcf03e4d7be9b5587ccf11719959006  C:\WINDOWS\system32\corpol.dll
MD5: 6bee5d4eff0a0341bcc4a462d81ccfc1  C:\WINDOWS\system32\CRYPT32.dll
MD5: c14350fc0d47d806699c4f907fc6785b  C:\WINDOWS\system32\cryptnet.dll
MD5: 515a7fae2070c2b0242b2353443e2f11  C:\WINDOWS\System32\CSCDLL.dll
MD5: dd40363abad230a84c5e2178b11efa88  C:\WINDOWS\system32\CSRSRV.dll
MD5: 56adb11f7d4d0816c0be1e701c1b5e52  C:\WINDOWS\system32\D3DIM700.DLL
MD5: e2092f0a1d7abc243f9c2362483d150d  C:\WINDOWS\System32\dimsntfy.dll
MD5: a14524d3f130a57163e0b3e057fc85d5  C:\WINDOWS\System32\DLA\DLABOIOM.SYS
MD5: f5db9e25dcff60b291247c9a3b039b2e  C:\WINDOWS\System32\DLA\DLACResW.dll
MD5: 631d6ed2646da0ffb666207fa6e3c533  C:\WINDOWS\system32\DLA\DLACTRLW.EXE
MD5: 7c4cdf8a684b63d7482e0bf7440dc3b5  C:\WINDOWS\System32\DLA\DLADResN.SYS
MD5: 97bca2aac06a9fea56615b4b15bdb9b8  C:\WINDOWS\System32\DLA\DLAIFS_M.SYS
MD5: be8d558cf749424f0de612813f7c6725  C:\WINDOWS\System32\DLA\DLAOPIOM.SYS
MD5: 7e5277cb45dc5e2a86af8ce093c7ef31  C:\WINDOWS\System32\DLA\DLAPoolM.SYS
MD5: e84fa0aa349040c043f24e8a874fedbb  c:\windows\system32\dla\dlashx_w.dll
MD5: 2c0ecf7a9d5162d87c64e2ae868b5039  C:\WINDOWS\System32\DLA\DLAUDF_M.SYS
MD5: d886b6d02b51e5bd61b8a571a16d5ca2  C:\WINDOWS\System32\DLA\DLAUDFAM.SYS
MD5: fb92260ac749dac5146167b0e4856653  C:\WINDOWS\system32\DLAAPI_W.DLL
MD5: 389496118b3b03c2328024af320132ac  C:\WINDOWS\system32\DNSAPI.dll
MD5: 5f7e24fa9eab896051ffb87f840730d2  c:\windows\system32\dnsrslvr.dll
MD5: 1e44bc1e83d8fd2305f8d452db109cf9  C:\WINDOWS\System32\drivers\afd.sys
MD5: 8be661c16fbf84a73bcec84b6b4a9db5  C:\WINDOWS\system32\DRIVERS\avgfwdx.sys
MD5: 1a2213b7d94944861449cb07bf2d099e  C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
MD5: b0def92f4e1e6b9242e6c8fab82703f7  C:\WINDOWS\system32\DRIVERS\avgidshx.sys
MD5: a426b2dc795531d99e2ee1952aec051a  C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
MD5: 08fa13787d77a75dc413e27fd92b44e8  C:\WINDOWS\system32\DRIVERS\avgldx86.sys
MD5: 3e587ee55c70e6db78a98d7121d3052e  C:\WINDOWS\system32\DRIVERS\avglogx.sys
MD5: 5ac56b2cf8ee751796c5a8fc5c631b66  C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
MD5: c29e6070396e437fde184d739ccba2c7  C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
MD5: 52448a41cf1769cb3627677a0509627b  C:\WINDOWS\system32\DRIVERS\avgtdix.sys
MD5: e644f61e46e1353ecb432bd3fa76cb20  C:\WINDOWS\system32\drivers\avgtpx86.sys
MD5: c2eb4539a4f6ab6edd01bdc191619975  C:\WINDOWS\system32\drivers\cpuz135_x32.sys
MD5: 7581407a6a3c56860ae31e6e423fe824  C:\WINDOWS\System32\Drivers\DLACDBHM.SYS
MD5: 693dfd92d41a3d270053cd97834e4960  C:\WINDOWS\System32\Drivers\DLARTL_N.SYS
MD5: 73623d89faef4d1aa600edee8b490bc5  C:\WINDOWS\System32\Drivers\DRVMCDB.SYS
MD5: 2aeee1600d0f14ba535f90a1f4411b54  C:\WINDOWS\System32\Drivers\DRVNDDM.SYS
MD5: 95974e66d3de4951d29e28e8bc0b644c  C:\WINDOWS\system32\DRIVERS\e100b325.sys
MD5: 185ada973b5020655cee342059a86cbb  C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys
MD5: 0f0194c4b635c10c3f785e4fee52d641  C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
MD5: 7509c548400f4c9e0211e3f6e66abbe6  C:\WINDOWS\system32\DRIVERS\IntelC51.sys
MD5: 9584ffdd41d37f2c239681d0dac2513e  C:\WINDOWS\system32\DRIVERS\IntelC52.sys
MD5: cf0b937710cec6ef39416edecd803cbb  C:\WINDOWS\system32\DRIVERS\IntelC53.sys
MD5: 75931ebd581b9f79010640f924085fd4  C:\WINDOWS\System32\DRIVERS\iomdisk.sys
MD5: 24e0ddb99aeccf86bb37702611761459  C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
MD5: d58b330d318361a66a9fe60d7c9b4951  C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
MD5: 144011d14bd35f4e36136ae057b1aadd  C:\WINDOWS\System32\Drivers\LUsbFilt.Sys
MD5: 629cabb0421668c9d3d402a3c3d77e14  C:\WINDOWS\system32\drivers\mbam.sys
MD5: 7f2f1d2815a6449d346fcccbc569fbd6  C:\WINDOWS\system32\DRIVERS\mhndrv.sys
MD5: 59b8b11ff70728eec60e72131c58b716  C:\WINDOWS\system32\DRIVERS\mohfilt.sys
MD5: 7d304a5eb4344ebeeab53a2fe3ffb9f0  C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
MD5: 0109c4f3850dfbab279542515386ae22  C:\WINDOWS\system32\DRIVERS\ndistapi.sys
MD5: e5582e43e167cf367757d81e9727da2a  C:\WINDOWS\system32\DRIVERS\point32.sys
MD5: 47ddfc2f003f7f9f0592c6874962a2e7  C:\WINDOWS\system32\DRIVERS\srv.sys
MD5: 26eb7acf476a3461b85f5bce9a677a4a  C:\WINDOWS\system32\drivers\sthda.sys
MD5: 93ea7d94959bef66d0e4adbc8ce4e073  C:\WINDOWS\system32\DRIVERS\WLANUHN.sys
MD5: c60dc16d4e406810fad54b98dc92d5ec  C:\WINDOWS\system32\DRIVERS\wpdusb.sys
MD5: 6bc36540b0319492f1153e86d8d42f72  C:\WINDOWS\system32\drmv2clt.dll
MD5: 8e16bf5600797e678ea97051cf93e6bf  C:\WINDOWS\system32\dumprep.exe
MD5: f4f3eae16ae6fd93e1f22df295e2a7fc  C:\WINDOWS\system32\E_FLBFIA.DLL
MD5: f4f3eae16ae6fd93e1f22df295e2a7fc  C:\WINDOWS\system32\E_FLBGAA.DLL
MD5: ffb3115aa757abefba7fba90bad5dd0a  C:\WINDOWS\system32\en-us\tQuery.dll.mui
MD5: f5b754cdea20bbb3a31e16a776ede6d6  C:\WINDOWS\system32\ESENT.dll
MD5: 53886bd63b137aaff945353239cb60cb  C:\WINDOWS\system32\eswiaud.dll
MD5: be87245ce60329b31c94f1b4236e5832  C:\WINDOWS\system32\expsrv.dll
MD5: 303a63f4b913aa5d8998161cb77a8ce7  C:\WINDOWS\system32\feclient.dll
MD5: 35c4aee0b4742b1ee00a68d9743b818f  C:\WINDOWS\system32\fm20ENU.DLL
MD5: ce8c3bc1377b83dbcd7304ab2d0a4735  C:\WINDOWS\system32\h323msp.dll
MD5: b9da7b8ca4601625ca9264cd846ac576  C:\WINDOWS\system32\hccutils.DLL
MD5: d9f3db62d1b361d82cd82a347ea6218d  C:\WINDOWS\system32\hkcmd.exe
MD5: 59570ca554c9d75e72241ac3252e84bd  C:\WINDOWS\system32\ieframe.dll
MD5: 704b09c02d21449f20ed68560ef1b279  C:\WINDOWS\system32\iepeers.dll
MD5: 47464ca4943f82e1b8fcb2c57da15f83  C:\WINDOWS\system32\iertutil.dll
MD5: a58241451a149929a679c82fa934ef81  C:\WINDOWS\system32\igfxdev.dll
MD5: 32fb9368f485a7fe944eb6678b61734b  C:\WINDOWS\system32\igfxpers.exe
MD5: 070e5936da5df779e446a56c3bae7c0e  C:\WINDOWS\system32\igfxres.dll
MD5: c433258ecaf73a302e016fc80186f94d  C:\WINDOWS\system32\igfxsrvc.dll
MD5: 54f1f98c4ad8f99bbbe8fbb62b38733f  C:\WINDOWS\system32\igfxtray.exe
MD5: ffc01a72d1c25ccb39f61b202ce60819  C:\WINDOWS\system32\IMAGEHLP.dll
MD5: f74e76c484b6a36eafe7d8a9420d5d51  C:\WINDOWS\system32\InetClnt.dll
MD5: 63e8d944afbeebb243f25c4ed07e74c5  C:\WINDOWS\system32\inetmib1.dll
MD5: b6932761058dc21beaa7a1245b1b20e6  C:\WINDOWS\system32\infosoft.dll
MD5: c70b701b1f89b5b1537eafbf3d8fe42b  C:\WINDOWS\system32\IntelMPM.dll
MD5: 1e6c47b63cd2f812de0f4a9f610fabb4  C:\WINDOWS\system32\jscript.dll
MD5: a7db3812b8b4a2990120f59365f697d3  C:\WINDOWS\system32\kemutb.dll
MD5: a8cc23eec3eeade85b9cbe11ce7e7036  C:\WINDOWS\system32\KemUtil.dll
MD5: 9c6030f6a16cb0b834695aa9d767f8f7  C:\WINDOWS\system32\KemWnd.dll
MD5: 2607f1d062fcc0d474993b6e2fe9a4cf  C:\WINDOWS\system32\KemXML.dll
MD5: a525c96c51d55111fdf3bea9ffffc7ae  C:\WINDOWS\system32\kerberos.dll
MD5: 6fe42512ab1b89f32a7407f261b1d2d0  C:\WINDOWS\system32\kernel32.dll
MD5: 20fa028cb6506591a99c51432a3c0174  C:\WINDOWS\system32\LangWrbk.dll
MD5: 5677dfe438ec1f009273fc84feed6b10  C:\WINDOWS\system32\localspl.dll
MD5: bd31dc6dbe9333c4fbd4bdf0899f2160  C:\WINDOWS\system32\LSASRV.dll
MD5: ea856f4a46320389d1899b2caa7bf40f  C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
MD5: 47299371607dc2fb234444eeacb1639e  C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll
MD5: 2a2c442f00b45e01d4c882eea69a01bc  C:\WINDOWS\system32\MFC100ENU.DLL
MD5: f3de10aabd5c7a1a186c9966f037d0c0  C:\WINDOWS\system32\mfc100u.dll
MD5: 76848cb1aa5818db47d5f5986e0a7485  C:\WINDOWS\system32\MFC42.DLL
MD5: b7521f69c0a9b29d356157229376fb21  C:\WINDOWS\System32\mhn.dll
MD5: 3f790874a85819e94574f3e7af9c5806  C:\WINDOWS\system32\msctfime.ime
MD5: c24790d5d45b7dce6c4a06062cba6534  C:\WINDOWS\system32\msfeeds.dll
MD5: 855f6333e3a4dfc6f3c8b0520c261fcd  C:\WINDOWS\system32\msftedit.dll
MD5: 937091e40652c6b1b6c1a71eb90c08e1  C:\WINDOWS\system32\mshtml.dll
MD5: d3f72d50de53f9f1f55240115af4d42e  C:\WINDOWS\system32\msi.dll
MD5: 9e70016c950b1f8fdeaa6f067e2e25a8  C:\WINDOWS\system32\msjet40.dll
MD5: 077f067c69073d1ebc84984e7fe5ba44  C:\WINDOWS\system32\msjetoledb40.dll
MD5: 7e2b58ce8c4013287371667880b1080d  C:\WINDOWS\system32\MSJINT40.DLL
MD5: e5de87dddb8cbe4687eadf296e58452a  C:\WINDOWS\system32\msjtes40.dll
MD5: 062ed848780162270910d8f87790d0e0  C:\WINDOWS\system32\MsPMSP.dll
MD5: 6b8a264dabd18c8234583fdc00b9cd44  C:\WINDOWS\system32\MSSCP.dll
MD5: 4774d83be60b7f47c612e25d6fe0f010  C:\WINDOWS\system32\MSSHooks.dll
MD5: 6e914eedd145c5acce56f4d5f3d606fc  C:\WINDOWS\system32\mssph.dll
MD5: 64b33cc5bf131def2721394cf9b3f8ed  C:\WINDOWS\system32\MSVBVM60.DLL
MD5: bc83108b18756547013ed443b8cdb31b  C:\WINDOWS\system32\MSVCP100.dll
MD5: 20607ee4886d78dd95286f2d14e9ff2f  C:\WINDOWS\system32\MSVCP71.dll
MD5: 0e37fbfa79d349d672456923ec5fbbe3  C:\WINDOWS\system32\MSVCR100.dll
MD5: e325bcdbb6ded6c89f679b8ae89e975c  C:\WINDOWS\system32\msvidctl.dll
MD5: cf55708e01719037b441ed53c8886a84  C:\WINDOWS\system32\MSWMDM.dll
MD5: 943337d786a56729263071623bbb9de5  C:\WINDOWS\System32\mswsock.dll
MD5: afdc647d16b285b9ae6140335b3b3255  C:\WINDOWS\system32\mswstr10.dll
MD5: acfee2392503dd5e457363a0510b8bcb  C:\WINDOWS\system32\msxml3.dll
MD5: fb35dc61eb4ecc8148a307dea7202669  c:\WINDOWS\system32\msxml4.dll
MD5: 9efbb3055b3eece5b0fc7baed07a6ee9  C:\WINDOWS\system32\msxml6.dll
MD5: 2b8b64aa14f817bdf3e3204fb041a61d  C:\WINDOWS\System32\mtxoci.dll
MD5: cac752bf84db4666ed3ce0948e6ea937  C:\WINDOWS\system32\netapi32.dll
MD5: 062f837c1fbdb6a0a75f82efc2ee8e74  C:\WINDOWS\system32\netshell.dll
MD5: 03c76895f47a1339a697269000675266  C:\WINDOWS\system32\newdev.dll
MD5: 5e28284f9b5f9097640d58a73d38ad4c  C:\WINDOWS\system32\notepad.exe
MD5: 1b197a0ed28db310ab67591567c3787a  C:\WINDOWS\system32\npDeployJava1.dll
MD5: f8f0d25ca553e39dde485d8fc7fcce89  C:\WINDOWS\system32\ntdll.dll
MD5: 40b0f98bad16ad5def894e88c3ef8014  C:\WINDOWS\system32\ODBC32.dll
MD5: 2c288aa87e4723ac9ff4d76a192ec3f8  C:\WINDOWS\system32\odbccp32.dll
MD5: d59a7119054d70fc745a1bf9c06dcc65  C:\WINDOWS\system32\oeph.dll
MD5: 6bad1bed9872e62049e487fb91ae2f3a  C:\WINDOWS\system32\ole32.dll
MD5: 20200ee3cfe10e9f0c028d8653be11c6  C:\WINDOWS\system32\OLEACC.dll
MD5: eff03460e542eea6b0abdec6bf19c897  C:\WINDOWS\system32\OLEAUT32.dll
MD5: b2cf9f1f606dec23f70a40b01df3c396  C:\WINDOWS\system32\printui.dll
MD5: 304c09816bc136291195e43a7521563c  C:\WINDOWS\system32\PX.dll
MD5: 7c4114f6d962353bf588c91a444c6385  C:\WINDOWS\system32\PXAFS.DLL
MD5: 94242c2f0bb54a1103d5d913440a8e95  C:\WINDOWS\system32\PXDRV.DLL
MD5: e83ad298880f3490490906f4340da59e  C:\WINDOWS\system32\PXMAS.DLL
MD5: 96a4bbbad007b7090af24ae160af2eb8  C:\WINDOWS\system32\PXSFS.DLL
MD5: d2b89b83a8aaa397234713e940c8e8bc  C:\WINDOWS\system32\PxWave.dll
MD5: bf107acf2cdd552aabe14e8c3e62e3fc  C:\WINDOWS\system32\quartz.dll
MD5: d17453539d0bfd2df8539e8b0d393684  C:\WINDOWS\system32\RPCNS4.dll
MD5: d4502f124289a31976130cccb014c9aa  C:\WINDOWS\system32\RPCRT4.dll
MD5: 72451fd61ddbb0a1fb071b7c3cde5594  C:\WINDOWS\system32\rsvpsp.dll
MD5: 926afc4848ff3297bb264333bf51e21f  C:\WINDOWS\system32\sbe.dll
MD5: 0f64207b49390c8063c36ae7cbf9c2db  C:\WINDOWS\system32\schannel.dll
MD5: f0a0ebf086597e645bc14b0d98f8ba58  C:\WINDOWS\system32\ScrRun.dll
MD5: 87889a983c015080fa813d7e32910d1e  C:\WINDOWS\system32\searchfilterhost.exe
MD5: c4894b3b448b647bedc9e916d181bdbe  C:\WINDOWS\system32\searchprotocolhost.exe
MD5: 26cb10fa893f940ab09713ff46dcdade  C:\WINDOWS\system32\shdocvw.dll
MD5: 6843d54bc4a40cc8c5741af750233d10  C:\WINDOWS\system32\SHELL32.dll
MD5: 99bc0b50f511924348be19c7c7313bbf  C:\WINDOWS\system32\SHSVCS.dll
MD5: 3c43470506f54ee0a6d1c7b890ac879e  C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGAA.EXE
MD5: 878873ab4fda2328a96bc8ad87316411  C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FMAIGAA.DLL
MD5: 41d8d2814971fb58770c44cbb4aab6ab  C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FUICGAA.DLL
MD5: e1d18e2fdb687dd684611f0bc2a61bff  C:\WINDOWS\System32\spool\PRTPROCS\W32X86\CNMPD56.DLL
MD5: 60784f891563fb1b767f70117fc2428f  C:\WINDOWS\system32\spoolsv.exe
MD5: 3a7c3cbe5d96b8ae96ce81f0b22fb527  c:\windows\system32\srvsvc.dll
MD5: 3caeae7608f1bd7ba873a3b02895b106  C:\WINDOWS\system32\sti.dll
MD5: d0049860b63dd87a73a5d165c829c65f  C:\WINDOWS\system32\T2EMBED.DLL
MD5: 3f8411328e808a8794a41da9acb22dd9  C:\WINDOWS\system32\tapi3.dll
MD5: 8edd9dcd5196b6c54a622e9549f667b8  C:\WINDOWS\system32\termmgr.dll
MD5: 79ed352549eb6d5b1a454916c37d2e85  C:\WINDOWS\system32\UNCPH.dll
MD5: c332870084db9164f465d6f1b7472728  C:\WINDOWS\system32\urlmon.dll
MD5: a93aee1928a9d7ce3e16d24ec7380f89  c:\windows\system32\userinit.exe
MD5: 9e03dc5ab51cfd0190541ce2038d819d  C:\WINDOWS\system32\USP10.dll
MD5: cafbd14f56a68e6c1a55c0eac7e487fa  C:\WINDOWS\system32\VBAJET32.DLL
MD5: 831f1cd855299d8c8482621c52e635c8  C:\WINDOWS\system32\VXBLOCK.dll
MD5: 880f7ed2df24db14af96c6d797958796  C:\WINDOWS\system32\wbem\wbemdisp.dll
MD5: d7dcfb4d0c58ffb569de93e1681fd37a  C:\WINDOWS\system32\WgaLogon.dll
MD5: 684559a03cbc1d05ba120a18b0d8ba5d  C:\WINDOWS\system32\WINHTTP.dll
MD5: 5aacf4b4dee1972b7952e8a747122232  C:\WINDOWS\system32\WININET.dll
MD5: 4a953f13942867ba8fb41f141ec1b80c  C:\WINDOWS\system32\WINMM.dll
MD5: d72b9ec3337b247a666f098f3d6b43de  C:\WINDOWS\System32\winrnr.dll
MD5: 8c7dca4b158bf16894120786a7a5f366  C:\WINDOWS\system32\winsrv.dll
MD5: d458b738b4c2ce33174cfb2ce12412db  C:\WINDOWS\system32\WINTRUST.dll
MD5: 9eefe69139fdbb4a3c327630f8eb993a  C:\WINDOWS\system32\wlanapi.dll
MD5: 2cc34e8bb667eef78899546e12649196  C:\WINDOWS\system32\WlNotify.dll
MD5: c77a18954c448dd9f87585247851501a  C:\WINDOWS\system32\WMASF.DLL
MD5: 4dbb48ffe1f5e33429f5f5f6cbc2f1ef  C:\WINDOWS\system32\WMDMPS.dll
MD5: 6472932f2b6084ea1fb3f7f9493ac640  C:\WINDOWS\system32\wshom.ocx
MD5: fc3ec24fce372c89423e015a2ac1a31e  C:\WINDOWS\system32\wuaueng.dll
MD5: 5caf91e865fe0c85048a233e594544d2  c:\windows\system32\WUDFPlatform.dll
MD5: 4c0924e07ec0b4b44645f16e3a591f2c  C:\WINDOWS\system32\XmlLite.dll
MD5: 16403217ab6fc5c30c14c6b12098ad4b  C:\WINDOWS\system32\xpsp2res.dll
MD5: 228ef1572ced753fe18409bb77123204  C:\WINDOWS\system32\ZDCNDIS5.sys
MD5: d0fefc9ba8844315f2adc216fa1146bb  C:\WINDOWS\TEMP\028145~1.EXE
MD5: d5e459bed3db9cf7fc6cc1455f177d2d  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_a4c618fa\ATL80.DLL
MD5: 0b3595a4ff0b36d68e5fc67fd7d70fdc  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\MSVCP80.dll
MD5: c9564cf4976e7e96b4052737aa2492b4  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\MSVCR80.dll
MD5: 1f5afd468eb5e09e9ed75a087529eab5  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\MFC80.DLL
MD5: e2c48cd0132d4d1dc7d0df9a6bef686a  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\MFC80U.DLL
MD5: 28a09777d2d952122567a8a82f1a2c7b  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\MFC80ENU.DLL
MD5: 58a14c45a5cd2528f10a889e7b0c3fc2  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_92453bb7\ATL90.DLL
MD5: d34a527493f39af4491b3e909dc697ca  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcm90.dll
MD5: 4c39358ebdd2ffcd9132a30e1ec31e16  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\MSVCP90.dll
MD5: cdbe9690cf2b8409facad94fac9479c9  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\MSVCR90.dll
MD5: 5963633010616b25503ee126f55e8de4  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90.dll
MD5: fbfca1a574d47ee575448b719cbbf2e4  C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\MFC90ENU.DLL
MD5: 736b12b725aeb2b07f0241a9f680cb10  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MD5: 80776884e7a05d6da5040926f82b0273  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll
 
The following file(s) must be uploaded for server-side scanning:
  C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
 
Upload started - 1 file(s)
  LogitechDesktopMessenger.exe (91440)
Upload speed - 16 KB/s
Upload finished - 1 uploaded, 0 failed
 
The uploaded file(s) were found clean.
 
Scan finished - communication took 7 sec
Total traffic - 0.11 MB sent, 2.08 KB recvd
Scanned 1123 files and modules - 119 seconds
 
==============================================================================
 
 


#6 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 02:08 PM

 
 

 

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
 
Operating System : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User : Gregg Jantzen [Admin rights]
Mode : Scan -- Date : 03/31/2013 11:30:39
| ARK || FAK || MBR |
 
¤¤¤ Bad processes : 0 ¤¤¤
 
¤¤¤ Registry Entries : 3 ¤¤¤
[HJPOL] HKCU\[...]\System : DisableTaskMgr (0) -> FOUND
[HJPOL] HKCU\[...]\System : DisableRegistryTools (0) -> FOUND
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
 
¤¤¤ Particular Files / Folders: ¤¤¤
 
¤¤¤ Driver : [LOADED] ¤¤¤
 
¤¤¤ HOSTS File: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts
 
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1001namen.com
127.0.0.1 1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100sexlinks.com
[...]
 
 
¤¤¤ MBR Check: ¤¤¤
 
+++++ PhysicalDrive0: WDC WD800JD-75MSA1 +++++
--- User ---
[MBR] 9bfc7736972e4f63645bb37f7eb920e4
[BSP] 3efdd157322bc54deb4f0f8435ac64f6 : MBR Code unknown
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 31 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 64260 | Size: 71500 Mo
2 - [XXXXXX] UNKNOWN (0xdb) [VISIBLE] Offset (sectors): 146496735 | Size: 4753 Mo
User = LL1 ... OK!
User = LL2 ... OK!
 
Finished : << RKreport[1]_S_03312013_02d1130.txt >>
RKreport[1]_S_03312013_02d1130.txt


#7 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 02:41 PM

This is the short log from security check:

 

UNSUPPORTED OPERATING SYSTEM! ABORTED!



#8 Maurice Naggar

Maurice Naggar

    Eradicator de malware


  • Malware Response Team
  • 1,088 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:12:58 AM

Posted 31 March 2013 - 03:30 PM

You will want to print out or copy these instructions to Notepad for offline reference!
These steps are for member guitarzanaz only. If you are a casual viewer, do NOT try this on your system!
If you are not guitarzanaz and have a similar problem, do NOT post here; start your own topic


Do not run or start any other programs while these utilities and tools are in use!
Do NOT run any other tools on your own or do any fixes other than what is listed here.
If you have questions, please ask before you do something on your own.
But it is important that you get going on these following steps.
=
Close any of your open programs while you run these tools.


do the following, next.
  • Disable your anti-virus program, How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
  • Please disconnect any USB or external drives from the computer before you run this scan!
  • Right-Click RogueKiller and select Run as Administrator.
  • Wait until Prescan finishes.
  • On the RogueKiller console, click the Registry tab.

    Put a check next to all of these and uncheck the rest: (if found)
    [HJPOL] HKCU\[...]\System : DisableTaskMgr (0) -> FOUND

    [HJPOL] HKCU\[...]\System : DisableRegistryTools (0) -> FOUND
  • Then click on Delete on the right hand column under Options.
  • When done, logoff & Restart the system.
  • The log will be found as RKreport
    Copy & Paste the contents into next reply.
  • Task 2
    Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
    For directions on how, see How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
    Do NOT turn off the firewall

    Please download Rkill by Grinler and save it to your desktop.
    • Link 2
      Link 3
      Link 4
    • Double-click on the Rkill desktop icon to run the tool.
    • If using Vista or Windows 7, right-click on it and Run As Administrator.
    • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
    • If not, delete the file, then download and use the one provided in Link 2.
    • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
    • If the tool does not run from any of the links provided, please let me know.
    • If your antivirus program gives a prompt message, respond positive to allow RKILL to run.
    • If a malware-rogue gives a message regarding RKILL, proceed forward to running RKILL
    IF you still have a problem running RKILL, you can download iExplore.exe or eXplorer.exe, which are renamed copies of rkill.com, and try them instead.

    When all done, rkill.txt log file will be on your desktop. Copy & Paste contents of Rkill.txt into a reply.

    More Information about Rkill can be found at this link: http://www.bleepingcomputer.com/forums/topic308364.html

    Task 3
    Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
    For directions on how, see How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
    Do NOT turn off the firewall

    If you have a prior copy of Combofix, delete it now ! i_arrow-l.gif

    Have infinite patience during the run & scan by Combofix. It has many phases: some 50+ stages
    It will display it's "stage" within the Command prompt window. Do NOT panic if it seems slow to change ! It has lots of work.
    You may notice the desktop icons disappear. Do NOT panic, as that is expected behavior.
    Combofix my take as little as 10 minutes and perhaps as much as 30-40 minutes. Time taken will depend on speed of your system and how much there is to scan & how much it needs to clean.

    If this is on a notebook system, make sure first the notebook is connected to wall-power (AC power)


    Download Combofix from any of the links below. You must rename it before saving it. Save it to your Desktop.

    Link 1

    Link 2

    CF_download_FF.gif


    CF_download_rename.gif


    * IMPORTANT !!! SAVE AS Combo-Fix.exe to your Desktop
    If your I.E. browser shows a warning message at the top, do a Right-Click on the bar and select Download, saving it to the Desktop.
    • Disable your AntiVirus and AntiSpyware
    applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
  • Double click on Combo-Fix.exe cf-icon.jpg accept the EULA & follow the prompts.
  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.
  • **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


    RcAuto1.gif


    Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

    whatnext.png


    Click on Yes, to continue scanning for malware.

    Please watch Combofix as it runs, as you may see messages which require your response, or the pressing of OK button.


    When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.
    -------------------------------------------------------

    A caution - Do not run Combofix more than once.
    Do not touch your mouse/keyboard until the scan has completed, as this may cause the process to stall or your computer to lock.

    The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled.

    Notes:
    [1] IF after Combofix reboot you get the message

    Illegal operation attempted on registry key that has been marked for deletion

    ....please reboot the computer, this should resolve the problem. You may have reboot the pc a second time if needed.

    [2] Do not mouseclick combofix's window nor run any program while Combofix is running.
    That may cause it to stall.

    [3]When all done, IF Combofix did not do a Restart...then ... I need for you to Restart the system fresh !

    Reply & Copy / Paste the contents of C:\Combofix.txt log and tell me, How is the system now icon_question.gif

    RE-Enable your AntiVirus and AntiSpyware applications.

~Maurice Naggar
MS-MVP (Oct 2002 - Sept 2010)

#9 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 04:32 PM

trying to run combofix....it said Mcafee and AVG were still active....I have AVG disabled right now and I completely uninstalled the only other Mcafee program on my system after the pop up saying it was running. It was Mcafee Site advisor. So now it say's it's going to run combo fix at my own risk, and it doesn't give me an option to quit for now. How exactly do I stop Mcafee and AVG from running in the background?



#10 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 04:39 PM

Also I closed rogue killer after the first time I ran it without deleting the files it found. When I opened it again to run as administrator, I don't have the administrator password. Not sure how i get that. And I was thinking my account had administrator privelages anyways so not sure if it mattered. So I just ran under my account....it didn't find the files it first found...so not sure if it deleted them after I closed it the first time. 



#11 Maurice Naggar

Maurice Naggar

    Eradicator de malware


  • Malware Response Team
  • 1,088 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:12:58 AM

Posted 31 March 2013 - 08:20 PM

If you have the antivirus turned off, then go ahead and proceed forward with Combofix.

As to your last note, you should not be switching between 2 logins to run the tools.
Just only 1 that has administrator-level rights.

Your machine is running Windows XP, so all it takes is double-clicking to start a tool.
Disregard parts of my notes that refer to "run as administror" {those apply to Vista, WIN7, Win8 }
~Maurice Naggar
MS-MVP (Oct 2002 - Sept 2010)

#12 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 10:59 PM

K here's the logs

 

 

Rkill 2.4.7 by Lawrence Abrams (Grinler)
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
 
Program started at: 03/31/2013 02:04:49 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3
 
Checking for Windows services to stop:
 
 * No malware services found to stop.
 
Checking for processes to terminate:
 
 * C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe (PID: 864) [SUP-HEUR]
 * C:\DOCUME~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoEJCD.exe (PID: 924) [SUP-HEUR]
 * C:\WINDOWS\eHome\ehRecvr.exe (PID: 1828) [WD-HEUR]
 * C:\WINDOWS\eHome\ehSched.exe (PID: 1928) [WD-HEUR]
 * C:\PROGRA~1\Iomega\System32\AppServices.exe (PID: 1300) [SFI]
 * C:\WINDOWS\system32\rundll32.exe (PID: 3612) [WD-HEUR]
 * C:\WINDOWS\ehome\mcrdsvc.exe (PID: 3780) [WD-HEUR]
 * C:\WINDOWS\system32\igfxpers.exe (PID: 3568) [WD-HEUR]
 * C:\WINDOWS\system32\hkcmd.exe (PID: 188) [WD-HEUR]
 * C:\WINDOWS\System32\DLA\DLACTRLW.EXE (PID: 3876) [WD-HEUR]
 * C:\WINDOWS\ehome\ehtray.exe (PID: 3348) [WD-HEUR]
 
11 proccesses terminated!
 
Possibly Patched Files.
 
 * C:\WINDOWS\system32\services.exe
 * C:\WINDOWS\system32\lsass.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\System32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\spoolsv.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\Explorer.EXE
 * C:\WINDOWS\system32\ctfmon.exe
 
Checking Registry for malware related settings:
 
 * No issues found in the Registry.
 
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
 
Performing miscellaneous checks:
 
 * Windows Firewall Disabled
 
   [HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
   "EnableFirewall" = dword:00000000
 
Checking Windows Service Integrity: 
 
 * No issues found.
 
Searching for Missing Digital Signatures: 
 
 * C:\WINDOWS\System32\appmgmts.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\appmgmts.dll : 167,936 : 08/10/2004 00:00 AM : 9c3c12975c97119412802b181fbeeffe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\appmgmts.dll : 167,936 : 04/13/2008 05:11 PM : d8849f77c0b66226335a59d26cb4edc6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\appmgmts.dll : 167,936 : 04/13/2008 05:11 PM : d8849f77c0b66226335a59d26cb4edc6 [Pos Repl]
 
 * C:\WINDOWS\System32\clipsrv.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe : 33,280 : 08/10/2004 00:00 AM : c8dec22c4137d7a90f8bdf41ca4b82ae [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe : 33,280 : 04/13/2008 05:12 PM : 34cbe729f38138217f9c80212a2a0c82 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\clipsrv.exe : 33,280 : 04/13/2008 05:12 PM : 34cbe729f38138217f9c80212a2a0c82 [Pos Repl]
 
 * C:\WINDOWS\System32\comctl32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\comctl32.dll : 617,472 : 08/25/2006 00:45 AM : b0124cb21d28b1c9f678b566b6b57d92 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2296011$\comctl32.dll : 617,472 : 04/13/2008 05:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB923191$\comctl32.dll : 611,328 : 08/10/2004 05:00 AM : a77dfb85faee49d66c74da6024ebc69b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\comctl32.dll : 617,472 : 04/13/2008 05:11 PM : 06f247492bc786ce5c24a23e178c711a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\comctl32.dll : 617,472 : 08/23/2010 05:12 AM : 93afb83fbc1f9443cac722fca63d73bf [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll : 921,088 : 08/10/2004 05:00 AM : aef3d788dbf40c7c4d204ea45eb0c505 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll : 1,050,624 : 08/10/2004 05:00 AM : 5af68a5e44734a082442668e9c787743 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll : 1,054,208 : 08/25/2006 05:45 AM : c4e80875c1cf1222fc5efd0314ae5c01 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll : 1,054,208 : 04/13/2008 05:12 PM : bd38d1ebe24a46bd3eda059560afba12 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll : 1,054,208 : 08/23/2010 05:12 AM : 736b12b725aeb2b07f0241a9f680cb10 [Pos Repl]
 
 * C:\WINDOWS\System32\comres.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\comres.dll : 792,064 : 08/10/2004 05:00 AM : 6728270cb7dbb776ed086f5ac4c82310 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\comres.dll : 792,064 : 04/13/2008 05:11 PM : 1280a158c722fa95a80fb7aebe78fa7d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\comres.dll : 792,064 : 04/13/2008 05:11 PM : 1280a158c722fa95a80fb7aebe78fa7d [Pos Repl]
 
 * C:\WINDOWS\System32\cryptsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll : 60,416 : 08/10/2004 05:00 AM : 10654f9ddcea9c46cfb77554231be73b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll : 62,464 : 04/13/2008 05:11 PM : 3d4e199942e29207970e04315d02ad3b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\cryptsvc.dll : 62,464 : 04/13/2008 05:11 PM : 3d4e199942e29207970e04315d02ad3b [Pos Repl]
 
 * C:\WINDOWS\System32\csrss.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\csrss.exe : 6,144 : 08/10/2004 05:00 AM : f12b178b1678d778cfd3ff1fc38c71fb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\csrss.exe : 6,144 : 04/13/2008 05:12 PM : 44f275c64738ea2056e3d9580c23b60f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\csrss.exe : 6,144 : 04/13/2008 05:12 PM : 44f275c64738ea2056e3d9580c23b60f [Pos Repl]
 
 * C:\WINDOWS\System32\ctfmon.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe : 15,360 : 08/10/2004 05:00 AM : 24232996a38c0b0cf151c2140ae29fc8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe : 15,360 : 04/13/2008 05:12 PM : 5f1d5f88303d4a4dbc8e5f97ba967cc3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ctfmon.exe : 15,360 : 04/13/2008 05:12 PM : 5f1d5f88303d4a4dbc8e5f97ba967cc3 [Pos Repl]
 
 * C:\WINDOWS\System32\d3d8.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d8.dll : 1,179,648 : 08/10/2004 05:00 AM : 42803ec60803c1a0754671e9183458f1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d8.dll : 1,179,648 : 04/13/2008 05:11 PM : f099b129022170f2df9e1c0185c9bcfb [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\d3d8.dll : 1,179,648 : 04/13/2008 05:11 PM : f099b129022170f2df9e1c0185c9bcfb [Pos Repl]
 
 * C:\WINDOWS\System32\d3d8thk.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d8thk.dll : 8,192 : 08/10/2004 05:00 AM : 8d9210e9858d525646251dfa1fe37ebe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d8thk.dll : 8,192 : 04/13/2008 05:11 PM : 31b067c412fa1a9bad3ca2a63d7da440 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\d3d8thk.dll : 8,192 : 04/13/2008 05:11 PM : 31b067c412fa1a9bad3ca2a63d7da440 [Pos Repl]
 
 * C:\WINDOWS\System32\d3d9.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\d3d9.dll : 1,689,088 : 08/10/2004 05:00 AM : d67bdbbda86cc9aeebbaf3217c1717d8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d9.dll : 1,689,088 : 04/13/2008 05:11 PM : 0607cbc6fa20114cb491efe4b2f9efad [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\d3d9.dll : 1,689,088 : 04/13/2008 05:11 PM : 0607cbc6fa20114cb491efe4b2f9efad [Pos Repl]
 
 * C:\WINDOWS\System32\ddraw.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ddraw.dll : 266,240 : 08/10/2004 05:00 AM : 7ed462f353b3d915a418a689fa881f96 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ddraw.dll : 279,552 : 04/13/2008 05:11 PM : a340cd71eb535a3dd751b5f28723e50c [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ddraw.dll : 279,552 : 04/13/2008 05:11 PM : a340cd71eb535a3dd751b5f28723e50c [Pos Repl]
 
 * C:\WINDOWS\System32\dllhost.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe : 5,120 : 08/10/2004 05:00 AM : dd87db7387b9eb441c5674888a0d840c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dllhost.exe : 5,120 : 04/13/2008 05:12 PM : 0a9ba6af531afe7fa5e4fb973852d863 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dllhost.exe : 5,120 : 04/13/2008 05:12 PM : 0a9ba6af531afe7fa5e4fb973852d863 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\acpiec.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\acpiec.sys : 11,648 : 08/10/2004 05:00 AM : 9859c0f6936e723e4892d7141b1327d5 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\acpi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\acpi.sys : 187,776 : 08/10/2004 05:00 AM : a10c7534f7223f4a73a948967d00e69b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\acpi.sys : 187,776 : 04/13/2008 05:36 AM : 8fd99680a539792a30e97944fdaecf17 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\acpi.sys : 187,776 : 04/13/2008 05:36 AM : 8fd99680a539792a30e97944fdaecf17 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\aec.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB900485\SP2QFE\aec.sys : 142,464 : 02/14/2006 05:30 PM : 1ee7b434ba961ef845de136224c30fec [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\aec.sys : 142,464 : 02/14/2006 05:22 PM : 1ee7b434ba961ef845de136224c30fec [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB900485$\aec.sys : 142,464 : 08/03/2004 09:39 PM : 841f385c6cfaf66b58fbd898722bb4f0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\aec.sys : 142,592 : 04/13/2008 05:39 AM : 8bed39e3c35d6a489438b8141717a557 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\aec.sys : 142,592 : 04/13/2008 05:39 AM : 8bed39e3c35d6a489438b8141717a557 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\agp440.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\agp440.sys : 42,368 : 08/03/2004 10:07 PM : 2c428fa0c3e3a01ed93c9b2a27d8d4bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\agp440.sys : 42,368 : 04/13/2008 05:36 AM : 08fd04aa961bdc77fb983f328334e3d7 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\agp440.sys : 42,368 : 04/13/2008 05:36 AM : 08fd04aa961bdc77fb983f328334e3d7 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\amdk6.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\amdk6.sys : 36,992 : 08/10/2004 10:00 AM : dad16a9d5c873e7219e6b43802ed316a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\amdk6.sys : 37,376 : 04/13/2008 05:31 AM : d7701d7e72243286cc88c9973d891057 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\amdk6.sys : 37,376 : 04/13/2008 05:31 AM : d7701d7e72243286cc88c9973d891057 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\amdk7.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\amdk7.sys : 37,376 : 08/10/2004 10:00 AM : 680ad1c1bb16239e28d8f33a54a7a3c7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\amdk7.sys : 37,760 : 04/13/2008 05:31 AM : 8fce268cdbdd83b23419d1f35f42c7b1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\amdk7.sys : 37,760 : 04/13/2008 05:31 AM : 8fce268cdbdd83b23419d1f35f42c7b1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\arp1394.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\arp1394.sys : 60,800 : 08/10/2004 10:00 AM : f0d692b0bffb46e30eb3cea168bbc49f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\arp1394.sys : 60,800 : 04/13/2008 05:51 AM : b5b8a80875c1dededa8b02765642c32f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\arp1394.sys : 60,800 : 04/13/2008 05:51 AM : b5b8a80875c1dededa8b02765642c32f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\asyncmac.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\asyncmac.sys : 14,336 : 08/10/2004 10:00 AM : 02000abf34af4c218c35d257024807d6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\asyncmac.sys : 14,336 : 04/13/2008 05:57 AM : b153affac761e7f5fcfa822b9c4e97bc [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\asyncmac.sys : 14,336 : 04/13/2008 05:57 AM : b153affac761e7f5fcfa822b9c4e97bc [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\atapi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\atapi.sys : 95,360 : 08/03/2004 09:59 PM : cdfe4411a69c224bd1d11b2da92dac51 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\atapi.sys : 96,512 : 04/13/2008 05:40 AM : 9f3a2f5aa6875c72bf062c712cfa2674 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\atapi.sys : 96,512 : 04/13/2008 05:40 AM : 9f3a2f5aa6875c72bf062c712cfa2674 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\atapi.sys : 95,360 : 08/03/2004 09:59 PM : cdfe4411a69c224bd1d11b2da92dac51 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0012\DriverFiles\i386\atapi.sys : 95,360 : 08/03/2004 09:59 PM : cdfe4411a69c224bd1d11b2da92dac51 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\audstub.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\audstub.sys : 3,072 : 08/17/2001 05:59 AM : d9f724aa26c010a217c97606b160ed68 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\beep.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\beep.sys : 4,224 : 08/10/2004 05:00 AM : da1f27d85e0d1525f6621372e7b685e9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\bridge.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\bridge.sys : 71,552 : 08/10/2004 09:00 AM : e4e6a0922e3d983728c9ad4e8d466954 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\bridge.sys : 71,552 : 04/13/2008 05:53 AM : f934d1b230f84e1d19dd00ac5a7a83ed [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\bridge.sys : 71,552 : 04/13/2008 05:53 AM : f934d1b230f84e1d19dd00ac5a7a83ed [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\bthport.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB951376\SP2QFE\bthport.sys : 272,128 : 04/14/2008 05:00 AM : fc50ce8c3ada692fbe82f1d4c8a4b70b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376\SP3GDR\bthport.sys : 272,128 : 04/14/2008 05:30 AM : 8381fb906f05495f3d2045fbc9576cd5 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376\SP3QFE\bthport.sys : 272,128 : 04/14/2008 05:36 AM : f6cbbcc40f94eb8a88b1e826911ac795 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys : 272,128 : 06/13/2008 05:52 AM : 956e7e86bb00e792c8ff3afb2f8e460d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys : 272,128 : 06/13/2008 05:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys : 272,128 : 06/13/2008 05:27 AM : 51d05d5a8a7d93ab0b1a8d6a38db3ca4 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\bthport.sys : 272,128 : 06/13/2008 09:10 AM : 95ef6f3f386d93ee1e4d9ca45a50252a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951376$\bthport.sys : 273,024 : 04/13/2008 09:46 AM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951376-v2$\bthport.sys : 272,128 : 04/14/2008 09:30 AM : 8381fb906f05495f3d2045fbc9576cd5 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951376-v2_0$\bthport.sys : 272,128 : 04/14/2008 09:01 AM : 0bedc4527aafdae75b1844d4db29b6db [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\bthport.sys : 272,128 : 06/13/2008 05:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\bthport.sys : 273,024 : 04/13/2008 05:46 AM : 10b85171b90c449f8da71c2640b797e9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\bthport.sys : 272,128 : 06/13/2008 05:05 AM : 662bfd909447dd9cc15b1a1c366583b4 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\cbidf2k.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\cbidf2k.sys : 13,952 : 08/17/2001 05:52 AM : 90a673fc8e12a79afbed2576f6a7aaf9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\cdaudio.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\cdaudio.sys : 18,688 : 08/10/2004 05:00 AM : c1b486a7658353d33a10cc15211a873b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\cdfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cdfs.sys : 63,744 : 08/10/2004 09:00 AM : cd7d5152df32b47f4e36f710b35aae02 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cdfs.sys : 63,744 : 04/13/2008 05:14 AM : c885b02847f5d2fd45a24e219ed93b32 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\cdfs.sys : 63,744 : 04/13/2008 05:14 AM : c885b02847f5d2fd45a24e219ed93b32 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\cdrom.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys : 49,536 : 08/10/2004 09:00 AM : af9c19b3100fe010496b1a27181fbf72 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\cdrom.sys : 62,976 : 04/13/2008 05:40 AM : 1f4260cc5b42272d71f79e570a27a4fe [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\cdrom.sys : 62,976 : 04/13/2008 05:40 AM : 1f4260cc5b42272d71f79e570a27a4fe [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\classpnp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\classpnp.sys : 49,664 : 08/10/2004 09:00 AM : d86173b401470f06d9810f7962969ddf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\classpnp.sys : 49,536 : 04/13/2008 05:16 AM : fe47dd8fe6d7768ff94ebec6c74b2719 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\classpnp.sys : 49,536 : 04/13/2008 05:16 AM : fe47dd8fe6d7768ff94ebec6c74b2719 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\cpqdap01.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\cpqdap01.sys : 11,776 : 08/10/2004 05:00 AM : 9624293e55ad405415862b504ca95b73 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\crusoe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\crusoe.sys : 36,480 : 08/10/2004 09:00 AM : 6af1684ccaac3f7ef4ee9ba65eb0677a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\crusoe.sys : 36,736 : 04/13/2008 05:31 AM : f50d9bdbb25cce075e514dc07472a22f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\crusoe.sys : 36,736 : 04/13/2008 05:31 AM : f50d9bdbb25cce075e514dc07472a22f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\diskdump.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\diskdump.sys : 14,208 : 08/10/2004 09:00 AM : d16c81677a9be399c63cd2ea486472a5 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\diskdump.sys : 14,208 : 04/13/2008 05:40 AM : e65e2353a5d74ea89971cb918eeeb2f6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\diskdump.sys : 14,208 : 04/13/2008 05:40 AM : e65e2353a5d74ea89971cb918eeeb2f6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\disk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\disk.sys : 36,352 : 08/10/2004 09:00 AM : 00ca44e4534865f8a3b64f7c0984bff0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\disk.sys : 36,352 : 04/13/2008 05:40 AM : 044452051f3e02e7963599fc8f4f3e25 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\disk.sys : 36,352 : 04/13/2008 05:40 AM : 044452051f3e02e7963599fc8f4f3e25 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dmboot.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmboot.sys : 799,744 : 08/10/2004 09:00 AM : c0fbb516e06e243f0cf31f597e7ebf7d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmboot.sys : 799,744 : 04/13/2008 05:44 AM : d992fe1274bde0f84ad826acae022a41 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dmboot.sys : 799,744 : 04/13/2008 05:44 AM : d992fe1274bde0f84ad826acae022a41 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dmio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmio.sys : 153,344 : 08/10/2004 09:00 AM : f5e7b358a732d09f4bcf2824b88b9e28 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmio.sys : 153,344 : 04/13/2008 05:44 AM : 7c824cf7bbde77d95c08005717a95f6f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dmio.sys : 153,344 : 04/13/2008 05:44 AM : 7c824cf7bbde77d95c08005717a95f6f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dmload.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dmload.sys : 5,888 : 08/10/2004 05:00 AM : e9317282a63ca4d188c0df5e09c6ac5f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\DMusic.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dmusic.sys : 52,864 : 08/03/2004 10:07 PM : a6f881284ac1150e37d9ae47ff601267 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dmusic.sys : 52,864 : 04/13/2008 05:45 AM : 8a208dfcf89792a484e76c40e5f50b45 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dmusic.sys : 52,864 : 04/13/2008 05:45 AM : 8a208dfcf89792a484e76c40e5f50b45 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\drmkaud.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\drmkaud.sys : 2,944 : 08/03/2004 10:07 PM : 1ed4dbbae9f5d558dbba4cc450e3eb2e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\drmkaud.sys : 2,944 : 04/13/2008 05:45 AM : 8f5fcff8e8848afac920905fbd9d33c8 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\drmkaud.sys : 2,944 : 04/13/2008 05:45 AM : 8f5fcff8e8848afac920905fbd9d33c8 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\drmk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\drmk.sys : 60,288 : 08/03/2004 10:08 PM : ff86422268de771d571e123eb7092c6a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\drmk.sys : 60,160 : 04/13/2008 05:45 AM : 6cb08593487f5701d2d2254e693eafce [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\drmk.sys : 60,160 : 04/13/2008 05:45 AM : 6cb08593487f5701d2d2254e693eafce [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dxapi.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dxapi.sys : 10,496 : 08/10/2004 05:00 AM : fe97d0343acfdebdd578fc67cc91fa87 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dxg.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dxg.sys : 71,040 : 08/10/2004 10:00 AM : d3dac8432110aad0b02a58b4459ab835 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dxg.sys : 71,168 : 04/13/2008 05:38 AM : ac7280566a7bb85cb3291f04ddc1198e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dxg.sys : 71,168 : 04/13/2008 05:38 AM : ac7280566a7bb85cb3291f04ddc1198e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\dxgthk.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\dxgthk.sys : 3,328 : 08/10/2004 05:00 AM : a73f5d6705b1d820c19b18782e176efd [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fastfat.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fastfat.sys : 143,360 : 08/10/2004 10:00 AM : 3117f595e9615e04f05a54fc15a03b20 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fastfat.sys : 143,744 : 04/13/2008 05:14 AM : 38d332a6d56af32635675f132548343e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\fastfat.sys : 143,744 : 04/13/2008 05:14 AM : 38d332a6d56af32635675f132548343e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fdc.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fdc.sys : 27,392 : 08/10/2004 10:00 AM : ced2e8396a8838e59d8fd529c680e02c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fdc.sys : 27,392 : 04/13/2008 05:40 AM : 92cdd60b6730b9f50f6a1a0c1f8cdc81 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\fdc.sys : 27,392 : 04/13/2008 05:40 AM : 92cdd60b6730b9f50f6a1a0c1f8cdc81 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fips.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fips.sys : 34,944 : 08/10/2004 10:00 AM : e153ab8a11de5452bcf5ac7652dbf3ed [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fips.sys : 44,544 : 04/13/2008 05:33 AM : d45926117eb9fa946a6af572fbe1caa3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\fips.sys : 44,544 : 04/13/2008 05:33 AM : d45926117eb9fa946a6af572fbe1caa3 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\flpydisk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\flpydisk.sys : 20,480 : 08/10/2004 10:00 AM : 0dd1de43115b93f4d85e889d7a86f548 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\flpydisk.sys : 20,480 : 04/13/2008 05:40 AM : 9d27e7b80bfcdf1cdd9b555862d5e7f0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\flpydisk.sys : 20,480 : 04/13/2008 05:40 AM : 9d27e7b80bfcdf1cdd9b555862d5e7f0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fltMgr.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB922582\SP2QFE\fltmgr.sys : 128,768 : 08/21/2006 05:43 AM : 5a85cd3d07273e3f6fe72ee9c6431632 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\fltmgr.sys : 128,896 : 08/21/2006 10:14 AM : 3d234fb6d6ee875eb009864a299bea29 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB922582$\fltmgr.sys : 124,800 : 08/10/2004 10:00 AM : 157754f0df355a9e0a6f54721914f9c6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\fltmgr.sys : 129,792 : 04/13/2008 05:32 AM : b2cf4b0786f8212cb92ed2b50c6db6b0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\fltmgr.sys : 129,792 : 04/13/2008 05:32 AM : b2cf4b0786f8212cb92ed2b50c6db6b0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fs_rec.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\fs_rec.sys : 7,936 : 08/10/2004 05:00 AM : 3e1e2bd4f39b0e2b7dc4f4d2bcc2779a [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\fsvga.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\fsvga.sys : 12,160 : 08/10/2004 05:00 AM : 455f778ee14368468560bd7cb8c854d0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ftdisk.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ftdisk.sys : 125,056 : 08/17/2001 05:52 AM : 6ac26732762483366c3969c9e4d2259d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\hidclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hidclass.sys : 36,224 : 08/10/2004 10:00 AM : 378055ab8dda86228683c697c4e11685 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hidclass.sys : 36,864 : 04/13/2008 05:45 AM : 1af592532532a402ed7c060f6954004f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\hidclass.sys : 36,864 : 04/13/2008 05:45 AM : 1af592532532a402ed7c060f6954004f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\hidparse.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hidparse.sys : 24,960 : 08/10/2004 10:00 AM : 5fff41cd5108e9051d255c37825af697 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hidparse.sys : 24,960 : 04/13/2008 05:45 AM : 96eccf28fdbf1b2cc12725818a63628d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\hidparse.sys : 24,960 : 04/13/2008 05:45 AM : 96eccf28fdbf1b2cc12725818a63628d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\hidusb.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hidusb.sys : 9,600 : 08/17/2001 01:02 PM : 1de6783b918f540149aa69943bdfeba8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hidusb.sys : 10,368 : 04/13/2008 05:45 AM : ccf82c5ec8a7326c3066de870c06daf1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\hidusb.sys : 10,368 : 04/13/2008 05:45 AM : ccf82c5ec8a7326c3066de870c06daf1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\http.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB887742\SP2QFE\http.sys : 262,272 : 10/08/2004 04:18 PM : 3247a2db333d1521680e6864a8295a47 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB916595\SP2QFE\http.sys : 262,656 : 03/16/2006 06:08 PM : 909d110c9634b0f1487eaaea837317d9 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB970430\SP3QFE\http.sys : 265,728 : 10/20/2009 06:21 AM : 937031c085718c1c04a9c0864625ec6b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\http.sys : 262,784 : 03/16/2006 05:33 PM : cb77bb47e67e84deb17ba29632501730 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB887742$\http.sys : 263,040 : 08/10/2004 05:00 AM : c19b522a9ae0bbc3293397f3055e80a1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB916595$\http.sys : 262,400 : 10/08/2004 04:48 PM : bfb7b73c942e816c4fb4a5a7bae87136 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB970430$\http.sys : 264,832 : 04/13/2008 04:53 AM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\http.sys : 265,728 : 10/20/2009 05:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\http.sys : 264,832 : 04/13/2008 05:53 AM : f6aacf5bce2893e0c1754afeb672e5c9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\http.sys : 265,728 : 10/20/2009 05:20 AM : f80a415ef82cd06ffaf0d971528ead38 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\i8042prt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\i8042prt.sys : 52,736 : 08/10/2004 04:00 AM : 5502b58eef7486ee6f93f3f164dcb808 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\i8042prt.sys : 52,480 : 04/13/2008 05:18 AM : 4a0b06aa8943c1e332520f7440c0aa30 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\i8042prt.sys : 52,480 : 04/13/2008 05:18 AM : 4a0b06aa8943c1e332520f7440c0aa30 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\imapi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\imapi.sys : 41,856 : 08/10/2004 04:00 AM : f8aa320c6a0409c0380e5d8a99d76ec6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\imapi.sys : 42,112 : 04/13/2008 05:40 AM : 083a052659f5310dd8b6a6cb05edcf8e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\imapi.sys : 42,112 : 04/13/2008 05:40 AM : 083a052659f5310dd8b6a6cb05edcf8e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\intelide.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\intelide.sys : 5,504 : 08/03/2004 09:59 PM : 2d722b2b54ab55b2fa475eb58d7b2aad [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\intelide.sys : 5,504 : 04/13/2008 05:40 AM : b5466a9250342a7aa0cd1fba13420678 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\intelide.sys : 5,504 : 04/13/2008 05:40 AM : b5466a9250342a7aa0cd1fba13420678 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\intelide.sys : 5,504 : 08/03/2004 09:59 PM : 2d722b2b54ab55b2fa475eb58d7b2aad [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0012\DriverFiles\i386\intelide.sys : 5,504 : 08/03/2004 09:59 PM : 2d722b2b54ab55b2fa475eb58d7b2aad [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\intelppm.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\intelppm.sys : 36,096 : 08/10/2004 09:00 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\intelppm.sys : 36,352 : 04/13/2008 05:31 AM : 8c953733d8f36eb2133f5bb58808b66b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\intelppm.sys : 36,352 : 04/13/2008 05:31 AM : 8c953733d8f36eb2133f5bb58808b66b [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\i386\intelppm.sys : 36,096 : 08/10/2004 09:00 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\i386\intelppm.sys : 36,096 : 08/10/2004 09:00 AM : 279fb78702454dff2bb445f238c048d2 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ip6fw.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ip6fw.sys : 29,056 : 08/10/2004 09:00 AM : 4448006b6bc60e6c027932cfc38d6855 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ip6fw.sys : 36,608 : 04/13/2008 05:53 AM : 3bb22519a194418d5fec05d800a19ad0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ip6fw.sys : 36,608 : 04/13/2008 05:53 AM : 3bb22519a194418d5fec05d800a19ad0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ipfltdrv.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ipfltdrv.sys : 32,896 : 08/10/2004 05:00 AM : 731f22ba402ee4b62748adaf6363c182 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ipinip.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipinip.sys : 20,992 : 08/10/2004 09:00 AM : e1ec7f5da720b640cd8fb8424f1b14bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipinip.sys : 20,864 : 04/13/2008 05:57 AM : b87ab476dcf76e72010632b5550955f5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ipinip.sys : 20,864 : 04/13/2008 05:57 AM : b87ab476dcf76e72010632b5550955f5 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ipnat.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB886185\SP2QFE\ipnat.sys : 134,912 : 09/29/2004 03:31 PM : 5191673215c91ff13ceaa83ef8e9653f [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipnat.sys : 134,912 : 09/29/2004 03:28 PM : e2168cbc7098ffe963c6f23f472a3593 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB886185$\ipnat.sys : 134,912 : 08/10/2004 03:00 AM : b5a8e215ac29d24d60b4d1250ef05ace [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipnat.sys : 152,832 : 04/13/2008 05:57 AM : cc748ea12c6effde940ee98098bf96bb [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ipnat.sys : 152,832 : 04/13/2008 05:57 AM : cc748ea12c6effde940ee98098bf96bb [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ipsec.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipsec.sys : 74,752 : 08/10/2004 03:00 AM : 64537aa5c003a6afeee1df819062d0d1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipsec.sys : 75,264 : 04/13/2008 05:19 AM : 23c74d75e36e7158768dd63d92789a91 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ipsec.sys : 75,264 : 04/13/2008 05:19 AM : 23c74d75e36e7158768dd63d92789a91 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\irenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\irenum.sys : 11,264 : 08/10/2004 03:00 AM : 50708daa1b1cbb7d6ac1cf8f56a24410 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\irenum.sys : 11,264 : 04/13/2008 05:54 AM : c93c9ff7b04d772627a3646d89f7bf89 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\irenum.sys : 11,264 : 04/13/2008 05:54 AM : c93c9ff7b04d772627a3646d89f7bf89 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\isapnp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys : 35,840 : 08/17/2001 03:58 AM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\isapnp.sys : 37,248 : 04/13/2008 05:36 AM : 05a299ec56e52649b1cf2fc52d20f2d7 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\isapnp.sys : 37,248 : 04/13/2008 05:36 AM : 05a299ec56e52649b1cf2fc52d20f2d7 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\i386\isapnp.sys : 35,840 : 08/17/2001 09:58 AM : e504f706ccb699c2596e9a3da1596e87 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\kbdclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\kbdclass.sys : 24,576 : 08/03/2004 09:58 PM : ebdee8a2ee5393890a1acee971c4c246 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\kbdclass.sys : 24,576 : 04/13/2008 05:39 AM : 463c1ec80cd17420a542b7f36a36f128 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\kbdclass.sys : 24,576 : 04/13/2008 05:39 AM : 463c1ec80cd17420a542b7f36a36f128 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0017\DriverFiles\i386\kbdclass.sys : 24,576 : 04/13/2008 09:39 AM : 463c1ec80cd17420a542b7f36a36f128 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\kmixer.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\kmixer.sys : 172,416 : 06/14/2006 03:50 AM : 8531438246ce9474e41ee1599904c0c7 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\kmixer.sys : 172,416 : 06/14/2006 09:47 AM : ba5deda4d934e6288c2f66caf58d2562 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB920872$\kmixer.sys : 171,776 : 08/03/2004 10:07 PM : d93cad07c5683db066b0b2d2d3790ead [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\kmixer.sys : 172,416 : 04/13/2008 05:45 AM : 692bcf44383d056aed41b045a323d378 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\kmixer.sys : 172,416 : 04/13/2008 05:45 AM : 692bcf44383d056aed41b045a323d378 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ksecdd.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\ksecdd.sys : 92,928 : 06/24/2009 03:28 AM : c6ebf1d6ad71df30db49b8d3287e1368 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ksecdd.sys : 92,032 : 08/10/2004 10:00 AM : eb7ffe87fd367ea8fca0506f74a87fbb [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389$\ksecdd.sys : 92,288 : 04/13/2008 10:31 AM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ksecdd.sys : 92,288 : 04/13/2008 05:31 AM : 1705745d900dabf2d89f90ebaddc7517 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ksecdd.sys : 92,928 : 06/24/2009 05:18 AM : b467646c54cc746128904e1654c750c1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ks.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ks.sys : 140,928 : 08/10/2004 10:00 AM : b9540e258f952650de8dec68719a5c97 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ks.sys : 141,056 : 04/13/2008 05:16 AM : 0753515f78df7f271a5e61c20bcd36a1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ks.sys : 141,056 : 04/13/2008 05:16 AM : 0753515f78df7f271a5e61c20bcd36a1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mcd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\mcd.sys : 7,680 : 08/10/2004 05:00 AM : d1f8be91ed4ddb671d42e473e3fe71ab [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mf.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mf.sys : 63,744 : 08/10/2004 10:00 AM : 729d83e56c29c510258a6e9e79ffddc3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mf.sys : 63,744 : 04/13/2008 05:36 AM : a7da20ab18a1bdae28b0f349e57da0d1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mf.sys : 63,744 : 04/13/2008 05:36 AM : a7da20ab18a1bdae28b0f349e57da0d1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mnmdd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\mnmdd.sys : 4,224 : 08/10/2004 05:00 AM : 4ae068242760a1fb6e1a44bf4e16afa6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\modem.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\modem.sys : 30,080 : 08/10/2004 10:00 AM : 6fc6f9d7acc36dca9b914565a3aeda05 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\modem.sys : 30,080 : 04/13/2008 05:00 AM : dfcbad3cec1c5f964962ae10e0bcc8e1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\modem.sys : 30,080 : 04/13/2008 05:00 AM : dfcbad3cec1c5f964962ae10e0bcc8e1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mouclass.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mouclass.sys : 23,040 : 08/03/2004 09:58 PM : 34e1f0031153e491910e12551400192c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mouclass.sys : 23,040 : 04/13/2008 05:39 AM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mouclass.sys : 23,040 : 04/13/2008 05:39 AM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0018\DriverFiles\i386\mouclass.sys : 23,040 : 04/13/2008 09:39 AM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0020\DriverFiles\i386\mouclass.sys : 23,040 : 04/13/2008 09:39 AM : 35c9e97194c8cfb8430125f8dbc34d04 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mouhid.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\mouhid.sys : 12,160 : 08/17/2001 01:48 PM : b1c303e17fb9d46e87a98e4ba6769685 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0018\DriverFiles\i386\mouhid.sys : 12,160 : 08/17/2001 09:48 AM : b1c303e17fb9d46e87a98e4ba6769685 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0020\DriverFiles\i386\mouhid.sys : 12,160 : 08/17/2001 01:48 PM : b1c303e17fb9d46e87a98e4ba6769685 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mountmgr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mountmgr.sys : 42,240 : 08/10/2004 09:00 AM : 65653f3b4477f3c63e68a9659f85ee2e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mountmgr.sys : 42,368 : 04/13/2008 01:39 AM : a80b9a0bad1b73637dbcbba7df72d3fd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mountmgr.sys : 42,368 : 04/13/2008 01:39 AM : a80b9a0bad1b73637dbcbba7df72d3fd [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mqac.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB937894\SP2QFE\mqac.sys : 72,960 : 07/06/2007 03:52 AM : d92fce6729ee150a15a7cdbc433f390e [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mqac.sys : 72,960 : 07/06/2007 09:05 AM : 157a32ddc6a019a4e31b19d604d2f127 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB937894$\mqac.sys : 72,960 : 08/10/2004 09:00 AM : db07b0088cdfd20c2a22e675120ede34 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mqac.sys : 92,544 : 04/13/2008 01:39 AM : 70c14f5cca5cf73f8a645c73a01d8726 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mqac.sys : 92,544 : 04/13/2008 01:39 AM : 70c14f5cca5cf73f8a645c73a01d8726 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mrxdav.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB946026\SP2QFE\mrxdav.sys : 179,712 : 12/18/2007 03:38 AM : 9921d9df98f266560ec28b3bdb580180 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mrxdav.sys : 179,584 : 12/18/2007 09:51 AM : 29414447eb5bde2f8397dc965dbb3156 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB946026$\mrxdav.sys : 181,248 : 08/10/2004 09:00 AM : 46edcc8f2db2f322c24f48785cb46366 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mrxdav.sys : 180,608 : 04/13/2008 01:32 AM : 11d42bb6206f33fbb3ba0288d3ef81bd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mrxdav.sys : 180,608 : 04/13/2008 01:32 AM : 11d42bb6206f33fbb3ba0288d3ef81bd [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mrxsmb.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2511455\SP3QFE\mrxsmb.sys : 457,472 : 02/17/2011 03:19 AM : fb7dfd15d760ad339837a470f0e780d3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2536276\SP3QFE\mrxsmb.sys : 457,856 : 04/29/2011 03:47 AM : 8dd801e28eb76fda2a38907882a0036f [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2536276-v2\SP3QFE\mrxsmb.sys : 457,856 : 07/15/2011 03:29 AM : fb2fccc70f7174c7bf64f48e96d3adf4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB885250\SP2QFE\mrxsmb.sys : 451,584 : 01/18/2005 08:51 PM : 7b195060ff456fa65954c72c5c1640ff [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\mrxsmb.sys : 448,128 : 10/27/2004 06:15 PM : a1be3cb080dcc0a8270d21e3ca3b7005 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\mrxsmb.sys : 454,400 : 05/05/2006 06:16 AM : 7412ce77c6fd823f8889b4df420c680b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys : 455,936 : 10/24/2008 06:41 AM : 7170ab42b51954def2781a4d1cce65f4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB978251\SP3QFE\mrxsmb.sys : 456,832 : 12/04/2009 06:25 AM : 602549d1e8a622e5746991f6c56b21ca [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB980232\SP3QFE\mrxsmb.sys : 457,216 : 02/24/2010 06:57 AM : d09b9f0b9960dd41e73127b7814c115f [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mrxsmb.sys : 453,120 : 05/05/2006 09:41 AM : 025af03ce51645c62f3b6907a7e2be5e [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2511455$\mrxsmb.sys : 455,680 : 02/24/2010 09:11 AM : f3aefb11abc521122b67095044169e98 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2536276$\mrxsmb.sys : 455,936 : 02/17/2011 09:18 AM : 0ea4d8ed179b75f8afa7998ba22285ca [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2536276-v2$\mrxsmb.sys : 456,320 : 04/29/2011 09:19 AM : 0dc719e9b15e902346e87e9dcd5751fa [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB914389$\mrxsmb.sys : 451,584 : 01/18/2005 09:26 PM : 5ddc9a1b2eb5a4bf010ce8c019a18c1f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB957097$\mrxsmb.sys : 456,576 : 04/13/2008 09:17 AM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB978251$\mrxsmb.sys : 455,296 : 10/24/2008 09:21 AM : 60ae98742484e7ab80c3c1450e708148 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB980232$\mrxsmb.sys : 455,424 : 12/04/2009 09:22 AM : 421f7b922cec5a5f340e7574a98f7b7c [Pos Repl]
 +-> C:\WINDOWS\Driver Cache\i386\mrxsmb.sys : 456,320 : 07/15/2011 01:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mrxsmb.sys : 456,576 : 04/13/2008 01:17 AM : 68755f0ff16070178b54674fe5b847b0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mrxsmb.sys : 456,320 : 07/15/2011 01:29 AM : 7d304a5eb4344ebeeab53a2fe3ffb9f0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\msfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msfs.sys : 19,072 : 08/10/2004 09:00 AM : 561b3a4333ca2dbdba28b5b956822519 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msfs.sys : 19,072 : 04/13/2008 01:32 AM : c941ea2454ba8350021d774daf0f1027 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msfs.sys : 19,072 : 04/13/2008 01:32 AM : c941ea2454ba8350021d774daf0f1027 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\msgpc.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msgpc.sys : 35,072 : 08/10/2004 09:00 AM : c0f1d4a21de5a415df8170616703debf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msgpc.sys : 35,072 : 04/13/2008 01:56 AM : 0a02c63c8b144bd8c86b103dee7c86a2 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msgpc.sys : 35,072 : 04/13/2008 01:56 AM : 0a02c63c8b144bd8c86b103dee7c86a2 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\MSKSSRV.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mskssrv.sys : 7,552 : 08/03/2004 09:58 PM : ae431a8dd3c1d0d0610cdbac16057ad0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mskssrv.sys : 7,552 : 04/13/2008 01:39 AM : d1575e71568f4d9e14ca56b7b0453bf1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mskssrv.sys : 7,552 : 04/13/2008 01:39 AM : d1575e71568f4d9e14ca56b7b0453bf1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\MSPCLOCK.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mspclock.sys : 5,376 : 08/03/2004 09:58 PM : 13e75fef9dfeb08eeded9d0246e1f448 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mspclock.sys : 5,376 : 04/13/2008 01:39 AM : 325bb26842fc7ccc1fcce2c457317f3e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mspclock.sys : 5,376 : 04/13/2008 01:39 AM : 325bb26842fc7ccc1fcce2c457317f3e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\MSPQM.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mspqm.sys : 4,992 : 08/03/2004 09:58 PM : 1988a33ff19242576c3d0ef9ce785da7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mspqm.sys : 4,992 : 04/13/2008 01:39 AM : bad59648ba099da4a17680b39730cb3d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mspqm.sys : 4,992 : 04/13/2008 01:39 AM : bad59648ba099da4a17680b39730cb3d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mssmbios.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mssmbios.sys : 15,488 : 08/03/2004 10:07 PM : 469541f8bfd2b32659d5d463a6714bce [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mssmbios.sys : 15,488 : 04/13/2008 01:36 AM : af5f4f3f14a8ea2c26de30f7a1e17136 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mssmbios.sys : 15,488 : 04/13/2008 01:36 AM : af5f4f3f14a8ea2c26de30f7a1e17136 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\mup.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2535512\SP3QFE\mup.sys : 105,472 : 04/21/2011 06:52 AM : f7b1ad991491f02af6da70b00b8bf114 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mup.sys : 107,904 : 08/10/2004 10:00 AM : 82035e0f41c2dd05ae41d27fe6cf7de1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2535512$\mup.sys : 105,344 : 04/13/2008 10:17 AM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mup.sys : 105,344 : 04/13/2008 01:17 AM : 2f625d11385b1a94360bfc70aaefdee1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mup.sys : 105,472 : 04/21/2011 01:37 AM : de6a75f5c270e756c5508d94b6cf68f5 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ndis.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndis.sys : 182,912 : 08/10/2004 10:00 AM : 558635d3af1c7546d26067d5d9b6959e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndis.sys : 182,656 : 04/13/2008 01:20 AM : 1df7f42665c94b825322fae71721130d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndis.sys : 182,656 : 04/13/2008 01:20 AM : 1df7f42665c94b825322fae71721130d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ndistapi.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2566454\SP3QFE\ndistapi.sys : 10,496 : 07/08/2011 06:51 AM : 091735a5f20acb1dc147383a905ae002 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndistapi.sys : 9,600 : 08/10/2004 10:00 AM : 08d43bbdacdf23f34d79e44ed35c1b4c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2566454$\ndistapi.sys : 10,112 : 04/13/2008 10:57 AM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndistapi.sys : 10,112 : 04/13/2008 01:57 AM : 1ab3d00c991ab086e69db84b6c0ed78f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndistapi.sys : 10,496 : 07/08/2011 01:02 AM : 0109c4f3850dfbab279542515386ae22 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ndisuio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndisuio.sys : 14,592 : 06/20/2005 10:52 AM : eefa1ce63805d2145978621be5c6d955 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB899337$\ndisuio.sys : 12,928 : 08/10/2004 10:00 AM : 34d6cd56409da9a7ed573e1c90a308bf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndisuio.sys : 14,592 : 04/13/2008 01:55 AM : f927a4434c5028758a842943ef1a3849 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndisuio.sys : 14,592 : 04/13/2008 01:55 AM : f927a4434c5028758a842943ef1a3849 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ndiswan.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndiswan.sys : 91,776 : 08/10/2004 10:00 AM : 0b90e255a9490166ab368cd55a529893 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndiswan.sys : 91,520 : 04/13/2008 01:20 AM : edc1531a49c80614b2cfda43ca8659ab [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndiswan.sys : 91,520 : 04/13/2008 01:20 AM : edc1531a49c80614b2cfda43ca8659ab [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ndproxy.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2440591\SP3QFE\ndproxy.sys : 40,960 : 11/02/2010 10:55 PM : 816460bd4b4acd27937d1d0813e2e9e9 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ndproxy.sys : 38,016 : 08/10/2004 10:00 AM : 59fc3fb44d2669bc144fd87826bb571f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2440591$\ndproxy.sys : 40,576 : 04/13/2008 10:57 AM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ndproxy.sys : 40,576 : 04/13/2008 01:57 AM : 6215023940cfd3702b46abc304e1d45a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ndproxy.sys : 40,960 : 11/02/2010 01:17 AM : 9282bd12dfb069d3889eb3fcc1000a9b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\netbios.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netbios.sys : 34,560 : 08/10/2004 10:00 AM : 3a2aca8fc1d7786902ca434998d7ceb4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netbios.sys : 34,688 : 04/13/2008 01:56 AM : 5d81cf9a2f1a3a756b66cf684911cdf0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\netbios.sys : 34,688 : 04/13/2008 01:56 AM : 5d81cf9a2f1a3a756b66cf684911cdf0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\netbt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netbt.sys : 162,816 : 08/10/2004 10:00 AM : 0c80e410cd2f47134407ee7dd19cc86b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netbt.sys : 162,816 : 04/13/2008 01:21 AM : 74b2b2f5bea5e9a3dc021d685551bd3d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\netbt.sys : 162,816 : 04/13/2008 01:21 AM : 74b2b2f5bea5e9a3dc021d685551bd3d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nic1394.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nic1394.sys : 61,824 : 08/10/2004 10:00 AM : 5c5c53db4fef16cf87b9911c7e8c6fbc [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nic1394.sys : 61,824 : 04/13/2008 01:51 AM : e9e47cfb2d461fa0fc75b7a74c6383ea [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\nic1394.sys : 61,824 : 04/13/2008 01:51 AM : e9e47cfb2d461fa0fc75b7a74c6383ea [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nikedrv.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nikedrv.sys : 12,032 : 08/10/2004 01:00 AM : be984d604d91c217355cdd3737aad25d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nmnt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nmnt.sys : 40,320 : 08/10/2004 10:00 AM : 60cf8c7192b3614f240838ddbaa4a245 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nmnt.sys : 40,320 : 04/13/2008 01:53 AM : 1e421a6bcf2203cc61b821ada9de878b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\nmnt.sys : 40,320 : 04/13/2008 01:53 AM : 1e421a6bcf2203cc61b821ada9de878b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\npfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\npfs.sys : 30,848 : 08/10/2004 10:00 AM : 4f601bcb8f64ea3ac0994f98fed03f8e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\npfs.sys : 30,848 : 04/13/2008 01:32 AM : 3182d64ae053d6fb034f44b6def8034a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\npfs.sys : 30,848 : 04/13/2008 01:32 AM : 3182d64ae053d6fb034f44b6def8034a [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ntfs.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB930916\SP2QFE\ntfs.sys : 574,976 : 02/09/2007 10:23 AM : 05ab81909514bfd69cbb1f2c147cf6b9 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntfs.sys : 574,464 : 02/09/2007 10:10 AM : 19a811ef5f1ed5c926a028ce107ff1af [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB930916$\ntfs.sys : 574,592 : 08/10/2004 10:00 AM : b78be402c3f63dd55521f73876951cdd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntfs.sys : 574,976 : 04/13/2008 01:15 AM : 78a08dd6a8d65e697c18e1db01c5cdca [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ntfs.sys : 574,976 : 04/13/2008 01:15 AM : 78a08dd6a8d65e697c18e1db01c5cdca [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\null.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\null.sys : 2,944 : 08/10/2004 01:00 AM : 73c1e1f395918bc2c6dd67af7591a3ad [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwlnkflt.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkflt.sys : 12,416 : 08/10/2004 01:00 AM : b305f3fad35083837ef46a0bbce2fc57 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwlnkfwd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkfwd.sys : 32,512 : 08/10/2004 01:00 AM : c99b3415198d1aab7227f2c88fd664b9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwlnkipx.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nwlnkipx.sys : 88,448 : 08/10/2004 10:00 AM : 79ea3fcda7067977625b3363a2657c80 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nwlnkipx.sys : 88,320 : 04/13/2008 01:56 AM : 8b8b1be2dba4025da6786c645f77f123 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\nwlnkipx.sys : 88,320 : 04/13/2008 01:56 AM : 8b8b1be2dba4025da6786c645f77f123 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwlnknb.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnknb.sys : 63,232 : 08/10/2004 01:00 AM : 56d34a67c05e94e16377c60609741ff8 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwlnkspx.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\nwlnkspx.sys : 55,936 : 08/10/2004 01:00 AM : c0bb7d1615e1acbdc99757f6ceaf8cf0 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\nwrdr.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB923980\SP2QFE\nwrdr.sys : 163,456 : 10/13/2006 10:39 AM : bbbc2e555bb5e4adbaeb1447f11c68c9 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\nwrdr.sys : 163,584 : 10/13/2006 10:23 AM : 3f18d9365be71c7b2e43b7cf4a0c1a10 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB923980$\nwrdr.sys : 163,584 : 08/10/2004 10:00 AM : 03373a79440473062c6f3aedec6a49c8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\nwrdr.sys : 163,584 : 04/13/2008 01:34 AM : 36b9b950e3d2e100970a48d8bad86740 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\nwrdr.sys : 163,584 : 04/13/2008 01:34 AM : 36b9b950e3d2e100970a48d8bad86740 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\oprghdlr.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\oprghdlr.sys : 3,456 : 08/10/2004 01:00 AM : 4bb30ddc53ebc76895e38694580cdfe9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\p3.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\p3.sys : 42,496 : 08/10/2004 10:00 AM : 3e16eff2a6fed2d8d7f5a66dfe65d183 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\p3.sys : 42,752 : 04/13/2008 01:31 AM : c90018bafdc7098619a4a95b046b30f3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\p3.sys : 42,752 : 04/13/2008 01:31 AM : c90018bafdc7098619a4a95b046b30f3 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\parport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\parport.sys : 80,128 : 08/10/2004 10:00 AM : 29744eb4ce659dfe3b4122deb45bc478 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\parport.sys : 80,128 : 04/13/2008 01:40 AM : 5575faf8f97ce5e713d108c2a58d7c7c [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\parport.sys : 80,128 : 04/13/2008 01:40 AM : 5575faf8f97ce5e713d108c2a58d7c7c [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\partmgr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\partmgr.sys : 18,688 : 08/10/2004 10:00 AM : 3334430c29dc338092f79c38ef7b4cd0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\partmgr.sys : 19,712 : 04/13/2008 01:40 AM : beb3ba25197665d82ec7065b724171c6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\partmgr.sys : 19,712 : 04/13/2008 01:40 AM : beb3ba25197665d82ec7065b724171c6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\parvdm.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\parvdm.sys : 6,784 : 08/10/2004 01:00 AM : 70e98b3fd8e963a6a46a2e6247e0bea1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\pciidex.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pciidex.sys : 25,088 : 08/03/2004 09:59 PM : 520b91ab011456b940d9b05fc91108ff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pciidex.sys : 24,960 : 04/13/2008 01:40 AM : 52e60f29221d0d1ac16737e8dbf7c3e9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\pciidex.sys : 24,960 : 04/13/2008 01:40 AM : 52e60f29221d0d1ac16737e8dbf7c3e9 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\pciidex.sys : 25,088 : 08/03/2004 09:59 PM : 520b91ab011456b940d9b05fc91108ff [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0012\DriverFiles\i386\pciidex.sys : 25,088 : 08/03/2004 09:59 PM : 520b91ab011456b940d9b05fc91108ff [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\pci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pci.sys : 68,224 : 08/03/2004 10:07 PM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pci.sys : 68,224 : 04/13/2008 01:36 AM : a219903ccf74233761d92bef471a07b1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\pci.sys : 68,224 : 04/13/2008 01:36 AM : a219903ccf74233761d92bef471a07b1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\pci.sys : 68,224 : 08/03/2004 10:07 PM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\pci.sys : 68,224 : 08/03/2004 10:07 PM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\pci.sys : 68,224 : 08/03/2004 10:07 PM : 8086d9979234b603ad5bc2f5d890b234 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\pcmcia.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pcmcia.sys : 119,936 : 08/10/2004 10:00 AM : 82a087207decec8456fbe8537947d579 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pcmcia.sys : 120,192 : 04/13/2008 01:36 AM : 9e89ef60e9ee05e3f2eef2da7397f1c1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\pcmcia.sys : 120,192 : 04/13/2008 01:36 AM : 9e89ef60e9ee05e3f2eef2da7397f1c1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\portcls.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\portcls.sys : 136,960 : 03/16/2004 10:58 AM : bc6b2bc69c1e009443e8b1fe2db96101 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\portcls.sys : 146,048 : 04/13/2008 01:19 AM : e82a496c3961efc6828b508c310ce98f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\portcls.sys : 146,048 : 04/13/2008 01:19 AM : e82a496c3961efc6828b508c310ce98f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\processr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\processr.sys : 35,328 : 08/10/2004 10:00 AM : 0d97d88720a4087ec93af7dbb303b30a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\processr.sys : 35,840 : 04/13/2008 01:31 AM : a32bebaf723557681bfc6bd93e98bd26 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\processr.sys : 35,840 : 04/13/2008 01:31 AM : a32bebaf723557681bfc6bd93e98bd26 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\psched.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\psched.sys : 69,120 : 08/10/2004 10:00 AM : 48671f327553dcf1d27f6197f622a668 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\psched.sys : 69,120 : 04/13/2008 01:56 AM : 09298ec810b07e5d582cb3a3f9255424 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\psched.sys : 69,120 : 04/13/2008 01:56 AM : 09298ec810b07e5d582cb3a3f9255424 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ptilink.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ptilink.sys : 17,792 : 08/10/2004 01:00 AM : 80d317bd1c3dbc5d4fe7b1678c60cadd [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rasacd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rasacd.sys : 8,832 : 08/10/2004 01:00 AM : fe0d99d6f31e4fad8159f690d68ded9c [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rasl2tp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rasl2tp.sys : 51,328 : 08/10/2004 10:00 AM : 98faeb4a4dcf812ba1c6fca4aa3e115c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rasl2tp.sys : 51,328 : 04/13/2008 01:19 AM : 11b4a627bc9614b885c4969bfa5ff8a6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rasl2tp.sys : 51,328 : 04/13/2008 01:19 AM : 11b4a627bc9614b885c4969bfa5ff8a6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\raspppoe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\raspppoe.sys : 41,472 : 08/10/2004 10:00 AM : 7306eeed8895454cbed4669be9f79faa [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\raspppoe.sys : 41,472 : 04/13/2008 01:57 AM : 5bc962f2654137c9909c3d4603587dee [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\raspppoe.sys : 41,472 : 04/13/2008 01:57 AM : 5bc962f2654137c9909c3d4603587dee [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\raspptp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\raspptp.sys : 48,384 : 08/10/2004 10:00 AM : 1c5cc65aac0783c344f16353e60b72ac [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\raspptp.sys : 48,384 : 04/13/2008 01:19 AM : efeec01b1d3cf84f16ddd24d9d9d8f99 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\raspptp.sys : 48,384 : 04/13/2008 01:19 AM : efeec01b1d3cf84f16ddd24d9d9d8f99 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\raspti.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\raspti.sys : 16,512 : 08/10/2004 01:00 AM : fdbb1d60066fcfbb7452fd8f9829b242 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rawwan.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rawwan.sys : 34,432 : 08/10/2004 01:00 AM : 01524cd237223b18adbb48f70083f101 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rdbss.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\rdbss.sys : 174,592 : 10/27/2004 06:14 PM : d0fef8156d2d2fec557c100956d76887 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\rdbss.sys : 174,592 : 05/05/2006 06:22 AM : ed375ce745c42a14f10753f7022ecd6a [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rdbss.sys : 174,592 : 05/05/2006 10:47 AM : 03b965b1ca47f6ef60eb5e51cb50e0af [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB914389$\rdbss.sys : 174,592 : 10/27/2004 06:13 PM : 809ca45caa9072b3176ad44579d7f688 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rdbss.sys : 175,744 : 04/13/2008 01:28 AM : 7ad224ad1a1437fe28d89cf22b17780a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rdbss.sys : 175,744 : 04/13/2008 01:28 AM : 7ad224ad1a1437fe28d89cf22b17780a [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rdpcdd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rdpcdd.sys : 4,224 : 08/10/2004 01:00 AM : 4912d5b403614ce99c28420f75353332 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rdpdr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rdpdr.sys : 196,864 : 08/03/2004 10:01 PM : a2cae2c60bc37e0751ef9dda7ceaf4ad [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rdpdr.sys : 196,224 : 04/13/2008 01:32 AM : 15cabd0f7c00c47c70124907916af3f1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rdpdr.sys : 196,224 : 04/13/2008 01:32 AM : 15cabd0f7c00c47c70124907916af3f1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\redbook.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\redbook.sys : 57,472 : 08/03/2004 09:59 PM : b31b4588e4086d8d84adbf9845c2402b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\redbook.sys : 57,600 : 04/13/2008 01:40 AM : f828dd7e1419b6653894a8f97a0094c5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\redbook.sys : 57,600 : 04/13/2008 01:40 AM : f828dd7e1419b6653894a8f97a0094c5 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rmcast.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\rmcast.sys : 202,496 : 07/13/2006 06:43 AM : bcea2b2bf1b6dddd11e65b7478f2d19a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\rmcast.sys : 203,008 : 05/08/2008 06:14 AM : b1f077190ba1cfa0a2a2afae9e7fde2b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\rmcast.sys : 203,136 : 05/08/2008 06:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\rmcast.sys : 203,136 : 05/08/2008 06:58 AM : c711645c76b8ed87c021bf6165e52795 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rmcast.sys : 202,752 : 05/08/2008 09:28 AM : d18208ed6c768663b08c972eaa7a8b60 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB919007$\rmcast.sys : 200,064 : 08/10/2004 09:00 AM : 35e81b908ae4e97fc7bdf4607c516ff4 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950762$\rmcast.sys : 202,624 : 04/13/2008 09:55 AM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950762_0$\rmcast.sys : 202,240 : 07/13/2006 09:48 AM : 9d54c7c15847b933e03d6e7c9307bae5 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rmcast.sys : 202,624 : 04/13/2008 01:55 AM : ecff394d65671efde5a872eb9ef4f2d5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rmcast.sys : 203,136 : 05/08/2008 01:02 AM : 96f7a9a7bf0c9c0440a967440065d33c [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rndismp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rndismp.sys : 30,464 : 11/30/2004 05:28 PM : b09d11d33c4a29857ac75f3148684890 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB890927$\rndismp.sys : 30,080 : 08/10/2004 05:00 AM : 7ce8b277f3207ea82d7d22ad348befc6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rndismp.sys : 30,592 : 04/13/2008 01:56 AM : 601844cbcf617ff8c868130ca5b2039d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rndismp.sys : 30,592 : 04/13/2008 01:56 AM : 601844cbcf617ff8c868130ca5b2039d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\rootmdm.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\rootmdm.sys : 5,888 : 08/10/2004 01:00 AM : d8b0b4ade32574b2d9c5cc34dc0dbbe7 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\scsiport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\scsiport.sys : 96,256 : 08/10/2004 05:00 AM : d7fd0ff761e28ac0ea35ad71e0cd67e9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\scsiport.sys : 96,384 : 04/13/2008 01:40 AM : 76c465f570e90c28942d52ccb2580a10 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\scsiport.sys : 96,384 : 04/13/2008 01:40 AM : 76c465f570e90c28942d52ccb2580a10 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sdbus.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sdbus.sys : 67,584 : 08/10/2004 05:00 AM : 02fc71b020ec8700ee8a46c58bc6f276 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sdbus.sys : 79,232 : 04/13/2008 01:36 AM : 8d04819a3ce51b9eb47e5689b44d43c4 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sdbus.sys : 79,232 : 04/13/2008 01:36 AM : 8d04819a3ce51b9eb47e5689b44d43c4 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\serenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\serenum.sys : 15,488 : 08/10/2004 05:00 AM : a2d868aeeff612e70e213c451a70cafb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\serenum.sys : 15,744 : 04/13/2008 01:40 AM : 0f29512ccd6bead730039fb4bd2c85ce [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\serenum.sys : 15,744 : 04/13/2008 01:40 AM : 0f29512ccd6bead730039fb4bd2c85ce [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\serial.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\serial.sys : 64,896 : 08/10/2004 05:00 AM : cd9404d115a00d249f70a371b46d5a26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\serial.sys : 64,512 : 04/13/2008 01:15 AM : cca207a8896d4c6a0c9ce29a4ae411a7 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\serial.sys : 64,512 : 04/13/2008 01:15 AM : cca207a8896d4c6a0c9ce29a4ae411a7 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sffdisk.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sffdisk.sys : 11,136 : 08/10/2004 05:00 AM : 1d9f1bec651815741f088a8fb88e17ee [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sffdisk.sys : 11,904 : 04/13/2008 01:40 AM : 0fa803c64df0914b41f807ea276bf2a6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sffdisk.sys : 11,904 : 04/13/2008 01:40 AM : 0fa803c64df0914b41f807ea276bf2a6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sffp_sd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sffp_sd.sys : 10,240 : 08/10/2004 05:00 AM : 586499fd312ffd7f78553f408e71682e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sffp_sd.sys : 11,008 : 04/13/2008 01:40 AM : c17c331e435ed8737525c86a7557b3ac [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sffp_sd.sys : 11,008 : 04/13/2008 01:40 AM : c17c331e435ed8737525c86a7557b3ac [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sfloppy.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfloppy.sys : 11,392 : 08/10/2004 05:00 AM : 0d13b6df6e9e101013a7afb0ce629fe0 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfloppy.sys : 11,392 : 04/13/2008 01:40 AM : 8e6b8c671615d126fdc553d1e2de5562 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sfloppy.sys : 11,392 : 04/13/2008 01:40 AM : 8e6b8c671615d126fdc553d1e2de5562 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\smclib.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\smclib.sys : 14,592 : 08/10/2004 01:00 AM : 017daecf0ed3aa731313433601ec40fa [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sonydcam.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sonydcam.sys : 25,472 : 08/10/2004 05:00 AM : addc9e4757a68ab60562ad3cb9c288d6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sonydcam.sys : 25,344 : 04/13/2008 01:46 AM : 489703624dac94ed943c2abda022a1cd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sonydcam.sys : 25,344 : 04/13/2008 01:46 AM : 489703624dac94ed943c2abda022a1cd [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\splitter.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\splitter.sys : 6,272 : 06/14/2006 06:50 AM : 9bb1dd670cb7505a90fc4e61d4aa8227 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\splitter.sys : 6,400 : 06/14/2006 05:47 AM : 0ce218578fff5f4f7e4201539c45c78f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB920872$\splitter.sys : 6,400 : 08/03/2004 10:07 PM : 8e186b8f23295d1e42c573b82b80d548 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\splitter.sys : 6,272 : 04/13/2008 01:45 AM : ab8b92451ecb048a4d1de7c3ffcb4a9f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\splitter.sys : 6,272 : 04/13/2008 01:45 AM : ab8b92451ecb048a4d1de7c3ffcb4a9f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sr.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sr.sys : 73,472 : 08/10/2004 10:00 AM : e41b6d037d6cd08461470af04500dc24 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sr.sys : 73,472 : 04/13/2008 01:36 AM : 76bb022c2fb6902fd5bdd4f78fc13a5d [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sr.sys : 73,472 : 04/13/2008 01:36 AM : 76bb022c2fb6902fd5bdd4f78fc13a5d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\srv.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2345886\SP3QFE\srv.sys : 357,248 : 08/26/2010 06:37 AM : 70cd8b8dd2a680b128617c19eb0ab94f [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB2508429\SP3QFE\srv.sys : 357,888 : 02/17/2011 06:19 AM : 9b390283569ea58d43d2586032b892f5 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB896422\SP2QFE\srv.sys : 332,544 : 05/09/2005 05:22 PM : 54e79b08d0abc9c551d0fe69cc2f87ec [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB917159\SP2QFE\srv.sys : 332,800 : 04/20/2006 11:46 PM : 58bb0cc6be72899190505741e3b83464 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB923414\SP2QFE\srv.sys : 332,928 : 08/14/2006 11:00 AM : 5230953c21c811b5fc1ff31ae2b48097 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB957095\SP3QFE\srv.sys : 333,824 : 09/08/2008 11:37 AM : ae4d13b572399b206b43d65da4d9983d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB958687\SP3QFE\srv.sys : 333,952 : 12/11/2008 11:33 AM : e89b42b216bc86ada4345908284519cb [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB971468\SP3QFE\srv.sys : 353,792 : 01/01/2010 11:58 AM : 30efed0c77d59ae0cacb0b5c756767ed [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982214\SP3QFE\srv.sys : 354,304 : 06/21/2010 11:18 AM : 422e4508508015c7d12f40bf9763f158 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\srv.sys : 332,928 : 08/14/2006 10:34 AM : ea554a3ffc3f536fe8320eb38f5e4843 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2345886$\srv.sys : 354,304 : 06/21/2010 10:27 AM : da852e3e0bf1cea75d756f9866241e57 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2508429$\srv.sys : 357,248 : 08/26/2010 10:39 AM : 0f6aefad3641a657e18081f52d0c15af [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB917159$\srv.sys : 332,544 : 05/09/2005 05:17 PM : 553007ecce7f6565bbe645beb66d3b69 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB923414$\srv.sys : 332,800 : 04/20/2006 11:12 PM : e03b4ea274c9e509cca7f9f0cec24232 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB957095$\srv.sys : 334,848 : 04/13/2008 11:15 AM : 5252605079810904e31c332e241cd59b [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB958687$\srv.sys : 333,824 : 09/08/2008 11:41 AM : 4f8a43adef66f135564085a9dca96a26 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971468$\srv.sys : 333,952 : 12/11/2008 11:57 AM : 3bb03f2ba89d2be417206c373d2af17c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB982214$\srv.sys : 353,792 : 12/31/2009 11:50 AM : 89220b427890aa1dffd1a02648ae51c3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\srv.sys : 334,848 : 04/13/2008 01:15 AM : 5252605079810904e31c332e241cd59b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\srv.sys : 357,888 : 02/17/2011 01:18 AM : 47ddfc2f003f7f9f0592c6874962a2e7 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\stream.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\stream.sys : 48,640 : 08/10/2004 11:00 AM : c43356072eb3e88cd62958db10cead47 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\stream.sys : 49,408 : 04/13/2008 01:45 AM : 3e5d89099ded9e86e5639f411693218f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\stream.sys : 49,408 : 04/13/2008 01:45 AM : 3e5d89099ded9e86e5639f411693218f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\swenum.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\swenum.sys : 4,352 : 08/03/2004 09:58 PM : 03c1bae4766e2450219d20b993d6e046 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\swenum.sys : 4,352 : 04/13/2008 01:39 AM : 3941d127aef12e93addf6fe6ee027e0f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\swenum.sys : 4,352 : 04/13/2008 01:39 AM : 3941d127aef12e93addf6fe6ee027e0f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\swmidi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\swmidi.sys : 54,272 : 08/17/2001 01:00 PM : 94abc808fc4b6d7d2bbf42b85e25bb4d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\swmidi.sys : 56,576 : 04/13/2008 01:45 AM : 8ce882bcc6cf8a62f2b2323d95cb3d01 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\swmidi.sys : 56,576 : 04/13/2008 01:45 AM : 8ce882bcc6cf8a62f2b2323d95cb3d01 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\sysaudio.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sysaudio.sys : 60,800 : 08/03/2004 10:15 PM : 650ad082d46bac0e64c9c0e0928492fd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sysaudio.sys : 60,800 : 04/13/2008 01:15 AM : 8b83f3ed0f1688b4958f77cd6d2bf290 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sysaudio.sys : 60,800 : 04/13/2008 01:15 AM : 8b83f3ed0f1688b4958f77cd6d2bf290 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tape.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tape.sys : 14,976 : 08/10/2004 10:00 AM : a2a9ca0d1a9ac1ff54220aa0789fe5cf [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tape.sys : 14,976 : 04/13/2008 01:40 AM : fd6093e3decd925f1cffc8a0dd539d72 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tape.sys : 14,976 : 04/13/2008 01:40 AM : fd6093e3decd925f1cffc8a0dd539d72 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tcpip6.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 11:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB922819\SP2QFE\tcpip6.sys : 225,664 : 08/16/2006 11:13 AM : a026ea381b026d05a4a3d2388d80c3b8 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip6.sys : 225,920 : 06/20/2008 11:32 AM : 7195e0ce397545e657a81ece9dfbc1c9 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip6.sys : 225,856 : 06/20/2008 11:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip6.sys : 225,856 : 06/20/2008 11:16 AM : 026a94e4eb2960fdc96a447b5391d56a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB978338\SP3QFE\tcpip6.sys : 226,880 : 02/11/2010 11:36 AM : f4a3c6abe7818b1b53f58fa1adb605cd [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tcpip6.sys : 225,920 : 06/20/2008 10:52 AM : 00586ed87ab564b03870a2a3dcc84b55 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB922819$\tcpip6.sys : 223,616 : 08/10/2004 10:00 AM : 4d58bb1ae8841aafd8790ad7e1e3b8ea [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\tcpip6.sys : 225,664 : 04/13/2008 10:00 AM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip6.sys : 225,664 : 08/16/2006 10:37 AM : dccacdd2747ada221aece5c9ada5d551 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB978338$\tcpip6.sys : 225,856 : 06/20/2008 10:08 AM : fb9f32acc1d3ad523f7ec900b66fc1bb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tcpip6.sys : 225,664 : 04/13/2008 01:00 AM : aa7a55536096d646dc7ab0ac5641e9e8 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tcpip6.sys : 226,880 : 02/11/2010 01:02 AM : 4e53bbcc4be37d7a4bd6ef1098c89ff7 [Pos Repl]
 
 * C:\WINDOWS\System32\Drivers\tcpip.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 11:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\tcpip.sys : 359,936 : 05/25/2005 11:07 AM : 63fdfea54eb53de2d863ee454937ce1e [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\tcpip.sys : 360,448 : 01/13/2006 11:07 AM : 5562cc0a47b2aef06d3417b733f3c195 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys : 360,576 : 04/20/2006 11:18 AM : b2220c618b42a2212a59d91ebd6fc4b4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys : 360,832 : 10/30/2007 11:53 AM : 64798ecfa43d78c7178375fcdd16d8c8 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys : 360,960 : 06/20/2008 11:44 AM : 744e57c99232201ae98c49168b918f48 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys : 361,600 : 06/20/2008 11:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys : 361,600 : 06/20/2008 11:59 AM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys : 360,320 : 06/20/2008 10:45 AM : 2a5554fc5b1e04e131230e3ce035c3f9 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB893066$\tcpip.sys : 359,040 : 08/10/2004 10:00 AM : 9f4b36614a0fc234525ba224957de55c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB913446$\tcpip.sys : 359,808 : 05/25/2005 10:04 AM : 88763a98a4c26c409741b4aa162720c9 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB917953$\tcpip.sys : 359,808 : 01/12/2006 07:28 PM : 583e063fdc888ca30d05c2724b0d7ef4 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB941644$\tcpip.sys : 359,808 : 04/20/2006 07:51 AM : 1dbf125862891817f374f407626967f4 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys : 361,344 : 04/13/2008 07:20 AM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys : 360,064 : 10/30/2007 07:20 AM : 90caff4b094573449a0872a0f919b178 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tcpip.sys : 361,344 : 04/13/2008 01:20 AM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tcpip.sys : 361,600 : 06/20/2008 01:51 AM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tdi.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdi.sys : 18,560 : 08/10/2004 07:00 AM : 6891b74ab9a016064e82a419388d0601 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdi.sys : 19,072 : 04/13/2008 01:00 AM : 0539d5e53587f82d1b4fd74c5be205cf [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tdi.sys : 19,072 : 04/13/2008 01:00 AM : 0539d5e53587f82d1b4fd74c5be205cf [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tdpipe.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdpipe.sys : 12,040 : 08/10/2004 07:00 AM : 38d437cf2d98965f239b0abcd66dcb0f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdpipe.sys : 12,040 : 04/13/2008 05:13 PM : 6471a66807f5e104e4885f5b67349397 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tdpipe.sys : 12,040 : 04/13/2008 05:13 PM : 6471a66807f5e104e4885f5b67349397 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tdtcp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tdtcp.sys : 21,896 : 08/10/2004 07:00 AM : ed0580af02502d00ad8c4c066b156be9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tdtcp.sys : 21,896 : 04/13/2008 05:13 PM : c56b6d0402371cf3700eb322ef3aaf61 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tdtcp.sys : 21,896 : 04/13/2008 05:13 PM : c56b6d0402371cf3700eb322ef3aaf61 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\termdd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\termdd.sys : 40,840 : 08/04/2004 07:01 AM : a540a99c281d933f3d69d55e48727f47 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\termdd.sys : 40,840 : 04/13/2008 05:13 PM : 88155247177638048422893737429d9e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\termdd.sys : 40,840 : 04/13/2008 05:13 PM : 88155247177638048422893737429d9e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tosdvd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\tosdvd.sys : 51,712 : 08/10/2004 05:00 AM : 699450901c5ccfd82357cbc531cedd23 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\tunmp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tunmp.sys : 12,416 : 08/10/2004 07:00 AM : 87a0e9e18c10a9e454238e3330e2a26d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tunmp.sys : 12,288 : 04/13/2008 05:56 AM : 8f861eda21c05857eb8197300a92501c [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tunmp.sys : 12,288 : 04/13/2008 05:56 AM : 8f861eda21c05857eb8197300a92501c [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\udfs.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\udfs.sys : 66,176 : 08/10/2004 07:00 AM : 12f70256f140cd7d52c58c7048fde657 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\udfs.sys : 66,048 : 04/13/2008 05:32 AM : 5787b80c2e3c5e2f56c2a233d91fa2c9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\udfs.sys : 66,048 : 04/13/2008 05:32 AM : 5787b80c2e3c5e2f56c2a233d91fa2c9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\update.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB936357\SP2QFE\update.sys : 364,160 : 04/23/2007 11:14 AM : 7b2170ee3d858ce8fbe503904cc9b663 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\update.sys : 364,160 : 04/23/2007 07:32 AM : ced744117e91bdc0beb810f7d8608183 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB936357$\update.sys : 209,408 : 08/10/2004 07:00 AM : aff2e5045961bbc0a602bb6f95eb1345 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\update.sys : 384,768 : 04/13/2008 05:39 AM : 402ddc88356b1bac0ee3dd1580c76a31 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\update.sys : 384,768 : 04/13/2008 05:39 AM : 402ddc88356b1bac0ee3dd1580c76a31 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbcamd2.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd2.sys : 23,936 : 08/10/2004 07:00 AM : 61018ba9df6b63e51d9753c980e73ec2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbcamd2.sys : 25,728 : 04/13/2008 05:45 AM : ce97845d2e3f0d274b8bac1ed07c6149 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbcamd2.sys : 25,728 : 04/13/2008 05:45 AM : ce97845d2e3f0d274b8bac1ed07c6149 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbcamd.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbcamd.sys : 23,808 : 08/10/2004 07:00 AM : 2654eecc6fb13603ebddcd5c8ea943d1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbcamd.sys : 25,600 : 04/13/2008 05:45 AM : 1c1a47b40c23358245aa8d0443b6935e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbcamd.sys : 25,600 : 04/13/2008 05:45 AM : 1c1a47b40c23358245aa8d0443b6935e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbccgp.sys [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbccgp.sys : 32,128 : 04/13/2008 05:45 AM : 173f317ce0db8e21322e71b7e60a27e8 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbccgp.sys : 32,128 : 04/13/2008 05:45 AM : 173f317ce0db8e21322e71b7e60a27e8 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbd.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\usbd.sys : 4,736 : 08/10/2004 05:00 AM : 596eb39b50d6ebd9b734dc4ae0544693 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbehci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbehci.sys : 26,624 : 08/10/2004 07:00 AM : 15e993ba2f6946b2bfbbfcd30398621e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbehci.sys : 30,208 : 04/13/2008 05:45 AM : 65dcf09d0e37d4c6b11b5b0b76d470a7 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbehci.sys : 30,208 : 04/13/2008 05:45 AM : 65dcf09d0e37d4c6b11b5b0b76d470a7 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\usbehci.sys : 26,624 : 08/10/2004 10:00 AM : 15e993ba2f6946b2bfbbfcd30398621e [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbhub.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbhub.sys : 57,600 : 08/03/2004 10:08 PM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbhub.sys : 59,520 : 04/13/2008 05:45 AM : 1ab3cdde553b6e064d2e754efe20285c [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbhub.sys : 59,520 : 04/13/2008 05:45 AM : 1ab3cdde553b6e064d2e754efe20285c [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbhub.sys : 57,600 : 08/10/2004 10:00 AM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbhub.sys : 57,600 : 08/03/2004 10:08 PM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbhub.sys : 57,600 : 08/03/2004 10:08 PM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbhub.sys : 57,600 : 08/03/2004 10:08 PM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\usbhub.sys : 57,600 : 08/03/2004 10:08 PM : c72f40947f92cea56a8fb532edf025f1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbintel.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbintel.sys : 16,000 : 08/10/2004 10:00 AM : 2853fd4c4489e0f8bfcf78efcdb7e998 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbintel.sys : 15,872 : 04/13/2008 05:45 AM : 290913dc4f1125e5a82de52579a44c43 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbintel.sys : 15,872 : 04/13/2008 05:45 AM : 290913dc4f1125e5a82de52579a44c43 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbport.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbport.sys : 142,976 : 08/03/2004 10:08 PM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbport.sys : 143,872 : 04/13/2008 05:45 AM : 791912e524cc2cc6f50b5f2b52d1eb71 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbport.sys : 143,872 : 04/13/2008 05:45 AM : 791912e524cc2cc6f50b5f2b52d1eb71 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbport.sys : 142,976 : 08/10/2004 10:00 AM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbport.sys : 142,976 : 08/03/2004 10:08 PM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbport.sys : 142,976 : 08/03/2004 10:08 PM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbport.sys : 142,976 : 08/03/2004 10:08 PM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\usbport.sys : 142,976 : 08/03/2004 10:08 PM : 2034ca78f9c6e787b4b76d81ac888351 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\USBSTOR.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys : 26,496 : 08/03/2004 11:08 PM : 6cd7b22193718f1d17a47a1cd6d37e75 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbstor.sys : 26,368 : 04/13/2008 05:45 AM : a32426d9b14a089eaa1d922e0c5801a9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbstor.sys : 26,368 : 04/13/2008 05:45 AM : a32426d9b14a089eaa1d922e0c5801a9 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\usbuhci.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usbuhci.sys : 20,480 : 08/03/2004 10:08 PM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usbuhci.sys : 20,608 : 04/13/2008 05:45 AM : 26496f9dee2d787fc3e61ad54821ffe6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usbuhci.sys : 20,608 : 04/13/2008 05:45 AM : 26496f9dee2d787fc3e61ad54821ffe6 [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\usbuhci.sys : 20,480 : 08/10/2004 10:00 AM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\usbuhci.sys : 20,480 : 08/03/2004 10:08 PM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\usbuhci.sys : 20,480 : 08/03/2004 10:08 PM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 +-> C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\usbuhci.sys : 20,480 : 08/03/2004 10:08 PM : f8fd1400092e23c8f2f31406ef06167b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\vga.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\vga.sys : 20,992 : 08/10/2004 10:00 AM : 8a60edd72b4ea5aea8202daf0e427925 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\vga.sys : 20,992 : 04/13/2008 05:44 AM : 0d3a8fafceacd8b7625cd549757a7df1 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\vga.sys : 20,992 : 04/13/2008 05:44 AM : 0d3a8fafceacd8b7625cd549757a7df1 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\videoprt.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\videoprt.sys : 79,744 : 08/10/2004 10:00 AM : d5a9d123f5ed7c9965a481bd20cf66d8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\videoprt.sys : 81,664 : 04/13/2008 05:44 AM : e28726b72c46821a28830e077d39a55b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\videoprt.sys : 81,664 : 04/13/2008 05:44 AM : e28726b72c46821a28830e077d39a55b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\volsnap.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys : 52,352 : 08/10/2004 10:00 AM : ee4660083deba849ff6c485d944b379b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\volsnap.sys : 52,352 : 04/13/2008 05:41 AM : 4c8fcb5cc53aab716d810740fe59d025 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\volsnap.sys : 52,352 : 04/13/2008 05:41 AM : 4c8fcb5cc53aab716d810740fe59d025 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\wanarp.sys [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wanarp.sys : 34,560 : 08/10/2004 10:00 AM : 984ef0b9788abf89974cfed4bfbaacbc [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wanarp.sys : 34,560 : 04/13/2008 05:57 AM : e20b95baedb550f32dd489265c1da1f6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wanarp.sys : 34,560 : 04/13/2008 05:57 AM : e20b95baedb550f32dd489265c1da1f6 [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\wdmaud.sys [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\wdmaud.sys : 82,944 : 06/14/2006 11:17 AM : 0bfa8203b8148fb4e54bc212c41ce497 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wdmaud.sys : 82,944 : 06/14/2006 10:00 AM : efd235ca22b57c81118c1aeb4798f1c1 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB920872$\wdmaud.sys : 82,944 : 08/03/2004 10:15 PM : 2797f33ebf50466020c430ee4f037933 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wdmaud.sys : 83,072 : 04/13/2008 05:17 AM : 6768acf64b18196494413695f0c3a00f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wdmaud.sys : 83,072 : 04/13/2008 05:17 AM : 6768acf64b18196494413695f0c3a00f [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\wmilib.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\wmilib.sys : 4,352 : 08/10/2004 05:00 AM : 2f31b7f954bed437f2c75026c65caf7b [Pos Repl]
 
 * C:\WINDOWS\System32\drivers\ws2ifsl.sys [NoSig]
 +-> C:\WINDOWS\system32\dllcache\ws2ifsl.sys : 12,032 : 08/10/2004 05:00 AM : 6abe6e225adb5a751622a9cc3bc19ce8 [Pos Repl]
 
 * C:\WINDOWS\System32\dsound.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dsound.dll : 367,616 : 08/10/2004 10:00 AM : 55e148c01296696588eafa425782c3e8 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dsound.dll : 367,616 : 04/13/2008 05:11 PM : 4d83ed8bddec431fc8ad907b47cfb6e3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dsound.dll : 367,616 : 04/13/2008 05:11 PM : 4d83ed8bddec431fc8ad907b47cfb6e3 [Pos Repl]
 
 * C:\WINDOWS\System32\dssenh.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\dssenh.dll : 137,216 : 08/10/2004 10:00 AM : cacd2c63a79268d131ea37e85524cc44 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\dssenh.dll : 138,752 : 04/13/2008 05:37 AM : fede68bf80052bad393afd5c2e60dcb0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\dssenh.dll : 138,752 : 04/13/2008 05:37 AM : fede68bf80052bad393afd5c2e60dcb0 [Pos Repl]
 
 * C:\WINDOWS\System32\es.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\es.dll : 243,200 : 07/25/2005 09:20 PM : 95f5fea4c6de2c3f28784d0dcc8f0dd3 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\es.dll : 253,952 : 07/07/2008 01:06 PM : a4ab3dca4a383f0df4988abdeb84f9a4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\es.dll : 253,952 : 07/07/2008 01:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\es.dll : 253,952 : 07/07/2008 01:23 PM : f17f6226bdc0cd5f0bef0daf84d29bec [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\es.dll : 253,952 : 07/07/2008 01:32 PM : 60d1a6342238378bfb7545c81ee3606c [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB902400$\es.dll : 243,200 : 08/10/2004 01:00 AM : acd36a2dd7d1e9d8a060aa651dc07e63 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950974$\es.dll : 246,272 : 04/13/2008 05:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB950974_0$\es.dll : 243,200 : 07/25/2005 09:39 PM : 34bbd9acc1538818f2c878898c64e793 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\es.dll : 246,272 : 04/13/2008 05:11 PM : 19a799805b24990867b00c120d300c3a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\es.dll : 253,952 : 07/07/2008 01:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]
 
 * C:\WINDOWS\System32\eventlog.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll : 55,808 : 08/10/2004 09:00 AM : 82b24cb70e5944e6e34662205a2a5b78 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\eventlog.dll : 56,320 : 04/13/2008 05:11 PM : 6d4feb43ee538fc5428cc7f0565aa656 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\eventlog.dll : 56,320 : 04/13/2008 05:11 PM : 6d4feb43ee538fc5428cc7f0565aa656 [Pos Repl]
 
 * C:\WINDOWS\System32\hid.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hid.dll : 20,992 : 08/10/2004 09:00 AM : 18afee0ede045b6255408d634372dc29 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hid.dll : 20,992 : 04/13/2008 05:11 PM : 8973122796e3b5d6b5900fc186e55fea [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\hid.dll : 20,992 : 04/13/2008 05:11 PM : 8973122796e3b5d6b5900fc186e55fea [Pos Repl]
 
 * C:\WINDOWS\System32\hnetcfg.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\hnetcfg.dll : 344,064 : 08/10/2004 09:00 AM : 765b30c776a1780b46b479fe614f707c [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll : 344,064 : 04/13/2008 05:11 PM : 3cb32d3b8cbe79899d63280bb7a83cd9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\hnetcfg.dll : 344,064 : 04/13/2008 05:11 PM : 3cb32d3b8cbe79899d63280bb7a83cd9 [Pos Repl]
 
 * C:\WINDOWS\System32\imm32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\imm32.dll : 110,080 : 08/10/2004 09:00 AM : 87ca7ce6469577f059297b9d6556d66d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\imm32.dll : 110,080 : 04/13/2008 05:11 PM : 0da85218e92526972a821587e6a8bf8f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\imm32.dll : 110,080 : 04/13/2008 05:11 PM : 0da85218e92526972a821587e6a8bf8f [Pos Repl]
 
 * C:\WINDOWS\System32\ipsecsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ipsecsvc.dll : 182,784 : 08/10/2004 09:00 AM : d1e299962b5956005113ec4ab1e0d9b7 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ipsecsvc.dll : 183,808 : 04/13/2008 05:11 PM : 332760fba1655fcfd35bd6f4fd871300 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ipsecsvc.dll : 183,808 : 04/13/2008 05:11 PM : 332760fba1655fcfd35bd6f4fd871300 [Pos Repl]
 
 * C:\WINDOWS\System32\ksuser.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ksuser.dll : 4,096 : 08/03/2004 11:56 PM : cbcd254547689bff80c9f547b20911e9 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ksuser.dll : 4,096 : 04/13/2008 05:11 PM : 9b9f1c38d559047b8ac0dba2d5febde9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ksuser.dll : 4,096 : 04/13/2008 05:11 PM : 9b9f1c38d559047b8ac0dba2d5febde9 [Pos Repl]
 
 * C:\WINDOWS\System32\linkinfo.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\linkinfo.dll : 19,968 : 08/31/2005 06:44 PM : 648bf0b4dde4f7a1156dae7174d36efa [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\linkinfo.dll : 19,968 : 08/31/2005 06:41 PM : a1a688ee56cf3bbd24edeb815d48e9ba [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB900725$\linkinfo.dll : 18,944 : 08/10/2004 06:00 AM : c2bbd044c741ea4292016c36f718d2e4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\linkinfo.dll : 19,968 : 04/13/2008 05:11 PM : 2dc5a8019e2387987905f77c664e4be2 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\linkinfo.dll : 19,968 : 04/13/2008 05:11 PM : 2dc5a8019e2387987905f77c664e4be2 [Pos Repl]
 
 * C:\WINDOWS\System32\lpk.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\lpk.dll : 22,016 : 08/10/2004 06:00 AM : 74d66b3de265e8789153414e75175f26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\lpk.dll : 22,016 : 04/13/2008 05:11 PM : 012df358cebaa23acb26d82077820817 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\lpk.dll : 22,016 : 04/13/2008 05:11 PM : 012df358cebaa23acb26d82077820817 [Pos Repl]
 
 * C:\WINDOWS\System32\lsass.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\lsass.exe : 13,312 : 08/10/2004 06:00 AM : 84885f9b82f4d55c6146ebf6065d75d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\lsass.exe : 13,312 : 04/13/2008 05:12 PM : bf2466b3e18e970d8a976fb95fc1ca85 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\lsass.exe : 13,312 : 04/13/2008 05:12 PM : bf2466b3e18e970d8a976fb95fc1ca85 [Pos Repl]
 
 * C:\WINDOWS\System32\mfc40u.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll : 953,856 : 09/18/2010 06:18 AM : 842900dedbc8e3e8dbcccb298fd88f65 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mfc40u.dll : 927,504 : 11/01/2006 06:17 AM : 925f8b61ed301a317ba850ebeecbdaa0 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2387149$\mfc40u.dll : 927,504 : 04/13/2008 05:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB924667$\mfc40u.dll : 924,432 : 08/10/2004 05:00 AM : ddf8d47acf8fc3fe5f7f2b95c4d4d136 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mfc40u.dll : 927,504 : 04/13/2008 05:11 PM : cddd4416b2b4c7295fe3fdb6dde57e4e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mfc40u.dll : 953,856 : 09/17/2010 11:53 PM : e76a5c202e68af5a322d16b5a78f48b9 [Pos Repl]
 
 * C:\WINDOWS\System32\midimap.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\midimap.dll : 18,944 : 08/10/2004 05:00 AM : 3b4702155bb2ae9dc00c06a68834bdfa [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\midimap.dll : 18,944 : 04/13/2008 05:11 PM : 5c12660a97822f6e61576943b49aaad6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\midimap.dll : 18,944 : 04/13/2008 05:11 PM : 5c12660a97822f6e61576943b49aaad6 [Pos Repl]
 
 * C:\WINDOWS\System32\msgsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msgsvc.dll : 33,792 : 08/10/2004 05:00 AM : 95fd808e4ac22aba025a7b3eac0375d2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msgsvc.dll : 33,792 : 04/13/2008 05:11 PM : 986b1ff5814366d71e0ac5755c88f2d3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msgsvc.dll : 33,792 : 04/13/2008 05:11 PM : 986b1ff5814366d71e0ac5755c88f2d3 [Pos Repl]
 
 * C:\WINDOWS\System32\msimg32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msimg32.dll : 4,608 : 08/10/2004 05:00 AM : b5331f2b6f37c66c29c847f3b94ff900 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msimg32.dll : 4,608 : 04/13/2008 05:11 PM : affc87e2501fce8f09d4c10ba6421ccf [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msimg32.dll : 4,608 : 04/13/2008 05:11 PM : affc87e2501fce8f09d4c10ba6421ccf [Pos Repl]
 
 * C:\WINDOWS\System32\msprivs.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msprivs.dll : 48,128 : 08/10/2004 05:00 AM : 6bec17053284e847cf1fbb8c9a181e1e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msprivs.dll : 48,128 : 04/13/2008 05:23 AM : c6bb1d1500db4a0e224cb65e6c7e8a80 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msprivs.dll : 48,128 : 04/13/2008 05:23 AM : c6bb1d1500db4a0e224cb65e6c7e8a80 [Pos Repl]
 
 * C:\WINDOWS\System32\msvcrt.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\msvcrt.dll : 343,040 : 08/10/2004 05:00 AM : b0fefa816d61ec66aa765ddf534eab5e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\msvcrt.dll : 343,040 : 04/13/2008 05:12 PM : 355edbb4d412b01f1740c17e3f50fa00 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\msvcrt.dll : 343,040 : 04/13/2008 05:12 PM : 355edbb4d412b01f1740c17e3f50fa00 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll : 322,560 : 08/10/2004 05:00 AM : 4200be3808f6406dbe45a7b88dae5035 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll : 343,040 : 08/10/2004 05:00 AM : 98ec447e00229afd88d5161a25d065da [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll : 343,040 : 04/13/2008 05:12 PM : d7075e95aa599ee77b7a89d39296bd3d [Pos Repl]
 
 * C:\WINDOWS\System32\mswsock.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 06:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\mswsock.dll : 245,248 : 06/20/2008 06:36 AM : 1dfca7713ea5a70d5d93b436aea0317a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\mswsock.dll : 245,248 : 06/20/2008 06:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 06:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\mswsock.dll : 245,248 : 06/20/2008 05:41 AM : 097722f235a1fb698bf9234e01b52637 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2509553$\mswsock.dll : 245,248 : 06/20/2008 05:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748$\mswsock.dll : 245,248 : 04/13/2008 05:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB951748_0$\mswsock.dll : 245,248 : 08/10/2004 05:00 AM : 4e74af063c3271fbea20dd940cfd1184 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mswsock.dll : 245,248 : 04/13/2008 05:12 PM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\mswsock.dll : 245,248 : 06/20/2008 05:02 AM : 943337d786a56729263071623bbb9de5 [Pos Repl]
 
 * C:\WINDOWS\System32\netlogon.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll : 407,040 : 08/10/2004 05:00 AM : 96353fcecba774bb8da74a1c6507015a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netlogon.dll : 407,040 : 04/13/2008 05:12 PM : 1b7f071c51b77c272875c3a23e1e4550 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\netlogon.dll : 407,040 : 04/13/2008 05:12 PM : 1b7f071c51b77c272875c3a23e1e4550 [Pos Repl]
 
 * C:\WINDOWS\System32\netman.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\netman.dll : 197,632 : 08/22/2005 06:24 AM : 3516d8a18b36784b1005b950b84232e1 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\netman.dll : 197,632 : 08/22/2005 05:29 AM : 36739b39267914ba69ad0610a0299732 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB905414$\netman.dll : 198,144 : 08/10/2004 05:00 AM : dab9e6c7105d2ef49876fe92c524f565 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netman.dll : 198,144 : 04/13/2008 05:12 PM : 13e67b55b3abd7bf3fe7aae5a0f9a9de [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\netman.dll : 198,144 : 04/13/2008 05:12 PM : 13e67b55b3abd7bf3fe7aae5a0f9a9de [Pos Repl]
 
 * C:\WINDOWS\System32\ntmssvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ntmssvc.dll : 435,200 : 08/10/2004 05:00 AM : b62f29c00ac55a761b2e45877d85ea0f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ntmssvc.dll : 435,200 : 04/13/2008 05:12 PM : 156f64a3345bd23c600655fb4d10bc08 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ntmssvc.dll : 435,200 : 04/13/2008 05:12 PM : 156f64a3345bd23c600655fb4d10bc08 [Pos Repl]
 
 * C:\WINDOWS\System32\oakley.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB974392\SP3QFE\oakley.dll : 270,336 : 10/13/2009 06:38 AM : 7eadba6d371c60cca9e4db57c28c8045 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\oakley.dll : 266,752 : 08/10/2004 05:00 AM : a76128be63eea6a3af521a0576d3ebf7 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB974392$\oakley.dll : 270,336 : 04/13/2008 05:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\oakley.dll : 270,336 : 04/13/2008 05:12 PM : 33ceb89b62589e8b12aee9e2d523dade [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\oakley.dll : 270,336 : 10/13/2009 05:30 AM : c5ff8682eada5b3b27a865f1c3ef9270 [Pos Repl]
 
 * C:\WINDOWS\System32\olepro32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\olepro32.dll : 83,456 : 08/10/2004 05:00 AM : b48d3193dd1474dcbcc32bf4779ac698 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\olepro32.dll : 84,992 : 04/13/2008 05:12 PM : 5652f6ce1d9e9d8068b9d29bc21b5409 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\olepro32.dll : 84,992 : 04/13/2008 05:12 PM : 5652f6ce1d9e9d8068b9d29bc21b5409 [Pos Repl]
 
 * C:\WINDOWS\System32\perfctrs.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\perfctrs.dll : 39,936 : 08/10/2004 05:00 AM : 96492c721c6ea517e2bfd5381fef55e3 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\perfctrs.dll : 39,936 : 04/13/2008 05:12 PM : dbe2b62353660ecca0d75ea307a717e9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\perfctrs.dll : 39,936 : 04/13/2008 05:12 PM : dbe2b62353660ecca0d75ea307a717e9 [Pos Repl]
 
 * C:\WINDOWS\System32\powrprof.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\powrprof.dll : 17,408 : 08/10/2004 05:00 AM : 1b5f6923abb450692e9fe0672c897aed [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\powrprof.dll : 17,408 : 04/13/2008 05:12 PM : 50a166237a0fa771261275a405646cc0 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\powrprof.dll : 17,408 : 04/13/2008 05:12 PM : 50a166237a0fa771261275a405646cc0 [Pos Repl]
 
 * C:\WINDOWS\System32\psbase.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\psbase.dll : 96,768 : 08/10/2004 05:00 AM : 4d3ccdf22d2b4bae229ba73b81d13e26 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\psbase.dll : 96,768 : 04/13/2008 05:12 PM : 22d89d84e8e081cda529dbf8c0255a38 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\psbase.dll : 96,768 : 04/13/2008 05:12 PM : 22d89d84e8e081cda529dbf8c0255a38 [Pos Repl]
 
 * C:\WINDOWS\System32\pstorsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\pstorsvc.dll : 34,304 : 08/10/2004 05:00 AM : 306b30a036db25fcb76b507fede07d58 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\pstorsvc.dll : 34,304 : 04/13/2008 05:12 PM : 853d0d0c6f02d7bfdf1cf99dd7553732 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\pstorsvc.dll : 34,304 : 04/13/2008 05:12 PM : 853d0d0c6f02d7bfdf1cf99dd7553732 [Pos Repl]
 
 * C:\WINDOWS\System32\qmgr.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\qmgr.dll : 382,464 : 08/10/2004 05:00 AM : 2c69ec7e5a311334d10dd95f338fccea [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\qmgr.dll : 409,088 : 04/13/2008 05:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]
 +-> C:\WINDOWS\system32\bits\qmgr.dll : 409,088 : 04/13/2008 05:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\qmgr.dll : 409,088 : 04/13/2008 05:12 PM : 574738f61fca2935f5265dc4e5691314 [Pos Repl]
 
 * C:\WINDOWS\System32\rasadhlp.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll : 7,680 : 06/26/2006 06:45 AM : b5d08c96b2dadaf5171fb69e341b272b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rasadhlp.dll : 8,192 : 06/26/2006 05:37 AM : 5f098bd2ae6b03044b085decffdf91ec [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB920683$\rasadhlp.dll : 8,192 : 08/10/2004 05:00 AM : 4caec028c1e21c75e17877d4522d3db4 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rasadhlp.dll : 7,680 : 04/13/2008 05:12 PM : 6f9bef24c578d5d6740e080bedd6a448 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rasadhlp.dll : 7,680 : 04/13/2008 05:12 PM : 6f9bef24c578d5d6740e080bedd6a448 [Pos Repl]
 
 * C:\WINDOWS\System32\regsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\regsvc.dll : 59,904 : 08/10/2004 05:00 AM : 3151427db7d87107d1c5be58fac53960 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\regsvc.dll : 59,904 : 04/13/2008 05:12 PM : 5b19b557b0c188210a56a6b699d90b8f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\regsvc.dll : 59,904 : 04/13/2008 05:12 PM : 5b19b557b0c188210a56a6b699d90b8f [Pos Repl]
 
 * C:\WINDOWS\System32\rpcss.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\rpcss.dll : 396,288 : 04/28/2005 06:35 AM : da383fb39a6f1c445f3afc94b3eb1248 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\rpcss.dll : 398,336 : 07/25/2005 09:20 PM : c369df215d352b6f3a0b8c3469aa34f8 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\rpcss.dll : 401,408 : 02/09/2009 09:56 AM : 9222562d44021b988b9f9f62207fb6f2 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\rpcss.dll : 397,824 : 07/25/2005 09:39 PM : ce94a2bd25e3e9f4d46a7373ff455c6d [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB894391$\rpcss.dll : 395,776 : 08/10/2004 09:00 AM : 5c83a4408604f737717ab96371201680 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB902400$\rpcss.dll : 395,776 : 04/28/2005 09:31 AM : c8061f289e000703e7672916b7fe1571 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\rpcss.dll : 399,360 : 04/13/2008 05:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rpcss.dll : 399,360 : 04/13/2008 05:12 PM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\rpcss.dll : 401,408 : 02/09/2009 05:10 AM : 6b27a5c03dfb94b4245739065431322c [Pos Repl]
 
 * C:\WINDOWS\System32\scecli.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\scecli.dll : 180,224 : 08/10/2004 05:00 AM : 0f78e27f563f2aaf74b91a49e2abf19a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\scecli.dll : 181,248 : 04/13/2008 05:12 PM : a86bb5e61bf3e39b62ab4c7e7085a084 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\scecli.dll : 181,248 : 04/13/2008 05:12 PM : a86bb5e61bf3e39b62ab4c7e7085a084 [Pos Repl]
 
 * C:\WINDOWS\System32\schedsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\schedsvc.dll : 190,976 : 08/10/2004 05:00 AM : 92360854316611f6cc471612213c3d92 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\schedsvc.dll : 192,512 : 04/13/2008 05:12 PM : 0a9a7365a1ca4319aa7c1d6cd8e4eafa [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\schedsvc.dll : 192,512 : 04/13/2008 05:12 PM : 0a9a7365a1ca4319aa7c1d6cd8e4eafa [Pos Repl]
 
 * C:\WINDOWS\System32\services.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe : 110,592 : 02/06/2009 09:06 AM : 020ceaaedc8eb655b6506b8c70d53bb6 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\services.exe : 108,032 : 08/10/2004 05:00 AM : c6ce6eec82f187615d1002bb3bb50ed4 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\services.exe : 108,544 : 04/13/2008 05:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\services.exe : 108,544 : 04/13/2008 05:12 PM : 0e776ed5f7cc9f94299e70461b7b8185 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\services.exe : 110,592 : 02/06/2009 05:11 AM : 65df52f5b8b6e9bbd183505225c37315 [Pos Repl]
 
 * C:\WINDOWS\System32\setupapi.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\setupapi.dll : 983,552 : 08/10/2004 05:00 AM : 7808313cbc634ee08346d5ddfef1cc5f [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\setupapi.dll : 985,088 : 04/14/2008 05:42 AM : 24192246760e0e64435522e246b1d6c2 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\setupapi.dll : 985,088 : 04/14/2008 05:42 AM : 24192246760e0e64435522e246b1d6c2 [Pos Repl]
 
 * C:\WINDOWS\System32\sfc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfc.dll : 5,120 : 08/10/2004 05:00 AM : e8a12a12ea9088b4327d49edca3add3e [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfc.dll : 5,120 : 04/13/2008 05:12 PM : 96e1c926f22ee1bfbae82901a35f6bf3 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sfc.dll : 5,120 : 04/13/2008 05:12 PM : 96e1c926f22ee1bfbae82901a35f6bf3 [Pos Repl]
 
 * C:\WINDOWS\System32\sfcfiles.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\sfcfiles.dll : 1,580,544 : 08/10/2004 05:00 AM : 30a609e00bd1d4ffc49d6b5a432be7f2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfcfiles.dll : 1,614,848 : 04/13/2008 05:12 PM : 9dd07af82244867ca36681ea2d29ce79 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\sfcfiles.dll : 1,614,848 : 04/13/2008 05:12 PM : 9dd07af82244867ca36681ea2d29ce79 [Pos Repl]
 
 * C:\WINDOWS\System32\shsvcs.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB928255\SP2QFE\shsvcs.dll : 135,168 : 12/19/2006 02:50 PM : 53d9184a21c5cbf600d918e51ef3a7e5 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB971029\SP3QFE\shsvcs.dll : 135,168 : 07/27/2009 03:13 PM : 888cd7b39c37e13a2419becfaaf0a28c [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\shsvcs.dll : 134,656 : 12/19/2006 02:52 PM : 6815def9b810aefac107eeaf72da6f82 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB928255$\shsvcs.dll : 134,656 : 08/10/2004 02:00 AM : e7518dc542d3ebdcb80edd98462c7821 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB971029$\shsvcs.dll : 135,168 : 04/13/2008 05:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\shsvcs.dll : 135,168 : 04/13/2008 05:12 PM : 1926899bf9ffe2602b63074971700412 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\shsvcs.dll : 135,168 : 07/27/2009 04:17 PM : 99bc0b50f511924348be19c7c7313bbf [Pos Repl]
 
 * C:\WINDOWS\System32\smss.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\smss.exe : 50,688 : 08/10/2004 05:00 AM : bd7fb0957c716f1a60333aee04de2178 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\smss.exe : 50,688 : 04/13/2008 05:12 PM : 5f816c1f539266d2d4c78694239da0b5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\smss.exe : 50,688 : 04/13/2008 05:12 PM : 5f816c1f539266d2d4c78694239da0b5 [Pos Repl]
 
 * C:\WINDOWS\System32\spoolsv.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe : 58,880 : 08/17/2010 03:19 AM : 258dd5d4283fd9f9a7166be9ae45ce73 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\spoolsv.exe : 57,856 : 06/10/2005 05:17 PM : ad3d9d191aea7b5445fe1d82ffbb4788 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe : 57,856 : 06/10/2005 04:53 PM : da81ec57acd4cdc3d4c51cf3d409af9f [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB2347290$\spoolsv.exe : 57,856 : 04/13/2008 05:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe : 57,856 : 04/13/2008 05:12 PM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\spoolsv.exe : 58,880 : 08/17/2010 05:17 AM : 60784f891563fb1b767f70117fc2428f [Pos Repl]
 
 * C:\WINDOWS\System32\srsvc.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\srsvc.dll : 170,496 : 08/10/2004 05:00 AM : 92bdf74f12d6cbec43c94d4b7f804838 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\srsvc.dll : 171,008 : 04/13/2008 05:12 PM : 3805df0ac4296a34ba4bf93b346cc378 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\srsvc.dll : 171,008 : 04/13/2008 05:12 PM : 3805df0ac4296a34ba4bf93b346cc378 [Pos Repl]
 
 * C:\WINDOWS\System32\ssdpsrv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ssdpsrv.dll : 71,680 : 08/10/2004 05:00 AM : 4b8d61792f7175bed48859cc18ce4e38 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ssdpsrv.dll : 71,680 : 04/13/2008 05:12 PM : 0a5679b3714edab99e357057ee88fca6 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ssdpsrv.dll : 71,680 : 04/13/2008 05:12 PM : 0a5679b3714edab99e357057ee88fca6 [Pos Repl]
 
 * C:\WINDOWS\System32\svchost.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\svchost.exe : 14,336 : 08/10/2004 05:00 AM : 8f078ae4ed187aaabc0a305146de6716 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\svchost.exe : 14,336 : 04/13/2008 05:12 PM : 27c6d03bcdb8cfeb96b716f3d8be3e18 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\svchost.exe : 14,336 : 04/13/2008 05:12 PM : 27c6d03bcdb8cfeb96b716f3d8be3e18 [Pos Repl]
 
 * C:\WINDOWS\System32\tapisrv.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\tapisrv.dll : 249,344 : 07/08/2005 05:28 AM : 1418a3a6e76e5a2e3f5e43866e793a8b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\tapisrv.dll : 249,344 : 07/08/2005 05:27 AM : fb78839b36025aa286a51289ed28b73e [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB893756$\tapisrv.dll : 246,272 : 08/10/2004 05:00 AM : eb4a4187d74a8efdcbea3ea2cb1bdfbd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\tapisrv.dll : 249,856 : 04/13/2008 05:12 PM : 3cb78c17bb664637787c9a1c98f79c38 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\tapisrv.dll : 249,856 : 04/13/2008 05:12 PM : 3cb78c17bb664637787c9a1c98f79c38 [Pos Repl]
 
 * C:\WINDOWS\System32\termsrv.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\termsrv.dll : 295,424 : 03/09/2005 06:49 PM : c29a5286e64d97385178452d5f307b98 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB895961$\termsrv.dll : 295,424 : 08/10/2004 06:00 AM : b60c877d16d9c880b952fda04adf16e6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\termsrv.dll : 295,424 : 04/13/2008 05:12 PM : ff3477c03be7201c294c35f684b3479f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\termsrv.dll : 295,424 : 04/13/2008 05:12 PM : ff3477c03be7201c294c35f684b3479f [Pos Repl]
 
 * C:\WINDOWS\System32\upnphost.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB931261\SP2QFE\upnphost.dll : 185,344 : 02/05/2007 01:19 PM : 36aca6cdc19c95ff468a1426eb7f32f0 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\upnphost.dll : 185,344 : 02/05/2007 01:17 PM : aca5d98663d879c6baafcea7e2f1b710 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB931261$\upnphost.dll : 185,344 : 08/10/2004 01:00 AM : 0546477bde979e33294fe97f6b3de84a [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\upnphost.dll : 185,856 : 04/13/2008 05:12 PM : 1ebafeb9a3fbdc41b8d9c7f0f687ad91 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\upnphost.dll : 185,856 : 04/13/2008 05:12 PM : 1ebafeb9a3fbdc41b8d9c7f0f687ad91 [Pos Repl]
 
 * C:\WINDOWS\System32\user32.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll : 577,024 : 03/02/2005 01:19 AM : 1800f293bccc8ede8a70e12b88d80036 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll : 578,048 : 03/08/2007 01:48 AM : 7aa4f6c00405dfc4b70ed4214e7d687b [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\user32.dll : 577,536 : 03/08/2007 01:36 AM : b409909f6e2e8a7067076ed748abf1e7 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB890859$\user32.dll : 577,024 : 08/10/2004 01:00 AM : c72661f8552ace7c5c85e16a3cf505c4 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB925902$\user32.dll : 577,024 : 03/02/2005 01:09 AM : de2db164bbb35db061af0997e4499054 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\user32.dll : 578,560 : 04/13/2008 05:12 PM : b26b135ff1b9f60c9388b4a7d16f600b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\user32.dll : 578,560 : 04/13/2008 05:12 PM : b26b135ff1b9f60c9388b4a7d16f600b [Pos Repl]
 
 * C:\WINDOWS\System32\userinit.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\userinit.exe : 24,576 : 08/10/2004 01:00 AM : 39b1ffb03c2296323832acbae50d2aff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\userinit.exe : 26,112 : 04/13/2008 05:12 PM : a93aee1928a9d7ce3e16d24ec7380f89 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\userinit.exe : 26,112 : 04/13/2008 05:12 PM : a93aee1928a9d7ce3e16d24ec7380f89 [Pos Repl]
 
 * C:\WINDOWS\System32\usp10.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB981322\SP3QFE\usp10.dll : 406,016 : 04/16/2010 01:29 AM : f8894bcc961d461674002b4bae7aecc1 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\usp10.dll : 406,528 : 08/10/2004 01:00 AM : 2eb58f9dcd6ab320b46744a4ea48b2d2 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB981322$\usp10.dll : 406,016 : 04/13/2008 05:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\usp10.dll : 406,016 : 04/13/2008 05:12 PM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\usp10.dll : 406,016 : 04/16/2010 05:36 AM : 9e03dc5ab51cfd0190541ce2038d819d [Pos Repl]
 
 * C:\WINDOWS\System32\UxTheme.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\uxtheme.dll : 218,624 : 08/10/2004 05:00 AM : 2cde496666a975a2ce8f969f3042c8db [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\uxtheme.dll : 218,624 : 04/13/2008 05:12 PM : 7a2cc3719b255e6b5d74396183b7715b [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\uxtheme.dll : 218,624 : 04/13/2008 05:12 PM : 7a2cc3719b255e6b5d74396183b7715b [Pos Repl]
 
 * C:\WINDOWS\System32\version.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\version.dll : 18,944 : 08/10/2004 05:00 AM : d38408967be738d0c1b47005bce8ceeb [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\version.dll : 18,944 : 04/13/2008 05:12 PM : c7ce131408739b0b3a318be2d0032719 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\version.dll : 18,944 : 04/13/2008 05:12 PM : c7ce131408739b0b3a318be2d0032719 [Pos Repl]
 
 * C:\WINDOWS\System32\w32time.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\w32time.dll : 174,592 : 08/10/2004 05:00 AM : 2b281958f5d0cf99ed626e3ef39d5c8d [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\w32time.dll : 175,104 : 04/13/2008 05:12 PM : 54af4b1d5459500ef0937f6d33b1914f [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\w32time.dll : 175,104 : 04/13/2008 05:12 PM : 54af4b1d5459500ef0937f6d33b1914f [Pos Repl]
 
 * C:\WINDOWS\System32\wbem\wmiprvse.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe : 227,840 : 02/06/2009 01:15 AM : f520ab392d58c0a1070268032d809382 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe : 218,112 : 08/10/2004 05:00 AM : 075ea6c849ab0fe416a3d6dd65c3cf41 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB956572$\wmiprvse.exe : 218,112 : 04/13/2008 05:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe : 218,112 : 04/13/2008 05:12 PM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wmiprvse.exe : 227,840 : 02/06/2009 05:10 AM : 798a9e6828997eef4517ada8a2259831 [Pos Repl]
 
 * C:\WINDOWS\System32\wdigest.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB904942\SP2QFE\wdigest.dll : 49,152 : 03/23/2006 09:47 PM : 2f66af12e42a328a023f5492e495b84c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\wdigest.dll : 54,272 : 06/25/2009 09:41 AM : d9dcec3fa1b27689fc56e34c38d3f148 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wdigest.dll : 49,152 : 03/23/2006 09:37 PM : c43d8f6ff8ac074ccd9b34b781e23e86 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB904942$\wdigest.dll : 49,152 : 08/10/2004 09:00 AM : a8b82c5d30b7ab937e164ab349478fba [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB968389$\wdigest.dll : 49,152 : 04/13/2008 05:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wdigest.dll : 49,152 : 04/13/2008 05:12 PM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wdigest.dll : 54,272 : 06/25/2009 05:25 AM : 3aaf9b35939ff9e58ccd18d41655c2fc [Pos Repl]
 
 * C:\WINDOWS\System32\wiaservc.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB927802\SP2QFE\wiaservc.dll : 333,824 : 12/19/2006 09:47 AM : d9f097aa3b97034d3358a01b43e635b2 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wiaservc.dll : 333,824 : 12/19/2006 05:16 AM : b6763f8534ac547cf1af98afdff2edc8 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB927802$\wiaservc.dll : 333,312 : 08/10/2004 05:00 AM : d9f6c4f6b1e188adafc42b561d9bc2e6 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wiaservc.dll : 333,824 : 04/13/2008 05:12 PM : 8bad69cbac032d4bbacfce0306174c30 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wiaservc.dll : 333,824 : 04/13/2008 05:12 PM : 8bad69cbac032d4bbacfce0306174c30 [Pos Repl]
 
 * C:\WINDOWS\System32\winlogon.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe : 502,272 : 08/10/2004 05:00 AM : 01c3346c241652f43aed8e2149881bfe [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\winlogon.exe : 507,904 : 04/13/2008 05:12 PM : ed0ef0a136dec83df69f04118870003e [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\winlogon.exe : 507,904 : 04/13/2008 05:12 PM : ed0ef0a136dec83df69f04118870003e [Pos Repl]
 
 * C:\WINDOWS\System32\ws2_32.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll : 82,944 : 08/10/2004 05:00 AM : 2ed0b7f12a60f90092081c50fa0ec2b2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll : 82,432 : 04/13/2008 05:12 PM : 2ccc474eb85ceaa3e1fa1726580a3e5a [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ws2_32.dll : 82,432 : 04/13/2008 05:12 PM : 2ccc474eb85ceaa3e1fa1726580a3e5a [Pos Repl]
 
 * C:\WINDOWS\System32\ws2help.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\ws2help.dll : 19,968 : 08/10/2004 05:00 AM : 9beacb911ca61e5881102188ab7fb431 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2help.dll : 19,968 : 04/13/2008 05:12 PM : 9789e95e1d88eeb4b922bf3ea7779c28 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\ws2help.dll : 19,968 : 04/13/2008 05:12 PM : 9789e95e1d88eeb4b922bf3ea7779c28 [Pos Repl]
 
 * C:\WINDOWS\System32\wscntfy.exe [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\wscntfy.exe : 13,824 : 08/10/2004 05:00 AM : 49911dd39e023bb6c45e4e436cfbd297 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe : 13,824 : 04/13/2008 05:12 PM : f92e1076c42fcd6db3d72d8cfe9816d5 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\wscntfy.exe : 13,824 : 04/13/2008 05:12 PM : f92e1076c42fcd6db3d72d8cfe9816d5 [Pos Repl]
 
 * C:\WINDOWS\System32\xmlprov.dll [NoSig]
 +-> C:\WINDOWS\$NtServicePackUninstall$\xmlprov.dll : 129,536 : 08/10/2004 05:00 AM : eef46dab68229a14da3d8e73c99e2959 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\xmlprov.dll : 129,024 : 04/13/2008 05:12 PM : 295d21f14c335b53cb8154e5b1f892b9 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\xmlprov.dll : 129,024 : 04/13/2008 05:12 PM : 295d21f14c335b53cb8154e5b1f892b9 [Pos Repl]
 
 * C:\WINDOWS\explorer.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe : 1,033,216 : 06/13/2007 09:26 AM : 7712df0cdde3a5ac89843e61cd5b3658 [Pos Repl]
 +-> C:\WINDOWS\$NtServicePackUninstall$\explorer.exe : 1,033,216 : 06/13/2007 05:23 AM : 97bd6515465659ff8f3b7be375b2ea87 [Pos Repl]
 +-> C:\WINDOWS\$NtUninstallKB938828$\explorer.exe : 1,032,192 : 08/10/2004 05:00 AM : a0732187050030ae399b241436565e64 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\explorer.exe : 1,033,728 : 04/13/2008 05:12 PM : 12896823fb95bfb3dc9b46bcaedc9923 [Pos Repl]
 +-> C:\WINDOWS\system32\dllcache\explorer.exe : 1,033,728 : 04/13/2008 05:12 PM : 12896823fb95bfb3dc9b46bcaedc9923 [Pos Repl]
 
Checking HOSTS File: 
 
 * Cannot edit the HOSTS file.
 * Permissions Fixed. Administrators can now edit the HOSTS file.
 
 * HOSTS file entries found: 
 
  127.0.0.1 localhost
  127.0.0.1 www.007guard.com
  127.0.0.1 007guard.com
  127.0.0.1 008i.com
  127.0.0.1 www.008k.com
  127.0.0.1 008k.com
  127.0.0.1 www.00hq.com
  127.0.0.1 00hq.com
  127.0.0.1 010402.com
  127.0.0.1 www.032439.com
  127.0.0.1 032439.com
  127.0.0.1 www.0scan.com
  127.0.0.1 0scan.com
  127.0.0.1 www.1000gratisproben.com
  127.0.0.1 1000gratisproben.com
  127.0.0.1 www.1001namen.com
  127.0.0.1 1001namen.com
  127.0.0.1 100888290cs.com
  127.0.0.1 www.100888290cs.com
  127.0.0.1 100sexlinks.com
 
  20 out of 10553 HOSTS entries shown.
  Please review HOSTS file for further entries.
 
Program finished at: 03/31/2013 02:12:53 PM
Execution time: 0 hours(s), 8 minute(s), and 4 seconds(s)


#13 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 31 March 2013 - 11:00 PM

ComboFix 13-03-31.01 - Gregg Jantzen 03/31/2013  19:32:28.5.2 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.2038.1356 [GMT -7:00]
Running from: c:\documents and settings\Gregg Jantzen\Desktop\Combo-Fix.exe
AV: AVG Internet Security 2013 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: AVG Internet Security 2013 *Enabled* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: McAfee Firewall *Enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\Gregg Jantzen\Application Data\14DC40
c:\documents and settings\Gregg Jantzen\GoToAssistDownloadHelper.exe
c:\documents and settings\Gregg Jantzen\Recent\Thumbs.db
c:\documents and settings\Gregg Jantzen\WINDOWS
c:\documents and settings\rhapsody\Application Data\14DC40
c:\program files\293623.exe
c:\windows\system32\cnm1A8.tmp
c:\windows\system32\SET18C.tmp
c:\windows\system32\SET314.tmp
c:\windows\system32\SET318.tmp
c:\windows\system32\SET321.tmp
c:\windows\system32\SET322.tmp
c:\windows\system32\SET323.tmp
c:\windows\system32\SET32C.tmp
c:\windows\system32\SET32E.tmp
c:\windows\system32\SET33A.tmp
c:\windows\system32\URTTemp
c:\windows\system32\URTTemp\fusion.dll
c:\windows\system32\URTTemp\mscoree.dll
c:\windows\system32\URTTemp\mscoree.dll.local
c:\windows\system32\URTTemp\mscorsn.dll
c:\windows\system32\URTTemp\mscorwks.dll
c:\windows\system32\URTTemp\msvcr71.dll
c:\windows\system32\URTTemp\regtlib.exe
c:\windows\XSxS
.
.
(((((((((((((((((((((((((   Files Created from 2013-03-01 to 2013-04-01  )))))))))))))))))))))))))))))))
.
.
2013-03-31 20:48 . 2013-03-31 20:48 -------- d-----w- C:\RK_Quarantine
2013-03-31 18:21 . 2013-03-31 18:21 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\QuickScan
2013-03-31 18:17 . 2013-03-31 18:17 -------- d-----w- C:\rsit
2013-03-31 18:07 . 2013-03-31 18:08 -------- d-----w- c:\program files\ERUNT
2013-03-31 01:53 . 2013-03-31 01:53 -------- d-----w- C:\JRT
2013-03-30 14:24 . 2013-03-30 14:24 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\SUPERAntiSpyware.com
2013-03-27 03:26 . 2013-03-27 03:26 -------- d-----w- c:\program files\Runtime Software
2013-03-26 04:56 . 2013-03-26 04:56 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\AVG Secure Search
2013-03-26 02:49 . 2013-03-26 02:49 -------- d-----w- c:\program files\ESET
2013-03-25 21:45 . 2013-03-25 21:45 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\AVG2013
2013-03-25 17:40 . 2013-03-25 17:40 -------- d-----w- c:\windows\system32\config\systemprofile\Application Data\AVG2013
2013-03-25 17:38 . 2013-03-25 17:38 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\AVG SafeGuard toolbar
2013-03-25 17:38 . 2013-03-25 17:38 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\TuneUp Software
2013-03-25 17:38 . 2013-03-25 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG SafeGuard toolbar
2013-03-25 17:37 . 2013-03-25 17:37 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\AVG SafeGuard toolbar
2013-03-25 17:37 . 2013-03-25 17:37 33624 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-03-25 17:37 . 2013-03-26 04:56 -------- d-----w- c:\program files\Common Files\AVG Secure Search
2013-03-25 17:37 . 2013-03-25 17:37 -------- d-----w- c:\program files\AVG SafeGuard toolbar
2013-03-25 15:27 . 2013-03-25 15:27 -------- d-----w- C:\$AVG
2013-03-25 15:27 . 2013-03-25 17:40 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG2013
2013-03-25 15:26 . 2013-03-25 15:26 -------- d-----w- c:\program files\AVG
2013-03-25 15:18 . 2013-04-01 01:58 -------- d-----w- c:\documents and settings\All Users\Application Data\MFAData
2013-03-25 15:18 . 2013-03-25 22:00 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\Avg2013
2013-03-25 15:18 . 2013-03-25 15:18 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\MFAData
2013-03-25 13:53 . 2013-03-25 13:53 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-03-25 13:53 . 2012-12-14 23:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-25 04:33 . 2013-03-25 04:33 -------- d-----w- c:\documents and settings\Gregg Jantzen\Application Data\MAGIX
2013-03-25 04:32 . 2013-03-25 04:33 -------- d-----w- c:\documents and settings\All Users\Application Data\MAGIX
2013-03-25 04:32 . 2013-03-25 04:32 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\Xara
2013-03-25 04:31 . 2013-03-25 04:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Xara
2013-03-25 04:20 . 2013-03-25 04:20 -------- d-----w- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\CRE
2013-03-21 22:27 . 2013-04-01 02:23 -------- d-----w- c:\documents and settings\All Users\Application Data\WinCalendarV3
2013-03-21 22:27 . 2013-03-21 22:27 -------- d-----w- c:\program files\Sapro Systems WinCalendarV3
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-03-25 04:32 . 2007-04-27 08:43 120200 ----a-w- c:\windows\system32\DLLDEV32i.dll
2013-03-13 14:10 . 2012-04-13 14:43 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-13 14:10 . 2011-06-02 05:38 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-01 17:32 . 2013-03-01 17:32 22328 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-02-27 06:40 . 2013-02-27 06:40 208184 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-02-22 18:04 . 2013-02-22 18:05 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-02-22 18:04 . 2012-07-31 21:30 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-02-22 18:04 . 2010-05-11 01:08 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-02-22 18:04 . 2009-11-24 04:06 143872 ----a-w- c:\windows\system32\javacpl.cpl
2013-02-14 10:52 . 2013-02-14 10:52 182072 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-02-12 00:32 . 2008-08-26 23:25 12928 ------w- c:\windows\system32\drivers\usb8023x.sys
2013-02-12 00:32 . 2005-08-16 10:18 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-08 11:37 . 2013-02-08 11:37 96568 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2013-02-08 11:37 . 2013-02-08 11:37 245048 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-02-08 11:37 . 2013-02-08 11:37 60216 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-02-08 11:37 . 2013-02-08 11:37 170808 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-02-08 11:37 . 2013-02-08 11:37 39224 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-02-05 20:05 . 2005-08-16 10:18 916480 ----a-w- c:\windows\system32\wininet.dll
2013-02-05 20:05 . 2005-08-16 10:18 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-02-05 20:05 . 2005-08-16 10:18 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-02-05 05:53 . 2005-08-16 10:18 385024 ----a-w- c:\windows\system32\html.iec
2013-01-26 03:55 . 2005-08-16 10:18 552448 ----a-w- c:\windows\system32\oleaut32.dll
2013-01-07 01:19 . 2005-08-16 10:18 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-07 00:37 . 2004-08-04 04:59 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-04 01:20 . 2005-08-16 10:18 1867264 ----a-w- c:\windows\system32\win32k.sys
2013-01-02 06:49 . 2005-08-16 10:18 1292288 ----a-w- c:\windows\system32\quartz.dll
2007-12-09 03:52 . 2007-12-09 03:50 12413440 -c--a-w- c:\program files\avgas-setup-7.5.1.43.exe
2007-12-09 02:50 . 2007-12-09 18:21 401720 -c--a-w- c:\program files\Gregg Jantzen.exe
2007-12-09 02:50 . 2007-12-09 02:50 401720 -c--a-w- c:\program files\HiJackThis.exe
2012-03-18 05:58 . 2011-04-03 18:44 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-04-14 21:01 . 2010-05-14 03:30 24376 ----a-w- c:\program files\mozilla firefox\components\Scriptff.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\ReinstallBackups\0003\DriverFiles\i386\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\ReinstallBackups\0012\DriverFiles\i386\atapi.sys
.
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-10 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
.
[-] 2004-08-10 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2004-08-10 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-13 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\kbdclass.sys
[-] 2008-04-13 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2008-04-13 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-13 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\ReinstallBackups\0017\DriverFiles\i386\kbdclass.sys
[-] 2004-08-04 . EBDEE8A2EE5393890A1ACEE971C4C246 . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
.
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-10 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
.
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2007-02-09 . 05AB81909514BFD69CBB1F2C147CF6B9 . 574976 . . [5.1.2600.3081] . . c:\windows\$hf_mig$\KB930916\SP2QFE\ntfs.sys
[-] 2007-02-09 . 19A811EF5F1ED5C926A028CE107FF1AF . 574464 . . [5.1.2600.3081] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
[-] 2004-08-10 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB930916$\ntfs.sys
.
[-] 2004-08-10 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2004-08-10 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2007-10-30 . 90CAFF4B094573449A0872A0F919B178 . 360064 . . [5.1.2600.3244] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
[-] 2007-10-30 . 64798ECFA43D78C7178375FCDD16D8C8 . 360832 . . [5.1.2600.3244] . . c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
[-] 2006-04-20 . B2220C618B42A2212A59D91EBD6FC4B4 . 360576 . . [5.1.2600.2892] . . c:\windows\$hf_mig$\KB917953\SP2QFE\tcpip.sys
[-] 2006-04-20 . 1DBF125862891817F374F407626967F4 . 359808 . . [5.1.2600.2892] . . c:\windows\$NtUninstallKB941644$\tcpip.sys
[-] 2006-01-13 . 5562CC0A47B2AEF06D3417B733F3C195 . 360448 . . [5.1.2600.2827] . . c:\windows\$hf_mig$\KB913446\SP2QFE\tcpip.sys
[-] 2006-01-13 . 583E063FDC888CA30D05C2724B0D7EF4 . 359808 . . [5.1.2600.2827] . . c:\windows\$NtUninstallKB917953$\tcpip.sys
[-] 2005-05-25 . 63FDFEA54EB53DE2D863EE454937CE1E . 359936 . . [5.1.2600.2685] . . c:\windows\$hf_mig$\KB893066\SP2QFE\tcpip.sys
[-] 2005-05-25 . 88763A98A4C26C409741B4AA162720C9 . 359808 . . [5.1.2600.2685] . . c:\windows\$NtUninstallKB913446$\tcpip.sys
[-] 2004-08-10 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB893066$\tcpip.sys
.
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe
[-] 2004-08-10 . 84885F9B82F4D55C6146EBF6065D75D2 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
.
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll
[-] 2005-08-22 . 36739B39267914BA69AD0610A0299732 . 197632 . . [5.1.2600.2743] . . c:\windows\$NtServicePackUninstall$\netman.dll
[-] 2005-08-22 . 3516D8A18B36784B1005B950B84232E1 . 197632 . . [5.1.2600.2743] . . c:\windows\$hf_mig$\KB905414\SP2QFE\netman.dll
[-] 2004-08-10 . DAB9E6C7105D2EF49876FE92C524F565 . 198144 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB905414$\netman.dll
.
[-] 2008-04-14 00:11 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 00:11 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2008-04-14 00:11 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\dllcache\comres.dll
[-] 2004-08-10 11:00 . 6728270CB7DBB776ED086F5AC4C82310 . 792064 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll
[-] 2004-08-10 . 2C69EC7E5A311334D10DD95F338FCCEA . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
.
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll
[-] 2005-07-26 . CE94A2BD25E3E9F4D46A7373FF455C6D . 397824 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\rpcss.dll
[-] 2005-07-26 . C369DF215D352B6F3A0B8C3469AA34F8 . 398336 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\rpcss.dll
[-] 2005-04-28 . DA383FB39A6F1C445F3AFC94B3EB1248 . 396288 . . [5.1.2600.2665] . . c:\windows\$hf_mig$\KB894391\SP2QFE\rpcss.dll
[-] 2005-04-28 . C8061F289E000703E7672916B7FE1571 . 395776 . . [5.1.2600.2665] . . c:\windows\$NtUninstallKB902400$\rpcss.dll
[-] 2004-08-10 . 5C83A4408604F737717AB96371201680 . 395776 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB894391$\rpcss.dll
.
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe
[-] 2004-08-10 . C6CE6EEC82F187615D1002BB3BB50ED4 . 108032 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\services.exe
.
[-] 2010-08-17 . 258DD5D4283FD9F9A7166BE9AE45CE73 . 58880 . . [5.1.2600.6024] . . c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB2347290$\spoolsv.exe
[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
[-] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
.
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe
[-] 2004-08-10 . 01C3346C241652F43AED8E2149881BFE . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-10 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2010-08-23 . 93AFB83FBC1F9443CAC722FCA63D73BF . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 93AFB83FBC1F9443CAC722FCA63D73BF . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2010-08-23 . 736B12B725AEB2B07F0241A9F680CB10 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[-] 2008-04-14 . BD38D1EBE24A46BD3EDA059560AFBA12 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\$NtUninstallKB2296011$\comctl32.dll
[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2006-08-25 . B0124CB21D28B1C9F678B566B6B57D92 . 617472 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2006-08-25 . C4E80875C1CF1222FC5EFD0314AE5C01 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[-] 2004-08-10 . A77DFB85FAEE49D66C74DA6024EBC69B . 611328 . . [5.82] . . c:\windows\$NtUninstallKB923191$\comctl32.dll
[-] 2004-08-10 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
[-] 2004-08-10 . 5AF68A5E44734A082442668E9C787743 . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
.
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll
[-] 2004-08-10 . 10654F9DDCEA9C46CFB77554231BE73B . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
.
[-] 2008-07-07 20:32 . 60D1A6342238378BFB7545C81EE3606C . 253952 . . [2001.12.4414.320] . . c:\windows\$NtServicePackUninstall$\es.dll
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-07-07 20:06 . A4AB3DCA4A383F0DF4988ABDEB84F9A4 . 253952 . . [2001.12.4414.320] . . c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
[-] 2008-04-14 00:11 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 00:11 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2005-07-26 04:39 . 34BBD9ACC1538818F2C878898C64E793 . 243200 . . [2001.12.4414.308] . . c:\windows\$NtUninstallKB950974_0$\es.dll
[-] 2005-07-26 04:20 . 95F5FEA4C6DE2C3F28784D0DCC8F0DD3 . 243200 . . [2001.12.4414.308] . . c:\windows\$hf_mig$\KB902400\SP2QFE\es.dll
[-] 2004-08-10 11:00 . ACD36A2DD7D1E9D8A060AA651DC07E63 . 243200 . . [2001.12.4414.258] . . c:\windows\$NtUninstallKB902400$\es.dll
.
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll
[-] 2004-08-10 . 87CA7CE6469577F059297B9D6556D66D . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
.
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll
[-] 2005-09-01 . 648BF0B4DDE4F7A1156DAE7174D36EFA . 19968 . . [5.1.2600.2751] . . c:\windows\$hf_mig$\KB900725\SP2QFE\linkinfo.dll
[-] 2005-09-01 . A1A688EE56CF3BBD24EDEB815D48E9BA . 19968 . . [5.1.2600.2751] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
[-] 2004-08-10 . C2BBD044C741EA4292016C36F718D2E4 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB900725$\linkinfo.dll
.
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll
[-] 2004-08-10 . 74D66B3DE265E8789153414E75175F26 . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
.
[-] 2008-04-14 . D7075E95AA599EE77B7A89D39296BD3D . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll
[-] 2004-08-10 . B0FEFA816D61EC66AA765DDF534EAB5E . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2004-08-10 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2004-08-10 . 98EC447E00229AFD88D5161A25D065DA . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll
.
[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\$NtUninstallKB2509553$\mswsock.dll
[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\mswsock.dll
[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . 097722F235A1FB698BF9234E01B52637 . 245248 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
[-] 2008-06-20 . 1DFCA7713EA5A70D5D93B436AEA0317A . 245248 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
[-] 2008-06-20 . 943337D786A56729263071623BBB9DE5 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 943337D786A56729263071623BBB9DE5 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2004-08-10 . 4E74AF063C3271FBEA20DD940CFD1184 . 245248 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\mswsock.dll
.
[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll
[-] 2004-08-10 . 96353FCECBA774BB8DA74A1C6507015A . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
.
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll
[-] 2004-08-10 . 1B5F6923ABB450692E9FE0672C897AED . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
.
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll
[-] 2004-08-10 . 0F78E27F563F2AAF74B91A49E2ABF19A . 180224 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
.
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll
[-] 2004-08-10 . E8A12A12EA9088B4327D49EDCA3ADD3E . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
.
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe
[-] 2004-08-10 . 8F078AE4ED187AAABC0A305146DE6716 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
.
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll
[-] 2005-07-08 . 1418A3A6E76E5A2E3F5E43866E793A8B . 249344 . . [5.1.2600.2716] . . c:\windows\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
[-] 2005-07-08 . FB78839B36025AA286A51289ED28B73E . 249344 . . [5.1.2600.2716] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
[-] 2004-08-10 . EB4A4187D74A8EFDCBEA3EA2CB1BDFBD . 246272 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB893756$\tapisrv.dll
.
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll
[-] 2007-03-08 . 7AA4F6C00405DFC4B70ED4214E7D687B . 578048 . . [5.1.2600.3099] . . c:\windows\$hf_mig$\KB925902\SP2QFE\user32.dll
[-] 2007-03-08 . B409909F6E2E8A7067076ED748ABF1E7 . 577536 . . [5.1.2600.3099] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2005-03-02 . 1800F293BCCC8EDE8A70E12B88D80036 . 577024 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\user32.dll
[-] 2005-03-02 . DE2DB164BBB35DB061AF0997E4499054 . 577024 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB925902$\user32.dll
[-] 2004-08-10 . C72661F8552ACE7C5C85E16A3CF505C4 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB890859$\user32.dll
.
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe
[-] 2004-08-10 . 39B1FFB03C2296323832ACBAE50D2AFF . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
.
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll
[-] 2004-08-10 . 2ED0B7F12A60F90092081C50FA0EC2B2 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
.
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll
[-] 2004-08-10 . 9BEACB911CA61E5881102188AB7FB431 . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll
.
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
[-] 2007-06-13 . 7712DF0CDDE3A5AC89843E61CD5B3658 . 1033216 . . [6.00.2900.3156] . . c:\windows\$hf_mig$\KB938828\SP2QFE\explorer.exe
[-] 2007-06-13 . 97BD6515465659FF8F3B7BE375B2EA87 . 1033216 . . [6.00.2900.3156] . . c:\windows\$NtServicePackUninstall$\explorer.exe
[-] 2004-08-10 . A0732187050030AE399B241436565E64 . 1032192 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB938828$\explorer.exe
.
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regedit.exe
[-] 2004-08-10 . 783AFC80383C176B22DBF8333343992D . 146432 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[-] 2010-04-16 . 9E03DC5AB51CFD0190541CE2038D819D . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll
[-] 2010-04-16 . 9E03DC5AB51CFD0190541CE2038D819D . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll
[-] 2010-04-16 . F8894BCC961D461674002B4BAE7AECC1 . 406016 . . [1.0420.2600.5969] . . c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll
[-] 2008-04-14 . 7D7D8501F3CB45D0408CDEFA08CDAEFF . 406016 . . [1.0420.2600.5512] . . c:\windows\$NtUninstallKB981322$\usp10.dll
[-] 2008-04-14 . 7D7D8501F3CB45D0408CDEFA08CDAEFF . 406016 . . [1.0420.2600.5512] . . c:\windows\ServicePackFiles\i386\usp10.dll
[-] 2004-08-10 . 2EB58F9DCD6AB320B46744A4EA48B2D2 . 406528 . . [1.0420.2600.2180] . . c:\windows\$NtServicePackUninstall$\usp10.dll
.
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\ksuser.dll
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\ksuser.dll
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\ksuser.dll
[-] 2004-08-04 . CBCD254547689BFF80C9F547B20911E9 . 4096 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\ksuser.dll
.
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe
[-] 2004-08-10 . 24232996A38C0B0CF151C2140AE29FC8 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[-] 2009-07-27 . 99BC0B50F511924348BE19C7C7313BBF . 135168 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll
[-] 2009-07-27 . 99BC0B50F511924348BE19C7C7313BBF . 135168 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2009-07-27 . 888CD7B39C37E13A2419BECFAAF0A28C . 135168 . . [6.00.2900.5853] . . c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll
[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB971029$\shsvcs.dll
[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2006-12-19 . 6815DEF9B810AEFAC107EEAF72DA6F82 . 134656 . . [6.00.2900.3051] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
[-] 2006-12-19 . 53D9184A21C5CBF600D918E51EF3A7E5 . 135168 . . [6.00.2900.3051] . . c:\windows\$hf_mig$\KB928255\SP2QFE\shsvcs.dll
[-] 2004-08-10 . E7518DC542D3EBDCB80EDD98462C7821 . 134656 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB928255$\shsvcs.dll
.
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msimg32.dll
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\msimg32.dll
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msimg32.dll
[-] 2004-08-10 . B5331F2B6F37C66C29C847F3B94FF900 . 4608 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msimg32.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
[-] 2004-08-10 . 92BDF74F12D6CBEC43C94D4B7F804838 . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe
[-] 2004-08-10 . 49911DD39E023BB6C45E4E436CFBD297 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
.
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll
[-] 2004-08-10 . EEF46DAB68229A14DA3D8E73C99E2959 . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
.
[-] 2010-12-09 . 15CE4DBC22FAB90B3CA5352AF1FFF81C . 718336 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntdll.dll
[-] 2010-12-09 . F8F0D25CA553E39DDE485D8FC7FCCE89 . 718336 . . [5.1.2600.6055] . . c:\windows\system32\ntdll.dll
[-] 2010-12-09 . F8F0D25CA553E39DDE485D8FC7FCCE89 . 718336 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntdll.dll
[-] 2009-02-09 . 911DDF2E16761643A47225F654D811E5 . 714752 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB2393802$\ntdll.dll
[-] 2009-02-09 . B0913005EE3FC15D7F72472D0B8A30EB . 715264 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntdll.dll
[-] 2008-04-14 . 27D9ED8CB8B62D1E0A8E5ACE6CF52E2F . 706048 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntdll.dll
[-] 2008-04-14 . 27D9ED8CB8B62D1E0A8E5ACE6CF52E2F . 706048 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntdll.dll
[-] 2004-08-10 . BB5CBFFC096497506167BCE1D9690EF2 . 708096 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntdll.dll
.
[-] 2009-02-27 . 3F790874A85819E94574F3E7AF9C5806 . 177152 . . [5.1.2600.5768] . . c:\windows\system32\msctfime.ime
[-] 2009-02-27 . 3F790874A85819E94574F3E7AF9C5806 . 177152 . . [5.1.2600.5768] . . c:\windows\system32\dllcache\msctfime.ime
[-] 2009-02-27 . 30B7D847BA9075AA8E1122FB6AF3D1B5 . 177152 . . [5.1.2600.5768] . . c:\windows\$hf_mig$\KB961503\SP3QFE\msctfime.ime
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB961503$\msctfime.ime
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msctfime.ime
[-] 2004-08-10 . D87041EAA67ECA4394F6D5D09C0C2885 . 177152 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msctfime.ime
.
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll
[-] 2004-08-10 . 82B24CB70E5944E6E34662205A2A5B78 . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
.
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll
[-] 2004-08-10 . 30A609E00BD1D4FFC49D6B5A432BE7F2 . 1580544 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-10 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll
[-] 2004-08-10 . 3151427DB7D87107D1C5BE58FAC53960 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
.
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll
[-] 2004-08-10 . 92360854316611F6CC471612213C3D92 . 190976 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
.
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll
[-] 2004-08-10 . 4B8D61792F7175BED48859CC18CE4E38 . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
.
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll
[-] 2005-03-10 . C29A5286E64D97385178452D5F307B98 . 295424 . . [5.1.2600.2627] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
[-] 2004-08-10 . B60C877D16D9C880B952FDA04ADF16E6 . 295424 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB895961$\termsrv.dll
.
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\hnetcfg.dll
[-] 2004-08-10 . 765B30C776A1780B46B479FE614F707C . 344064 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\appmgmts.dll
[-] 2004-08-10 . 9C3C12975C97119412802B181FBEEFFE . 167936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
.
[-] 2004-08-10 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys
[-] 2004-08-10 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2006-02-15 00:30 . 1EE7B434BA961EF845DE136224C30FEC . 142464 . . [5.1.2601.2180] . . c:\windows\$hf_mig$\KB900485\SP2QFE\aec.sys
[-] 2006-02-15 00:22 . 1EE7B434BA961EF845DE136224C30FEC . 142464 . . [5.1.2601.2180] . . c:\windows\$NtServicePackUninstall$\aec.sys
[-] 2004-08-04 04:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtUninstallKB900485$\aec.sys
.
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2004-08-04 . 2C428FA0C3E3A01ED93C9B2A27D8D4BB . 42368 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\agp440.sys
.
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-10 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
.
[-] 2010-09-18 07:18 . 842900DEDBC8E3E8DBCCCB298FD88F65 . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 00:11 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
[-] 2008-04-14 00:11 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2006-11-01 19:17 . 925F8B61ED301A317BA850EBEECBDAA0 . 927504 . . [4.1.0.61] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
[-] 2004-08-10 11:00 . DDF8D47ACF8FC3FE5F7F2B95C4D4D136 . 924432 . . [4.1.6140] . . c:\windows\$NtUninstallKB924667$\mfc40u.dll
.
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll
[-] 2004-08-10 . 95FD808E4AC22ABA025A7B3EAC0375D2 . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
.
[-] 2008-04-14 00:12 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 00:12 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 00:12 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll
[-] 2004-08-10 11:00 . B62F29C00AC55A761B2E45877D85EA0F . 435200 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
.
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
[-] 2007-02-05 . 36ACA6CDC19C95FF468A1426EB7F32F0 . 185344 . . [5.1.2600.3077] . . c:\windows\$hf_mig$\KB931261\SP2QFE\upnphost.dll
[-] 2007-02-05 . ACA5D98663D879C6BAAFCEA7E2F1B710 . 185344 . . [5.1.2600.3077] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
[-] 2004-08-10 . 0546477BDE979E33294FE97F6B3DE84A . 185344 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB931261$\upnphost.dll
.
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll
[-] 2004-08-10 . 55E148C01296696588EAFA425782C3E8 . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll
[-] 2004-08-10 . D67BDBBDA86CC9AEEBBAF3217C1717D8 . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll
.
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll
[-] 2004-08-10 . 7ED462F353B3D915A418A689FA881F96 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll
.
[-] 2008-04-14 00:12 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll
[-] 2008-04-14 00:12 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2008-04-14 00:12 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll
[-] 2004-08-10 11:00 . B48D3193DD1474DCBCC32BF4779AC698 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll
.
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll
[-] 2004-08-10 . 96492C721C6EA517E2BFD5381FEF55E3 . 39936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll
.
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\version.dll
[-] 2004-08-10 . D38408967BE738D0C1B47005BCE8CEEB . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
[-] 2004-08-10 . 92BDF74F12D6CBEC43C94D4B7F804838 . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . 54AF4B1D5459500EF0937F6D33B1914F . 175104 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll
[-] 2008-04-14 . 54AF4B1D5459500EF0937F6D33B1914F . 175104 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll
[-] 2008-04-14 . 54AF4B1D5459500EF0937F6D33B1914F . 175104 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\w32time.dll
[-] 2004-08-10 . 2B281958F5D0CF99ED626E3EF39D5C8D . 174592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll
.
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wiaservc.dll
[-] 2006-12-19 . D9F097AA3B97034D3358A01B43E635B2 . 333824 . . [5.1.2600.3051] . . c:\windows\$hf_mig$\KB927802\SP2QFE\wiaservc.dll
[-] 2006-12-19 . B6763F8534AC547CF1AF98AFDFF2EDC8 . 333824 . . [5.1.2600.3051] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll
[-] 2004-08-10 . D9F6C4F6B1E188ADAFC42B561D9BC2E6 . 333312 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB927802$\wiaservc.dll
.
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\midimap.dll
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\midimap.dll
[-] 2004-08-10 . 3B4702155BB2AE9DC00C06A68834BDFA . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\midimap.dll
.
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rasadhlp.dll
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\rasadhlp.dll
[-] 2006-06-26 . B5D08C96B2DADAF5171FB69E341B272B . 7680 . . [5.1.2600.2938] . . c:\windows\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
[-] 2006-06-26 . 5F098BD2AE6B03044B085DECFFDF91EC . 8192 . . [5.1.2600.2938] . . c:\windows\$NtServicePackUninstall$\rasadhlp.dll
[-] 2004-08-10 . 4CAEC028C1E21C75E17877D4522D3DB4 . 8192 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB920683$\rasadhlp.dll
.
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wshtcpip.dll
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\wshtcpip.dll
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wshtcpip.dll
[-] 2004-08-10 . A7F95A53EE055115DF03588997A47D4D . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wshtcpip.dll
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinCalendarV3"="c:\program files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe" [2012-12-10 80416]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-07-09 68856]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2012-11-01 4763008]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2006-03-24 118784]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2006-03-24 77824]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2006-03-24 94208]
"MimBoot"="c:\progra~1\MUSICM~1\MUSICM~3\mimboot.exe" [2006-09-18 8192]
"masqform.exe"="c:\program files\PureEdge\Viewer 6.0\masqform.exe" [2003-12-03 1052672]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
"ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
"IntelMeM"="c:\program files\Intel\Modem Event Monitor\IntelMEM.exe" [2003-09-04 221184]
"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2010-04-28 647528]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2011-10-06 59240]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 76304]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2006-06-13 127036]
"ehTray"="c:\windows\ehome\ehtray.exe" [2005-09-29 67584]
"DVDLauncher"="c:\program files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-02-23 53248]
"EEventManager"="c:\program files\Epson Software\Event Manager\EEventManager.exe" [2009-12-03 976320]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2009-06-01 1468296]
"Qwest 11n Wireless WPS Tool"="c:\program files\Qwest 11n Wireless WPS Tool\WpsCenter.exe" [2009-03-23 1212416]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-01-28 59720]
"Intuit SyncManager"="c:\program files\Common Files\Intuit\Sync\IntuitSyncManager.exe" [2012-10-26 2643320]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2012-10-25 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2013-02-18 152392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"WinCalendarV3"="c:\program files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe" [2012-12-10 80416]
"AVG_UI"="c:\program files\AVG\AVG2013\avgui.exe" [2013-03-14 4394032]
"vProt"="c:\program files\AVG SafeGuard toolbar\vprot.exe" [2013-03-25 1219248]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-26 437160]
"WinCalendarV3"="c:\program files\Sapro Systems WinCalendarV3\WinCalendarV3_SysTray.exe" [2012-12-10 80416]
.
c:\documents and settings\Gregg Jantzen\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
ZooskMessenger.lnk - c:\program files\ZooskMessenger\ZooskMessenger.exe [N/A]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Intuit Data Protect.lnk - c:\program files\Common Files\Intuit\DataProtect\IntuitDataProtect.exe [2012-12-6 6186872]
Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2009-1-5 91440]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2009-1-5 805392]
Nikon Monitor.lnk - c:\program files\Common Files\Nikon\Monitor\NkMonitor.exe [2007-10-18 479232]
QuickBooks Update Agent.lnk - c:\program files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe [2012-12-6 1176464]
QuickBooks_Standard_21.lnk - c:\program files\Intuit\QuickBooks 2012\QBW32.EXE [2012-12-6 1181584]
Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe [2008-5-26 123904]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-25 304128]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 09:42 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^America Online 9.0 Tray Icon.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\America Online 9.0 Tray Icon.lnk
backup=c:\windows\pss\America Online 9.0 Tray Icon.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^Gregg Jantzen^Start Menu^Programs^Startup^Picture Motion Browser Media Check Tool.lnk]
path=c:\documents and settings\Gregg Jantzen\Start Menu\Programs\Startup\Picture Motion Browser Media Check Tool.lnk
backup=c:\windows\pss\Picture Motion Browser Media Check Tool.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
2007-01-01 21:22 3739648 ----a-w- c:\program files\Google\Google Talk\googletalk.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2013-02-18 23:01 152392 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2010-04-17 05:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Philips Device Listener]
2011-03-03 08:38 380416 ----a-w- c:\program files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QwestTouchPointAgent]
2010-06-01 06:46 45992 ----a-w- c:\program files\Qwest\Desktop\QwestTouchPointAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2012-07-03 16:04 252848 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2008-07-09 16:36 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"YahooAUService"=2 (0x2)
"Messenger"=3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2/8/2013 4:37 AM 60216]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2/8/2013 4:37 AM 245048]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2/8/2013 4:37 AM 39224]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2/26/2013 11:40 PM 208184]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [3/1/2013 10:32 AM 22328]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2/8/2013 4:37 AM 170808]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2/14/2013 3:52 AM 182072]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [3/25/2013 10:37 AM 33624]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [7/22/2011 9:27 AM 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [7/12/2011 2:55 PM 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [7/11/2012 11:54 AM 116608]
R2 avgfws;AVG Firewall;c:\program files\AVG\AVG2013\avgfws.exe [2/19/2013 4:02 AM 1418184]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2013\avgwdsvc.exe [2/19/2013 4:02 AM 282624]
R2 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\SeaPort.EXE [10/13/2011 5:21 PM 249648]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [8/7/2011 10:54 PM 21992]
R2 QBVSS;QBIDPService;c:\program files\Common Files\Intuit\DataProtect\QBIDPService.exe [8/19/2011 9:31 PM 1248256]
R2 sprtlisten;SupportSoft Listener Service;c:\program files\Common Files\supportsoft\bin\sprtlisten.exe [3/19/2009 2:07 PM 1213728]
R2 vToolbarUpdater15.0.0;vToolbarUpdater15.0.0;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe [3/25/2013 10:37 AM 990896]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [1/12/2012 7:52 PM 30944]
R3 QWXN720;Qwest 802.11n XN720 Driver;c:\windows\system32\drivers\WLANUHN.sys [7/8/2010 5:51 PM 453120]
S2 0012601364763746mcinstcleanup;McAfee Application Installer Cleanup (0012601364763746);c:\windows\TEMP\001260~1.EXE -cleanup -nolog --> c:\windows\TEMP\001260~1.EXE -cleanup -nolog [?]
S2 AutoInstallEJCD;Auto Install Eject CD Service;c:\docume~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe --> c:\docume~1\GREGGJ~1\LOCALS~1\Temp\RarSFX0\AutoInstallEJCDSVC.exe [?]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2013\avgidsagent.exe [2/27/2013 11:42 PM 4937264]
S2 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [10/21/2011 3:23 PM 196176]
S2 gupdate1ca804f5cbf98b4;Google Update Service (gupdate1ca804f5cbf98b4);c:\program files\Google\Update\GoogleUpdate.exe [12/18/2009 7:02 PM 133104]
S2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [3/25/2013 6:53 AM 398184]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [3/25/2013 6:53 AM 682344]
S2 McNaiAnn;McAfee VirusScan Announcer;"c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe" /McCoreSvc --> c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [?]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [1/12/2012 7:52 PM 30944]
S3 cpuz134;cpuz134;\??\c:\docume~1\GREGGJ~1\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys --> c:\docume~1\GREGGJ~1\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [?]
S3 InventoriaService;Inventoria Stock Manager;c:\program files\NCH Software\Inventoria\inventoria.exe [8/31/2011 1:18 AM 1384964]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [3/25/2013 6:53 AM 21104]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - 0012601364763746MCINSTCLEANUP
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ   getPlusHelper
.
Contents of the 'Scheduled Tasks' folder
.
2013-03-31 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-13 14:10]
.
2013-03-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-02 00:57]
.
2013-03-31 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-06-28 05:19]
.
2013-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-19 02:02]
.
2013-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-19 02:02]
.
2013-03-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-124138293-3828297314-1937649411-1005Core.job
- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-29 20:43]
.
2013-03-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-124138293-3828297314-1937649411-1005UA.job
- c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-29 20:43]
.
2012-11-24 c:\windows\Tasks\inventoriaShakeIcon.job
- c:\program files\NCH Software\Inventoria\inventoria.exe [2011-08-31 08:18]
.
2013-03-31 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task 0cb0a69a-0c7a-474e-8045-a25e64e18b1e.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2011-05-04 17:52]
.
2013-03-31 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task 779fb95b-e1d4-4751-910e-fd3ef49f854c.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2011-05-04 17:52]
.
2013-04-01 c:\windows\Tasks\User_Feed_Synchronization-{78463DB5-CA88-4E0A-A5C6-32F3F76A9AD1}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 11:31]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
IE: Add to Google Photos Screensa&ver
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
Trusted Zone: internet
Trusted Zone: mcafee.com
Trusted Zone: taxactonline.com\www
TCP: DhcpNameServer = 192.168.0.1 205.171.2.25
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
FF - ProfilePath - c:\documents and settings\Gregg Jantzen\Application Data\Mozilla\Firefox\Profiles\m4gt5qw3.default\
FF - ExtSQL: !HIDDEN! 2009-09-02 03:00; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{E541D5C4-2EC7-4D1C-A64B-7996D29A3396} - c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\getsavin\ie\getsavin_1364184601.dll
HKCU-Run-OE_OEM - c:\program files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe
HKCU-Run-DellSupportCenter - c:\program files\Dell Support Center\bin\sprtcmd.exe
HKCU-Run-Search Protection - c:\program files\Yahoo!\Search Protection\SearchProtection.exe
HKLM-Run-DellSupportCenter - c:\program files\Dell Support Center\bin\sprtcmd.exe
HKLM-Run-THGuard - c:\program files\TrojanHunter 5.0\THGuard.exe
HKLM-Run-MBkLogonHook - (no file)
MSConfigStartUp-!AVG Anti-Spyware - c:\program files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
MSConfigStartUp-Aim6 - c:\program files\AIM6\aim6.exe
MSConfigStartUp-Corel Photo Downloader - c:\program files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe
MSConfigStartUp-HostManager - c:\program files\Common Files\AOL\1135824426\ee\AOLSoftware.exe
MSConfigStartUp-MySpaceIM - c:\program files\MySpace\IM\MySpaceIM.exe
MSConfigStartUp-Picasa Media Detector - c:\program files\Picasa2\PicasaMediaDetector.exe
MSConfigStartUp-Skype - c:\program files\Skype\Phone\Skype.exe
MSConfigStartUp-TkBellExe - c:\program files\Common Files\Real\Update_OB\realsched.exe
MSConfigStartUp-Uniblue RegistryBooster 2 - c:\program files\Uniblue\RegistryBooster 2\RegistryBooster.exe
AddRemove-GetSavin - c:\documents and settings\Gregg Jantzen\Local Settings\Application Data\getsavin\uninst.exe
AddRemove-McAfee MBack - c:\program files\McAfee\MBK\mbklaunch.exe
AddRemove-{7B63B2922B174135AFC0E1377DD81EC2} - c:\program files\DivX\DivXCodecUninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-03-31 19:47
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...  
.
scanning hidden autostart entries ... 
.
scanning hidden files ...  
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Iomega Activity Disk2]
"ImagePath"="\"\""
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(1308)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
.
Completion time: 2013-03-31  19:55:53
ComboFix-quarantined-files.txt  2013-04-01 02:55
ComboFix2.txt  2007-12-11 20:44
.
Pre-Run: 16,995,807,232 bytes free
Post-Run: 16,964,259,840 bytes free
.
- - End Of File - - ACC4FDE01A223BF8683D3BAB9C893D7E


#14 Maurice Naggar

Maurice Naggar

    Eradicator de malware


  • Malware Response Team
  • 1,088 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:12:58 AM

Posted 01 April 2013 - 07:34 AM

Let's do these next.
Task 1
Download TFC by OldTimer to your desktop
  • Please double-click TFC.exe to run it. (Note: If you are running on Vista or Windows 7, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. Let it run uninterrupted to completion.
  • IF prompted to Reboot, reply "Yes".
Task 2
  • Please download AdwCleaner © Xplode from >>here<< and save it on your Desktop.
  • Close any open documents/programs & all internet browsers you have running.
  • Please start AdwCleaner
    If your are running Windows XP, double click adwcleaner.exe to start it.
    Otherwise, Right-click on adwcleaner.exe and select Run As Administrator to launch the application.
  • Click on Delete button.
  • Confirm each time with OK.
  • Your computer will be rebooted automatically. A text file will open after the restart. Please post the content of that logfile in your reply.
  • Note: You can find the logfile at C:\AdwCleaner[S1]
Task 3
Save and close any work documents, close any apps that you started.

Temporarily turn off (disable) your antivirus program
How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs

Start your MBAM MalwareBytes' Anti-Malware.
Click the Settings Tab and then the General Settings sub-tab. Make sure all option lines have a checkmark.
Then click the Scanner settings sub-tab in second row of tabs. Make sure all option lines have a checkmark.

If you have the PRO license, then do this too: Click the Protection tab. Make sure all option lines have a checkmark.

Next, Click the Update tab. Press the "Check for Updates" button.

If prompted for a Restart, do that.

When done, click the Scanner tab.
Do a Full Scan. i_arrow-l.gif

When the scan is complete, click OK, then Show Results to view the results.
Make sure that everything is checked, and click Remove Selected.
When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.
The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.

When all done, Copy & paste the MBAM scan log into a new reply.
Tell me, How is the system ? AND tell me, if the Pinball issue is gone ?

Re-enable your antivirus program.
~Maurice Naggar
MS-MVP (Oct 2002 - Sept 2010)

#15 guitarzanaz

guitarzanaz
  • Topic Starter

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Fountain Hills, Arizona
  • Local time:10:58 PM

Posted 01 April 2013 - 04:47 PM

K. New set of problems. lol. I tried to run TFC...it froze my computer so I had to hard boot it. I tried to run it again...twice...but the app wouldn't open...although it showed as running on my task manager. Now I pretty much can't open any files or anything. I click on icons and nothing happens. Also, my wireless network adapter isn't working now. The computer in the other room is working though. There's also a "cutezd e" virtual cd drive showing up when I click on "my computer"...any way to get things fixed?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users