Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Problem removing Tidserv.Activity.2


  • Please log in to reply

#106
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
ran teh Command Prompt script, but where should junk.txt be?
  • 0

Advertisements


#107
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
Never mind - apologies again....
  • 0

#108
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
Here it is actually WITH the attachment

Attached Files

  • Attached File  junk.txt   16.9KB   69 downloads

  • 0

#109
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,788 posts
  • MVP
Your entries are the same as mine for the things that our systems have in common.

I've just checked and I have a tmp folder in \windows\assembly that is invisible to Windows Explorer:

Start, Programs, Accessories then right click on Command Prompt and Run As Admin.

cd  \windows\system32\assembly

dir  tmp


This is what I get. You can see there are no files in it.

C:\Windows\assembly>dir tmp
Volume in drive C has no label.
Volume Serial Number is 3AFD-CD2C

Directory of C:\Windows\assembly\tmp

08/25/2011 03:05 AM <DIR> .
08/25/2011 03:05 AM <DIR> ..
0 File(s) 0 bytes
2 Dir(s) 724,162,146,304 bytes free


If yours doesn't say 0 File(s) ) bytes then:

rmdir  /s  tmp

mkdir  tmp


IF you don't get an error code then the folder should now be clean.

Let's check some more files with OTL:

Download and open the attached script2.txt file in notepad and paste it into OTL's custom Scan box. Hit the Run Scan button. Copy and paste the log.



I found a write up on the bug:
http://www.securelis...n_x64_platforms

As you can see it is spread by out dated Java and Adobe Reader programs. Your Adobe reader is vulnerable.

Ron
  • 0

#110
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
There were 5 files in windows\assembly\tmp

there are no just the two Directories listed

Will continue with the OTL now
  • 0

#111
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
I thought I saw a post form you about an added script, but I dont see it now. Did you delete it?
  • 0

#112
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,788 posts
  • MVP
OK. The rmdir /s tmp command should remove the files at the same time. if you get an error you can try:


cd \windows\assembly\tmp

(verify you are in the tmp folder)

then type:
attrib  -r  -h  -s  *.*
attrib  -r  -h  -s  *
del  /a  *.*
del  /a  *

That should remove the files then you can

cd \windows\assembly

rmdir /s tmp
  • 0

#113
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,788 posts
  • MVP
I did a last minute edit on the script to add some more files. It should be there now but just in case I will add it to this post.
  • 0

#114
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
OTL logfile created on: 10/11/2011 10:27:16 PM - Run 3
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Tim\Desktop
64bit-Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.97 Gb Total Physical Memory | 1.56 Gb Available Physical Memory | 39.34% Memory free
8.13 Gb Paging File | 5.43 Gb Available in Paging File | 66.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 108.18 Gb Total Space | 15.90 Gb Free Space | 14.70% Space Free | Partition Type: NTFS
Drive D: | 465.75 Gb Total Space | 406.35 Gb Free Space | 87.25% Space Free | Partition Type: NTFS
Drive H: | 250.61 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: TIM-PC | User Name: Tim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/10/09 21:59:59 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Users\Tim\Desktop\OTL.exe
PRC - [2011/09/06 15:45:30 | 003,722,416 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011/09/06 15:45:28 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011/08/19 01:07:38 | 000,421,736 | ---- | M] (Apple Inc.) -- D:\Joans Itunes\iTunesHelper.exe
PRC - [2011/01/23 20:08:55 | 000,148,280 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\ezprint.exe
PRC - [2011/01/23 20:08:52 | 000,770,728 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeamon.exe
PRC - [2010/09/22 18:11:26 | 000,640,440 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2009/03/06 13:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\Windows\SysWOW64\atashost.exe
PRC - [2008/10/17 07:34:39 | 000,409,600 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
PRC - [2008/07/28 19:45:42 | 000,182,112 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
PRC - [2008/07/28 19:45:42 | 000,100,472 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
PRC - [2008/07/21 15:10:06 | 000,014,376 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
PRC - [2008/06/21 03:53:53 | 000,679,936 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
PRC - [2008/06/20 10:56:44 | 000,415,744 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
PRC - [2008/06/19 10:55:48 | 000,279,848 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
PRC - [2008/06/13 03:34:02 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
PRC - [2008/06/12 01:13:24 | 000,337,184 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
PRC - [2008/06/08 01:41:22 | 000,352,256 | ---- | M] (AVerMedia) -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
PRC - [2008/05/24 21:01:16 | 000,086,016 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Media plus\VMpTtray.exe
PRC - [2008/05/22 16:23:10 | 000,192,512 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
PRC - [2008/05/20 21:05:40 | 000,353,568 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHDms.exe
PRC - [2008/05/20 21:05:40 | 000,103,712 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHCImp.exe
PRC - [2008/05/20 21:05:40 | 000,062,752 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHDs.exe
PRC - [2008/05/20 15:48:32 | 000,024,576 | ---- | M] (Sony Electronics, Inc.) -- C:\Program Files\Sony\VAIO Wireless Wizard\AutoLaunchWLASU.exe
PRC - [2008/04/15 19:54:42 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/04/15 19:54:40 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2008/04/03 22:03:38 | 000,317,280 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
PRC - [2008/03/25 16:32:18 | 000,104,960 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects\uCamMonitor.exe
PRC - [2008/01/11 19:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
PRC - [2007/01/04 21:48:50 | 000,112,152 | ---- | M] (InterVideo) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe


========== Modules (No Company Name) ==========

MOD - [2011/08/11 10:27:18 | 012,430,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c50d9d540acecdef29c31201e203a331\System.Windows.Forms.ni.dll
MOD - [2011/08/11 10:26:59 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\d8d83838f9840bde901df516ba3de588\System.Drawing.ni.dll
MOD - [2011/08/11 10:24:12 | 007,950,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b9ea0d414c4861120bfb7365d8ec0939\System.ni.dll
MOD - [2011/06/22 03:25:46 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\f6deb187f24bb3185841092b89fbfdbb\mscorlib.ni.dll
MOD - [2011/01/23 20:08:55 | 000,148,280 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\ezprint.exe
MOD - [2011/01/23 20:08:52 | 000,770,728 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeamon.exe
MOD - [2010/06/01 10:17:46 | 000,929,792 | ---- | M] () -- C:\Program Files (x86)\Yahoo!\Messenger\yui.dll
MOD - [2010/04/05 05:56:20 | 000,094,359 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\epoemdll.dll
MOD - [2010/04/05 05:56:19 | 000,045,221 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\epstring.dll
MOD - [2010/04/05 05:56:17 | 002,203,803 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\epwizres.dll
MOD - [2010/04/05 05:56:07 | 000,716,954 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\epwizard.dll
MOD - [2010/04/05 05:55:15 | 000,159,890 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\customui.dll
MOD - [2010/04/05 05:55:04 | 000,061,604 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\epfunct.dll
MOD - [2010/04/05 05:54:59 | 000,123,033 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\eputil.dll
MOD - [2010/04/05 05:54:52 | 000,143,502 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\imagutil.dll
MOD - [2010/04/01 12:24:28 | 001,159,168 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeadrs.dll
MOD - [2010/04/01 12:23:27 | 000,389,120 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeascw.dll
MOD - [2009/09/05 00:15:06 | 000,067,872 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2009/05/27 07:16:50 | 000,192,512 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeadatr.dll
MOD - [2009/04/07 14:25:27 | 000,409,600 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\iptk.dll
MOD - [2009/03/10 00:43:49 | 000,155,648 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeacaps.dll
MOD - [2009/03/02 09:25:47 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\Lexmark S300-S400 Series\lxeaptp.dll
MOD - [2009/02/27 16:39:29 | 000,019,968 | ---- | M] () -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\AcroTray.DEU
MOD - [2009/02/27 16:32:27 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\AcroTray.FRA
MOD - [2009/02/20 03:48:43 | 000,023,552 | ---- | M] () -- C:\Windows\SysWOW64\LXEAsmr.dll
MOD - [2009/02/20 03:48:03 | 000,299,008 | ---- | M] () -- C:\Windows\SysWOW64\LXEAsm.dll
MOD - [2008/07/28 19:45:44 | 000,010,752 | ---- | M] () -- C:\Program Files (x86)\Sony\VAIO Event Service\VESBasePS.dll
MOD - [2008/06/13 03:34:02 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/09/06 15:45:28 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010/04/14 15:45:36 | 001,052,328 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysNative\lxeacoms.exe -- (lxea_device)
SRV:64bit: - [2010/04/14 15:45:30 | 000,045,736 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysNative\spool\DRIVERS\x64\3\\lxeaserv.exe -- (lxeaCATSCustConnectService)
SRV:64bit: - [2008/09/29 16:06:32 | 000,167,424 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO Care\collsvc.exe -- (SampleCollector)
SRV:64bit: - [2008/08/06 20:06:48 | 000,407,392 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe -- (VAIO Power Management)
SRV:64bit: - [2008/06/12 01:13:24 | 000,337,184 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr)
SRV:64bit: - [2008/06/12 01:10:46 | 000,107,808 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe -- (VcmXmlIfHelper)
SRV:64bit: - [2008/04/30 22:20:42 | 001,371,136 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:64bit: - [2008/04/30 21:42:20 | 000,826,368 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:64bit: - [2008/04/25 07:08:03 | 000,410,624 | ---- | M] (Conexant Systems, Inc.) [Auto | Running] -- C:\Windows\SysNative\DRIVERS\xaudio64.exe -- (XAudioService)
SRV:64bit: - [2008/01/20 21:50:23 | 000,195,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2008/01/20 21:46:39 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2007/06/25 22:17:18 | 000,567,024 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysNative\dlbkcoms.exe -- (dlbk_device)
SRV - [2010/04/14 15:45:21 | 000,598,696 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysWow64\lxeacoms.exe -- (lxea_device)
SRV - [2010/02/19 07:44:44 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\VHStoDVD\SharedCOM\RoxMediaDBVHS.exe -- (RoxMediaDBVHS)
SRV - [2009/11/03 16:54:41 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/03/29 23:42:14 | 000,066,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/03/06 13:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\atashost.exe -- (atashost)
SRV - [2008/10/17 07:34:39 | 000,409,600 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe -- (AVerScheduleService)
SRV - [2008/07/28 19:45:42 | 000,182,112 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service)
SRV - [2008/07/12 22:40:36 | 000,133,120 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Windows\RTKAUDIOSERVICE.EXE -- (RtkAudioService)
SRV - [2008/06/20 10:56:44 | 000,415,744 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -- (VCFw)
SRV - [2008/06/19 10:55:48 | 000,279,848 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -- (Vcsw)
SRV - [2008/06/08 01:41:22 | 000,352,256 | ---- | M] (AVerMedia) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe -- (AVerRemote)
SRV - [2008/05/22 16:23:10 | 000,192,512 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe -- (VzCdbSvc)
SRV - [2008/05/22 16:21:44 | 000,073,728 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe -- (VAIO Entertainment TV Device Arbitration Service)
SRV - [2008/05/20 21:05:40 | 000,353,568 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHDms.exe -- (SOHDms)
SRV - [2008/05/20 21:05:40 | 000,103,712 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHCImp.exe -- (SOHCImp)
SRV - [2008/05/20 21:05:40 | 000,062,752 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Media plus\SOHDs.exe -- (SOHDs)
SRV - [2008/05/20 03:51:34 | 000,077,824 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe -- (SPTISRV)
SRV - [2008/05/20 03:49:04 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe -- (MSCSPTISRV)
SRV - [2008/05/20 03:29:06 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2008/04/15 19:54:42 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel®
SRV - [2008/03/25 16:32:18 | 000,104,960 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects\uCamMonitor.exe -- (uCamMonitor)
SRV - [2008/01/11 19:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe -- (BcmSqlStartupSvc)
SRV - [2007/11/12 22:59:54 | 000,020,480 | ---- | M] (Intuit) [Auto | Running] -- C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe -- (QBCFMonitorService)
SRV - [2007/05/24 09:08:44 | 000,061,440 | ---- | M] (Intuit Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe -- (QBFCService)
SRV - [2007/01/04 21:48:50 | 000,112,152 | ---- | M] (InterVideo) [Auto | Running] -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/09/06 15:38:18 | 000,601,944 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011/09/06 15:38:16 | 000,301,912 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011/09/06 15:36:41 | 000,058,200 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011/09/06 15:36:41 | 000,042,328 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011/09/06 15:36:30 | 000,065,368 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011/09/06 15:36:14 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011/08/24 21:53:49 | 000,056,408 | ---- | M] (NCH Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\stdriver64.sys -- (stdriver)
DRV:64bit: - [2011/05/10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2010/09/26 16:45:28 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2010/08/20 23:59:12 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/07/09 04:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/06/19 17:36:38 | 000,754,808 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\emOEM64.sys -- (USB28xxOEM)
DRV:64bit: - [2009/06/19 17:36:16 | 000,673,272 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\emBDA64.sys -- (USB28xxBGA)
DRV:64bit: - [2008/08/09 09:34:31 | 000,021,032 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2008/08/09 09:34:29 | 000,132,136 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2008/08/09 09:34:29 | 000,095,272 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2008/08/09 09:33:05 | 000,036,392 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\btwl2cap.sys -- (btwl2cap)
DRV:64bit: - [2008/08/09 08:10:58 | 000,056,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2008/07/17 08:54:22 | 000,064,512 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\risdsn64.sys -- (risdptsk)
DRV:64bit: - [2008/07/14 20:17:16 | 000,315,648 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AVerFx2hbtv64.sys -- (AVerFx2hbtv64)
DRV:64bit: - [2008/07/11 22:32:13 | 001,027,968 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\AVerAVF2.sys -- (AVerAVF2)
DRV:64bit: - [2008/07/01 23:13:36 | 000,073,104 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\jmcr_cfs.sys -- (JMCR_CFS)
DRV:64bit: - [2008/06/25 07:33:12 | 000,085,504 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\rimssn64.sys -- (rimsptsk)
DRV:64bit: - [2008/05/27 13:10:52 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wimfltr.sys -- (WimFltr)
DRV:64bit: - [2008/05/20 07:11:21 | 000,321,072 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\SynTP.sys -- (SynTP)
DRV:64bit: - [2008/05/16 12:38:11 | 000,062,480 | ---- | M] (UPEK Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\tcusb.sys -- (TcUsb)
DRV:64bit: - [2008/04/29 07:06:57 | 000,388,120 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\iaStor.sys -- (iaStor)
DRV:64bit: - [2008/04/28 08:38:12 | 004,730,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\NETw5v64.sys -- (NETw5v64) Intel®
DRV:64bit: - [2008/04/25 07:08:09 | 000,391,680 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\yk60x64.sys -- (yukonx64)
DRV:64bit: - [2008/04/25 07:08:03 | 000,009,728 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\xaudio64.sys -- (XAudio)
DRV:64bit: - [2008/04/25 07:07:54 | 001,511,936 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\CAX_DPV.sys -- (HSF_DPV)
DRV:64bit: - [2008/04/25 07:07:54 | 000,017,024 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\mdmxsdk.sys -- (mdmxsdk)
DRV:64bit: - [2008/04/25 07:07:49 | 000,731,648 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\CAX_CNXT.sys -- (winachsf)
DRV:64bit: - [2008/04/25 07:07:49 | 000,300,032 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\CAXHWAZL.sys -- (CAXHWAZL)
DRV:64bit: - [2008/03/10 05:45:53 | 000,011,392 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\SFEP.sys -- (SFEP)
DRV:64bit: - [2008/01/30 19:33:30 | 000,019,456 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter)
DRV:64bit: - [2008/01/20 21:46:34 | 000,048,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\avc.sys -- (Avc)
DRV:64bit: - [2008/01/20 21:46:34 | 000,046,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb)
DRV:64bit: - [2008/01/20 21:46:05 | 000,286,720 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\VSTAZL6.SYS -- (HSFHWAZL)
DRV:64bit: - [2008/01/20 21:46:05 | 000,058,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\61883.sys -- (61883)
DRV:64bit: - [2008/01/20 21:46:02 | 000,111,104 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\DRIVERS\sdbus.sys -- (sdbus)
DRV:64bit: - [2007/04/16 22:51:50 | 000,014,112 | R--- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\regi.sys -- (regi)
DRV - [2008/07/11 18:42:58 | 000,010,216 | ---- | M] (Sony Corporation) [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\DMICall.sys -- (DMICall)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.atssb.org/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>

========== FireFox ==========


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\Joans Itunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=14: C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011/10/11 16:51:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/10/11 15:37:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/10/10 14:39:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\SeaMonkey 1.1.16\Extensions\\Components: C:\Program Files (x86)\mozilla.org\SeaMonkey\Components [2011/09/30 16:17:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\SeaMonkey 1.1.16\Extensions\\Plugins: C:\Program Files (x86)\mozilla.org\SeaMonkey\Plugins [2011/09/30 16:17:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\SeaMonkey 2.0.6\extensions\\Components: C:\Program Files (x86)\SeaMonkey\components [2011/09/30 16:17:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\SeaMonkey 2.0.6\extensions\\Plugins: C:\Program Files (x86)\SeaMonkey\plugins [2011/09/30 16:17:33 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey 1.1.16\Extensions\\Components: C:\Program Files (x86)\mozilla.org\SeaMonkey\Components [2011/09/30 16:17:33 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey 1.1.16\Extensions\\Plugins: C:\Program Files (x86)\mozilla.org\SeaMonkey\Plugins [2011/09/30 16:17:33 | 000,000,000 | ---D | M]

[2011/10/10 18:45:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\Extensions
[2011/10/10 18:45:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\Extensions\{92650c4d-4b8e-4d2a-b7eb-24ecf4f6b63a}
[2011/10/10 18:45:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tim\AppData\Roaming\Mozilla\SeaMonkey\Profiles\sf659vms.default\extensions
[2011/10/11 15:37:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/09/30 09:19:26 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2011/10/10 14:11:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}
[2011/10/11 16:51:34 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2011/09/29 01:53:40 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/10/10 14:11:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2009/06/18 13:16:18 | 010,437,264 | ---- | M] (PDFTron Systems Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\PDFNetC.dll
[2009/06/18 13:36:06 | 000,108,272 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\plugins\ScorchPDFWrapper.dll
[2011/09/28 19:26:50 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml

O1 HOSTS File: ([2011/10/11 13:42:09 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll (Google Inc.)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
O2 - BHO: (Lexmark Printable Web) - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files\Lexmark Printable Web\bho.dll ()
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [EzPrint] C:\Program Files (x86)\Lexmark S300-S400 Series\ezprint.exe ()
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [lxeamon.exe] C:\Program Files (x86)\Lexmark S300-S400 Series\lxeamon.exe ()
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.dll (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [NvMediaCenter] C:\Windows\SysNative\NvMcTray.dll (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [PSQLLauncher] C:\Program Files\Protector Suite QL\launcher.exe (UPEK Inc.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AML] C:\Program Files (x86)\Sony\VAIO Launcher\AML.exe (Sony)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
O4 - HKLM..\Run: [iTunesHelper] D:\Joans Itunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [Lexmark S300-S400 Series] C:\Program Files (x86)\Lexmark S300-S400 Series\fm3032.exe ()
O4 - HKLM..\Run: [VAIORegistration] C:\Program Files\Sony\First Experience\WelcomeLauncher.exe (Sony Electronics, Inc.)
O4 - HKLM..\Run: [VAIOSurvey] C:\Program Files (x86)\Sony\VAIO Survey\VAIO Sat Survey.exe ()
O4 - HKLM..\Run: [VWLASU] C:\Program Files\Sony\VAIO Wireless Wizard\AutoLaunchWLASU.exe (Sony Electronics, Inc.)
O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [VMpTtray.exe] C:\Program Files (x86)\Sony\VAIO Media plus\VMpTtray.exe (Sony Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {615A1925-0E5B-4767-A65E-3165AEAC32A3} http://quickscan.bit...qsax/qsax64.cab (BitDefender QuickScan Control)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_27)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7702BF8E-EF73-483D-A40E-5A2B1BD30996}: DhcpNameServer = 192.168.0.1 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EB5C9DDC-490A-458A-B066-3F6C53B032A2}: DhcpNameServer = 192.168.0.1 192.168.2.1
O18:64bit: - Protocol\Handler\intu-help-qb1 - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\qbwc - No CLSID value found
O18 - Protocol\Handler\intu-help-qb1 {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files (x86)\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll (TODO: <Company name>)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: GinaDLL - (vrlogon.dll) - C:\Windows\SysNative\vrlogon.dll (UPEK Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\psfus: DllName - (Reg Error: Value error.) - Reg Error: Value error. File not found
O20 - Winlogon\Notify\VESWinlogon: DllName - (VESWinlogon.dll) - C:\Windows\SysWow64\VESWinlogon.dll (Sony Corporation)
O24 - Desktop WallPaper: C:\Program Files (x86)\Sony\First Experience\wallpapers\wallpaper1.jpg
O24 - Desktop BackupWallPaper: C:\Program Files (x86)\Sony\First Experience\wallpapers\wallpaper1.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/07/29 06:05:08 | 000,000,075 | R--- | M] () - H:\autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/10/11 19:41:31 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/10/11 16:51:54 | 000,301,912 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011/10/11 16:51:54 | 000,042,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011/10/11 16:51:54 | 000,024,408 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011/10/11 16:51:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011/10/11 16:51:53 | 000,601,944 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011/10/11 16:51:53 | 000,058,200 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011/10/11 16:51:30 | 000,041,184 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/10/11 16:51:29 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011/10/11 16:32:07 | 000,254,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011/10/11 16:32:07 | 000,065,368 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011/10/11 16:31:26 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011/10/11 16:31:26 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011/10/11 16:11:58 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Tim\Desktop\dds.com
[2011/10/11 16:09:17 | 000,061,440 | ---- | C] ( ) -- C:\Users\Tim\Desktop\VEW.exe
[2011/10/11 15:41:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2011/10/11 15:30:47 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/10/11 13:25:24 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/10/11 13:25:24 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/10/11 13:25:24 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/10/11 13:25:16 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/10/10 21:28:38 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\Opera
[2011/10/10 21:28:38 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Local\Opera
[2011/10/10 21:28:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2011/10/10 18:41:38 | 000,345,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011/10/10 14:46:06 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Local\CrashDumps
[2011/10/10 14:12:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2011/10/10 14:11:27 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011/10/10 14:11:27 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011/10/10 14:11:26 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011/10/10 11:36:43 | 001,916,416 | ---- | C] (AVAST Software) -- C:\Users\Tim\Desktop\aswMBR.exe
[2011/10/10 11:33:49 | 001,558,832 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Tim\Desktop\tdsskiller(1).exe
[2011/10/10 11:28:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/10/10 11:28:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/10/10 11:24:30 | 009,852,544 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Tim\Desktop\mbam-setup-1.51.2.1300(1).exe
[2011/10/10 09:13:54 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/10/09 21:59:59 | 000,582,656 | ---- | C] (OldTimer Tools) -- C:\Users\Tim\Desktop\OTL.exe
[2011/10/09 18:13:34 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Local\NPE
[2011/10/09 14:32:28 | 000,034,152 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2011/10/09 14:29:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2011/10/09 14:27:29 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2011/10/09 12:52:10 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\QuickScan
[2011/10/09 09:25:19 | 000,000,000 | ---D | C] -- C:\found.000
[2011/10/07 09:34:20 | 000,055,384 | ---- | C] (Sunbelt Software) -- C:\Windows\SysNative\drivers\SBREDrv.sys
[2011/10/07 09:28:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft
[2011/10/07 08:34:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Hitman Pro
[2011/09/30 16:28:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/09/30 16:26:37 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/09/30 16:26:14 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/09/30 16:16:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/09/30 14:36:15 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\AVG2012
[2011/09/30 14:35:10 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2012
[2011/09/30 13:03:06 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\Intel
[2011/09/30 08:53:24 | 000,024,416 | R--- | C] (Adobe Systems Inc.) -- C:\Windows\SysNative\AdobePDFUI.dll
[2011/09/25 10:38:30 | 000,000,000 | ---D | C] -- C:\Update
[2011/09/25 09:48:20 | 000,000,000 | ---D | C] -- C:\Users\Tim\AppData\Roaming\Auslogics
[2011/09/19 14:07:33 | 000,108,032 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ILMFCA.DLL
[2011/09/19 14:07:33 | 000,081,408 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_IBCBFCA.DLL
[2011/09/19 14:01:16 | 000,501,912 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysWow64\PICSDK2.dll
[2011/09/19 14:01:16 | 000,080,024 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysWow64\PICSDK.dll
[2011/09/19 14:01:15 | 000,108,704 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysWow64\PICEntry.dll
[2011/09/19 14:01:15 | 000,051,360 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysWow64\EpPicPrt.dll
[2011/09/19 14:01:15 | 000,051,360 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysWow64\EpPicMgr.dll
[2011/09/19 14:01:03 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON
[2011/09/19 13:59:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\epson
[2011/07/22 15:26:43 | 000,643,072 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeapmui.dll
[2011/07/22 15:26:43 | 000,364,544 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeainpa.dll
[2011/07/22 15:26:43 | 000,344,064 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeaiesc.dll
[2011/07/22 15:26:42 | 001,048,576 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeaserv.dll
[2011/07/22 15:26:42 | 000,847,872 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeausb1.dll
[2011/07/22 15:26:42 | 000,802,816 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeacomc.dll
[2011/07/22 15:26:42 | 000,688,128 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeahbn3.dll
[2011/07/22 15:26:42 | 000,598,696 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeacoms.exe
[2011/07/22 15:26:42 | 000,577,536 | ---- | C] ( ) -- C:\Windows\SysWow64\lxealmpm.dll
[2011/07/22 15:26:42 | 000,373,416 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeacfg.exe
[2011/07/22 15:26:42 | 000,372,736 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeacomm.dll
[2011/07/22 15:26:42 | 000,324,264 | ---- | C] ( ) -- C:\Windows\SysWow64\lxeaih.exe
[2010/09/26 16:45:28 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Tim\AppData\Roaming\pcouffin.sys

========== Files - Modified Within 30 Days ==========

[2011/10/11 22:29:00 | 000,000,880 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2011/10/11 21:44:51 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/11 21:44:51 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/11 19:50:28 | 000,760,648 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/10/11 19:50:28 | 000,645,296 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/10/11 19:50:28 | 000,119,716 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/10/11 19:49:06 | 000,113,051 | ---- | M] () -- C:\ProgramData\nvModes.001
[2011/10/11 19:44:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/10/11 19:41:54 | 000,001,076 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011/10/11 19:22:54 | 000,113,051 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2011/10/11 16:51:54 | 000,001,785 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/10/11 16:51:53 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2011/10/11 16:40:29 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
[2011/10/11 16:11:48 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Tim\Desktop\dds.com
[2011/10/11 16:09:03 | 000,061,440 | ---- | M] ( ) -- C:\Users\Tim\Desktop\VEW.exe
[2011/10/11 15:37:33 | 000,000,912 | ---- | M] () -- C:\Users\Tim\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/10/11 15:37:33 | 000,000,888 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/10/11 13:58:54 | 000,000,501 | ---- | M] () -- C:\Users\Tim\Desktop\ComboFix.exe - Shortcut.lnk
[2011/10/11 13:42:09 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/10/11 12:47:42 | 002,448,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/10/11 12:31:51 | 000,002,675 | ---- | M] () -- C:\Users\Tim\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Word 2007 (2).lnk
[2011/10/11 09:00:13 | 000,000,008 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2011/10/10 21:28:26 | 000,001,692 | ---- | M] () -- C:\Users\Tim\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2011/10/10 21:28:26 | 000,001,668 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2011/10/10 20:46:56 | 008,892,928 | ---- | M] () -- C:\ProgramData\atscie.msi
[2011/10/10 18:42:18 | 000,779,024 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/10/10 14:11:02 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2011/10/10 14:11:02 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011/10/10 14:11:02 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011/10/10 14:11:02 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011/10/10 11:41:57 | 000,000,512 | ---- | M] () -- C:\Users\Tim\Desktop\MBR.dat
[2011/10/10 11:39:23 | 710,079,385 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011/10/10 11:36:57 | 001,916,416 | ---- | M] (AVAST Software) -- C:\Users\Tim\Desktop\aswMBR.exe
[2011/10/10 11:33:24 | 001,558,832 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Tim\Desktop\tdsskiller(1).exe
[2011/10/10 11:28:40 | 000,000,570 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/10 11:23:56 | 009,852,544 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Tim\Desktop\mbam-setup-1.51.2.1300(1).exe
[2011/10/09 21:59:59 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Users\Tim\Desktop\OTL.exe
[2011/10/07 09:33:48 | 000,055,384 | ---- | M] (Sunbelt Software) -- C:\Windows\SysNative\drivers\SBREDrv.sys
[2011/10/07 08:41:37 | 000,002,549 | ---- | M] () -- C:\Users\Tim\Desktop\HiJackThis.lnk
[2011/10/07 08:34:36 | 000,025,160 | ---- | M] () -- C:\Windows\SysNative\drivers\hitmanpro35.sys
[2011/10/04 14:39:48 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011/10/04 09:31:54 | 000,017,408 | ---- | M] () -- C:\Users\Tim\AppData\Local\WebpageIcons.db
[2011/09/30 16:28:20 | 000,001,412 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011/09/30 16:16:59 | 000,001,756 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/09/25 09:52:17 | 000,516,921 | ---- | M] () -- C:\test.xml
[2011/09/25 09:32:33 | 000,000,040 | ---- | M] () -- C:\Users\Public\Documents\_rgpl
[2011/09/19 22:04:49 | 000,000,680 | ---- | M] () -- C:\Users\Tim\AppData\Local\d3d9caps.dat

========== Files Created - No Company Name ==========

[2011/10/11 16:51:54 | 000,001,785 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/10/11 16:32:07 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2011/10/11 15:37:33 | 000,000,912 | ---- | C] () -- C:\Users\Tim\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/10/11 15:37:33 | 000,000,900 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/10/11 15:37:33 | 000,000,888 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/10/11 13:58:54 | 000,000,501 | ---- | C] () -- C:\Users\Tim\Desktop\ComboFix.exe - Shortcut.lnk
[2011/10/11 13:25:24 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/10/11 13:25:24 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/10/11 13:25:24 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/10/11 13:25:24 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/10/11 13:25:24 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/10/10 21:28:26 | 000,001,692 | ---- | C] () -- C:\Users\Tim\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2011/10/10 21:28:26 | 000,001,680 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2011/10/10 21:28:26 | 000,001,668 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2011/10/10 18:42:24 | 000,001,945 | ---- | C] () -- C:\Windows\epplauncher.mif
[2011/10/10 11:41:57 | 000,000,512 | ---- | C] () -- C:\Users\Tim\Desktop\MBR.dat
[2011/10/10 11:39:23 | 710,079,385 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2011/10/10 11:28:40 | 000,000,570 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/07 08:34:36 | 000,025,160 | ---- | C] () -- C:\Windows\SysNative\drivers\hitmanpro35.sys
[2011/10/04 09:31:53 | 000,017,408 | ---- | C] () -- C:\Users\Tim\AppData\Local\WebpageIcons.db
[2011/09/30 16:28:20 | 000,001,412 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011/09/30 16:16:59 | 000,001,756 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/09/25 09:52:15 | 000,516,921 | ---- | C] () -- C:\test.xml
[2011/09/25 09:32:33 | 000,000,040 | ---- | C] () -- C:\Users\Public\Documents\_rgpl
[2011/09/19 14:01:16 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini
[2011/09/19 14:01:15 | 000,073,220 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011/09/19 14:01:15 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011/09/19 14:01:15 | 000,029,114 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011/09/19 14:01:15 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011/09/19 14:01:15 | 000,021,021 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011/09/19 14:01:15 | 000,015,670 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011/09/19 14:01:15 | 000,013,280 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011/09/19 14:01:15 | 000,012,669 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_EN.cfg
[2011/09/19 14:01:15 | 000,010,673 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011/09/19 14:01:15 | 000,006,478 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_PT.cfg
[2011/09/19 14:01:15 | 000,006,478 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_BP.cfg
[2011/09/19 14:01:15 | 000,006,366 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_FR.cfg
[2011/09/19 14:01:15 | 000,006,366 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_CF.cfg
[2011/09/19 14:01:15 | 000,006,226 | ---- | C] () -- C:\Windows\SysWow64\EPPICLocal_ES.cfg
[2011/09/19 14:01:15 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011/09/19 14:01:15 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011/09/19 14:01:15 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011/09/19 14:01:15 | 000,001,137 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011/09/19 14:01:15 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[2011/09/19 14:01:15 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat
[2011/09/19 14:01:15 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat
[2011/07/22 15:26:43 | 000,385,024 | ---- | C] () -- C:\Windows\SysWow64\LXEAinst.dll
[2011/07/22 15:26:43 | 000,344,064 | ---- | C] () -- C:\Windows\SysWow64\lxeacomx.dll
[2011/07/22 15:26:43 | 000,323,584 | ---- | C] () -- C:\Windows\SysWow64\lxeains.dll
[2011/07/22 15:26:43 | 000,262,144 | ---- | C] () -- C:\Windows\SysWow64\lxeainsb.dll
[2011/07/22 15:26:43 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\lxeainsr.dll
[2011/07/22 15:26:43 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\lxeajswr.dll
[2011/07/22 15:26:43 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\lxeacur.dll
[2011/07/22 15:26:42 | 000,253,952 | ---- | C] () -- C:\Windows\SysWow64\lxeacu.dll
[2011/07/22 15:26:42 | 000,090,112 | ---- | C] () -- C:\Windows\SysWow64\lxeacub.dll
[2011/07/22 15:17:33 | 000,299,008 | ---- | C] () -- C:\Windows\SysWow64\LXEAsm.dll
[2011/07/22 15:17:33 | 000,023,552 | ---- | C] () -- C:\Windows\SysWow64\LXEAsmr.dll
[2011/03/05 14:53:58 | 000,000,000 | ---- | C] () -- C:\Users\Tim\AppData\Local\rx_image32.Cache
[2011/01/04 22:15:37 | 000,000,238 | ---- | C] () -- C:\Windows\dellstat.ini
[2010/12/24 12:06:27 | 008,892,928 | ---- | C] () -- C:\ProgramData\atscie.msi
[2010/11/30 20:19:28 | 000,049,152 | ---- | C] () -- C:\Windows\SysWow64\AVerIO.dll
[2010/11/30 20:19:28 | 000,003,456 | ---- | C] () -- C:\Windows\SysWow64\AVerIO.sys
[2010/11/30 20:19:27 | 000,262,144 | ---- | C] () -- C:\Windows\SysWow64\sptlib03.dll
[2010/11/30 20:19:27 | 000,258,048 | ---- | C] () -- C:\Windows\SysWow64\sptlib01.dll
[2010/11/30 20:19:27 | 000,253,952 | ---- | C] () -- C:\Windows\SysWow64\sptlib02.dll
[2010/11/18 20:50:43 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/10/22 16:34:38 | 000,000,103 | ---- | C] () -- C:\Windows\SysWow64\hptrace.ini
[2010/10/22 16:33:46 | 000,007,138 | ---- | C] () -- C:\Windows\hpdj5800.ini
[2010/09/26 16:45:28 | 000,007,859 | ---- | C] () -- C:\Users\Tim\AppData\Roaming\pcouffin.cat
[2010/09/26 16:45:28 | 000,001,167 | ---- | C] () -- C:\Users\Tim\AppData\Roaming\pcouffin.inf
[2010/07/15 13:12:04 | 000,000,680 | ---- | C] () -- C:\Users\Tim\AppData\Local\d3d9caps.dat
[2010/04/17 10:48:19 | 000,211,340 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010/02/07 14:02:49 | 000,024,226 | ---- | C] () -- C:\Users\Tim\AppData\Roaming\UserTile.png
[2009/08/18 16:59:39 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2009/08/18 16:59:25 | 000,107,612 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2009/08/18 16:59:10 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/07/31 15:59:48 | 000,008,704 | ---- | C] () -- C:\Users\Tim\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/06/11 20:40:52 | 000,000,335 | ---- | C] () -- C:\Windows\nsreg.dat
[2009/06/11 20:40:47 | 000,118,784 | ---- | C] () -- C:\Windows\SeaMonkeyUninstall.exe
[2009/06/11 20:40:42 | 000,118,784 | ---- | C] () -- C:\Windows\GREUninstall.exe
[2009/06/11 20:40:41 | 000,008,839 | ---- | C] () -- C:\Windows\mozver.dat
[2009/04/03 17:52:54 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2009/03/13 17:56:02 | 000,397,312 | R--- | C] () -- C:\Windows\SysWow64\zshp1020.exe
[2009/03/13 17:56:02 | 000,106,496 | R--- | C] () -- C:\Windows\SysWow64\vshp1020.dll
[2009/02/18 10:20:26 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2009/02/04 17:00:47 | 000,000,226 | ---- | C] () -- C:\Users\Tim\AppData\Roaming\wklnhst.dat
[2009/02/04 13:43:57 | 002,463,976 | ---- | C] () -- C:\Windows\SysWow64\NPSWF32.dll
[2008/09/03 08:50:23 | 000,000,000 | ---- | C] () -- C:\Windows\VAIOUpdt.INI
[2008/09/03 08:24:19 | 000,779,024 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2008/08/20 16:39:48 | 000,113,051 | ---- | C] () -- C:\ProgramData\nvModes.001
[2008/08/20 16:39:10 | 000,113,051 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2008/08/20 16:02:52 | 000,001,076 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2008/01/20 21:49:10 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2006/11/02 10:35:48 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 07:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006/11/02 07:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006/11/02 07:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006/11/02 04:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin

========== Custom Scans ==========



< MD5 for: ACTXPRXY.DLL >
[2008/01/20 21:49:05 | 001,002,496 | ---- | M] (Microsoft Corporation) MD5=27CEEAA8E6149FC6F2F9EE5E0BDAC5A5 -- C:\Windows\SysNative\actxprxy.dll
[2008/01/20 21:49:05 | 001,002,496 | ---- | M] (Microsoft Corporation) MD5=27CEEAA8E6149FC6F2F9EE5E0BDAC5A5 -- C:\Windows\winsxs\amd64_microsoft-windows-activexproxy_31bf3856ad364e35_6.0.6001.18000_none_6e2ccef3a2a7c7cc\actxprxy.dll
[2008/01/20 21:50:03 | 000,326,656 | ---- | M] (Microsoft Corporation) MD5=8D78BA30DB4AE040A52EDEE725782715 -- C:\Windows\SysWOW64\actxprxy.dll
[2008/01/20 21:50:03 | 000,326,656 | ---- | M] (Microsoft Corporation) MD5=8D78BA30DB4AE040A52EDEE725782715 -- C:\Windows\winsxs\x86_microsoft-windows-activexproxy_31bf3856ad364e35_6.0.6001.18000_none_120e336fea4a5696\actxprxy.dll

< MD5 for: MSHTML.DLL >
[2009/08/27 09:23:44 | 005,690,880 | ---- | M] (Microsoft Corporation) MD5=026911F1DD0981316F0D9BF506A6EF3E -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21116_none_6e001be8f680d9dd\mshtml.dll
[2009/11/21 01:35:43 | 005,940,736 | ---- | M] (Microsoft Corporation) MD5=062B81F34EADEEF652E759BF93691C50 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18865_none_f5f058323822dc4b\mshtml.dll
[2010/11/02 02:38:04 | 009,263,104 | ---- | M] (Microsoft Corporation) MD5=08C95DAD69489E8292076EF7C7043B77 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23091_none_5273f7b709ba0f04\mshtml.dll
[2010/12/18 02:13:16 | 005,962,240 | ---- | M] (Microsoft Corporation) MD5=0DA63A2B1D6D55E6005F4552D22E7BBE -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23111_none_f6abdd79511bbb6d\mshtml.dll
[2009/03/02 23:38:17 | 003,580,928 | ---- | M] (Microsoft Corporation) MD5=0DCC9623D9A3E77212177F59738BE29A -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18226_none_1333784c22344556\mshtml.dll
[2009/11/21 01:47:49 | 009,237,504 | ---- | M] (Microsoft Corporation) MD5=0E88F6039FCA9E78985C1F776DDEA2B9 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18865_none_520ef3b5f0804d81\mshtml.dll
[2008/08/20 16:45:21 | 003,591,680 | ---- | M] (Microsoft Corporation) MD5=13A0AA60B35A6A13152A759536C10203 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16681_none_110754e02542e30a\mshtml.dll
[2009/10/21 14:26:09 | 005,943,296 | ---- | M] (Microsoft Corporation) MD5=159239C8EF4D26392F9C160369348C61 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22942_none_f68c93f75132f82e\mshtml.dll
[2009/04/24 11:03:11 | 003,581,952 | ---- | M] (Microsoft Corporation) MD5=1638C2FA1CC381CE39504B39F7D87F35 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18248_none_131fd9082242afe6\mshtml.dll
[2010/09/08 00:57:52 | 005,957,120 | ---- | M] (Microsoft Corporation) MD5=1704FC902E1B53EF87593D60FD312A55 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18975_none_f5e58a2c382af563\mshtml.dll
[2010/09/08 02:09:08 | 009,259,008 | ---- | M] (Microsoft Corporation) MD5=1AD1FA13194C76F7B3F33F32FB6C5E49 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23067_none_529a6937099c533b\mshtml.dll
[2009/08/27 09:14:11 | 005,688,320 | ---- | M] (Microsoft Corporation) MD5=1FF653DC307F6B9C5D902E0198BC95CF -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16916_none_6d76a6fbdd6306d1\mshtml.dll
[2008/12/12 00:47:44 | 003,579,392 | ---- | M] (Microsoft Corporation) MD5=20348C5C94D7D4A0D9AA12FBAA698514 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22328_none_13bf15ab3b5017ce\mshtml.dll
[2010/05/04 01:52:48 | 009,250,816 | ---- | M] (Microsoft Corporation) MD5=228B7D8B03447A04EAF9093A8C759B45 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18928_none_523d3629f05d26e9\mshtml.dll
[2010/02/23 10:01:50 | 005,946,880 | ---- | M] (Microsoft Corporation) MD5=27DB55375D8F8045A27E016BB21B17C0 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22995_none_f65985395158cfe8\mshtml.dll
[2009/07/18 06:33:22 | 003,599,360 | ---- | M] (Microsoft Corporation) MD5=2BC9595AEF52C3989B77AB8506615BAD -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18071_none_14dedb0c1f87a4a3\mshtml.dll
[2008/08/20 16:45:16 | 003,578,368 | ---- | M] (Microsoft Corporation) MD5=2C2A85BBAB617EDDD19119F66C05B1C3 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18063_none_130533f222576ec7\mshtml.dll
[2009/01/14 23:51:02 | 005,681,152 | ---- | M] (Microsoft Corporation) MD5=2D6449864B78E7544853575DE28F9B16 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16809_none_6d8475dfdd5839be\mshtml.dll
[2010/06/26 02:05:03 | 009,254,912 | ---- | M] (Microsoft Corporation) MD5=2FA3E77E779AFB623876CACDF4FABA13 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23040_none_52a90709099269f8\mshtml.dll
[2009/03/02 23:55:16 | 005,680,640 | ---- | M] (Microsoft Corporation) MD5=350CCA444575AB7FB9AF6C0015EFA94F -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18226_none_6f5213cfda91b68c\mshtml.dll
[2009/07/18 06:45:15 | 005,691,904 | ---- | M] (Microsoft Corporation) MD5=36914F24FFD47A4DE6C2F2FFAA3AE534 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22180_none_717b4324f10bb83d\mshtml.dll
[2009/04/24 11:15:22 | 005,682,688 | ---- | M] (Microsoft Corporation) MD5=3887FDFEB7AD1D9C7B1E4A03910F6DCE -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18248_none_6f3e748bdaa0211c\mshtml.dll
[2008/08/20 16:45:20 | 003,593,728 | ---- | M] (Microsoft Corporation) MD5=38EC352C600EB037FE02749F8C170B6B -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20823_none_11d3d3ad3e2e0b03\mshtml.dll
[2011/05/28 01:24:36 | 009,272,320 | ---- | M] (Microsoft Corporation) MD5=3A87CEE544BEB10254F9D37701EC1116 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19088_none_51fc2ec3f08e01d1\mshtml.dll
[2009/07/18 06:45:50 | 003,600,384 | ---- | M] (Microsoft Corporation) MD5=3AF70556543467956227B1D97B314E66 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22180_none_155ca7a138ae4707\mshtml.dll
[2009/08/27 07:54:40 | 003,600,896 | ---- | M] (Microsoft Corporation) MD5=3B7B0A46482EF271E5C434D0C070129A -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22212_none_15aa598f3873b345\mshtml.dll
[2011/07/01 21:37:42 | 012,269,056 | ---- | M] (Microsoft Corporation) MD5=3F63F95C998F7E1AF409BC74E83D45E5 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.16430_none_d32a7d566016c3c8\mshtml.dll
[2009/10/21 21:14:52 | 009,236,480 | ---- | M] (Microsoft Corporation) MD5=4095933C6626899C8D141257DF1EEADD -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18852_none_5216c2c3f07ae58b\mshtml.dll
[2009/08/27 08:15:49 | 003,584,512 | ---- | M] (Microsoft Corporation) MD5=41FB8068E6624F4D843CB1C0F6E8B0EC -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22508_none_13d4b94f3b3fda3a\mshtml.dll
[2010/12/18 01:23:15 | 005,961,216 | ---- | M] (Microsoft Corporation) MD5=42B87D22378C1EF98F3B6F410C2670AA -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19019_none_f62a42fe37f6e65b\mshtml.dll
[2009/04/23 07:24:20 | 005,687,296 | ---- | M] (Microsoft Corporation) MD5=4477163B2F95FABCA19A52C2F10CD9B5 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18024_none_71368709d7b9d629\mshtml.dll
[2009/08/27 07:50:47 | 005,692,416 | ---- | M] (Microsoft Corporation) MD5=46CD0EF45E555ABC8BFC1EBA8CF22CD1 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22212_none_71c8f512f0d1247b\mshtml.dll
[2008/01/20 21:47:34 | 003,578,368 | ---- | M] (Microsoft Corporation) MD5=48E05FD07045BB2E5CFC43C970CAF1E7 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18000_none_1343129c22297b1c\mshtml.dll
[2008/08/20 16:45:22 | 005,678,592 | ---- | M] (Microsoft Corporation) MD5=49AA7185F3172EB297B7E41E98BBFFEF -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16681_none_6d25f063dda05440\mshtml.dll
[2009/03/02 23:57:26 | 005,680,640 | ---- | M] (Microsoft Corporation) MD5=4E9F778806F70C39A2C50E6EDC284699 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22389_none_6f9dd1f0f3dd4a01\mshtml.dll
[2009/04/11 02:11:15 | 005,686,272 | ---- | M] (Microsoft Corporation) MD5=5528201A079D426DA050269D1C7239E2 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18005_none_714d272bd7a8b79e\mshtml.dll
[2008/10/15 23:28:00 | 005,681,152 | ---- | M] (Microsoft Corporation) MD5=570AC2D02F2F3F4CE75BBE2CF19C7E42 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20937_none_6deba252f68ffaad\mshtml.dll
[2010/01/02 02:04:37 | 009,238,016 | ---- | M] (Microsoft Corporation) MD5=575F839C1426AAB24DD647DFBA2BF385 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18882_none_51f652fff093395e\mshtml.dll
[2008/10/15 23:43:01 | 005,679,616 | ---- | M] (Microsoft Corporation) MD5=5874925DD6432B9B08D2A24D980FB5D1 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16764_none_6d3e92ffdd8d658a\mshtml.dll
[2009/04/24 10:40:15 | 005,688,320 | ---- | M] (Microsoft Corporation) MD5=5DF16995F29E008351C20888D49EB0C3 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22121_none_71bd22f6f0da29ee\mshtml.dll
[2008/12/12 00:40:02 | 003,594,752 | ---- | M] (Microsoft Corporation) MD5=616EA8D014AF07FB1DC97B7432794AA6 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20973_none_119dc5f73e5693df\mshtml.dll
[2008/10/16 00:49:34 | 005,678,080 | ---- | M] (Microsoft Corporation) MD5=61941E830C8EEDBB0225BD193CEE15BE -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18157_none_6f32a26fdaa9268f\mshtml.dll
[2010/05/04 01:30:34 | 005,953,024 | ---- | M] (Microsoft Corporation) MD5=62F23130C89F1EE5C0C9EEAB0685D1E5 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23019_none_f6b3dde3511488fe\mshtml.dll
[2009/08/27 00:48:36 | 009,236,992 | ---- | M] (Microsoft Corporation) MD5=6349F47886D106C83ABBCDA7AC8524D7 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18828_none_523d3443f05d29c2\mshtml.dll
[2009/01/14 23:16:00 | 003,594,752 | ---- | M] (Microsoft Corporation) MD5=676692EDC2E1DBD89EFCB617A1E75F7D -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16809_none_1165da5c24fac888\mshtml.dll
[2009/03/02 23:15:51 | 003,596,800 | ---- | M] (Microsoft Corporation) MD5=67FFB5ED7723D03B50734614D31B57A5 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21023_none_11d3adb53e2e3b6c\mshtml.dll
[2011/05/28 01:04:59 | 005,964,800 | ---- | M] (Microsoft Corporation) MD5=6D1E32A3C964BAF06B7973E7B18E3212 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19088_none_f5dd93403830909b\mshtml.dll
[2011/02/22 02:14:18 | 005,964,800 | ---- | M] (Microsoft Corporation) MD5=6D30A34B029176D86EC04ECE6C0F62B1 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23143_none_f68d6e49513241ee\mshtml.dll
[2008/10/15 23:38:25 | 003,579,392 | ---- | M] (Microsoft Corporation) MD5=6D4AAAAAEB494F78610AE792EC6B3E77 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22288_none_137e343d3b80c24d\mshtml.dll
[2011/02/22 02:51:25 | 009,265,664 | ---- | M] (Microsoft Corporation) MD5=6DFD3BCCF9C101847B7E68D00C92A19F -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23143_none_52ac09cd098fb324\mshtml.dll
[2009/08/27 00:18:40 | 005,940,224 | ---- | M] (Microsoft Corporation) MD5=7172C1681283EC40A8DA9ED4180FF390 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18828_none_f61e98c037ffb88c\mshtml.dll
[2011/05/28 02:42:23 | 009,273,856 | ---- | M] (Microsoft Corporation) MD5=72384FEAEE3C79B98979EA848547C8ED -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23181_none_527ec98909b1f03a\mshtml.dll
[2010/02/23 01:59:01 | 009,243,136 | ---- | M] (Microsoft Corporation) MD5=73DF321FF760C7F8592E299484DF9A60 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18904_none_524ed4d9f05089ab\mshtml.dll
[2009/03/08 06:46:48 | 009,238,016 | ---- | M] (Microsoft Corporation) MD5=76542A1F1E5F07AF24A31D1354D11D35 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18702_none_524cd079f0525caf\mshtml.dll
[2009/07/18 07:12:19 | 003,600,384 | ---- | M] (Microsoft Corporation) MD5=77693F4CD5CD48EE3A4ABB5073276976 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21089_none_1198cfe93e597b1c\mshtml.dll
[2011/07/22 00:35:21 | 017,782,272 | ---- | M] (Microsoft Corporation) MD5=79184CDA49EF6A445FF152EC58C7EB5D -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.20534_none_2fd6b6cd318e3a24\mshtml.dll
[2011/05/28 02:06:57 | 005,967,360 | ---- | M] (Microsoft Corporation) MD5=7AF8A6DB4596E3BB3309BABA661EB523 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23181_none_f6602e0551547f04\mshtml.dll
[2009/11/21 09:58:24 | 009,244,160 | ---- | M] (Microsoft Corporation) MD5=7BD79148043C915C5717BDFF9ECEA1BB -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22956_none_52a460b70994eab1\mshtml.dll
[2009/01/16 07:27:03 | 005,683,200 | ---- | M] (Microsoft Corporation) MD5=7CCF5C2FBBC41629222AD565E8BAE45F -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22355_none_6fba408cf3c890d2\mshtml.dll
[2008/08/20 16:45:20 | 005,681,664 | ---- | M] (Microsoft Corporation) MD5=7FEB5490F86C3ADAACB9ABB4F3085D27 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20823_none_6df26f30f68b7c39\mshtml.dll
[2009/07/18 07:23:35 | 005,688,832 | ---- | M] (Microsoft Corporation) MD5=7FFFF5C172F28B52D0F79873FDD6AD42 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22475_none_6fa4a29af3d8c5db\mshtml.dll
[2008/12/12 01:14:41 | 005,681,152 | ---- | M] (Microsoft Corporation) MD5=81E27A5983ED0F28CAF6FB16B2833644 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20973_none_6dbc617af6b40515\mshtml.dll
[2008/12/12 00:45:18 | 003,593,216 | ---- | M] (Microsoft Corporation) MD5=863FBEECA377800B2AFA4F8E972BEBC0 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16788_none_110e58cc253c9192\mshtml.dll
[2008/10/15 23:40:35 | 003,593,216 | ---- | M] (Microsoft Corporation) MD5=8B03B6121C4A55BF48B56BFAF962F879 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16764_none_111ff77c252ff454\mshtml.dll
[2009/04/24 10:41:26 | 003,598,336 | ---- | M] (Microsoft Corporation) MD5=8BC33ADC526B3E7EE6E6AA013154DF69 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.22121_none_159e8773387cb8b8\mshtml.dll
[2011/07/01 21:37:22 | 017,773,568 | ---- | M] (Microsoft Corporation) MD5=8C18BFBF9A4A6EC794212BF266D4EF99 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.16430_none_2f4918da187434fe\mshtml.dll
[2010/05/04 01:56:12 | 009,254,912 | ---- | M] (Microsoft Corporation) MD5=8C6209A7EBA1C385418811D0D1FE0153 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23019_none_52d279670971fa34\mshtml.dll
[2010/02/23 01:34:51 | 005,944,832 | ---- | M] (Microsoft Corporation) MD5=8D5FB97AE3D30CCDD8C9D8AF447C7D09 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18904_none_f630395637f31875\mshtml.dll
[2008/12/12 00:52:52 | 003,578,880 | ---- | M] (Microsoft Corporation) MD5=8ECFDD5549AD28191D8594C80D4001E8 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18183_none_12ef96002267a3d0\mshtml.dll
[2010/09/08 01:37:26 | 009,257,472 | ---- | M] (Microsoft Corporation) MD5=8F192C0984F85E2124E916B9D474F06C -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18975_none_520425aff0886699\mshtml.dll
[2010/06/26 01:26:47 | 009,250,816 | ---- | M] (Microsoft Corporation) MD5=8F50E9C2F2E050E1B28EAA64A0E80CCA -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18943_none_522294dff071e018\mshtml.dll
[2009/01/15 23:56:43 | 003,580,928 | ---- | M] (Microsoft Corporation) MD5=8FA6CFFC665D1D9D99126CFA8D8DEAB7 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22355_none_139ba5093b6b1f9c\mshtml.dll
[2010/02/23 10:43:38 | 009,248,768 | ---- | M] (Microsoft Corporation) MD5=920734AFA549CDB058CD1AB1F74CE622 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22995_none_527820bd09b6411e\mshtml.dll
[2009/07/18 07:13:26 | 003,597,824 | ---- | M] (Microsoft Corporation) MD5=921E63B100F67FA21A0C623930810C58 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16890_none_10fb8876254bdff2\mshtml.dll
[2008/08/20 16:45:14 | 003,578,368 | ---- | M] (Microsoft Corporation) MD5=92A81ADE1E576A53176777260190F3A1 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22167_none_1392d1e53b7173ed\mshtml.dll
[2009/04/24 11:21:33 | 005,688,320 | ---- | M] (Microsoft Corporation) MD5=932DE8594E62ED86E922CEDD336513B2 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21046_none_6ddfaa3ef6993089\mshtml.dll
[2009/03/02 23:17:39 | 003,595,264 | ---- | M] (Microsoft Corporation) MD5=94ED56734E8AB74357F8EA2C5C174EA9 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16830_none_113c67fe251b384c\mshtml.dll
[2009/08/27 08:44:50 | 005,685,760 | ---- | M] (Microsoft Corporation) MD5=99AFE93255B83A27A4D1A631F1DE68E3 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18319_none_6f5fe67fda86e3c7\mshtml.dll
[2009/07/18 07:45:07 | 005,689,856 | ---- | M] (Microsoft Corporation) MD5=99F4A36E0973B904111130F7F3B85BA5 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21089_none_6db76b6cf6b6ec52\mshtml.dll
[2010/11/02 00:58:14 | 005,959,168 | ---- | M] (Microsoft Corporation) MD5=9AC463498C480E9EB3C63DC21E4F29C8 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18999_none_f5d3eb7c383792a1\mshtml.dll
[2009/10/21 05:40:08 | 005,939,712 | ---- | M] (Microsoft Corporation) MD5=9BFB2F7C3A2F626040C4EB8CE5C6ED2A -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18852_none_f5f82740381d7455\mshtml.dll
[2010/11/02 01:24:30 | 009,259,520 | ---- | M] (Microsoft Corporation) MD5=9D88761F3C38E8D13455D37C98AB8026 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18999_none_51f286fff09503d7\mshtml.dll
[2010/12/18 01:51:31 | 009,264,640 | ---- | M] (Microsoft Corporation) MD5=9E936F64DFF6442FCD735417305DFBDA -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19019_none_5248de81f0545791\mshtml.dll
[2010/11/02 02:08:01 | 005,960,704 | ---- | M] (Microsoft Corporation) MD5=9FCC1F6457A84902EA7545B568B5AEDB -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23091_none_f6555c33515c9dce\mshtml.dll
[2009/04/24 10:57:41 | 003,598,336 | ---- | M] (Microsoft Corporation) MD5=A0DB69A75113B6A396E271744489824F -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21046_none_11c10ebb3e3bbf53\mshtml.dll
[2009/04/11 01:28:20 | 003,596,288 | ---- | M] (Microsoft Corporation) MD5=A4D04D404AFC1D30EDA01EE50D27AA51 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18005_none_152e8ba81f4b4668\mshtml.dll
[2009/03/02 23:30:20 | 003,581,440 | ---- | M] (Microsoft Corporation) MD5=A77A82830D2BBB001A53A5368934F7EB -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22389_none_137f366d3b7fd8cb\mshtml.dll
[2010/12/18 02:50:08 | 009,265,152 | ---- | M] (Microsoft Corporation) MD5=A9CBEECAF9C57A976A1E5C1042644881 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23111_none_52ca78fd09792ca3\mshtml.dll
[2011/02/22 01:17:40 | 005,962,240 | ---- | M] (Microsoft Corporation) MD5=AA411AEF2476D251078F9C9F0478C142 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19048_none_f608d2f0381020d7\mshtml.dll
[2009/01/14 23:16:45 | 003,596,288 | ---- | M] (Microsoft Corporation) MD5=AD9E78847641E519FE50A9C27E49AD27 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20996_none_118b26fd3e6417c6\mshtml.dll
[2009/07/18 07:43:26 | 005,688,320 | ---- | M] (Microsoft Corporation) MD5=ADBC248B6816B1E0A3D1FD773A6772F9 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16890_none_6d1a23f9dda95128\mshtml.dll
[2008/12/12 01:08:16 | 005,680,128 | ---- | M] (Microsoft Corporation) MD5=ADF2A529BD826A00B4E6DCCEFA117A77 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22328_none_6fddb12ef3ad8904\mshtml.dll
[2009/08/27 08:59:40 | 003,598,336 | ---- | M] (Microsoft Corporation) MD5=AF7541BC2D91483328E6D9910CD33DD5 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16916_none_11580b782505959b\mshtml.dll
[2008/10/15 23:47:30 | 003,578,880 | ---- | M] (Microsoft Corporation) MD5=B1AE727959358E4FE72D7FE6DC6736E8 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18157_none_131406ec224bb559\mshtml.dll
[2010/05/04 00:56:28 | 005,950,976 | ---- | M] (Microsoft Corporation) MD5=B1E862448C38B0F70139BC28F67332DE -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18928_none_f61e9aa637ffb5b3\mshtml.dll
[2007/11/12 23:41:06 | 008,086,816 | ---- | M] ( ) MD5=B6EB6E36ED8975748AFB8FC9BE7BD873 -- C:\Program Files (x86)\Intuit\QuickBooks 2008\MSHTML.dll
[2011/07/22 00:52:01 | 017,782,272 | ---- | M] (Microsoft Corporation) MD5=B721EFCC393D76390A319A8A30B1B654 -- C:\Windows\ERDNT\cache64\mshtml.dll
[2011/07/22 00:52:01 | 017,782,272 | ---- | M] (Microsoft Corporation) MD5=B721EFCC393D76390A319A8A30B1B654 -- C:\Windows\SysNative\mshtml.dll
[2011/07/22 00:52:01 | 017,782,272 | ---- | M] (Microsoft Corporation) MD5=B721EFCC393D76390A319A8A30B1B654 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.16434_none_2f4d1a0218709a5a\mshtml.dll
[2008/08/20 16:45:15 | 005,675,520 | ---- | M] (Microsoft Corporation) MD5=B7332E7B623A0931D5FF998E9CF72755 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22167_none_6fb16d68f3cee523\mshtml.dll
[2009/10/21 21:39:55 | 009,241,600 | ---- | M] (Microsoft Corporation) MD5=B8E7652F8343C3D0E155D50346668A97 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22942_none_52ab2f7b09906964\mshtml.dll
[2009/08/27 07:39:41 | 003,599,872 | ---- | M] (Microsoft Corporation) MD5=BC72B82A8D9F0E2DE67A4985A6676786 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18100_none_15298c1c1f4fc4dc\mshtml.dll
[2010/01/02 09:51:38 | 005,945,856 | ---- | M] (Microsoft Corporation) MD5=BE6120F3D7A853039B5437AC9E1986C1 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22973_none_f66d247d514a6558\mshtml.dll
[2009/08/27 08:30:12 | 003,584,000 | ---- | M] (Microsoft Corporation) MD5=BFF746B1558432533876014B66CF04C4 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18319_none_13414afc22297291\mshtml.dll
[2008/10/16 00:02:24 | 005,680,640 | ---- | M] (Microsoft Corporation) MD5=C0267E141B390D9C0372970EC86FE751 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22288_none_6f9ccfc0f3de3383\mshtml.dll
[2009/04/24 11:04:25 | 005,683,712 | ---- | M] (Microsoft Corporation) MD5=C140B788D5B30882AF90625D8D2050F2 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22418_none_6fe88300f3a56a3a\mshtml.dll
[2009/04/24 11:17:00 | 003,596,288 | ---- | M] (Microsoft Corporation) MD5=C1BF8C6F8D5E0435D1ABBB94DAC8EAFD -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16851_none_1127c870252a8985\mshtml.dll
[2009/07/18 06:48:32 | 005,689,856 | ---- | M] (Microsoft Corporation) MD5=C7DF5645B582A91B50DEF9BF097A21AE -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18071_none_70fd768fd7e515d9\mshtml.dll
[2008/10/15 23:21:40 | 003,595,264 | ---- | M] (Microsoft Corporation) MD5=CF807C36C2E1984104D173B9DE1BCBCD -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20937_none_11cd06cf3e328977\mshtml.dll
[2009/07/18 07:34:45 | 005,685,248 | ---- | M] (Microsoft Corporation) MD5=D10525DCCCA64A268691C20006846A33 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18294_none_6f0463c7dacc4775\mshtml.dll
[2009/08/27 08:29:56 | 005,689,344 | ---- | M] (Microsoft Corporation) MD5=D11DB1EC89DB734085AB96D77F26F36C -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22508_none_6ff354d2f39d4b70\mshtml.dll
[2009/04/24 10:58:31 | 003,582,976 | ---- | M] (Microsoft Corporation) MD5=D12ADCB4045EF392A62990C06694EB78 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22418_none_13c9e77d3b47f904\mshtml.dll
[2009/07/18 11:02:53 | 003,583,488 | ---- | M] (Microsoft Corporation) MD5=D38265A0C435E2A4BE5D662AB82F00E4 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18294_none_12e5c844226ed63f\mshtml.dll
[2009/03/08 06:41:15 | 005,937,152 | ---- | M] (Microsoft Corporation) MD5=D469A0EBA2EF5C6BEE8065B7E3196E5E -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18702_none_f62e34f637f4eb79\mshtml.dll
[2010/06/26 01:03:04 | 005,951,488 | ---- | M] (Microsoft Corporation) MD5=D6168759945CD6BC2DB4BFCD4E94B399 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18943_none_f603f95c38146ee2\mshtml.dll
[2009/08/27 07:53:04 | 005,690,880 | ---- | M] (Microsoft Corporation) MD5=D66D6A0CD1210FDE1E1CA8FFC7047766 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18100_none_7148279fd7ad3612\mshtml.dll
[2009/07/18 06:54:12 | 003,584,512 | ---- | M] (Microsoft Corporation) MD5=D8C0B944A3FB4BE7BC8DA21D4A5B33AB -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.22475_none_138607173b7b54a5\mshtml.dll
[2011/02/22 01:47:18 | 009,265,664 | ---- | M] (Microsoft Corporation) MD5=D972E38E0519FF6F805B88676767CE64 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.19048_none_52276e73f06d920d\mshtml.dll
[2009/04/23 07:14:20 | 003,597,824 | ---- | M] (Microsoft Corporation) MD5=DBACE2C96ED63E60CD5D89D8DE00D148 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18024_none_1517eb861f5c64f3\mshtml.dll
[2010/01/02 01:33:34 | 005,942,784 | ---- | M] (Microsoft Corporation) MD5=DF4D546A6E1C8D0F4FC10FCC9E422763 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18882_none_f5d7b77c3835c828\mshtml.dll
[2010/06/26 01:49:12 | 005,954,560 | ---- | M] (Microsoft Corporation) MD5=DF63821381A08F65174BA42745B1C79B -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23040_none_f68a6b855134f8c2\mshtml.dll
[2009/03/02 23:33:06 | 005,686,272 | ---- | M] (Microsoft Corporation) MD5=E0C482C702441AAA16CA2A5A1BAA024B -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21023_none_6df24938f68baca2\mshtml.dll
[2009/01/15 01:08:35 | 003,580,416 | ---- | M] (Microsoft Corporation) MD5=E161281A8E8937ED94299A6B465D7BCE -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18203_none_134617462226c16f\mshtml.dll
[2009/08/27 08:59:36 | 009,240,064 | ---- | M] (Microsoft Corporation) MD5=E4FBD4BD4427B0E7C1CECCA8CDB0BB27 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22918_none_52d1a0fb0972ad9b\mshtml.dll
[2011/07/21 21:54:04 | 012,273,664 | ---- | M] (Microsoft Corporation) MD5=E6D5C7E4AAC0C682169AA5021386EFF3 -- C:\Windows\ERDNT\cache86\mshtml.dll
[2011/07/21 21:54:04 | 012,273,664 | ---- | M] (Microsoft Corporation) MD5=E6D5C7E4AAC0C682169AA5021386EFF3 -- C:\Windows\SysWOW64\mshtml.dll
[2011/07/21 21:54:04 | 012,273,664 | ---- | M] (Microsoft Corporation) MD5=E6D5C7E4AAC0C682169AA5021386EFF3 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.16434_none_d32e7e7e60132924\mshtml.dll
[2008/12/12 00:54:08 | 005,679,616 | ---- | M] (Microsoft Corporation) MD5=E748996A535294868A584FCD621DFD87 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16788_none_6d2cf44fdd9a02c8\mshtml.dll
[2010/09/08 01:22:01 | 005,958,656 | ---- | M] (Microsoft Corporation) MD5=E993FB26BFAC2887BFE8DDAC4DC9180A -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.23067_none_f67bcdb3513ee205\mshtml.dll
[2009/08/27 08:22:52 | 005,942,272 | ---- | M] (Microsoft Corporation) MD5=E9C51FD04019DC14CAE9CEDE3C7B08E3 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22918_none_f6b3057751153c65\mshtml.dll
[2009/01/14 23:56:52 | 005,685,248 | ---- | M] (Microsoft Corporation) MD5=ED0DF427D9950F1D5618548DEC8C8F31 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.20996_none_6da9c280f6c188fc\mshtml.dll
[2009/11/21 10:00:11 | 005,944,320 | ---- | M] (Microsoft Corporation) MD5=ED6055694115B1A247B2591AB465A21D -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22956_none_f685c5335137797b\mshtml.dll
[2008/01/20 21:49:47 | 005,676,032 | ---- | M] (Microsoft Corporation) MD5=EEBAED2721B2321B9E0FC44A6636F27F -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18000_none_6f61ae1fda86ec52\mshtml.dll
[2011/07/21 20:53:49 | 012,273,664 | ---- | M] (Microsoft Corporation) MD5=F2966190D2C20C585A730F9C0B3C7373 -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.1.8112.20534_none_d3b81b497930c8ee\mshtml.dll
[2010/01/02 10:10:46 | 009,245,184 | ---- | M] (Microsoft Corporation) MD5=F2CFA1A820688834FF6F2A1A9F756863 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22973_none_528bc00109a7d68e\mshtml.dll
[2009/08/27 08:38:04 | 003,600,384 | ---- | M] (Microsoft Corporation) MD5=F500476C0724E476F05331162D4C283D -- C:\Windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.21116_none_11e180653e2368a7\mshtml.dll
[2009/04/24 11:23:30 | 005,684,224 | ---- | M] (Microsoft Corporation) MD5=FA88AA252038B7BC8ABBD8EC24206B32 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16851_none_6d4663f3dd87fabb\mshtml.dll
[2008/12/12 02:08:19 | 005,678,080 | ---- | M] (Microsoft Corporation) MD5=FB7B949FFC94113E3E8AA4C8390DFA03 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18183_none_6f0e3183dac51506\mshtml.dll
[2008/08/20 16:45:16 | 005,676,032 | ---- | M] (Microsoft Corporation) MD5=FBE286D98A68FA2B3E29305C37ABF58A -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18063_none_6f23cf75dab4dffd\mshtml.dll
[2009/03/02 23:38:20 | 005,680,640 | ---- | M] (Microsoft Corporation) MD5=FDF6D34D7741F2988147320586C046EE -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16830_none_6d5b0381dd78a982\mshtml.dll
[2009/01/15 01:06:55 | 005,680,640 | ---- | M] (Microsoft Corporation) MD5=FF7579CCF2C3692C2A2E3BB6604BB689 -- C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18203_none_6f64b2c9da8432a5\mshtml.dll

< MD5 for: MSVCRT.DLL >
[2008/01/20 21:49:03 | 000,680,448 | ---- | M] (Microsoft Corporation) MD5=04CBEAA089B6A752B3EB660BEE8C4964 -- C:\Windows\winsxs\x86_microsoft-windows-msvcrt_31bf3856ad364e35_6.0.6001.18000_none_d15536209ee61dad\msvcrt.dll
[2008/01/20 21:48:18 | 000,621,056 | ---- | M] (Microsoft Corporation) MD5=11DB261E8EE318CA41498300327CB5F2 -- C:\Windows\winsxs\amd64_microsoft-windows-msvcrt_31bf3856ad364e35_6.0.6001.18000_none_2d73d1a457438ee3\msvcrt.dll
[1999/07/11 02:39:16 | 000,278,581 | ---- | M] (Microsoft Corporation) MD5=1E7D17A025E1503E4BAC906AA3DE3F3E -- C:\Program Files (x86)\WS_FTP Pro\Msvcrt.dll
[2006/08/17 17:45:18 | 000,254,005 | ---- | M] (Microsoft Corporation) MD5=242932CACF55F067793CAD819C8C73EE -- C:\ProgramData\webex\WebEx\830\msvcrt.dll
[2006/08/17 17:45:18 | 000,254,005 | ---- | M] (Microsoft Corporation) MD5=242932CACF55F067793CAD819C8C73EE -- C:\ProgramData\webex\WebEx\832\msvcrt.dll
[2006/08/17 17:45:18 | 000,254,005 | ---- | M] (Microsoft Corporation) MD5=242932CACF55F067793CAD819C8C73EE -- C:\Users\All Users\webex\WebEx\830\msvcrt.dll
[2006/08/17 17:45:18 | 000,254,005 | ---- | M] (Microsoft Corporation) MD5=242932CACF55F067793CAD819C8C73EE -- C:\Users\All Users\webex\WebEx\832\msvcrt.dll
[2009/04/11 02:11:16 | 000,621,056 | ---- | M] (Microsoft Corporation) MD5=37B71108BFD6E276695CE24171F2889B -- C:\Windows\ERDNT\cache64\msvcrt.dll
[2009/04/11 02:11:16 | 000,621,056 | ---- | M] (Microsoft Corporation) MD5=37B71108BFD6E276695CE24171F2889B -- C:\Windows\SysNative\msvcrt.dll
[2009/04/11 02:11:16 | 000,621,056 | ---- | M] (Microsoft Corporation) MD5=37B71108BFD6E276695CE24171F2889B -- C:\Windows\winsxs\amd64_microsoft-windows-msvcrt_31bf3856ad364e35_6.0.6002.18005_none_2f5f4ab054655a2f\msvcrt.dll
[2000/07/15 14:19:22 | 000,278,581 | ---- | M] (Microsoft Corporation) MD5=4300D1A092B91E7C8DFA6F1E5E7973B2 -- C:\Program Files (x86)\Abbyy FineReader 6.0 Sprint\msvcrt.dll
[2011/10/10 14:11:03 | 000,266,293 | ---- | M] (Microsoft Corporation) MD5=63DA4613383EC70E047B4CD5C48F0B05 -- C:\Program Files (x86)\Java\jre6\bin\msvcrt.dll
[2010/09/12 17:59:57 | 000,266,293 | ---- | M] (Microsoft Corporation) MD5=63DA4613383EC70E047B4CD5C48F0B05 -- C:\Program Files (x86)\py3d\jre\bin\msvcrt.dll
[2007/09/13 21:55:20 | 000,322,560 | ---- | M] (Microsoft Corporation) MD5=745F42023DBC4C4196E897041A136A45 -- C:\Program Files (x86)\Sony\Sony Picture Utility\Music Transfer\msvcrt.dll
[2009/04/11 01:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) MD5=F5E991236960137B1F5449C5E5DF4656 -- C:\Windows\ERDNT\cache86\msvcrt.dll
[2009/04/11 01:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) MD5=F5E991236960137B1F5449C5E5DF4656 -- C:\Windows\SysWOW64\msvcrt.dll
[2009/04/11 01:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) MD5=F5E991236960137B1F5449C5E5DF4656 -- C:\Windows\winsxs\x86_microsoft-windows-msvcrt_31bf3856ad364e35_6.0.6002.18005_none_d340af2c9c07e8f9\msvcrt.dll

< MD5 for: OLEAUT32.DLL >
[2008/01/20 21:50:01 | 000,563,200 | ---- | M] (Microsoft Corporation) MD5=03E0777D4D01B22FA7C6CC6E9AD335DF -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.18000_none_23737063e8386659\oleaut32.dll
[2008/01/20 21:23:52 | 000,559,104 | ---- | M] (Microsoft Corporation) MD5=0C9A043D49A6ED91B8BAE0F66785272F -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6000.20734_none_21fa5fed04442e61\oleaut32.dll
[2009/04/11 02:11:19 | 000,847,360 | ---- | M] (Microsoft Corporation) MD5=1785F3FC389381B6F44F52011E47685E -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.18005_none_1b0a3f1db0f96faa\oleaut32.dll
[2010/12/20 11:06:49 | 000,847,872 | ---- | M] (Microsoft Corporation) MD5=28480E2CF5D1E3015E037BA59D9DFEF9 -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.18565_none_18e2f179b403bc7a\oleaut32.dll
[2008/01/20 21:23:53 | 000,869,376 | ---- | M] (Microsoft Corporation) MD5=284CA557826FA2541862B6DB37D203DA -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6000.16609_none_17418a05b6a8f77c\oleaut32.dll
[2010/12/20 11:41:25 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=47D00E69EA69332C9A756424D5D87CDC -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.22551_none_25ae7d0efea3ec64\oleaut32.dll
[2008/01/20 21:23:53 | 000,867,840 | ---- | M] (Microsoft Corporation) MD5=5531FDF736485561FB59AB521FC622EA -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6000.20734_none_17a5b59acfe36c66\oleaut32.dll
[2008/01/20 21:23:52 | 000,558,080 | ---- | M] (Microsoft Corporation) MD5=7924BCCE665AC92FC04CD45A46FE3E3D -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6000.16609_none_21963457eb09b977\oleaut32.dll
[2010/12/20 10:26:38 | 000,563,200 | ---- | M] (Microsoft Corporation) MD5=8DEFDCF8F2C5871CB7C436A6FBD86017 -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.22816_none_23f84c490158a62f\oleaut32.dll
[2008/01/20 21:49:22 | 000,847,872 | ---- | M] (Microsoft Corporation) MD5=91F7A7FEB4623AB4670EEBBA9C6F25CD -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.18000_none_191ec611b3d7a45e\oleaut32.dll
[2010/12/20 11:59:00 | 000,847,360 | ---- | M] (Microsoft Corporation) MD5=95F4039CFDB42934EC9F5542500A22E2 -- C:\Windows\SysNative\oleaut32.dll
[2010/12/20 11:59:00 | 000,847,360 | ---- | M] (Microsoft Corporation) MD5=95F4039CFDB42934EC9F5542500A22E2 -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.18357_none_1ad635c7b1202582\oleaut32.dll
[2010/12/20 11:48:07 | 000,847,360 | ---- | M] (Microsoft Corporation) MD5=B6701035C83461B6DF4D13AD58662CAC -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.22551_none_1b59d2bcca432a69\oleaut32.dll
[2010/12/20 10:44:04 | 000,847,872 | ---- | M] (Microsoft Corporation) MD5=C582BA0D2DD49B0D01F04F6133DF2C7D -- C:\Windows\winsxs\amd64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.22816_none_19a3a1f6ccf7e434\oleaut32.dll
[2009/04/11 01:28:23 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=CA85552B1A307CB03FF1A1D2D12CB1C5 -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.18005_none_255ee96fe55a31a5\oleaut32.dll
[2010/12/20 11:35:04 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=DE4CD76C254E143F40E62952788D3BE7 -- C:\Windows\SysWOW64\oleaut32.dll
[2010/12/20 11:35:04 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=DE4CD76C254E143F40E62952788D3BE7 -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6002.18357_none_252ae019e580e77d\oleaut32.dll
[2010/12/20 10:39:14 | 000,563,200 | ---- | M] (Microsoft Corporation) MD5=FA6BD25A5A65A6FF5BE4385098E3BDEF -- C:\Windows\winsxs\wow64_microsoft-windows-ole-automation_31bf3856ad364e35_6.0.6001.18565_none_23379bcbe8647e75\oleaut32.dll

< MD5 for: RPCRT4.DLL >
[2008/04/11 22:30:28 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=055C505A0B1A711D16166E43BE6452F3 -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18051_none_1a38d59b31fa279c\rpcrt4.dll
[2009/04/23 07:35:04 | 000,672,256 | ---- | M] (Microsoft Corporation) MD5=09A70A3997E0E09365D6612958C8EC9E -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6000.21045_none_18eae0c24de5ad70\rpcrt4.dll
[2009/04/23 07:15:39 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=0ABE67004EB4C162F4456E64F90A11FD -- C:\Windows\SysWOW64\rpcrt4.dll
[2009/04/23 07:15:39 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=0ABE67004EB4C162F4456E64F90A11FD -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.18024_none_1c42bdd72f056c67\rpcrt4.dll
[2009/04/23 07:49:06 | 001,320,448 | ---- | M] (Microsoft Corporation) MD5=214A5BED5D6E9288CEC95ADC56BEAA3D -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.22417_none_109f0f3216912526\rpcrt4.dll
[2009/04/23 07:25:07 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=5A3341CDD200E4868F342D30E812EDD4 -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.22120_none_1cc8597a4826a6d5\rpcrt4.dll
[2008/04/11 22:58:59 | 001,280,512 | ---- | M] (Microsoft Corporation) MD5=5AC40445689896D06DB0EAB10D073B59 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18051_none_0fe42b48fd9965a1\rpcrt4.dll
[2008/01/20 21:47:49 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=5B9EB50697BA5B8CE2547CEE35AC8A0E -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18000_none_1a6de4ed31d28290\rpcrt4.dll
[2009/04/23 07:44:38 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=5CDE851457F12A41DD99C762FD687903 -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18247_none_1a49ab0f31ec9e03\rpcrt4.dll
[2009/04/23 07:40:27 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=6A8A47F865AF0DB9C6738486AD5CACAE -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.22417_none_1af3b9844af1e721\rpcrt4.dll
[2009/04/23 07:24:42 | 001,305,600 | ---- | M] (Microsoft Corporation) MD5=74A65BB3CA4F9F310F337C93DA257E64 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.22120_none_1273af2813c5e4da\rpcrt4.dll
[2009/04/23 07:25:48 | 001,305,600 | ---- | M] (Microsoft Corporation) MD5=8E0189219E941613B1512431604114E0 -- C:\Windows\SysNative\rpcrt4.dll
[2009/04/23 07:25:48 | 001,305,600 | ---- | M] (Microsoft Corporation) MD5=8E0189219E941613B1512431604114E0 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.18024_none_11ee1384faa4aa6c\rpcrt4.dll
[2009/04/23 08:03:26 | 000,672,256 | ---- | M] (Microsoft Corporation) MD5=9322E12317CF5E5510994AF682D27BBB -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6000.16850_none_18519a7734d477a2\rpcrt4.dll
[2008/01/20 21:50:16 | 001,281,024 | ---- | M] (Microsoft Corporation) MD5=9590BF97C2DDB07D0BD37C0D1B21D6AD -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18000_none_10193a9afd71c095\rpcrt4.dll
[2008/04/11 22:51:52 | 001,319,936 | ---- | M] (Microsoft Corporation) MD5=ADE179D794FC75D59E24F5F2CF2A0001 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.22156_none_1072c98616b2841e\rpcrt4.dll
[2009/04/23 08:07:33 | 001,287,168 | ---- | M] (Microsoft Corporation) MD5=AEC8743156748E17EEEA122F937665F8 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6000.21045_none_0e9636701984eb75\rpcrt4.dll
[2009/04/11 01:26:45 | 000,677,376 | ---- | M] (Microsoft Corporation) MD5=C1EA3AAD2BCCF9030BE1A52FDD1E0BFB -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.18005_none_1c595df92ef44ddc\rpcrt4.dll
[2009/04/23 08:18:11 | 001,280,512 | ---- | M] (Microsoft Corporation) MD5=C59CCC55988B5878A815E73C0F694419 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.18247_none_0ff500bcfd8bdc08\rpcrt4.dll
[2009/04/11 02:11:23 | 001,305,600 | ---- | M] (Microsoft Corporation) MD5=C6B79408D2A55B65D33DE8B8A40794B6 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6002.18005_none_1204b3a6fa938be1\rpcrt4.dll
[2008/04/11 22:17:11 | 000,677,888 | ---- | M] (Microsoft Corporation) MD5=F27B554B3D5E6571B54EEBA075723542 -- C:\Windows\winsxs\wow64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6001.22156_none_1ac773d84b134619\rpcrt4.dll
[2009/04/23 08:11:34 | 001,260,544 | ---- | M] (Microsoft Corporation) MD5=F66C6BA1F2149ACA2ED3E3AB43F7C8C5 -- C:\Windows\winsxs\amd64_microsoft-windows-rpc-local_31bf3856ad364e35_6.0.6000.16850_none_0dfcf0250073b5a7\rpcrt4.dll

< MD5 for: SHDOCVW.DLL >
[2008/01/20 21:49:33 | 001,195,008 | ---- | M] (Microsoft Corporation) MD5=091D06854D0024DEE0C882383E49A6F7 -- C:\Windows\winsxs\amd64_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6001.18000_none_43938908c4439f06\shdocvw.dll
[2011/07/01 21:34:17 | 001,075,712 | ---- | M] (Microsoft Corporation) MD5=167AC31450C0C53A01FA1491E94D7678 -- C:\Windows\SysWOW64\shdocvw.dll
[2011/07/01 21:34:17 | 001,075,712 | ---- | M] (Microsoft Corporation) MD5=167AC31450C0C53A01FA1491E94D7678 -- C:\Windows\winsxs\x86_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.18392_none_e8fc1c190953a005\shdocvw.dll
[2009/04/11 01:28:24 | 001,068,032 | ---- | M] (Microsoft Corporation) MD5=2AA4117EE5F4765AD8404DCF9D552C71 -- C:\Windows\winsxs\x86_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.18005_none_e96066910907f91c\shdocvw.dll
[2007/11/12 23:41:28 | 000,136,480 | ---- | M] ( ) MD5=3A180779DF87301DD0DF0B34C8729208 -- C:\Program Files (x86)\Intuit\QuickBooks 2008\SHDocVw.dll
[2009/04/11 02:11:24 | 001,195,520 | ---- | M] (Microsoft Corporation) MD5=52414CF37708E802AA6F058695592DF9 -- C:\Windows\winsxs\amd64_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.18005_none_457f0214c1656a52\shdocvw.dll
[2011/07/01 21:34:16 | 001,075,712 | ---- | M] (Microsoft Corporation) MD5=7C91E76F3021DD5397A3065DCA72952F -- C:\Windows\winsxs\x86_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.22573_none_e99c5aec22601e6b\shdocvw.dll
[2008/01/20 21:47:18 | 001,067,520 | ---- | M] (Microsoft Corporation) MD5=86B89709BDFC7A59D566590CC30CDBB1 -- C:\Windows\winsxs\x86_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6001.18000_none_e774ed850be62dd0\shdocvw.dll
[2011/07/01 21:34:17 | 001,204,224 | ---- | M] (Microsoft Corporation) MD5=9DCAA0F7D8EC0C07BBBE724041DB7AC5 -- C:\Windows\SysNative\shdocvw.dll
[2011/07/01 21:34:17 | 001,204,224 | ---- | M] (Microsoft Corporation) MD5=9DCAA0F7D8EC0C07BBBE724041DB7AC5 -- C:\Windows\winsxs\amd64_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.18392_none_451ab79cc1b1113b\shdocvw.dll
[2011/07/01 21:34:16 | 001,203,712 | ---- | M] (Microsoft Corporation) MD5=A625A83AE37DBDC263BC517150C492D6 -- C:\Windows\winsxs\amd64_microsoft-windows-shdocvw_31bf3856ad364e35_6.0.6002.22573_none_45baf66fdabd8fa1\shdocvw.dll

< MD5 for: SHELL32.DLL >
[2011/01/21 10:04:53 | 011,587,584 | ---- | M] (Microsoft Corporation) MD5=028EF93B746FF370DFE35711A7569647 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22839_none_d30ead9f17e7e4ad\shell32.dll
[2011/01/21 10:46:32 | 011,582,464 | ---- | M] (Microsoft Corporation) MD5=048B65EC931A39A5F42016BE04775274 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18588_none_d24dfd21fef3bcf3\shell32.dll
[2011/01/21 11:27:57 | 011,588,096 | ---- | M] (Microsoft Corporation) MD5=221565A0217045A61D179B438BC4AC8A -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22574_none_d4c4de6515332ae2\shell32.dll
[2009/07/10 07:06:47 | 011,321,856 | ---- | M] (Microsoft Corporation) MD5=276AA16A23029F559BAB104011F97340 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.21081_none_d0ea2bb11af15638\shell32.dll
[2009/07/10 07:26:53 | 012,901,888 | ---- | M] (Microsoft Corporation) MD5=2D5DE5FDBFDC2656D09950464F38861E -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22467_none_c8978b5ce3a14f3b\shell32.dll
[2009/07/10 06:47:42 | 011,584,512 | ---- | M] (Microsoft Corporation) MD5=32C0C48A029F5EB94A609CE5F2D43BEB -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18063_none_d44509a3fc0e6134\shell32.dll
[2011/01/21 11:35:22 | 011,586,048 | ---- | M] (Microsoft Corporation) MD5=33AE914C24F546AABF281BA7B138186D -- C:\Windows\SysWOW64\shell32.dll
[2011/01/21 11:35:22 | 011,586,048 | ---- | M] (Microsoft Corporation) MD5=33AE914C24F546AABF281BA7B138186D -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18393_none_d4249f91fc26ac7c\shell32.dll
[2008/01/20 21:50:17 | 011,580,416 | ---- | M] (Microsoft Corporation) MD5=33E9CE9110597F1A47BA18B96EAFA6FA -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18000_none_d29c70b3feba20f0\shell32.dll
[2008/11/06 08:22:54 | 012,783,616 | ---- | M] (Microsoft Corporation) MD5=35ED725E28164143F2705679E2DCD74E -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16774_none_c619db55cd67f41e\shell32.dll
[2009/07/10 07:24:14 | 012,784,128 | ---- | M] (Microsoft Corporation) MD5=3D11FF698460623AC5EE188EECFA6AA3 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16883_none_c60e0d05cd70f3df\shell32.dll
[2008/08/20 16:44:02 | 011,319,808 | ---- | M] (Microsoft Corporation) MD5=3D58E32AA9A5C7F408D97675C81C9AED -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.20822_none_d12c317b1abf9780\shell32.dll
[2009/04/11 01:28:24 | 011,584,000 | ---- | M] (Microsoft Corporation) MD5=43466A7FF452883B68F52B963023949C -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18005_none_d487e9bffbdbec3c\shell32.dll
[2008/11/06 07:59:27 | 011,582,976 | ---- | M] (Microsoft Corporation) MD5=4A21B11997C1F14D8707C8C501CA59A7 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22303_none_d329122917d5070d\shell32.dll
[2008/11/06 09:17:19 | 012,900,864 | ---- | M] (Microsoft Corporation) MD5=4F385F044E580B086D5D2AC7AAF575A3 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22303_none_c8d467d6e3744512\shell32.dll
[2008/11/06 07:59:14 | 011,320,832 | ---- | M] (Microsoft Corporation) MD5=4F72C8F593AAB1B83FB5D62CBFBB51F9 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.20951_none_d10ac3531ad8cf23\shell32.dll
[2009/07/10 06:51:23 | 012,899,328 | ---- | M] (Microsoft Corporation) MD5=56435E71C088A209909E6B46F2EA9607 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18063_none_c9f05f51c7ad9f39\shell32.dll
[2008/08/20 16:44:04 | 012,789,248 | ---- | M] (Microsoft Corporation) MD5=5BA5613DDA5A6E86FA3B9036F5C7F4DA -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.20822_none_c6d78728e65ed585\shell32.dll
[2008/11/06 08:14:25 | 011,580,928 | ---- | M] (Microsoft Corporation) MD5=5D62692EEB77E32F67A966F1BDEB551B -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18167_none_d2629517fee4771e\shell32.dll
[2008/08/20 16:44:02 | 011,580,416 | ---- | M] (Microsoft Corporation) MD5=61509AF47F663A6EA941492ED181D60C -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18062_none_d25d91bffee8fb44\shell32.dll
[2009/07/10 06:56:12 | 012,898,304 | ---- | M] (Microsoft Corporation) MD5=664C32F278C503189F7C4313648AB322 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22169_none_ca7ffdd8e0c5d70d\shell32.dll
[2010/07/26 11:16:26 | 012,898,816 | ---- | M] (Microsoft Corporation) MD5=6D40970751D43912204A3B598E002650 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18287_none_c9dec46dc7ba36c5\shell32.dll
[2009/07/10 06:59:03 | 011,584,512 | ---- | M] (Microsoft Corporation) MD5=81A20AC0051ADA6F9FC58FA620BE4A78 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22467_none_d2ec35af18021136\shell32.dll
[2008/01/20 21:49:36 | 012,895,744 | ---- | M] (Microsoft Corporation) MD5=8202A5D97E889DE02E7920A4DB9C8F55 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18000_none_c847c661ca595ef5\shell32.dll
[2008/08/20 16:44:00 | 011,581,440 | ---- | M] (Microsoft Corporation) MD5=82A0A2AB2C637C11F28C1E37F76A284E -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22166_none_d2eb2fb31803006a\shell32.dll
[2009/07/10 07:35:27 | 012,791,296 | ---- | M] (Microsoft Corporation) MD5=8349002433D91DAC4BDF488894D42947 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.21081_none_c695815ee690943d\shell32.dll
[2010/07/26 13:04:15 | 011,587,072 | ---- | M] (Microsoft Corporation) MD5=895F23DE1778E6AADE0DEEBCC2E6AC0A -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22454_none_d4da7c571522f5d9\shell32.dll
[2008/08/20 16:44:01 | 012,898,816 | ---- | M] (Microsoft Corporation) MD5=8961813821111D50F64F03077DAD761F -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22166_none_c8968560e3a23e6f\shell32.dll
[2009/04/11 02:11:24 | 012,897,792 | ---- | M] (Microsoft Corporation) MD5=8A91F7274D88C2ABDC144A2D39EA5D7B -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18005_none_ca333f6dc77b2a41\shell32.dll
[2011/01/21 10:56:31 | 012,898,304 | ---- | M] (Microsoft Corporation) MD5=8D5F673564F28A84E4C1774733FD85B0 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18588_none_c7f952cfca92faf8\shell32.dll
[2010/07/26 10:51:48 | 011,584,512 | ---- | M] (Microsoft Corporation) MD5=91640C342AD09936D0E4B7EBDDB12091 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18287_none_d4336ebffc1af8c0\shell32.dll
[2011/01/21 10:47:13 | 012,905,472 | ---- | M] (Microsoft Corporation) MD5=93B9F9D8AE0783D8620596EC39A09169 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22839_none_c8ba034ce38722b2\shell32.dll
[2009/07/10 07:17:37 | 011,316,224 | ---- | M] (Microsoft Corporation) MD5=93FDB7E073B00D0BB7DF7182D882539F -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16883_none_d062b75801d1b5da\shell32.dll
[2008/11/06 08:15:02 | 012,790,272 | ---- | M] (Microsoft Corporation) MD5=A375E856A153FDF530455A2F57FDDA59 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.20951_none_c6b61900e6780d28\shell32.dll
[2009/07/10 07:37:03 | 012,897,792 | ---- | M] (Microsoft Corporation) MD5=A95DA55C79718C280BC9DFD328667BE6 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18287_none_c7f84cd3ca93ea2c\shell32.dll
[2010/07/26 13:14:16 | 012,901,376 | ---- | M] (Microsoft Corporation) MD5=AF63FDA1743172092A7140FC44EC90B9 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22454_none_ca85d204e0c233de\shell32.dll
[2010/07/26 12:08:53 | 012,904,448 | ---- | M] (Microsoft Corporation) MD5=BE7637D0E37F05A162590F35BA075089 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22735_none_c8b6003ee38ac02f\shell32.dll
[2008/08/20 16:44:04 | 012,784,128 | ---- | M] (Microsoft Corporation) MD5=C0964CBC399038D444199C2B04BE052F -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16680_none_c60b085bcd73ad8c\shell32.dll
[2011/01/21 11:48:57 | 012,901,376 | ---- | M] (Microsoft Corporation) MD5=C2E98ED510735E6DC4E5FB0FE8861662 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22574_none_ca703412e0d268e7\shell32.dll
[2008/08/20 16:44:01 | 012,897,280 | ---- | M] (Microsoft Corporation) MD5=C97B3A10B1C9E9AE8E6A3505D202FE95 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18062_none_c808e76dca883949\shell32.dll
[2010/07/26 11:56:52 | 011,586,560 | ---- | M] (Microsoft Corporation) MD5=CDE0D181CF5E5DD7E7C032A15365799C -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.22735_none_d30aaa9117eb822a\shell32.dll
[2008/11/06 07:57:06 | 011,315,712 | ---- | M] (Microsoft Corporation) MD5=CF1D75E7B4A7CC6D2A21FE64C9E50A12 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16774_none_d06e85a801c8b619\shell32.dll
[2008/11/06 08:32:58 | 012,897,792 | ---- | M] (Microsoft Corporation) MD5=D7DC3DCB97A022ABDF6C986C79F7C84F -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18167_none_c80deac5ca83b523\shell32.dll
[2010/07/26 11:55:26 | 011,581,440 | ---- | M] (Microsoft Corporation) MD5=DD2F953D9DCAAF080F724803A8121CE6 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18505_none_d2a17ba3feb59166\shell32.dll
[2009/07/10 06:49:50 | 011,584,512 | ---- | M] (Microsoft Corporation) MD5=E19E22CD00EA110B0CE2C13777CEF92C -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.22169_none_d4d4a82b15269908\shell32.dll
[2011/01/21 11:50:13 | 012,899,840 | ---- | M] (Microsoft Corporation) MD5=E9050087C3A3964B7B99899F22F51264 -- C:\Windows\SysNative\shell32.dll
[2011/01/21 11:50:13 | 012,899,840 | ---- | M] (Microsoft Corporation) MD5=E9050087C3A3964B7B99899F22F51264 -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6002.18393_none_c9cff53fc7c5ea81\shell32.dll
[2009/07/10 07:20:59 | 011,581,440 | ---- | M] (Microsoft Corporation) MD5=EB85D49F3129EBED4993E800521715DD -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18287_none_d24cf725fef4ac27\shell32.dll
[2010/07/26 10:31:05 | 012,898,304 | ---- | M] (Microsoft Corporation) MD5=ED1995DAEFC25C27EEDC11E74E4E0F5B -- C:\Windows\winsxs\amd64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6001.18505_none_c84cd151ca54cf6b\shell32.dll
[2008/08/20 16:44:03 | 011,315,712 | ---- | M] (Microsoft Corporation) MD5=FF37AF2D5DCAFC00BC46AF07B53699B0 -- C:\Windows\winsxs\wow64_microsoft-windows-shell32_31bf3856ad364e35_6.0.6000.16680_none_d05fb2ae01d46f87\shell32.dll

< MD5 for: URLMON.DLL >
[2009/03/08 06:34:55 | 001,206,784 | ---- | M] (Microsoft Corporation) MD5=05642AE6A7BDAA7541A7451F5A4C6512 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18702_none_97ce3a35ec955bb0\urlmon.dll
[2009/01/15 01:11:12 | 001,418,752 | ---- | M] (Microsoft Corporation) MD5=0598687B1DD786DE49DE32B752194993 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18203_none_1104b8098f24a2dc\urlmon.dll
[2009/01/14 23:51:05 | 001,428,992 | ---- | M] (Microsoft Corporation) MD5=06CBE8D2C3DC7326F926C950078F43A4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16809_none_0f247b1f91f8a9f5\urlmon.dll
[2009/04/24 10:41:42 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=07D179A87B332522C69DC1681D20D712 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22121_none_135d2836a57a9a25\urlmon.dll
[2009/08/27 07:54:42 | 001,426,944 | ---- | M] (Microsoft Corporation) MD5=0A4BE1FAC981FE997B368A8F00243284 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18100_none_12e82cdf8c4da649\urlmon.dll
[2011/07/22 00:16:55 | 001,344,512 | ---- | M] (Microsoft Corporation) MD5=0DF6A78793AC398353FF80ABE4768039 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.20534_none_d176bc0ce62eaa5b\urlmon.dll
[2009/01/14 23:19:06 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=0E6EF7AC9F4799B1DCCD78F3BE99D8D0 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20996_none_b32b2c3cf30487fd\urlmon.dll
[2011/02/22 02:54:40 | 001,490,432 | ---- | M] (Microsoft Corporation) MD5=0EA3D388E9A1003EEF64FB65D8A93165 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23143_none_f44c0f0cbe30235b\urlmon.dll
[2010/11/02 01:27:29 | 001,486,848 | ---- | M] (Microsoft Corporation) MD5=169CF5C9782284FBC7E0DB7AFD533493 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18999_none_f3928c3fa535740e\urlmon.dll
[2009/03/02 23:57:21 | 001,418,240 | ---- | M] (Microsoft Corporation) MD5=17F822AE64B1F6A29246F47CD23A0AB6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18226_none_10f2190f8f3226c3\urlmon.dll
[2009/07/18 07:37:34 | 001,418,752 | ---- | M] (Microsoft Corporation) MD5=192FE1C2EF9BEAF0C1E681C7F3D7AA0C -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18294_none_10a469078f6cb7ac\urlmon.dll
[2009/04/23 07:26:20 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=1A068358BCD4D9060E4D60A80B7A022C -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18024_none_12d68c498c5a4660\urlmon.dll
[2009/08/27 09:26:55 | 001,440,768 | ---- | M] (Microsoft Corporation) MD5=1B24D4A00DD41A8AB8E0C215F9E3432E -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21116_none_0fa02128ab214a14\urlmon.dll
[2009/07/18 07:49:09 | 001,432,064 | ---- | M] (Microsoft Corporation) MD5=1C11DFA1477EBD2F713BBADC9ADC3123 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21089_none_0f5770acab575c89\urlmon.dll
[2009/03/02 23:40:01 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=1C3A94FF887F81A5E5512FCFF358B71B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18226_none_b4d37d8bd6d4b58d\urlmon.dll
[2009/04/24 11:05:30 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=1CFC6DC26543EF0DDDE0DA01F656C8BF -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18248_none_b4bfde47d6e3201d\urlmon.dll
[2009/04/24 11:18:33 | 001,418,752 | ---- | M] (Microsoft Corporation) MD5=1E6C9E53929555E5BFEBB23133ABC50C -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18248_none_10de79cb8f409153\urlmon.dll
[2010/01/02 10:14:25 | 001,485,824 | ---- | M] (Microsoft Corporation) MD5=22F7DF551790F89B24948DB851B9BFE4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22973_none_f42bc540be4846c5\urlmon.dll
[2008/08/20 16:45:13 | 001,418,240 | ---- | M] (Microsoft Corporation) MD5=237D1BC04997238603C5D1B58FD14E2D -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18063_none_10c3d4b58f555034\urlmon.dll
[2008/08/20 16:45:17 | 001,431,040 | ---- | M] (Microsoft Corporation) MD5=25FD710192A1D57E530682BAD2E26CEB -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20823_none_0f927470ab2bec70\urlmon.dll
[2009/11/21 10:03:32 | 001,209,344 | ---- | M] (Microsoft Corporation) MD5=26EDD9C1785E2FC1BAFADA0AB72343AF -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22956_none_9825ca7305d7e9b2\urlmon.dll
[2009/08/27 08:17:35 | 001,175,040 | ---- | M] (Microsoft Corporation) MD5=2791541CE760110695F05ED8AFF0F18B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22508_none_b574be8eefe04a71\urlmon.dll
[2010/02/23 01:39:00 | 001,209,344 | ---- | M] (Microsoft Corporation) MD5=27D9CBCBABEE31693EEBEDFA0351EF18 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18904_none_97d03e95ec9388ac\urlmon.dll
[2010/09/08 01:40:51 | 001,486,848 | ---- | M] (Microsoft Corporation) MD5=2951620CA5706BE96EFFD4D4632C4E36 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18975_none_f3a42aefa528d6d0\urlmon.dll
[2009/04/24 11:06:00 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=2E0B277DB09E5716EC3EF8258691FFE8 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22418_none_11888840a845da71\urlmon.dll
[2010/02/23 02:02:49 | 001,484,288 | ---- | M] (Microsoft Corporation) MD5=33C36C4ADFA655F70AE490B5AF696983 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18904_none_f3eeda19a4f0f9e2\urlmon.dll
[2009/01/15 23:59:50 | 001,166,848 | ---- | M] (Microsoft Corporation) MD5=353880D255B122E28469B56EE0EA857C -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22355_none_b53baa48f00b8fd3\urlmon.dll
[2009/07/18 06:56:18 | 001,166,848 | ---- | M] (Microsoft Corporation) MD5=390CC2944AAF83C4FA4EE370A441AFC8 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22475_none_b5260c56f01bc4dc\urlmon.dll
[2011/05/28 01:27:50 | 001,488,384 | ---- | M] (Microsoft Corporation) MD5=3BC63DF085FE633AC6C5B34406E29AFD -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19088_none_f39c3403a52e7208\urlmon.dll
[2010/05/04 00:59:11 | 001,209,344 | ---- | M] (Microsoft Corporation) MD5=3D09139C98EDA8010F96B047D6D24C0B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18928_none_97be9fe5eca025ea\urlmon.dll
[2009/07/18 11:06:05 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=3DB3E70FE142671512933796C968E1F9 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18294_none_b485cd83d70f4676\urlmon.dll
[2009/08/27 09:02:23 | 001,168,384 | ---- | M] (Microsoft Corporation) MD5=3E826F7F47BFA2F92E073E61CAC0504B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16916_none_b2f810b7d9a605d2\urlmon.dll
[2008/10/16 00:02:33 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=3EAD3D2C3882253F2DD59C6B413A6A4D -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22288_none_113cd500a87ea3ba\urlmon.dll
[2008/10/15 23:47:34 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=41C039DEF8D0D5D0E7A9B32F09600402 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18157_none_b4b40c2bd6ec2590\urlmon.dll
[2010/09/08 01:24:54 | 001,211,904 | ---- | M] (Microsoft Corporation) MD5=42BBB00FB563E481A8DAD9529CC19677 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23067_none_981bd2f305df523c\urlmon.dll
[2009/08/27 00:52:06 | 001,484,288 | ---- | M] (Microsoft Corporation) MD5=455A66BD6C50E3776B4656BA8AA30548 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18828_none_f3dd3983a4fd99f9\urlmon.dll
[2011/05/28 01:08:44 | 001,211,904 | ---- | M] (Microsoft Corporation) MD5=45F40B53EC32DAF51AABAD4E0CD1FA0B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19088_none_977d987fecd100d2\urlmon.dll
[2009/01/14 23:59:56 | 001,432,064 | ---- | M] (Microsoft Corporation) MD5=49F4287AB53AE872C1C7B1994D7E0F41 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20996_none_0f49c7c0ab61f933\urlmon.dll
[2009/03/02 23:59:57 | 001,419,264 | ---- | M] (Microsoft Corporation) MD5=4A5728748715A8E1225A3A7FE475AB22 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22389_none_113dd730a87dba38\urlmon.dll
[2008/10/16 00:49:37 | 001,418,240 | ---- | M] (Microsoft Corporation) MD5=4A841611F85CA1DC8BF0BD817D88B884 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18157_none_10d2a7af8f4996c6\urlmon.dll
[2009/03/02 23:36:07 | 001,432,064 | ---- | M] (Microsoft Corporation) MD5=4B3C08F030C46155BCADAA14C6D868F9 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21023_none_0f924e78ab2c1cd9\urlmon.dll
[2008/08/20 16:45:17 | 001,427,968 | ---- | M] (Microsoft Corporation) MD5=4E9DBD2DF80280D73F753D890477E18A -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16681_none_0ec5f5a39240c477\urlmon.dll
[2009/08/27 08:40:32 | 001,170,944 | ---- | M] (Microsoft Corporation) MD5=4ED8811745EC4D3304CBB42DF372D7C1 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21116_none_b38185a4f2c3d8de\urlmon.dll
[2010/06/26 02:07:32 | 001,489,408 | ---- | M] (Microsoft Corporation) MD5=5003D0FA55868D66A96EAE3A28C27C9D -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23040_none_f4490c48be32da2f\urlmon.dll
[2010/11/02 01:01:41 | 001,210,880 | ---- | M] (Microsoft Corporation) MD5=581D19B3EFF0A7FEAC6FE7FE7270E3A0 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18999_none_9773f0bbecd802d8\urlmon.dll
[2010/05/04 01:56:08 | 001,484,288 | ---- | M] (Microsoft Corporation) MD5=5CFE76FAE2B5711B5E9D24BF00FB794E -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18928_none_f3dd3b69a4fd9720\urlmon.dll
[2009/03/02 23:40:59 | 001,428,992 | ---- | M] (Microsoft Corporation) MD5=5DC04F9CF62EBBF838674BE6B1C1799A -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16830_none_0efb08c1921919b9\urlmon.dll
[2008/08/20 16:45:14 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=5E4F2E3846DB2699D96F1B28E83B94C3 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18063_none_b4a53931d6f7defe\urlmon.dll
[2011/07/22 00:36:34 | 001,344,512 | ---- | M] (Microsoft Corporation) MD5=5FFA26235E31B244316DB1FE54D2F030 -- C:\Windows\SysNative\urlmon.dll
[2011/07/22 00:36:34 | 001,344,512 | ---- | M] (Microsoft Corporation) MD5=5FFA26235E31B244316DB1FE54D2F030 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.16434_none_d0ed1f41cd110a91\urlmon.dll
[2009/04/11 01:28:25 | 001,167,872 | ---- | M] (Microsoft Corporation) MD5=62F5F76338391A44F4A0E871FFD35A27 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18005_none_b6ce90e7d3ebb69f\urlmon.dll
[2009/04/24 10:43:24 | 001,167,872 | ---- | M] (Microsoft Corporation) MD5=64BEA7851CEB062600F079B809CE4D14 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22121_none_b73e8cb2ed1d28ef\urlmon.dll
[2009/04/24 11:25:27 | 001,432,064 | ---- | M] (Microsoft Corporation) MD5=663BD8536763A47BD85657001EB50730 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21046_none_0f7faf7eab39a0c0\urlmon.dll
[2009/04/24 11:00:07 | 001,166,848 | ---- | M] (Microsoft Corporation) MD5=6940F9B16BDFF1AB8BAE7F6C73689534 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22418_none_b569ecbcefe8693b\urlmon.dll
[2008/10/15 23:43:03 | 001,428,480 | ---- | M] (Microsoft Corporation) MD5=6A17F44FFC35696F06DF18D23B726735 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16764_none_0ede983f922dd5c1\urlmon.dll
[2010/11/02 02:11:49 | 001,211,904 | ---- | M] (Microsoft Corporation) MD5=6AAA7BFA435FD04D56873AA2C7955F41 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23091_none_97f5617305fd0e05\urlmon.dll
[2010/05/04 01:31:28 | 001,209,856 | ---- | M] (Microsoft Corporation) MD5=6D9D1A094A3DA66B17DE897D00A65FC4 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23019_none_9853e32305b4f935\urlmon.dll
[2008/01/20 21:49:43 | 001,165,824 | ---- | M] (Microsoft Corporation) MD5=6FD4D51AA2DA0314DC77A150EB6D3980 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18000_none_b4e317dbd6c9eb53\urlmon.dll
[2011/02/22 01:21:17 | 001,210,880 | ---- | M] (Microsoft Corporation) MD5=7143942B5072A782874BCA36CEB63A0D -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19048_none_97a8d82fecb0910e\urlmon.dll
[2010/05/04 01:58:02 | 001,487,360 | ---- | M] (Microsoft Corporation) MD5=75A546E65AC3048E23BD5BC299225BEB -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23019_none_f4727ea6be126a6b\urlmon.dll
[2009/08/27 08:47:36 | 001,426,432 | ---- | M] (Microsoft Corporation) MD5=7631D8389579DD4335F89D837ED78974 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18319_none_10ffebbf8f2753fe\urlmon.dll
[2010/12/18 01:55:05 | 001,486,848 | ---- | M] (Microsoft Corporation) MD5=7A096EE8843AA64125C19CFBB577E477 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19019_none_f3e8e3c1a4f4c7c8\urlmon.dll
[2010/06/26 01:30:00 | 001,487,360 | ---- | M] (Microsoft Corporation) MD5=7AA5D94F0D7801877DC420EAC339F759 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18943_none_f3c29a1fa512504f\urlmon.dll
[2009/01/16 07:27:11 | 001,419,264 | ---- | M] (Microsoft Corporation) MD5=7D881E47DE9B592F66B005E4575FEED4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22355_none_115a45cca8690109\urlmon.dll
[2011/05/28 02:45:36 | 001,491,456 | ---- | M] (Microsoft Corporation) MD5=7EDD9149736A00682641A5F161FF44C0 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23181_none_f41ecec8be526071\urlmon.dll
[2009/08/27 08:32:28 | 001,174,528 | ---- | M] (Microsoft Corporation) MD5=822B8B0184D54D5D0E2752B63DEEFCA9 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18319_none_b4e1503bd6c9e2c8\urlmon.dll
[2009/07/18 06:34:58 | 001,167,872 | ---- | M] (Microsoft Corporation) MD5=836E4160444FC8B3BE1D4BB4F088446F -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18071_none_b67ee04bd42814da\urlmon.dll
[2009/04/11 02:11:27 | 001,419,264 | ---- | M] (Microsoft Corporation) MD5=83E33FBF81B6152B1D6A68E62FF2E71C -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18005_none_12ed2c6b8c4927d5\urlmon.dll
[2009/08/27 00:22:15 | 001,208,832 | ---- | M] (Microsoft Corporation) MD5=86DD5DBBD2826ED13FE60CFF47AC3B85 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18828_none_97be9dffeca028c3\urlmon.dll
[2009/04/24 11:28:52 | 001,428,480 | ---- | M] (Microsoft Corporation) MD5=8AFC9C3C2D418926F349A83262AF4200 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16851_none_0ee6693392286af2\urlmon.dll
[2009/07/18 07:25:03 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=8C8D956068C45F13B76B078E59A884F5 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22475_none_1144a7daa8793612\urlmon.dll
[2010/02/23 10:59:19 | 001,487,360 | ---- | M] (Microsoft Corporation) MD5=8CD5DC3AD3F36B362D13F8CF4173A1F8 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22995_none_f41825fcbe56b155\urlmon.dll
[2010/06/26 01:05:41 | 001,210,368 | ---- | M] (Microsoft Corporation) MD5=8F00B0BDA224A14B1861E612863BD98E -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18943_none_97a3fe9becb4df19\urlmon.dll
[2009/11/21 01:40:03 | 001,208,832 | ---- | M] (Microsoft Corporation) MD5=90994C86A852DD9BBBE26B1D79D621B1 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18865_none_97905d71ecc34c82\urlmon.dll
[2010/12/18 01:26:50 | 001,210,880 | ---- | M] (Microsoft Corporation) MD5=91F4319C6C0F9CF11412415779CB12C1 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19019_none_97ca483dec975692\urlmon.dll
[2010/01/02 02:08:15 | 001,483,776 | ---- | M] (Microsoft Corporation) MD5=943DB5ADF0BCC8BF1EE1A626F4860B86 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18882_none_f396583fa533a995\urlmon.dll
[2009/08/27 07:40:51 | 001,176,064 | ---- | M] (Microsoft Corporation) MD5=957ADB59EB02B93B8F3414CA4145747B -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18100_none_b6c9915bd3f03513\urlmon.dll
[2008/10/15 23:38:28 | 001,166,848 | ---- | M] (Microsoft Corporation) MD5=9707A414766A70C1CD125B91D6BFC035 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22288_none_b51e397cf0213284\urlmon.dll
[2009/07/18 06:47:42 | 001,167,872 | ---- | M] (Microsoft Corporation) MD5=9AC68744C31EC09C33B3AECE2C45F25C -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22180_none_b6fcace0ed4eb73e\urlmon.dll
[2008/08/20 16:45:13 | 001,418,240 | ---- | M] (Microsoft Corporation) MD5=9C78D69FDFDF7A2F3840632239E75C34 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22167_none_115172a8a86f555a\urlmon.dll
[2009/07/18 07:16:11 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=9CACBEC055AC59FFA691D357C6904954 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21089_none_b338d528f2f9eb53\urlmon.dll
[2009/08/27 09:18:02 | 001,435,648 | ---- | M] (Microsoft Corporation) MD5=9DC0494DA1024312C599525876AB821A -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16916_none_0f16ac3b92037708\urlmon.dll
[2008/08/20 16:45:13 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=9EF388245B2E198704A41C44DF4EEC14 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22167_none_b532d724f011e424\urlmon.dll
[2009/08/27 08:29:29 | 001,209,344 | ---- | M] (Microsoft Corporation) MD5=A0CCC7278C52E689A8BE28E2191FFF59 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22918_none_98530ab705b5ac9c\urlmon.dll
[2010/12/18 02:17:53 | 001,211,904 | ---- | M] (Microsoft Corporation) MD5=A40252BC6BE95C9B4B5D875B0C25512C -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23111_none_984be2b905bc2ba4\urlmon.dll
[2009/07/18 06:46:58 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=A946D8707E531DF562B86E81E88E80E7 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22180_none_131b4864a5ac2874\urlmon.dll
[2009/03/02 23:32:51 | 001,166,848 | ---- | M] (Microsoft Corporation) MD5=A98E3BAB0DC627CD4E5BE9B96CA22E91 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22389_none_b51f3bacf0204902\urlmon.dll
[2009/08/27 09:03:13 | 001,486,336 | ---- | M] (Microsoft Corporation) MD5=AABE62E9E619EECCA2B710E96BFF2070 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22918_none_f471a63abe131dd2\urlmon.dll
[2010/06/26 01:51:21 | 001,211,904 | ---- | M] (Microsoft Corporation) MD5=AB3BD36B597950D5C80B76ADCD1F9326 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23040_none_982a70c505d568f9\urlmon.dll
[2009/03/02 23:20:03 | 001,160,192 | ---- | M] (Microsoft Corporation) MD5=AC2B3E2F2DF33245FC1030197E13B248 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16830_none_b2dc6d3dd9bba883\urlmon.dll
[2009/01/14 23:16:03 | 001,160,192 | ---- | M] (Microsoft Corporation) MD5=AD0675AF94230B374FA2D7C97FA72D71 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16809_none_b305df9bd99b38bf\urlmon.dll
[2008/10/15 23:30:52 | 001,431,552 | ---- | M] (Microsoft Corporation) MD5=ADD6F43AA2542D8A6B16D1C49BA4924D -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20937_none_0f8ba792ab306ae4\urlmon.dll
[2009/08/27 08:31:45 | 001,426,944 | ---- | M] (Microsoft Corporation) MD5=B2084F8E75479DFE23C094E2B5B4F2CF -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.22508_none_11935a12a83dbba7\urlmon.dll
[2010/01/02 09:56:01 | 001,209,344 | ---- | M] (Microsoft Corporation) MD5=B30EAA9B9B7DBDD8CC5D143472B2F16E -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22973_none_980d29bd05ead58f\urlmon.dll
[2011/02/22 01:50:27 | 001,486,848 | ---- | M] (Microsoft Corporation) MD5=BB3A429E6DF6D0E25BC2C92DD8002A75 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.19048_none_f3c773b3a50e0244\urlmon.dll
[2008/08/20 16:45:17 | 001,162,752 | ---- | M] (Microsoft Corporation) MD5=BE5269680658C57CD9AED2AF337D195E -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20823_none_b373d8ecf2ce7b3a\urlmon.dll
[2009/04/24 11:01:09 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=BFF48C81CB4CBA6A5457BE54604DA036 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21046_none_b36113faf2dc2f8a\urlmon.dll
[2010/02/23 10:05:54 | 001,209,856 | ---- | M] (Microsoft Corporation) MD5=C0082559166086C1328A3CB6BE4B3226 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22995_none_97f98a7905f9401f\urlmon.dll
[2009/03/08 06:41:09 | 001,481,728 | ---- | M] (Microsoft Corporation) MD5=C1779041C5761518ABD5A4287F49BE73 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18702_none_f3ecd5b9a4f2cce6\urlmon.dll
[2009/07/18 06:50:27 | 001,419,776 | ---- | M] (Microsoft Corporation) MD5=C26FAE1A19934D3B9E11A72F5F2E0666 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18071_none_129d7bcf8c858610\urlmon.dll
[2010/11/02 02:40:49 | 001,489,408 | ---- | M] (Microsoft Corporation) MD5=C2A7D767BFCE287C47D69B152C94FEF4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23091_none_f413fcf6be5a7f3b\urlmon.dll
[2008/10/15 23:40:37 | 001,160,192 | ---- | M] (Microsoft Corporation) MD5=CC7E957A6F118030374DCDF21FEA3C96 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16764_none_b2bffcbbd9d0648b\urlmon.dll
[2009/08/27 07:52:32 | 001,426,944 | ---- | M] (Microsoft Corporation) MD5=D0899D4ABDB46471362FBFA2BE1B6642 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22212_none_1368fa52a57194b2\urlmon.dll
[2011/07/21 21:49:01 | 001,102,848 | ---- | M] (Microsoft Corporation) MD5=D217B0DA82FDD942C048749993275AC6 -- C:\Windows\SysWOW64\urlmon.dll
[2011/07/21 21:49:01 | 001,102,848 | ---- | M] (Microsoft Corporation) MD5=D217B0DA82FDD942C048749993275AC6 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.16434_none_74ce83be14b3995b\urlmon.dll
[2008/10/15 23:23:50 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=D2899FFCC2943F9D6969304D1D9FB47A -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.20937_none_b36d0c0ef2d2f9ae\urlmon.dll
[2009/08/27 07:56:27 | 001,176,064 | ---- | M] (Microsoft Corporation) MD5=D3AC2B7CE02746A875C6D927B076CD2D -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.22212_none_b74a5eceed14237c\urlmon.dll
[2008/01/20 21:48:55 | 001,417,728 | ---- | M] (Microsoft Corporation) MD5=D541D85839E9B04070AC529A3AAC21E6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18000_none_1101b35f8f275c89\urlmon.dll
[2010/01/02 01:38:04 | 001,208,832 | ---- | M] (Microsoft Corporation) MD5=D5B99F82E9AE7EF1ACB28340C5C61B79 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18882_none_9777bcbbecd6385f\urlmon.dll
[2009/11/21 01:51:50 | 001,484,288 | ---- | M] (Microsoft Corporation) MD5=DBC8EBED8BE04E12D059C14655800938 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18865_none_f3aef8f5a520bdb8\urlmon.dll
[2011/05/28 02:11:55 | 001,213,952 | ---- | M] (Microsoft Corporation) MD5=DC17D6411D79E20F6E57A77D122D9B4D -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23181_none_9800334505f4ef3b\urlmon.dll
[2010/09/08 01:01:15 | 001,210,880 | ---- | M] (Microsoft Corporation) MD5=DD7ACFC238730C217C5D63BCE12AB8DC -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.18975_none_97858f6beccb659a\urlmon.dll
[2010/12/18 02:53:27 | 001,489,408 | ---- | M] (Microsoft Corporation) MD5=DED1C8B9F0FA2D5B37ECB0DC03F79620 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23111_none_f46a7e3cbe199cda\urlmon.dll
[2011/07/01 21:38:03 | 001,102,336 | ---- | M] (Microsoft Corporation) MD5=DF6DE2F5AFB9FA1CFA02081EF9B3E7E8 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.16430_none_74ca829614b733ff\urlmon.dll
[2011/07/01 21:37:34 | 001,344,000 | ---- | M] (Microsoft Corporation) MD5=DFA0B8720CD43FBF774E4E3E130F75BE -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.16430_none_d0e91e19cd14a535\urlmon.dll
[2009/07/18 07:46:51 | 001,427,968 | ---- | M] (Microsoft Corporation) MD5=E6D2139F86807FED10FC83A86ED137B2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16890_none_0eba29399249c15f\urlmon.dll
[2009/07/18 07:16:59 | 001,159,680 | ---- | M] (Microsoft Corporation) MD5=E70DB3D4C3803E561558438A59F98A76 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16890_none_b29b8db5d9ec5029\urlmon.dll
[2009/04/24 11:22:13 | 001,159,680 | ---- | M] (Microsoft Corporation) MD5=E8B220F5EEB383B580DD107C724001C5 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16851_none_b2c7cdafd9caf9bc\urlmon.dll
[2009/03/02 23:18:04 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=E959E1043A49B386845AFDFBCFAB8A75 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.21023_none_b373b2f4f2ceaba3\urlmon.dll
[2010/09/08 02:11:52 | 001,489,408 | ---- | M] (Microsoft Corporation) MD5=EF0BF595679565FB2D4AB56E27ED725C -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23067_none_f43a6e76be3cc372\urlmon.dll
[2009/11/21 10:02:01 | 001,485,824 | ---- | M] (Microsoft Corporation) MD5=F60A08659220117D16356FB009D55814 -- C:\Windows\winsxs\amd64_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.22956_none_f44465f6be355ae8\urlmon.dll
[2011/07/21 20:48:50 | 001,102,848 | ---- | M] (Microsoft Corporation) MD5=F715C2BCA826CC556C256F66F5B41546 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_9.1.8112.20534_none_755820892dd13925\urlmon.dll
[2009/01/15 01:11:05 | 001,166,336 | ---- | M] (Microsoft Corporation) MD5=F93F047F42BB89401EE58FBCFD3204CE -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6001.18203_none_b4e61c85d6c731a6\urlmon.dll
[2009/04/23 07:15:24 | 001,167,872 | ---- | M] (Microsoft Corporation) MD5=FA9A82260A0A06FA967D85D2DBDA5F40 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6002.18024_none_b6b7f0c5d3fcd52a\urlmon.dll
[2011/02/22 02:18:22 | 001,212,928 | ---- | M] (Microsoft Corporation) MD5=FB2E03C3996607B0449B27EEBA0020D1 -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_8.0.6001.23143_none_982d738905d2b225\urlmon.dll
[2008/08/20 16:45:17 | 001,159,680 | ---- | M] (Microsoft Corporation) MD5=FCA38D14AA8877C7AA3C7030D9E40CCC -- C:\Windows\winsxs\x86_microsoft-windows-i..ersandsecurityzones_31bf3856ad364e35_6.0.6000.16681_none_b2a75a1fd9e35341\urlmon.dll

< MD5 for: WININET.DLL >
[2009/08/27 07:54:55 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=026F1913640BD1AB1E4E551A14E413D2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18100_none_5fee08815756ccdc\wininet.dll
[2011/02/22 01:21:28 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=047CDEFF94B63F0A4791372B47427B60 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19048_none_e4aeb3d1b7b9b7a1\wininet.dll
[2009/08/27 09:18:18 | 001,042,432 | ---- | M] (Microsoft Corporation) MD5=069A33DDF9A71531BD6CF5D3DA56EA4E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16916_none_5c1c87dd5d0c9d9b\wininet.dll
[2011/07/22 00:36:16 | 001,389,056 | ---- | M] (Microsoft Corporation) MD5=0732B49B250E306F7A6591029AF9885B -- C:\Windows\ERDNT\cache64\wininet.dll
[2011/07/22 00:36:16 | 001,389,056 | ---- | M] (Microsoft Corporation) MD5=0732B49B250E306F7A6591029AF9885B -- C:\Windows\SysNative\wininet.dll
[2011/07/22 00:36:16 | 001,389,056 | ---- | M] (Microsoft Corporation) MD5=0732B49B250E306F7A6591029AF9885B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.16434_none_1df2fae3981a3124\wininet.dll
[2009/04/24 10:43:32 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=07DBFC0759F61E95901AF2B2D4E83451 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22121_none_04446854b8264f82\wininet.dll
[2010/06/26 02:07:43 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=0B27168AD18C00B4532D11ADF08FDF16 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23040_none_414ee7ea893c00c2\wininet.dll
[2009/11/21 10:03:43 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=0B603B1B76FF6CA2D88B658A9ECC40E8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22956_none_e52ba614d0e11045\wininet.dll
[2009/07/18 06:50:40 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=11383CCD9514FC4B2B21115841C6E74C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18071_none_5fa35771578eaca3\wininet.dll
[2011/07/22 00:17:08 | 001,389,056 | ---- | M] (Microsoft Corporation) MD5=1A5A6898E90546B476D4E8A56626FC96 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.20534_none_1e7c97aeb137d0ee\wininet.dll
[2011/07/01 21:37:34 | 001,389,056 | ---- | M] (Microsoft Corporation) MD5=1BF2BCC7E3C26FD4C8EF0C9EFB0CC25D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.16421_none_1dfac9f19814c92e\wininet.dll
[2009/07/18 07:49:30 | 001,025,536 | ---- | M] (Microsoft Corporation) MD5=1C0825B3B7CFDC5B868770A853DDF7E6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21089_none_5c5d4c4e7660831c\wininet.dll
[2010/01/02 09:56:17 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=1DC5E46312CBA5C1614B3D3359DB09C5 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22973_none_e513055ed0f3fc22\wininet.dll
[2009/04/11 02:11:28 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=1FA5623B49F69207B2E1DA94DB1C5B7D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18005_none_5ff3080d57524e68\wininet.dll
[2010/02/23 10:06:06 | 000,919,040 | ---- | M] (Microsoft Corporation) MD5=24427C9C96556887A2F161800F00B2DE -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22995_none_e4ff661ad10266b2\wininet.dll
[2009/04/23 07:15:31 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=24CBE22F35941FBFD6144A5C011EA999 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18024_none_03bdcc679f05fbbd\wininet.dll
[2009/08/27 08:47:55 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=2827B72363F5E4BD0BAF98D0518D2692 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18319_none_5e05c7615a307a91\wininet.dll
[2009/08/27 09:02:34 | 000,832,512 | ---- | M] (Microsoft Corporation) MD5=2BD22AA29893876347BA1BE62487748A -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16916_none_fffdec59a4af2c65\wininet.dll
[2011/07/21 21:48:26 | 001,126,912 | ---- | M] (Microsoft Corporation) MD5=2C7332C222D1FE1FC57D622699A8C001 -- C:\Windows\ERDNT\cache86\wininet.dll
[2011/07/21 21:48:26 | 001,126,912 | ---- | M] (Microsoft Corporation) MD5=2C7332C222D1FE1FC57D622699A8C001 -- C:\Windows\SysWOW64\wininet.dll
[2011/07/21 21:48:26 | 001,126,912 | ---- | M] (Microsoft Corporation) MD5=2C7332C222D1FE1FC57D622699A8C001 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.16434_none_c1d45f5fdfbcbfee\wininet.dll
[2010/02/23 11:01:18 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=2F7F1BB11E62BA2E3170B6A6B847DF3D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22995_none_411e019e895fd7e8\wininet.dll
[2010/01/02 10:14:38 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=305732FEE113625C4F410878786B043B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22973_none_4131a0e289516d58\wininet.dll
[2009/04/24 11:19:00 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=331453677C30BE6534FC955E252CEA3C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18248_none_5de4556d5a49b7e6\wininet.dll
[2009/03/03 00:00:10 | 001,014,784 | ---- | M] (Microsoft Corporation) MD5=34FEB009DEE9A9219B67D9AC0D90A1A7 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22389_none_5e43b2d27386e0cb\wininet.dll
[2008/01/20 21:48:20 | 001,011,712 | ---- | M] (Microsoft Corporation) MD5=364B631BCD934D95CCD2E373F8DD8D7C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18000_none_5e078f015a30831c\wininet.dll
[2009/07/18 06:47:51 | 000,828,928 | ---- | M] (Microsoft Corporation) MD5=387B0601FCA64AF5117C321E46C4C4E2 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22180_none_04028882b857ddd1\wininet.dll
[2009/11/21 10:02:12 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=3958F2ACD7C145882861B0CCF9167B8D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22956_none_414a4198893e817b\wininet.dll
[2009/04/23 07:26:35 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=3E2312FF315A1DC8783FB327076AB671 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18024_none_5fdc67eb57636cf3\wininet.dll
[2009/03/02 23:32:59 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=3ED9859939928CA568F487AB42175A33 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22389_none_0225174ebb296f95\wininet.dll
[2009/07/18 06:35:05 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=408A0A6E83333F98D564D95CDBB6D3C6 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18071_none_0384bbed9f313b6d\wininet.dll
[2008/10/15 23:31:07 | 001,024,512 | ---- | M] (Microsoft Corporation) MD5=428A8BB8016D66089CF1EFFA9970A76C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20937_none_5c91833476399177\wininet.dll
[2008/08/20 16:45:17 | 000,826,880 | ---- | M] (Microsoft Corporation) MD5=44FD3968AD885026D94450832A78DE8A -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18063_none_01ab14d3a2010591\wininet.dll
[2008/01/20 21:49:05 | 000,825,856 | ---- | M] (Microsoft Corporation) MD5=455D715A840579BDC1CF8E5C1DA76849 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18000_none_01e8f37da1d311e6\wininet.dll
[2009/08/27 07:52:43 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=4709D3DBA8F3D3658E3CC0D5D7CE4C15 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22212_none_606ed5f4707abb45\wininet.dll
[2008/10/15 23:38:28 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=4944C9FFE8903A276590D4215F74B937 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22288_none_0224151ebb2a5917\wininet.dll
[2009/01/15 01:11:35 | 001,013,248 | ---- | M] (Microsoft Corporation) MD5=4C45D9EEB15838F96D77178CD6CD4244 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18203_none_5e0a93ab5a2dc96f\wininet.dll
[2010/09/08 01:01:28 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=545264F1F3AC5BD57B159EBBDC4FDC58 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18975_none_e48b6b0db7d48c2d\wininet.dll
[2010/11/02 01:01:54 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=5681261BF2572F8776E1344DCB090C0B -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18999_none_e479cc5db7e1296b\wininet.dll
[2009/08/27 07:56:34 | 000,834,048 | ---- | M] (Microsoft Corporation) MD5=5E382486BCCCF4C50A810E2DF18C8CDB -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22212_none_04503a70b81d4a0f\wininet.dll
[2009/08/27 08:32:41 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=604E16194F1E60084B948ACAE8334E0F -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18319_none_01e72bdda1d3095b\wininet.dll
[2009/07/18 07:25:13 | 001,015,296 | ---- | M] (Microsoft Corporation) MD5=609E4B4A257B4036245AEF3F8F3488E3 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22475_none_5e4a837c73825ca5\wininet.dll
[2008/10/15 23:24:00 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=622FE627D15DD920238A993021F0A4D1 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20937_none_0072e7b0bddc2041\wininet.dll
[2010/11/02 02:41:00 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=63B2D6E23FC6115EA8864C7DC4DC3E00 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23091_none_4119d8988963a5ce\wininet.dll
[2010/12/18 02:53:39 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=6458A6B10895B0F9E63A6ACB04F2102A -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23111_none_417059de8922c36d\wininet.dll
[2009/04/24 10:41:54 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=6474C9B87A44943EFBCB115352F866A0 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22121_none_606303d87083c0b8\wininet.dll
[2009/04/24 11:05:41 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=64EAF7CF461A15DB4EAEB1D50A10E88E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18248_none_01c5b9e9a1ec46b0\wininet.dll
[2009/01/14 23:19:13 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=65647F41CEC0C8EEC9DF5BC1168EC76C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20996_none_003107debe0dae90\wininet.dll
[2009/01/16 00:00:04 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=6A986C2CD30633447DAB21A4852E40D6 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22355_none_024185eabb14b666\wininet.dll
[2009/03/08 06:40:56 | 001,146,368 | ---- | M] (Microsoft Corporation) MD5=6BEDD690B7E6EBA0E9E193E17832372F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18702_none_40f2b15b6ffbf379\wininet.dll
[2010/09/08 01:41:05 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=6BF6EDCB40B6928BB49FEC83C8B24AF1 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18975_none_40aa06917031fd63\wininet.dll
[2009/03/08 06:34:57 | 000,914,944 | ---- | M] (Microsoft Corporation) MD5=6CE32F7778061CCC5814D5E0F282D369 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18702_none_e4d415d7b79e8243\wininet.dll
[2010/09/08 01:25:04 | 000,919,552 | ---- | M] (Microsoft Corporation) MD5=6D4B5C39BB00A8BD98462664E73AC403 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23067_none_e521ae94d0e878cf\wininet.dll
[2009/03/02 23:40:12 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=6E115E2D3FAE5077A361A5BCE78FF170 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18226_none_01d9592da1dddc20\wininet.dll
[2009/04/24 11:29:16 | 001,023,488 | ---- | M] (Microsoft Corporation) MD5=6FC180D7D8B72C96766F854FCD2CAA5B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16851_none_5bec44d55d319185\wininet.dll
[2011/02/22 01:50:39 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=749C440784B33BC358C8D633AE64A657 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19048_none_40cd4f55701728d7\wininet.dll
[2010/12/18 01:27:04 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=74BCC23D622F32DA0450D164735ACAB1 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19019_none_e4d023dfb7a07d25\wininet.dll
[2009/04/24 11:00:16 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=77C60DD61D21777734B1C945540473A4 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22418_none_026fc85ebaf18fce\wininet.dll
[2010/06/26 01:05:49 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=78D42E00B5AB233F34116C0EF07F1BC9 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18943_none_e4a9da3db7be05ac\wininet.dll
[2011/05/28 01:28:00 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=79F3767D90BA6D04D936DC16FDCB4FB2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19088_none_40a20fa57037989b\wininet.dll
[2010/11/02 01:27:41 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=7C39BB00E4B011575C345EE1914172E4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18999_none_409867e1703e9aa1\wininet.dll
[2010/12/18 02:18:09 | 000,919,552 | ---- | M] (Microsoft Corporation) MD5=7D6AACE6BF60B5A1D572E082DEC9F0F0 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23111_none_e551be5ad0c55237\wininet.dll
[2009/07/18 06:56:28 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=7FCA93009963EE8A7AF1740661412F1E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22475_none_022be7f8bb24eb6f\wininet.dll
[2008/10/16 00:02:35 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=80C4706935A12EF0DC73F0D0F5A1E577 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22288_none_5e42b0a27387ca4d\wininet.dll
[2009/07/18 07:47:07 | 001,023,488 | ---- | M] (Microsoft Corporation) MD5=85A61BFCA4EEF0AA59AB17E455A2D589 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16890_none_5bc004db5d52e7f2\wininet.dll
[2009/04/11 01:28:25 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=8777B44511D8BCCF47B5A7CBDC02DE11 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18005_none_03d46c899ef4dd32\wininet.dll
[2009/07/18 07:17:15 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=87D84C48693EB949350FA938D63512D8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16890_none_ffa16957a4f576bc\wininet.dll
[2009/03/02 23:18:09 | 000,828,416 | ---- | M] (Microsoft Corporation) MD5=88B57405AC5B2BF513069086F8963635 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21023_none_00798e96bdd7d236\wininet.dll
[2009/11/21 01:52:02 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=8A0346910DF96622B82E3411BC6DBB72 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18865_none_40b4d4977029e44b\wininet.dll
[2008/10/16 00:49:38 | 001,013,248 | ---- | M] (Microsoft Corporation) MD5=8CDADEC7D01F5AE41FD9C49A7053E89B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18157_none_5dd883515a52bd59\wininet.dll
[2008/10/15 23:47:35 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=8F89FFECF6989DD7D9ECCEC6D95D7419 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18157_none_01b9e7cda1f54c23\wininet.dll
[2008/08/20 16:45:26 | 000,826,368 | ---- | M] (Microsoft Corporation) MD5=9191790BF02A8D759EC2B4E4FA868407 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16681_none_ffad35c1a4ec79d4\wininet.dll
[2010/01/02 01:38:20 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=91B8712BDC74295DA14A08F519B70D65 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18882_none_e47d985db7df5ef2\wininet.dll
[2009/08/27 09:27:09 | 001,052,160 | ---- | M] (Microsoft Corporation) MD5=924C27EDCFD50A5E7D79962A567106FB -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21116_none_5ca5fcca762a70a7\wininet.dll
[2009/07/18 07:37:53 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=956D2BEADD52257222326EB8537C9C5B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18294_none_5daa44a95a75de3f\wininet.dll
[2011/05/28 02:45:53 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=964B0B8A24D4E3FAE0E365F4BEBEC471 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23181_none_4124aa6a895b8704\wininet.dll
[2010/05/04 01:31:32 | 000,919,040 | ---- | M] (Microsoft Corporation) MD5=9DF755B063C647A1CAEB17F3E2FDDE1D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23019_none_e559bec4d0be1fc8\wininet.dll
[2009/01/14 23:51:06 | 001,022,464 | ---- | M] (Microsoft Corporation) MD5=A0662CC26EEDC71C8598CBD7C986B09D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16809_none_5c2a56c15d01d088\wininet.dll
[2011/07/01 21:38:03 | 001,126,912 | ---- | M] (Microsoft Corporation) MD5=A1236375B74EA63C75657D564890C436 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.16421_none_c1dc2e6ddfb757f8\wininet.dll
[2010/02/23 02:03:02 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=A1CDFFE798DA1EBF3479F87F96482160 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18904_none_40f4b5bb6ffa2075\wininet.dll
[2009/03/02 23:41:10 | 001,022,976 | ---- | M] (Microsoft Corporation) MD5=A269DC29C60D8FAF8F370D106BEAE859 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16830_none_5c00e4635d22404c\wininet.dll
[2008/08/20 16:45:17 | 001,013,248 | ---- | M] (Microsoft Corporation) MD5=A549050BABB436A7F3867911D302D19F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18063_none_5dc9b0575a5e76c7\wininet.dll
[2008/08/20 16:45:17 | 000,826,880 | ---- | M] (Microsoft Corporation) MD5=A86218059C228E7691A13E4CB63C4CDF -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22167_none_0238b2c6bb1b0ab7\wininet.dll
[2011/07/21 20:48:19 | 001,126,912 | ---- | M] (Microsoft Corporation) MD5=AA75F065975FCE762FC9BBF5A3C08368 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.1.8112.20534_none_c25dfc2af8da5fb8\wininet.dll
[2009/07/18 06:47:09 | 001,015,296 | ---- | M] (Microsoft Corporation) MD5=AAF4B1FF371BFD069F51FDAF2D21D3D1 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.22180_none_6021240670b54f07\wininet.dll
[2010/06/26 01:30:12 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=AB4A31D99C05A4C7B0C892A10E12FB47 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18943_none_40c875c1701b76e2\wininet.dll
[2010/05/04 01:58:12 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=AC03101534D7E281436D19D6AD366BD5 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23019_none_41785a48891b90fe\wininet.dll
[2010/09/08 02:12:01 | 001,150,464 | ---- | M] (Microsoft Corporation) MD5=B09ACB639AA914378B33E0585EA5C44F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23067_none_41404a188945ea05\wininet.dll
[2008/08/20 16:45:17 | 001,013,248 | ---- | M] (Microsoft Corporation) MD5=B2BB90B07E1B87F41A0477ED2432AFB9 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22167_none_5e574e4a73787bed\wininet.dll
[2010/12/18 01:55:17 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=B3365860010DEB30446625E333E9E1CC -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19019_none_40eebf636ffdee5b\wininet.dll
[2011/02/22 02:18:35 | 000,919,552 | ---- | M] (Microsoft Corporation) MD5=B3A938D522F085171387FEF112AEECF5 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23143_none_e5334f2ad0dbd8b8\wininet.dll
[2010/05/04 01:56:19 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=B59C26C9A03B661E572C137368E3BD71 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18928_none_40e3170b7006bdb3\wininet.dll
[2009/03/02 23:20:12 | 000,826,368 | ---- | M] (Microsoft Corporation) MD5=BA68744F8FE1BAAC35362F18774972A3 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16830_none_ffe248dfa4c4cf16\wininet.dll
[2009/03/02 23:36:17 | 001,024,512 | ---- | M] (Microsoft Corporation) MD5=BC7CDFE7CC70BEE8F81C7AB54FE4A44D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21023_none_5c982a1a7635436c\wininet.dll
[2009/01/15 00:00:07 | 001,024,512 | ---- | M] (Microsoft Corporation) MD5=BC8E5ED3269BF174B939B07FC167044E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20996_none_5c4fa362766b1fc6\wininet.dll
[2009/04/24 11:25:44 | 001,025,536 | ---- | M] (Microsoft Corporation) MD5=BEF933C0CCBA89A12D24FE11E4FAF9C2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21046_none_5c858b207642c753\wininet.dll
[2009/04/24 11:06:12 | 001,015,296 | ---- | M] (Microsoft Corporation) MD5=C1FCF4D8F9CD2A322F0C67F332A54173 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22418_none_5e8e63e2734f0104\wininet.dll
[2009/08/27 08:17:42 | 000,834,048 | ---- | M] (Microsoft Corporation) MD5=C628812EA5016B1C3E13E082940D5AF6 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22508_none_027a9a30bae97104\wininet.dll
[2008/08/20 16:45:26 | 001,024,000 | ---- | M] (Microsoft Corporation) MD5=CB2F683EB47B75F6E83DB0AC87DBFD9A -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20823_none_5c98501276351303\wininet.dll
[2009/03/02 23:57:33 | 001,013,248 | ---- | M] (Microsoft Corporation) MD5=CC23CB07801611BF6081DED055F3C149 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18226_none_5df7f4b15a3b4d56\wininet.dll
[2009/08/27 00:52:18 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=CE0D70556096DE3BB8319E75E03E3744 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18828_none_40e315257006c08c\wininet.dll
[2009/08/27 08:29:46 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=D0DD9439DB3C927209CFFE095AA1F097 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22918_none_e558e658d0bed32f\wininet.dll
[2009/07/18 07:16:25 | 000,828,928 | ---- | M] (Microsoft Corporation) MD5=D1E1447C4E2077BDFFDD547972FEBDEB -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21089_none_003eb0cabe0311e6\wininet.dll
[2010/11/02 02:12:02 | 000,919,552 | ---- | M] (Microsoft Corporation) MD5=D364DEB34DB229A4C1EFB1BC68F505C4 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23091_none_e4fb3d14d1063498\wininet.dll
[2009/08/27 08:31:55 | 001,033,216 | ---- | M] (Microsoft Corporation) MD5=D4351FED89D7D99B7FF936C55A4ED18B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22508_none_5e9935b47346e23a\wininet.dll
[2009/08/27 08:40:40 | 000,840,704 | ---- | M] (Microsoft Corporation) MD5=D5709010F06FEC697CCB2831D0821E0B -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21116_none_00876146bdccff71\wininet.dll
[2009/08/27 07:40:58 | 000,834,048 | ---- | M] (Microsoft Corporation) MD5=D88D19604AACE2101B13260322FB4A3A -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6002.18100_none_03cf6cfd9ef95ba6\wininet.dll
[2009/04/24 11:22:31 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=D94BDEEF2E47EB4A46B957253C697F01 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16851_none_ffcda951a4d4204f\wininet.dll
[2008/10/15 23:43:03 | 001,022,464 | ---- | M] (Microsoft Corporation) MD5=D9E8399459565B4E8A7FF2B01CB55F8D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16764_none_5be473e15d36fc54\wininet.dll
[2009/11/21 01:40:20 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=DCB9E422810877D7C4115BACE54B084C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18865_none_e4963913b7cc7315\wininet.dll
[2009/01/16 07:27:15 | 001,014,272 | ---- | M] (Microsoft Corporation) MD5=DE2EFEAC81EE3AEF9A0A297D06DEA73C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.22355_none_5e60216e7372279c\wininet.dll
[2011/05/28 01:08:58 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=DE4685DE5130039FA63DA66C0F72F787 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.19088_none_e4837421b7da2765\wininet.dll
[2011/05/28 02:12:07 | 000,919,552 | ---- | M] (Microsoft Corporation) MD5=E1E66EB05099B9DDCA178A9A00FCFF74 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23181_none_e5060ee6d0fe15ce\wininet.dll
[2009/08/27 00:22:28 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=E3AB6EBE520E1898663B011D2FC0DF11 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18828_none_e4c479a1b7a94f56\wininet.dll
[2011/02/22 02:54:52 | 001,150,976 | ---- | M] (Microsoft Corporation) MD5=E3B43B82F025BC3B23DFDE66A4A026F2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23143_none_4151eaae893949ee\wininet.dll
[2009/04/24 11:01:22 | 000,828,928 | ---- | M] (Microsoft Corporation) MD5=E7D90AF9B0C7FA98DF353E022EE1C63E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.21046_none_0066ef9cbde5561d\wininet.dll
[2010/02/23 01:39:13 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=EC3B3E6071E3FCD4290BFD42676EE064 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18904_none_e4d61a37b79caf3f\wininet.dll
[2010/01/02 02:08:29 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=EDAF8EE6D81BE3FCCC8B375431D8559C -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18882_none_409c33e1703cd028\wininet.dll
[2009/08/27 09:03:27 | 001,147,904 | ---- | M] (Microsoft Corporation) MD5=EDBD07D91010DD925EB352DA66914D98 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.22918_none_417781dc891c4465\wininet.dll
[2008/08/20 16:45:26 | 001,022,464 | ---- | M] (Microsoft Corporation) MD5=EEFC1D846B86CFD92865FFD255B87CFC -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16681_none_5bcbd1455d49eb0a\wininet.dll
[2008/10/15 23:40:37 | 000,826,368 | ---- | M] (Microsoft Corporation) MD5=F18C1B151A0B18C35BF0919A9BA0FA0F -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16764_none_ffc5d85da4d98b1e\wininet.dll
[2010/05/04 00:59:21 | 000,916,480 | ---- | M] (Microsoft Corporation) MD5=F317362AEB06140E7FB1B29331FDC038 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.18928_none_e4c47b87b7a94c7d\wininet.dll
[2008/08/20 16:45:26 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=F40594128A6BFDA6C3F0900796895078 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.20823_none_0079b48ebdd7a1cd\wininet.dll
[2010/06/26 01:51:32 | 000,919,040 | ---- | M] (Microsoft Corporation) MD5=F60F99762FABCD7F4B53A4A0EBAE3505 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.6001.23040_none_e5304c66d0de8f8c\wininet.dll
[2009/01/15 01:11:16 | 000,827,392 | ---- | M] (Microsoft Corporation) MD5=FB79A2AA5E92653B9A394FE26D799BF8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18203_none_01ebf827a1d05839\wininet.dll
[2009/07/18 11:06:20 | 000,827,904 | ---- | M] (Microsoft Corporation) MD5=FCB4E3234667317905333B6A4CDF85FC -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18294_none_018ba925a2186d09\wininet.dll
[2009/01/14 23:16:03 | 000,826,368 | ---- | M] (Microsoft Corporation) MD5=FF35D495AC08549154D1D96990513CD9 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16809_none_000bbb3da4a45f52\wininet.dll

< MD5 for: WS2_32.DLL >
[2008/01/20 21:48:48 | 000,265,216 | ---- | M] (Microsoft Corporation) MD5=63944ECFE4878C1C4889689324CABFAB -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_4ed64c4686b376fa\ws2_32.dll
[2008/01/20 21:49:38 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\ERDNT\cache86\ws2_32.dll
[2008/01/20 21:49:38 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\SysWOW64\ws2_32.dll
[2008/01/20 21:49:38 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_f2b7b0c2ce5605c4\ws2_32.dll
[2008/01/20 21:49:38 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6002.18005_none_f4a329cecb77d110\ws2_32.dll
[2009/04/11 02:11:31 | 000,264,704 | ---- | M] (Microsoft Corporation) MD5=BAB10B35E2D5EE0DC3DE05A177C52C50 -- C:\Windows\ERDNT\cache64\ws2_32.dll
[2009/04/11 02:11:31 | 000,264,704 | ---- | M] (Microsoft Corporation) MD5=BAB10B35E2D5EE0DC3DE05A177C52C50 -- C:\Windows\SysNative\ws2_32.dll
[2009/04/11 02:11:31 | 000,264,704 | ---- | M] (Microsoft Corporation) MD5=BAB10B35E2D5EE0DC3DE05A177C52C50 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6002.18005_none_50c1c55283d54246\ws2_32.dll

< End of report >
  • 0

#115
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
OTL Extras logfile created on: 10/11/2011 10:27:16 PM - Run 3
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Tim\Desktop
64bit-Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.97 Gb Total Physical Memory | 1.56 Gb Available Physical Memory | 39.34% Memory free
8.13 Gb Paging File | 5.43 Gb Available in Paging File | 66.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 108.18 Gb Total Space | 15.90 Gb Free Space | 14.70% Space Free | Partition Type: NTFS
Drive D: | 465.75 Gb Total Space | 406.35 Gb Free Space | 87.25% Space Free | Partition Type: NTFS
Drive H: | 250.61 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: TIM-PC | User Name: Tim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (All) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.reg[@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = ComFile] -- "%1" %*
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\SysWOW64\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\SysWow64\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files (x86)\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files (x86)\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\SysWOW64\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\SysWOW64\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\SysWOW64\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\SysWOW64\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\SysWOW64\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = C2 FE 8D 6A DC 5B C8 01 [binary data]
"VistaSp2" = C3 41 B2 C9 A2 68 CA 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A6542EA-C236-46A2-BDC0-DAF9D41C507E}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{19FAA935-9B3D-44BC-B2D8-010F3CE55F84}" = rport=138 | protocol=17 | dir=out | app=system |
"{1AAAE430-7C02-4747-87F3-24A144983237}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{2013899E-9EB9-4078-AD33-EDE859C19ED3}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{21ED4E7F-E2DB-4C56-8934-74222F9105E3}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{27F87E52-1BFF-4CDA-A5C7-5268232CE1E2}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{33CB7420-A6ED-4337-B6FA-81A6474B73DB}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{3DA9E6E7-42A2-4247-952D-DEC80F39005F}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{4895CB14-2DFD-4D28-9AE3-5B8E817C3DA8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4B80D2F7-CC2D-4A27-81A1-BFFB0E8FCF58}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4FE82F70-E87C-41E5-8757-0B695F825525}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{51B8C9C6-AD20-4103-833D-8AC4F2685783}" = lport=137 | protocol=17 | dir=in | app=system |
"{59343717-8741-45CC-AEB2-AB43E16AC6A6}" = lport=138 | protocol=17 | dir=in | app=system |
"{5AAB6D1A-17AD-4C68-BB88-F6062BAE5D27}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{5CBA5DB4-AC28-4489-9EB1-FC70EC14A2C6}" = rport=445 | protocol=6 | dir=out | app=system |
"{65EEC2C2-6C5F-4A20-B85D-39E96B232E5A}" = lport=139 | protocol=6 | dir=in | app=system |
"{6674AB1D-9FCC-4E32-99B4-0D113F5AF375}" = rport=137 | protocol=17 | dir=out | app=system |
"{67A3DA8F-342F-46C9-8008-D63562982709}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{712484A1-02FB-44AC-9FE9-D69FBDC3C854}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{738F1E7C-BAE7-48B1-8AF1-4F9843483B6F}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{827A68D8-BBB1-4AC0-9254-7CD2189EF2F5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{84C945AF-A307-4447-8CCB-56F8A1C58A5D}" = rport=10243 | protocol=6 | dir=out | app=system |
"{8D7535CA-243C-4471-B769-75EB3173FEF9}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe |
"{A1411F3D-26DE-4B87-9B8B-AF329DFB91B3}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{B100EF37-506A-4BE1-BAF7-6B15BB9F0ACC}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{B3CEB5F1-71CE-49B4-A245-AFBB5FFCB807}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{B57B5DC5-5419-453B-87E0-3AD37A83A453}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B8F41A1B-E067-4ED7-A3E0-90EEA6FA11EA}" = lport=10243 | protocol=6 | dir=in | app=system |
"{B9479E84-7250-41BF-97EB-0A4C700A83B0}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{C22705DB-1721-4DF1-85AE-19BD5E5C6495}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C6995374-86A3-4EBD-8262-45D8AB49E7C3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{C77D5BCE-3DDF-4D4C-BFD8-C5B0B355628F}" = lport=445 | protocol=6 | dir=in | app=system |
"{C7E105C6-D68D-47EB-B39A-86BD7C4823B2}" = rport=139 | protocol=6 | dir=out | app=system |
"{CEBBC3FB-FF02-4FBA-BF91-F897909E0B63}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D3C1A44F-57C3-4B6B-9DB0-319F5CE73513}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DE9D67D7-444E-47C1-B0AE-9E693380BF15}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{DF3F8F05-D5B4-47E5-8F35-AE51C4C5C24A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E0A60A8E-CF2C-42CA-8826-20282B30FF20}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F069370D-9FD1-4EFE-88A7-8E85CAD51D70}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{F4B63978-0F1F-4936-BCEC-C151A4B34322}" = lport=3389 | protocol=6 | dir=in | app=system |
"{FA084C43-8E8D-45BE-A744-A6F9AC2DE372}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02522027-B1FC-4296-9FDF-BF992F98E2FC}" = protocol=6 | dir=in | app=c:\users\tim\appdata\local\temp\7zs4818.tmp\symnrt.exe |
"{065BE00A-DE4A-42D7-B855-F641E077E5FC}" = dir=in | app=c:\windows\system32\lxeacoms.exe |
"{0853D5C6-7604-45D8-B4A9-A2928C2F8BBC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{0F059C2C-84C0-4587-B51C-2AF7FC49865A}" = protocol=1 | dir=out | [email protected],-28544 |
"{0F1FCC04-9C64-4693-886D-A9FEFDFFFDCC}" = protocol=17 | dir=in | app=c:\program files (x86)\lexmark s300-s400 series\lxeafax.exe |
"{1376730D-A7D6-43B4-A8BF-1D2F1B2ED740}" = dir=in | app=c:\windows\system32\lxeacoms.exe |
"{1E713576-061B-4249-852E-3E4BB7AFD130}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\vaio media plus\vmp.exe |
"{1EF61D39-C314-44DF-B44D-48F0FD76278E}" = protocol=17 | dir=in | app=c:\program files (x86)\abbyy finereader 6.0 sprint\scan\scanman6.exe |
"{24094273-82F1-4E16-9FAD-9073C4002CE3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{240D33CA-2671-453A-A114-DFAB4305E744}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{24B020C1-D512-4E8E-B8E2-AC61923FE95E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2698D81E-1A30-4FF8-B2EB-68D72A078CF5}" = dir=in | app=c:\windows\system32\lxeacoms.exe |
"{26AEBA0D-FBA9-4D1A-A241-1A2557A66258}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{2A066B28-5A06-468F-A684-16F1C06EBA16}" = protocol=58 | dir=out | [email protected],-28546 |
"{359B9F86-286B-4A26-952F-1D47E01DC292}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{3ABABC4E-8773-4EA3-8F2E-59668723628F}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{3D195EBB-8BEC-4ADD-818E-FE2617CDCBEC}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe |
"{3ED91C01-19BB-43FE-B51E-750EC0265650}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{499E857D-558D-46D0-8079-A97F74C3D818}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg10\avgnsa.exe |
"{4B743AB1-45EA-4005-8428-DB41D7A1012A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4C313AAF-BC55-46EC-9D27-1ABF0A49A511}" = protocol=17 | dir=in | app=c:\windows\system32\dlbkcoms.exe |
"{505C5579-389F-4E8A-9D79-96D78003AD0F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{517165F8-752C-4BD6-B267-68DEC92E083B}" = dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe |
"{51F3F04D-AF88-4947-B4AC-CA98EF5F4069}" = dir=in | app=c:\windows\system32\lxeacoms.exe |
"{526B45B2-591C-4410-AC18-C5C8DC3BB608}" = protocol=17 | dir=in | app=c:\users\tim\appdata\local\temp\7zs4818.tmp\symnrt.exe |
"{52EEC3BE-9436-4A71-A80C-27526E9EFE03}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{5326E781-EBFB-434C-BFC0-19A9D1DB9E91}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohcimp.exe |
"{5ABA11CA-C448-4F17-9109-A91E9EA812C5}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\pure networks shared\platform\nmsrvc.exe |
"{5CF60E97-5C81-415C-BC60-E1D6C1F54318}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5E5604B5-27A9-4C96-89FB-28E904096647}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{5E7681E9-9CC8-4817-B344-85586E29DCA8}" = protocol=6 | dir=in | app=d:\frostwire\frostwire.exe |
"{60675F3E-FDBF-4002-BA08-00BEA1A6FC61}" = protocol=6 | dir=in | app=c:\program files (x86)\lexmark s300-s400 series\lxeafax.exe |
"{60DB9D01-D0AC-4840-BD5D-8971EC69606E}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{63FC98E7-B156-486E-A5FC-EA0FB9C06C3C}" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{65F04825-DFDF-4C76-9B1E-8F040CEE3BE8}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{6B1F72D5-4640-48ED-A674-0C33DABDF78B}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg10\avgemca.exe |
"{7061BF36-F96A-4E0D-BBA2-86612CA55C07}" = protocol=17 | dir=in | app=c:\program files (x86)\sony\vaio media plus\vmp.exe |
"{71DF8BD8-52C2-4518-9DDC-0BA81BFE0DC7}" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"{76BABC28-43F7-413A-929B-848D6EF94D8A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7B4184A1-D6CA-445A-AC01-73083E789183}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{7D4DE55D-80CB-4A9C-8320-BC819C5165B6}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{7F56BD7D-F9CF-40A9-93ED-E54895E9C879}" = protocol=1 | dir=in | [email protected],-28543 |
"{858F155E-1AB6-463A-A321-43DC85E712CF}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{863D3E98-581C-4C1E-8C13-56B4CF690371}" = protocol=58 | dir=in | [email protected],-28545 |
"{86E6450D-A996-4930-B4CD-37AB3F0D65CF}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe |
"{8A82E588-7FD5-43DB-82BC-F62EF2CE4A3D}" = protocol=17 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohdms.exe |
"{8B76DF73-8ED5-426D-AFA5-E0DAB70E5161}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg10\avgnsa.exe |
"{8B7CF56C-D90A-4465-B70D-9561E05A3283}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohdms.exe |
"{8DCBE253-F94A-426E-BC58-E4208CC2D2DE}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\pure networks shared\platform\nmsrvc.exe |
"{94417C53-0D84-46E0-8520-DC3832F77487}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg10\avgdiagex.exe |
"{949E560D-4CA0-481E-AEBF-21D911820B3F}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg10\avgemca.exe |
"{9602395C-0D7D-4359-B2E4-D03E4A5063B6}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg10\avgmfapx.exe |
"{98F7A6FF-B69F-4D32-A422-6E95266E8320}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{9BE3AD68-54BE-4281-93CD-B2E594E12935}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg10\avgdiagex.exe |
"{AAF4B738-1058-4E90-AC23-DD004F7CC5D5}" = protocol=17 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe |
"{AF43A0B0-3D06-455C-B806-F620DBB09DF6}" = protocol=6 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe |
"{B68CCA07-2F72-4A96-8E4E-9F4CD2206EC0}" = dir=in | app=d:\joans itunes\itunes.exe |
"{C8B392AC-F2A9-4285-A73E-354E6899B89A}" = protocol=17 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohds.exe |
"{CA959F5B-D8D7-43B9-B887-5B5942EB3022}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CE8EF11E-5883-4AFC-8234-414E10D67F22}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D8F49A58-3E36-46BE-86B7-94A2DF0C3983}" = protocol=17 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohcimp.exe |
"{DDCA7DAF-ED20-4ABE-86CA-E2245C93877E}" = protocol=17 | dir=in | app=d:\frostwire\frostwire.exe |
"{E14E5D7A-9971-4876-80F0-70FAF00C1C92}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E1C6235C-26CC-496F-BAC1-57122295861A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E1FE5CE1-CE83-44F4-A09D-A4E3E04494BC}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\vaio media plus\sohds.exe |
"{E3042E8E-6AC6-4550-9730-950F3CDCFDCC}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg10\avgmfapx.exe |
"{E47ABE61-9AC7-456E-85C7-E14FFB64EC7D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E9984B18-D2CA-472C-821C-86190D6D3B65}" = protocol=6 | dir=in | app=c:\windows\system32\dlbkcoms.exe |
"{EF62CE2A-E214-4DAE-9620-37AC7FC71A8C}" = protocol=6 | dir=out | app=system |
"{FE0412C3-C0AA-4414-8B70-4439E23675B6}" = protocol=6 | dir=in | app=c:\program files (x86)\abbyy finereader 6.0 sprint\scan\scanman6.exe |
"TCP Query User{1705D028-CDEA-4558-9454-407BD859BF98}C:\program files (x86)\yahoo!\messenger\yahoomessenger.exe" = protocol=6 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"TCP Query User{2959C062-9B07-44FB-9C8E-9F38B7F4CEB4}C:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe |
"TCP Query User{33E528A4-146C-4E9B-ABA7-79B965F0FD28}C:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe |
"TCP Query User{3E34D1C6-EF0E-40C0-BCF7-765ABAE78C28}C:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe |
"TCP Query User{4BD166A6-D57E-4B2F-A206-B037C91ECC95}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe |
"TCP Query User{54422DEF-8A29-44ED-B203-73B305F7BC52}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"TCP Query User{565F9A4A-5925-47D3-ADCA-0E15D5329781}C:\windows\syswow64\msiexec.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"TCP Query User{615711F8-464F-478B-89A6-2C5389C8B462}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe |
"TCP Query User{729AFA2C-9B96-4E52-AF34-946B83787BBA}C:\program files (x86)\[email protected]\lookatlan.exe" = protocol=6 | dir=in | app=c:\program files (x86)\[email protected]\lookatlan.exe |
"TCP Query User{79947826-42AB-4D55-8038-37379B611795}C:\program files (x86)\macromedia\dreamweaver mx 2004\dreamweaver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\macromedia\dreamweaver mx 2004\dreamweaver.exe |
"TCP Query User{84009FC0-5C6E-4327-829E-AC99E1CC1BD5}C:\program files (x86)\ws_ftp pro\wsftppro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ws_ftp pro\wsftppro.exe |
"TCP Query User{96F0A75E-6943-4FDA-8744-F2A9A4D039D1}C:\users\tim\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=6 | dir=in | app=c:\users\tim\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe |
"TCP Query User{A072C793-2986-4F3C-B916-AA65BF802BC6}C:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe |
"TCP Query User{A13F71F2-2EE1-4776-B1A4-CA47BC3173C5}C:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe |
"TCP Query User{B5299967-5E93-4676-9345-4BE9EFB19B5B}C:\program files (x86)\[email protected]\lookathost.exe" = protocol=6 | dir=in | app=c:\program files (x86)\[email protected]\lookathost.exe |
"TCP Query User{CC281841-D5A2-4C4D-A8BF-8E5BD2628FBF}C:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe" = protocol=6 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe |
"TCP Query User{F2B2B188-0D0A-468C-A28F-F3611E44A759}C:\program files (x86)\frostwire\frostwire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe |
"TCP Query User{F2E46F14-3FE8-4EA4-A315-94BB6DF18C84}C:\windows\system32\ftp.exe" = protocol=6 | dir=in | app=c:\windows\system32\ftp.exe |
"TCP Query User{F3CB22C6-A82F-4991-9B80-23FF6301431D}C:\windows\syswow64\msiexec.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"UDP Query User{153C3630-6ED5-48FC-B39C-D90A31324ABA}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe |
"UDP Query User{166CEBCC-8B8C-40F1-8C2A-81541C49B465}C:\windows\syswow64\msiexec.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"UDP Query User{1C232EA2-AEE4-410F-A9D8-7E4E9CF55B35}C:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe |
"UDP Query User{1DC7AD79-D164-435F-8DAF-AD6421D29DB1}C:\program files (x86)\[email protected]\lookathost.exe" = protocol=17 | dir=in | app=c:\program files (x86)\[email protected]\lookathost.exe |
"UDP Query User{3C2A4F0B-E1D3-4096-BDE4-FB85A8EE538C}C:\windows\system32\ftp.exe" = protocol=17 | dir=in | app=c:\windows\system32\ftp.exe |
"UDP Query User{3F09B335-C9B4-4BED-9593-8512B96AC2F9}C:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe |
"UDP Query User{4D912F0D-8FD6-4204-8396-6B82D8C9994C}C:\program files (x86)\macromedia\dreamweaver mx 2004\dreamweaver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\macromedia\dreamweaver mx 2004\dreamweaver.exe |
"UDP Query User{63936F24-3200-422F-B6D0-FACC985C7CA7}C:\program files (x86)\ws_ftp pro\wsftppro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ws_ftp pro\wsftppro.exe |
"UDP Query User{7635DAB8-BDAB-43AB-89FC-40E467AE152D}C:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe |
"UDP Query User{7CCA57AD-9987-4F81-8A39-E86EC52019B6}C:\program files (x86)\frostwire\frostwire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\frostwire\frostwire.exe |
"UDP Query User{88F14496-D947-4814-9A08-25059705AE30}C:\windows\syswow64\msiexec.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"UDP Query User{915C4D00-2B08-46BA-AF10-6D224C8309AD}C:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\filemaker pro.exe |
"UDP Query User{B820F5D5-3D78-4B73-8907-61C98499C46B}C:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 11\filemaker pro.exe |
"UDP Query User{BA051897-7571-4DA3-9057-F6661A4A2143}C:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\xdbc support\bin\ddfmsoc.exe |
"UDP Query User{C3569C86-72C6-4B4E-841B-CB1284FCBB04}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"UDP Query User{C50848C0-3FF1-4319-BF11-90254BA5C082}C:\program files (x86)\[email protected]\lookatlan.exe" = protocol=17 | dir=in | app=c:\program files (x86)\[email protected]\lookatlan.exe |
"UDP Query User{C67AE0D8-1C33-4DF7-9E78-492B1C19C7EA}C:\program files (x86)\yahoo!\messenger\yahoomessenger.exe" = protocol=17 | dir=in | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
"UDP Query User{CD1F634B-223F-42EE-8378-CCD3234FA223}C:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe" = protocol=17 | dir=in | app=c:\program files (x86)\filemaker\filemaker pro 10\extensions\web support\fm web publishing.exe |
"UDP Query User{FC16D2FC-21D4-4895-9135-07A80A4C940E}C:\users\tim\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=17 | dir=in | app=c:\users\tim\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{151CB4B7-FC63-4C72-8A21-5E87EB419DBB}" = Protector Suite QL 5.6
"{26921B2E-3E62-47F9-A514-1FC4A83BD738}" = Intel® PROSet/Wireless WiFi Software
"{3C5E60F1-0821-4B07-97EA-84EB5A927CF6}" = MobileMe Control Panel
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support
"{63B4D80D-7BAC-4D1D-B9B6-27FF54197982}" = Regi
"{704ABF63-B0B1-446B-9D92-C5D06AFCE7B6}" = PlayReady PC runtime
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{997C9EC4-B53D-479D-81B7-0AEC8D174BA1}" = iTunes
"{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}" = Microsoft SQL Server Native Client
"{B636C9B9-A3F2-4DCE-ADCC-72E095018385}" = Microsoft SQL Server VSS Writer
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D035FBF6-FDEF-487D-89CA-6F9DD07B783F}" = Dolby Control Center
"{E464702F-5433-46EC-8F65-159276C0A54F}" = WIDCOMM Bluetooth Software 6.2.0.4500
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200" = HDAUDIO SoftV92 Data Fax Modem with SmartCP
"Garritan Instruments for Finale 2009_is1" = Garritan Instruments for Finale 2009
"Lexmark S300-S400 Series" = Lexmark S300-S400 Series
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"NVIDIA Drivers" = NVIDIA Drivers
"ProInst" = Intel PROSet Wireless
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}" = Sony Video Shared Library
"{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Central Data
"{1017A80C-6F09-4548-A84D-EDD6AC9525F0}" = Lexmark Toolbar
"{10812DE7-2E57-4740-B226-6B3BE34AF9D7}" = Lexmark Tools for Office
"{1316AEF2-E086-46C7-B1FB-8C9A39A2ABF9}" = VAIO Media plus
"{14291118-0C19-45EA-A4FA-5C1C0F5FDE09}" = Primo
"{15210C5B-9E04-4BF7-B019-AE958F238333}" = Roxio Easy VHS to DVD
"{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}" = VAIO Launcher
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}" = Adobe After Effects CS3 Presets
"{1B500D37-E7CF-480B-8054-8A563594EC4E}" = VAIO OOBE and Welcome Center
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Central Tools
"{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = WinDVD BD for VAIO
"{23825B69-36DF-4DAD-9CFD-118D11D80F16}" = VAIO Content Folder Setting
"{26A24AE4-039D-4CA4-87B4-2F83216027FF}" = Java™ 6 Update 27
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
"{2B27EB8B-3AA6-438F-BCB0-719CE2C52E32}" = VAIO Content Metadata XML Interface Library
"{34B37A74-125E-4406-87BA-E4BD3D097AE5}" = VAIO Survey
"{359FCAA7-B544-4147-AE3B-8C8A526E2427}" = Sony Image Data Suite
"{363611D9-1106-41F2-B74E-BD8481C41219}" = Click to Disc
"{36C5BBF0-E5BF-4DE1-B684-7E90B0C93FB5}" = VAIO Care
"{4314FCA1-7D0D-45E7-B115-C142466BC60A}" = VAIO Content Metadata Manager Setting
"{44B23220-E68E-4FBC-B02C-1A89AC0C8C5F}" = Roxio CinePlayer Decoder Pack
"{472080B7-D6E7-49E8-9383-FF136B8A8C34}" = JMicron JMB368 ExpressCard CF Adapter
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4DC49A9A-6DD0-40D2-A851-527764DA8379}" = Adobe Setup
"{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}" = Click to Disc Editor
"{4EA55D20-27FB-45D7-8726-147E8A5F6C62}" = VAIO MusicBox
"{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
"{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}" = Adobe Premiere Pro CS3 Functional Content
"{51846830-E7B2-4218-8968-B77F0FF475B8}" = Adobe Color EU Extra Settings
"{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Easy Media Creator 10 LJ
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}" = VAIO Data Restore Tool
"{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}" = VAIO DVD Menu Data Basic
"{5A3F6A80-7913-475E-8B96-477A952CFA43}" = SupportSoft Assisted Service
"{5C5EE8F2-0B38-4C13-AE4E-A87A237FE718}" =
"{5F5867F0-2D23-4338-A206-01A76C823924}" = VAIO Power Management
"{67E03279-F703-408F-B4BF-46B5FC8D70CD}" = Microsoft Works
"{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}" = Click to Disc
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6B1F20F2-6321-4669-A58C-33DF8E7517FF}" = VAIO Entertainment Platform
"{6B708481-748A-4EB4-97C1-CD386244FF77}" = Adobe MotionPicture Color Files
"{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}" = AHV content for Acrobat and Flash
"{6C50525A-2D77-4C22-B058-9AA2F27ACFF2}" = VAIO Content Metadata Intelligent Analyzing Manager
"{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}" = VAIO Movie Story Template Data
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7115EE2B-62BF-4DEB-B4AA-91456D245F47}" = Sibelius Scorch (Firefox, Opera, Netscape only)
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{72042FA6-5609-489F-A8EA-3C2DD650F667}" = VAIO Control Center
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Central Audio
"{73E81E9B-7319-43AD-B7CC-1C61405E5089}" = Adobe After Effects CS3 Template Projects & Footage
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7ACFB90E-8FD0-4397-AD3A-5195412623A3}" = Adobe Help Viewer CS3
"{7BB90344-0647-468E-925A-7F69F7983421}" = ArcSoft Magic-i Visual Effects
"{7FCC4EDC-6EE2-4309-ABD7-85F2667A7B90}" = WebEx Support Manager for Internet Explorer
"{83CDA18E-0BF3-4ACA-872C-B4CDABF2360E}" = VAIO Update 4
"{845A8DB9-8802-4FD3-9FE3-938A6C46A2EC}" = Adobe Video Profiles
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{86DDDAAD-AEB9-42E5-BE01-0E8FABD2BB29}" = Roxio Video Capture USB
"{8BD60AEF-3F9D-47AE-B80A-FB7FFCE335A0}" = VAIO Movie Story
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{8ECB8220-F419-4BEB-9596-97033C533702}" = QuickBooks Simple Start 2008
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_SMALLBUSINESSR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_SMALLBUSINESSR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_SMALLBUSINESSR_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0409-1000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0409-1000-0000000FF1CE}_SMALLBUSINESSR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_SMALLBUSINESSR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0116-0409-1000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0116-0409-1000-0000000FF1CE}_SMALLBUSINESSR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{90A40409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Web Components
"{91120000-00CA-0000-0000-0000000FF1CE}" = Microsoft Office Small Business 2007
"{91120000-00CA-0000-0000-0000000FF1CE}_SMALLBUSINESSR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-00CA-0000-0000-0000000FF1CE}_SMALLBUSINESSR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95655ED4-7CA5-46DF-907F-7144877A32E5}" = Adobe Color NA Recommended Settings
"{96D0B6C6-5A72-4B47-8583-A87E55F5FE81}" =
"{9973498D-EA29-4A68-BE0B-C88D6E03E928}" = ArcSoft WebCam Companion 2
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific
"{A552C4EA-D41E-4C61-A0FB-C0E05440F7D7}" = VAIO Entertainment Platform
"{A5BA14E0-7384-11D4-BAE7-00409631A2C8}" = Macromedia Extension Manager
"{A63E7492-A0BC-4BB9-89A7-352965222380}" = VAIO Original Function Setting
"{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}" = Setting Utility Series
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Microsoft Office Small Business Connectivity Components
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{AC76BA86-1033-F400-7760-000000000004}_946" = Adobe Acrobat 9.4.6 - CPSID_83708
"{AC76BA86-1033-F400-7760-000000000004}{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}" = VAIO Movie Story
"{B32C4059-6E7A-41EF-AD20-56DF1872B923}" = Business Contact Manager for Outlook 2007 SP2
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B513C7B0-024A-498F-B0F5-00C67E2440A9}" = VAIO Content Metadata Intelligent Analyzing Manager
"{B671CBFD-4109-4D35-9252-3062D3CCB7B2}" = Adobe SING CS3
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Central Copy
"{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}" = Adobe BridgeTalk Plugin CS3
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{BACD22AE-5B6B-4F23-B506-3FCFF13AC137}" = VAIO Media plus
"{BCED773C-99EE-48DD-8915-25733F69F0A8}" = VAIO Wireless Wizard
"{BE5F3842-8309-4754-92D5-83E02E6077A3}" = Adobe Extension Manager CS3
"{C0990649-FEC2-423A-8F37-A8952404E6CD}" = Roxio Easy VHS to DVD
"{C1083DBC-C541-4E8C-91EA-D92397AB9A2C}" = OpenMG Secure Module 5.1.00
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C5BD220A-EFE8-48A5-B70E-9503D535FACE}" = Adobe WAS CS3
"{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
"{C7477742-DDB4-43E5-AC8D-0259E1E661B1}" = VAIO Event Service
"{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime
"{CB8A8696-93EC-414E-A752-850AB133F68A}" = VAIO Content Metadata XML Interface Library
"{CE2121C6-C94D-4A73-8EA4-6943F33EE335}" = Music Transfer
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D2912CB2-F95A-406C-AA88-2BB5DCB6D275}" = AVer Media Center
"{D2C5E510-BE6D-42CC-9F61-E4F939078474}" = Lexmark Printable Web
"{D47FE987-EA3D-424B-9886-B752501D7CE7}" = VAIO Help and Support
"{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility
"{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3
"{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}" = VAIO Wallpaper Contents
"{D6DE02C7-1F47-11D4-9515-00105AE4B89A}" = Paint Shop Pro 7
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{DF0415CC-0563-407F-B560-9B7F277122C5}" = VAIO BD Menu Data
"{DFD0E9A9-F24A-492B-8975-8C938E32408F}" = VAIO Startup Assistant
"{E09A5851-B293-465E-A9FE-DFC11E0F4586}" = VAIO Content Metadata Intelligent Analyzing Manager
"{E1D25278-B51A-4163-BC3D-20A4D2D09F98}" = VAIO My Memory Center
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}" = Adobe InDesign CS3 Icon Handler
"{EACCC991-8E8C-4397-8854-349506741FC9}" = FileMaker Pro 11
"{EACCC991-8E8C-4397-8854-349506741FC9}_FileMaker" = FileMaker Pro 11
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Central Core
"{EE59BBF9-415C-45DB-8C4B-EE43CF635FEA}" = VAIO Content Metadata XML Interface Library
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F570A6CC-53ED-4AA9-8B08-551CD3E38D8B}" =
"{FAE74C2C-298A-41BA-8BDB-F5A005F93278}" = Roxio Express Labeler
"{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
"{FD72E69E-CF34-4071-BFD6-FD081A365E2C}" = VAIO Content Metadata Intelligent Analyzing Manager
"{FE51662F-D8F6-43B5-99D9-D4894AF00F83}" = Roxio Easy Media Creator Home
"{FE697886-F392-4E0D-A0C0-47587BF60992}" = VAIO Content Metadata Manager Setting
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe_915239ded2552e78978d0dbab7657a5" = Add or Remove Adobe Creative Suite 3 Master Collection
"Audacity_is1" = Audacity 1.2.6
"avast" = avast! Free Antivirus
"AVerMedia H826 series driver" = AVerMedia H826 series driver 1.0.64.88
"Business Contact Manager" = Business Contact Manager for Outlook 2007 SP2
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"ESET Online Scanner" = ESET Online Scanner v3
"Finale 2009" = Finale 2009
"Google Updater" = Google Updater
"HP-LaserJet 1020 series" = LaserJet 1020 series
"InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = WinDVD BD for VAIO
"InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}" = Click to Disc Editor
"InstallShield_{C1083DBC-C541-4E8C-91EA-D92397AB9A2C}" = OpenMG Secure Module 5.1.00
"InstallShield_{D2912CB2-F95A-406C-AA88-2BB5DCB6D275}" = AVer Media Center
"iPod to Computer Transfer" = iPod to Computer Transfer 4.8.2
"LAME for Audacity_is1" = LAME v3.98.3 for Audacity
"Magic DVD Copier_is1" = Magic DVD Copier Version 5.0.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.2.1300
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Mozilla Firefox 7.0.1 (x86 en-US)" = Mozilla Firefox 7.0.1 (x86 en-US)
"Opera 11.51.1087" = Opera 11.51
"PROPLUS" = Microsoft Office Professional Plus 2007
"SeaMonkey (1.1.16)" = SeaMonkey (1.1.16)
"SeaMonkey (2.0.6)" = SeaMonkey (2.0.6)
"SMALLBUSINESSR" = Microsoft Office Small Business 2007
"SoundTap" = SoundTap Streaming Audio Recorder
"Switch" = Switch Sound File Converter
"WavePad" = WavePad Sound Editor
"WS_FTP Pro" = Ipswitch WS_FTP Pro
"Yahoo! Messenger" = Yahoo! Messenger

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 10/11/2011 08:22:24 PM | Computer Name = Tim-PC | Source = SQLBrowser | ID = 5111819
Description = The SQLBrowser service encountered a critical failure.

Error - 10/11/2011 08:22:24 PM | Computer Name = Tim-PC | Source = SQLBrowser | ID = 5111818
Description = The SQLBrowser service was unable to establish SQL instance and connectivity
discovery.

Error - 10/11/2011 08:22:37 PM | Computer Name = Tim-PC | Source = WinMgmt | ID = 10
Description =

Error - 10/11/2011 08:22:43 PM | Computer Name = Tim-PC | Source = VzCdbSvc | ID = 7
Description = Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error
code = 0x80042019)

Error - 10/11/2011 08:45:14 PM | Computer Name = Tim-PC | Source = SQLBrowser | ID = 5111819
Description = The SQLBrowser service encountered a critical failure.

Error - 10/11/2011 08:45:14 PM | Computer Name = Tim-PC | Source = SQLBrowser | ID = 5111818
Description = The SQLBrowser service was unable to establish SQL instance and connectivity
discovery.

Error - 10/11/2011 08:45:20 PM | Computer Name = Tim-PC | Source = WinMgmt | ID = 10
Description =

Error - 10/11/2011 08:45:21 PM | Computer Name = Tim-PC | Source = VzCdbSvc | ID = 7
Description = Failed to load the plug-in module. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5})(Error
code = 0x80042019)

[ Media Center Events ]
Error - 1/15/2011 11:17:30 AM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Unable to contact server.. (5220.1129)

Error - 1/16/2011 04:03:30 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Error connecting to the internet. (5760.1128)

Error - 1/16/2011 04:03:30 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Unable to contact server.. (5760.1129)

Error - 1/16/2011 04:03:59 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Error connecting to the internet. (5760.1128)

Error - 1/16/2011 04:03:59 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Unable to contact server.. (5760.1129)

Error - 6/20/2011 04:28:04 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Error connecting to the internet. (1488.1128)

Error - 6/20/2011 04:28:04 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Unable to contact server.. (1488.1129)

Error - 6/20/2011 04:28:33 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Error connecting to the internet. (1488.1128)

Error - 6/20/2011 04:28:33 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Unable to contact server.. (1488.1129)

Error - 9/24/2011 09:57:11 PM | Computer Name = Tim-PC.CAMPUS.LOCAL | Source = MCUpdate | ID = 0
Description = Failed to retrieve Directory (Error: The operation has timed out)
(7260.1114)

[ System Events ]
Error - 10/11/2011 08:21:40 PM | Computer Name = Tim-PC | Source = Application Popup | ID = 1060
Description = \SystemRoot\SysWow64\DRIVERS\DMICall.sys has been blocked from loading
due to incompatibility with this system. Please contact your software vendor for
a compatible version of the driver.

Error - 10/11/2011 08:22:38 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7024
Description =

Error - 10/11/2011 08:22:38 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7009
Description =

Error - 10/11/2011 08:22:38 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 10/11/2011 08:22:38 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7026
Description =

Error - 10/11/2011 08:44:41 PM | Computer Name = Tim-PC | Source = Application Popup | ID = 1060
Description = \SystemRoot\SysWow64\DRIVERS\DMICall.sys has been blocked from loading
due to incompatibility with this system. Please contact your software vendor for
a compatible version of the driver.

Error - 10/11/2011 08:45:20 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7024
Description =

Error - 10/11/2011 08:45:20 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7009
Description =

Error - 10/11/2011 08:45:20 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 10/11/2011 08:45:20 PM | Computer Name = Tim-PC | Source = Service Control Manager | ID = 7026
Description =


< End of report >
  • 0

Advertisements


#116
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,788 posts
  • MVP
Nothing there. Appears all of the files are present and legit.

Copy the next two lines:

reg query HKEY_CLASSES_ROOT\CLSID\{79eac9e0-baf9-11ce-8c82-00aa004ba90b}\InprocServer32 > \junk.txt
reg query HKLM\SOFTWARE\Classes\Interface\{00020400-0000-0000-C000-000000000046} /s >> \junk.txt
reg query HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs >> \junk.txt


Start, Programs, Accessories then right click on Command Prompt and Run As Admin.

Right click and Paste or Edit then Paste. Hit Enter.

Start up Opera then return to the command prompt and

tasklist  /m  >>  \junk.txt 
netstat  -rn  >>  \junk.txt
netstat  -an  >>  \junk.txt


Attach \junk.txt to your next post.
  • 0

#117
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
Hopefully this i correc....

Attached Files

  • Attached File  junk.txt   111.59KB   85 downloads

  • 0

#118
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
Will have to continue in the morning. Getting a bit hazy tonight. Thanks for your help Ron!
  • 0

#119
tedins

tedins

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 122 posts
From the info you sent, it looks to be a very nasty and hard to find sucker. Once we get the computer back to semi-normal, what would you suggest to protect it? It obviously got by AVG and Windows Security.

Edited by tedins, 12 October 2011 - 08:33 AM.

  • 0

#120
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,788 posts
  • MVP
I run the free version of Avast and for my paranoid or higher risk clients I recommend also using using the free online armor. If money is no object then instead of Avast and Online Armor get Kaspersky. In addition to a good anti-virus it is critically important to keep your programs upto date and not just Windows. I usually recommend FileHippo's updatechecker.

By the way running two anti-viruses like you were did actually weakens your defenses as they spend too much of their time fighting each other.

The last junk file was interesting. If you look at the Opera section on yours it only has

opera.exe 6616 ntdll.dll, wow64.dll, wow64win.dll,
wow64cpu.dll



on mine:

opera.exe 3028 ntdll.dll, kernel32.dll, snxhk.dll,
USER32.dll, GDI32.dll, ADVAPI32.dll,
RPCRT4.dll, SHELL32.dll, msvcrt.dll,
SHLWAPI.dll, ole32.dll, IMM32.DLL,
MSCTF.dll, LPK.DLL, USP10.dll,
comctl32.dll, psapi.dll, uxtheme.dll,
SETUPAPI.dll, OLEAUT32.dll, Opera.dll,
WINMM.dll, OLEACC.dll, VERSION.dll,
WSOCK32.dll, WS2_32.dll, NSI.dll,
COMDLG32.dll, Wintrust.dll, CRYPT32.dll,
MSASN1.dll, USERENV.dll, Secur32.dll,
imagehlp.dll, dwmapi.dll, CLBCatQ.DLL,
Msimg32.dll, mswsock.dll, wshtcpip.dll,
NLAapi.dll, IPHLPAPI.DLL, dhcpcsvc.DLL,
DNSAPI.dll, WINNSI.DLL, dhcpcsvc6.DLL,
napinsp.dll, pnrpnsp.dll, winrnr.dll,
WLDAP32.dll, wship6.dll, rasadhlp.dll,
NPSWF32.dll, WININET.dll, Normaliz.dll,
urlmon.dll, iertutil.dll, DSOUND.dll,
POWRPROF.dll, mscms.dll, WINSPOOL.DRV,
mlang.dll, credssp.dll, schannel.dll,
NETAPI32.dll, wdmaud.drv, ksuser.dll,
MMDevAPI.DLL, AVRT.dll, AUDIOSES.DLL,
audioeng.dll, msacm32.drv, MSACM32.dll,
midimap.dll



Let's see if the same thing happens with FF. I'm at a bit of a disadvantage here since I don't have a 64 bit system to play with.

Run Firefox and also your IE 64 that works. Too bad the 32 bit IE doesn't stay up long enough to run this test.

now:
Copy this line:

reg query "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs" > \junk.txt

Start, Programs, Accessories then right click on Command Prompt and Run As Admin.

right click and Paste or Edit then Paste. Hit Enter.

tasklist  /m  >>  \junk.txt 

Attach the file \junk.txt to your next post.

Ron
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP