Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Slow online and off [Closed]


  • This topic is locked This topic is locked

#1
sharokc

sharokc

    Member

  • Member
  • PipPip
  • 72 posts
Please help. machine is so slow. Can take up to 15 minutes to load. Taking forever to get any work done. online pages mainly. i don't get an error msg or anyting page says transferring data in the lower left corner of screen but that's all i can really tell ya.

otl log below

OTL logfile created on: 7/29/2012 12:25:56 PM - Run 3
OTL by OldTimer - Version 3.2.43.1 Folder = C:\Users\me\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.95 Gb Total Physical Memory | 2.33 Gb Available Physical Memory | 59.04% Memory free
7.90 Gb Paging File | 6.04 Gb Available in Paging File | 76.48% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 580.98 Gb Total Space | 509.12 Gb Free Space | 87.63% Space Free | Partition Type: NTFS
Drive E: | 1.84 Gb Total Space | 1.36 Gb Free Space | 74.10% Space Free | Partition Type: FAT

Computer Name: JENNIFER-PC | User Name: me | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/07/16 14:27:37 | 000,186,832 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
PRC - [2012/06/26 11:17:26 | 000,108,032 | ---- | M] (Eastman Kodak Company) -- C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
PRC - [2012/06/17 20:20:30 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012/06/12 19:45:40 | 000,935,480 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe
PRC - [2012/06/12 19:45:33 | 001,104,440 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
PRC - [2012/05/25 09:16:46 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\me\Downloads\OTL.exe
PRC - [2012/03/12 18:06:04 | 000,250,528 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11g_ActiveX.exe
PRC - [2012/01/24 17:24:26 | 002,416,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
PRC - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
PRC - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
PRC - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
PRC - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe


========== Modules (No Company Name) ==========

MOD - [2012/06/17 20:20:30 | 002,042,848 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012/06/12 19:45:43 | 000,132,664 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.1.0\SiteSafety.dll
MOD - [2012/06/12 19:45:33 | 001,104,440 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
MOD - [2011/09/07 12:51:25 | 006,053,536 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/03/02 17:36:16 | 000,266,680 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:64bit: - [2010/12/20 20:30:30 | 000,822,704 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:64bit: - [2010/12/09 19:45:26 | 000,489,384 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2010/12/08 17:42:54 | 000,137,632 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2010/10/20 16:41:00 | 000,138,656 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2010/09/22 20:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:38:59 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CISVC.EXE -- (CISVC)
SRV - [2012/06/17 20:20:30 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/06/12 19:45:40 | 000,935,480 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe -- (vToolbarUpdater11.1.0)
SRV - [2012/02/09 14:13:24 | 002,143,552 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe -- (avgfws)
SRV - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2011/02/11 13:45:52 | 000,054,136 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2010/12/20 20:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS) Intel®
SRV - [2010/12/20 20:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS) Intel®
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 22:24:51 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe -- (WlanWpsSvc)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/05/11 07:34:14 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2012/05/11 07:34:12 | 000,099,384 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/10/07 06:23:46 | 000,283,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2011/09/13 06:30:08 | 000,037,456 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2011/08/08 06:08:58 | 000,046,672 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2011/07/11 01:14:36 | 000,375,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2011/07/11 01:14:08 | 000,029,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV:64bit: - [2011/07/11 01:14:06 | 000,120,400 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV:64bit: - [2011/07/11 01:14:06 | 000,026,704 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AVGIDSEH.sys -- (AVGIDSEH)
DRV:64bit: - [2011/05/23 01:03:28 | 000,048,992 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:64bit: - [2011/04/04 22:10:14 | 012,262,624 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/08 21:07:00 | 000,038,096 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:64bit: - [2011/02/03 21:59:06 | 001,413,680 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/01/27 14:34:12 | 001,577,088 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:64bit: - [2011/01/12 19:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011/01/05 03:08:58 | 001,109,096 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtl8192ce.sys -- (RTL8192Ce)
DRV:64bit: - [2010/12/01 18:12:06 | 000,250,984 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/11/30 16:40:04 | 000,307,304 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:24:15 | 000,146,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST)
DRV:64bit: - [2010/11/20 22:23:48 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/08 14:44:40 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2010/10/19 18:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64) Intel®
DRV:64bit: - [2010/10/15 03:28:16 | 000,317,440 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) Intel®
DRV:64bit: - [2009/10/27 02:29:44 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWVsp.sys -- (PTUMWVsp)
DRV:64bit: - [2009/10/27 02:29:32 | 000,144,912 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWNET.sys -- (PTUMWNET)
DRV:64bit: - [2009/10/27 02:29:24 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWMdm.sys -- (PTUMWMdm)
DRV:64bit: - [2009/10/27 02:29:18 | 000,012,688 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWFLT.sys -- (PTUMWFLT)
DRV:64bit: - [2009/10/27 02:29:06 | 000,024,976 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PTUMWCDF.sys -- (PTUMWCDF)
DRV:64bit: - [2009/10/27 02:28:58 | 000,071,056 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWBus.sys -- (PTUMWBus)
DRV:64bit: - [2009/08/20 11:00:10 | 000,664,576 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RTL8192su.sys -- (RTL8192su)
DRV:64bit: - [2009/07/30 22:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/14 17:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/24 17:36:48 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/06/19 21:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:64bit: - [2009/06/15 15:58:50 | 000,012,800 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\QIOMem.sys -- (QIOMem)
DRV:64bit: - [2009/06/10 16:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 16:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 16:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 15:35:36 | 000,867,328 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2012/02/09 13:16:38 | 000,011,856 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}
IE:64bit: - HKLM\..\SearchScopes\{19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}
IE - HKLM\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes\{34A07218-11A1-4AEA-8EE1-E5E97DE08D07}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKCU\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.c...pr&d=2012-03-12 17:22:40&v=11.1.0.7&sap=dsp&q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://mail.google..../?shva=1#inbox"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.1.0\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2012/04/03 12:23:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\11.1.0.7\ [2012/06/12 19:46:03 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/06/17 20:20:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/06/17 20:20:31 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2012/03/20 11:47:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Extensions
[2012/06/05 01:40:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions
[2012/04/29 01:48:43 | 000,000,000 | ---D | M] (BargainMatch) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]
[2012/07/29 11:43:03 | 000,002,030 | ---- | M] () -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\searchplugins\search-here.xml
[2012/03/20 11:43:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/03/28 22:29:23 | 000,372,140 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\{5C46D283-ABDE-4DCE-B83C-08881401921C}.XPI
[2012/06/05 01:40:59 | 000,020,228 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\[email protected]
[2012/06/17 20:20:31 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/06/12 19:45:31 | 000,003,766 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml
[2012/06/17 20:20:29 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/06/17 20:20:29 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms},
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.56\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.56\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.56\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.200.2 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U20 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: VUDU Movies = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\daomabnenlgkenegngdblacoobnncgib\2.0.0.2_0\
CHR - Extension: Crackle = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.3_0\
CHR - Extension: YourNextFilm = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jadajphjladhhmcjiomkmlihlknbnicc\0.0.0.1_0\
CHR - Extension: AVG Safe Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\
CHR - Extension: TV for Google Chrome\u2122 = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\lambangeielkjcnmioccboaphdfcffib\2.2.4_0\
CHR - Extension: Gmail = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/06/03 12:22:07 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll ()
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HF_G_Jul] C:\Program Files (x86)\AVG Secure Search\HF_G_Jul.exe ()
O4 - HKLM..\Run: [TSleepSrv] C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe (TOSHIBA)
O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG Secure Search\vprot.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\SysWow64\GPhotos.scr (Google Inc.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
O16 - DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.micr...44/igdtoolx.cab (IGDTester Class)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C8BA29F-8F88-481E-A27D-8E3E0B68DF82}: NameServer = 10.133.20.11 10.132.20.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A97D3E95-EB25-4277-A222-41B8B3302689}: DhcpNameServer = 192.168.2.1 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.1.0\ViProtocol.dll ()
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/07/29 11:48:50 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\Downloads
[2012/07/25 16:16:51 | 000,000,000 | ---D | C] -- C:\Users\me\Desktop\move to stick
[2012/07/11 18:13:58 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/07/09 19:07:46 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\New folder
[2012/07/09 19:01:18 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\from trash need to sort

========== Files - Modified Within 30 Days ==========

[2012/07/29 12:33:03 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/07/29 10:44:57 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/07/29 10:44:57 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/07/29 10:41:32 | 000,774,006 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2012/07/29 10:41:32 | 000,659,664 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2012/07/29 10:41:32 | 000,117,376 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2012/07/29 10:37:47 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/07/29 10:37:45 | 000,000,374 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts.ics
[2012/07/29 10:37:15 | 000,065,536 | ---- | M] () -- C:\windows\SysNative\Ikeext.etl
[2012/07/29 10:37:10 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012/07/29 10:37:09 | 000,015,360 | ---- | M] () -- C:\windows\SysNative\umstartup.etl
[2012/07/29 10:37:03 | 3180,220,416 | -HS- | M] () -- C:\hiberfil.sys
[2012/07/27 00:04:55 | 102,247,577 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\incavi.avm
[2012/07/26 00:45:11 | 000,277,399 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\iavichjg.avm
[2012/07/25 02:39:02 | 000,051,200 | ---- | M] () -- C:\Users\me\Documents\md.pub
[2012/07/24 23:32:14 | 000,024,576 | ---- | M] () -- C:\windows\SysNative\umstartup000.etl
[2012/07/23 10:36:53 | 000,543,588 | ---- | M] () -- C:\Users\me\Desktop\blue aug.tif
[2012/07/23 10:36:00 | 000,417,436 | ---- | M] () -- C:\Users\me\Desktop\dreamy aug.tif
[2012/07/23 10:34:47 | 000,451,184 | ---- | M] () -- C:\Users\me\Desktop\marq aug.tif
[2012/07/22 15:57:12 | 000,011,191 | ---- | M] () -- C:\Users\me\Desktop\ME AND GOD.jpg
[2012/07/22 08:11:21 | 000,234,376 | ---- | M] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | M] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | M] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | M] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/15 17:24:42 | 000,418,656 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2012/07/12 21:11:35 | 000,383,540 | ---- | M] () -- C:\Users\me\Desktop\Suzies Stuff_ SUZIE’S GIRLY DIAPER COVER.pdf
[2012/07/12 09:37:10 | 000,183,702 | ---- | M] () -- C:\Users\me\Desktop\My Baby1 - Our365.pdf
[2012/07/12 09:36:07 | 000,319,817 | ---- | M] () -- C:\Users\me\Desktop\My Baby4 - Our365.pdf
[2012/07/12 09:35:53 | 000,137,286 | ---- | M] () -- C:\Users\me\Desktop\My Baby3 - Our365.pdf
[2012/07/12 09:35:38 | 000,111,963 | ---- | M] () -- C:\Users\me\Desktop\My Baby2 - Our365.pdf
[2012/07/12 09:35:21 | 000,142,417 | ---- | M] () -- C:\Users\me\Desktop\My Baby - Our365.pdf
[2012/07/12 01:29:26 | 000,664,095 | ---- | M] () -- C:\Users\me\Desktop\Waldorf Inspired Baby Doll Directions _ Wee Folk Art.pdf
[2012/07/12 01:28:10 | 002,329,663 | ---- | M] () -- C:\Users\me\Desktop\The Bradens_ Newborn Diaper Cover Pattern.pdf
[2012/07/06 08:28:57 | 000,217,375 | ---- | M] () -- C:\Users\me\Desktop\Sweet Wednesday.pdf

========== Files Created - No Company Name ==========

[2012/07/25 02:39:02 | 000,051,200 | ---- | C] () -- C:\Users\me\Documents\md.pub
[2012/07/23 10:36:53 | 000,543,588 | ---- | C] () -- C:\Users\me\Desktop\blue aug.tif
[2012/07/23 10:36:00 | 000,417,436 | ---- | C] () -- C:\Users\me\Desktop\dreamy aug.tif
[2012/07/23 10:34:46 | 000,451,184 | ---- | C] () -- C:\Users\me\Desktop\marq aug.tif
[2012/07/22 15:48:51 | 000,011,191 | ---- | C] () -- C:\Users\me\Desktop\ME AND GOD.jpg
[2012/07/22 08:19:46 | 000,234,376 | ---- | C] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | C] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | C] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | C] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/12 21:11:55 | 000,383,540 | ---- | C] () -- C:\Users\me\Desktop\Suzies Stuff_ SUZIE’S GIRLY DIAPER COVER.pdf
[2012/07/12 09:37:19 | 000,183,702 | ---- | C] () -- C:\Users\me\Desktop\My Baby1 - Our365.pdf
[2012/07/12 09:36:13 | 000,319,817 | ---- | C] () -- C:\Users\me\Desktop\My Baby4 - Our365.pdf
[2012/07/12 09:35:59 | 000,137,286 | ---- | C] () -- C:\Users\me\Desktop\My Baby3 - Our365.pdf
[2012/07/12 09:35:45 | 000,111,963 | ---- | C] () -- C:\Users\me\Desktop\My Baby2 - Our365.pdf
[2012/07/12 09:35:32 | 000,142,417 | ---- | C] () -- C:\Users\me\Desktop\My Baby - Our365.pdf
[2012/07/12 01:29:30 | 000,664,095 | ---- | C] () -- C:\Users\me\Desktop\Waldorf Inspired Baby Doll Directions _ Wee Folk Art.pdf
[2012/07/12 01:28:19 | 002,329,663 | ---- | C] () -- C:\Users\me\Desktop\The Bradens_ Newborn Diaper Cover Pattern.pdf
[2012/07/06 08:29:01 | 000,217,375 | ---- | C] () -- C:\Users\me\Desktop\Sweet Wednesday.pdf
[2012/06/10 16:40:25 | 000,013,734 | ---- | C] () -- C:\Users\me\AppData\Roaming\UserTile.png
[2012/06/03 22:28:41 | 000,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2012/06/03 12:12:01 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012/06/03 12:12:01 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012/06/03 12:12:01 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012/06/03 12:12:01 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012/06/03 12:12:01 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012/03/26 18:01:45 | 000,791,592 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2012/03/16 10:26:19 | 000,007,596 | ---- | C] () -- C:\Users\me\AppData\Local\resmon.resmoncfg
[2011/09/07 12:13:21 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
[2011/04/04 22:07:00 | 000,145,804 | ---- | C] () -- C:\windows\SysWow64\igcompkrng600.bin
[2011/04/04 22:06:58 | 000,963,116 | ---- | C] () -- C:\windows\SysWow64\igkrng600.bin
[2011/04/04 22:06:58 | 000,216,876 | ---- | C] () -- C:\windows\SysWow64\igfcg600m.bin
[2011/02/03 21:56:58 | 000,066,856 | ---- | C] () -- C:\windows\SysWow64\SynTPEnhPS.dll

========== LOP Check ==========

[2012/04/03 12:21:39 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\AVG2012
[2012/03/16 08:58:47 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Book Place
[2012/06/28 05:25:06 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Dropbox
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia Ovi Suite
[2012/03/22 21:25:50 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PC Suite
[2012/07/14 11:51:08 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/06/10 16:40:19 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PeerNetworking
[2012/05/31 23:52:35 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\SoftGrid Client
[2012/03/16 08:11:21 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Toshiba
[2012/03/26 18:08:23 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\TP
[2012/05/06 23:43:24 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Windows Live Writer
[2012/06/07 23:27:15 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\XMind
[2012/05/14 03:20:50 | 000,032,650 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4

< End of report >
  • 0

Advertisements


#2
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
PS just noticed that when i click my ie icon 6+ ie windows pop up.?????
  • 0

#3
blmadara

blmadara

    Trusted Helper

  • Malware Removal
  • 767 posts
Hi sharokc, welcome to Geeks to Go. My name is blmadara and I will be helping you with your problems. Please be patient with me as I am still in training and my responses will have to be reviewed by an expert before I can post them.

I'd like to go over some things that will help both of us.

  • Read each of my posts entirely before performing my instructions. It would be helpful if you printed my instructions so you can read and check the steps as you perform them.
  • Follow the steps exactly in the order posted.
  • Please don't be afraid to ask questions. If you don't understand something, let me know before continuing.
  • If you can't perform a certain step, or you're unsure about what to do, please stop and let me know.
  • It is very important that you stay with me until the end so we make sure that we have removed all the bad stuff.
  • Please don't attach any logs to your posts unless I request it. It is easier for me if you copy and paste the logs into your reply.
  • Finally, never fix anything using other programs on your own. This can hinder my ability to see what is wrong with your computer and make it harder to clean your computer.



Step One: Run OTL Custom Scan

Since it's been a few days since your original post, I'd like to get a fresh scan.

Download OTL to your Desktop
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    consrv.dll
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    /md5stop
    C:\Windows\assembly\tmp\U\*.* /s
    %Temp%\smtmp\1\*.*
    %Temp%\smtmp\2\*.*
    %Temp%\smtmp\3\*.*
    %Temp%\smtmp\4\*.*
    >C:\commands.txt echo list vol /raw /hide /c
    /wait
    >C:\DiskReport.txt diskpart /s C:\commands.txt /raw /hide /c
    /wait
    type c:\diskreport.txt /c
    /wait
    erase c:\commands.txt /hide /c
    /wait
    erase c:\diskreport.txt /hide /c
    CREATERESTOREPOINT
    
  • Please select the Scan All Users checkbox.
  • Change the File Age dropdown list from 30 days to 60 days.
  • Under Extra Registry heading, select Use Safelist.
  • Select LOP Check and Purity Check.
  • Then click the Run Scan button at the top
  • Let the program run unhindered, until it is done
  • Post the log it produces in your next reply.

Step Two: Run aswMBR

Download aswMBR.exe to your desktop.

  • Double click aswMBR.exe to run it.
  • When asked if you want to download Avast's virus definitions please select, No.
  • Click Scan to start the scan.
    Posted Image
  • When the scan ends click Save Log and save it to your desktop.
    Posted Image
  • Post the log in your next reply.


What I need in your next post:
1. The reports from the OTL scan, OTL.txt and Extras.txt.
2. The log produced by aswMBR.exe.
  • 0

#4
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
Thank you so much for your help. below please find my OTL log along with extras.

will now run the mbr you suggest and post it shortly
thanks again
sharon

OTL logfile created on: 8/6/2012 11:05:24 AM - Run 4
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\me\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.95 Gb Total Physical Memory | 2.52 Gb Available Physical Memory | 63.87% Memory free
7.90 Gb Paging File | 6.25 Gb Available in Paging File | 79.12% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 580.98 Gb Total Space | 506.35 Gb Free Space | 87.16% Space Free | Partition Type: NTFS
Drive E: | 937.61 Mb Total Space | 766.59 Mb Free Space | 81.76% Space Free | Partition Type: FAT

Computer Name: JENNIFER-PC | User Name: me | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

========== Processes (SafeList) ==========

PRC - [2012/08/06 11:04:26 | 000,935,008 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe
PRC - [2012/08/06 11:02:24 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\me\Downloads\OTL(1).exe
PRC - [2012/07/29 18:32:36 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012/07/16 14:27:37 | 000,186,832 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
PRC - [2012/06/26 11:17:26 | 000,108,032 | ---- | M] (Eastman Kodak Company) -- C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
PRC - [2012/01/24 17:24:26 | 002,416,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
PRC - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
PRC - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
PRC - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
PRC - [2009/10/19 15:51:14 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe
PRC - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe


========== Modules (No Company Name) ==========

MOD - [2012/07/29 18:32:36 | 002,003,424 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/09/07 12:51:25 | 006,053,536 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2009/10/19 15:51:14 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/03/02 17:36:16 | 000,266,680 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:64bit: - [2010/12/20 20:30:30 | 000,822,704 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:64bit: - [2010/12/09 19:45:26 | 000,489,384 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2010/12/08 17:42:54 | 000,137,632 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2010/10/20 16:41:00 | 000,138,656 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2010/09/22 20:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:38:59 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CISVC.EXE -- (CISVC)
SRV - [2012/08/06 11:04:26 | 000,935,008 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- (vToolbarUpdater11.2.0)
SRV - [2012/07/29 18:32:36 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/02/09 14:13:24 | 002,143,552 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe -- (avgfws)
SRV - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2011/02/11 13:45:52 | 000,054,136 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2010/12/20 20:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/20 20:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 22:24:51 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe -- (WlanWpsSvc)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/05/11 07:34:14 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2012/05/11 07:34:12 | 000,099,384 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/10/07 06:23:46 | 000,283,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2011/09/13 06:30:08 | 000,037,456 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2011/08/08 06:08:58 | 000,046,672 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2011/07/11 01:14:36 | 000,375,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2011/07/11 01:14:08 | 000,029,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV:64bit: - [2011/07/11 01:14:06 | 000,120,400 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV:64bit: - [2011/07/11 01:14:06 | 000,026,704 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AVGIDSEH.sys -- (AVGIDSEH)
DRV:64bit: - [2011/05/23 01:03:28 | 000,048,992 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:64bit: - [2011/04/04 22:10:14 | 012,262,624 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/08 21:07:00 | 000,038,096 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:64bit: - [2011/02/03 21:59:06 | 001,413,680 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/01/27 14:34:12 | 001,577,088 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:64bit: - [2011/01/12 19:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011/01/05 03:08:58 | 001,109,096 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtl8192ce.sys -- (RTL8192Ce)
DRV:64bit: - [2010/12/01 18:12:06 | 000,250,984 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/11/30 16:40:04 | 000,307,304 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:24:15 | 000,146,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST)
DRV:64bit: - [2010/11/20 22:23:48 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/08 14:44:40 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2010/10/19 18:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010/10/15 03:28:16 | 000,317,440 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2009/10/27 02:29:44 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWVsp.sys -- (PTUMWVsp)
DRV:64bit: - [2009/10/27 02:29:32 | 000,144,912 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWNET.sys -- (PTUMWNET)
DRV:64bit: - [2009/10/27 02:29:24 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWMdm.sys -- (PTUMWMdm)
DRV:64bit: - [2009/10/27 02:29:18 | 000,012,688 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWFLT.sys -- (PTUMWFLT)
DRV:64bit: - [2009/10/27 02:29:06 | 000,024,976 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PTUMWCDF.sys -- (PTUMWCDF)
DRV:64bit: - [2009/10/27 02:28:58 | 000,071,056 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWBus.sys -- (PTUMWBus)
DRV:64bit: - [2009/08/20 11:00:10 | 000,664,576 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RTL8192su.sys -- (RTL8192su)
DRV:64bit: - [2009/07/30 22:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/14 17:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/24 17:36:48 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/06/19 21:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:64bit: - [2009/06/15 15:58:50 | 000,012,800 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\QIOMem.sys -- (QIOMem)
DRV:64bit: - [2009/06/10 16:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 16:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 16:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 15:35:36 | 000,867,328 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2012/02/09 13:16:38 | 000,011,856 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}
IE:64bit: - HKLM\..\SearchScopes\{19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}
IE - HKLM\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\SearchScopes\{34A07218-11A1-4AEA-8EE1-E5E97DE08D07}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.c...pr&d=2012-03-12 17:22:40&v=11.1.0.7&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://mail.google..../?shva=1#inbox"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.2.0\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2012/04/03 12:23:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\11.1.0.12\ [2012/08/06 11:04:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2012/03/20 11:47:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Extensions
[2012/08/03 19:41:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions
[2012/04/29 01:48:43 | 000,000,000 | ---D | M] (BargainMatch) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]
[2012/08/06 11:03:06 | 000,002,030 | ---- | M] () -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\searchplugins\search-here.xml
[2012/03/20 11:43:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/03/28 22:29:23 | 000,372,140 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\{5C46D283-ABDE-4DCE-B83C-08881401921C}.XPI
[2012/08/03 19:41:32 | 000,021,674 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\[email protected]
[2012/07/29 18:32:36 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/08/06 11:04:24 | 000,003,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml
[2012/06/17 20:20:29 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/06/17 20:20:29 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.200.2 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U20 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: VUDU Movies = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\daomabnenlgkenegngdblacoobnncgib\2.0.0.2_0\
CHR - Extension: Crackle = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.3_0\
CHR - Extension: YourNextFilm = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jadajphjladhhmcjiomkmlihlknbnicc\0.0.0.1_0\
CHR - Extension: AVG Safe Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\
CHR - Extension: TV for Google Chrome\u2122 = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\lambangeielkjcnmioccboaphdfcffib\2.2.6_0\
CHR - Extension: Gmail = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/06/03 12:22:07 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll ()
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [{9ABA99F9-A8FE-7E89-8E99-AE8b85E9AE9B}] C:\Program Files (x86)\Cricket Broadband Connect\AvqAutoRun.exe ()
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HF_G_Jul] C:\Program Files (x86)\AVG Secure Search\HF_G_Jul.exe ()
O4 - HKLM..\Run: [TSleepSrv] C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe (TOSHIBA)
O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG Secure Search\vprot.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-4166229290-1685211620-4260776656-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\SysWow64\GPhotos.scr (Google Inc.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
O16 - DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.micr...44/igdtoolx.cab (IGDTester Class)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C8BA29F-8F88-481E-A27D-8E3E0B68DF82}: NameServer = 10.133.20.11 10.132.20.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A97D3E95-EB25-4277-A222-41B8B3302689}: DhcpNameServer = 192.168.2.1 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll ()
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)


CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 60 Days ==========

[2012/07/31 13:01:56 | 000,448,512 | ---- | C] (OldTimer Tools) -- C:\Users\me\Desktop\TFC.exe
[2012/07/29 11:48:50 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\Downloads
[2012/07/17 10:59:19 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cdosys.dll
[2012/07/17 10:59:15 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cdosys.dll
[2012/07/17 10:41:51 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msxml3r.dll
[2012/07/17 10:41:51 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msxml3r.dll
[2012/07/17 10:26:34 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2012/07/11 18:13:58 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/07/09 19:01:18 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\from trash need to sort
[2012/06/28 00:01:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KODAK
[2012/06/27 23:59:46 | 000,000,000 | ---D | C] -- C:\ProgramData\{C3B35EBF-B1F6-4DE1-9682-ED71913E187B}
[2012/06/27 07:59:44 | 000,000,000 | R--D | C] -- C:\Users\me\Dropbox
[2012/06/27 07:57:54 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2012/06/27 07:57:34 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\Dropbox
[2012/06/27 07:56:05 | 000,918,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2012/06/27 07:56:05 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2012/06/27 07:55:59 | 000,735,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2012/06/27 07:55:57 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2012/06/27 07:55:57 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2012/06/27 07:55:56 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2012/06/27 07:55:56 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2012/06/27 07:55:56 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\url.dll
[2012/06/27 07:55:56 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll
[2012/06/27 07:55:36 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpcorekmts.dll
[2012/06/27 07:55:36 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpwsx.dll
[2012/06/27 07:55:36 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdrmemptylst.exe
[2012/06/27 07:55:35 | 003,216,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msi.dll
[2012/06/27 07:55:30 | 001,462,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\crypt32.dll
[2012/06/27 07:55:30 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cryptnet.dll
[2012/06/27 07:55:17 | 005,559,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2012/06/27 07:55:16 | 003,968,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2012/06/27 07:55:16 | 003,913,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2012/06/18 19:56:06 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll
[2012/06/18 19:56:06 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe
[2012/06/18 19:56:06 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups2.dll
[2012/06/18 19:54:58 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll
[2012/06/18 19:54:58 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll
[2012/06/18 19:54:58 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll
[2012/06/18 19:53:06 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll
[2012/06/18 19:53:06 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe
[2012/06/18 10:39:12 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Local\AVG Secure Search
[2012/06/10 23:45:32 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\OneNote Notebooks
[2012/06/10 17:46:12 | 000,000,000 | -H-D | C] -- C:\Users\me\Desktop\.picasaoriginals
[2012/06/10 16:40:19 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\PeerNetworking
[2012/06/09 12:34:20 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2012/06/09 12:34:10 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Local\Microsoft Help
[2012/06/09 12:34:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2012/06/08 00:36:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft ActiveSync
[2012/06/08 00:35:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2012/06/08 00:35:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
[2012/06/08 00:31:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2012/06/08 00:31:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\L&H
[2012/06/08 00:30:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2012/06/08 00:30:44 | 000,000,000 | ---D | C] -- C:\windows\PCHEALTH
[2012/06/07 23:27:06 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XMind
[2012/06/07 23:27:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMind
[2012/06/07 23:26:44 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\XMind
[2012/06/07 23:25:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\XMind

========== Files - Modified Within 60 Days ==========

[2012/08/06 10:32:02 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/08/06 08:15:33 | 103,105,639 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\incavi.avm
[2012/08/06 00:18:44 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012/08/05 23:11:11 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/05 23:11:11 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/05 23:10:50 | 000,774,006 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2012/08/05 23:10:50 | 000,659,664 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2012/08/05 23:10:50 | 000,117,376 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2012/08/05 23:03:45 | 000,000,374 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts.ics
[2012/08/05 23:03:43 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/05 23:03:35 | 000,065,536 | ---- | M] () -- C:\windows\SysNative\Ikeext.etl
[2012/08/05 23:03:30 | 000,021,504 | ---- | M] () -- C:\windows\SysNative\umstartup.etl
[2012/08/05 23:03:18 | 3180,220,416 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/03 19:39:08 | 000,033,792 | ---- | M] () -- C:\windows\SysNative\umstartup000.etl
[2012/08/01 21:11:34 | 000,277,536 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\iavichjg.avm
[2012/08/01 14:05:52 | 000,012,234 | ---- | M] () -- C:\Users\me\Desktop\MARK THEDFORD JOHNSTON ODCN p1.pdf
[2012/07/31 13:02:56 | 000,448,512 | ---- | M] (OldTimer Tools) -- C:\Users\me\Desktop\TFC.exe
[2012/07/31 08:52:03 | 000,195,072 | ---- | M] () -- C:\Users\me\Documents\map 080112.est
[2012/07/25 02:39:02 | 000,051,200 | ---- | M] () -- C:\Users\me\Documents\md.pub
[2012/07/22 08:11:21 | 000,234,376 | ---- | M] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | M] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | M] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | M] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/15 17:24:42 | 000,418,656 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2012/07/12 09:35:21 | 000,142,417 | ---- | M] () -- C:\Users\me\Desktop\My Baby - Our365.pdf
[2012/06/28 23:39:48 | 000,195,072 | ---- | M] () -- C:\Users\me\Documents\jug.est
[2012/06/28 10:01:56 | 001,651,230 | ---- | M] () -- C:\Users\me\Documents\products being updated 062712.csv
[2012/06/28 00:01:57 | 000,002,175 | ---- | M] () -- C:\Users\Public\Desktop\KODAK Share Button App.lnk
[2012/06/27 18:34:28 | 000,258,214 | ---- | M] () -- C:\Users\me\Documents\D940.pdf
[2012/06/27 07:59:44 | 000,001,051 | ---- | M] () -- C:\Users\me\Desktop\Dropbox.lnk
[2012/06/25 09:08:51 | 000,200,704 | ---- | M] () -- C:\Users\me\Desktop\SHAR'S DIET.pub
[2012/06/12 10:48:56 | 000,001,765 | ---- | M] () -- C:\Users\me\Desktop\Office Professional 2010_1339516136621.lnk
[2012/06/11 14:26:52 | 000,089,568 | ---- | M] () -- C:\Users\me\Desktop\SHAR'S DIET.pdf
[2012/06/10 17:56:35 | 000,089,852 | ---- | M] () -- C:\Users\me\Desktop\sharon's signature.png
[2012/06/10 17:11:55 | 000,020,674 | ---- | M] () -- C:\Users\me\Desktop\Picture1.png
[2012/06/10 16:40:25 | 000,013,734 | ---- | M] () -- C:\Users\me\AppData\Roaming\UserTile.png
[2012/06/08 00:37:06 | 000,000,376 | ---- | M] () -- C:\windows\ODBC.INI
[2012/06/07 23:56:13 | 000,000,960 | ---- | M] () -- C:\Users\me\Desktop\XMind.lnk
[2012/06/07 19:31:06 | 000,002,037 | ---- | M] () -- C:\Users\me\Desktop\Microsoft Office Download Manager_1339115457094.lnk

========== Files Created - No Company Name ==========

[2012/08/01 14:06:27 | 000,012,234 | ---- | C] () -- C:\Users\me\Desktop\MARK THEDFORD JOHNSTON ODCN p1.pdf
[2012/07/31 08:52:02 | 000,195,072 | ---- | C] () -- C:\Users\me\Documents\map 080112.est
[2012/07/25 02:39:02 | 000,051,200 | ---- | C] () -- C:\Users\me\Documents\md.pub
[2012/07/22 08:19:46 | 000,234,376 | ---- | C] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | C] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | C] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | C] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/12 09:35:32 | 000,142,417 | ---- | C] () -- C:\Users\me\Desktop\My Baby - Our365.pdf
[2012/06/28 23:39:48 | 000,195,072 | ---- | C] () -- C:\Users\me\Documents\jug.est
[2012/06/28 00:01:57 | 000,002,175 | ---- | C] () -- C:\Users\Public\Desktop\KODAK Share Button App.lnk
[2012/06/27 18:34:28 | 000,258,214 | ---- | C] () -- C:\Users\me\Documents\D940.pdf
[2012/06/27 08:01:41 | 001,651,230 | ---- | C] () -- C:\Users\me\Documents\products being updated 062712.csv
[2012/06/27 07:59:44 | 000,001,051 | ---- | C] () -- C:\Users\me\Desktop\Dropbox.lnk
[2012/06/12 10:48:56 | 000,001,765 | ---- | C] () -- C:\Users\me\Desktop\Office Professional 2010_1339516136621.lnk
[2012/06/11 14:28:04 | 000,089,568 | ---- | C] () -- C:\Users\me\Desktop\SHAR'S DIET.pdf
[2012/06/10 17:56:33 | 000,089,852 | ---- | C] () -- C:\Users\me\Desktop\sharon's signature.png
[2012/06/10 17:11:55 | 000,020,674 | ---- | C] () -- C:\Users\me\Desktop\Picture1.png
[2012/06/10 16:40:25 | 000,013,734 | ---- | C] () -- C:\Users\me\AppData\Roaming\UserTile.png
[2012/06/10 15:26:37 | 000,200,704 | ---- | C] () -- C:\Users\me\Desktop\SHAR'S DIET.pub
[2012/06/07 23:27:06 | 000,000,960 | ---- | C] () -- C:\Users\me\Desktop\XMind.lnk
[2012/06/07 19:31:06 | 000,002,037 | ---- | C] () -- C:\Users\me\Desktop\Microsoft Office Download Manager_1339115457094.lnk
[2012/06/03 22:28:41 | 000,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2012/06/03 12:12:01 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012/06/03 12:12:01 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012/06/03 12:12:01 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012/06/03 12:12:01 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012/06/03 12:12:01 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012/03/26 18:01:45 | 000,791,592 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2012/03/16 10:26:19 | 000,007,596 | ---- | C] () -- C:\Users\me\AppData\Local\resmon.resmoncfg
[2011/09/07 12:13:21 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
[2011/04/04 22:07:00 | 000,145,804 | ---- | C] () -- C:\windows\SysWow64\igcompkrng600.bin
[2011/04/04 22:06:58 | 000,963,116 | ---- | C] () -- C:\windows\SysWow64\igkrng600.bin
[2011/04/04 22:06:58 | 000,216,876 | ---- | C] () -- C:\windows\SysWow64\igfcg600m.bin
[2011/02/03 21:56:58 | 000,066,856 | ---- | C] () -- C:\windows\SysWow64\SynTPEnhPS.dll

========== LOP Check ==========

[2012/04/03 12:21:39 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\AVG2012
[2012/03/16 08:58:47 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Book Place
[2012/06/28 05:25:06 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Dropbox
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia Ovi Suite
[2012/03/22 21:25:50 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PC Suite
[2012/07/14 11:51:08 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/06/10 16:40:19 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PeerNetworking
[2012/05/31 23:52:35 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\SoftGrid Client
[2012/03/16 08:11:21 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Toshiba
[2012/03/26 18:08:23 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\TP
[2012/05/06 23:43:24 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Windows Live Writer
[2012/06/07 23:27:15 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\XMind
[2012/05/14 03:20:50 | 000,032,650 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========

< %SYSTEMDRIVE%\*.exe >

< MD5 for: EXPLORER.EXE >
[2011/02/26 00:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\ERDNT\cache86\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/26 01:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 22:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/11/20 22:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

< MD5 for: SVCHOST.EXE >
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\ERDNT\cache86\svchost.exe
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\ERDNT\cache64\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: USERINIT.EXE >
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\ERDNT\cache86\userinit.exe
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\ERDNT\cache64\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010/11/20 22:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\ERDNT\cache64\winlogon.exe
[2010/11/20 22:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\windows\SysNative\winlogon.exe
[2010/11/20 22:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe

< C:\Windows\assembly\tmp\U\*.* /s >

< %Temp%\smtmp\1\*.* >

< %Temp%\smtmp\2\*.* >

< %Temp%\smtmp\3\*.* >

< %Temp%\smtmp\4\*.* >

< type c:\diskreport.txt /c >
Microsoft DiskPart version 6.1.7601
Copyright © 1999-2008 Microsoft Corporation.
On computer: JENNIFER-PC
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
Volume 0 D DVD-ROM 0 B No Media
Volume 1 C TI106139W0E NTFS Partition 580 GB Healthy Boot
Volume 2 System NTFS Partition 1500 MB Healthy Hidden
Volume 3 E HP_M415 FAT Removable 937 MB Healthy

========== Alternate Data Streams ==========

@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4

< End of report >


OTL Extras logfile created on: 8/6/2012 11:05:25 AM - Run 4
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\me\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.95 Gb Total Physical Memory | 2.52 Gb Available Physical Memory | 63.87% Memory free
7.90 Gb Paging File | 6.25 Gb Available in Paging File | 79.12% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 580.98 Gb Total Space | 506.35 Gb Free Space | 87.16% Space Free | Partition Type: NTFS
Drive E: | 937.61 Mb Total Space | 766.59 Mb Free Space | 81.76% Space Free | Partition Type: FAT

Computer Name: JENNIFER-PC | User Name: me | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-4166229290-1685211620-4260776656-1007\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{018C0164-D54A-457E-B918-BE5804665E19}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system |
"{037D3811-FB2D-44AA-B55C-74337044F4B3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system |
"{06DFDDC2-C3FB-4EAB-9D49-3DB874AB3176}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system |
"{0D8E5EA1-4CE5-4375-AB30-4C0C17B23552}" = rport=137 | protocol=17 | dir=out | app=system |
"{1111A87D-DCF3-4982-BE12-87CDE4D4B8C1}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{23DDDDE9-37A9-43AA-A852-F746BBEA9964}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system |
"{2ABE988D-1C26-4FC8-9A8D-45A9A7A1E92D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{34824766-8012-4D5B-8E1B-DADE65B414B1}" = lport=138 | protocol=17 | dir=in | app=system |
"{34C38258-357E-490C-9D44-7AAD3FCB9B7A}" = lport=445 | protocol=6 | dir=in | app=system |
"{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{408677D4-C2CB-4DC8-93CB-525D817F8D2E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{408A0AAF-8AE4-4AFB-8430-C939747904A4}" = rport=445 | protocol=6 | dir=out | app=system |
"{42698D11-2E70-4E94-BDCE-908D123880B2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{46021566-C368-446C-BE4A-B82D71012E8F}" = lport=137 | protocol=17 | dir=in | app=system |
"{4BA63C2E-DD56-444C-A2CB-4CA0293FB071}" = rport=2869 | protocol=6 | dir=out | app=system |
"{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system |
"{5AD4404E-E511-47F2-9967-7BA65A4B682D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{62985754-BD1E-4DDA-98CA-39665C0628C8}" = lport=139 | protocol=6 | dir=in | app=system |
"{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system |
"{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7398A868-75CA-4DC7-A702-EAB45182D832}" = rport=138 | protocol=17 | dir=out | app=system |
"{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system |
"{85CD01B0-15FE-40F8-A190-22FEAC1DC173}" = rport=139 | protocol=6 | dir=out | app=system |
"{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9563EBC7-B92E-44F2-A817-E82684B95F00}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9E4C7902-869E-4647-947F-FF7C5EB1901E}" = lport=5353 | protocol=17 | dir=in | name=bonjour port 5353 |
"{9F1A3125-0020-457D-843F-8B6DF82E6A75}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{A99A0517-6F38-4081-81AC-54382719F1BD}" = lport=2869 | protocol=6 | dir=in | app=system |
"{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BB99750F-C1AE-48FE-ABBB-1F2758601C74}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system |
"{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CA0F89C2-AC1D-4D28-9CDB-F8F4237714B6}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DBC128E8-D6DF-497D-8CC3-03FED58A0259}" = lport=2869 | protocol=6 | dir=in | app=system |
"{E7AA5A28-F3A1-42F4-BF03-39A44D1E56B5}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{EDA46E08-501D-4030-ACF6-6612B2DA8ED6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F403E922-8EBE-4EFD-B96A-5C547FDB6896}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system |
"{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | [email protected],-28545 |
"{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0605EBE2-34A1-4ECB-863E-FE7615E45E27}" = protocol=58 | dir=in | [email protected],-148 |
"{0C1C441F-91F6-45F2-9C4F-DB9B30A7C9D3}" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1927D179-A3AC-4ADA-887F-F21F0CA81EFE}" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"{3A5311FC-9EB5-4760-8F27-8E0700261363}" = protocol=6 | dir=out | app=%systemroot%\system32\wudfhost.exe |
"{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | [email protected],-28543 |
"{51E5F465-220F-416D-BB87-2F1DE3CFA4E6}" = protocol=6 | dir=in | app=c:\users\me\appdata\roaming\dropbox\bin\dropbox.exe |
"{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | [email protected],-28544 |
"{575C9A97-B750-46C7-9E4E-05AA6EE286CC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{6501925C-A03D-4D72-A84A-FEE60881BF97}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{778F657E-70B0-40A5-9222-E822E24648D5}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{818A2A7A-BDA7-4504-A2FF-F8E7D59E2378}" = protocol=58 | dir=in | [email protected],-28545 |
"{823E47DD-AF7A-48BF-8E36-6CCF328B60AB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A137A19C-30E9-4D57-B5ED-F69B3495B464}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A69F8ECD-9CFF-4E73-8707-A3B8882B889F}" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{B84BE51C-2436-4334-AFE8-50AAC75E35AD}" = protocol=1 | dir=in | [email protected],-28543 |
"{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system |
"{C44F5274-4195-4CCB-9E2D-D639D1E942D7}" = protocol=1 | dir=out | [email protected],-28544 |
"{C5A36BF3-7A03-4577-95D5-3451083734A4}" = protocol=17 | dir=in | app=c:\users\me\appdata\roaming\dropbox\bin\dropbox.exe |
"{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CED5479F-029C-43A2-B89A-8328C4EFB184}" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | [email protected],-28546 |
"{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EF28FEF8-5BB1-49DE-B68E-87C7BAEC1F0C}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F0870B76-1A90-4A1D-A175-DA1D80C27D82}" = protocol=58 | dir=out | [email protected],-28546 |
"{F59F9061-1315-4C68-88E6-6FF6AC491D99}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"TCP Query User{3DAD9686-43C6-407D-A51E-153365AB8AD0}C:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aadr99999dr807950509_pod023_en-us.exe" = protocol=6 | dir=in | app=c:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aadr99999dr807950509_pod023_en-us.exe |
"TCP Query User{47072BB6-E22E-471F-94F7-2DC9D9DEFE75}C:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aa_pod8_en-us.exe" = protocol=6 | dir=in | app=c:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aa_pod8_en-us.exe |
"UDP Query User{30B04A00-F247-4335-93D3-BF4B8CD4B037}C:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aadr99999dr807950509_pod023_en-us.exe" = protocol=17 | dir=in | app=c:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aadr99999dr807950509_pod023_en-us.exe |
"UDP Query User{63A26FC9-76A6-41B5-95A4-EE34057A4441}C:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aa_pod8_en-us.exe" = protocol=17 | dir=in | app=c:\users\me\downloads\5ca1c5f0ab5449c69a957939f8a6d9aa_pod8_en-us.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series" = Canon MP280 series MP Drivers
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1C336D20-A089-4818-9C56-96AD81BF5A11}" = PANTECH USB Modem V2
"{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"{3C8159DD-1890-4625-A5B2-E3D8D78D4486}" = AVG 2012
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{8B485965-8EFE-464A-842F-CF8F18C3DFD7}" = iCloud
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}" = Nokia Connectivity Cable Driver
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board
"{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}" = TOSHIBA Hardware Setup
"{CBD6B23D-41D5-4A46-8019-6208516C9712}" = TOSHIBA Supervisor Password
"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes
"{D050583D-5CEC-47B1-88AA-8B328CAA8621}" = AVG 2012
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"3D970B9F930E7AAE23C06D39A1AC98548C90B442" = Windows Driver Package - Eastman Kodak KODAK Digital Camera (01/29/2010 1.4.1.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit
"AVG" = AVG 2012
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CutePDF Writer Installation" = CutePDF Writer 2.8
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D795777-9D60-4692-8386-F2B3F2B5E5BF}" = Label@Once 1.0
"{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java™ 6 Update 20
"{26A24AE4-039D-4CA4-87B4-2F83217004FF}" = Java™ 7 Update 4
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
"{32364CEA-7855-4A3C-B674-53D8E9B97936}" = TuneUp Utilities 2012
"{3273F0D8-3204-4DE5-BE34-AA6613B0E844}" = Mobile PhoneTools
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{50316C0A-CC2A-460A-9EA5-F486E54AC17D}_is1" = AVG PC Tuneup
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5AF550B4-BB67-4E7E-82F1-2C4300279050}" = ToshibaRegistration
"{62BBB2F0-E220-4821-A564-730807D2C34D}" = Realtek USB 2.0 Reader Driver
"{6336C0CC-BA32-4949-9D3D-C86B76147CCA}" = Cricket Broadband Connect
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components
"{654F7484-88C5-46DC-AB32-C66BCB0E2102}" = TOSHIBA Sleep Utility
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}" = TOSHIBA Resolution+ Plug-in for Windows Media Player
"{6D172D0A-B9F1-4046-AFAB-8599288545BF}" = Safari
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba" = WildTangent Games App (Toshiba Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ONENOTER_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ONENOTER_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ONENOTER_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ONENOTER_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0409-1000-0000000FF1CE}_ONENOTER_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ONENOTER_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ONENOTER_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ONENOTER_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0116-0409-1000-0000000FF1CE}_ONENOTER_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90190409-6000-11D3-8CFE-0050048383C9}" = Microsoft Publisher 2002
"{91120000-00A1-0000-0000-0000000FF1CE}" = Microsoft Office OneNote 2007
"{91120000-00A1-0000-0000-0000000FF1CE}_ONENOTER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{91E30409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{92C7DC44-DAD3-49FE-B89B-F92C6BA9A331}" = Toshiba Book Place
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}" = TOSHIBA Application Installer
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet TV for Windows Media Center
"{9D3D8C60-A55F-4fed-B2B9-173001290E16}" = Realtek WLAN Driver
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A95A76C9-6F65-477E-83A0-9F884B6DC21B}" = TuneUp Utilities Language Pack (en-US)
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.3) MUI
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}" = TOSHIBA Assist
"{C3F0CF4C-0A8C-42F1-A585-2EF7886D6039}" = KODAK Share Button App
"{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}" = Toshiba Online Backup
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C7A4F26F-F9B0-41B2-8659-99181108CDE3}" = TOSHIBA Media Controller
"{C82185E8-C27B-4EF4-2008-4444BC2C2B6D}" = Microsoft Streets & Trips 2008
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CDADE9BC-612C-42B8-B929-5C6A823E7FF9}" = TOSHIBA Wireless LAN Indicator
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF6B515D-D99A-4B02-8C92-9EA255035A3D}" = Mobile PhoneTools
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D9198056-A296-4583-A790-C0E73694CFE8}" = D-Link DWA-131 Wireless N Nano USB Adapter
"{DA84ECBF-4B79-47F2-B34C-95C38484C058}" = Skype Launcher
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E2D09AC2-4153-4817-AAEB-24F92A8BCE88}" = Windows Media Center Add-in for Flash
"{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
"{E69992ED-A7F6-406C-9280-1C156417BC49}" = TOSHIBA Quality Application
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{ED3CBA78-488F-4E8C-B33F-8E3BF4DDB4D2}" = Toshiba App Place
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel® Processor Graphics
"{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}" = TOSHIBA Media Controller Plug-in
"{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"FastStone Photo Resizer" = FastStone Photo Resizer 3.1
"Google Chrome" = Google Chrome
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board
"InstallShield_{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}" = TOSHIBA Hardware Setup
"InstallShield_{CBD6B23D-41D5-4A46-8019-6208516C9712}" = TOSHIBA Supervisor Password
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"Mozilla Firefox 14.0.1 (x86 en-US)" = Mozilla Firefox 14.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"ONENOTER" = Microsoft Office OneNote 2007
"Picasa 3" = Picasa 3
"TuneUp Utilities 2012" = TuneUp Utilities 2012
"WildTangent toshiba Master Uninstall" = WildTangent Games
"WinLiveSuite" = Windows Live Essentials
"WTA-49511c9b-0a99-409d-9afd-edb82128fe6f" = Bejeweled 3
"WTA-5470a8d1-115d-444c-be12-35d209527284" = Tom Clancy's Splinter Cell
"WTA-9d801a5c-225e-4a72-8d99-8ba5f9b2e8c5" = FATE - The Traitor Soul
"WTA-cb6f7cdf-05f7-411f-862e-263b1863aaa8" = Plants vs. Zombies - Game of the Year
"WTA-d52e0177-240e-4d8c-8b13-3c0a3cd01360" = Chuzzle Deluxe
"WTA-d60d876c-7b79-4b7b-964a-b52656344c78" = Penguins!
"WTA-dc651237-c608-425a-b78c-7a866f570d72" = Jewel Quest: The Sleepless Star - Collector's Edition
"WTA-f019d9b3-db04-4f6f-b8e2-8853335b56a9" = Zuma's Revenge
"WTA-f0263d8c-f762-43cb-a778-43ba15beafa0" = Polar Bowler
"XMind" = XMind

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-4166229290-1685211620-4260776656-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7/22/2012 12:14:01 AM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/22/2012 4:42:12 AM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/22/2012 4:42:18 AM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/22/2012 4:42:18 AM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/22/2012 5:02:11 AM | Computer Name = Jennifer-PC | Source = Application Error | ID = 1000
Description = Faulting application name: DllHost.exe, version: 6.1.7600.16385, time
stamp: 0x4a5bca54 Faulting module name: RPCRT4.dll, version: 6.1.7601.17514, time
stamp: 0x4ce7c96e Exception code: 0xc0000005 Fault offset: 0x0000000000048fc5 Faulting
process id: 0xf84 Faulting application start time: 0x01cd66d08ebe3d56 Faulting application
path: C:\windows\system32\DllHost.exe Faulting module path: C:\windows\system32\RPCRT4.dll
Report
Id: eb6e3f0a-d3db-11e1-8454-7a8020000200

Error - 7/22/2012 5:26:51 AM | Computer Name = Jennifer-PC | Source = Application Hang | ID = 1002
Description = The program ONENOTE.EXE version 12.0.6606.1000 stopped interacting
with Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: ce4 Start
Time: 01cd67e4f97eff98 Termination Time: 0 Application Path: C:\Program Files (x86)\Microsoft
Office\Office12\ONENOTE.EXE Report Id: 3916b5d4-d3df-11e1-8454-7a8020000200

Error - 7/22/2012 3:50:33 PM | Computer Name = Jennifer-PC | Source = Application Error | ID = 1000
Description = Faulting application name: Kodak_ShareButton_App.exe, version: 4.3.12.626,
time stamp: 0x4fe9d27d Faulting module name: NativeServices.PYD, version: 4.3.12.626,
time stamp: 0x4fe9d1c0 Exception code: 0xc0000005 Fault offset: 0x00022475 Faulting
process id: 0x8c8 Faulting application start time: 0x01cd6843322c485f Faulting application
path: C:\Program Files (x86)\Kodak\KODAK Share Button App\Kodak_ShareButton_App.exe
Faulting
module path: C:\Program Files (x86)\Kodak\KODAK Share Button App\NativeServices.PYD
Report
Id: 7ee5cc63-d436-11e1-8454-7a8020000200

Error - 7/22/2012 6:04:50 PM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/24/2012 9:42:47 AM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

Error - 7/24/2012 9:03:30 PM | Computer Name = Jennifer-PC | Source = RasClient | ID = 20227
Description =

[ Media Center Events ]
Error - 7/27/2012 12:58:22 AM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 11:58:21 PM - Error connecting to the internet. 11:58:21 PM - Unable
to contact server..

Error - 7/27/2012 4:11:13 AM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 3:11:12 AM - Error connecting to the internet. 3:11:12 AM - Unable
to contact server..

Error - 7/27/2012 5:11:19 AM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 4:11:18 AM - Error connecting to the internet. 4:11:18 AM - Unable
to contact server..

Error - 7/27/2012 6:11:26 AM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 5:11:25 AM - Error connecting to the internet. 5:11:25 AM - Unable
to contact server..

Error - 7/27/2012 7:11:39 AM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 6:11:34 AM - Error connecting to the internet. 6:11:35 AM - Unable
to contact server..

Error - 8/2/2012 6:30:23 PM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 5:30:19 PM - Error connecting to the internet. 5:30:19 PM - Unable
to contact server..

Error - 8/3/2012 7:58:43 PM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 6:58:42 PM - Error connecting to the internet. 6:58:43 PM - Unable
to contact server..

Error - 8/3/2012 7:58:53 PM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 6:58:48 PM - Error connecting to the internet. 6:58:48 PM - Unable
to contact server..

Error - 8/5/2012 11:28:49 PM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 10:28:49 PM - Error connecting to the internet. 10:28:49 PM - Unable
to contact server..

Error - 8/5/2012 11:28:59 PM | Computer Name = Jennifer-PC | Source = MCUpdate | ID = 0
Description = 10:28:54 PM - Error connecting to the internet. 10:28:54 PM - Unable
to contact server..

[ System Events ]
Error - 8/6/2012 12:02:47 AM | Computer Name = Jennifer-PC | Source = Disk | ID = 262155
Description = The driver detected a controller error on \Device\Harddisk1\DR1.

Error - 8/6/2012 12:03:35 AM | Computer Name = Jennifer-PC | Source = Service Control Manager | ID = 7000
Description = The Common Client Job Manager Service service failed to start due
to the following error: %%2

Error - 8/6/2012 12:03:36 AM | Computer Name = Jennifer-PC | Source = PNRPSvc | ID = 102
Description =

Error - 8/6/2012 12:03:36 AM | Computer Name = Jennifer-PC | Source = Service Control Manager | ID = 7023
Description = The Peer Name Resolution Protocol service terminated with the following
error: %%-2140993535

Error - 8/6/2012 12:03:36 AM | Computer Name = Jennifer-PC | Source = Service Control Manager | ID = 7001
Description = The Peer Networking Grouping service depends on the Peer Name Resolution
Protocol service which failed to start because of the following error: %%-2140993535

Error - 8/6/2012 12:06:05 AM | Computer Name = Jennifer-PC | Source = Service Control Manager | ID = 7000
Description = The Toshiba Laptop Checkup Application Launcher service failed to
start due to the following error: %%2

Error - 8/6/2012 2:19:56 AM | Computer Name = Jennifer-PC | Source = ipnathlp | ID = 31004
Description =

Error - 8/6/2012 5:10:46 AM | Computer Name = Jennifer-PC | Source = ipnathlp | ID = 31004
Description =

Error - 8/6/2012 5:24:13 AM | Computer Name = Jennifer-PC | Source = ipnathlp | ID = 31004
Description =

Error - 8/6/2012 10:34:23 AM | Computer Name = Jennifer-PC | Source = ipnathlp | ID = 31004
Description =


< End of report >
  • 0

#5
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
mbr.dat is attached
thank-you again ;)

log from aswmbr below

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-08-06 11:29:00
-----------------------------
11:29:00.300 OS Version: Windows x64 6.1.7601 Service Pack 1
11:29:00.300 Number of processors: 1 586 0x2A07
11:29:00.301 ComputerName: JENNIFER-PC UserName: me
11:29:01.606 Initialize success
11:29:49.036 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
11:29:49.038 Disk 0 Vendor: TOSHIBA_ GH10 Size: 610480MB BusType: 3
11:29:49.078 Disk 0 MBR read successfully
11:29:49.080 Disk 0 MBR scan
11:29:49.082 Disk 0 Windows VISTA default MBR code
11:29:49.087 Disk 0 Partition 1 80 (A) 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048
11:29:49.096 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 594921 MB offset 3074048
11:29:49.121 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 14058 MB offset 1221472256
11:29:49.150 Disk 0 scanning C:\windows\system32\drivers
11:29:55.672 Service scanning
11:30:32.444 Modules scanning
11:30:32.450 Disk 0 trace - called modules:
11:30:32.489 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys
11:30:32.492 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004b04700]
11:30:32.836 3 CLASSPNP.SYS[fffff8800160143f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004986050]
11:30:32.842 Scan finished successfully
11:38:33.397 Disk 0 MBR has been saved successfully to "C:\Users\me\Desktop\MBR.dat"
11:38:33.402 The log file has been saved successfully to "C:\Users\me\Desktop\aswMBR.txt"

Attached Files

  • Attached File  MBR.dat   512bytes   146 downloads

  • 0

#6
blmadara

blmadara

    Trusted Helper

  • Malware Removal
  • 767 posts
Hi sharokc,

Let's get started on cleaning up your computer. Please stay with me to the end so we make sure that everything is cleaned up.


Step One: OTL Fix

Note: If you have Malwarebytes 1.6 or higher installed please disable it for the duration of this fix as it may interfere with the successfully execution of the script below. If it still hangs then please uninstall MalwareBytes' and run this fix again.


Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :OTL
    [2012/03/20 11:47:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Extensions
    [2012/06/05 01:40:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions
    [2012/04/29 01:48:43 | 000,000,000 | ---D | M] (BargainMatch) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]
    [2012/07/29 11:43:03 | 000,002,030 | ---- | M] () -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\searchplugins\search-here.xml
    [2012/03/28 22:29:23 | 000,372,140 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\{5C46D283-ABDE-4DCE-B83C-08881401921C}.XPI
    [2012/08/03 19:41:32 | 000,021,674 | ---- | M] () (No name found) -- C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\[email protected]
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 File not found
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
    O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.4.1)
    
    :Services
    
    :Reg
    
    :Files
    ipconfig /flushdns /c
    
    :Commands
    [purity]
    [resethosts]
    [emptytemp]
    [EMPTYFLASH]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

Step Two: Run TDSSKiller

Download the latest version of TDSSKiller from here and save it to your Desktop.


  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    Posted Image
  • Click the Start Scan button.

    Posted Image
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

    Posted Image
  • Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.

A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.


Step Three: Run ComboFix

Please download ComboFix from Here or Here to your Desktop.

**Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
  • Please, never rename Combofix unless instructed.
  • Close any open browsers.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

    -----------------------------------------------------------

    • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
    • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.

      -----------------------------------------------------------

    • Close any open browsers.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
    • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.

    -----------------------------------------------------------

  • Double click on combofix.exe & follow the prompts.

    As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

    **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.
    Posted Image
  • Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:
    Posted Image
  • Click on Yes, to continue scanning for malware.
  • When finished, it will produce a report for you.
  • Please post the "C:\ComboFix.txt" for further review.
Notes:
1. Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions


Step Four: How is your computer running?

Please let me know how your computer is running and what problems remain.

What I need in your next post:
1. The log from the OTL fix.
2. The TDSSKiller log, TDSSKiller.[Version]_[Date]_[Time]_log.txt
3. The ComboFix log, C:\Combofix.txt.
4. Tell me how your computer is runnimg and if any problems remain.
  • 0

#7
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
All processes killed
========== OTL ==========
C:\Users\me\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\views folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\other folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\models folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\controllers folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\defaults folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\components folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\skin folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\locale\en-US folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\locale folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\content folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected] folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions folder moved successfully.
Folder C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\ not found.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\searchplugins\search-here.xml moved successfully.
File C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\{5C46D283-ABDE-4DCE-B83C-08881401921C}.XPI not found.
File C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\[email protected] not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Add to Google Photos Screensa&ver\ deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\me\Downloads\cmd.bat deleted successfully.
C:\Users\me\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: DefaultAppPool.IIS APPPOOL
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: me
->Temp folder emptied: 910539 bytes
->Temporary Internet Files folder emptied: 1085260 bytes
->Java cache emptied: 4740 bytes
->FireFox cache emptied: 224342898 bytes
->Google Chrome cache emptied: 9436620 bytes
->Flash cache emptied: 1645 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 22257939 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 32902 bytes
RecycleBin emptied: 387099808 bytes

Total Files Cleaned = 615.00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: DefaultAppPool
->Flash cache emptied: 0 bytes

User: DefaultAppPool.IIS APPPOOL
->Flash cache emptied: 0 bytes

User: me
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0.00 mb


OTL by OldTimer - Version 3.2.56.0 log created on 08072012_130557

Files\Folders moved on Reboot...
C:\Users\me\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\me\AppData\Local\Mozilla\Firefox\Profiles\itio8e5h.default\urlclassifier3.sqlite moved successfully.

PendingFileRenameOperations files...
File C:\Users\me\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\me\AppData\Local\Mozilla\Firefox\Profiles\itio8e5h.default\urlclassifier3.sqlite not found!

Registry entries deleted on Reboot...
  • 0

#8
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
OTL logfile created on: 8/7/2012 1:19:38 PM - Run 4
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\me\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.95 Gb Total Physical Memory | 2.60 Gb Available Physical Memory | 65.74% Memory free
7.90 Gb Paging File | 6.44 Gb Available in Paging File | 81.53% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 580.98 Gb Total Space | 506.76 Gb Free Space | 87.22% Space Free | Partition Type: NTFS

Computer Name: JENNIFER-PC | User Name: me | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/08/06 11:04:26 | 000,935,008 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe
PRC - [2012/08/06 11:04:24 | 001,107,552 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
PRC - [2012/08/06 11:02:24 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\me\Downloads\OTL(1).exe
PRC - [2012/07/29 18:32:36 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012/07/16 14:27:37 | 000,186,832 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
PRC - [2012/06/26 11:17:26 | 000,108,032 | ---- | M] (Eastman Kodak Company) -- C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
PRC - [2012/01/24 17:24:26 | 002,416,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
PRC - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
PRC - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
PRC - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
PRC - [2009/10/19 15:51:14 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe
PRC - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe


========== Modules (No Company Name) ==========

MOD - [2012/08/06 11:04:26 | 000,132,704 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.2.0\SiteSafety.dll
MOD - [2012/08/06 11:04:24 | 001,107,552 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
MOD - [2012/07/29 18:32:36 | 002,003,424 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2009/10/19 15:51:14 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/03/02 17:36:16 | 000,266,680 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:64bit: - [2010/12/20 20:30:30 | 000,822,704 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:64bit: - [2010/12/09 19:45:26 | 000,489,384 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2010/12/08 17:42:54 | 000,137,632 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2010/10/20 16:41:00 | 000,138,656 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2010/09/22 20:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:38:59 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CISVC.EXE -- (CISVC)
SRV - [2012/08/06 11:04:26 | 000,935,008 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- (vToolbarUpdater11.2.0)
SRV - [2012/07/29 18:32:36 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/02/09 14:13:24 | 002,143,552 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2012/01/03 05:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/11/23 02:36:24 | 002,391,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgfws.exe -- (avgfws)
SRV - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2011/02/11 13:45:52 | 000,054,136 | ---- | M] (TOSHIBA Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2010/12/20 20:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/20 20:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 22:24:51 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 22:24:51 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/06/26 19:09:36 | 000,167,936 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe -- (WlanWpsSvc)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/05/11 07:34:14 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2012/05/11 07:34:12 | 000,099,384 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/10/07 06:23:46 | 000,283,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2011/09/13 06:30:08 | 000,037,456 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2011/08/08 06:08:58 | 000,046,672 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2011/07/11 01:14:36 | 000,375,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2011/07/11 01:14:08 | 000,029,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV:64bit: - [2011/07/11 01:14:06 | 000,120,400 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV:64bit: - [2011/07/11 01:14:06 | 000,026,704 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AVGIDSEH.sys -- (AVGIDSEH)
DRV:64bit: - [2011/05/23 01:03:28 | 000,048,992 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:64bit: - [2011/04/04 22:10:14 | 012,262,624 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/08 21:07:00 | 000,038,096 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:64bit: - [2011/02/03 21:59:06 | 001,413,680 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/01/27 14:34:12 | 001,577,088 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:64bit: - [2011/01/12 19:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011/01/05 03:08:58 | 001,109,096 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtl8192ce.sys -- (RTL8192Ce)
DRV:64bit: - [2010/12/01 18:12:06 | 000,250,984 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/11/30 16:40:04 | 000,307,304 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:24:15 | 000,146,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST)
DRV:64bit: - [2010/11/20 22:23:48 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/08 14:44:40 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2010/10/19 18:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010/10/15 03:28:16 | 000,317,440 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2009/10/27 02:29:44 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWVsp.sys -- (PTUMWVsp)
DRV:64bit: - [2009/10/27 02:29:32 | 000,144,912 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWNET.sys -- (PTUMWNET)
DRV:64bit: - [2009/10/27 02:29:24 | 000,173,456 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWMdm.sys -- (PTUMWMdm)
DRV:64bit: - [2009/10/27 02:29:18 | 000,012,688 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWFLT.sys -- (PTUMWFLT)
DRV:64bit: - [2009/10/27 02:29:06 | 000,024,976 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PTUMWCDF.sys -- (PTUMWCDF)
DRV:64bit: - [2009/10/27 02:28:58 | 000,071,056 | ---- | M] (DEVGURU Co., LTD.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PTUMWBus.sys -- (PTUMWBus)
DRV:64bit: - [2009/08/20 11:00:10 | 000,664,576 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RTL8192su.sys -- (RTL8192su)
DRV:64bit: - [2009/07/30 22:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/14 17:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/24 17:36:48 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/06/19 21:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:64bit: - [2009/06/15 15:58:50 | 000,012,800 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\QIOMem.sys -- (QIOMem)
DRV:64bit: - [2009/06/10 16:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 16:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 16:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 15:35:36 | 000,867,328 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2012/02/09 13:16:38 | 000,011,856 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}
IE:64bit: - HKLM\..\SearchScopes\{19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}
IE - HKLM\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig
IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes\{34A07218-11A1-4AEA-8EE1-E5E97DE08D07}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKCU\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.co...ng}&rlz=1I7TSNF
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.c...pr&d=2012-03-12 17:22:40&v=11.1.0.7&sap=dsp&q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://mail.google..../?shva=1#inbox"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.2.0\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2012/04/03 12:23:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\11.1.0.12\ [2012/08/06 11:04:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/08/05 23:02:29 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2012/08/07 13:06:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Extensions
[2012/03/20 11:43:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/07/29 18:32:36 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/08/06 11:04:24 | 000,003,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml
[2012/06/17 20:20:29 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/06/17 20:20:29 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.200.2 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U20 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: VUDU Movies = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\daomabnenlgkenegngdblacoobnncgib\2.0.0.2_0\
CHR - Extension: Crackle = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.3_0\
CHR - Extension: YourNextFilm = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jadajphjladhhmcjiomkmlihlknbnicc\0.0.0.1_0\
CHR - Extension: AVG Safe Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\
CHR - Extension: TV for Google Chrome\u2122 = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\lambangeielkjcnmioccboaphdfcffib\2.2.6_0\
CHR - Extension: Gmail = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/08/07 13:06:02 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll ()
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll ()
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [{9ABA99F9-A8FE-7E89-8E99-AE8b85E9AE9B}] C:\Program Files (x86)\Cricket Broadband Connect\AvqAutoRun.exe ()
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HF_G_Jul] C:\Program Files (x86)\AVG Secure Search\HF_G_Jul.exe ()
O4 - HKLM..\Run: [TSleepSrv] C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe (TOSHIBA)
O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG Secure Search\vprot.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.micr...44/igdtoolx.cab (IGDTester Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C8BA29F-8F88-481E-A27D-8E3E0B68DF82}: NameServer = 10.133.20.11 10.132.20.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A97D3E95-EB25-4277-A222-41B8B3302689}: DhcpNameServer = 192.168.2.1 68.105.28.11 68.105.29.11 68.105.28.12
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F57232CE-CBED-4E10-8739-6595FE127154}: DhcpNameServer = 192.168.2.1 68.105.28.11 68.105.29.11 68.105.28.12
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll ()
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/07/31 13:01:56 | 000,448,512 | ---- | C] (OldTimer Tools) -- C:\Users\me\Desktop\TFC.exe
[2012/07/29 11:48:50 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\Downloads
[2012/07/11 18:13:58 | 000,000,000 | ---D | C] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/07/09 19:01:18 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\from trash need to sort

========== Files - Modified Within 30 Days ==========

[2012/08/07 13:18:22 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 13:18:22 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/07 13:15:25 | 000,774,006 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2012/08/07 13:15:25 | 000,659,664 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2012/08/07 13:15:25 | 000,117,376 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2012/08/07 13:10:51 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/08/07 13:10:47 | 000,000,374 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts.ics
[2012/08/07 13:10:35 | 000,065,536 | ---- | M] () -- C:\windows\SysNative\Ikeext.etl
[2012/08/07 13:10:33 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2012/08/07 13:10:32 | 000,015,360 | ---- | M] () -- C:\windows\SysNative\umstartup.etl
[2012/08/07 13:10:29 | 3180,220,416 | -HS- | M] () -- C:\hiberfil.sys
[2012/08/07 13:09:54 | 000,021,504 | ---- | M] () -- C:\windows\SysNative\umstartup000.etl
[2012/08/07 13:06:02 | 000,000,098 | ---- | M] () -- C:\windows\SysNative\drivers\etc\Hosts
[2012/08/07 12:32:00 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/08/07 11:59:36 | 103,156,487 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\incavi.avm
[2012/08/06 13:52:39 | 000,086,275 | ---- | M] () -- C:\Users\me\Desktop\Western_V7312115.jpg
[2012/08/06 11:38:33 | 000,000,512 | ---- | M] () -- C:\Users\me\Desktop\MBR.dat
[2012/08/01 21:11:34 | 000,277,536 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\iavichjg.avm
[2012/08/01 14:05:52 | 000,012,234 | ---- | M] () -- C:\Users\me\Desktop\MARK THEDFORD JOHNSTON ODCN p1.pdf
[2012/07/31 13:02:56 | 000,448,512 | ---- | M] (OldTimer Tools) -- C:\Users\me\Desktop\TFC.exe
[2012/07/31 08:52:03 | 000,195,072 | ---- | M] () -- C:\Users\me\Documents\map 080112.est
[2012/07/25 02:39:02 | 000,051,200 | ---- | M] () -- C:\Users\me\Documents\md.pub
[2012/07/22 08:11:21 | 000,234,376 | ---- | M] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | M] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | M] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | M] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/15 17:24:42 | 000,418,656 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2012/07/12 09:35:21 | 000,142,417 | ---- | M] () -- C:\Users\me\Desktop\My Baby - Our365.pdf

========== Files Created - No Company Name ==========

[2012/08/06 13:47:41 | 000,086,275 | ---- | C] () -- C:\Users\me\Desktop\Western_V7312115.jpg
[2012/08/06 11:38:33 | 000,000,512 | ---- | C] () -- C:\Users\me\Desktop\MBR.dat
[2012/08/01 14:06:27 | 000,012,234 | ---- | C] () -- C:\Users\me\Desktop\MARK THEDFORD JOHNSTON ODCN p1.pdf
[2012/07/31 08:52:02 | 000,195,072 | ---- | C] () -- C:\Users\me\Documents\map 080112.est
[2012/07/25 02:39:02 | 000,051,200 | ---- | C] () -- C:\Users\me\Documents\md.pub
[2012/07/22 08:19:46 | 000,234,376 | ---- | C] () -- C:\Users\me\Documents\Assertmodule%201.pdf
[2012/07/22 08:01:31 | 000,132,849 | ---- | C] () -- C:\Users\me\Documents\StakeholderCommunicationsWorksheet.pdf
[2012/07/22 07:59:28 | 000,105,431 | ---- | C] () -- C:\Users\me\Documents\PowerInterestGrid.pdf
[2012/07/19 15:44:58 | 000,006,656 | ---- | C] () -- C:\Users\me\Documents\1501 Camden Way, Oklahoma City, OK 73116 to Weatherford.est
[2012/07/12 09:35:32 | 000,142,417 | ---- | C] () -- C:\Users\me\Desktop\My Baby - Our365.pdf
[2012/06/10 16:40:25 | 000,013,734 | ---- | C] () -- C:\Users\me\AppData\Roaming\UserTile.png
[2012/06/03 22:28:41 | 000,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2012/06/03 12:12:01 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2012/06/03 12:12:01 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2012/06/03 12:12:01 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2012/06/03 12:12:01 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2012/06/03 12:12:01 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2012/03/26 18:01:45 | 000,791,592 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2012/03/16 10:26:19 | 000,007,596 | ---- | C] () -- C:\Users\me\AppData\Local\resmon.resmoncfg
[2011/09/07 12:13:21 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
[2011/04/04 22:07:00 | 000,145,804 | ---- | C] () -- C:\windows\SysWow64\igcompkrng600.bin
[2011/04/04 22:06:58 | 000,963,116 | ---- | C] () -- C:\windows\SysWow64\igkrng600.bin
[2011/04/04 22:06:58 | 000,216,876 | ---- | C] () -- C:\windows\SysWow64\igfcg600m.bin
[2011/02/03 21:56:58 | 000,066,856 | ---- | C] () -- C:\windows\SysWow64\SynTPEnhPS.dll

========== LOP Check ==========

[2012/04/03 12:21:39 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\AVG2012
[2012/03/16 08:58:47 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Book Place
[2012/06/28 05:25:06 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Dropbox
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia
[2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia Ovi Suite
[2012/03/22 21:25:50 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PC Suite
[2012/07/14 11:51:08 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller
[2012/06/10 16:40:19 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PeerNetworking
[2012/05/31 23:52:35 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\SoftGrid Client
[2012/03/16 08:11:21 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Toshiba
[2012/03/26 18:08:23 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\TP
[2012/05/06 23:43:24 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Windows Live Writer
[2012/06/07 23:27:15 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\XMind
[2012/05/14 03:20:50 | 000,032,650 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4

< End of report >
  • 0

#9
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
All processes killed
========== OTL ==========
C:\Users\me\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\views folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\other folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\models folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules\controllers folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\modules folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\defaults folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\components folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\skin folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\locale\en-US folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\locale folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch\content folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome\bargainmatch folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\chrome folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected] folder moved successfully.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions folder moved successfully.
Folder C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\[email protected]\ not found.
C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\searchplugins\search-here.xml moved successfully.
File C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\{5C46D283-ABDE-4DCE-B83C-08881401921C}.XPI not found.
File C:\USERS\ME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ITIO8E5H.DEFAULT\EXTENSIONS\[email protected] not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Add to Google Photos Screensa&ver\ deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\me\Downloads\cmd.bat deleted successfully.
C:\Users\me\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: DefaultAppPool.IIS APPPOOL
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: me
->Temp folder emptied: 910539 bytes
->Temporary Internet Files folder emptied: 1085260 bytes
->Java cache emptied: 4740 bytes
->FireFox cache emptied: 224342898 bytes
->Google Chrome cache emptied: 9436620 bytes
->Flash cache emptied: 1645 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 22257939 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 32902 bytes
RecycleBin emptied: 387099808 bytes

Total Files Cleaned = 615.00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: DefaultAppPool
->Flash cache emptied: 0 bytes

User: DefaultAppPool.IIS APPPOOL
->Flash cache emptied: 0 bytes

User: me
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0.00 mb


OTL by OldTimer - Version 3.2.56.0 log created on 08072012_130557

Files\Folders moved on Reboot...
C:\Users\me\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\me\AppData\Local\Mozilla\Firefox\Profiles\itio8e5h.default\urlclassifier3.sqlite moved successfully.

PendingFileRenameOperations files...
File C:\Users\me\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\me\AppData\Local\Mozilla\Firefox\Profiles\itio8e5h.default\urlclassifier3.sqlite not found!

Registry entries deleted on Reboot...
  • 0

#10
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
i may have posted that last thing 2 times. sorry

11:11:31.0041 4904 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
11:11:31.0554 4904 ============================================================
11:11:31.0554 4904 Current date / time: 2012/06/03 11:11:31.0554
11:11:31.0554 4904 SystemInfo:
11:11:31.0554 4904
11:11:31.0554 4904 OS Version: 6.1.7601 ServicePack: 1.0
11:11:31.0554 4904 Product type: Workstation
11:11:31.0554 4904 ComputerName: JENNIFER-PC
11:11:31.0554 4904 UserName: me
11:11:31.0554 4904 Windows directory: C:\windows
11:11:31.0554 4904 System windows directory: C:\windows
11:11:31.0554 4904 Running under WOW64
11:11:31.0554 4904 Processor architecture: Intel x64
11:11:31.0554 4904 Number of processors: 1
11:11:31.0554 4904 Page size: 0x1000
11:11:31.0554 4904 Boot type: Normal boot
11:11:31.0554 4904 ============================================================
11:11:33.0331 4904 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:11:33.0335 4904 Drive \Device\Harddisk1\DR1 - Size: 0xEFE80000 (3.75 Gb), SectorSize: 0x200, Cylinders: 0x1E9, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:11:33.0337 4904 ============================================================
11:11:33.0337 4904 \Device\Harddisk0\DR0:
11:11:33.0337 4904 MBR partitions:
11:11:33.0337 4904 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x489F4800
11:11:33.0337 4904 \Device\Harddisk1\DR1:
11:11:33.0338 4904 MBR partitions:
11:11:33.0338 4904 \Device\Harddisk1\DR1\Partition0: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0x77D400
11:11:33.0338 4904 ============================================================
11:11:33.0358 4904 C: <-> \Device\Harddisk0\DR0\Partition0
11:11:33.0358 4904 ============================================================
11:11:33.0358 4904 Initialize success
11:11:33.0358 4904 ============================================================
11:12:27.0180 3984 ============================================================
11:12:27.0180 3984 Scan started
11:12:27.0180 3984 Mode: Manual; SigCheck; TDLFS;
11:12:27.0180 3984 ============================================================
11:12:27.0914 3984 1394ohci (a87d604aea360176311474c87a63bb88) C:\windows\system32\drivers\1394ohci.sys
11:12:28.0028 3984 1394ohci - ok
11:12:28.0095 3984 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\windows\system32\drivers\ACPI.sys
11:12:28.0111 3984 ACPI - ok
11:12:28.0140 3984 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\windows\system32\drivers\acpipmi.sys
11:12:28.0230 3984 AcpiPmi - ok
11:12:28.0269 3984 ACTSBUS - ok
11:12:28.0275 3984 ACTSCVsp - ok
11:12:28.0281 3984 ACTSMBMP - ok
11:12:28.0287 3984 ACTSMdm - ok
11:12:28.0292 3984 ACTSNVsp - ok
11:12:28.0298 3984 ACTSRMNET - ok
11:12:28.0304 3984 ACTSVsp - ok
11:12:28.0393 3984 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:12:28.0402 3984 AdobeARMservice - ok
11:12:28.0484 3984 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\windows\system32\drivers\adp94xx.sys
11:12:28.0502 3984 adp94xx - ok
11:12:28.0534 3984 adpahci (597f78224ee9224ea1a13d6350ced962) C:\windows\system32\drivers\adpahci.sys
11:12:28.0549 3984 adpahci - ok
11:12:28.0593 3984 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\windows\system32\drivers\adpu320.sys
11:12:28.0605 3984 adpu320 - ok
11:12:28.0643 3984 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\windows\System32\aelupsvc.dll
11:12:28.0771 3984 AeLookupSvc - ok
11:12:28.0842 3984 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\windows\system32\drivers\afd.sys
11:12:28.0910 3984 AFD - ok
11:12:28.0941 3984 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\windows\system32\drivers\agp440.sys
11:12:28.0955 3984 agp440 - ok
11:12:28.0991 3984 ALG (3290d6946b5e30e70414990574883ddb) C:\windows\System32\alg.exe
11:12:29.0040 3984 ALG - ok
11:12:29.0085 3984 aliide (5812713a477a3ad7363c7438ca2ee038) C:\windows\system32\drivers\aliide.sys
11:12:29.0096 3984 aliide - ok
11:12:29.0117 3984 amdide (1ff8b4431c353ce385c875f194924c0c) C:\windows\system32\drivers\amdide.sys
11:12:29.0127 3984 amdide - ok
11:12:29.0169 3984 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\windows\system32\drivers\amdk8.sys
11:12:29.0205 3984 AmdK8 - ok
11:12:29.0230 3984 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\windows\system32\drivers\amdppm.sys
11:12:29.0279 3984 AmdPPM - ok
11:12:29.0330 3984 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\windows\system32\drivers\amdsata.sys
11:12:29.0341 3984 amdsata - ok
11:12:29.0385 3984 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\windows\system32\drivers\amdsbs.sys
11:12:29.0398 3984 amdsbs - ok
11:12:29.0454 3984 amdxata (540daf1cea6094886d72126fd7c33048) C:\windows\system32\drivers\amdxata.sys
11:12:29.0465 3984 amdxata - ok
11:12:29.0546 3984 AppHostSvc (59d01fa91962c9c1e9b4022b2d3b46db) C:\windows\system32\inetsrv\apphostsvc.dll
11:12:29.0581 3984 AppHostSvc - ok
11:12:29.0629 3984 AppID (89a69c3f2f319b43379399547526d952) C:\windows\system32\drivers\appid.sys
11:12:29.0798 3984 AppID - ok
11:12:29.0833 3984 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\windows\System32\appidsvc.dll
11:12:29.0905 3984 AppIDSvc - ok
11:12:29.0935 3984 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\windows\System32\appinfo.dll
11:12:29.0994 3984 Appinfo - ok
11:12:30.0220 3984 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:12:30.0230 3984 Apple Mobile Device - ok
11:12:30.0290 3984 arc (c484f8ceb1717c540242531db7845c4e) C:\windows\system32\drivers\arc.sys
11:12:30.0301 3984 arc - ok
11:12:30.0461 3984 arcsas (019af6924aefe7839f61c830227fe79c) C:\windows\system32\drivers\arcsas.sys
11:12:30.0472 3984 arcsas - ok
11:12:30.0526 3984 AsyncMac (769765ce2cc62867468cea93969b2242) C:\windows\system32\DRIVERS\asyncmac.sys
11:12:30.0582 3984 AsyncMac - ok
11:12:30.0631 3984 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\windows\system32\drivers\atapi.sys
11:12:30.0641 3984 atapi - ok
11:12:30.0727 3984 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\windows\System32\Audiosrv.dll
11:12:30.0822 3984 AudioEndpointBuilder - ok
11:12:30.0848 3984 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\windows\System32\Audiosrv.dll
11:12:30.0892 3984 AudioSrv - ok
11:12:30.0945 3984 Avgfwfd (96b4456f1dca4eda506ed31c7d2d6b05) C:\windows\system32\DRIVERS\avgfwd6a.sys
11:12:30.0953 3984 Avgfwfd - ok
11:12:31.0243 3984 avgfws (5cd22eb540f82c70e33e530003f3903b) C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
11:12:31.0336 3984 avgfws - ok
11:12:31.0699 3984 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
11:12:31.0784 3984 AVGIDSAgent - ok
11:12:32.0007 3984 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\windows\system32\DRIVERS\AVGIDSDriver.Sys
11:12:32.0018 3984 AVGIDSDriver - ok
11:12:32.0068 3984 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\windows\system32\DRIVERS\AVGIDSEH.Sys
11:12:32.0078 3984 AVGIDSEH - ok
11:12:32.0093 3984 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\windows\system32\DRIVERS\AVGIDSFilter.Sys
11:12:32.0103 3984 AVGIDSFilter - ok
11:12:32.0168 3984 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\windows\system32\DRIVERS\avgldx64.sys
11:12:32.0182 3984 Avgldx64 - ok
11:12:32.0217 3984 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\windows\system32\DRIVERS\avgmfx64.sys
11:12:32.0230 3984 Avgmfx64 - ok
11:12:32.0258 3984 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\windows\system32\DRIVERS\avgrkx64.sys
11:12:32.0268 3984 Avgrkx64 - ok
11:12:32.0349 3984 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\windows\system32\DRIVERS\avgtdia.sys
11:12:32.0364 3984 Avgtdia - ok
11:12:32.0455 3984 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
11:12:32.0468 3984 avgwd - ok
11:12:32.0497 3984 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\windows\System32\AxInstSV.dll
11:12:32.0580 3984 AxInstSV - ok
11:12:32.0638 3984 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\windows\system32\drivers\bxvbda.sys
11:12:32.0682 3984 b06bdrv - ok
11:12:32.0742 3984 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\windows\system32\DRIVERS\b57nd60a.sys
11:12:32.0779 3984 b57nd60a - ok
11:12:32.0837 3984 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\windows\System32\bdesvc.dll
11:12:32.0875 3984 BDESVC - ok
11:12:32.0920 3984 Beep (16a47ce2decc9b099349a5f840654746) C:\windows\system32\drivers\Beep.sys
11:12:32.0989 3984 Beep - ok
11:12:33.0047 3984 BFE (82974d6a2fd19445cc5171fc378668a4) C:\windows\System32\bfe.dll
11:12:33.0117 3984 BFE - ok
11:12:33.0195 3984 BITS (1ea7969e3271cbc59e1730697dc74682) C:\windows\System32\qmgr.dll
11:12:33.0276 3984 BITS - ok
11:12:33.0366 3984 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\windows\system32\DRIVERS\blbdrive.sys
11:12:33.0403 3984 blbdrive - ok
11:12:33.0516 3984 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
11:12:33.0534 3984 Bonjour Service - ok
11:12:33.0572 3984 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\windows\system32\DRIVERS\bowser.sys
11:12:33.0625 3984 bowser - ok
11:12:33.0657 3984 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\windows\system32\drivers\BrFiltLo.sys
11:12:33.0689 3984 BrFiltLo - ok
11:12:33.0715 3984 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\windows\system32\drivers\BrFiltUp.sys
11:12:33.0731 3984 BrFiltUp - ok
11:12:33.0787 3984 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\windows\System32\browser.dll
11:12:33.0853 3984 Browser - ok
11:12:33.0897 3984 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\windows\System32\Drivers\Brserid.sys
11:12:33.0936 3984 Brserid - ok
11:12:33.0966 3984 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\windows\System32\Drivers\BrSerWdm.sys
11:12:34.0017 3984 BrSerWdm - ok
11:12:34.0055 3984 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\windows\System32\Drivers\BrUsbMdm.sys
11:12:34.0102 3984 BrUsbMdm - ok
11:12:34.0108 3984 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\windows\System32\Drivers\BrUsbSer.sys
11:12:34.0142 3984 BrUsbSer - ok
11:12:34.0183 3984 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\windows\system32\drivers\bthmodem.sys
11:12:34.0227 3984 BTHMODEM - ok
11:12:34.0268 3984 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\windows\system32\bthserv.dll
11:12:34.0326 3984 bthserv - ok
11:12:34.0373 3984 cdfs (b8bd2bb284668c84865658c77574381a) C:\windows\system32\DRIVERS\cdfs.sys
11:12:34.0413 3984 cdfs - ok
11:12:34.0437 3984 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\windows\system32\DRIVERS\cdrom.sys
11:12:34.0466 3984 cdrom - ok
11:12:34.0512 3984 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\windows\System32\certprop.dll
11:12:34.0574 3984 CertPropSvc - ok
11:12:34.0620 3984 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\windows\system32\drivers\circlass.sys
11:12:34.0660 3984 circlass - ok
11:12:34.0718 3984 CISVC (ff60401f1c659ca2ed4bae85d3fd14da) C:\windows\system32\CISVC.EXE
11:12:34.0750 3984 CISVC - ok
11:12:34.0816 3984 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\windows\system32\CLFS.sys
11:12:34.0832 3984 CLFS - ok
11:12:34.0963 3984 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:12:34.0973 3984 clr_optimization_v2.0.50727_32 - ok
11:12:35.0123 3984 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:12:35.0133 3984 clr_optimization_v2.0.50727_64 - ok
11:12:35.0223 3984 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:12:35.0251 3984 clr_optimization_v4.0.30319_32 - ok
11:12:35.0310 3984 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:12:35.0321 3984 clr_optimization_v4.0.30319_64 - ok
11:12:35.0341 3984 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\windows\system32\DRIVERS\CmBatt.sys
11:12:35.0376 3984 CmBatt - ok
11:12:35.0408 3984 cmdide (e19d3f095812725d88f9001985b94edd) C:\windows\system32\drivers\cmdide.sys
11:12:35.0419 3984 cmdide - ok
11:12:35.0478 3984 CNG (c4943b6c962e4b82197542447ad599f4) C:\windows\system32\Drivers\cng.sys
11:12:35.0503 3984 CNG - ok
11:12:35.0580 3984 CnxtHdAudService (66847c979893a11cfcc2280e772d7ea1) C:\windows\system32\drivers\CHDRT64.sys
11:12:35.0617 3984 CnxtHdAudService - ok
11:12:35.0886 3984 Compbatt (102de219c3f61415f964c88e9085ad14) C:\windows\system32\drivers\compbatt.sys
11:12:35.0896 3984 Compbatt - ok
11:12:35.0953 3984 CompositeBus (03edb043586cceba243d689bdda370a8) C:\windows\system32\DRIVERS\CompositeBus.sys
11:12:35.0991 3984 CompositeBus - ok
11:12:35.0997 3984 COMSysApp - ok
11:12:36.0054 3984 crcdisk (1c827878a998c18847245fe1f34ee597) C:\windows\system32\drivers\crcdisk.sys
11:12:36.0064 3984 crcdisk - ok
11:12:36.0100 3984 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\windows\system32\cryptsvc.dll
11:12:36.0155 3984 CryptSvc - ok
11:12:36.0197 3984 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\windows\system32\rpcss.dll
11:12:36.0264 3984 DcomLaunch - ok
11:12:36.0308 3984 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\windows\System32\defragsvc.dll
11:12:36.0369 3984 defragsvc - ok
11:12:36.0435 3984 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\windows\system32\Drivers\dfsc.sys
11:12:36.0488 3984 DfsC - ok
11:12:36.0547 3984 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\windows\system32\dhcpcore.dll
11:12:36.0614 3984 Dhcp - ok
11:12:36.0683 3984 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\windows\system32\drivers\discache.sys
11:12:36.0737 3984 discache - ok
11:12:36.0771 3984 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\windows\system32\drivers\disk.sys
11:12:36.0783 3984 Disk - ok
11:12:36.0816 3984 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\windows\System32\dnsrslvr.dll
11:12:36.0855 3984 Dnscache - ok
11:12:36.0920 3984 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\windows\System32\dot3svc.dll
11:12:36.0980 3984 dot3svc - ok
11:12:37.0048 3984 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\windows\system32\dps.dll
11:12:37.0112 3984 DPS - ok
11:12:37.0158 3984 drmkaud (9b19f34400d24df84c858a421c205754) C:\windows\system32\drivers\drmkaud.sys
11:12:37.0189 3984 drmkaud - ok
11:12:37.0263 3984 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\windows\System32\drivers\dxgkrnl.sys
11:12:37.0289 3984 DXGKrnl - ok
11:12:37.0330 3984 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\windows\System32\eapsvc.dll
11:12:37.0388 3984 EapHost - ok
11:12:37.0685 3984 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\windows\system32\drivers\evbda.sys
11:12:37.0735 3984 ebdrv - ok
11:12:38.0062 3984 EFS (c118a82cd78818c29ab228366ebf81c3) C:\windows\System32\lsass.exe
11:12:38.0108 3984 EFS - ok
11:12:38.0182 3984 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\windows\ehome\ehRecvr.exe
11:12:38.0222 3984 ehRecvr - ok
11:12:38.0269 3984 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\windows\ehome\ehsched.exe
11:12:38.0286 3984 ehSched - ok
11:12:38.0371 3984 elxstor (0e5da5369a0fcaea12456dd852545184) C:\windows\system32\drivers\elxstor.sys
11:12:38.0389 3984 elxstor - ok
11:12:38.0409 3984 ErrDev (34a3c54752046e79a126e15c51db409b) C:\windows\system32\drivers\errdev.sys
11:12:38.0445 3984 ErrDev - ok
11:12:38.0503 3984 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\windows\system32\es.dll
11:12:38.0565 3984 EventSystem - ok
11:12:38.0614 3984 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\windows\system32\drivers\exfat.sys
11:12:38.0655 3984 exfat - ok
11:12:38.0687 3984 fastfat (0adc83218b66a6db380c330836f3e36d) C:\windows\system32\drivers\fastfat.sys
11:12:38.0748 3984 fastfat - ok
11:12:38.0809 3984 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\windows\system32\fxssvc.exe
11:12:38.0853 3984 Fax - ok
11:12:38.0872 3984 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\windows\system32\drivers\fdc.sys
11:12:38.0913 3984 fdc - ok
11:12:38.0951 3984 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\windows\system32\fdPHost.dll
11:12:39.0012 3984 fdPHost - ok
11:12:39.0071 3984 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\windows\system32\fdrespub.dll
11:12:39.0111 3984 FDResPub - ok
11:12:39.0143 3984 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\windows\system32\drivers\fileinfo.sys
11:12:39.0154 3984 FileInfo - ok
11:12:39.0195 3984 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\windows\system32\drivers\filetrace.sys
11:12:39.0284 3984 Filetrace - ok
11:12:39.0323 3984 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\windows\system32\drivers\flpydisk.sys
11:12:39.0338 3984 flpydisk - ok
11:12:39.0565 3984 FltMgr (da6b67270fd9db3697b20fce94950741) C:\windows\system32\drivers\fltmgr.sys
11:12:39.0580 3984 FltMgr - ok
11:12:39.0680 3984 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\windows\system32\FntCache.dll
11:12:39.0751 3984 FontCache - ok
11:12:39.0836 3984 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:12:39.0849 3984 FontCache3.0.0.0 - ok
11:12:39.0902 3984 FsDepends (d43703496149971890703b4b1b723eac) C:\windows\system32\drivers\FsDepends.sys
11:12:39.0913 3984 FsDepends - ok
11:12:39.0961 3984 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\windows\system32\drivers\Fs_Rec.sys
11:12:39.0971 3984 Fs_Rec - ok
11:12:40.0012 3984 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\windows\system32\DRIVERS\fvevol.sys
11:12:40.0032 3984 fvevol - ok
11:12:40.0063 3984 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\windows\system32\drivers\gagp30kx.sys
11:12:40.0074 3984 gagp30kx - ok
11:12:40.0161 3984 GamesAppService (c403c5db49a0f9aaf4f2128edc0106d8) C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
11:12:40.0173 3984 GamesAppService - ok
11:12:40.0228 3984 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\windows\system32\DRIVERS\GEARAspiWDM.sys
11:12:40.0236 3984 GEARAspiWDM - ok
11:12:40.0354 3984 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\windows\System32\gpsvc.dll
11:12:40.0414 3984 gpsvc - ok
11:12:40.0570 3984 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:12:40.0581 3984 gupdate - ok
11:12:40.0607 3984 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:12:40.0618 3984 gupdatem - ok
11:12:40.0663 3984 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
11:12:40.0674 3984 gusvc - ok
11:12:40.0697 3984 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\windows\system32\drivers\hcw85cir.sys
11:12:40.0731 3984 hcw85cir - ok
11:12:40.0791 3984 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\windows\system32\drivers\HdAudio.sys
11:12:40.0834 3984 HdAudAddService - ok
11:12:40.0873 3984 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\windows\system32\DRIVERS\HDAudBus.sys
11:12:40.0909 3984 HDAudBus - ok
11:12:40.0949 3984 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\windows\system32\drivers\HidBatt.sys
11:12:40.0983 3984 HidBatt - ok
11:12:41.0016 3984 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\windows\system32\drivers\hidbth.sys
11:12:41.0052 3984 HidBth - ok
11:12:41.0094 3984 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\windows\system32\drivers\hidir.sys
11:12:41.0115 3984 HidIr - ok
11:12:41.0151 3984 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\windows\system32\hidserv.dll
11:12:41.0218 3984 hidserv - ok
11:12:41.0290 3984 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\windows\system32\DRIVERS\hidusb.sys
11:12:41.0306 3984 HidUsb - ok
11:12:41.0344 3984 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\windows\system32\kmsvc.dll
11:12:41.0410 3984 hkmsvc - ok
11:12:41.0476 3984 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\windows\system32\ListSvc.dll
11:12:41.0517 3984 HomeGroupListener - ok
11:12:41.0564 3984 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\windows\system32\provsvc.dll
11:12:41.0603 3984 HomeGroupProvider - ok
11:12:41.0658 3984 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\windows\system32\drivers\HpSAMD.sys
11:12:41.0673 3984 HpSAMD - ok
11:12:41.0734 3984 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\windows\system32\drivers\HTTP.sys
11:12:41.0820 3984 HTTP - ok
11:12:41.0865 3984 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\windows\system32\drivers\hwpolicy.sys
11:12:41.0875 3984 hwpolicy - ok
11:12:41.0906 3984 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\windows\system32\DRIVERS\i8042prt.sys
11:12:41.0923 3984 i8042prt - ok
11:12:41.0972 3984 iaStor (d469b77687e12fe43e344806740b624d) C:\windows\system32\DRIVERS\iaStor.sys
11:12:41.0994 3984 iaStor - ok
11:12:42.0049 3984 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\windows\system32\drivers\iaStorV.sys
11:12:42.0065 3984 iaStorV - ok
11:12:42.0215 3984 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
11:12:42.0251 3984 IDriverT ( UnsignedFile.Multi.Generic ) - warning
11:12:42.0251 3984 IDriverT - detected UnsignedFile.Multi.Generic (1)
11:12:42.0362 3984 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:12:42.0388 3984 idsvc - ok
11:12:43.0415 3984 igfx (370c2a8629b30f910f740387795ddc6f) C:\windows\system32\DRIVERS\igdkmd64.sys
11:12:43.0797 3984 igfx - ok
11:12:44.0023 3984 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\windows\system32\drivers\iirsp.sys
11:12:44.0034 3984 iirsp - ok
11:12:44.0142 3984 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\windows\System32\ikeext.dll
11:12:44.0217 3984 IKEEXT - ok
11:12:44.0292 3984 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\windows\system32\DRIVERS\IntcDAud.sys
11:12:44.0318 3984 IntcDAud - ok
11:12:44.0343 3984 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\windows\system32\drivers\intelide.sys
11:12:44.0353 3984 intelide - ok
11:12:44.0373 3984 intelppm (ada036632c664caa754079041cf1f8c1) C:\windows\system32\DRIVERS\intelppm.sys
11:12:44.0408 3984 intelppm - ok
11:12:44.0444 3984 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\windows\system32\ipbusenum.dll
11:12:44.0499 3984 IPBusEnum - ok
11:12:44.0551 3984 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\windows\system32\DRIVERS\ipfltdrv.sys
11:12:44.0591 3984 IpFilterDriver - ok
11:12:44.0640 3984 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\windows\System32\iphlpsvc.dll
11:12:44.0703 3984 iphlpsvc - ok
11:12:44.0731 3984 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\windows\system32\drivers\IPMIDrv.sys
11:12:44.0770 3984 IPMIDRV - ok
11:12:44.0815 3984 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\windows\system32\drivers\ipnat.sys
11:12:44.0874 3984 IPNAT - ok
11:12:45.0006 3984 iPod Service (50d6ccc6ff5561f9f56946b3e6164fb8) C:\Program Files\iPod\bin\iPodService.exe
11:12:45.0057 3984 iPod Service - ok
11:12:45.0084 3984 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\windows\system32\drivers\irenum.sys
11:12:45.0105 3984 IRENUM - ok
11:12:45.0140 3984 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\windows\system32\drivers\isapnp.sys
11:12:45.0151 3984 isapnp - ok
11:12:45.0183 3984 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\windows\system32\drivers\msiscsi.sys
11:12:45.0212 3984 iScsiPrt - ok
11:12:45.0243 3984 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\windows\system32\DRIVERS\kbdclass.sys
11:12:45.0254 3984 kbdclass - ok
11:12:45.0288 3984 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\windows\system32\drivers\kbdhid.sys
11:12:45.0322 3984 kbdhid - ok
11:12:45.0361 3984 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:12:45.0377 3984 KeyIso - ok
11:12:45.0419 3984 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\windows\system32\Drivers\ksecdd.sys
11:12:45.0430 3984 KSecDD - ok
11:12:45.0446 3984 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\windows\system32\Drivers\ksecpkg.sys
11:12:45.0463 3984 KSecPkg - ok
11:12:45.0489 3984 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\windows\system32\drivers\ksthunk.sys
11:12:45.0564 3984 ksthunk - ok
11:12:45.0671 3984 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\windows\system32\msdtckrm.dll
11:12:45.0759 3984 KtmRm - ok
11:12:45.0814 3984 L1C (ebed8b3ff4a823c1a6eebeed7b29353f) C:\windows\system32\DRIVERS\L1C62x64.sys
11:12:45.0827 3984 L1C - ok
11:12:45.0875 3984 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\windows\system32\srvsvc.dll
11:12:45.0931 3984 LanmanServer - ok
11:12:45.0972 3984 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\windows\System32\wkssvc.dll
11:12:46.0052 3984 LanmanWorkstation - ok
11:12:46.0113 3984 lltdio (1538831cf8ad2979a04c423779465827) C:\windows\system32\DRIVERS\lltdio.sys
11:12:46.0172 3984 lltdio - ok
11:12:46.0366 3984 lltdsvc (c1185803384ab3feed115f79f109427f) C:\windows\System32\lltdsvc.dll
11:12:46.0438 3984 lltdsvc - ok
11:12:46.0470 3984 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\windows\System32\lmhsvc.dll
11:12:46.0511 3984 lmhosts - ok
11:12:46.0777 3984 LMS (2ed1786b7542cda261029f6b526edf44) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
11:12:46.0807 3984 LMS - ok
11:12:46.0830 3984 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\windows\system32\drivers\lsi_fc.sys
11:12:46.0841 3984 LSI_FC - ok
11:12:46.0871 3984 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\windows\system32\drivers\lsi_sas.sys
11:12:46.0882 3984 LSI_SAS - ok
11:12:46.0903 3984 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\windows\system32\drivers\lsi_sas2.sys
11:12:46.0914 3984 LSI_SAS2 - ok
11:12:46.0942 3984 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\windows\system32\drivers\lsi_scsi.sys
11:12:46.0963 3984 LSI_SCSI - ok
11:12:46.0999 3984 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\windows\system32\drivers\luafv.sys
11:12:47.0054 3984 luafv - ok
11:12:47.0091 3984 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\windows\system32\Mcx2Svc.dll
11:12:47.0110 3984 Mcx2Svc - ok
11:12:47.0154 3984 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\windows\system32\drivers\megasas.sys
11:12:47.0165 3984 megasas - ok
11:12:47.0192 3984 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\windows\system32\drivers\MegaSR.sys
11:12:47.0206 3984 MegaSR - ok
11:12:47.0232 3984 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\windows\system32\DRIVERS\HECIx64.sys
11:12:47.0245 3984 MEIx64 - ok
11:12:47.0330 3984 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\windows\system32\mmcss.dll
11:12:47.0401 3984 MMCSS - ok
11:12:47.0446 3984 Modem (800ba92f7010378b09f9ed9270f07137) C:\windows\system32\drivers\modem.sys
11:12:47.0508 3984 Modem - ok
11:12:47.0534 3984 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\windows\system32\DRIVERS\monitor.sys
11:12:47.0570 3984 monitor - ok
11:12:47.0603 3984 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\windows\system32\DRIVERS\mouclass.sys
11:12:47.0614 3984 mouclass - ok
11:12:47.0627 3984 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\windows\system32\DRIVERS\mouhid.sys
11:12:47.0660 3984 mouhid - ok
11:12:47.0698 3984 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\windows\system32\drivers\mountmgr.sys
11:12:47.0709 3984 mountmgr - ok
11:12:47.0773 3984 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:12:47.0784 3984 MozillaMaintenance - ok
11:12:47.0804 3984 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\windows\system32\drivers\mpio.sys
11:12:47.0817 3984 mpio - ok
11:12:47.0861 3984 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\windows\system32\drivers\mpsdrv.sys
11:12:47.0903 3984 mpsdrv - ok
11:12:47.0957 3984 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\windows\system32\mpssvc.dll
11:12:48.0238 3984 MpsSvc - ok
11:12:48.0262 3984 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\windows\system32\drivers\mrxdav.sys
11:12:48.0301 3984 MRxDAV - ok
11:12:48.0353 3984 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\windows\system32\DRIVERS\mrxsmb.sys
11:12:48.0411 3984 mrxsmb - ok
11:12:48.0437 3984 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\windows\system32\DRIVERS\mrxsmb10.sys
11:12:48.0457 3984 mrxsmb10 - ok
11:12:48.0505 3984 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\windows\system32\DRIVERS\mrxsmb20.sys
11:12:48.0523 3984 mrxsmb20 - ok
11:12:48.0558 3984 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\windows\system32\DRIVERS\msahci.sys
11:12:48.0568 3984 msahci - ok
11:12:48.0629 3984 msdsm (db801a638d011b9633829eb6f663c900) C:\windows\system32\drivers\msdsm.sys
11:12:48.0641 3984 msdsm - ok
11:12:48.0688 3984 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\windows\System32\msdtc.exe
11:12:48.0724 3984 MSDTC - ok
11:12:48.0792 3984 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\windows\system32\drivers\Msfs.sys
11:12:48.0833 3984 Msfs - ok
11:12:48.0849 3984 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\windows\System32\drivers\mshidkmdf.sys
11:12:48.0912 3984 mshidkmdf - ok
11:12:49.0025 3984 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\windows\system32\drivers\msisadrv.sys
11:12:49.0035 3984 msisadrv - ok
11:12:49.0098 3984 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\windows\system32\iscsiexe.dll
11:12:49.0142 3984 MSiSCSI - ok
11:12:49.0149 3984 msiserver - ok
11:12:49.0177 3984 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\windows\system32\drivers\MSKSSRV.sys
11:12:49.0242 3984 MSKSSRV - ok
11:12:49.0272 3984 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\windows\system32\drivers\MSPCLOCK.sys
11:12:49.0332 3984 MSPCLOCK - ok
11:12:49.0363 3984 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\windows\system32\drivers\MSPQM.sys
11:12:49.0420 3984 MSPQM - ok
11:12:49.0455 3984 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\windows\system32\drivers\MsRPC.sys
11:12:49.0472 3984 MsRPC - ok
11:12:49.0504 3984 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\windows\system32\DRIVERS\mssmbios.sys
11:12:49.0514 3984 mssmbios - ok
11:12:49.0528 3984 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\windows\system32\drivers\MSTEE.sys
11:12:49.0594 3984 MSTEE - ok
11:12:49.0711 3984 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\windows\system32\drivers\MTConfig.sys
11:12:49.0727 3984 MTConfig - ok
11:12:49.0749 3984 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\windows\system32\Drivers\mup.sys
11:12:49.0760 3984 Mup - ok
11:12:49.0806 3984 napagent (582ac6d9873e31dfa28a4547270862dd) C:\windows\system32\qagentRT.dll
11:12:49.0867 3984 napagent - ok
11:12:49.0929 3984 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\windows\system32\DRIVERS\nwifi.sys
11:12:49.0972 3984 NativeWifiP - ok
11:12:50.0042 3984 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\windows\system32\drivers\ndis.sys
11:12:50.0067 3984 NDIS - ok
11:12:50.0082 3984 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\windows\system32\DRIVERS\ndiscap.sys
11:12:50.0151 3984 NdisCap - ok
11:12:50.0180 3984 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\windows\system32\DRIVERS\ndistapi.sys
11:12:50.0221 3984 NdisTapi - ok
11:12:50.0253 3984 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\windows\system32\DRIVERS\ndisuio.sys
11:12:50.0294 3984 Ndisuio - ok
11:12:50.0320 3984 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\windows\system32\DRIVERS\ndiswan.sys
11:12:50.0383 3984 NdisWan - ok
11:12:50.0443 3984 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\windows\system32\drivers\NDProxy.sys
11:12:50.0484 3984 NDProxy - ok
11:12:50.0504 3984 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\windows\system32\DRIVERS\netbios.sys
11:12:50.0563 3984 NetBIOS - ok
11:12:50.0618 3984 NetBT (09594d1089c523423b32a4229263f068) C:\windows\system32\DRIVERS\netbt.sys
11:12:50.0664 3984 NetBT - ok
11:12:50.0684 3984 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:12:50.0702 3984 Netlogon - ok
11:12:50.0756 3984 Netman (847d3ae376c0817161a14a82c8922a9e) C:\windows\System32\netman.dll
11:12:50.0825 3984 Netman - ok
11:12:50.0882 3984 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\windows\System32\netprofm.dll
11:12:50.0953 3984 netprofm - ok
11:12:51.0119 3984 netr28ux (618c55b392238b9467f9113e13525c49) C:\windows\system32\DRIVERS\netr28ux.sys
11:12:51.0182 3984 netr28ux - ok
11:12:51.0261 3984 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:12:51.0272 3984 NetTcpPortSharing - ok
11:12:51.0316 3984 nfrd960 (77889813be4d166cdab78ddba990da92) C:\windows\system32\drivers\nfrd960.sys
11:12:51.0326 3984 nfrd960 - ok
11:12:51.0397 3984 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\windows\System32\nlasvc.dll
11:12:51.0492 3984 NlaSvc - ok
11:12:51.0547 3984 Norton PC Checkup Application Launcher - ok
11:12:51.0570 3984 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\windows\system32\drivers\Npfs.sys
11:12:51.0612 3984 Npfs - ok
11:12:51.0742 3984 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\windows\system32\nsisvc.dll
11:12:51.0823 3984 nsi - ok
11:12:51.0875 3984 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\windows\system32\drivers\nsiproxy.sys
11:12:51.0916 3984 nsiproxy - ok
11:12:52.0002 3984 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\windows\system32\drivers\Ntfs.sys
11:12:52.0045 3984 Ntfs - ok
11:12:52.0178 3984 Null (9899284589f75fa8724ff3d16aed75c1) C:\windows\system32\drivers\Null.sys
11:12:52.0219 3984 Null - ok
11:12:52.0252 3984 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\windows\system32\drivers\nvraid.sys
11:12:52.0264 3984 nvraid - ok
11:12:52.0297 3984 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\windows\system32\drivers\nvstor.sys
11:12:52.0309 3984 nvstor - ok
11:12:52.0361 3984 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\windows\system32\drivers\nv_agp.sys
11:12:52.0372 3984 nv_agp - ok
11:12:52.0397 3984 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\windows\system32\drivers\ohci1394.sys
11:12:52.0443 3984 ohci1394 - ok
11:12:52.0481 3984 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\windows\system32\pnrpsvc.dll
11:12:52.0520 3984 p2pimsvc - ok
11:12:52.0566 3984 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\windows\system32\p2psvc.dll
11:12:52.0591 3984 p2psvc - ok
11:12:52.0623 3984 Parport (0086431c29c35be1dbc43f52cc273887) C:\windows\system32\drivers\parport.sys
11:12:52.0644 3984 Parport - ok
11:12:52.0701 3984 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\windows\system32\drivers\partmgr.sys
11:12:52.0712 3984 partmgr - ok
11:12:52.0780 3984 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\windows\System32\pcasvc.dll
11:12:52.0831 3984 PcaSvc - ok
11:12:52.0855 3984 pccsmcfd - ok
11:12:52.0926 3984 PCCUJobMgr (2f86be1818c2d7ac90478e3323ee7fcb) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.10.26\ccSvcHst.exe
11:12:52.0942 3984 PCCUJobMgr - ok
11:12:52.0985 3984 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\windows\system32\drivers\pci.sys
11:12:52.0997 3984 pci - ok
11:12:53.0009 3984 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\windows\system32\DRIVERS\pciide.sys
11:12:53.0019 3984 pciide - ok
11:12:53.0053 3984 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\windows\system32\drivers\pcmcia.sys
11:12:53.0067 3984 pcmcia - ok
11:12:53.0085 3984 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\windows\system32\drivers\pcw.sys
11:12:53.0096 3984 pcw - ok
11:12:53.0198 3984 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\windows\system32\drivers\peauth.sys
11:12:53.0284 3984 PEAUTH - ok
11:12:53.0462 3984 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\windows\SysWow64\perfhost.exe
11:12:53.0504 3984 PerfHost - ok
11:12:53.0547 3984 PGEffect (91111cebbde8015e822c46120ed9537c) C:\windows\system32\DRIVERS\pgeffect.sys
11:12:53.0562 3984 PGEffect - ok
11:12:53.0667 3984 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\windows\system32\pla.dll
11:12:53.0749 3984 pla - ok
11:12:53.0800 3984 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\windows\system32\umpnpmgr.dll
11:12:53.0838 3984 PlugPlay - ok
11:12:53.0876 3984 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\windows\system32\pnrpauto.dll
11:12:53.0912 3984 PNRPAutoReg - ok
11:12:53.0948 3984 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\windows\system32\pnrpsvc.dll
11:12:53.0969 3984 PNRPsvc - ok
11:12:54.0068 3984 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\windows\System32\ipsecsvc.dll
11:12:54.0151 3984 PolicyAgent - ok
11:12:54.0244 3984 Power (6ba9d927dded70bd1a9caded45f8b184) C:\windows\system32\umpo.dll
11:12:54.0311 3984 Power - ok
11:12:54.0513 3984 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\windows\system32\DRIVERS\raspptp.sys
11:12:54.0576 3984 PptpMiniport - ok
11:12:54.0636 3984 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\windows\system32\drivers\processr.sys
11:12:54.0678 3984 Processor - ok
11:12:54.0721 3984 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\windows\system32\profsvc.dll
11:12:54.0781 3984 ProfSvc - ok
11:12:54.0816 3984 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:12:54.0834 3984 ProtectedStorage - ok
11:12:54.0872 3984 Psched (0557cf5a2556bd58e26384169d72438d) C:\windows\system32\DRIVERS\pacer.sys
11:12:54.0937 3984 Psched - ok
11:12:54.0986 3984 PTUMWBus (452c20382df763f966c12dc48259f34e) C:\windows\system32\DRIVERS\PTUMWBus.sys
11:12:55.0001 3984 PTUMWBus - ok
11:12:55.0018 3984 PTUMWCDF (3754c646bbdaedafc09f793c6b38e877) C:\windows\system32\DRIVERS\PTUMWCDF.sys
11:12:55.0032 3984 PTUMWCDF - ok
11:12:55.0084 3984 PTUMWFLT (ac86bb916fbea16b0005efc3ba3adb58) C:\windows\system32\DRIVERS\PTUMWFLT.sys
11:12:55.0098 3984 PTUMWFLT - ok
11:12:55.0137 3984 PTUMWMdm (cb146794bc3b96661a32cbd68673b479) C:\windows\system32\DRIVERS\PTUMWMdm.sys
11:12:55.0154 3984 PTUMWMdm - ok
11:12:55.0200 3984 PTUMWNET (329e77868a92bb6f97c119050d97e9ec) C:\windows\system32\DRIVERS\PTUMWNET.sys
11:12:55.0217 3984 PTUMWNET - ok
11:12:55.0264 3984 PTUMWVsp (4ffd7e6d2cb293849c1181d08717ea09) C:\windows\system32\DRIVERS\PTUMWVsp.sys
11:12:55.0281 3984 PTUMWVsp - ok
11:12:55.0311 3984 QIOMem (c8fcb4899f8b70cc34e0d9876a80963c) C:\windows\system32\DRIVERS\QIOMem.sys
11:12:55.0358 3984 QIOMem - ok
11:12:55.0494 3984 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\windows\system32\drivers\ql2300.sys
11:12:55.0535 3984 ql2300 - ok
11:12:55.0776 3984 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\windows\system32\drivers\ql40xx.sys
11:12:55.0787 3984 ql40xx - ok
11:12:55.0816 3984 QWAVE (906191634e99aea92c4816150bda3732) C:\windows\system32\qwave.dll
11:12:55.0844 3984 QWAVE - ok
11:12:55.0857 3984 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\windows\system32\drivers\qwavedrv.sys
11:12:55.0897 3984 QWAVEdrv - ok
11:12:55.0928 3984 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\windows\system32\DRIVERS\rasacd.sys
11:12:55.0973 3984 RasAcd - ok
11:12:55.0998 3984 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\windows\system32\DRIVERS\AgileVpn.sys
11:12:56.0041 3984 RasAgileVpn - ok
11:12:56.0063 3984 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\windows\System32\rasauto.dll
11:12:56.0128 3984 RasAuto - ok
11:12:56.0149 3984 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\windows\system32\DRIVERS\rasl2tp.sys
11:12:56.0206 3984 Rasl2tp - ok
11:12:56.0263 3984 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\windows\System32\rasmans.dll
11:12:56.0329 3984 RasMan - ok
11:12:56.0372 3984 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\windows\system32\DRIVERS\raspppoe.sys
11:12:56.0434 3984 RasPppoe - ok
11:12:56.0476 3984 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\windows\system32\DRIVERS\rassstp.sys
11:12:56.0543 3984 RasSstp - ok
11:12:56.0582 3984 rdbss (77f665941019a1594d887a74f301fa2f) C:\windows\system32\DRIVERS\rdbss.sys
11:12:56.0649 3984 rdbss - ok
11:12:56.0688 3984 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\windows\system32\drivers\rdpbus.sys
11:12:56.0723 3984 rdpbus - ok
11:12:56.0763 3984 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\windows\system32\DRIVERS\RDPCDD.sys
11:12:56.0830 3984 RDPCDD - ok
11:12:56.0879 3984 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\windows\system32\drivers\rdpencdd.sys
11:12:56.0946 3984 RDPENCDD - ok
11:12:57.0001 3984 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\windows\system32\drivers\rdprefmp.sys
11:12:57.0044 3984 RDPREFMP - ok
11:12:57.0102 3984 RDPWD (6d76e6433574b058adcb0c50df834492) C:\windows\system32\drivers\RDPWD.sys
11:12:57.0141 3984 RDPWD - ok
11:12:57.0189 3984 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\windows\system32\drivers\rdyboost.sys
11:12:57.0202 3984 rdyboost - ok
11:12:57.0241 3984 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\windows\System32\mprdim.dll
11:12:57.0301 3984 RemoteAccess - ok
11:12:57.0363 3984 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\windows\system32\regsvc.dll
11:12:57.0441 3984 RemoteRegistry - ok
11:12:57.0493 3984 RMCAST (caf88d6573d21cd2aa27001ddbfdc74d) C:\windows\system32\DRIVERS\RMCAST.sys
11:12:57.0561 3984 RMCAST - ok
11:12:57.0617 3984 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\windows\System32\RpcEpMap.dll
11:12:57.0680 3984 RpcEptMapper - ok
11:12:57.0737 3984 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\windows\system32\locator.exe
11:12:57.0756 3984 RpcLocator - ok
11:12:57.0801 3984 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\windows\system32\rpcss.dll
11:12:57.0849 3984 RpcSs - ok
11:12:57.0879 3984 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\windows\system32\DRIVERS\rspndr.sys
11:12:57.0922 3984 rspndr - ok
11:12:57.0971 3984 RSUSBSTOR (135a64530d7699ad48f29d73a658dd11) C:\windows\system32\Drivers\RtsUStor.sys
11:12:57.0993 3984 RSUSBSTOR - ok
11:12:58.0045 3984 RSUSBVSTOR (e54a5586a28d0630a79a68bbab84bfcf) C:\windows\system32\Drivers\RTSUVSTOR.sys
11:12:58.0067 3984 RSUSBVSTOR - ok
11:12:58.0152 3984 RTL8192Ce (64fdf4fe366ca42da2b7d9d424b6e39b) C:\windows\system32\DRIVERS\rtl8192Ce.sys
11:12:58.0185 3984 RTL8192Ce - ok
11:12:58.0248 3984 RTL8192su (3c85058541d55bfcefd9177a68a507c6) C:\windows\system32\DRIVERS\RTL8192su.sys
11:12:58.0293 3984 RTL8192su - ok
11:12:58.0328 3984 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:12:58.0347 3984 SamSs - ok
11:12:58.0379 3984 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\windows\system32\drivers\sbp2port.sys
11:12:58.0390 3984 sbp2port - ok
11:12:58.0445 3984 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\windows\System32\SCardSvr.dll
11:12:58.0505 3984 SCardSvr - ok
11:12:58.0539 3984 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\windows\system32\DRIVERS\scfilter.sys
11:12:58.0601 3984 scfilter - ok
11:12:58.0674 3984 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\windows\system32\schedsvc.dll
11:12:58.0769 3984 Schedule - ok
11:12:58.0802 3984 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\windows\System32\certprop.dll
11:12:58.0844 3984 SCPolicySvc - ok
11:12:58.0877 3984 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\windows\System32\SDRSVC.dll
11:12:58.0922 3984 SDRSVC - ok
11:12:59.0021 3984 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\windows\system32\drivers\secdrv.sys
11:12:59.0090 3984 secdrv - ok
11:12:59.0123 3984 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\windows\system32\seclogon.dll
11:12:59.0165 3984 seclogon - ok
11:12:59.0185 3984 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\windows\System32\sens.dll
11:12:59.0248 3984 SENS - ok
11:12:59.0311 3984 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\windows\system32\sensrsvc.dll
11:12:59.0347 3984 SensrSvc - ok
11:12:59.0394 3984 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\windows\system32\drivers\serenum.sys
11:12:59.0434 3984 Serenum - ok
11:12:59.0444 3984 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\windows\system32\drivers\serial.sys
11:12:59.0473 3984 Serial - ok
11:12:59.0510 3984 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\windows\system32\drivers\sermouse.sys
11:12:59.0528 3984 sermouse - ok
11:12:59.0590 3984 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\windows\system32\sessenv.dll
11:12:59.0665 3984 SessionEnv - ok
11:12:59.0686 3984 sffdisk (a554811bcd09279536440c964ae35bbf) C:\windows\system32\drivers\sffdisk.sys
11:12:59.0707 3984 sffdisk - ok
11:12:59.0753 3984 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\windows\system32\drivers\sffp_mmc.sys
11:12:59.0798 3984 sffp_mmc - ok
11:12:59.0805 3984 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\windows\system32\drivers\sffp_sd.sys
11:12:59.0835 3984 sffp_sd - ok
11:12:59.0865 3984 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\windows\system32\drivers\sfloppy.sys
11:12:59.0905 3984 sfloppy - ok
11:12:59.0952 3984 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\windows\System32\ipnathlp.dll
11:13:00.0000 3984 SharedAccess - ok
11:13:00.0060 3984 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\windows\System32\shsvcs.dll
11:13:00.0126 3984 ShellHWDetection - ok
11:13:00.0202 3984 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\windows\system32\drivers\SiSRaid2.sys
11:13:00.0212 3984 SiSRaid2 - ok
11:13:00.0251 3984 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\windows\system32\drivers\sisraid4.sys
11:13:00.0262 3984 SiSRaid4 - ok
11:13:00.0283 3984 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\windows\system32\DRIVERS\smb.sys
11:13:00.0345 3984 Smb - ok
11:13:00.0412 3984 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\windows\System32\snmptrap.exe
11:13:00.0456 3984 SNMPTRAP - ok
11:13:00.0486 3984 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\windows\system32\drivers\spldr.sys
11:13:00.0496 3984 spldr - ok
11:13:00.0746 3984 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\windows\System32\spoolsv.exe
11:13:00.0812 3984 Spooler - ok
11:13:01.0120 3984 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\windows\system32\sppsvc.exe
11:13:01.0280 3984 sppsvc - ok
11:13:01.0406 3984 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\windows\system32\sppuinotify.dll
11:13:01.0451 3984 sppuinotify - ok
11:13:01.0524 3984 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\windows\system32\DRIVERS\srv.sys
11:13:01.0584 3984 srv - ok
11:13:01.0652 3984 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\windows\system32\DRIVERS\srv2.sys
11:13:01.0695 3984 srv2 - ok
11:13:01.0755 3984 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\windows\system32\DRIVERS\VSTAZL6.SYS
11:13:01.0778 3984 SrvHsfHDA - ok
11:13:01.0888 3984 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\windows\system32\DRIVERS\VSTDPV6.SYS
11:13:01.0955 3984 SrvHsfV92 - ok
11:13:02.0195 3984 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\windows\system32\DRIVERS\VSTCNXT6.SYS
11:13:02.0248 3984 SrvHsfWinac - ok
11:13:02.0295 3984 srvnet (27e461f0be5bff5fc737328f749538c3) C:\windows\system32\DRIVERS\srvnet.sys
11:13:02.0315 3984 srvnet - ok
11:13:02.0356 3984 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\windows\System32\ssdpsrv.dll
11:13:02.0426 3984 SSDPSRV - ok
11:13:02.0455 3984 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\windows\system32\sstpsvc.dll
11:13:02.0501 3984 SstpSvc - ok
11:13:02.0546 3984 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\windows\system32\drivers\stexstor.sys
11:13:02.0556 3984 stexstor - ok
11:13:02.0650 3984 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\windows\System32\wiaservc.dll
11:13:02.0685 3984 stisvc - ok
11:13:02.0790 3984 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\windows\system32\DRIVERS\swenum.sys
11:13:02.0801 3984 swenum - ok
11:13:02.0860 3984 swprv (e08e46fdd841b7184194011ca1955a0b) C:\windows\System32\swprv.dll
11:13:02.0928 3984 swprv - ok
11:13:03.0251 3984 SynTP (f5b46df59feaa48a442aed7eeb754d4b) C:\windows\system32\DRIVERS\SynTP.sys
11:13:03.0290 3984 SynTP - ok
11:13:03.0718 3984 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\windows\system32\sysmain.dll
11:13:03.0808 3984 SysMain - ok
11:13:03.0955 3984 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\windows\System32\TabSvc.dll
11:13:04.0005 3984 TabletInputService - ok
11:13:04.0067 3984 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\windows\System32\tapisrv.dll
11:13:04.0136 3984 TapiSrv - ok
11:13:04.0191 3984 TBS (1be03ac720f4d302ea01d40f588162f6) C:\windows\System32\tbssvc.dll
11:13:04.0237 3984 TBS - ok
11:13:04.0528 3984 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\windows\system32\drivers\tcpip.sys
11:13:04.0568 3984 Tcpip - ok
11:13:05.0016 3984 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\windows\system32\DRIVERS\tcpip.sys
11:13:05.0064 3984 TCPIP6 - ok
11:13:05.0191 3984 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\windows\system32\drivers\tcpipreg.sys
11:13:05.0248 3984 tcpipreg - ok
11:13:05.0303 3984 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\windows\system32\DRIVERS\tdcmdpst.sys
11:13:05.0319 3984 tdcmdpst - ok
11:13:05.0383 3984 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\windows\system32\drivers\tdpipe.sys
11:13:05.0402 3984 TDPIPE - ok
11:13:05.0430 3984 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\windows\system32\drivers\tdtcp.sys
11:13:05.0470 3984 TDTCP - ok
11:13:05.0519 3984 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\windows\system32\DRIVERS\tdx.sys
11:13:05.0563 3984 tdx - ok
11:13:05.0579 3984 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\windows\system32\DRIVERS\termdd.sys
11:13:05.0591 3984 TermDD - ok
11:13:05.0655 3984 TermService (2e648163254233755035b46dd7b89123) C:\windows\System32\termsrv.dll
11:13:05.0744 3984 TermService - ok
11:13:05.0832 3984 Themes (f0344071948d1a1fa732231785a0664c) C:\windows\system32\themeservice.dll
11:13:05.0857 3984 Themes - ok
11:13:05.0884 3984 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\windows\system32\mmcss.dll
11:13:05.0930 3984 THREADORDER - ok
11:13:06.0120 3984 TMachInfo (f120967184a27e927052e8ddbb727851) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
11:13:06.0129 3984 TMachInfo - ok
11:13:06.0175 3984 TODDSrv (8e2c799d3476eac32c3ba0df7ce6af19) C:\Windows\system32\TODDSrv.exe
11:13:06.0189 3984 TODDSrv - ok
11:13:06.0286 3984 TosCoSrv (cdc97fa5c42b07fb0d4600e17c32f582) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
11:13:06.0303 3984 TosCoSrv - ok
11:13:06.0384 3984 TOSHIBA eco Utility Service (d0f868a67cb4d817a3f7abef8c42f49c) C:\Program Files\TOSHIBA\TECO\TecoService.exe
11:13:06.0397 3984 TOSHIBA eco Utility Service - ok
11:13:06.0445 3984 TOSHIBA HDD SSD Alert Service (edb4b432db13ea3d1eb2356310d33263) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
11:13:06.0456 3984 TOSHIBA HDD SSD Alert Service - ok
11:13:06.0553 3984 tos_sps64 (09ff7b0b1b5c3d225495cb6f5a9b39f8) C:\windows\system32\DRIVERS\tos_sps64.sys
11:13:06.0577 3984 tos_sps64 - ok
11:13:06.0682 3984 TPCHSrv (d65c6b0c070534336b72005391b6168a) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
11:13:06.0724 3984 TPCHSrv - ok
11:13:06.0863 3984 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\windows\System32\trkwks.dll
11:13:06.0925 3984 TrkWks - ok
11:13:07.0011 3984 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\windows\servicing\TrustedInstaller.exe
11:13:07.0075 3984 TrustedInstaller - ok
11:13:07.0128 3984 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\windows\system32\DRIVERS\tssecsrv.sys
11:13:07.0195 3984 tssecsrv - ok
11:13:07.0270 3984 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\windows\system32\drivers\tsusbflt.sys
11:13:07.0289 3984 TsUsbFlt - ok
11:13:07.0304 3984 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\windows\system32\drivers\TsUsbGD.sys
11:13:07.0338 3984 TsUsbGD - ok
11:13:07.0604 3984 TuneUp.UtilitiesSvc (dafeee8f55e0fa1567e734299ac0af06) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
11:13:07.0698 3984 TuneUp.UtilitiesSvc - ok
11:13:07.0908 3984 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
11:13:07.0924 3984 TuneUpUtilitiesDrv - ok
11:13:08.0095 3984 tunnel (3566a8daafa27af944f5d705eaa64894) C:\windows\system32\DRIVERS\tunnel.sys
11:13:08.0159 3984 tunnel - ok
11:13:08.0215 3984 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\windows\system32\DRIVERS\TVALZ_O.SYS
11:13:08.0231 3984 TVALZ - ok
11:13:08.0287 3984 TVALZFL (9c7191f4b2e49bff47a6c1144b5923fa) C:\windows\system32\DRIVERS\TVALZFL.sys
11:13:08.0303 3984 TVALZFL - ok
11:13:08.0333 3984 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\windows\system32\drivers\uagp35.sys
11:13:08.0343 3984 uagp35 - ok
11:13:08.0410 3984 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\windows\system32\DRIVERS\udfs.sys
11:13:08.0482 3984 udfs - ok
11:13:08.0562 3984 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\windows\system32\UI0Detect.exe
11:13:08.0585 3984 UI0Detect - ok
11:13:08.0612 3984 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\windows\system32\drivers\uliagpkx.sys
11:13:08.0623 3984 uliagpkx - ok
11:13:08.0673 3984 umbus (dc54a574663a895c8763af0fa1ff7561) C:\windows\system32\DRIVERS\umbus.sys
11:13:08.0708 3984 umbus - ok
11:13:08.0737 3984 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\windows\system32\drivers\umpass.sys
11:13:08.0779 3984 UmPass - ok
11:13:09.0026 3984 UNS (7e5e1603d0ff2d240ae70295c5c3fefc) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
11:13:09.0125 3984 UNS - ok
11:13:09.0310 3984 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\windows\System32\upnphost.dll
11:13:09.0385 3984 upnphost - ok
11:13:09.0476 3984 USBAAPL64 (fb251567f41bc61988b26731dec19e4b) C:\windows\system32\Drivers\usbaapl64.sys
11:13:09.0513 3984 USBAAPL64 - ok
11:13:09.0566 3984 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\windows\system32\DRIVERS\usbccgp.sys
11:13:09.0587 3984 usbccgp - ok
11:13:09.0626 3984 usbcir (af0892a803fdda7492f595368e3b68e7) C:\windows\system32\drivers\usbcir.sys
11:13:09.0649 3984 usbcir - ok
11:13:09.0761 3984 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\windows\system32\drivers\usbehci.sys
11:13:09.0810 3984 usbehci - ok
11:13:09.0856 3984 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\windows\system32\DRIVERS\usbhub.sys
11:13:09.0902 3984 usbhub - ok
11:13:09.0955 3984 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\windows\system32\drivers\usbohci.sys
11:13:09.0998 3984 usbohci - ok
11:13:10.0051 3984 usbprint (73188f58fb384e75c4063d29413cee3d) C:\windows\system32\DRIVERS\usbprint.sys
11:13:10.0097 3984 usbprint - ok
11:13:10.0142 3984 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\windows\system32\drivers\usbser.sys
11:13:10.0179 3984 usbser - ok
11:13:10.0239 3984 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\windows\system32\DRIVERS\USBSTOR.SYS
11:13:10.0278 3984 USBSTOR - ok
11:13:10.0315 3984 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\windows\system32\drivers\usbuhci.sys
11:13:10.0362 3984 usbuhci - ok
11:13:10.0405 3984 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\windows\system32\Drivers\usbvideo.sys
11:13:10.0430 3984 usbvideo - ok
11:13:10.0460 3984 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\windows\System32\uxsms.dll
11:13:10.0531 3984 UxSms - ok
11:13:10.0583 3984 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:13:10.0603 3984 VaultSvc - ok
11:13:10.0635 3984 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\windows\system32\drivers\vdrvroot.sys
11:13:10.0646 3984 vdrvroot - ok
11:13:10.0701 3984 vds (8d6b481601d01a456e75c3210f1830be) C:\windows\System32\vds.exe
11:13:10.0771 3984 vds - ok
11:13:10.0818 3984 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\windows\system32\DRIVERS\vgapnp.sys
11:13:10.0841 3984 vga - ok
11:13:10.0864 3984 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\windows\System32\drivers\vga.sys
11:13:10.0931 3984 VgaSave - ok
11:13:10.0977 3984 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\windows\system32\drivers\vhdmp.sys
11:13:10.0991 3984 vhdmp - ok
11:13:11.0012 3984 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\windows\system32\drivers\viaide.sys
11:13:11.0023 3984 viaide - ok
11:13:11.0048 3984 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\windows\system32\drivers\volmgr.sys
11:13:11.0059 3984 volmgr - ok
11:13:11.0097 3984 volmgrx (a255814907c89be58b79ef2f189b843b) C:\windows\system32\drivers\volmgrx.sys
11:13:11.0113 3984 volmgrx - ok
11:13:11.0157 3984 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\windows\system32\drivers\volsnap.sys
11:13:11.0172 3984 volsnap - ok
11:13:11.0209 3984 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\windows\system32\drivers\vsmraid.sys
11:13:11.0221 3984 vsmraid - ok
11:13:11.0293 3984 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\windows\system32\vssvc.exe
11:13:11.0386 3984 VSS - ok
11:13:11.0535 3984 vToolbarUpdater10.2.0 (3080f1f093869a19fb3d1f0226c73809) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
11:13:11.0560 3984 vToolbarUpdater10.2.0 - ok
11:13:11.0658 3984 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\windows\system32\DRIVERS\vwifibus.sys
11:13:11.0699 3984 vwifibus - ok
11:13:11.0730 3984 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\windows\system32\DRIVERS\vwififlt.sys
11:13:11.0756 3984 vwififlt - ok
11:13:11.0769 3984 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\windows\system32\DRIVERS\vwifimp.sys
11:13:11.0794 3984 vwifimp - ok
11:13:11.0833 3984 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\windows\system32\w32time.dll
11:13:11.0883 3984 W32Time - ok
11:13:11.0972 3984 W3SVC (b32009db1972e7f2c227499289c4384a) C:\windows\system32\inetsrv\iisw3adm.dll
11:13:12.0002 3984 W3SVC - ok
11:13:12.0038 3984 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\windows\system32\drivers\wacompen.sys
11:13:12.0074 3984 WacomPen - ok
11:13:12.0110 3984 WANARP (356afd78a6ed4457169241ac3965230c) C:\windows\system32\DRIVERS\wanarp.sys
11:13:12.0175 3984 WANARP - ok
11:13:12.0182 3984 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\windows\system32\DRIVERS\wanarp.sys
11:13:12.0226 3984 Wanarpv6 - ok
11:13:12.0256 3984 WAS (b32009db1972e7f2c227499289c4384a) C:\windows\system32\inetsrv\iisw3adm.dll
11:13:12.0281 3984 WAS - ok
11:13:12.0388 3984 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\windows\system32\Wat\WatAdminSvc.exe
11:13:12.0424 3984 WatAdminSvc - ok
11:13:12.0488 3984 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\windows\system32\wbengine.exe
11:13:12.0545 3984 wbengine - ok
11:13:12.0664 3984 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\windows\System32\wbiosrvc.dll
11:13:12.0694 3984 WbioSrvc - ok
11:13:12.0720 3984 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\windows\System32\wcncsvc.dll
11:13:12.0773 3984 wcncsvc - ok
11:13:12.0803 3984 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\windows\System32\WcsPlugInService.dll
11:13:12.0824 3984 WcsPlugInService - ok
11:13:12.0883 3984 Wd (72889e16ff12ba0f235467d6091b17dc) C:\windows\system32\drivers\wd.sys
11:13:12.0893 3984 Wd - ok
11:13:12.0930 3984 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\windows\system32\drivers\Wdf01000.sys
11:13:12.0961 3984 Wdf01000 - ok
11:13:12.0984 3984 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\windows\system32\wdi.dll
11:13:13.0033 3984 WdiServiceHost - ok
11:13:13.0039 3984 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\windows\system32\wdi.dll
11:13:13.0067 3984 WdiSystemHost - ok
11:13:13.0111 3984 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\windows\System32\webclnt.dll
11:13:13.0165 3984 WebClient - ok
11:13:13.0215 3984 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\windows\system32\wecsvc.dll
11:13:13.0289 3984 Wecsvc - ok
11:13:13.0327 3984 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\windows\System32\wercplsupport.dll
11:13:13.0374 3984 wercplsupport - ok
11:13:13.0398 3984 WerSvc (6d137963730144698cbd10f202e9f251) C:\windows\System32\WerSvc.dll
11:13:13.0461 3984 WerSvc - ok
11:13:13.0525 3984 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\windows\system32\DRIVERS\wfplwf.sys
11:13:13.0570 3984 WfpLwf - ok
11:13:13.0594 3984 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\windows\system32\drivers\wimmount.sys
11:13:13.0606 3984 WIMMount - ok
11:13:13.0652 3984 WinDefend - ok
11:13:13.0661 3984 WinHttpAutoProxySvc - ok
11:13:13.0727 3984 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\windows\system32\wbem\WMIsvc.dll
11:13:13.0775 3984 Winmgmt - ok
11:13:13.0859 3984 WinRM (bcb1310604aa415c4508708975b3931e) C:\windows\system32\WsmSvc.dll
11:13:13.0937 3984 WinRM - ok
11:13:14.0076 3984 WinUsb (fe88b288356e7b47b74b13372add906d) C:\windows\system32\DRIVERS\WinUsb.sys
11:13:14.0100 3984 WinUsb - ok
11:13:14.0171 3984 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\windows\System32\wlansvc.dll
11:13:14.0227 3984 Wlansvc - ok
11:13:14.0345 3984 WlanWpsSvc (c71ee856c4f5b52e2d094f494cee4936) C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe
11:13:14.0360 3984 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - warning
11:13:14.0360 3984 WlanWpsSvc - detected UnsignedFile.Multi.Generic (1)
11:13:14.0435 3984 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
11:13:14.0444 3984 wlcrasvc - ok
11:13:14.0566 3984 wlidsvc (7e47c328fc4768cb8beafbcfafa70362) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
11:13:14.0619 3984 wlidsvc - ok
11:13:14.0710 3984 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\windows\system32\DRIVERS\wmiacpi.sys
11:13:14.0750 3984 WmiAcpi - ok
11:13:14.0823 3984 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\windows\system32\wbem\WmiApSrv.exe
11:13:14.0864 3984 wmiApSrv - ok
11:13:14.0927 3984 WMPNetworkSvc - ok
11:13:14.0954 3984 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\windows\System32\wpcsvc.dll
11:13:14.0976 3984 WPCSvc - ok
11:13:15.0000 3984 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\windows\system32\wpdbusenum.dll
11:13:15.0048 3984 WPDBusEnum - ok
11:13:15.0074 3984 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\windows\system32\drivers\ws2ifsl.sys
11:13:15.0120 3984 ws2ifsl - ok
11:13:15.0151 3984 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\windows\System32\wscsvc.dll
11:13:15.0204 3984 wscsvc - ok
11:13:15.0211 3984 WSearch - ok
11:13:15.0308 3984 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\windows\system32\wuaueng.dll
11:13:15.0410 3984 wuauserv - ok
11:13:15.0527 3984 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\windows\system32\drivers\WudfPf.sys
11:13:15.0596 3984 WudfPf - ok
11:13:15.0627 3984 WUDFRd (cf8d590be3373029d57af80914190682) C:\windows\system32\DRIVERS\WUDFRd.sys
11:13:15.0690 3984 WUDFRd - ok
11:13:15.0732 3984 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\windows\System32\WUDFSvc.dll
11:13:15.0778 3984 wudfsvc - ok
11:13:15.0809 3984 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\windows\System32\wwansvc.dll
11:13:15.0854 3984 WwanSvc - ok
11:13:15.0976 3984 MBR (0x1B8) (5b5e648d12fcadc244c1ec30318e1eb9) \Device\Harddisk0\DR0
11:13:16.0608 3984 \Device\Harddisk0\DR0 - ok
11:13:16.0616 3984 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk1\DR1
11:13:16.0762 3984 \Device\Harddisk1\DR1 - ok
11:13:16.0794 3984 Boot (0x1200) (4eb1e2b90bed742042faa8a67b61b3ec) \Device\Harddisk0\DR0\Partition0
11:13:16.0795 3984 \Device\Harddisk0\DR0\Partition0 - ok
11:13:16.0801 3984 Boot (0x1200) (60125af47915005e0524c7c09c176b90) \Device\Harddisk1\DR1\Partition0
11:13:16.0803 3984 \Device\Harddisk1\DR1\Partition0 - ok
11:13:16.0805 3984 ============================================================
11:13:16.0806 3984 Scan finished
11:13:16.0806 3984 ============================================================
11:13:16.0816 3904 Detected object count: 2
11:13:16.0816 3904 Actual detected object count: 2
11:14:11.0435 3904 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
11:14:11.0435 3904 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:14:11.0436 3904 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - skipped by user
11:14:11.0437 3904 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:16:24.0490 1092 ============================================================
11:16:24.0490 1092 Scan started
11:16:24.0490 1092 Mode: Manual; SigCheck; TDLFS;
11:16:24.0490 1092 ============================================================
11:16:24.0666 1092 1394ohci (a87d604aea360176311474c87a63bb88) C:\windows\system32\drivers\1394ohci.sys
11:16:24.0696 1092 1394ohci - ok
11:16:24.0727 1092 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\windows\system32\drivers\ACPI.sys
11:16:24.0743 1092 ACPI - ok
11:16:24.0761 1092 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\windows\system32\drivers\acpipmi.sys
11:16:24.0786 1092 AcpiPmi - ok
11:16:24.0792 1092 ACTSBUS - ok
11:16:24.0797 1092 ACTSCVsp - ok
11:16:24.0803 1092 ACTSMBMP - ok
11:16:24.0809 1092 ACTSMdm - ok
11:16:24.0815 1092 ACTSNVsp - ok
11:16:24.0821 1092 ACTSRMNET - ok
11:16:24.0826 1092 ACTSVsp - ok
11:16:24.0902 1092 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:16:24.0912 1092 AdobeARMservice - ok
11:16:24.0962 1092 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\windows\system32\drivers\adp94xx.sys
11:16:24.0990 1092 adp94xx - ok
11:16:25.0016 1092 adpahci (597f78224ee9224ea1a13d6350ced962) C:\windows\system32\drivers\adpahci.sys
11:16:25.0031 1092 adpahci - ok
11:16:25.0069 1092 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\windows\system32\drivers\adpu320.sys
11:16:25.0082 1092 adpu320 - ok
11:16:25.0120 1092 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\windows\System32\aelupsvc.dll
11:16:25.0166 1092 AeLookupSvc - ok
11:16:25.0205 1092 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\windows\system32\drivers\afd.sys
11:16:25.0232 1092 AFD - ok
11:16:25.0261 1092 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\windows\system32\drivers\agp440.sys
11:16:25.0272 1092 agp440 - ok
11:16:25.0298 1092 ALG (3290d6946b5e30e70414990574883ddb) C:\windows\System32\alg.exe
11:16:25.0320 1092 ALG - ok
11:16:25.0350 1092 aliide (5812713a477a3ad7363c7438ca2ee038) C:\windows\system32\drivers\aliide.sys
11:16:25.0360 1092 aliide - ok
11:16:25.0381 1092 amdide (1ff8b4431c353ce385c875f194924c0c) C:\windows\system32\drivers\amdide.sys
11:16:25.0391 1092 amdide - ok
11:16:25.0412 1092 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\windows\system32\drivers\amdk8.sys
11:16:25.0433 1092 AmdK8 - ok
11:16:25.0449 1092 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\windows\system32\drivers\amdppm.sys
11:16:25.0470 1092 AmdPPM - ok
11:16:25.0505 1092 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\windows\system32\drivers\amdsata.sys
11:16:25.0529 1092 amdsata - ok
11:16:25.0571 1092 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\windows\system32\drivers\amdsbs.sys
11:16:25.0584 1092 amdsbs - ok
11:16:25.0608 1092 amdxata (540daf1cea6094886d72126fd7c33048) C:\windows\system32\drivers\amdxata.sys
11:16:25.0619 1092 amdxata - ok
11:16:25.0667 1092 AppHostSvc (59d01fa91962c9c1e9b4022b2d3b46db) C:\windows\system32\inetsrv\apphostsvc.dll
11:16:25.0688 1092 AppHostSvc - ok
11:16:25.0715 1092 AppID (89a69c3f2f319b43379399547526d952) C:\windows\system32\drivers\appid.sys
11:16:25.0760 1092 AppID - ok
11:16:25.0788 1092 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\windows\System32\appidsvc.dll
11:16:25.0833 1092 AppIDSvc - ok
11:16:25.0857 1092 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\windows\System32\appinfo.dll
11:16:25.0901 1092 Appinfo - ok
11:16:25.0987 1092 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:16:25.0996 1092 Apple Mobile Device - ok
11:16:26.0034 1092 arc (c484f8ceb1717c540242531db7845c4e) C:\windows\system32\drivers\arc.sys
11:16:26.0045 1092 arc - ok
11:16:26.0061 1092 arcsas (019af6924aefe7839f61c830227fe79c) C:\windows\system32\drivers\arcsas.sys
11:16:26.0084 1092 arcsas - ok
11:16:26.0114 1092 AsyncMac (769765ce2cc62867468cea93969b2242) C:\windows\system32\DRIVERS\asyncmac.sys
11:16:26.0158 1092 AsyncMac - ok
11:16:26.0175 1092 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\windows\system32\drivers\atapi.sys
11:16:26.0186 1092 atapi - ok
11:16:26.0230 1092 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\windows\System32\Audiosrv.dll
11:16:26.0284 1092 AudioEndpointBuilder - ok
11:16:26.0294 1092 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\windows\System32\Audiosrv.dll
11:16:26.0346 1092 AudioSrv - ok
11:16:26.0389 1092 Avgfwfd (96b4456f1dca4eda506ed31c7d2d6b05) C:\windows\system32\DRIVERS\avgfwd6a.sys
11:16:26.0398 1092 Avgfwfd - ok
11:16:26.0528 1092 avgfws (5cd22eb540f82c70e33e530003f3903b) C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
11:16:26.0594 1092 avgfws - ok
11:16:26.0817 1092 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
11:16:26.0905 1092 AVGIDSAgent - ok
11:16:27.0053 1092 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\windows\system32\DRIVERS\AVGIDSDriver.Sys
11:16:27.0078 1092 AVGIDSDriver - ok
11:16:27.0091 1092 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\windows\system32\DRIVERS\AVGIDSEH.Sys
11:16:27.0116 1092 AVGIDSEH - ok
11:16:27.0126 1092 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\windows\system32\DRIVERS\AVGIDSFilter.Sys
11:16:27.0151 1092 AVGIDSFilter - ok
11:16:27.0197 1092 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\windows\system32\DRIVERS\avgldx64.sys
11:16:27.0225 1092 Avgldx64 - ok
11:16:27.0237 1092 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\windows\system32\DRIVERS\avgmfx64.sys
11:16:27.0262 1092 Avgmfx64 - ok
11:16:27.0279 1092 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\windows\system32\DRIVERS\avgrkx64.sys
11:16:27.0307 1092 Avgrkx64 - ok
11:16:27.0358 1092 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\windows\system32\DRIVERS\avgtdia.sys
11:16:27.0387 1092 Avgtdia - ok
11:16:27.0467 1092 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
11:16:27.0494 1092 avgwd - ok
11:16:27.0517 1092 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\windows\System32\AxInstSV.dll
11:16:27.0545 1092 AxInstSV - ok
11:16:27.0589 1092 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\windows\system32\drivers\bxvbda.sys
11:16:27.0615 1092 b06bdrv - ok
11:16:27.0636 1092 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\windows\system32\DRIVERS\b57nd60a.sys
11:16:27.0660 1092 b57nd60a - ok
11:16:27.0689 1092 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\windows\System32\bdesvc.dll
11:16:27.0711 1092 BDESVC - ok
11:16:27.0742 1092 Beep (16a47ce2decc9b099349a5f840654746) C:\windows\system32\drivers\Beep.sys
11:16:27.0787 1092 Beep - ok
11:16:27.0825 1092 BFE (82974d6a2fd19445cc5171fc378668a4) C:\windows\System32\bfe.dll
11:16:27.0877 1092 BFE - ok
11:16:27.0935 1092 BITS (1ea7969e3271cbc59e1730697dc74682) C:\windows\System32\qmgr.dll
11:16:27.0990 1092 BITS - ok
11:16:28.0056 1092 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\windows\system32\DRIVERS\blbdrive.sys
11:16:28.0078 1092 blbdrive - ok
11:16:28.0161 1092 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
11:16:28.0175 1092 Bonjour Service - ok
11:16:28.0205 1092 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\windows\system32\DRIVERS\bowser.sys
11:16:28.0229 1092 bowser - ok
11:16:28.0257 1092 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\windows\system32\drivers\BrFiltLo.sys
11:16:28.0281 1092 BrFiltLo - ok
11:16:28.0303 1092 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\windows\system32\drivers\BrFiltUp.sys
11:16:28.0330 1092 BrFiltUp - ok
11:16:28.0363 1092 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\windows\System32\browser.dll
11:16:28.0408 1092 Browser - ok
11:16:28.0452 1092 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\windows\System32\Drivers\Brserid.sys
11:16:28.0476 1092 Brserid - ok
11:16:28.0499 1092 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\windows\System32\Drivers\BrSerWdm.sys
11:16:28.0524 1092 BrSerWdm - ok
11:16:28.0555 1092 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\windows\System32\Drivers\BrUsbMdm.sys
11:16:28.0586 1092 BrUsbMdm - ok
11:16:28.0592 1092 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\windows\System32\Drivers\BrUsbSer.sys
11:16:28.0614 1092 BrUsbSer - ok
11:16:28.0624 1092 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\windows\system32\drivers\bthmodem.sys
11:16:28.0638 1092 BTHMODEM - ok
11:16:28.0665 1092 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\windows\system32\bthserv.dll
11:16:28.0712 1092 bthserv - ok
11:16:28.0740 1092 cdfs (b8bd2bb284668c84865658c77574381a) C:\windows\system32\DRIVERS\cdfs.sys
11:16:28.0787 1092 cdfs - ok
11:16:28.0803 1092 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\windows\system32\DRIVERS\cdrom.sys
11:16:28.0830 1092 cdrom - ok
11:16:28.0856 1092 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\windows\System32\certprop.dll
11:16:28.0902 1092 CertPropSvc - ok
11:16:28.0931 1092 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\windows\system32\drivers\circlass.sys
11:16:28.0955 1092 circlass - ok
11:16:28.0984 1092 CISVC (ff60401f1c659ca2ed4bae85d3fd14da) C:\windows\system32\CISVC.EXE
11:16:29.0005 1092 CISVC - ok
11:16:29.0047 1092 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\windows\system32\CLFS.sys
11:16:29.0063 1092 CLFS - ok
11:16:29.0117 1092 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:16:29.0127 1092 clr_optimization_v2.0.50727_32 - ok
11:16:29.0187 1092 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:16:29.0197 1092 clr_optimization_v2.0.50727_64 - ok
11:16:29.0254 1092 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:16:29.0265 1092 clr_optimization_v4.0.30319_32 - ok
11:16:29.0286 1092 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:16:29.0296 1092 clr_optimization_v4.0.30319_64 - ok
11:16:29.0330 1092 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\windows\system32\DRIVERS\CmBatt.sys
11:16:29.0352 1092 CmBatt - ok
11:16:29.0386 1092 cmdide (e19d3f095812725d88f9001985b94edd) C:\windows\system32\drivers\cmdide.sys
11:16:29.0396 1092 cmdide - ok
11:16:29.0501 1092 CNG (c4943b6c962e4b82197542447ad599f4) C:\windows\system32\Drivers\cng.sys
11:16:29.0525 1092 CNG - ok
11:16:29.0603 1092 CnxtHdAudService (66847c979893a11cfcc2280e772d7ea1) C:\windows\system32\drivers\CHDRT64.sys
11:16:29.0656 1092 CnxtHdAudService - ok
11:16:29.0753 1092 Compbatt (102de219c3f61415f964c88e9085ad14) C:\windows\system32\drivers\compbatt.sys
11:16:29.0762 1092 Compbatt - ok
11:16:29.0775 1092 CompositeBus (03edb043586cceba243d689bdda370a8) C:\windows\system32\DRIVERS\CompositeBus.sys
11:16:29.0805 1092 CompositeBus - ok
11:16:29.0811 1092 COMSysApp - ok
11:16:29.0831 1092 crcdisk (1c827878a998c18847245fe1f34ee597) C:\windows\system32\drivers\crcdisk.sys
11:16:29.0841 1092 crcdisk - ok
11:16:29.0874 1092 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\windows\system32\cryptsvc.dll
11:16:29.0920 1092 CryptSvc - ok
11:16:29.0964 1092 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\windows\system32\rpcss.dll
11:16:30.0016 1092 DcomLaunch - ok
11:16:30.0041 1092 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\windows\System32\defragsvc.dll
11:16:30.0091 1092 defragsvc - ok
11:16:30.0122 1092 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\windows\system32\Drivers\dfsc.sys
11:16:30.0167 1092 DfsC - ok
11:16:30.0200 1092 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\windows\system32\dhcpcore.dll
11:16:30.0249 1092 Dhcp - ok
11:16:30.0271 1092 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\windows\system32\drivers\discache.sys
11:16:30.0317 1092 discache - ok
11:16:30.0351 1092 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\windows\system32\drivers\disk.sys
11:16:30.0362 1092 Disk - ok
11:16:30.0392 1092 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\windows\System32\dnsrslvr.dll
11:16:30.0415 1092 Dnscache - ok
11:16:30.0449 1092 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\windows\System32\dot3svc.dll
11:16:30.0496 1092 dot3svc - ok
11:16:30.0513 1092 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\windows\system32\dps.dll
11:16:30.0560 1092 DPS - ok
11:16:30.0580 1092 drmkaud (9b19f34400d24df84c858a421c205754) C:\windows\system32\drivers\drmkaud.sys
11:16:30.0605 1092 drmkaud - ok
11:16:30.0653 1092 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\windows\System32\drivers\dxgkrnl.sys
11:16:30.0679 1092 DXGKrnl - ok
11:16:30.0708 1092 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\windows\System32\eapsvc.dll
11:16:30.0756 1092 EapHost - ok
11:16:30.0895 1092 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\windows\system32\drivers\evbda.sys
11:16:30.0953 1092 ebdrv - ok
11:16:31.0051 1092 EFS (c118a82cd78818c29ab228366ebf81c3) C:\windows\System32\lsass.exe
11:16:31.0073 1092 EFS - ok
11:16:31.0140 1092 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\windows\ehome\ehRecvr.exe
11:16:31.0170 1092 ehRecvr - ok
11:16:31.0188 1092 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\windows\ehome\ehsched.exe
11:16:31.0212 1092 ehSched - ok
11:16:31.0290 1092 elxstor (0e5da5369a0fcaea12456dd852545184) C:\windows\system32\drivers\elxstor.sys
11:16:31.0308 1092 elxstor - ok
11:16:31.0331 1092 ErrDev (34a3c54752046e79a126e15c51db409b) C:\windows\system32\drivers\errdev.sys
11:16:31.0353 1092 ErrDev - ok
11:16:31.0390 1092 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\windows\system32\es.dll
11:16:31.0441 1092 EventSystem - ok
11:16:31.0466 1092 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\windows\system32\drivers\exfat.sys
11:16:31.0515 1092 exfat - ok
11:16:31.0541 1092 fastfat (0adc83218b66a6db380c330836f3e36d) C:\windows\system32\drivers\fastfat.sys
11:16:31.0590 1092 fastfat - ok
11:16:31.0643 1092 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\windows\system32\fxssvc.exe
11:16:31.0676 1092 Fax - ok
11:16:31.0694 1092 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\windows\system32\drivers\fdc.sys
11:16:31.0717 1092 fdc - ok
11:16:31.0749 1092 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\windows\system32\fdPHost.dll
11:16:31.0796 1092 fdPHost - ok
11:16:31.0813 1092 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\windows\system32\fdrespub.dll
11:16:31.0860 1092 FDResPub - ok
11:16:31.0886 1092 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\windows\system32\drivers\fileinfo.sys
11:16:31.0909 1092 FileInfo - ok
11:16:31.0928 1092 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\windows\system32\drivers\filetrace.sys
11:16:31.0974 1092 Filetrace - ok
11:16:31.0999 1092 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\windows\system32\drivers\flpydisk.sys
11:16:32.0022 1092 flpydisk - ok
11:16:32.0064 1092 FltMgr (da6b67270fd9db3697b20fce94950741) C:\windows\system32\drivers\fltmgr.sys
11:16:32.0078 1092 FltMgr - ok
11:16:32.0141 1092 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\windows\system32\FntCache.dll
11:16:32.0176 1092 FontCache - ok
11:16:32.0224 1092 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:16:32.0232 1092 FontCache3.0.0.0 - ok
11:16:32.0300 1092 FsDepends (d43703496149971890703b4b1b723eac) C:\windows\system32\drivers\FsDepends.sys
11:16:32.0310 1092 FsDepends - ok
11:16:32.0349 1092 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\windows\system32\drivers\Fs_Rec.sys
11:16:32.0359 1092 Fs_Rec - ok
11:16:32.0388 1092 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\windows\system32\DRIVERS\fvevol.sys
11:16:32.0405 1092 fvevol - ok
11:16:32.0428 1092 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\windows\system32\drivers\gagp30kx.sys
11:16:32.0439 1092 gagp30kx - ok
11:16:32.0502 1092 GamesAppService (c403c5db49a0f9aaf4f2128edc0106d8) C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
11:16:32.0524 1092 GamesAppService - ok
11:16:32.0559 1092 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\windows\system32\DRIVERS\GEARAspiWDM.sys
11:16:32.0567 1092 GEARAspiWDM - ok
11:16:32.0615 1092 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\windows\System32\gpsvc.dll
11:16:32.0672 1092 gpsvc - ok
11:16:32.0724 1092 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:16:32.0733 1092 gupdate - ok
11:16:32.0740 1092 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:16:32.0749 1092 gupdatem - ok
11:16:32.0773 1092 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
11:16:32.0783 1092 gusvc - ok
11:16:32.0808 1092 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\windows\system32\drivers\hcw85cir.sys
11:16:32.0833 1092 hcw85cir - ok
11:16:32.0876 1092 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\windows\system32\drivers\HdAudio.sys
11:16:32.0908 1092 HdAudAddService - ok
11:16:32.0928 1092 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\windows\system32\DRIVERS\HDAudBus.sys
11:16:32.0955 1092 HDAudBus - ok
11:16:32.0992 1092 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\windows\system32\drivers\HidBatt.sys
11:16:33.0015 1092 HidBatt - ok
11:16:33.0035 1092 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\windows\system32\drivers\hidbth.sys
11:16:33.0061 1092 HidBth - ok
11:16:33.0091 1092 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\windows\system32\drivers\hidir.sys
11:16:33.0117 1092 HidIr - ok
11:16:33.0148 1092 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\windows\system32\hidserv.dll
11:16:33.0196 1092 hidserv - ok
11:16:33.0232 1092 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\windows\system32\DRIVERS\hidusb.sys
11:16:33.0256 1092 HidUsb - ok
11:16:33.0285 1092 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\windows\system32\kmsvc.dll
11:16:33.0332 1092 hkmsvc - ok
11:16:33.0351 1092 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\windows\system32\ListSvc.dll
11:16:33.0377 1092 HomeGroupListener - ok
11:16:33.0405 1092 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\windows\system32\provsvc.dll
11:16:33.0429 1092 HomeGroupProvider - ok
11:16:33.0455 1092 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\windows\system32\drivers\HpSAMD.sys
11:16:33.0466 1092 HpSAMD - ok
11:16:33.0500 1092 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\windows\system32\drivers\HTTP.sys
11:16:33.0554 1092 HTTP - ok
11:16:33.0586 1092 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\windows\system32\drivers\hwpolicy.sys
11:16:33.0596 1092 hwpolicy - ok
11:16:33.0616 1092 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\windows\system32\DRIVERS\i8042prt.sys
11:16:33.0641 1092 i8042prt - ok
11:16:33.0682 1092 iaStor (d469b77687e12fe43e344806740b624d) C:\windows\system32\DRIVERS\iaStor.sys
11:16:33.0715 1092 iaStor - ok
11:16:33.0773 1092 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\windows\system32\drivers\iaStorV.sys
11:16:33.0790 1092 iaStorV - ok
11:16:33.0870 1092 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
11:16:33.0886 1092 IDriverT ( UnsignedFile.Multi.Generic ) - warning
11:16:33.0886 1092 IDriverT - detected UnsignedFile.Multi.Generic (1)
11:16:33.0979 1092 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:16:34.0001 1092 idsvc - ok
11:16:34.0517 1092 igfx (370c2a8629b30f910f740387795ddc6f) C:\windows\system32\DRIVERS\igdkmd64.sys
11:16:34.0683 1092 igfx - ok
11:16:34.0813 1092 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\windows\system32\drivers\iirsp.sys
11:16:34.0823 1092 iirsp - ok
11:16:34.0873 1092 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\windows\System32\ikeext.dll
11:16:34.0929 1092 IKEEXT - ok
11:16:34.0978 1092 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\windows\system32\DRIVERS\IntcDAud.sys
11:16:35.0002 1092 IntcDAud - ok
11:16:35.0031 1092 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\windows\system32\drivers\intelide.sys
11:16:35.0042 1092 intelide - ok
11:16:35.0058 1092 intelppm (ada036632c664caa754079041cf1f8c1) C:\windows\system32\DRIVERS\intelppm.sys
11:16:35.0085 1092 intelppm - ok
11:16:35.0108 1092 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\windows\system32\ipbusenum.dll
11:16:35.0157 1092 IPBusEnum - ok
11:16:35.0196 1092 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\windows\system32\DRIVERS\ipfltdrv.sys
11:16:35.0243 1092 IpFilterDriver - ok
11:16:35.0292 1092 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\windows\System32\iphlpsvc.dll
11:16:35.0345 1092 iphlpsvc - ok
11:16:35.0362 1092 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\windows\system32\drivers\IPMIDrv.sys
11:16:35.0386 1092 IPMIDRV - ok
11:16:35.0411 1092 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\windows\system32\drivers\ipnat.sys
11:16:35.0460 1092 IPNAT - ok
11:16:35.0545 1092 iPod Service (50d6ccc6ff5561f9f56946b3e6164fb8) C:\Program Files\iPod\bin\iPodService.exe
11:16:35.0580 1092 iPod Service - ok
11:16:35.0604 1092 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\windows\system32\drivers\irenum.sys
11:16:35.0633 1092 IRENUM - ok
11:16:35.0650 1092 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\windows\system32\drivers\isapnp.sys
11:16:35.0661 1092 isapnp - ok
11:16:35.0682 1092 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\windows\system32\drivers\msiscsi.sys
11:16:35.0696 1092 iScsiPrt - ok
11:16:35.0720 1092 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\windows\system32\DRIVERS\kbdclass.sys
11:16:35.0731 1092 kbdclass - ok
11:16:35.0766 1092 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\windows\system32\drivers\kbdhid.sys
11:16:35.0791 1092 kbdhid - ok
11:16:35.0816 1092 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:16:35.0840 1092 KeyIso - ok
11:16:35.0863 1092 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\windows\system32\Drivers\ksecdd.sys
11:16:35.0874 1092 KSecDD - ok
11:16:35.0901 1092 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\windows\system32\Drivers\ksecpkg.sys
11:16:35.0913 1092 KSecPkg - ok
11:16:35.0944 1092 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\windows\system32\drivers\ksthunk.sys
11:16:35.0992 1092 ksthunk - ok
11:16:36.0021 1092 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\windows\system32\msdtckrm.dll
11:16:36.0074 1092 KtmRm - ok
11:16:36.0113 1092 L1C (ebed8b3ff4a823c1a6eebeed7b29353f) C:\windows\system32\DRIVERS\L1C62x64.sys
11:16:36.0141 1092 L1C - ok
11:16:36.0174 1092 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\windows\system32\srvsvc.dll
11:16:36.0223 1092 LanmanServer - ok
11:16:36.0238 1092 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\windows\System32\wkssvc.dll
11:16:36.0290 1092 LanmanWorkstation - ok
11:16:36.0322 1092 lltdio (1538831cf8ad2979a04c423779465827) C:\windows\system32\DRIVERS\lltdio.sys
11:16:36.0369 1092 lltdio - ok
11:16:36.0407 1092 lltdsvc (c1185803384ab3feed115f79f109427f) C:\windows\System32\lltdsvc.dll
11:16:36.0459 1092 lltdsvc - ok
11:16:36.0480 1092 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\windows\System32\lmhsvc.dll
11:16:36.0528 1092 lmhosts - ok
11:16:36.0613 1092 LMS (2ed1786b7542cda261029f6b526edf44) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
11:16:36.0645 1092 LMS - ok
11:16:36.0674 1092 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\windows\system32\drivers\lsi_fc.sys
11:16:36.0685 1092 LSI_FC - ok
11:16:36.0725 1092 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\windows\system32\drivers\lsi_sas.sys
11:16:36.0736 1092 LSI_SAS - ok
11:16:36.0758 1092 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\windows\system32\drivers\lsi_sas2.sys
11:16:36.0768 1092 LSI_SAS2 - ok
11:16:36.0787 1092 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\windows\system32\drivers\lsi_scsi.sys
11:16:36.0799 1092 LSI_SCSI - ok
11:16:36.0820 1092 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\windows\system32\drivers\luafv.sys
11:16:36.0876 1092 luafv - ok
11:16:36.0913 1092 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\windows\system32\Mcx2Svc.dll
11:16:36.0939 1092 Mcx2Svc - ok
11:16:36.0965 1092 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\windows\system32\drivers\megasas.sys
11:16:36.0975 1092 megasas - ok
11:16:37.0003 1092 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\windows\system32\drivers\MegaSR.sys
11:16:37.0017 1092 MegaSR - ok
11:16:37.0042 1092 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\windows\system32\DRIVERS\HECIx64.sys
11:16:37.0063 1092 MEIx64 - ok
11:16:37.0094 1092 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\windows\system32\mmcss.dll
11:16:37.0143 1092 MMCSS - ok
11:16:37.0179 1092 Modem (800ba92f7010378b09f9ed9270f07137) C:\windows\system32\drivers\modem.sys
11:16:37.0227 1092 Modem - ok
11:16:37.0245 1092 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\windows\system32\DRIVERS\monitor.sys
11:16:37.0272 1092 monitor - ok
11:16:37.0302 1092 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\windows\system32\DRIVERS\mouclass.sys
11:16:37.0313 1092 mouclass - ok
11:16:37.0326 1092 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\windows\system32\DRIVERS\mouhid.sys
11:16:37.0356 1092 mouhid - ok
11:16:37.0385 1092 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\windows\system32\drivers\mountmgr.sys
11:16:37.0397 1092 mountmgr - ok
11:16:37.0449 1092 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:16:37.0459 1092 MozillaMaintenance - ok
11:16:37.0482 1092 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\windows\system32\drivers\mpio.sys
11:16:37.0494 1092 mpio - ok
11:16:37.0516 1092 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\windows\system32\drivers\mpsdrv.sys
11:16:37.0565 1092 mpsdrv - ok
11:16:37.0613 1092 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\windows\system32\mpssvc.dll
11:16:37.0670 1092 MpsSvc - ok
11:16:37.0693 1092 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\windows\system32\drivers\mrxdav.sys
11:16:37.0724 1092 MRxDAV - ok
11:16:37.0751 1092 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\windows\system32\DRIVERS\mrxsmb.sys
11:16:37.0775 1092 mrxsmb - ok
11:16:37.0799 1092 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\windows\system32\DRIVERS\mrxsmb10.sys
11:16:37.0826 1092 mrxsmb10 - ok
11:16:37.0844 1092 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\windows\system32\DRIVERS\mrxsmb20.sys
11:16:37.0868 1092 mrxsmb20 - ok
11:16:37.0902 1092 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\windows\system32\DRIVERS\msahci.sys
11:16:37.0912 1092 msahci - ok
11:16:37.0930 1092 msdsm (db801a638d011b9633829eb6f663c900) C:\windows\system32\drivers\msdsm.sys
11:16:37.0942 1092 msdsm - ok
11:16:37.0974 1092 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\windows\System32\msdtc.exe
11:16:38.0001 1092 MSDTC - ok
11:16:38.0035 1092 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\windows\system32\drivers\Msfs.sys
11:16:38.0083 1092 Msfs - ok
11:16:38.0104 1092 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\windows\System32\drivers\mshidkmdf.sys
11:16:38.0152 1092 mshidkmdf - ok
11:16:38.0168 1092 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\windows\system32\drivers\msisadrv.sys
11:16:38.0178 1092 msisadrv - ok
11:16:38.0229 1092 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\windows\system32\iscsiexe.dll
11:16:38.0279 1092 MSiSCSI - ok
11:16:38.0286 1092 msiserver - ok
11:16:38.0320 1092 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\windows\system32\drivers\MSKSSRV.sys
11:16:38.0368 1092 MSKSSRV - ok
11:16:38.0382 1092 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\windows\system32\drivers\MSPCLOCK.sys
11:16:38.0431 1092 MSPCLOCK - ok
11:16:38.0451 1092 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\windows\system32\drivers\MSPQM.sys
11:16:38.0499 1092 MSPQM - ok
11:16:38.0532 1092 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\windows\system32\drivers\MsRPC.sys
11:16:38.0548 1092 MsRPC - ok
11:16:38.0581 1092 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\windows\system32\DRIVERS\mssmbios.sys
11:16:38.0591 1092 mssmbios - ok
11:16:38.0605 1092 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\windows\system32\drivers\MSTEE.sys
11:16:38.0665 1092 MSTEE - ok
11:16:38.0687 1092 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\windows\system32\drivers\MTConfig.sys
11:16:38.0712 1092 MTConfig - ok
11:16:38.0735 1092 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\windows\system32\Drivers\mup.sys
11:16:38.0746 1092 Mup - ok
11:16:38.0789 1092 napagent (582ac6d9873e31dfa28a4547270862dd) C:\windows\system32\qagentRT.dll
11:16:38.0843 1092 napagent - ok
11:16:38.0871 1092 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\windows\system32\DRIVERS\nwifi.sys
11:16:38.0907 1092 NativeWifiP - ok
11:16:38.0953 1092 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\windows\system32\drivers\ndis.sys
11:16:38.0978 1092 NDIS - ok
11:16:38.0993 1092 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\windows\system32\DRIVERS\ndiscap.sys
11:16:39.0050 1092 NdisCap - ok
11:16:39.0068 1092 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\windows\system32\DRIVERS\ndistapi.sys
11:16:39.0116 1092 NdisTapi - ok
11:16:39.0141 1092 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\windows\system32\DRIVERS\ndisuio.sys
11:16:39.0189 1092 Ndisuio - ok
11:16:39.0209 1092 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\windows\system32\DRIVERS\ndiswan.sys
11:16:39.0258 1092 NdisWan - ok
11:16:39.0274 1092 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\windows\system32\drivers\NDProxy.sys
11:16:39.0321 1092 NDProxy - ok
11:16:39.0349 1092 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\windows\system32\DRIVERS\netbios.sys
11:16:39.0401 1092 NetBIOS - ok
11:16:39.0438 1092 NetBT (09594d1089c523423b32a4229263f068) C:\windows\system32\DRIVERS\netbt.sys
11:16:39.0488 1092 NetBT - ok
11:16:39.0516 1092 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:16:39.0541 1092 Netlogon - ok
11:16:39.0584 1092 Netman (847d3ae376c0817161a14a82c8922a9e) C:\windows\System32\netman.dll
11:16:39.0641 1092 Netman - ok
11:16:39.0667 1092 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\windows\System32\netprofm.dll
11:16:39.0721 1092 netprofm - ok
11:16:39.0777 1092 netr28ux (618c55b392238b9467f9113e13525c49) C:\windows\system32\DRIVERS\netr28ux.sys
11:16:39.0814 1092 netr28ux - ok
11:16:39.0883 1092 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:16:39.0893 1092 NetTcpPortSharing - ok
11:16:39.0925 1092 nfrd960 (77889813be4d166cdab78ddba990da92) C:\windows\system32\drivers\nfrd960.sys
11:16:39.0935 1092 nfrd960 - ok
11:16:39.0974 1092 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\windows\System32\nlasvc.dll
11:16:40.0026 1092 NlaSvc - ok
11:16:40.0068 1092 Norton PC Checkup Application Launcher - ok
11:16:40.0092 1092 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\windows\system32\drivers\Npfs.sys
11:16:40.0142 1092 Npfs - ok
11:16:40.0174 1092 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\windows\system32\nsisvc.dll
11:16:40.0224 1092 nsi - ok
11:16:40.0252 1092 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\windows\system32\drivers\nsiproxy.sys
11:16:40.0301 1092 nsiproxy - ok
11:16:40.0387 1092 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\windows\system32\drivers\Ntfs.sys
11:16:40.0423 1092 Ntfs - ok
11:16:40.0533 1092 Null (9899284589f75fa8724ff3d16aed75c1) C:\windows\system32\drivers\Null.sys
11:16:40.0582 1092 Null - ok
11:16:40.0607 1092 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\windows\system32\drivers\nvraid.sys
11:16:40.0619 1092 nvraid - ok
11:16:40.0650 1092 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\windows\system32\drivers\nvstor.sys
11:16:40.0662 1092 nvstor - ok
11:16:40.0693 1092 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\windows\system32\drivers\nv_agp.sys
11:16:40.0704 1092 nv_agp - ok
11:16:40.0728 1092 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\windows\system32\drivers\ohci1394.sys
11:16:40.0754 1092 ohci1394 - ok
11:16:40.0789 1092 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\windows\system32\pnrpsvc.dll
11:16:40.0818 1092 p2pimsvc - ok
11:16:40.0849 1092 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\windows\system32\p2psvc.dll
11:16:40.0879 1092 p2psvc - ok
11:16:40.0911 1092 Parport (0086431c29c35be1dbc43f52cc273887) C:\windows\system32\drivers\parport.sys
11:16:40.0939 1092 Parport - ok
11:16:40.0977 1092 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\windows\system32\drivers\partmgr.sys
11:16:40.0988 1092 partmgr - ok
11:16:41.0021 1092 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\windows\System32\pcasvc.dll
11:16:41.0055 1092 PcaSvc - ok
11:16:41.0066 1092 pccsmcfd - ok
11:16:41.0126 1092 PCCUJobMgr (2f86be1818c2d7ac90478e3323ee7fcb) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.10.26\ccSvcHst.exe
11:16:41.0156 1092 PCCUJobMgr - ok
11:16:41.0192 1092 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\windows\system32\drivers\pci.sys
11:16:41.0221 1092 pci - ok
11:16:41.0242 1092 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\windows\system32\DRIVERS\pciide.sys
11:16:41.0252 1092 pciide - ok
11:16:41.0273 1092 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\windows\system32\drivers\pcmcia.sys
11:16:41.0287 1092 pcmcia - ok
11:16:41.0316 1092 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\windows\system32\drivers\pcw.sys
11:16:41.0327 1092 pcw - ok
11:16:41.0360 1092 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\windows\system32\drivers\peauth.sys
11:16:41.0416 1092 PEAUTH - ok
11:16:41.0471 1092 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\windows\SysWow64\perfhost.exe
11:16:41.0498 1092 PerfHost - ok
11:16:41.0534 1092 PGEffect (91111cebbde8015e822c46120ed9537c) C:\windows\system32\DRIVERS\pgeffect.sys
11:16:41.0563 1092 PGEffect - ok
11:16:41.0644 1092 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\windows\system32\pla.dll
11:16:41.0712 1092 pla - ok
11:16:41.0755 1092 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\windows\system32\umpnpmgr.dll
11:16:41.0784 1092 PlugPlay - ok
11:16:41.0807 1092 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\windows\system32\pnrpauto.dll
11:16:41.0832 1092 PNRPAutoReg - ok
11:16:41.0856 1092 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\windows\system32\pnrpsvc.dll
11:16:41.0885 1092 PNRPsvc - ok
11:16:41.0923 1092 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\windows\System32\ipsecsvc.dll
11:16:41.0985 1092 PolicyAgent - ok
11:16:42.0018 1092 Power (6ba9d927dded70bd1a9caded45f8b184) C:\windows\system32\umpo.dll
11:16:42.0070 1092 Power - ok
11:16:42.0123 1092 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\windows\system32\DRIVERS\raspptp.sys
11:16:42.0172 1092 PptpMiniport - ok
11:16:42.0189 1092 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\windows\system32\drivers\processr.sys
11:16:42.0215 1092 Processor - ok
11:16:42.0250 1092 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\windows\system32\profsvc.dll
11:16:42.0301 1092 ProfSvc - ok
11:16:42.0327 1092 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:16:42.0353 1092 ProtectedStorage - ok
11:16:42.0393 1092 Psched (0557cf5a2556bd58e26384169d72438d) C:\windows\system32\DRIVERS\pacer.sys
11:16:42.0443 1092 Psched - ok
11:16:42.0476 1092 PTUMWBus (452c20382df763f966c12dc48259f34e) C:\windows\system32\DRIVERS\PTUMWBus.sys
11:16:42.0505 1092 PTUMWBus - ok
11:16:42.0517 1092 PTUMWCDF (3754c646bbdaedafc09f793c6b38e877) C:\windows\system32\DRIVERS\PTUMWCDF.sys
11:16:42.0547 1092 PTUMWCDF - ok
11:16:42.0562 1092 PTUMWFLT (ac86bb916fbea16b0005efc3ba3adb58) C:\windows\system32\DRIVERS\PTUMWFLT.sys
11:16:42.0591 1092 PTUMWFLT - ok
11:16:42.0615 1092 PTUMWMdm (cb146794bc3b96661a32cbd68673b479) C:\windows\system32\DRIVERS\PTUMWMdm.sys
11:16:42.0646 1092 PTUMWMdm - ok
11:16:42.0677 1092 PTUMWNET (329e77868a92bb6f97c119050d97e9ec) C:\windows\system32\DRIVERS\PTUMWNET.sys
11:16:42.0708 1092 PTUMWNET - ok
11:16:42.0730 1092 PTUMWVsp (4ffd7e6d2cb293849c1181d08717ea09) C:\windows\system32\DRIVERS\PTUMWVsp.sys
11:16:42.0761 1092 PTUMWVsp - ok
11:16:42.0789 1092 QIOMem (c8fcb4899f8b70cc34e0d9876a80963c) C:\windows\system32\DRIVERS\QIOMem.sys
11:16:42.0813 1092 QIOMem - ok
11:16:42.0888 1092 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\windows\system32\drivers\ql2300.sys
11:16:42.0922 1092 ql2300 - ok
11:16:43.0041 1092 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\windows\system32\drivers\ql40xx.sys
11:16:43.0053 1092 ql40xx - ok
11:16:43.0082 1092 QWAVE (906191634e99aea92c4816150bda3732) C:\windows\system32\qwave.dll
11:16:43.0116 1092 QWAVE - ok
11:16:43.0135 1092 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\windows\system32\drivers\qwavedrv.sys
11:16:43.0165 1092 QWAVEdrv - ok
11:16:43.0212 1092 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\windows\system32\DRIVERS\rasacd.sys
11:16:43.0267 1092 RasAcd - ok
11:16:43.0298 1092 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\windows\system32\DRIVERS\AgileVpn.sys
11:16:43.0348 1092 RasAgileVpn - ok
11:16:43.0374 1092 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\windows\System32\rasauto.dll
11:16:43.0425 1092 RasAuto - ok
11:16:43.0448 1092 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\windows\system32\DRIVERS\rasl2tp.sys
11:16:43.0497 1092 Rasl2tp - ok
11:16:43.0528 1092 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\windows\System32\rasmans.dll
11:16:43.0582 1092 RasMan - ok
11:16:43.0616 1092 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\windows\system32\DRIVERS\raspppoe.sys
11:16:43.0667 1092 RasPppoe - ok
11:16:43.0686 1092 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\windows\system32\DRIVERS\rassstp.sys
11:16:43.0737 1092 RasSstp - ok
11:16:43.0768 1092 rdbss (77f665941019a1594d887a74f301fa2f) C:\windows\system32\DRIVERS\rdbss.sys
11:16:43.0820 1092 rdbss - ok
11:16:43.0843 1092 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\windows\system32\drivers\rdpbus.sys
11:16:43.0872 1092 rdpbus - ok
11:16:43.0896 1092 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\windows\system32\DRIVERS\RDPCDD.sys
11:16:43.0945 1092 RDPCDD - ok
11:16:43.0968 1092 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\windows\system32\drivers\rdpencdd.sys
11:16:44.0019 1092 RDPENCDD - ok
11:16:44.0034 1092 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\windows\system32\drivers\rdprefmp.sys
11:16:44.0084 1092 RDPREFMP - ok
11:16:44.0112 1092 RDPWD (6d76e6433574b058adcb0c50df834492) C:\windows\system32\drivers\RDPWD.sys
11:16:44.0138 1092 RDPWD - ok
11:16:44.0174 1092 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\windows\system32\drivers\rdyboost.sys
11:16:44.0187 1092 rdyboost - ok
11:16:44.0215 1092 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\windows\System32\mprdim.dll
11:16:44.0267 1092 RemoteAccess - ok
11:16:44.0307 1092 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\windows\system32\regsvc.dll
11:16:44.0360 1092 RemoteRegistry - ok
11:16:44.0378 1092 RMCAST (caf88d6573d21cd2aa27001ddbfdc74d) C:\windows\system32\DRIVERS\RMCAST.sys
11:16:44.0427 1092 RMCAST - ok
11:16:44.0460 1092 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\windows\System32\RpcEpMap.dll
11:16:44.0512 1092 RpcEptMapper - ok
11:16:44.0536 1092 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\windows\system32\locator.exe
11:16:44.0564 1092 RpcLocator - ok
11:16:44.0598 1092 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\windows\system32\rpcss.dll
11:16:44.0654 1092 RpcSs - ok
11:16:44.0678 1092 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\windows\system32\DRIVERS\rspndr.sys
11:16:44.0729 1092 rspndr - ok
11:16:44.0762 1092 RSUSBSTOR (135a64530d7699ad48f29d73a658dd11) C:\windows\system32\Drivers\RtsUStor.sys
11:16:44.0799 1092 RSUSBSTOR - ok
11:16:44.0831 1092 RSUSBVSTOR (e54a5586a28d0630a79a68bbab84bfcf) C:\windows\system32\Drivers\RTSUVSTOR.sys
11:16:44.0865 1092 RSUSBVSTOR - ok
11:16:44.0923 1092 RTL8192Ce (64fdf4fe366ca42da2b7d9d424b6e39b) C:\windows\system32\DRIVERS\rtl8192Ce.sys
11:16:44.0970 1092 RTL8192Ce - ok
11:16:45.0021 1092 RTL8192su (3c85058541d55bfcefd9177a68a507c6) C:\windows\system32\DRIVERS\RTL8192su.sys
11:16:45.0058 1092 RTL8192su - ok
11:16:45.0083 1092 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:16:45.0110 1092 SamSs - ok
11:16:45.0144 1092 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\windows\system32\drivers\sbp2port.sys
11:16:45.0156 1092 sbp2port - ok
11:16:45.0199 1092 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\windows\System32\SCardSvr.dll
11:16:45.0252 1092 SCardSvr - ok
11:16:45.0272 1092 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\windows\system32\DRIVERS\scfilter.sys
11:16:45.0324 1092 scfilter - ok
11:16:45.0380 1092 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\windows\system32\schedsvc.dll
11:16:45.0442 1092 Schedule - ok
11:16:45.0468 1092 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\windows\System32\certprop.dll
11:16:45.0517 1092 SCPolicySvc - ok
11:16:45.0553 1092 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\windows\System32\SDRSVC.dll
11:16:45.0581 1092 SDRSVC - ok
11:16:45.0631 1092 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\windows\system32\drivers\secdrv.sys
11:16:45.0682 1092 secdrv - ok
11:16:45.0710 1092 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\windows\system32\seclogon.dll
11:16:45.0762 1092 seclogon - ok
11:16:45.0773 1092 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\windows\System32\sens.dll
11:16:45.0825 1092 SENS - ok
11:16:45.0842 1092 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\windows\system32\sensrsvc.dll
11:16:45.0869 1092 SensrSvc - ok
11:16:45.0904 1092 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\windows\system32\drivers\serenum.sys
11:16:45.0931 1092 Serenum - ok
11:16:45.0941 1092 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\windows\system32\drivers\serial.sys
11:16:45.0968 1092 Serial - ok
11:16:45.0976 1092 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\windows\system32\drivers\sermouse.sys
11:16:46.0003 1092 sermouse - ok
11:16:46.0044 1092 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\windows\system32\sessenv.dll
11:16:46.0095 1092 SessionEnv - ok
11:16:46.0107 1092 sffdisk (a554811bcd09279536440c964ae35bbf) C:\windows\system32\drivers\sffdisk.sys
11:16:46.0136 1092 sffdisk - ok
11:16:46.0164 1092 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\windows\system32\drivers\sffp_mmc.sys
11:16:46.0193 1092 sffp_mmc - ok
11:16:46.0200 1092 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\windows\system32\drivers\sffp_sd.sys
11:16:46.0230 1092 sffp_sd - ok
11:16:46.0237 1092 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\windows\system32\drivers\sfloppy.sys
11:16:46.0264 1092 sfloppy - ok
11:16:46.0304 1092 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\windows\System32\ipnathlp.dll
11:16:46.0358 1092 SharedAccess - ok
11:16:46.0397 1092 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\windows\System32\shsvcs.dll
11:16:46.0451 1092 ShellHWDetection - ok
11:16:46.0477 1092 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\windows\system32\drivers\SiSRaid2.sys
11:16:46.0487 1092 SiSRaid2 - ok
11:16:46.0527 1092 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\windows\system32\drivers\sisraid4.sys
11:16:46.0538 1092 SiSRaid4 - ok
11:16:46.0559 1092 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\windows\system32\DRIVERS\smb.sys
11:16:46.0613 1092 Smb - ok
11:16:46.0655 1092 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\windows\System32\snmptrap.exe
11:16:46.0684 1092 SNMPTRAP - ok
11:16:46.0707 1092 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\windows\system32\drivers\spldr.sys
11:16:46.0717 1092 spldr - ok
11:16:46.0752 1092 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\windows\System32\spoolsv.exe
11:16:46.0808 1092 Spooler - ok
11:16:46.0940 1092 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\windows\system32\sppsvc.exe
11:16:47.0031 1092 sppsvc - ok
11:16:47.0117 1092 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\windows\system32\sppuinotify.dll
11:16:47.0172 1092 sppuinotify - ok
11:16:47.0254 1092 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\windows\system32\DRIVERS\srv.sys
11:16:47.0285 1092 srv - ok
11:16:47.0315 1092 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\windows\system32\DRIVERS\srv2.sys
11:16:47.0345 1092 srv2 - ok
11:16:47.0384 1092 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\windows\system32\DRIVERS\VSTAZL6.SYS
11:16:47.0416 1092 SrvHsfHDA - ok
11:16:47.0472 1092 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\windows\system32\DRIVERS\VSTDPV6.SYS
11:16:47.0516 1092 SrvHsfV92 - ok
11:16:47.0637 1092 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\windows\system32\DRIVERS\VSTCNXT6.SYS
11:16:47.0675 1092 SrvHsfWinac - ok
11:16:47.0705 1092 srvnet (27e461f0be5bff5fc737328f749538c3) C:\windows\system32\DRIVERS\srvnet.sys
11:16:47.0732 1092 srvnet - ok
11:16:47.0762 1092 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\windows\System32\ssdpsrv.dll
11:16:47.0816 1092 SSDPSRV - ok
11:16:47.0832 1092 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\windows\system32\sstpsvc.dll
11:16:47.0886 1092 SstpSvc - ok
11:16:47.0911 1092 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\windows\system32\drivers\stexstor.sys
11:16:47.0937 1092 stexstor - ok
11:16:47.0985 1092 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\windows\System32\wiaservc.dll
11:16:48.0025 1092 stisvc - ok
11:16:48.0056 1092 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\windows\system32\DRIVERS\swenum.sys
11:16:48.0066 1092 swenum - ok
11:16:48.0107 1092 swprv (e08e46fdd841b7184194011ca1955a0b) C:\windows\System32\swprv.dll
11:16:48.0169 1092 swprv - ok
11:16:48.0238 1092 SynTP (f5b46df59feaa48a442aed7eeb754d4b) C:\windows\system32\DRIVERS\SynTP.sys
11:16:48.0291 1092 SynTP - ok
11:16:48.0444 1092 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\windows\system32\sysmain.dll
11:16:48.0497 1092 SysMain - ok
11:16:48.0588 1092 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\windows\System32\TabSvc.dll
11:16:48.0622 1092 TabletInputService - ok
11:16:48.0646 1092 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\windows\System32\tapisrv.dll
11:16:48.0704 1092 TapiSrv - ok
11:16:48.0735 1092 TBS (1be03ac720f4d302ea01d40f588162f6) C:\windows\System32\tbssvc.dll
11:16:48.0789 1092 TBS - ok
11:16:48.0908 1092 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\windows\system32\drivers\tcpip.sys
11:16:48.0968 1092 Tcpip - ok
11:16:49.0227 1092 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\windows\system32\DRIVERS\tcpip.sys
11:16:49.0284 1092 TCPIP6 - ok
11:16:49.0379 1092 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\windows\system32\drivers\tcpipreg.sys
11:16:49.0429 1092 tcpipreg - ok
11:16:49.0458 1092 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\windows\system32\DRIVERS\tdcmdpst.sys
11:16:49.0489 1092 tdcmdpst - ok
11:16:49.0526 1092 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\windows\system32\drivers\tdpipe.sys
11:16:49.0553 1092 TDPIPE - ok
11:16:49.0585 1092 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\windows\system32\drivers\tdtcp.sys
11:16:49.0612 1092 TDTCP - ok
11:16:49.0641 1092 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\windows\system32\DRIVERS\tdx.sys
11:16:49.0696 1092 tdx - ok
11:16:49.0712 1092 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\windows\system32\DRIVERS\termdd.sys
11:16:49.0723 1092 TermDD - ok
11:16:49.0770 1092 TermService (2e648163254233755035b46dd7b89123) C:\windows\System32\termsrv.dll
11:16:49.0828 1092 TermService - ok
11:16:49.0853 1092 Themes (f0344071948d1a1fa732231785a0664c) C:\windows\system32\themeservice.dll
11:16:49.0887 1092 Themes - ok
11:16:49.0917 1092 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\windows\system32\mmcss.dll
11:16:49.0969 1092 THREADORDER - ok
11:16:50.0055 1092 TMachInfo (f120967184a27e927052e8ddbb727851) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
11:16:50.0063 1092 TMachInfo - ok
11:16:50.0094 1092 TODDSrv (8e2c799d3476eac32c3ba0df7ce6af19) C:\Windows\system32\TODDSrv.exe
11:16:50.0104 1092 TODDSrv - ok
11:16:50.0183 1092 TosCoSrv (cdc97fa5c42b07fb0d4600e17c32f582) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
11:16:50.0216 1092 TosCoSrv - ok
11:16:50.0284 1092 TOSHIBA eco Utility Service (d0f868a67cb4d817a3f7abef8c42f49c) C:\Program Files\TOSHIBA\TECO\TecoService.exe
11:16:50.0295 1092 TOSHIBA eco Utility Service - ok
11:16:50.0343 1092 TOSHIBA HDD SSD Alert Service (edb4b432db13ea3d1eb2356310d33263) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
11:16:50.0352 1092 TOSHIBA HDD SSD Alert Service - ok
11:16:50.0416 1092 tos_sps64 (09ff7b0b1b5c3d225495cb6f5a9b39f8) C:\windows\system32\DRIVERS\tos_sps64.sys
11:16:50.0454 1092 tos_sps64 - ok
11:16:50.0524 1092 TPCHSrv (d65c6b0c070534336b72005391b6168a) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
11:16:50.0560 1092 TPCHSrv - ok
11:16:50.0653 1092 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\windows\System32\trkwks.dll
11:16:50.0707 1092 TrkWks - ok
11:16:50.0752 1092 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\windows\servicing\TrustedInstaller.exe
11:16:50.0788 1092 TrustedInstaller - ok
11:16:50.0817 1092 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\windows\system32\DRIVERS\tssecsrv.sys
11:16:50.0853 1092 tssecsrv - ok
11:16:50.0879 1092 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\windows\system32\drivers\tsusbflt.sys
11:16:50.0905 1092 TsUsbFlt - ok
11:16:50.0925 1092 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\windows\system32\drivers\TsUsbGD.sys
11:16:50.0952 1092 TsUsbGD - ok
11:16:51.0103 1092 TuneUp.UtilitiesSvc (dafeee8f55e0fa1567e734299ac0af06) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
11:16:51.0161 1092 TuneUp.UtilitiesSvc - ok
11:16:51.0252 1092 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
11:16:51.0283 1092 TuneUpUtilitiesDrv - ok
11:16:51.0394 1092 tunnel (3566a8daafa27af944f5d705eaa64894) C:\windows\system32\DRIVERS\tunnel.sys
11:16:51.0445 1092 tunnel - ok
11:16:51.0480 1092 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\windows\system32\DRIVERS\TVALZ_O.SYS
11:16:51.0515 1092 TVALZ - ok
11:16:51.0553 1092 TVALZFL (9c7191f4b2e49bff47a6c1144b5923fa) C:\windows\system32\DRIVERS\TVALZFL.sys
11:16:51.0587 1092 TVALZFL - ok
11:16:51.0610 1092 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\windows\system32\drivers\uagp35.sys
11:16:51.0621 1092 uagp35 - ok
11:16:51.0662 1092 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\windows\system32\DRIVERS\udfs.sys
11:16:51.0716 1092 udfs - ok
11:16:51.0749 1092 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\windows\system32\UI0Detect.exe
11:16:51.0779 1092 UI0Detect - ok
11:16:51.0800 1092 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\windows\system32\drivers\uliagpkx.sys
11:16:51.0828 1092 uliagpkx - ok
11:16:51.0850 1092 umbus (dc54a574663a895c8763af0fa1ff7561) C:\windows\system32\DRIVERS\umbus.sys
11:16:51.0879 1092 umbus - ok
11:16:51.0891 1092 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\windows\system32\drivers\umpass.sys
11:16:51.0920 1092 UmPass - ok
11:16:52.0077 1092 UNS (7e5e1603d0ff2d240ae70295c5c3fefc) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
11:16:52.0150 1092 UNS - ok
11:16:52.0256 1092 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\windows\System32\upnphost.dll
11:16:52.0313 1092 upnphost - ok
11:16:52.0376 1092 USBAAPL64 (fb251567f41bc61988b26731dec19e4b) C:\windows\system32\Drivers\usbaapl64.sys
11:16:52.0402 1092 USBAAPL64 - ok
11:16:52.0441 1092 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\windows\system32\DRIVERS\usbccgp.sys
11:16:52.0469 1092 usbccgp - ok
11:16:52.0502 1092 usbcir (af0892a803fdda7492f595368e3b68e7) C:\windows\system32\drivers\usbcir.sys
11:16:52.0534 1092 usbcir - ok
11:16:52.0568 1092 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\windows\system32\drivers\usbehci.sys
11:16:52.0596 1092 usbehci - ok
11:16:52.0619 1092 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\windows\system32\DRIVERS\usbhub.sys
11:16:52.0650 1092 usbhub - ok
11:16:52.0666 1092 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\windows\system32\drivers\usbohci.sys
11:16:52.0694 1092 usbohci - ok
11:16:52.0728 1092 usbprint (73188f58fb384e75c4063d29413cee3d) C:\windows\system32\DRIVERS\usbprint.sys
11:16:52.0762 1092 usbprint - ok
11:16:52.0796 1092 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\windows\system32\drivers\usbser.sys
11:16:52.0824 1092 usbser - ok
11:16:52.0860 1092 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\windows\system32\DRIVERS\USBSTOR.SYS
11:16:52.0887 1092 USBSTOR - ok
11:16:52.0903 1092 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\windows\system32\drivers\usbuhci.sys
11:16:52.0931 1092 usbuhci - ok
11:16:52.0955 1092 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\windows\system32\Drivers\usbvideo.sys
11:16:52.0989 1092 usbvideo - ok
11:16:53.0015 1092 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\windows\System32\uxsms.dll
11:16:53.0069 1092 UxSms - ok
11:16:53.0094 1092 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\windows\system32\lsass.exe
11:16:53.0122 1092 VaultSvc - ok
11:16:53.0135 1092 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\windows\system32\drivers\vdrvroot.sys
11:16:53.0145 1092 vdrvroot - ok
11:16:53.0191 1092 vds (8d6b481601d01a456e75c3210f1830be) C:\windows\System32\vds.exe
11:16:53.0249 1092 vds - ok
11:16:53.0285 1092 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\windows\system32\DRIVERS\vgapnp.sys
11:16:53.0315 1092 vga - ok
11:16:53.0330 1092 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\windows\System32\drivers\vga.sys
11:16:53.0383 1092 VgaSave - ok
11:16:53.0410 1092 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\windows\system32\drivers\vhdmp.sys
11:16:53.0423 1092 vhdmp - ok
11:16:53.0445 1092 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\windows\system32\drivers\viaide.sys
11:16:53.0455 1092 viaide - ok
11:16:53.0492 1092 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\windows\system32\drivers\volmgr.sys
11:16:53.0503 1092 volmgr - ok
11:16:53.0530 1092 volmgrx (a255814907c89be58b79ef2f189b843b) C:\windows\system32\drivers\volmgrx.sys
11:16:53.0545 1092 volmgrx - ok
11:16:53.0590 1092 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\windows\system32\drivers\volsnap.sys
11:16:53.0605 1092 volsnap - ok
11:16:53.0642 1092 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\windows\system32\drivers\vsmraid.sys
11:16:53.0655 1092 vsmraid - ok
11:16:53.0724 1092 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\windows\system32\vssvc.exe
11:16:53.0798 1092 VSS - ok
11:16:53.0925 1092 vToolbarUpdater10.2.0 (3080f1f093869a19fb3d1f0226c73809) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
11:16:53.0947 1092 vToolbarUpdater10.2.0 - ok
11:16:54.0058 1092 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\windows\system32\DRIVERS\vwifibus.sys
11:16:54.0089 1092 vwifibus - ok
11:16:54.0107 1092 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\windows\system32\DRIVERS\vwififlt.sys
11:16:54.0141 1092 vwififlt - ok
11:16:54.0158 1092 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\windows\system32\DRIVERS\vwifimp.sys
11:16:54.0192 1092 vwifimp - ok
11:16:54.0222 1092 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\windows\system32\w32time.dll
11:16:54.0280 1092 W32Time - ok
11:16:54.0336 1092 W3SVC (b32009db1972e7f2c227499289c4384a) C:\windows\system32\inetsrv\iisw3adm.dll
11:16:54.0369 1092 W3SVC - ok
11:16:54.0404 1092 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\windows\system32\drivers\wacompen.sys
11:16:54.0433 1092 WacomPen - ok
11:16:54.0452 1092 WANARP (356afd78a6ed4457169241ac3965230c) C:\windows\system32\DRIVERS\wanarp.sys
11:16:54.0504 1092 WANARP - ok
11:16:54.0510 1092 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\windows\system32\DRIVERS\wanarp.sys
11:16:54.0562 1092 Wanarpv6 - ok
11:16:54.0572 1092 WAS (b32009db1972e7f2c227499289c4384a) C:\windows\system32\inetsrv\iisw3adm.dll
11:16:54.0610 1092 WAS - ok
11:16:54.0689 1092 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\windows\system32\Wat\WatAdminSvc.exe
11:16:54.0719 1092 WatAdminSvc - ok
11:16:54.0799 1092 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\windows\system32\wbengine.exe
11:16:54.0849 1092 wbengine - ok
11:16:54.0942 1092 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\windows\System32\wbiosrvc.dll
11:16:54.0979 1092 WbioSrvc - ok
11:16:55.0009 1092 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\windows\System32\wcncsvc.dll
11:16:55.0047 1092 wcncsvc - ok
11:16:55.0069 1092 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\windows\System32\WcsPlugInService.dll
11:16:55.0102 1092 WcsPlugInService - ok
11:16:55.0160 1092 Wd (72889e16ff12ba0f235467d6091b17dc) C:\windows\system32\drivers\wd.sys
11:16:55.0187 1092 Wd - ok
11:16:55.0227 1092 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\windows\system32\drivers\Wdf01000.sys
11:16:55.0247 1092 Wdf01000 - ok
11:16:55.0272 1092 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\windows\system32\wdi.dll
11:16:55.0310 1092 WdiServiceHost - ok
11:16:55.0317 1092 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\windows\system32\wdi.dll
11:16:55.0358 1092 WdiSystemHost - ok
11:16:55.0385 1092 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\windows\System32\webclnt.dll
11:16:55.0423 1092 WebClient - ok
11:16:55.0447 1092 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\windows\system32\wecsvc.dll
11:16:55.0503 1092 Wecsvc - ok
11:16:55.0525 1092 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\windows\System32\wercplsupport.dll
11:16:55.0581 1092 wercplsupport - ok
11:16:55.0597 1092 WerSvc (6d137963730144698cbd10f202e9f251) C:\windows\System32\WerSvc.dll
11:16:55.0653 1092 WerSvc - ok
11:16:55.0701 1092 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\windows\system32\DRIVERS\wfplwf.sys
11:16:55.0754 1092 WfpLwf - ok
11:16:55.0771 1092 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\windows\system32\drivers\wimmount.sys
11:16:55.0781 1092 WIMMount - ok
11:16:55.0828 1092 WinDefend - ok
11:16:55.0838 1092 WinHttpAutoProxySvc - ok
11:16:55.0890 1092 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\windows\system32\wbem\WMIsvc.dll
11:16:55.0946 1092 Winmgmt - ok
11:16:56.0039 1092 WinRM (bcb1310604aa415c4508708975b3931e) C:\windows\system32\WsmSvc.dll
11:16:56.0118 1092 WinRM - ok
11:16:56.0242 1092 WinUsb (fe88b288356e7b47b74b13372add906d) C:\windows\system32\DRIVERS\WinUsb.sys
11:16:56.0273 1092 WinUsb - ok
11:16:56.0329 1092 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\windows\System32\wlansvc.dll
11:16:56.0377 1092 Wlansvc - ok
11:16:56.0444 1092 WlanWpsSvc (c71ee856c4f5b52e2d094f494cee4936) C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe
11:16:56.0467 1092 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - warning
11:16:56.0467 1092 WlanWpsSvc - detected UnsignedFile.Multi.Generic (1)
11:16:56.0532 1092 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
11:16:56.0541 1092 wlcrasvc - ok
11:16:56.0689 1092 wlidsvc (7e47c328fc4768cb8beafbcfafa70362) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
11:16:56.0752 1092 wlidsvc - ok
11:16:56.0842 1092 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\windows\system32\DRIVERS\wmiacpi.sys
11:16:56.0874 1092 WmiAcpi - ok
11:16:56.0944 1092 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\windows\system32\wbem\WmiApSrv.exe
11:16:56.0975 1092 wmiApSrv - ok
11:16:57.0015 1092 WMPNetworkSvc - ok
11:16:57.0052 1092 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\windows\System32\wpcsvc.dll
11:16:57.0082 1092 WPCSvc - ok
11:16:57.0110 1092 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\windows\system32\wpdbusenum.dll
11:16:57.0142 1092 WPDBusEnum - ok
11:16:57.0162 1092 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\windows\system32\drivers\ws2ifsl.sys
11:16:57.0215 1092 ws2ifsl - ok
11:16:57.0238 1092 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\windows\System32\wscsvc.dll
11:16:57.0275 1092 wscsvc - ok
11:16:57.0281 1092 WSearch - ok
11:16:57.0376 1092 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\windows\system32\wuaueng.dll
11:16:57.0457 1092 wuauserv - ok
11:16:57.0559 1092 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\windows\system32\drivers\WudfPf.sys
11:16:57.0613 1092 WudfPf - ok
11:16:57.0637 1092 WUDFRd (cf8d590be3373029d57af80914190682) C:\windows\system32\DRIVERS\WUDFRd.sys
11:16:57.0691 1092 WUDFRd - ok
11:16:57.0720 1092 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\windows\System32\WUDFSvc.dll
11:16:57.0774 1092 wudfsvc - ok
11:16:57.0796 1092 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\windows\System32\wwansvc.dll
11:16:57.0834 1092 WwanSvc - ok
11:16:57.0908 1092 MBR (0x1B8) (5b5e648d12fcadc244c1ec30318e1eb9) \Device\Harddisk0\DR0
11:16:58.0896 1092 \Device\Harddisk0\DR0 - ok
11:16:59.0773 1092 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk1\DR1
11:16:59.0923 1092 \Device\Harddisk1\DR1 - ok
11:16:59.0937 1092 Boot (0x1200) (4eb1e2b90bed742042faa8a67b61b3ec) \Device\Harddisk0\DR0\Partition0
11:16:59.0938 1092 \Device\Harddisk0\DR0\Partition0 - ok
11:16:59.0945 1092 Boot (0x1200) (60125af47915005e0524c7c09c176b90) \Device\Harddisk1\DR1\Partition0
11:16:59.0946 1092 \Device\Harddisk1\DR1\Partition0 - ok
11:16:59.0948 1092 ============================================================
11:16:59.0948 1092 Scan finished
11:16:59.0948 1092 ============================================================
11:16:59.0957 4724 Detected object count: 2
11:16:59.0957 4724 Actual detected object count: 2
11:46:18.0708 4724 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
11:46:18.0708 4724 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:46:18.0710 4724 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - skipped by user
11:46:18.0710 4724 WlanWpsSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
  • 0

#11
blmadara

blmadara

    Trusted Helper

  • Malware Removal
  • 767 posts
Please post the Combofix log and let me know what problems remain.
  • 0

#12
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
sorry about that for a time i couldn't get back online at all.

It turns out Cricket was having problems so i'll do and send the combofix now
  • 0

#13
sharokc

sharokc

    Member

  • Topic Starter
  • Member
  • PipPip
  • 72 posts
turns out i ran the combofix prior to my server being offline so here it is.

and my compouter is running faster however i have a problem with firefox. it keeps having a bar across the top that says i need plug ins. when i try to get them it says i don't need them but the bar won't go away.

can you help with that?


ComboFix 12-08-07.03 - me 08/07/2012 13:56:12.2.1 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4044.2822 [GMT -5:00]
Running from: c:\users\me\Downloads\ComboFix.exe
AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\SysWow64\netwrp.dll
.
.
((((((((((((((((((((((((( Files Created from 2012-07-07 to 2012-08-07 )))))))))))))))))))))))))))))))
.
.
2012-08-07 19:05 . 2012-08-07 19:05 20 ----a-w- c:\windows\SysWow64\AXXT32.DLL
2012-08-07 19:04 . 2012-08-07 19:04 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-08-07 19:04 . 2012-08-07 19:04 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2012-08-07 19:04 . 2012-08-07 19:04 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-07-22 22:04 . 2012-08-07 08:51 -------- d-----w- c:\users\DefaultAppPool.IIS APPPOOL
2012-07-17 15:41 . 2012-06-06 06:06 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-07-17 15:41 . 2012-06-06 06:06 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-07-17 15:41 . 2012-06-06 05:05 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-07-17 15:41 . 2012-06-06 05:05 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-07-17 15:41 . 2010-06-26 03:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2012-07-17 15:41 . 2010-06-26 03:24 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
2012-07-17 15:26 . 2012-06-02 05:50 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-07-17 15:26 . 2012-06-02 05:48 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-07-17 15:26 . 2012-06-02 05:45 340992 ----a-w- c:\windows\system32\schannel.dll
2012-07-17 15:26 . 2012-06-02 05:44 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-07-17 15:26 . 2012-06-02 04:39 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-07-17 15:26 . 2012-06-02 05:48 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-07-17 15:26 . 2012-06-02 04:40 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-07-17 15:26 . 2012-06-02 04:40 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-07-17 15:26 . 2012-06-02 04:34 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
2012-07-16 19:01 . 2012-06-09 05:43 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-07-15 22:20 . 2012-06-12 03:08 3148800 ----a-w- c:\windows\system32\win32k.sys
2012-07-11 23:13 . 2012-07-14 16:51 -------- d-----w- c:\users\me\AppData\Roaming\PCCUStubInstaller
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-04 01:06 . 2012-03-06 21:57 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2012-08-04 01:05 . 2012-03-06 21:57 4283672 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-08-04 00:59 . 2012-03-06 21:57 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-07-25 04:40 . 2012-03-09 17:05 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-2\Microsoft.MediaCenter.Sports.UI.dll
2012-07-22 11:47 . 2012-03-09 16:54 4283672 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2012-07-22 11:31 . 2012-03-09 16:54 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2012-07-22 11:11 . 2012-03-06 21:56 539984 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-07-19 16:17 . 2012-03-12 07:44 539984 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-07-15 22:16 . 2012-02-23 16:22 59701280 ----a-w- c:\windows\system32\MRT.exe
2012-06-02 22:19 . 2012-06-19 00:54 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 00:56 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 00:56 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 00:56 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 00:54 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 00:56 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 00:54 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 20:19 . 2012-06-19 00:53 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 20:15 . 2012-06-19 00:53 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-05-15 04:01 . 2012-06-27 12:55 1188864 ----a-w- c:\windows\system32\wininet.dll
2012-05-15 03:59 . 2012-06-27 12:55 64512 ----a-w- c:\windows\system32\jsproxy.dll
2012-05-15 03:03 . 2012-06-27 12:55 981504 ----a-w- c:\windows\SysWow64\wininet.dll
2012-05-11 12:34 . 2012-05-11 12:34 203320 ----a-w- c:\windows\system32\drivers\ssudmdm.sys
2012-05-11 12:34 . 2012-05-11 12:34 99384 ----a-w- c:\windows\system32\drivers\ssudbus.sys
.
.
((((((((((((((((((((((((((((( SnapShot@2012-06-03_17.22.11 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-04-24 15:34 . 2010-02-08 16:00 73728 c:\windows\twain_32\MP280 series\SG_JPN.dll
+ 2012-04-24 15:34 . 2009-07-08 15:58 86016 c:\windows\twain_32\MP280 series\rstcol.dll
+ 2012-04-24 15:34 . 2009-09-15 19:13 98304 c:\windows\twain_32\MP280 series\MC2Plus.dll
+ 2012-04-24 15:34 . 2007-12-06 18:46 73728 c:\windows\twain_32\MP280 series\IJFSHLIB.dll
+ 2012-04-24 15:34 . 2007-11-09 13:48 53248 c:\windows\twain_32\MP280 series\HSL.DLL
+ 2012-04-24 15:34 . 2008-11-19 18:31 73728 c:\windows\twain_32\MP280 series\DDT.dll
+ 2012-04-24 15:34 . 2010-01-13 19:03 94208 c:\windows\twain_32\MP280 series\cncisco3.dll
+ 2012-04-24 15:34 . 2010-02-10 20:03 30720 c:\windows\twain_32\MP280 series\CNC280.DAT
+ 2012-04-24 15:34 . 2005-04-15 20:34 57344 c:\windows\twain_32\MP280 series\BaLCo.dll
+ 2012-05-02 14:35 . 2012-06-07 13:35 65536 c:\windows\tracing\RASMBMGR.BIN
- 2012-05-02 14:35 . 2012-05-02 16:28 65536 c:\windows\tracing\RASMBMGR.BIN
+ 2012-05-02 14:35 . 2012-06-07 13:35 65536 c:\windows\tracing\RASL2TP.BIN
- 2012-05-02 14:35 . 2012-05-02 16:28 65536 c:\windows\tracing\RASL2TP.BIN
+ 2012-05-02 14:35 . 2012-06-07 13:35 65536 c:\windows\tracing\IPSEC.BIN
- 2012-05-02 14:35 . 2012-05-02 16:28 65536 c:\windows\tracing\IPSEC.BIN
+ 1999-11-24 23:40 . 1999-11-24 23:40 40960 c:\windows\SysWOW64\VBAME.DLL
+ 1998-03-25 02:54 . 1998-03-25 02:54 15872 c:\windows\SysWOW64\SCP32.DLL
+ 1998-09-29 21:43 . 1998-09-29 21:43 45056 c:\windows\SysWOW64\PUBDLG.DLL
+ 1998-08-09 16:07 . 1998-08-09 16:07 94208 c:\windows\SysWOW64\MSSTKPRP.DLL
+ 2012-06-27 12:55 . 2012-04-20 04:57 67584 c:\windows\SysWOW64\mshtmled.dll
+ 2012-06-27 12:55 . 2012-05-15 03:03 68608 c:\windows\SysWOW64\migration\WininetPlugin.dll
- 2012-04-17 15:33 . 2012-02-28 05:38 68608 c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 1998-06-18 00:08 . 1998-06-18 00:08 53248 c:\windows\SysWOW64\MFC42ENU.DLL
+ 2012-06-27 12:55 . 2012-05-15 03:00 48128 c:\windows\SysWOW64\jsproxy.dll
- 2012-04-17 15:33 . 2012-02-28 05:34 48128 c:\windows\SysWOW64\jsproxy.dll
+ 2006-10-26 19:10 . 2006-10-26 19:10 33088 c:\windows\SysWOW64\FM20ENU.DLL
- 2009-07-14 04:54 . 2012-06-03 14:36 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-08-07 16:53 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-06-03 14:36 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2012-08-01 14:18 . 2012-08-07 16:53 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-07 16:53 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-06-03 14:36 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-04-24 15:34 . 2008-08-25 23:02 15872 c:\windows\SysWOW64\CNHMCA.dll
+ 2004-01-29 14:08 . 2004-01-29 14:08 32768 c:\windows\SysWOW64\ATHPRXY.DLL
+ 2010-11-21 03:09 . 2012-08-07 18:39 63714 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-07 18:39 40132 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2012-06-09 17:37 . 2009-02-27 08:42 66440 c:\windows\system32\spool\drivers\x64\msonpui.dll
+ 2012-06-08 05:32 . 2007-04-09 18:23 46472 c:\windows\system32\spool\drivers\x64\mdiui.dll
- 2012-03-19 07:29 . 2012-01-25 06:38 77312 c:\windows\system32\rdpwsx.dll
+ 2012-06-27 12:55 . 2012-04-26 05:41 77312 c:\windows\system32\rdpwsx.dll
+ 2012-06-27 12:55 . 2012-04-20 05:42 97792 c:\windows\system32\mshtmled.dll
- 2012-04-17 15:33 . 2012-02-28 06:39 95232 c:\windows\system32\migration\WininetPlugin.dll
+ 2012-06-27 12:55 . 2012-05-15 04:01 95232 c:\windows\system32\migration\WininetPlugin.dll
+ 2009-07-14 05:30 . 2012-07-25 20:47 86016 c:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2012-04-30 21:30 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2012-05-11 12:34 . 2012-05-11 12:34 99384 c:\windows\system32\DriverStore\FileRepository\ssudbus.inf_amd64_neutral_a9a6529387fcf29e\amd64\ssudbus.sys
+ 2009-07-14 00:35 . 2009-07-14 00:35 41984 c:\windows\system32\drivers\usbscan.sys
+ 2011-12-23 23:44 . 2012-08-07 18:40 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2011-12-23 23:44 . 2012-06-03 16:07 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2011-12-23 23:44 . 2012-06-03 16:07 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2011-12-23 23:44 . 2012-08-07 18:40 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-07 18:40 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-06-03 16:07 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-04-24 15:34 . 2008-08-25 23:02 17920 c:\windows\system32\CNHMCA6.dll
- 2012-01-02 01:44 . 2012-06-03 16:07 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2012-01-02 01:44 . 2012-08-07 18:40 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:46 . 2012-05-23 19:03 96280 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2009-07-14 04:46 . 2012-07-29 04:03 96280 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2012-01-02 01:44 . 2012-08-07 18:40 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2012-01-02 01:44 . 2012-06-03 16:07 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2012-01-02 01:44 . 2012-08-07 18:40 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2012-01-02 01:44 . 2012-06-03 16:07 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2011-12-24 00:52 . 2012-06-03 17:22 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2011-12-24 00:52 . 2012-08-07 18:40 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2011-12-24 00:52 . 2012-08-07 18:40 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2011-12-24 00:52 . 2012-06-03 17:22 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2012-05-24 11:32 . 2012-05-24 11:32 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2012-05-24 11:31 . 2012-05-24 11:31 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2011-05-24 21:27 . 2011-05-24 21:27 60928 c:\windows\Installer\8f5a871.msp
+ 2012-07-16 19:27 . 2012-07-16 19:27 25600 c:\windows\Installer\48a1be6.msi
+ 2011-03-18 01:00 . 2011-03-18 01:00 90624 c:\windows\Installer\330fcd4.msp
+ 2012-06-08 05:31 . 2012-07-19 15:14 23040 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\unbndico.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 61440 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 27136 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 11264 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 86016 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 12288 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2012-06-09 17:37 . 2012-07-15 22:18 35088 c:\windows\Installer\{91120000-00A1-0000-0000-0000000FF1CE}\oisicon.exe
+ 2012-06-09 17:37 . 2012-07-15 22:18 18704 c:\windows\Installer\{91120000-00A1-0000-0000-0000000FF1CE}\mspicons.exe
+ 2012-06-09 17:37 . 2012-07-15 22:18 20240 c:\windows\Installer\{91120000-00A1-0000-0000-0000000FF1CE}\cagicon.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 12800 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\pubs.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 16384 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 34304 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2012-04-09 18:51 . 2012-04-09 18:51 77824 c:\windows\Installer\$PatchCache$\Managed\C4FC0F3CC8A01F245A58E27F88D60693\4.3.0\dnssd.dll
+ 2003-05-09 02:54 . 2003-05-09 02:54 77824 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\REFEDIT.DLL
+ 2001-02-13 05:23 . 2001-02-13 05:23 58784 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSOSV.DLL
+ 2000-10-23 21:18 . 2000-10-23 21:18 34200 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSOEURO.DLL
+ 2001-01-11 07:05 . 2001-01-11 07:05 12288 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\CAGCAT10.DLL
+ 2007-03-23 00:07 . 2007-03-23 00:07 78168 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\RM.DLL
+ 2007-03-23 00:07 . 2007-03-23 00:07 41824 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\RECALL.DLL
+ 2007-03-23 00:05 . 2007-03-23 00:05 97632 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\PP7X32.DLL
+ 2007-04-19 18:53 . 2007-04-19 18:53 69984 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLRPC.DLL
+ 2001-06-05 13:13 . 2001-06-05 13:13 40972 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OCRVC.DAT
+ 2001-10-23 05:13 . 2001-10-23 05:13 53260 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OCRHC.DAT
+ 2001-06-05 13:13 . 2001-06-05 13:13 65536 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\LOOKUP.DAT
+ 2001-06-05 13:13 . 2001-06-05 13:13 18844 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\JFONT.DAT
+ 2007-03-23 00:13 . 2007-03-23 00:13 23904 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\IPDMCTRL.DLL
+ 2001-06-05 13:13 . 2001-06-05 13:13 34168 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\ENGIDX.DAT
+ 2007-03-23 00:07 . 2007-03-23 00:07 80224 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\DLGSETP.DLL
+ 2007-03-23 00:07 . 2007-03-23 00:07 91488 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\ADDRPARS.DLL
+ 2003-01-17 19:03 . 2003-01-17 19:03 59466 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\XSCAN32.DAT
+ 1999-12-10 02:21 . 1999-12-10 02:21 32768 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\XLCALL32.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 64088 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\VBIDEPIA.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 59960 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\UNBIND.EXE
+ 2002-10-07 14:49 . 2002-10-07 14:49 81983 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWRECS.DLL
+ 2003-07-15 04:00 . 2003-07-15 04:00 99904 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TRANSMGR.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 11848 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SMARTTAGINSTALL.EXE
+ 2003-07-15 03:57 . 2003-07-15 03:57 58944 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SEQCHK10.DLL
+ 2003-07-15 03:44 . 2003-07-15 03:44 66616 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SENDTO.DLL
+ 2003-07-15 03:43 . 2003-07-15 03:43 74288 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\RM.DLL
+ 2002-10-07 14:49 . 2002-10-07 14:49 81984 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\REVERSE.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 40512 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\REFIEBAR.DLL
+ 2003-05-09 02:54 . 2003-05-09 02:54 77824 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\REFEDIT.DLL
+ 2003-07-15 03:42 . 2003-07-15 03:42 37432 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\RECALL.DLL
+ 2003-07-15 03:40 . 2003-07-15 03:40 51256 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PUBTRAP.DLL
+ 2003-01-13 20:04 . 2003-01-13 20:04 39504 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PUBENV.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 93752 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PP7X32.DLL
+ 2003-07-15 03:43 . 2003-07-15 03:43 49208 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLWAB.DLL
+ 2003-07-15 03:43 . 2003-07-15 03:43 64056 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLRPC.DLL
+ 2003-07-15 03:44 . 2003-07-15 03:44 88128 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLMIME.DLL
+ 2003-07-15 03:41 . 2003-07-15 03:41 24640 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLACCT.DLL
+ 2003-07-28 17:28 . 2003-07-28 17:28 89136 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OSE.EXE
+ 2003-07-15 03:53 . 2003-07-15 03:53 95792 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OSA.EXE
+ 2012-06-08 05:31 . 2012-06-08 05:31 35448 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OLCTLPIA.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 27192 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OISCTRL.DLL
+ 2003-07-15 03:56 . 2003-07-15 03:56 13888 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\NPOFFICE.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 56888 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\NAME.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 20080 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSTAGPIA.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 41528 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSSH.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 16384 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPGIMME.DLL
+ 2003-07-15 03:45 . 2003-07-15 03:45 39488 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOXMLMF.DLL
+ 2003-07-15 03:45 . 2003-07-15 03:45 55360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOXMLED.EXE
+ 2003-07-15 03:46 . 2003-07-15 03:46 42040 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOXEV.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 39488 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOSVFBR.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 55872 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOSVABW.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 35896 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOSV.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 28224 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOSTYLE.DLL
+ 2003-07-15 03:56 . 2003-07-15 03:56 54328 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOMSE.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 55360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOHTMED.EXE
+ 2003-07-15 03:52 . 2003-07-15 03:52 67128 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOHEV.DLL
+ 2003-07-15 03:44 . 2003-07-15 03:44 25144 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOEURO.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 27704 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSODCW.DLL
+ 2003-07-15 03:52 . 2003-07-15 03:52 17464 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSMH.DLL
+ 2003-07-15 03:51 . 2003-07-15 03:51 87104 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSENCODE.DLL
+ 2003-07-15 03:56 . 2003-07-15 03:56 40504 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSE7.EXE
+ 2003-07-15 04:12 . 2003-07-15 04:12 47872 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSB1XTOR.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 35328 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIUI.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 18944 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIPPR.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 17920 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIMON.DLL
+ 2003-07-15 03:45 . 2003-07-15 03:45 58944 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\INLAUNCH.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 87096 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\IEAWSDC.DLL
+ 2003-07-15 03:41 . 2003-07-15 03:41 13368 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FINDER.EXE
+ 2003-07-15 03:53 . 2003-07-15 03:53 34880 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DWTRIG20.EXE
+ 2003-07-15 03:52 . 2003-07-15 03:52 39992 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DWDCW20.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 98360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DSSM.EXE
+ 2003-07-15 03:56 . 2003-07-15 03:56 14904 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DSITF.DLL
+ 2003-07-25 23:57 . 2003-07-25 23:57 75832 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DLGSETP.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 14400 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DFUIPRXY.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 47160 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\DFUICOM.EXE
+ 2001-01-11 07:05 . 2001-01-11 07:05 12288 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\CAGCAT10.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 46144 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\BLNMGRPS.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 60984 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\BLNMGR.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 94768 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\AW.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 38968 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\AUTHZAX.DLL
+ 2003-07-15 03:43 . 2003-07-15 03:43 87616 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\ADDRPARS.DLL
+ 1999-11-24 23:40 . 1999-11-24 23:40 40960 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.6612\VBAME.DLL
+ 1998-08-09 16:07 . 1998-08-09 16:07 86016 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.6612\MSADDNDR.DLL
+ 2012-06-09 17:35 . 2012-06-09 17:35 64288 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\VBIDEPIA.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 76624 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWSTRUCT.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 19784 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWRECS.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 51008 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWRECE.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 27456 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWORIENT.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 58168 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWLAY32.DLL
+ 2006-10-26 19:05 . 2006-10-26 19:05 86840 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWCUTLIN.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 29976 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\THOCRAPI.DLL
+ 2006-10-27 00:49 . 2006-10-27 00:49 34104 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\SETLANG.EXE
+ 2006-10-26 19:04 . 2006-10-26 19:04 19784 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\REVERSE.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 40424 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\REFIEBAR.DLL
+ 2006-10-27 02:13 . 2006-10-27 02:13 38168 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\REFEDIT.DLL
+ 2006-10-26 19:05 . 2006-10-26 19:05 77144 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\PSOM.DLL
+ 2006-10-27 00:59 . 2006-10-27 00:59 46936 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OSETUPPS.DLL
+ 2006-10-27 01:24 . 2006-10-27 01:24 72504 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONFILTER.DLL
+ 2006-10-27 01:24 . 2006-10-27 01:24 98632 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONENOTEM.EXE
+ 2006-10-27 01:00 . 2006-10-27 01:00 23392 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OISCTRL.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 16192 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\NPOFF12.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 65824 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\NAME.DLL
+ 2006-10-27 00:56 . 2006-10-27 00:56 67408 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSONPUI.DLL
+ 2006-10-27 00:56 . 2006-10-27 00:56 33104 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSONPPPR.DLL
+ 2006-10-27 00:56 . 2006-10-27 00:56 32592 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSONPMON.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 67896 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSOHTMED.EXE
+ 2006-10-27 20:01 . 2006-10-27 20:01 76088 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSOHEV.DLL
+ 2006-10-27 02:13 . 2006-10-27 02:13 26936 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSOEURO.DLL
+ 2006-10-27 00:48 . 2006-10-27 00:48 14664 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSOCFU.DLL
+ 2006-10-26 19:04 . 2006-10-26 19:04 75576 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\FORM.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 53576 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\AUTHZAX.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 56120 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACERCLR.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 15160 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEODTXT.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 15160 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEODPDX.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 15160 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEODEXL.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 15160 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEODDBS.DLL
+ 2006-10-27 20:00 . 2006-10-27 20:00 47976 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEERR.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 56192 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACECNFLT.EXE
+ 2012-06-28 08:45 . 2012-06-28 08:45 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\eef76dd965ea0a8ae5fb0c734d84389c\System.Web.DynamicData.Design.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\7d8e25020591e95326aa6203a4822838\System.Web.DynamicData.Design.ni.dll
+ 2012-06-28 08:16 . 2012-06-28 08:16 90624 c:\windows\assembly\NativeImages_v2.0.50727_64\stdole\ee709a01b51c82626f4b2c1173f2db28\stdole.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 61440 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\fbca78795c4dd2a0df1fbc45cef56513\WindowsLiveWriter.ni.exe
+ 2012-06-28 08:41 . 2012-06-28 08:41 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\WiaProxy32\5615759c960578516fd6fa5b76741d18\WiaProxy32.ni.exe
+ 2012-06-28 08:42 . 2012-06-28 08:42 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2b97ccae44726f13c418f1406180c3e8\System.Web.DynamicData.Design.ni.dll
+ 2012-06-28 08:29 . 2012-06-28 08:29 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\d246780b91fd9f6393e85fb13bde94a6\stdole.ni.dll
+ 2012-06-08 05:31 . 2012-06-08 05:31 16384 c:\windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 11544 c:\windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 12080 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
+ 2012-06-28 08:02 . 2012-06-28 08:02 63336 c:\windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 66936 c:\windows\assembly\GAC\Microsoft.Vbe.Interop\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 13312 c:\windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 22928 c:\windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 38304 c:\windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 17208 c:\windows\assembly\GAC\Microsoft.Office.Interop.OneNote\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OneNote.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 91488 c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 80696 c:\windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 82784 c:\windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
+ 2012-06-08 05:31 . 2012-06-08 05:31 65536 c:\windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
+ 2012-04-24 15:34 . 2009-11-24 21:36 6212 c:\windows\twain_32\MP280 series\SCNDB.DAT
+ 2012-04-24 15:34 . 2010-02-02 15:40 9040 c:\windows\twain_32\MP280 series\CNC280T.DAT
+ 2012-04-24 15:34 . 2010-02-04 19:06 1888 c:\windows\twain_32\MP280 series\CNC280M.DAT
+ 2012-03-16 13:11 . 2012-08-07 18:39 9208 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4166229290-1685211620-4260776656-1007_UserData.bin
+ 2012-06-27 12:55 . 2012-04-26 05:34 9216 c:\windows\system32\rdrmemptylst.exe
- 2012-03-19 07:29 . 2012-01-25 06:33 9216 c:\windows\system32\rdrmemptylst.exe
+ 2012-08-07 18:37 . 2012-08-07 18:37 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-06-03 17:21 . 2012-06-03 17:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-07 18:37 . 2012-08-07 18:37 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-06-03 17:21 . 2012-06-03 17:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-06-08 05:31 . 2012-07-19 15:14 4096 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 3584 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 8192 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2012-06-04 03:28 . 2012-06-28 08:07 2560 c:\windows\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\cagicon.exe
+ 2003-06-18 22:31 . 2003-06-18 22:31 6144 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OCRPS.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 4096 c:\windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 4608 c:\windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
+ 2012-04-24 15:34 . 2009-03-11 21:20 487424 c:\windows\twain_32\MP280 series\usip.dll
+ 2012-04-24 15:34 . 2010-03-15 23:34 241664 c:\windows\twain_32\MP280 series\TPM.dll
+ 2012-04-24 15:34 . 2009-12-24 21:56 139264 c:\windows\twain_32\MP280 series\TDGLIB.dll
+ 2012-04-24 15:34 . 2009-01-21 16:41 122880 c:\windows\twain_32\MP280 series\softfare.dll
+ 2012-04-24 15:34 . 2010-02-08 16:00 118784 c:\windows\twain_32\MP280 series\SG_ESP.dll
+ 2012-04-24 15:34 . 2010-02-08 16:00 102400 c:\windows\twain_32\MP280 series\SG_ENU.dll
+ 2012-04-24 15:34 . 2007-07-02 16:04 114688 c:\windows\twain_32\MP280 series\scrprmvl.dll
+ 2012-04-24 15:34 . 2010-01-14 15:55 118784 c:\windows\twain_32\MP280 series\SCRPRMV.DLL
+ 2012-04-24 15:34 . 2010-03-15 23:35 143360 c:\windows\twain_32\MP280 series\SCNIF.dll
+ 2012-04-24 15:34 . 2010-03-15 23:35 339968 c:\windows\twain_32\MP280 series\SCNFLW.dll
+ 2012-04-24 15:34 . 2010-03-15 23:34 212992 c:\windows\twain_32\MP280 series\SCNDB.dll
+ 2012-04-24 15:34 . 2008-01-23 21:45 454656 c:\windows\twain_32\MP280 series\RACSLIB.dll
+ 2012-04-24 15:34 . 2009-10-30 00:18 143360 c:\windows\twain_32\MP280 series\MC2.dll
+ 2012-04-24 15:34 . 2004-06-07 17:58 290816 c:\windows\twain_32\MP280 series\libBLC.dll
+ 2012-04-24 15:34 . 2008-11-07 19:20 176128 c:\windows\twain_32\MP280 series\CUBS.dll
+ 2012-04-24 15:34 . 2010-01-13 19:04 103424 c:\windows\twain_32\MP280 series\cncisco6.dll
+ 2012-04-24 15:34 . 2009-10-22 18:59 177648 c:\windows\twain_32\MP280 series\CNC280P.DAT
+ 2012-04-24 15:34 . 2005-08-24 20:51 126976 c:\windows\twain_32\MP280 series\CFine2.dll
+ 2012-04-24 15:34 . 2008-11-05 15:10 118784 c:\windows\twain_32\MP280 series\CAPS.dll
+ 2012-04-24 15:34 . 2009-11-26 16:32 118784 c:\windows\twain_32\MP280 series\AG.dll
+ 2012-05-02 14:35 . 2012-06-07 13:35 131072 c:\windows\tracing\VPNIKE.BIN
+ 2012-05-02 14:35 . 2012-06-07 13:35 131072 c:\windows\tracing\RASSSTP.BIN
+ 2012-05-02 14:35 . 2012-06-07 13:35 131072 c:\windows\tracing\AGILEVPN.BIN
+ 2006-10-26 18:45 . 2006-10-26 18:45 293376 c:\windows\SysWOW64\WISPTIS.EXE
+ 2012-06-27 12:55 . 2012-04-20 05:00 132096 c:\windows\SysWOW64\url.dll
- 2012-04-17 15:33 . 2012-02-28 05:38 132096 c:\windows\SysWOW64\url.dll
+ 2000-04-03 22:52 . 2000-04-03 22:52 151552 c:\windows\SysWOW64\RDOCURS.DLL
+ 2000-05-24 03:45 . 2000-05-24 03:45 118784 c:\windows\SysWOW64\MSSTDFMT.DLL
+ 2000-05-11 18:06 . 2000-05-11 18:06 397312 c:\windows\SysWOW64\MSRDO20.DLL
+ 2012-06-27 12:55 . 2012-04-20 04:57 627712 c:\windows\SysWOW64\msfeeds.dll
- 2012-03-12 13:44 . 2011-10-14 04:24 716800 c:\windows\SysWOW64\jscript.dll
+ 2012-06-27 12:56 . 2012-04-17 04:34 716800 c:\windows\SysWOW64\jscript.dll
- 2012-04-17 15:33 . 2012-02-28 05:34 176640 c:\windows\SysWOW64\ieui.dll
+ 2012-06-27 12:55 . 2012-04-20 04:56 176640 c:\windows\SysWOW64\ieui.dll
+ 2012-06-27 12:55 . 2012-04-24 04:36 140288 c:\windows\SysWOW64\cryptsvc.dll
+ 2012-06-27 12:55 . 2012-04-24 04:36 103936 c:\windows\SysWOW64\cryptnet.dll
+ 2012-04-24 15:34 . 2010-03-18 22:11 106496 c:\windows\SysWOW64\CNC280U.dll
+ 2012-04-24 15:34 . 2010-03-19 00:25 307200 c:\windows\SysWOW64\CNC280L.dll
+ 2012-07-17 15:59 . 2012-06-06 05:03 805376 c:\windows\SysWOW64\cdosys.dll
- 2010-11-21 03:24 . 2010-11-21 03:24 805376 c:\windows\SysWOW64\cdosys.dll
+ 2012-01-02 02:22 . 2012-08-01 15:07 255756 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2011-12-24 01:40 . 2012-08-07 16:48 355212 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2012-04-17 15:33 . 2012-02-28 06:39 134144 c:\windows\system32\url.dll
+ 2012-06-27 12:55 . 2012-04-20 05:42 134144 c:\windows\system32\url.dll
+ 2012-06-09 17:37 . 2009-02-27 08:42 863128 c:\windows\system32\spool\drivers\x64\msonpdrv.dll
+ 2012-06-08 05:32 . 2007-04-09 18:24 758664 c:\windows\system32\spool\drivers\x64\mdigraph.dll
- 2012-03-19 07:29 . 2012-01-25 06:38 149504 c:\windows\system32\rdpcorekmts.dll
+ 2012-06-27 12:55 . 2012-04-26 05:41 149504 c:\windows\system32\rdpcorekmts.dll
- 2010-11-21 03:24 . 2010-11-21 03:24 209920 c:\windows\system32\profsvc.dll
+ 2012-06-27 12:52 . 2012-05-01 05:40 209920 c:\windows\system32\profsvc.dll
- 2009-07-14 02:36 . 2012-06-03 16:10 659664 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-08-07 18:42 659664 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2012-06-03 16:10 117376 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2012-08-07 18:42 117376 c:\windows\system32\perfc009.dat
+ 2012-06-27 12:55 . 2012-04-20 05:42 735744 c:\windows\system32\msfeeds.dll
+ 2012-06-27 12:56 . 2012-04-17 05:31 918016 c:\windows\system32\jscript.dll
+ 2012-06-27 12:55 . 2012-04-20 05:42 247808 c:\windows\system32\ieui.dll
- 2012-04-17 15:33 . 2012-02-28 06:35 247808 c:\windows\system32\ieui.dll
+ 2009-07-14 04:45 . 2012-07-15 22:24 418656 c:\windows\system32\FNTCACHE.DAT
+ 2009-07-14 05:30 . 2012-07-25 20:47 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-04-30 21:30 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-04-30 00:00 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2009-07-14 05:30 . 2012-07-25 20:47 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2012-05-11 12:34 . 2012-05-11 12:34 203320 c:\windows\system32\DriverStore\FileRepository\ssudmdm.inf_amd64_neutral_8ba8b838b051df29\amd64\ssudmdm.sys
- 2012-03-19 07:29 . 2012-02-17 04:58 210944 c:\windows\system32\drivers\rdpwd.sys
+ 2012-06-27 12:55 . 2012-04-28 03:55 210944 c:\windows\system32\drivers\rdpwd.sys
+ 2012-06-27 12:55 . 2012-04-24 05:37 184320 c:\windows\system32\cryptsvc.dll
+ 2012-06-27 12:55 . 2012-04-24 05:37 140288 c:\windows\system32\cryptnet.dll
+ 2012-04-24 15:34 . 2010-01-13 19:04 103424 c:\windows\system32\CNC280O.dll
+ 2012-04-24 15:34 . 2010-03-19 00:26 348672 c:\windows\system32\CNC280L.dll
+ 2012-04-24 15:34 . 2010-03-18 22:13 112128 c:\windows\system32\CNC280I.dll
+ 2009-07-14 05:01 . 2012-08-07 18:36 387084 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-04-29 06:46 . 2012-07-27 14:05 621356 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-4166229290-1685211620-4260776656-1007-12288.dat
+ 2012-04-21 16:03 . 2012-04-21 16:03 616024 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.Drawing.dll
+ 2012-06-27 12:55 . 2012-04-23 22:33 630784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll
- 2012-04-18 04:22 . 2012-01-26 23:31 630784 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll
+ 2012-04-21 16:03 . 2012-04-21 16:03 616024 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Drawing.dll
+ 2012-06-27 12:55 . 2012-04-23 22:35 630784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
- 2012-04-18 04:22 . 2012-01-26 23:33 630784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 616024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 156440 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn\v4.0_4.0.0.0__b77a5c561934e089\System.AddIn.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 156440 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn\v4.0_4.0.0.0__b77a5c561934e089\System.AddIn.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2010-11-12 16:08 . 2010-11-12 16:08 889344 c:\windows\Installer\64b4b73.msp
+ 2012-06-09 17:34 . 2012-06-09 17:34 847872 c:\windows\Installer\5dc795e.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 502272 c:\windows\Installer\5dc7958.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 507904 c:\windows\Installer\5dc7953.msi
+ 2012-06-09 17:34 . 2012-06-09 17:34 518144 c:\windows\Installer\5dc794c.msi
+ 2012-06-09 17:34 . 2012-06-09 17:34 514048 c:\windows\Installer\5dc793c.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 502272 c:\windows\Installer\5dc792c.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 503296 c:\windows\Installer\5dc7927.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 502272 c:\windows\Installer\5dc7922.msi
+ 2009-09-09 20:40 . 2009-09-09 20:40 632320 c:\windows\Installer\4e4a4.msp
+ 2008-07-28 19:59 . 2008-07-28 19:59 180736 c:\windows\Installer\470c4.msp
+ 2009-04-20 19:59 . 2009-04-20 19:59 219648 c:\windows\Installer\330fce0.msp
+ 2009-11-05 19:21 . 2009-11-05 19:21 537600 c:\windows\Installer\330fcb4.msp
+ 2010-11-16 17:54 . 2010-11-16 17:54 906240 c:\windows\Installer\330fc99.msp
+ 2012-06-28 05:01 . 2012-06-28 05:01 409600 c:\windows\Installer\{C3F0CF4C-0A8C-42F1-A585-2EF7886D6039}\NewShortcut3_16B2498CC6C14AE795EFD2A09F50071C.exe
+ 2012-06-28 05:01 . 2012-06-28 05:01 409600 c:\windows\Installer\{C3F0CF4C-0A8C-42F1-A585-2EF7886D6039}\NewShortcut2_16B2498CC6C14AE795EFD2A09F50071C.exe
+ 2012-06-28 05:01 . 2012-06-28 05:01 409600 c:\windows\Installer\{C3F0CF4C-0A8C-42F1-A585-2EF7886D6039}\ARPPRODUCTICON.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 409600 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 286720 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 249856 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 794624 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 135168 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2012-06-08 05:31 . 2012-07-19 15:14 593920 c:\windows\Installer\{91E30409-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2012-06-09 17:37 . 2012-07-15 22:18 217864 c:\windows\Installer\{91120000-00A1-0000-0000-0000000FF1CE}\misc.exe
+ 2012-06-09 17:37 . 2012-07-15 22:18 184080 c:\windows\Installer\{91120000-00A1-0000-0000-0000000FF1CE}\joticon.exe
+ 2012-06-28 08:14 . 2012-06-28 08:14 217864 c:\windows\Installer\{90120000-006E-0409-0000-0000000FF1CE}\misc.exe
+ 2001-02-13 05:15 . 2001-02-13 05:15 390560 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSORUN.DLL
+ 1998-11-05 12:27 . 1998-11-05 12:27 536576 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSLID.DLL
+ 2000-11-09 20:45 . 2000-11-09 20:45 148480 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSCONV97.DLL
+ 2007-03-23 00:22 . 2007-03-23 00:22 103264 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\TRANSMGR.DLL
+ 2007-05-10 18:34 . 2007-05-10 18:34 562528 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\PUBCONV.DLL
+ 2007-05-31 18:36 . 2007-05-31 18:36 612184 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\PTXT9.DLL
+ 2007-05-31 18:35 . 2007-05-31 18:35 133976 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\PRTF9.DLL
+ 2012-06-28 08:06 . 2012-06-28 08:06 464272 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OWC11PIA.DLL
+ 2007-04-19 18:53 . 2007-04-19 18:53 149856 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLPH.DLL
+ 2007-05-31 18:42 . 2007-05-31 18:42 200032 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLOOK.EXE
+ 2007-04-19 18:53 . 2007-04-19 18:53 106336 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLMIME.DLL
+ 2007-04-19 18:53 . 2007-04-19 18:53 109408 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLCTL.DLL
+ 2007-04-19 19:01 . 2007-04-19 19:01 238424 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MSCDM.DLL
+ 2007-01-17 01:32 . 2007-01-17 01:32 136032 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MSAEXP30.DLL
+ 2007-04-19 18:54 . 2007-04-19 18:54 183136 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MIMEDIR.DLL
+ 2012-06-28 08:06 . 2012-06-28 08:06 103776 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\IPATHPIA.DLL
+ 2007-04-19 18:53 . 2007-04-19 18:53 127328 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\IMPMAIL.DLL
+ 2007-04-19 19:09 . 2007-04-19 19:09 167256 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\IETAG.DLL
+ 2007-04-19 18:53 . 2007-04-19 18:53 137568 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\ENVELOPE.DLL
+ 2001-06-05 13:13 . 2001-06-05 13:13 289926 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\ENGDIC.DAT
+ 2007-04-19 18:54 . 2007-04-19 18:54 169312 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\ACCWIZ.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 662120 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\WORDPIA.DLL
+ 2003-04-02 16:21 . 2003-04-02 16:21 111632 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\WAVTOASF.EXE
+ 2002-10-07 14:51 . 2002-10-07 14:51 221252 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWSTRUCT.DLL
+ 2002-10-07 14:50 . 2002-10-07 14:50 118847 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWRECE.DLL
+ 2002-10-07 14:51 . 2002-10-07 14:51 102467 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWORIENT.DLL
+ 2002-10-07 14:51 . 2002-10-07 14:51 147520 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWLAY32.DLL
+ 2002-10-07 14:51 . 2002-10-07 14:51 180289 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWCUTLIN.DLL
+ 2002-10-07 14:50 . 2002-10-07 14:50 241729 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\TWCUTCHR.DLL
+ 2002-10-07 14:53 . 2002-10-07 14:53 106561 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\THOCRAPI.DLL
+ 2003-08-06 18:26 . 2003-08-06 18:26 445488 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SOA.DLL
+ 2003-08-06 18:31 . 2003-08-06 18:31 362552 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SETLANG.EXE
+ 2003-07-15 03:57 . 2003-07-15 03:57 349248 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\SELFCERT.EXE
+ 2003-07-21 16:46 . 2003-07-21 16:46 390712 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\RTFHTML.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 211568 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PUBPIA.DLL
+ 2003-07-15 03:50 . 2003-07-15 03:50 551480 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PUBCONV.DLL
+ 2003-07-15 03:51 . 2003-07-15 03:51 604728 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PTXT9.DLL
+ 2002-10-07 15:11 . 2002-10-07 15:11 167997 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PSOM.DLL
+ 2003-07-15 03:40 . 2003-07-15 03:40 130104 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PRTF9.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 223856 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PPTPIA.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 430136 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PP4X322.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 461416 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OWC11PIA.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 408176 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLPIA.DLL
+ 2003-07-15 03:43 . 2003-07-15 03:43 139320 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLPH.DLL
+ 2003-07-15 03:45 . 2003-07-15 03:45 196152 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLOOK.EXE
+ 2003-07-08 16:48 . 2003-07-08 16:48 115288 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DLL
+ 2003-07-15 03:44 . 2003-07-15 03:44 102968 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLCTL.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 242240 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OISGRAPH.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 828472 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OISAPP.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 283696 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OIS.EXE
+ 2012-06-08 05:31 . 2012-06-08 05:31 223800 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OFFICE.DLL
+ 2003-07-15 04:00 . 2003-07-15 04:00 145984 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSWEBCAP.DLL
+ 1998-06-17 16:52 . 1998-06-17 16:52 401462 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSVCP60.DLL
+ 2003-07-24 03:40 . 2003-07-24 03:40 482872 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSTORES.DLL
+ 2003-07-15 03:56 . 2003-07-15 03:56 124984 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSTORE.EXE
+ 2003-07-15 04:02 . 2003-07-15 04:02 627256 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSTORDB.EXE
+ 2003-07-15 04:02 . 2003-07-15 04:02 637496 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSQRY32.EXE
+ 2003-06-19 21:05 . 2003-06-19 21:05 364648 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPVIEW.EXE
+ 2003-06-19 21:05 . 2003-06-19 21:05 128104 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPSCAN.EXE
+ 2003-06-18 22:31 . 2003-06-18 22:31 788480 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPFILT.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 376888 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSORUN.DLL
+ 2003-07-24 03:35 . 2003-07-24 03:35 127032 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOCFU.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 106552 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOCF.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 120888 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOAUTH.DLL
+ 2002-04-10 01:14 . 2002-04-10 01:14 187560 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSMDUN80.DLL
+ 1998-11-05 12:27 . 1998-11-05 12:27 536576 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSLID.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 139328 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSJSPP40.DLL
+ 2002-12-18 00:08 . 2002-12-18 00:08 359600 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSDMENG.DLL
+ 2003-07-15 03:51 . 2003-07-15 03:51 116288 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSCONV97.DLL
+ 2003-07-15 03:58 . 2003-07-15 03:58 230968 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSCDM.DLL
+ 2003-07-15 03:57 . 2003-07-15 03:57 124480 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSB1CORE.DLL
+ 2003-07-15 08:13 . 2003-07-15 08:13 130112 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSAEXP30.DLL
+ 2003-07-15 04:01 . 2003-07-15 04:01 445496 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MODHELP.DLL
+ 2003-07-15 03:46 . 2003-07-15 03:46 176696 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MIMEDIR.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 443904 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIVWCTL.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 252928 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIINK.DLL
+ 2003-06-18 22:31 . 2003-06-18 22:31 758784 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MDIGRAPH.DLL
+ 2003-07-24 03:32 . 2003-07-24 03:32 121400 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\IMPMAIL.DLL
+ 2003-07-15 03:53 . 2003-07-15 03:53 161336 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\IETAG.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 141928 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\GRAPHPIA.DLL
+ 2003-07-26 00:14 . 2003-07-26 00:14 799288 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPWEC.DLL
+ 2003-07-15 03:40 . 2003-07-15 03:40 165944 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPLACE.DLL
+ 2003-07-15 03:40 . 2003-07-15 03:40 179768 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPERSON.DLL
+ 2003-07-15 04:36 . 2003-07-15 04:36 186424 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPDTC.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 371296 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FORMSPIA.DLL
+ 2002-10-07 14:49 . 2002-10-07 14:49 192573 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FORM.DLL
+ 2003-07-31 20:19 . 2003-07-31 20:19 131648 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\ENVELOPE.DLL
+ 2003-07-15 08:14 . 2003-07-15 08:14 350264 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\CDLMSO.DLL
+ 2003-07-15 08:18 . 2003-07-15 08:18 141360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\ATP.DLL
+ 2003-07-15 08:13 . 2003-07-15 08:13 166456 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\ACCWIZ.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 997992 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\ACCESS.DLL
+ 2011-01-14 12:10 . 2011-01-14 12:10 155520 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKWORD6.DLL
+ 2011-01-14 12:10 . 2011-01-14 12:10 140160 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKEXCEL2.DLL
+ 2000-05-24 03:45 . 2000-05-24 03:45 118784 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.6612\MSSTDFMT.DLL
+ 2006-10-26 19:05 . 2006-10-26 19:05 530760 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\XPAGE3C.DLL
+ 2006-10-26 19:05 . 2006-10-26 19:05 126784 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\TWCUTCHR.DLL
+ 2006-10-27 01:06 . 2006-10-27 01:06 439600 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\SETUP.EXE
+ 2006-10-27 01:13 . 2006-10-27 01:13 503624 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\SELFCERT.EXE
+ 2006-10-27 02:30 . 2006-10-27 02:30 482088 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\PORTCONN.DLL
+ 2006-07-26 23:53 . 2006-07-26 23:53 459080 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OUTLFLTR.DLL
+ 2006-10-27 01:23 . 2006-10-27 01:23 782720 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONSYNCPC.DLL
+ 2006-10-27 20:39 . 2006-10-27 20:39 687432 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONBTTNOL.DLL
+ 2006-10-27 01:32 . 2006-10-27 01:32 604000 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONBTTNIE.DLL
+ 2006-10-27 01:00 . 2006-10-27 01:00 285008 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OISGRAPH.DLL
+ 2006-10-27 01:00 . 2006-10-27 01:00 998208 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OISAPP.DLL
+ 2006-10-27 01:00 . 2006-10-27 01:00 274744 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OIS.EXE
+ 2006-10-20 13:37 . 2006-10-20 13:37 637744 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OGALEGIT.DLL
+ 2006-10-27 01:06 . 2006-10-27 01:06 232816 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ODEPLOY.EXE
+ 2006-10-27 00:55 . 2006-10-27 00:55 538904 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSTORES.DLL
+ 2006-10-27 00:55 . 2006-10-27 00:55 145688 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSTORE.EXE
+ 2006-10-27 00:55 . 2006-10-27 00:55 832800 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSTORDB.EXE
+ 2006-10-26 18:56 . 2006-10-26 18:56 505136 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSSOAP30.DLL
+ 2006-10-26 19:47 . 2006-10-26 19:47 727840 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSPROOF6.DLL
+ 2006-10-26 18:56 . 2006-10-26 18:56 436520 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSORUN.DLL
+ 2006-10-27 00:56 . 2006-10-27 00:56 864080 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSONPDRV.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 428816 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSODCW.DLL
+ 2006-10-27 19:59 . 2006-10-27 19:59 161080 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSOCF.DLL
+ 2006-10-26 18:58 . 2006-10-26 18:58 117552 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSCONV97.DLL
+ 2006-10-27 00:55 . 2006-10-27 00:55 828704 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MEDCAT.DLL
+ 2006-10-27 01:12 . 2006-10-27 01:12 173328 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\IEAWSDC.DLL
+ 2006-10-27 20:09 . 2006-10-27 20:09 983376 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\FPWEC.DLL
+ 2006-10-27 00:48 . 2006-10-27 00:48 434528 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\DWTRIG20.EXE
+ 2006-10-27 01:12 . 2006-10-27 01:12 106824 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\DSSM.EXE
+ 2006-10-27 00:59 . 2006-10-27 00:59 205616 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\CLVIEW.EXE
+ 2006-10-27 20:41 . 2006-10-27 20:41 399640 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\CDLMSO.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 371568 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEXBE.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 826232 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEWDAT.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 224104 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACETXT.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 551800 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEREP.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 289648 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACER3X.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 260976 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACER2X.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 392048 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEPDE.DLL
+ 2006-10-27 20:00 . 2006-10-27 20:00 387960 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEOLEDB.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 279352 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEODBC.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 207736 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACELTS.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 629616 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEEXCL.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 338800 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEEXCH.DLL
+ 2006-10-27 20:00 . 2006-10-27 20:00 191360 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEES.DLL
+ 2006-10-27 20:00 . 2006-10-27 20:00 576376 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACEDAO.DLL
+ 2006-10-27 01:13 . 2006-10-27 01:13 764800 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACECNF.DLL
+ 2001-02-20 18:09 . 2001-02-20 18:09 154624 c:\windows\IME\SOFTKBD.DLL
+ 2001-02-20 18:09 . 2001-02-20 18:09 230400 c:\windows\IME\MSCANDUI.DLL
+ 2012-06-28 08:28 . 2012-06-28 08:28 337408 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\08becdcc9bd647c4e4d07ceea7fe4895\WindowsFormsIntegration.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 281088 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\ca5505a49a075ee7ad2535f89d9ea992\System.ServiceProcess.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 781824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\0d8257087be3e57b071d1d5ccd705c2f\System.Messaging.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 181760 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuratio#\52792a7ce63196551c29f5201562c1ae\System.Configuration.Install.ni.dll
+ 2012-06-28 08:25 . 2012-06-28 08:25 422912 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\097137b03ff37196b4b8ba62db34d64a\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-06-28 08:31 . 2012-06-28 08:31 253952 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\44752ffa92ebb7170951a41898d8b9c6\WindowsFormsIntegration.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 221696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\5552b27237c3dbe4f21a10e97adf2edc\System.ServiceProcess.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 626176 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\a730931e386537e3c229e049c9a6d271\System.Messaging.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 148480 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\c7d60a49e43964b1ae17e9a080376c6d\System.Configuration.Install.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 303104 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\8cc4dd9babffe370cf375925fba15f84\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\f4d304fcbfda323997083a1f88b83719\WindowsFormsIntegration.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\127710a11855aaf4817f9ab34a25d99e\WindowsFormsIntegration.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\b945c708d9d3d8468fc2631960729f66\TaskScheduler.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\681410f842337dccc72eb059738c3ced\TaskScheduler.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\f23ea30ef7d30fd22839a24bc635dcc1\System.Web.Routing.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\72b4992e45d232251a273a59eb3333d5\System.Web.Routing.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\b905eb57b631a30c60caa4d68c186963\System.Web.Entity.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\e412dfbf1aa49bbe345a02a4d23104f5\System.Web.Entity.Design.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\8204bbe8263075e41000513a405ab784\System.Web.Entity.Design.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\815769f953ebe3f84439d522c97317b8\System.Web.DynamicData.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\4183c7b14c5b1db05505e20d44cb859a\System.Web.DynamicData.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\ec4ed0bbb05d4e714ca5c14278af1977\System.Web.Abstractions.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\c8144ee08dccdac183527e53c86aa901\System.Web.Abstractions.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 295424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f71d2f65d0f149c75ac7a569dbcc8500\System.ServiceProcess.ni.dll
+ 2012-06-28 08:07 . 2012-06-28 08:07 295424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\1962f8344f19c367f4e0be9f8f5a7972\System.ServiceProcess.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\d5d612f7d372f500e3062e3814e79d75\System.Messaging.ni.dll
+ 2012-06-28 08:15 . 2012-06-28 08:15 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\21286d6c1657bae9cd56f2f9bf2c3732\System.Messaging.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 288768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\fbc02e9f5a14bb93082ebc88bc577413\System.Drawing.Design.ni.dll
+ 2012-06-28 08:07 . 2012-06-28 08:07 288768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\a76b760d8b987ce161519e1b8bf18fdd\System.Drawing.Design.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 192000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuratio#\a88ca70ab9641b8236149bc5dd8d1564\System.Configuration.Install.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 241152 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.SystemL#\862f425ab4b4affd2c4389c87e9d990f\PaintDotNet.SystemLayer.Native.x64.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 241152 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.SystemL#\07301119c90dbc27715812e9d2afc039\PaintDotNet.SystemLayer.Native.x64.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 417280 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Resourc#\f3ec7ee91fdd3963f9698d15a23aff62\PaintDotNet.Resources.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 417280 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Resourc#\4ef768367e6aae0e4666329d21eabe4f\PaintDotNet.Resources.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 781824 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Data\4805d0ea3e621297b48d498aed2846e4\PaintDotNet.Data.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 781824 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Data\26e6f4eb51069ad9f2d6592492883ed4\PaintDotNet.Data.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\f0d44ee55e2b59a4790766bd501d60f1\napsnap.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\2f1bad2fb963482a02443d5e7fece2b6\napsnap.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\bb4947f0ecc925a7bcfd129b6eec8f9b\napinit.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\7820503ca6ed2512fc3e3ce3cc690b01\napinit.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\67240ddde494b9cc05cd732ccd099668\MMCFxCommon.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\4b5dccc05af5dfbf4986c6a2d1b2b25f\MMCFxCommon.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 263680 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\eb209e53a674a963f224baa05af24ac1\Microsoft.Web.Management.WebDAVClient.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 263680 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\496cbec49a2e5e85fbd06a55df1095a0\Microsoft.Web.Management.WebDAVClient.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e29cbd30a31d3c8dae19eb17f70c4ec4\Microsoft.MediaCenter.iTv.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\409dae089f2e041343cff71f822cd505\Microsoft.MediaCenter.ITVVM.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\c887a7a1b55269a9d11de4b6591b9bd6\Microsoft.ManagementConsole.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\803188573fb19785a94284e097c48a67\Microsoft.ManagementConsole.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 107520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\69286d5692277a166404cb897a8b2e7a\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\4ae6ccc32dafb4e3765b9db05585bd48\mcplayerinterop.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\b0db345fd62a84c98fd8b0bf3c72e8bb\mcGlidHostObj.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\bc5df15ee827e248dd6f819874a85718\EventViewer.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\7a70dae70a2459270fe34d654fd0a178\EventViewer.ni.dll
+ 2012-06-28 08:16 . 2012-06-28 08:16 126976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\414bbac4e1d7761a336bb9d74b9b243a\ehiActivScp.ni.dll
+ 2012-06-28 08:15 . 2012-06-28 08:15 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\08c9aa18b306aa47ddc0ae4a63b05d04\ehExtHost.ni.exe
+ 2012-06-28 08:41 . 2012-06-28 08:41 634368 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\5b4b71fd140484201d0e285a14cce17a\WindowsLiveLocal.WriterPlugin.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e92c100773e1aa6e0094ac430b496ace\WindowsLive.Writer.Mshtml.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 871424 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e35141184454c11a98f333c5b7b5c4c3\WindowsLive.Writer.BlogClient.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 665600 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ac47170bea9a3515287134ce8c3dae4a\WindowsLive.Writer.Interop.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8adf64dec1f056a5c36720ac34045370\WindowsLive.Writer.BrowserControl.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 122368 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\882aeb909ff121fae01034b7e9627936\WindowsLive.Writer.Extensibility.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 891392 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8437eb811a83c1d04c10c6d91abc606b\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 326144 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\6f110f192197df8fd4d84e270edf7825\WindowsLive.Writer.SpellChecker.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\3e388ec2100141e62e0f3cb81aa42ce0\WindowsLive.Writer.FileDestinations.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 780800 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\2bfd2895928710d7cf422c48b6e915d0\WindowsLive.Writer.Controls.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 101376 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\1af8e0bd9d63b6263bda26b9ffc1f053\WindowsLive.Writer.Api.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 223232 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\c5d63c774d84fccad17b4215692d4f02\WindowsLive.Client.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\f2f8201dd3453250dfd9ed1afce630a0\WindowsFormsIntegration.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 245248 c:\windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\f3e052584df9c614407da662dd3c3df3\TaskScheduler.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\06e4119a0a3484bb0ca667a16145ce74\System.Web.Routing.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 860160 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\4f13c2c06fb97f6659473f02802b377b\System.Web.Extensions.Design.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\bc239944bca7cc6b6ddb473259183c7d\System.Web.Entity.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 301568 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\3701488fb9e601ebe963db25b784d684\System.Web.Entity.Design.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\a09cc9877f51f16a4610b702155e8b70\System.Web.DynamicData.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\c6aad1edcc51862ceb26b6b65dad1490\System.Web.Abstractions.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\69ca4a43ba14b66689715ad62aed70e6\System.ServiceProcess.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\2b4d6976393bf5643a4ef2d8dffdf75b\System.Messaging.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\912a0776c2bfd35ff76bd0b8ba977ed4\System.Drawing.Design.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\498d2033c60fe5b777cf923b71b25972\System.Configuration.Install.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 902144 c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.SystemL#\980500a470e202c8ea3eac01fead7f41\PaintDotNet.SystemLayer.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 863232 c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Base\21f801fd98a54a0bc33f4d8510b0986c\PaintDotNet.Base.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\acfafa161ea232928cb02b01c50acf1c\napsnap.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\0abec246c5ca6ec4858bfd3ab84da0ec\napinit.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\1e03b7c2539c5376f0665a4aba04efbd\MMCFxCommon.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 196608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Web.Manag#\9adc3c45b2a354d2a7b000b63cf6433e\Microsoft.Web.Management.WebDAVClient.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\622b582866fca37f113bd97ae4c6d1f6\Microsoft.ManagementConsole.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\02577b78c6ed2f9bda301de888dccad8\EventViewer.ni.dll
+ 2012-06-28 08:29 . 2012-06-28 08:29 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\c4a5ce4f89c53b9601d13d22d01cf0bf\ehiVidCtl.ni.dll
+ 2012-06-28 08:28 . 2012-06-28 08:28 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\a6b8eb80cfbdd927b2fa4ecb69fc0209\ehExtHost32.ni.exe
- 2012-04-18 04:22 . 2012-01-26 23:33 630784 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-27 12:55 . 2012-04-23 22:35 630784 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 416544 c:\windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
+ 2012-06-28 08:06 . 2012-06-28 08:06 226656 c:\windows\assembly\GAC\office\11.0.0.0__71e9bce111e9429c\OFFICE.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 229376 c:\windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
+ 2012-06-09 17:35 . 2012-06-09 17:35 371496 c:\windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 664968 c:\windows\assembly\GAC\Microsoft.Office.Interop.Word\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 214424 c:\windows\assembly\GAC\Microsoft.Office.Interop.Publisher\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 226712 c:\windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
+ 2012-07-15 22:18 . 2012-07-15 22:18 477056 c:\windows\assembly\GAC\Microsoft.Office.Interop.Owc11\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Owc11.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 411024 c:\windows\assembly\GAC\Microsoft.Office.Interop.Outlook\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
+ 2012-07-19 15:14 . 2012-07-19 15:14 111624 c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 144784 c:\windows\assembly\GAC\Microsoft.Office.Interop.Graph\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
+ 2012-06-08 05:31 . 2012-06-08 05:31 110592 c:\windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
+ 2012-04-24 15:34 . 2008-12-26 15:56 1168896 c:\windows\twain_32\MP280 series\SGCFLTR6.dll
+ 2012-04-24 15:34 . 2008-12-26 15:57 1159168 c:\windows\twain_32\MP280 series\SGCFLTR.dll
+ 2012-04-24 15:34 . 2010-03-15 23:35 1253376 c:\windows\twain_32\MP280 series\SG_IMG.dll
+ 2012-04-24 15:34 . 2010-03-15 23:37 1089536 c:\windows\twain_32\MP280 series\SCNUI.dll
+ 2012-04-24 15:34 . 2010-03-04 22:20 1355776 c:\windows\twain_32\MP280 series\IB.dll
+ 2012-04-24 15:34 . 2010-02-04 19:08 2102320 c:\windows\twain_32\MP280 series\CNC280R.DAT
+ 2012-05-02 14:35 . 2012-06-07 11:06 5242880 c:\windows\tracing\RASPPTP.BIN
+ 2012-06-27 12:55 . 2012-04-20 05:00 1231360 c:\windows\SysWOW64\urlmon.dll
- 2012-04-17 15:33 . 2012-02-28 05:38 1231360 c:\windows\SysWOW64\urlmon.dll
+ 2012-06-27 12:55 . 2012-05-04 10:03 3913072 c:\windows\SysWOW64\ntoskrnl.exe
- 2012-05-19 07:41 . 2012-03-31 04:39 3913072 c:\windows\SysWOW64\ntoskrnl.exe
+ 2012-06-27 12:55 . 2012-05-04 10:03 3968368 c:\windows\SysWOW64\ntkrnlpa.exe
- 2012-05-19 07:41 . 2012-03-31 04:39 3968368 c:\windows\SysWOW64\ntkrnlpa.exe
+ 2012-06-27 12:55 . 2012-04-07 11:26 2342400 c:\windows\SysWOW64\msi.dll
+ 2012-06-27 12:55 . 2012-04-20 04:57 6027776 c:\windows\SysWOW64\mshtml.dll
+ 2012-06-27 12:55 . 2012-04-20 04:56 2073600 c:\windows\SysWOW64\iertutil.dll
- 2012-04-17 15:33 . 2012-02-28 05:34 2073600 c:\windows\SysWOW64\iertutil.dll
+ 2011-07-07 07:28 . 2011-07-07 07:28 1193320 c:\windows\SysWOW64\FM20.DLL
+ 2012-06-27 12:55 . 2012-04-24 04:36 1158656 c:\windows\SysWOW64\crypt32.dll
+ 2012-06-27 12:55 . 2012-04-20 05:42 1494016 c:\windows\system32\urlmon.dll
- 2012-04-17 15:33 . 2012-02-28 06:39 1494016 c:\windows\system32\urlmon.dll
+ 2012-06-27 12:55 . 2012-05-04 11:06 5559664 c:\windows\system32\ntoskrnl.exe
- 2012-05-19 07:41 . 2012-03-31 06:05 5559664 c:\windows\system32\ntoskrnl.exe
+ 2012-06-27 12:55 . 2012-04-07 12:31 3216384 c:\windows\system32\msi.dll
+ 2012-06-27 12:56 . 2012-04-20 05:42 9059840 c:\windows\system32\mshtml.dll
+ 2012-06-27 12:55 . 2012-04-20 05:42 2454528 c:\windows\system32\iertutil.dll
+ 2012-06-27 12:55 . 2012-04-24 05:37 1462272 c:\windows\system32\crypt32.dll
+ 2012-04-24 15:34 . 2010-03-18 22:13 1354240 c:\windows\system32\CNC280C.dll
- 2010-11-21 03:23 . 2010-11-21 03:23 1133568 c:\windows\system32\cdosys.dll
+ 2012-07-17 15:59 . 2012-06-06 06:02 1133568 c:\windows\system32\cdosys.dll
- 2009-07-14 04:45 . 2012-05-23 08:21 7190096 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45 . 2012-07-17 18:18 7190096 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2011-12-24 03:09 . 2012-08-07 18:36 4408504 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2012-03-15 18:17 . 2012-03-15 18:17 5029672 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.Windows.Forms.dll
+ 2012-06-27 12:55 . 2012-03-21 22:30 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll
- 2012-05-23 02:59 . 2012-01-04 03:34 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll
+ 2012-06-27 12:55 . 2012-03-21 22:30 4927488 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll
- 2010-11-21 03:23 . 2010-11-21 03:23 4927488 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll
+ 2012-03-15 18:17 . 2012-03-15 18:17 5029672 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Windows.Forms.dll
- 2012-05-23 02:59 . 2012-01-04 02:51 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2012-06-27 12:55 . 2012-03-21 22:32 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2012-06-27 12:55 . 2012-03-21 22:32 4927488 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
- 2010-11-21 03:24 . 2010-11-21 03:24 4927488 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 1369872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1369872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 5029672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 6429992 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 6429992 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 3825952 c:\windows\Microsoft.NET\assembly\GAC_64\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 3825952 c:\windows\Microsoft.NET\assembly\GAC_64\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-05-24 11:32 . 2012-05-24 11:32 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 3790112 c:\windows\Microsoft.NET\assembly\GAC_32\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 3790112 c:\windows\Microsoft.NET\assembly\GAC_32\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-06-28 08:17 . 2012-06-28 08:17 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
- 2012-05-24 11:31 . 2012-05-24 11:31 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll
+ 2009-08-20 10:02 . 2009-08-20 10:02 5204992 c:\windows\Installer\9a3a3b.msp
+ 2010-01-11 21:35 . 2010-01-11 21:35 4480000 c:\windows\Installer\8f5a84b.msp
+ 2010-10-04 18:59 . 2010-10-04 18:59 8300032 c:\windows\Installer\8f5a83e.msp
+ 2004-09-13 05:35 . 2004-09-13 05:35 1452544 c:\windows\Installer\8f5a82e.msp
+ 2011-02-25 19:25 . 2011-02-25 19:25 7968256 c:\windows\Installer\8f5a7ec.msp
+ 2011-07-21 17:34 . 2011-07-21 17:34 3456000 c:\windows\Installer\88ff617.msp
+ 2010-08-05 15:57 . 2010-08-05 15:57 4066304 c:\windows\Installer\87f72c.msp
+ 2005-10-26 19:59 . 2005-10-26 19:59 2883072 c:\windows\Installer\76ccf7.msp
+ 2010-08-05 15:57 . 2010-08-05 15:57 4066304 c:\windows\Installer\64b4da5.msp
+ 2010-10-22 20:45 . 2010-10-22 20:45 8444928 c:\windows\Installer\64b4d6c.msp
+ 2010-06-11 22:55 . 2010-06-11 22:55 1827328 c:\windows\Installer\64b4d0f.msp
+ 2009-07-01 18:21 . 2009-07-01 18:21 8891904 c:\windows\Installer\64b4cd0.msp
+ 2012-06-19 17:54 . 2012-06-19 17:54 2239488 c:\windows\Installer\64b4c92.msp
+ 2012-03-23 19:59 . 2012-03-23 19:59 7899648 c:\windows\Installer\64b4c86.msp
+ 2011-04-29 18:04 . 2011-04-29 18:04 5053440 c:\windows\Installer\64b4c7a.msp
+ 2009-12-17 03:58 . 2009-12-17 03:58 5382144 c:\windows\Installer\64b4c4f.msp
+ 2012-04-09 21:50 . 2012-04-09 21:50 6829568 c:\windows\Installer\64b4c27.msp
+ 2012-03-20 03:02 . 2012-03-20 03:02 6695936 c:\windows\Installer\64b4bfe.msp
+ 2011-10-31 17:37 . 2011-10-31 17:37 4146688 c:\windows\Installer\64b4bd5.msp
+ 2011-11-01 18:34 . 2011-11-01 18:34 2531840 c:\windows\Installer\64b4ba9.msp
+ 2010-08-25 22:06 . 2010-08-25 22:06 6479360 c:\windows\Installer\64b4b4b.msp
+ 2012-02-17 13:45 . 2012-02-17 13:45 2299392 c:\windows\Installer\64b4b22.msp
+ 2012-04-17 17:11 . 2012-04-17 17:11 7681024 c:\windows\Installer\64b4b16.msp
+ 2012-06-29 19:33 . 2012-06-29 19:33 6063616 c:\windows\Installer\64b4aed.msp
+ 2012-06-09 17:34 . 2012-06-09 17:34 5342208 c:\windows\Installer\5dc7987.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 1642496 c:\windows\Installer\5dc7931.msi
+ 2012-06-09 17:33 . 2012-06-09 17:33 2398720 c:\windows\Installer\5dc791d.msi
+ 2010-03-30 17:34 . 2010-03-30 17:34 3826688 c:\windows\Installer\4e47c.msp
+ 2009-10-16 23:07 . 2009-10-16 23:07 6115328 c:\windows\Installer\4717f.msp
+ 2008-01-14 21:53 . 2008-01-14 21:53 5213696 c:\windows\Installer\47157.msp
+ 2011-05-17 23:28 . 2011-05-17 23:28 6862848 c:\windows\Installer\4712f.msp
+ 2012-04-05 03:38 . 2012-04-05 03:38 3620864 c:\windows\Installer\47106.msp
+ 2011-11-01 18:34 . 2011-11-01 18:34 1169920 c:\windows\Installer\470f9.msp
+ 2008-10-25 14:15 . 2008-10-25 14:15 6227456 c:\windows\Installer\470ec.msp
+ 2011-01-15 14:46 . 2011-01-15 14:46 2049536 c:\windows\Installer\413588f.msi
+ 2011-05-23 19:15 . 2011-05-23 19:15 3617792 c:\windows\Installer\4135888.msp
+ 2009-04-14 09:49 . 2009-04-14 09:49 1922560 c:\windows\Installer\330fcfb.msp
+ 2008-09-04 20:52 . 2008-09-04 20:52 4337664 c:\windows\Installer\330fccd.msp
+ 2010-08-09 21:44 . 2010-08-09 21:44 3778048 c:\windows\Installer\330fcc1.msp
+ 2006-03-28 20:37 . 2006-03-28 20:37 6956032 c:\windows\Installer\330fca7.msp
+ 2009-04-14 09:50 . 2009-04-14 09:50 5191680 c:\windows\Installer\330fc8c.msp
+ 2012-06-08 04:57 . 2012-06-08 04:57 5923328 c:\windows\Installer\2598312.msi
+ 2001-03-07 22:25 . 2001-03-07 22:25 1884160 c:\windows\Installer\223fb7c.msi
+ 2012-06-19 01:38 . 2012-06-19 01:38 2871808 c:\windows\Installer\21050c0.msi
+ 2012-04-23 03:46 . 2012-04-23 03:46 1187328 c:\windows\Installer\1da97c6.msp
+ 2009-04-14 09:51 . 2009-04-14 09:51 1303040 c:\windows\Installer\1da97bd.msp
+ 2012-03-15 19:26 . 2012-03-15 19:26 4212736 c:\windows\Installer\1da97b6.msp
+ 2009-02-26 00:08 . 2009-02-26 00:08 8311808 c:\windows\Installer\1da97ad.msp
+ 2006-02-27 21:31 . 2006-02-27 21:31 1269248 c:\windows\Installer\1da97a1.msp
+ 2006-08-29 22:50 . 2006-08-29 22:50 3210240 c:\windows\Installer\1da9795.msp
+ 2012-04-27 20:09 . 2012-04-27 20:09 5521408 c:\windows\Installer\1da9616.msp
+ 2011-09-15 23:40 . 2011-09-15 23:40 7959552 c:\windows\Installer\1da95ee.msp
+ 2011-09-15 23:34 . 2011-09-15 23:34 8499712 c:\windows\Installer\1da95d0.msp
+ 2009-08-20 20:27 . 2009-08-20 20:27 3622400 c:\windows\Installer\1da94f3.msp
+ 2001-01-23 00:39 . 2001-01-23 00:39 2498560 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\VBE6.DLL
+ 2001-02-15 02:45 . 2001-02-15 02:45 1318912 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\MSONSEXT.DLL
+ 1999-10-18 00:01 . 1999-10-18 00:01 1129232 c:\windows\Installer\$PatchCache$\Managed\9040910900063D11C8EF00054038389C\10.0.2627\FM20.DLL
+ 2007-04-19 18:49 . 2007-04-19 18:49 1661280 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\PPTVIEW.EXE
+ 2007-05-31 18:35 . 2007-05-31 18:35 6420320 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\POWERPNT.EXE
+ 2007-05-10 18:45 . 2007-05-10 18:45 8069464 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OWC11.DLL
+ 2007-03-14 18:10 . 2007-03-14 18:10 7255384 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OWC10.DLL
+ 2007-05-31 18:43 . 2007-05-31 18:43 7613280 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OUTLLIB.DLL
+ 2007-04-19 19:09 . 2007-04-19 19:09 1061720 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\OMFC.DLL
+ 2007-05-10 18:35 . 2007-05-10 18:35 6747480 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MSPUB.EXE
+ 2007-05-10 18:43 . 2007-05-10 18:43 6688096 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MSACCESS.EXE
+ 2007-04-30 19:57 . 2007-04-30 19:57 7084384 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\INFOPATH.EXE
+ 2003-04-30 16:52 . 2003-04-30 16:52 1581120 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\XPAGE3C.DLL
+ 2002-10-07 15:03 . 2002-10-07 15:03 1794113 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\XIMAGE3B.DLL
+ 2003-07-03 20:19 . 2003-07-03 20:19 2502656 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\VBE6.DLL
+ 2003-08-03 15:52 . 2003-08-03 15:52 2808376 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\STSLIST.DLL
+ 2003-07-31 20:21 . 2003-07-31 20:21 1782840 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\PPTVIEW.EXE
+ 2003-07-30 17:40 . 2003-07-30 17:40 6133312 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\POWERPNT.EXE
+ 2003-08-01 20:09 . 2003-08-01 20:09 8086072 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OWC11.DLL
+ 2003-08-04 18:19 . 2003-08-04 18:19 7330360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OWC10.DLL
+ 2003-08-10 04:06 . 2003-08-10 04:06 7522360 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLLIB.DLL
+ 2003-07-07 18:36 . 2003-07-07 18:36 2058343 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DAT
+ 2003-07-15 04:05 . 2003-07-15 04:05 1054264 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\OMFC.DLL
+ 2003-07-28 17:24 . 2003-07-28 17:24 5677112 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPUB.EXE
+ 2003-06-18 22:31 . 2003-06-18 22:31 1033216 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSPCORE.DLL
+ 2003-07-11 07:15 . 2003-07-11 07:15 1292872 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSONSEXT.DLL
+ 2002-12-18 00:09 . 2002-12-18 00:09 2071752 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSOLAP80.DLL
+ 2002-12-18 00:08 . 2002-12-18 00:08 1383592 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSDMINE.DLL
+ 2003-08-15 05:54 . 2003-08-15 05:54 6627392 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSACCESS.EXE
+ 2003-08-01 20:07 . 2003-08-01 20:07 4815424 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\INFOPATH.EXE
+ 2003-07-15 04:11 . 2003-07-15 04:11 2139192 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\GRAPH.EXE
+ 2003-07-26 00:00 . 2003-07-26 00:00 1157696 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPSRVUTL.DLL
+ 2003-07-24 04:01 . 2003-07-24 04:01 1949240 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\FPCUTL.DLL
+ 2012-06-08 05:31 . 2012-06-08 05:31 1100392 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\EXCELPIA.DLL
+ 2011-01-14 12:10 . 2011-01-14 12:10 2395008 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKWORD.DLL
+ 2011-01-14 12:10 . 2011-01-14 12:10 2180992 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKPOWERPOINT.DLL
+ 2011-01-14 12:10 . 2011-01-14 12:10 3443072 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKEXCEL.DLL
+ 2010-01-11 21:07 . 2010-01-11 21:07 2594632 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.6612\VBE6.DLL
+ 2011-07-07 07:58 . 2011-07-07 07:58 1616240 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.6612\OGL.DLL
+ 2006-10-26 19:05 . 2006-10-26 19:05 1181520 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\XIMAGE3B.DLL
+ 2006-09-30 05:42 . 2006-09-30 05:42 2583344 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\VBE6.DLL
+ 2006-10-27 01:25 . 2006-10-27 01:25 2172688 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\PSRCHFEA.DLL
+ 2006-09-15 21:25 . 2006-09-15 21:25 3611416 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OUTLFLTR.DAT
+ 2006-10-27 01:07 . 2006-10-27 01:07 6536992 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OSETUP.DLL
+ 2006-10-27 20:03 . 2006-10-27 20:03 6579512 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONMAIN.DLL
+ 2006-10-27 01:24 . 2006-10-27 01:24 1165112 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONLIBS.DLL
+ 2006-10-27 20:03 . 2006-10-27 20:03 1018664 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ONENOTE.EXE
+ 2006-10-27 20:18 . 2006-10-27 20:18 1658152 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OGL.DLL
+ 2006-10-27 01:14 . 2006-10-27 01:14 7033152 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OFFOWC.DLL
+ 2006-10-26 19:47 . 2006-10-26 19:47 1512304 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\NLSD0000.DLL
+ 2006-10-27 01:00 . 2006-10-27 01:00 6635320 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSORES.DLL
+ 2006-10-27 00:21 . 2006-10-27 00:21 1682232 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\FPSRVUTL.DLL
+ 2006-10-27 20:00 . 2006-10-27 20:00 1751904 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\ACECORE.DLL
+ 2012-06-28 08:25 . 2012-06-28 08:25 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\e286701acf74012d3aa4a21953f03b6b\WindowsBase.ni.dll
+ 2012-06-28 08:28 . 2012-06-28 08:28 5645824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Form#\950f64ba9fb22ca06c5b2b9cf6f5f4b4\System.Windows.Forms.DataVisualization.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 1467392 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Printing\d2de16284459454472a6875185c64d08\System.Printing.ni.dll
+ 2012-06-28 08:26 . 2012-06-28 08:26 2305024 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\1225ef41527a975de83f22328d0a3b93\System.Drawing.ni.dll
+ 2012-06-28 08:26 . 2012-06-28 08:26 2403328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\ad9ff5d55f7ea22e80c39e0ff0240984\System.Deployment.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 5048832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\707f90689caf41ad429bf3ad373503cb\System.Activities.Presentation.ni.dll
+ 2012-06-28 08:27 . 2012-06-28 08:27 4233216 c:\windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\16c9569b75a9f47c38b60ba733936e1a\ReachFramework.ni.dll
+ 2012-06-28 08:26 . 2012-06-28 08:26 2056704 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\9c3d6b3ddef66cac069b6ab1fec514f8\PresentationUI.ni.dll
+ 2012-06-28 08:25 . 2012-06-28 08:25 1843712 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\e4d308f69077903e24de92fe4fc06d29\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-06-28 08:25 . 2012-06-28 08:25 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\70e2694fe050bd480b9f61f935ca2da5\Microsoft.VisualBasic.ni.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 3858432 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\21f37f9f5162af7efb52169012bd111e\WindowsBase.ni.dll
+ 2012-06-28 08:31 . 2012-06-28 08:31 4587008 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\7f0476e4df01ca2219f7db531408e91c\System.Windows.Forms.DataVisualization.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 1060864 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Printing\f87f8bc0bc9563096150f23f6c220e7b\System.Printing.ni.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 1666048 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\8c40f40ef36622109793788049fbe9ab\System.Drawing.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 1880064 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\e899cda47704280f54949c69b78c55cc\System.Deployment.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 3757568 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\36299fad6b7b591cfb6bd9e50dbd33df\System.Activities.Presentation.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 2906624 c:\windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\442af6f7c8b447bdec3ad8d23da89c5a\ReachFramework.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 1641984 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\cf455da9b8fedf66767c1a7ab3eea9c9\PresentationUI.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 1139712 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\2ed0173a2e75b1a3943bd2d96649a50c\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-06-28 08:30 . 2012-06-28 08:30 1838080 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\09c2f8f606e09d85cfe6e0ad89fbe729\Microsoft.VisualBasic.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\e9007661281ebb2076dda1568381ae25\System.WorkflowServices.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\70cc5e8a5a3372fe0b104c1b20392cd2\System.WorkflowServices.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 2711040 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\aa638ba79250284eb4af4adaa4a4117b\System.Workflow.Runtime.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\996dc2af3b9e5c111130935f298908c6\System.Workflow.ComponentModel.ni.dll
+ 2012-06-28 08:08 . 2012-06-28 08:08 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\3bdad8116f2d3b81552cc1f8b028aa6e\System.Workflow.ComponentModel.ni.dll
+ 2012-06-28 08:07 . 2012-06-28 08:07 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\ef43c05e15a8efb4ced6445d1ea35c86\System.Workflow.Activities.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\178797db84abae2eeaed835bd28ca52c\System.Workflow.Activities.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 2292224 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\a32734087cd0db5607d5744ca63235d7\System.Web.Services.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\d20ebdf7ee8b54cd324a0bc8d062259d\System.Web.Mobile.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\af7689e8cbec5d2755497be23c30e293\System.Web.Mobile.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\fe6df807f6b3184c209e371c885694be\System.Web.Extensions.Design.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\9641252211cf6ab01a5bde58c5f7dba1\System.Web.Extensions.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\768ea257d75839979b4efb2d49d653f6\System.Web.Extensions.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\2c47bc5d426a7cf9ffef1425eda08184\System.Web.Extensions.Design.ni.dll
+ 2012-06-28 08:05 . 2012-06-28 08:05 1463808 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\b964519964d302b4977e1380d8d15f1a\System.Printing.ni.dll
+ 2012-06-28 08:02 . 2012-06-28 08:02 2318848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\222eb8aa336953a6b0216db2b0c4770d\System.Drawing.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 2444288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\6e4e9b07f376d445df1718c0011fa99b\System.Deployment.ni.dll
+ 2012-06-28 08:02 . 2012-06-28 08:02 2444288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\052d9ef010e4ff1dd46772a8671a7dc1\System.Deployment.ni.dll
+ 2012-06-28 08:05 . 2012-06-28 08:05 3116032 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\1f88a3693c8ddd527a130aff49dc58b3\ReachFramework.ni.dll
+ 2012-06-28 08:39 . 2012-06-28 08:39 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\b91c32fab08ba62d8c7681cc596895be\PresentationUI.ni.dll
+ 2012-06-28 08:04 . 2012-06-28 08:04 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\210745b8ab0d0efb287eec496271c7db\PresentationUI.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 4402688 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet\a4ddd54d44e4134c0d2169e94c037271\PaintDotNet.ni.exe
+ 2012-06-28 08:14 . 2012-06-28 08:14 4402688 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet\2e9b8a4af1b363a06c934d1ce7a22732\PaintDotNet.ni.exe
+ 2012-06-28 08:43 . 2012-06-28 08:43 1327616 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.SystemL#\b8f5e6e7790ee08e491b48681b2a4982\PaintDotNet.SystemLayer.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 1327616 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.SystemL#\819028d2ec862f329d350e36925a3b80\PaintDotNet.SystemLayer.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 1070080 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Effects\94f2362903f65f83f657ce0255a0fd23\PaintDotNet.Effects.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 1070080 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Effects\06b0865033d9933fc2efba8d0afb3a4b\PaintDotNet.Effects.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 2722816 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Core\dd1a868664b7a83305d3654ef3305805\PaintDotNet.Core.ni.dll
+ 2012-06-28 08:14 . 2012-06-28 08:14 2722816 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Core\56f2ebad5feaa76bee02eac88a3f14f4\PaintDotNet.Core.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 1171968 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Base\c5a848fa54da67757273ce5f871bbe7d\PaintDotNet.Base.ni.dll
+ 2012-06-28 08:13 . 2012-06-28 08:13 1171968 c:\windows\assembly\NativeImages_v2.0.50727_64\PaintDotNet.Base\51ead8085a776e2eb77ce08be1e3a4ff\PaintDotNet.Base.ni.dll
+ 2012-06-28 08:45 . 2012-06-28 08:45 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\ac1ba76ed19d668ce53a74593f040453\Narrator.ni.exe
+ 2012-06-28 08:24 . 2012-06-28 08:24 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\6161ff72aad572608d6459db4375921b\Narrator.ni.exe
+ 2012-06-28 08:45 . 2012-06-28 08:45 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\df2557ab1b8e4389d846e13dc82eba57\MMCEx.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\1c52385da78998a8c3be3cae7a148e65\MMCEx.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\61812970c4743b686a67f28687e1dcb6\MIGUIControls.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\2e77de04de7574b9c1bf56cfcb31af68\MIGUIControls.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 3653120 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\e4709b5e9f074da85fe2002a27560092\Microsoft.Web.Management.ni.dll
+ 2012-06-28 08:24 . 2012-06-28 08:24 5541888 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\a490ca95f512e9965566cb1c0b8c2219\Microsoft.Web.Management.IisClient.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 1620480 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\9f15f6a08a6682e1952d895a98e01ffc\Microsoft.Web.Management.AspnetClient.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 5541888 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\876a0d14527a5c8941d0e97de61c2767\Microsoft.Web.Management.IisClient.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 1373696 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\6bfe2d64df88089e29cbaa3cce82abbb\Microsoft.Web.Management.FtpClient.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 1620480 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\3349dfcd08f52cf98aee55014e476b16\Microsoft.Web.Management.AspnetClient.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 1373696 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\2bbce44009109cd686f0e41d90b06a89\Microsoft.Web.Management.FtpClient.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 3653120 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Web.Manag#\070b15efe30dbde71014f445e228f1cb\Microsoft.Web.Management.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\ed3dbcc90dcd37ed6067aa66280e979e\Microsoft.VisualBasic.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\1586ee919f86130df9771cf9b8d95d3a\Microsoft.VisualBasic.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ca7e936eed0de2436d87b2601ee3a20a\Microsoft.PowerShell.Editor.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 2176512 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6caa366471176a065a96d77e8ba01eeb\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\679baf265ca0c434c5b9b01dbeb3dd49\Microsoft.PowerShell.Editor.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3040e2de07177c0a6a66a49de61fdc59\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-06-28 08:15 . 2012-06-28 08:15 1516544 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\b2afc0af3d89ae00e973b4e6e9db382c\Microsoft.MediaCenter.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\73bfbdccdc1b0ae87f70a0ec594fee3c\Microsoft.MediaCenter.Bml.ni.dll
+ 2012-06-28 08:15 . 2012-06-28 08:15 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\653e1ee01f10d658d52ca42e17e74283\Microsoft.MediaCenter.UI.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4a0761608a0c0af58bd3b17bc8aba2d8\Microsoft.MediaCenter.Bml.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\dac69844e6333484159a4cf544190906\Microsoft.Ink.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\1dfd6aa34b61f94f3222d1ac306ee08e\Microsoft.Ink.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\c61d2050ddb9370ec88f7e0a40e6ec83\Microsoft.Build.Tasks.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4b362e9e25c33e371f06403edec8849a\Microsoft.Build.Tasks.ni.dll
+ 2012-06-28 08:44 . 2012-06-28 08:44 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\33730d136a34d2f4e56a0322f49ee9b6\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-06-28 08:23 . 2012-06-28 08:23 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\0930c9203145895378b3f948ddbd0640\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-06-28 08:15 . 2012-06-28 08:15 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\f5cb40bc7bce93175c5775bed1018c1f\mcstore.ni.dll
+ 2012-06-28 08:43 . 2012-06-28 08:43 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\cc4844e7242c1e35d145bf2439f944c5\mcstore.ni.dll
+ 2012-06-28 08:16 . 2012-06-28 08:16 2184192 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\cdad46cd58389f53308b735e6f29ce1f\ehiVidCtl.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 7026176 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\d3ded9525743f5484dd86c7806ec5553\WindowsLive.Writer.PostEditor.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 2193408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\bb47137b3e002d82dc7c9f97eeec2c93\WindowsLive.Writer.CoreServices.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 1285632 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7605419cce72fcf91bb7dbc31ebbbca5\WindowsLive.Writer.ApplicationFramework.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 1346560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\328780f2db847d458362c28dfcb62bcd\WindowsLive.Writer.Localization.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1358336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\e3e5aa45736b95804bf6bb7eca08a57b\System.WorkflowServices.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 1917952 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\88bfc62ac0195a8ae673c444a3339505\System.Workflow.Runtime.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 4516352 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\cfb739be21092d5b8f7b4fde529e6aaa\System.Workflow.ComponentModel.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 2994688 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\a815fffab98375c1919df68b5b292725\System.Workflow.Activities.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\761fd1afc17f11bf6d49c3a7d16465ca\System.Web.Services.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 2209792 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\4a90802e36dee6e10d9bf54832cbf549\System.Web.Mobile.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 2404352 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\c45efc7ec92c1da8e67eb597559ec39c\System.Web.Extensions.ni.dll
+ 2012-06-28 08:13 . 2012-06-28 08:13 1044480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\991dbe40be5b114ed705bb5b48e6b330\System.Printing.ni.dll
+ 2012-06-28 08:13 . 2012-06-28 08:13 1591808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6bb439b3f87736d3248ae27d43e2c0d6\System.Drawing.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 1806848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\3421b96c2885b8e4137a376ff3d95fa5\System.Deployment.ni.dll
+ 2012-06-28 08:13 . 2012-06-28 08:13 2157056 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\87f73de6e080d37be93adfc7d5c31d7a\ReachFramework.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\163517c8a195fb48f7ef6ee17c585bdb\PresentationUI.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\17add09c98fa34255142d42697db53df\Narrator.ni.exe
+ 2012-06-28 08:42 . 2012-06-28 08:42 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\21abde8efab609732b2ade3f05234e79\MMCEx.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 6438912 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\0e7da0df83f0619e3b0e0a7d7ee05fa3\MIGUIControls.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1239040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Web.Manag#\d5eb26e6fc1be26e557ac662e95f048a\Microsoft.Web.Management.AspnetClient.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 4264448 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Web.Manag#\b950867f1ecbe95142505985cc2de087\Microsoft.Web.Management.IisClient.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1064960 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Web.Manag#\60747d3c701178c11a5a9e9f608e15d8\Microsoft.Web.Management.FtpClient.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 2690560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Web.Manag#\011aba7ec73dc43584406da8bfaf4ed6\Microsoft.Web.Management.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\6c59a14a23f734093e80d6093e25302a\Microsoft.VisualBasic.ni.dll
+ 2012-06-28 08:29 . 2012-06-28 08:29 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\99ae5f32cd1dc3618659bc3c77f2b2a9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1704960 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\77b5496d214dd5034294b058c0bb0e8d\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\72765e5fab12761eb6d3f58180fa34d7\Microsoft.PowerShell.Editor.ni.dll
+ 2012-06-28 08:29 . 2012-06-28 08:29 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\8ce1d10f94b40f054017865757552f2d\Microsoft.MediaCenter.UI.ni.dll
+ 2012-06-28 08:28 . 2012-06-28 08:28 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\7fab1ec8f5ed6a55a8a73b2c590bd7cd\Microsoft.MediaCenter.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\4d381048e3b9c0914c0f72c6aa0a599d\Microsoft.Ink.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\3893fa9a19b52dee8b2cc424840d5d08\Microsoft.Build.Tasks.ni.dll
+ 2012-06-28 08:42 . 2012-06-28 08:42 1970176 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\1d2250044b1ecff755e26ed12f6d27cb\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\3a4e56a8d1075cf0af0619c383b3e592\mcstore.ni.dll
+ 2012-06-27 12:55 . 2012-03-21 22:32 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2012-05-23 02:59 . 2012-01-04 02:51 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-06-27 12:55 . 2012-03-21 22:32 4927488 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2010-11-21 03:24 . 2010-11-21 03:24 4927488 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 1103248 c:\windows\assembly\GAC\Microsoft.Office.Interop.Excel\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 1000848 c:\windows\assembly\GAC\Microsoft.Office.Interop.Access\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 8007680 c:\windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
+ 2012-06-09 17:35 . 2012-06-09 17:35 1215328 c:\windows\assembly\GAC\IACore\1.7.6223.0__31bf3856ad364e35\IACore.dll
+ 2012-07-16 19:01 . 2012-06-09 04:41 12873728 c:\windows\SysWOW64\shell32.dll
+ 2012-06-27 12:56 . 2012-04-20 04:56 11020800 c:\windows\SysWOW64\ieframe.dll
+ 2009-07-14 02:34 . 2012-07-17 18:14 10485760 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2012-06-27 12:56 . 2012-04-20 05:42 12297216 c:\windows\system32\ieframe.dll
+ 2012-03-21 03:43 . 2012-08-07 18:36 15462480 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-4166229290-1685211620-4260776656-1007-8192.dat
+ 2011-07-26 21:33 . 2011-07-26 21:33 10984448 c:\windows\Installer\64b4d39.msp
+ 2010-06-11 22:52 . 2010-06-11 22:52 45542912 c:\windows\Installer\64b4d10.msp
+ 2009-07-01 18:19 . 2009-07-01 18:19 10607104 c:\windows\Installer\64b4cd1.msp
+ 2012-03-28 23:10 . 2012-03-28 23:10 12098048 c:\windows\Installer\64b4b9c.msp
+ 2004-01-30 08:19 . 2004-01-30 08:19 56269996 c:\windows\Installer\419a8f6.msp
+ 2008-09-24 17:05 . 2008-09-24 17:05 16381440 c:\windows\Installer\330fce8.msp
+ 2011-09-15 23:39 . 2011-09-15 23:39 11163136 c:\windows\Installer\1da95e5.msp
+ 2011-09-15 23:38 . 2011-09-15 23:38 10838528 c:\windows\Installer\1da95da.msp
+ 2011-09-15 23:37 . 2011-09-15 23:37 34428416 c:\windows\Installer\1da952d.msp
+ 2011-09-15 23:37 . 2011-09-15 23:37 16691712 c:\windows\Installer\1da94f9.msp
+ 2012-06-28 04:59 . 2012-06-28 04:59 21707776 c:\windows\Installer\135f893.msi
+ 2007-05-31 18:37 . 2007-05-31 18:37 12310368 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\WINWORD.EXE
+ 2007-06-18 22:16 . 2007-06-18 22:16 12259160 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\MSO.DLL
+ 2007-05-31 18:41 . 2007-05-31 18:41 10352472 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.8173\EXCEL.EXE
+ 2003-08-06 18:24 . 2003-08-06 18:24 12037688 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\WINWORD.EXE
+ 2003-08-08 05:23 . 2003-08-08 05:23 12172336 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\MSO.DLL
+ 2003-08-13 07:34 . 2003-08-13 07:34 10073144 c:\windows\Installer\$PatchCache$\Managed\90403E1900063D11C8EF10054038389C\11.0.5614\EXCEL.EXE
+ 2006-10-27 20:14 . 2006-10-27 20:14 14151456 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\OART.DLL
+ 2006-10-27 20:26 . 2006-10-27 20:26 16870712 c:\windows\Installer\$PatchCache$\Managed\000021191A0000000000000000F01FEC\12.0.4518\MSO.DLL
+ 2012-06-28 08:27 . 2012-06-28 08:27 17355264 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\e883d90a0210bf99ca88f3b4ade53a24\System.Windows.Forms.ni.dll
+ 2012-06-28 08:26 . 2012-06-28 08:26 24407552 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\a3c3789d54894008501ce5891f1eeb40\PresentationFramework.ni.dll
+ 2012-06-28 08:26 . 2012-06-28 08:26 15908864 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\9d69a7a407bbc43a1bcb2da603af5840\PresentationCore.ni.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 13198336 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\3971e166cf827b6726e142f344061dc9\System.Windows.Forms.ni.dll
+ 2012-06-28 08:19 . 2012-06-28 08:19 18000896 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\199683f6e79076b634ee6cc0a82c0654\PresentationFramework.ni.dll
+ 2012-06-28 08:18 . 2012-06-28 08:18 11451904 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\e7dc084827f8df2dbdc819db5c633a0d\PresentationCore.ni.dll
+ 2012-06-28 08:03 . 2012-06-28 08:03 17379840 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\f0d2181352f262008abe7593454194d8\System.Windows.Forms.ni.dll
+ 2012-06-28 08:39 . 2012-06-28 08:39 17383424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\dc5bb74eefdbf954cdfb70dd534d5564\System.Windows.Forms.ni.dll
+ 2012-06-28 08:39 . 2012-06-28 08:39 15270912 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web\95f38e7485bbe2b73b6055c45196fedd\System.Web.ni.dll
+ 2012-06-28 08:05 . 2012-06-28 08:06 15270912 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web\25d1a444d4ec79a2facc05adf9cd43c1\System.Web.ni.dll
+ 2012-06-28 08:40 . 2012-06-28 08:40 13609472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Design\582144c0ee317038621aebc626187b56\System.Design.ni.dll
+ 2012-06-28 08:06 . 2012-06-28 08:06 13609472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Design\15c75736fbf675454ba78309edeb01ee\System.Design.ni.dll
+ 2012-06-28 08:04 . 2012-06-28 08:04 19198464 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\47054c4d5b7e522c21a9d57797410302\PresentationFramework.ni.dll
+ 2012-06-28 08:02 . 2012-06-28 08:02 16543232 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\3a9d13514a8c4c710fa5ce8e9b5393fe\PresentationCore.ni.dll
+ 2012-06-28 08:22 . 2012-06-28 08:22 25470976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\0c1f96a4136efe532bbb8eb91d3de300\ehshell.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 12436480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\7b7fbe651c6e72f12099a298654c9594\System.Windows.Forms.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 11833344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\a501b7960f6c6e2e39162b83f3303aaa\System.Web.ni.dll
+ 2012-06-28 08:38 . 2012-06-28 08:38 10580480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\7c144f89b1f8f292d6940a1b2f8ffbec\System.Design.ni.dll
+ 2012-06-28 08:41 . 2012-06-28 08:41 11600384 c:\windows\assembly\NativeImages_v2.0.50727_32\SmartAudio\fddf8ddb4a9d9eccfe0358c97089daa7\SmartAudio.ni.exe
+ 2012-06-28 08:12 . 2012-06-28 08:12 14340608 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\e717a230496832656b05b515eb9f3bc5\PresentationFramework.ni.dll
+ 2012-06-28 08:09 . 2012-06-28 08:09 12237824 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\14a87218ea49639f38097e278b98a3da\PresentationCore.ni.dll
+ 2007-07-27 14:03 . 2007-07-27 14:03 119977472 c:\windows\Installer\1da9788.msp
+ 2011-09-15 23:34 . 2011-09-15 23:34 428804608 c:\windows\Installer\1da95c2.msp
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-08-06 16:04 2074208 ----a-w- c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-08-06 2074208]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 94208 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"TSleepSrv"="c:\program files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe" [2010-06-04 252792]
"AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-01-24 2416480]
"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-08-06 1107552]
"HF_G_Jul"="c:\program files (x86)\AVG Secure Search\HF_G_Jul.exe" [2012-07-18 36960]
"{9ABA99F9-A8FE-7E89-8E99-AE8b85E9AE9B}"="c:\program files (x86)\Cricket Broadband Connect\AvqAutoRun.exe" [2009-10-19 73728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-07 136176]
R2 Norton PC Checkup Application Launcher;Toshiba Laptop Checkup Application Launcher;c:\program files (x86)\Norton PC Checkup\Engine\2.0.10.26\SymcPCCULaunchSvc.exe [x]
R2 PCCUJobMgr;Common Client Job Manager Service;c:\program files (x86)\Norton PC Checkup\Engine\2.0.10.26\ccSvcHst.exe [x]
R3 ACTSBUS;ACTScom USB Composite Device Driver;c:\windows\system32\DRIVERS\ACTSBUS.sys [x]
R3 ACTSCVsp;ACTScom CM Port;c:\windows\system32\DRIVERS\ACTSCVsp.sys [x]
R3 ACTSMBMP;ACTScom Mobile Broadbnad;c:\windows\system32\DRIVERS\ACTSMBMP.sys [x]
R3 ACTSMdm;ACTScom Modem;c:\windows\system32\DRIVERS\ACTSMdm.sys [x]
R3 ACTSNVsp;ACTScom NMEA Port;c:\windows\system32\DRIVERS\ACTSNVsp.sys [x]
R3 ACTSRMNET;ACTScom RMNET Service;c:\windows\system32\DRIVERS\ACTSRMNET.sys [x]
R3 ACTSVsp;ACTScom DM Port;c:\windows\system32\DRIVERS\ACTSVsp.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-05-11 99384]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-07 136176]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-29 113120]
R3 netr28ux;RT2870 USB Wireless LAN Card Driver for Vista;c:\windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
R3 PTUMWCDF;PANTECH USB Modem V2 Installation CD;c:\windows\system32\DRIVERS\PTUMWCDF.sys [2009-10-27 24976]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-12-01 250984]
R3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RTSUVSTOR.sys [2010-11-30 307304]
R3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;c:\windows\system32\DRIVERS\RTL8192su.sys [2009-08-20 664576]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-05-11 203320]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-02-15 52736]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-01-04 1255736]
R4 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R4 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-02-11 54136]
R4 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe [2011-03-02 266680]
R4 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
R4 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [2010-12-21 822704]
R4 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 26704]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2011-09-13 37456]
S0 tos_sps64;TOSHIBA tos_sps64 Service;c:\windows\system32\DRIVERS\tos_sps64.sys [2009-06-24 482384]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys [2011-05-23 48992]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2011-10-07 283728]
S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-08-08 46672]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2011-07-11 375376]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2012\avgfws.exe [2011-11-23 2391832]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-02-09 2143552]
S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-20 14472]
S2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [2012-08-06 935008]
S2 WlanWpsSvc;WlanWpsSvc;c:\program files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe [2008-06-27 167936]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 120400]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 29776]
S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2010-11-08 76912]
S3 MEIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [2011-02-09 38096]
S3 PTUMWBus;PANTECH USB Modem V2 Composite Device Driver;c:\windows\system32\DRIVERS\PTUMWBus.sys [2009-10-27 71056]
S3 PTUMWFLT;PTUMWNET Filter Driver;c:\windows\system32\DRIVERS\PTUMWFLT.sys [2009-10-27 12688]
S3 PTUMWMdm;PANTECH USB Modem V2 Modem Driver;c:\windows\system32\DRIVERS\PTUMWMdm.sys [2009-10-27 173456]
S3 PTUMWNET;PANTECH USB Modem V2 WWAN Driver;c:\windows\system32\DRIVERS\PTUMWNET.sys [2009-10-27 144912]
S3 PTUMWVsp;PANTECH USB Modem V2 Diagnostic Port;c:\windows\system32\DRIVERS\PTUMWVsp.sys [2009-10-27 173456]
S3 QIOMem;Generic IO & Memory Access;c:\windows\system32\DRIVERS\QIOMem.sys [2009-06-15 12800]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\DRIVERS\rtl8192Ce.sys [2011-01-05 1109096]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2012-02-09 11856]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-07 17:50]
.
2012-08-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-07 17:50]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-15 00:32 97792 ----a-w- c:\users\me\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-08 167256]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-08 391000]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-08 418136]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2011-03-02 566696]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2010-09-25 296824]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"Teco"="c:\program files\TOSHIBA\TECO\Teco.exe" [2011-03-02 1520552]
"TosWaitSrv"="c:\program files\TOSHIBA\TPHM\TosWaitSrv.exe" [2010-12-21 711576]
"TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376]
"TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-12-08 710040]
"TosReelTimeMonitor"="c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe" [BU]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com/ig
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: Interfaces\{3C8BA29F-8F88-481E-A27D-8E3E0B68DF82}: NameServer = 10.133.20.11 10.132.20.11
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll
FF - ProfilePath - c:\users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\
FF - prefs.js: browser.startup.homepage - hxxps://mail.google.com/mail/u/0/h/1lmvcm1n5slyn/|http://www.thewesternstoreok.com/|https://westernstore.myshopify.com/admin/products|http://www.ebay.com/?ssPageName=ADME:B:TB1:US:1|http://us.mg5.mail.yahoo.com/neo/launch#/minty/page/inbox|https://mail.google.com/mail/u/0/?shva=1#inbox
.
- - - - ORPHANS REMOVED - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\services\PCCUJobMgr]
"ImagePath"="\"c:\program files (x86)\Norton PC Checkup\Engine\2.0.10.26\ccSvcHst.exe\" /s \"PCCUJobMgr\" /m \"c:\program files (x86)\Norton PC Checkup\Engine\2.0.10.26\diMaster.dll\" /prefetch:1"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000001
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-08-07 14:18:29
ComboFix-quarantined-files.txt 2012-08-07 19:18
ComboFix2.txt 2012-06-03 17:26
.
Pre-Run: 544,073,605,120 bytes free
Post-Run: 543,516,631,040 bytes free
.
- - End Of File - - 8FC4073829A04AEBAF6E24640E5BA262
  • 0

#14
blmadara

blmadara

    Trusted Helper

  • Malware Removal
  • 767 posts

and my computer is running faster however i have a problem with firefox. it keeps having a bar across the top that says i need plug ins. when i try to get them it says i don't need them but the bar won't go away.


Can you please take a screen shot of this and post it so I can take a look at it?
  • 0

#15
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP