Jump to content

Google redirects when using Firefox


Recommended Posts

Lately there have been a lot of redirects when I perform a Google search in Firefox. I am using Windows 7. I performed a Quick Scan with Malwarebytes and it did not detect anything. I'd appreciate any help you can give me!

Here are the DDS.txt and Attach.txt logs:

DDS.txt

Attach.txt

.

DDS (Ver_2011-08-26.01) - NTFSAMD64

Internet Explorer: 9.0.8112.16421

Run by Patty at 17:32:15 on 2012-05-17

Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3950.2092 [GMT -5:00]

.

AV: Microsoft Security Essentials *Enabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}

.

============== Running Processes ===============

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

c:\Program Files\Microsoft Security Client\MsMpEng.exe

C:\Windows\system32\atiesrxx.exe

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\atieclxx.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe

C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Windows\SysWOW64\DllHost.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\taskeng.exe

C:\Windows\system32\svchost.exe -k bthsvcs

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files\Sony\VAIO Power Management\SPMgr.exe

C:\Windows\system32\taskeng.exe

C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

C:\Program Files\Apoint\Apoint.exe

C:\Program Files\Apoint\ApMsgFwd.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\system32\SearchIndexer.exe

C:\Program Files\Apoint\Apntex.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Apoint\Apvfb.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\SysWOW64\RunDll32.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe

C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe

C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\system32\DllHost.exe

C:\Program Files (x86)\Sony\SmartWi Connection Utility\CCP.exe

C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files (x86)\Sony\SmartWi Connection Utility\ThirdPartyAppMgr.exe

C:\Program Files (x86)\Sony\SmartWi Connection Utility\PowerManager.exe

C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe

C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWi.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files\Sony\VAIO Care\VCPerfService.exe

C:\Program Files\Sony\VAIO Update Common\VUAgent.exe

C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Program Files\Sony\VAIO Power Management\SPMService.exe

C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe

C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe

C:\Program Files\Sony\VAIO Care\VCsystray.exe

C:\Program Files\Sony\VAIO Care\VCService.exe

C:\Program Files\Sony\VAIO Care\VCAgent.exe

C:\Windows\System32\vds.exe

C:\Program Files\Sony\VAIO Care\Admload.exe

C:\Program Files\Sony\VAIO Care\listener.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\SysWOW64\cmd.exe

C:\Windows\system32\conhost.exe

C:\Windows\SysWOW64\cscript.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\wbem\wmiprvse.exe

.

============== Pseudo HJT Report ===============

.

uSearch Bar = Preserve

uStart Page = hxxp://www.google.com/

uDefault_Page_URL = hxxp://sony.msn.com

uInternet Settings,ProxyOverride = *.local

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll"

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [Adobe Acrobat Speed Launcher] "c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"

mRun: [Acrobat Assistant 8.0] "c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"

mRun: [smartWiHelper] "C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWiHelper.exe" /WindowsStartup

mRun: [iSBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"

mRun: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe

mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume

mRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL

IE: {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - {BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} - c:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll

TCP: DhcpNameServer = 192.168.1.1 209.18.47.61 209.18.47.62

TCP: Interfaces\{198F0C01-C53B-4763-8787-736C4B97C334} : DhcpNameServer = 192.168.1.1 209.18.47.61 209.18.47.62

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO-X64: AcroIEHelperStub - No File

BHO-X64: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

BHO-X64: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

BHO-X64: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO-X64: SkypeIEPluginBHO - No File

BHO-X64: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO-X64: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

BHO-X64: SmartSelect - No File

TB-X64: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

TB-X64: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll"

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun-x64: [Adobe Acrobat Speed Launcher] "c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"

mRun-x64: [Acrobat Assistant 8.0] "c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"

mRun-x64: [smartWiHelper] "C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWiHelper.exe" /WindowsStartup

mRun-x64: [iSBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"

mRun-x64: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe

mRun-x64: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume

mRun-x64: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\Patty\AppData\Roaming\Mozilla\Firefox\Profiles\7zlqyqzx.default\

FF - plugin: C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

.

============= SERVICES / DRIVERS ===============

.

R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]

R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]

R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-1-10 13336]

R2 Oasis2Service;Oasis2Service;C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe [2012-2-9 53248]

R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2010-11-27 398176]

R2 rimspci;rimspci;C:\Windows\system32\drivers\rimssne64.sys --> C:\Windows\system32\drivers\rimssne64.sys [?]

R2 risdsnpe;risdsnpe;C:\Windows\system32\drivers\risdsne64.sys --> C:\Windows\system32\drivers\risdsne64.sys [?]

R2 SampleCollector;VAIO Care Performance Service;C:\Program Files\Sony\VAIO Care\VCPerfService.exe [2012-1-1 259192]

R2 uCamMonitor;CamMonitor;C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2012-1-1 104960]

R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-1-1 2320920]

R2 VAIO Power Management;VAIO Power Management;C:\Program Files\Sony\VAIO Power Management\SPMService.exe [2012-1-1 575856]

R2 VCFw;VAIO Content Folder Watcher;C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2010-9-27 864000]

R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]

R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]

R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys --> C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys [?]

R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]

R3 Impcd;Impcd;C:\Windows\system32\DRIVERS\Impcd.sys --> C:\Windows\system32\DRIVERS\Impcd.sys [?]

R3 SFEP;Sony Firmware Extension Parser;C:\Windows\system32\DRIVERS\SFEP.sys --> C:\Windows\system32\DRIVERS\SFEP.sys [?]

R3 SpfService;VAIO Entertainment Common Service;C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2010-6-7 304496]

R3 VCService;VCService;C:\Program Files\Sony\VAIO Care\VCService.exe [2012-1-1 44736]

R3 VUAgent;VUAgent;C:\Program Files\Sony\VAIO Update Common\VUAgent.exe [2011-10-27 1429608]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk62x64.sys --> C:\Windows\system32\DRIVERS\yk62x64.sys [?]

S2 BBSvc;BingBar Service;C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.EXE [2012-2-10 193816]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-9-6 169312]

S3 BBUpdate;BBUpdate;C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE [2012-2-10 240408]

S3 btwampfl;Bluetooth AMP USB Filter;C:\Windows\system32\drivers\btwampfl.sys --> C:\Windows\system32\drivers\btwampfl.sys [?]

S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]

S3 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]

S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-9-23 1493352]

S3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]

S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-16 129976]

S3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]

S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-3-26 291696]

S3 SOHCImp;VAIO Media plus Content Importer;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2010-6-21 108400]

S3 SOHDms;VAIO Media plus Digital Media Server;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2010-6-18 423280]

S3 SOHDs;VAIO Media plus Device Searcher;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2010-6-21 67952]

S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]

S3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2010-10-25 655088]

S3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2010-6-9 384880]

S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2010-10-25 101152]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]

S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\system32\DRIVERS\wdcsam64.sys --> C:\Windows\system32\DRIVERS\wdcsam64.sys [?]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]

.

=============== Created Last 30 ================

.

2012-05-17 18:19:41 8955792 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{85CF92C4-3D7C-4CE6-8D5D-26329069FEE7}\mpengine.dll

2012-05-17 18:12:57 -------- d-----w- C:\Users\Patty\AppData\Local\PackageAware

2012-05-17 17:45:14 -------- d-----w- C:\Users\Patty\AppData\Local\Google

2012-05-17 17:44:13 -------- d-----w- C:\ProgramData\AVAST Software

2012-05-17 17:44:13 -------- d-----w- C:\Program Files\AVAST Software

2012-05-16 16:37:38 8955792 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2012-05-12 03:25:57 -------- d-----w- C:\Program Files (x86)\VideoLAN

2012-05-12 03:22:56 -------- d-----w- C:\Users\Patty\AppData\Local\{34613859-AA1C-473B-ACF8-EB3F58E17969}

2012-05-10 08:16:05 936960 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 08:16:01 1732096 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL

2012-05-10 08:16:01 1393664 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll

2012-05-10 08:16:00 1367552 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 08:15:59 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll

2012-05-10 03:05:48 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll

2012-05-10 03:05:47 1541120 ----a-w- C:\Windows\System32\DWrite.dll

2012-05-10 03:05:47 1074176 ----a-w- C:\Windows\SysWow64\DWrite.dll

2012-05-10 03:05:46 902656 ----a-w- C:\Windows\System32\d2d1.dll

2012-05-10 03:05:46 320512 ----a-w- C:\Windows\System32\d3d10_1core.dll

2012-05-10 03:05:46 218624 ----a-w- C:\Windows\SysWow64\d3d10_1core.dll

2012-05-10 03:05:46 197120 ----a-w- C:\Windows\System32\d3d10_1.dll

2012-05-10 03:05:46 1837568 ----a-w- C:\Windows\System32\d3d10warp.dll

2012-05-10 03:05:46 161792 ----a-w- C:\Windows\SysWow64\d3d10_1.dll

2012-05-10 03:05:46 1170944 ----a-w- C:\Windows\SysWow64\d3d10warp.dll

2012-05-10 03:04:37 5504880 ----a-w- C:\Windows\System32\ntoskrnl.exe

2012-05-10 03:04:36 3143680 ----a-w- C:\Windows\System32\win32k.sys

2012-05-10 03:04:35 3958128 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe

2012-05-10 03:04:35 3902320 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe

2012-05-10 03:04:34 75632 ----a-w- C:\Windows\System32\drivers\partmgr.sys

2012-05-10 03:04:07 1895280 ----a-w- C:\Windows\System32\drivers\tcpip.sys

2012-05-07 00:00:48 -------- d-----w- C:\Program Files (x86)\ESET

2012-05-06 17:36:14 -------- d-sh--w- C:\$RECYCLE.BIN

2012-05-06 09:00:26 98816 ----a-w- C:\Windows\sed.exe

2012-05-06 09:00:26 518144 ----a-w- C:\Windows\SWREG.exe

2012-05-06 09:00:26 256000 ----a-w- C:\Windows\PEV.exe

2012-05-06 09:00:26 208896 ----a-w- C:\Windows\MBR.exe

2012-05-06 08:40:20 -------- d-----w- C:\ProgramData\HitmanPro

2012-05-06 04:21:30 -------- d-----w- C:\Program Files\iPod

2012-05-06 04:21:29 -------- d-----w- C:\Program Files\iTunes

2012-05-06 04:21:29 -------- d-----w- C:\Program Files (x86)\iTunes

2012-05-01 08:01:29 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client

.

==================== Find3M ====================

.

2012-04-04 20:56:40 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys

2012-03-21 01:44:12 98688 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys

2012-03-21 01:44:12 203888 ----a-w- C:\Windows\System32\drivers\MpFilter.sys

2012-03-01 06:54:38 22896 ----a-w- C:\Windows\System32\drivers\fs_rec.sys

2012-03-01 06:45:41 220672 ----a-w- C:\Windows\System32\wintrust.dll

2012-03-01 06:40:14 80896 ----a-w- C:\Windows\System32\imagehlp.dll

2012-03-01 06:35:16 5120 ----a-w- C:\Windows\System32\wmi.dll

2012-03-01 05:49:05 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll

2012-03-01 05:45:05 158720 ----a-w- C:\Windows\SysWow64\imagehlp.dll

2012-03-01 05:40:44 5120 ----a-w- C:\Windows\SysWow64\wmi.dll

2012-02-28 19:50:28 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2012-02-28 06:56:48 2311168 ----a-w- C:\Windows\System32\jscript9.dll

2012-02-28 06:49:56 1390080 ----a-w- C:\Windows\System32\wininet.dll

2012-02-28 06:48:57 1493504 ----a-w- C:\Windows\System32\inetcpl.cpl

2012-02-28 06:42:55 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

2012-02-28 01:18:55 1799168 ----a-w- C:\Windows\SysWow64\jscript9.dll

2012-02-28 01:11:21 1427456 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2012-02-28 01:11:07 1127424 ----a-w- C:\Windows\SysWow64\wininet.dll

2012-02-28 01:03:16 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

.

============= FINISH: 17:33:10.72 ===============

Link to post
Share on other sites

Hello crimsonclover and :welcome:! My name is Maniac and I will be glad to help you solve your malware problem.

Please note:

  • If you are a paying customer, you have the privilege to contact the help desk at support@malwarebytes.org or here (http://helpdesk.malwarebytes.org/home). If you choose this option to get help, please let me know.
  • I recommend you to keep the instructions I will be giving you so that they are available to you at any time. You can save them in a text file or print them.
  • Make sure you read all of the instructions and fixes thoroughly before continuing with them.
  • Follow my instructions strictly and don’t hesitate to stop and ask me if you have any questions.
  • Post your log files, don't attach them. Every log file should be copy/pasted in your next reply.

Please try to re-install your Mozilla Firefox and let me know.

http://support.mozilla.org/en-US/kb/Basic%20Troubleshooting#w_7-reinstall-firefox

Link to post
Share on other sites

That is useful information. Thanks!

BACKDOOR WARNING

One or more of the identified infections is known to use a backdoor.

This allows hackers to remotely control your computer, steal critical system information and download and execute files.

I would advice you to disconnect this PC from the Internet immediately. If you do any banking or other financial transactions on the PC or if it should contain any other sensitive information, please get to a known clean computer and change all passwords where applicable, and it would be wise to contact those same financial institutions to apprise them of your situation.

Though the infection has been identified and can be killed, because of it's backdoor functionality, your PC is very likely compromised and there is no way to be sure your computer can ever again be trusted. Many experts in the security community believe that once infected with this type of trojan, the best course of action would be a reformat and reinstall of the OS. Please read these for more information:

How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud?

When Should I Format, How Should I Reinstall

We can still clean this machine but I can't guarantee that it will be 100% secure afterwards. Let me know what you decide to do. If you decide to go through with the cleanup, please proceed with the following steps.

Step 1

Download the latest version of TDSSKiller from here and save it to your Desktop.

  1. Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
    tdss_1.jpg
  2. Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.
    tdss_2.jpg
  3. Click the Start Scan button.
    tdss_3.jpg
  4. If a suspicious object is detected, the default action will be Skip, click on Continue.
    tdss_4.jpg
  5. If malicious objects are found, they will show in the Scan results and offer three (3) options.
  6. Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
    tdss_5.jpg
  7. Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.

A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.

Step 2

  • Launch Malwarebytes' Anti-Malware
  • Go to Update tab and select Check for Updates. If an update is found, it will download and install the latest version.
  • Go to Scanner tab and select Perform Quick Scan, then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer,please do so immediately.

In your next reply, post the following log files:

  • TDSSKiller log
  • Malwarebytes' Anti-Malware log

Link to post
Share on other sites

The 'cure' option was not available in TDSSKiller, so I chose 'skip' as you advised:

17:46:15.0335 5300 TDSS rootkit removing tool 2.7.35.0 May 16 2012 07:37:57

17:46:15.0788 5300 ============================================================

17:46:15.0788 5300 Current date / time: 2012/05/18 17:46:15.0788

17:46:15.0788 5300 SystemInfo:

17:46:15.0788 5300

17:46:15.0788 5300 OS Version: 6.1.7600 ServicePack: 0.0

17:46:15.0788 5300 Product type: Workstation

17:46:15.0788 5300 ComputerName: PATTY-VAIO

17:46:15.0788 5300 UserName: Patty

17:46:15.0788 5300 Windows directory: C:\Windows

17:46:15.0788 5300 System windows directory: C:\Windows

17:46:15.0788 5300 Running under WOW64

17:46:15.0788 5300 Processor architecture: Intel x64

17:46:15.0788 5300 Number of processors: 4

17:46:15.0788 5300 Page size: 0x1000

17:46:15.0788 5300 Boot type: Normal boot

17:46:15.0788 5300 ============================================================

17:46:17.0410 5300 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

17:46:17.0691 5300 ============================================================

17:46:17.0691 5300 \Device\Harddisk0\DR0:

17:46:17.0691 5300 MBR partitions:

17:46:17.0691 5300 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1BE2000, BlocksNum 0x32000

17:46:17.0691 5300 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1C14000, BlocksNum 0x2381A000

17:46:17.0691 5300 ============================================================

17:46:17.0691 5300 C: <-> \Device\Harddisk0\DR0\Partition1

17:46:17.0691 5300 ============================================================

17:46:17.0691 5300 Initialize success

17:46:17.0691 5300 ============================================================

17:46:44.0835 7068 ============================================================

17:46:44.0835 7068 Scan started

17:46:44.0835 7068 Mode: Manual; SigCheck; TDLFS;

17:46:44.0835 7068 ============================================================

17:46:45.0225 7068 1394ohci (969c91060cbb5d17cb8440b5f78b4c51) C:\Windows\system32\drivers\1394ohci.sys

17:46:45.0366 7068 1394ohci - ok

17:46:45.0475 7068 ACDaemon (adc420616c501b45d26c0fd3ef1e54e4) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

17:46:45.0506 7068 ACDaemon - ok

17:46:45.0584 7068 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\drivers\ACPI.sys

17:46:45.0615 7068 ACPI - ok

17:46:45.0693 7068 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\drivers\acpipmi.sys

17:46:45.0802 7068 AcpiPmi - ok

17:46:45.0912 7068 AdobeActiveFileMonitor8.0 (4451cc2275b04043ec2bcc757af97291) c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe

17:46:45.0927 7068 AdobeActiveFileMonitor8.0 - ok

17:46:46.0021 7068 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys

17:46:46.0052 7068 adp94xx - ok

17:46:46.0130 7068 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys

17:46:46.0161 7068 adpahci - ok

17:46:46.0177 7068 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys

17:46:46.0192 7068 adpu320 - ok

17:46:46.0208 7068 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll

17:46:46.0255 7068 AeLookupSvc - ok

17:46:46.0333 7068 AFD (db9d6c6b2cd95a9ca414d045b627422e) C:\Windows\system32\drivers\afd.sys

17:46:46.0442 7068 AFD - ok

17:46:46.0473 7068 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys

17:46:46.0489 7068 agp440 - ok

17:46:46.0504 7068 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe

17:46:46.0536 7068 ALG - ok

17:46:46.0567 7068 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys

17:46:46.0582 7068 aliide - ok

17:46:46.0629 7068 AMD External Events Utility (3f9b03b72577a6a7405bf30801cbd159) C:\Windows\system32\atiesrxx.exe

17:46:46.0723 7068 AMD External Events Utility - ok

17:46:46.0738 7068 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys

17:46:46.0754 7068 amdide - ok

17:46:46.0801 7068 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys

17:46:46.0894 7068 AmdK8 - ok

17:46:47.0331 7068 amdkmdag (ea244a8b88de8b5986bf3b7903b063af) C:\Windows\system32\DRIVERS\atikmdag.sys

17:46:47.0612 7068 amdkmdag - ok

17:46:47.0784 7068 amdkmdap (dca6e341a4a7c31ea8a14c6166c9b249) C:\Windows\system32\DRIVERS\atikmpag.sys

17:46:47.0799 7068 amdkmdap - ok

17:46:47.0815 7068 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys

17:46:47.0877 7068 AmdPPM - ok

17:46:47.0955 7068 amdsata (ec7ebab00a4d8448bab68d1e49b4beb9) C:\Windows\system32\drivers\amdsata.sys

17:46:47.0971 7068 amdsata - ok

17:46:48.0033 7068 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys

17:46:48.0049 7068 amdsbs - ok

17:46:48.0064 7068 amdxata (db27766102c7bf7e95140a2aa81d042e) C:\Windows\system32\drivers\amdxata.sys

17:46:48.0064 7068 amdxata - ok

17:46:48.0158 7068 ApfiltrService (2d45f2dfbc3d8f53df7ebeffa8c9bc38) C:\Windows\system32\DRIVERS\Apfiltr.sys

17:46:48.0189 7068 ApfiltrService - ok

17:46:48.0252 7068 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys

17:46:48.0376 7068 AppID - ok

17:46:48.0408 7068 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll

17:46:48.0470 7068 AppIDSvc - ok

17:46:48.0517 7068 Appinfo (d065be66822847b7f127d1f90158376e) C:\Windows\System32\appinfo.dll

17:46:48.0626 7068 Appinfo - ok

17:46:48.0766 7068 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

17:46:48.0782 7068 Apple Mobile Device - ok

17:46:48.0860 7068 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys

17:46:48.0876 7068 arc - ok

17:46:48.0891 7068 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys

17:46:48.0907 7068 arcsas - ok

17:46:48.0922 7068 ArcSoftKsUFilter (c130bc4a51b1382b2be8e44579ec4c0a) C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys

17:46:48.0938 7068 ArcSoftKsUFilter - ok

17:46:48.0985 7068 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys

17:46:49.0032 7068 AsyncMac - ok

17:46:49.0063 7068 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys

17:46:49.0078 7068 atapi - ok

17:46:49.0234 7068 athr (cca705cdf038d5bc243203ce4416b345) C:\Windows\system32\DRIVERS\athrx.sys

17:46:49.0312 7068 athr - ok

17:46:49.0905 7068 atikmdag (ea244a8b88de8b5986bf3b7903b063af) C:\Windows\system32\DRIVERS\atikmdag.sys

17:46:49.0983 7068 atikmdag - ok

17:46:50.0170 7068 AudioEndpointBuilder (07721a77180edd4d39ccb865bf63c7fd) C:\Windows\System32\Audiosrv.dll

17:46:50.0326 7068 AudioEndpointBuilder - ok

17:46:50.0326 7068 AudioSrv (07721a77180edd4d39ccb865bf63c7fd) C:\Windows\System32\Audiosrv.dll

17:46:50.0373 7068 AudioSrv - ok

17:46:50.0436 7068 AxInstSV (b20b5fa5ca050e9926e4d1db81501b32) C:\Windows\System32\AxInstSV.dll

17:46:50.0529 7068 AxInstSV - ok

17:46:50.0623 7068 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys

17:46:50.0685 7068 b06bdrv - ok

17:46:50.0732 7068 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys

17:46:50.0794 7068 b57nd60a - ok

17:46:51.0044 7068 BBSvc (a2494901e7226b356b8c1005c45f1c5f) C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe

17:46:51.0075 7068 BBSvc - ok

17:46:51.0153 7068 BBUpdate (63b1cbbae4790b5bac98f01bf9449722) C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe

17:46:51.0169 7068 BBUpdate - ok

17:46:51.0216 7068 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll

17:46:51.0262 7068 BDESVC - ok

17:46:51.0309 7068 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys

17:46:51.0356 7068 Beep - ok

17:46:51.0450 7068 BFE (4992c609a6315671463e30f6512bc022) C:\Windows\System32\bfe.dll

17:46:51.0559 7068 BFE - ok

17:46:51.0637 7068 BITS (7f0c323fe3da28aa4aa1bda3f575707f) C:\Windows\system32\qmgr.dll

17:46:51.0762 7068 BITS - ok

17:46:51.0840 7068 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys

17:46:51.0902 7068 blbdrive - ok

17:46:52.0011 7068 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe

17:46:52.0027 7068 Bonjour Service - ok

17:46:52.0074 7068 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys

17:46:52.0167 7068 bowser - ok

17:46:52.0214 7068 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys

17:46:52.0276 7068 BrFiltLo - ok

17:46:52.0276 7068 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys

17:46:52.0308 7068 BrFiltUp - ok

17:46:52.0370 7068 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys

17:46:52.0448 7068 BridgeMP - ok

17:46:52.0510 7068 Browser (94fbc06f294d58d02361918418f996e3) C:\Windows\System32\browser.dll

17:46:52.0604 7068 Browser - ok

17:46:52.0651 7068 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys

17:46:52.0698 7068 Brserid - ok

17:46:52.0713 7068 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys

17:46:52.0744 7068 BrSerWdm - ok

17:46:52.0744 7068 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys

17:46:52.0791 7068 BrUsbMdm - ok

17:46:52.0791 7068 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys

17:46:52.0807 7068 BrUsbSer - ok

17:46:52.0869 7068 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\DRIVERS\BthEnum.sys

17:46:52.0963 7068 BthEnum - ok

17:46:53.0010 7068 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys

17:46:53.0072 7068 BTHMODEM - ok

17:46:53.0103 7068 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys

17:46:53.0134 7068 BthPan - ok

17:46:53.0212 7068 BTHPORT (21084ceb85280468c9aca3c805c0f8cf) C:\Windows\system32\Drivers\BTHport.sys

17:46:53.0322 7068 BTHPORT - ok

17:46:53.0384 7068 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll

17:46:53.0478 7068 bthserv - ok

17:46:53.0509 7068 BTHUSB (8504842634dd144c075b6b0c982ccec4) C:\Windows\system32\Drivers\BTHUSB.sys

17:46:53.0524 7068 BTHUSB - ok

17:46:53.0587 7068 btwampfl (59e3510784548c6939c1b3b985c232e3) C:\Windows\system32\drivers\btwampfl.sys

17:46:53.0618 7068 btwampfl - ok

17:46:53.0696 7068 btwaudio (1872074ed0a3fb22e3f1e3197b984bfa) C:\Windows\system32\drivers\btwaudio.sys

17:46:53.0712 7068 btwaudio - ok

17:46:53.0758 7068 btwavdt (691cf076c33ab1c3a5b2fd5450300733) C:\Windows\system32\DRIVERS\btwavdt.sys

17:46:53.0774 7068 btwavdt - ok

17:46:53.0930 7068 btwdins (8ba6e93a182126781952a7895ec1e4b2) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe

17:46:53.0961 7068 btwdins - ok

17:46:54.0024 7068 btwl2cap (07096d2bc22ccb6cea5a532df0be8a75) C:\Windows\system32\DRIVERS\btwl2cap.sys

17:46:54.0039 7068 btwl2cap - ok

17:46:54.0086 7068 btwrchid (c9273b20dec8ce38dbce5d29de63c907) C:\Windows\system32\DRIVERS\btwrchid.sys

17:46:54.0086 7068 btwrchid - ok

17:46:54.0148 7068 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys

17:46:54.0211 7068 cdfs - ok

17:46:54.0273 7068 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys

17:46:54.0336 7068 cdrom - ok

17:46:54.0382 7068 CertPropSvc (312e2f82af11e79906898ac3e3d58a1f) C:\Windows\System32\certprop.dll

17:46:54.0507 7068 CertPropSvc - ok

17:46:54.0523 7068 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys

17:46:54.0570 7068 circlass - ok

17:46:54.0632 7068 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys

17:46:54.0663 7068 CLFS - ok

17:46:54.0726 7068 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

17:46:54.0741 7068 clr_optimization_v2.0.50727_32 - ok

17:46:54.0788 7068 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

17:46:54.0804 7068 clr_optimization_v2.0.50727_64 - ok

17:46:54.0928 7068 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

17:46:54.0944 7068 clr_optimization_v4.0.30319_32 - ok

17:46:55.0006 7068 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

17:46:55.0038 7068 clr_optimization_v4.0.30319_64 - ok

17:46:55.0084 7068 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys

17:46:55.0116 7068 CmBatt - ok

17:46:55.0131 7068 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys

17:46:55.0147 7068 cmdide - ok

17:46:55.0240 7068 CNG (937beb186a735aca91d717044a49d17e) C:\Windows\system32\Drivers\cng.sys

17:46:55.0272 7068 CNG - ok

17:46:55.0318 7068 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys

17:46:55.0334 7068 Compbatt - ok

17:46:55.0396 7068 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\drivers\CompositeBus.sys

17:46:55.0459 7068 CompositeBus - ok

17:46:55.0474 7068 COMSysApp - ok

17:46:55.0506 7068 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys

17:46:55.0521 7068 crcdisk - ok

17:46:55.0584 7068 CryptSvc (8c57411b66282c01533cb776f98ad384) C:\Windows\system32\cryptsvc.dll

17:46:55.0708 7068 CryptSvc - ok

17:46:55.0755 7068 DcomLaunch (7266972e86890e2b30c0c322e906b027) C:\Windows\system32\rpcss.dll

17:46:55.0818 7068 DcomLaunch - ok

17:46:55.0880 7068 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll

17:46:56.0005 7068 defragsvc - ok

17:46:56.0052 7068 DfsC (9c253ce7311ca60fc11c774692a13208) C:\Windows\system32\Drivers\dfsc.sys

17:46:56.0145 7068 DfsC - ok

17:46:56.0208 7068 Dhcp (ce3b9562d997f69b330d181a8875960f) C:\Windows\system32\dhcpcore.dll

17:46:56.0332 7068 Dhcp - ok

17:46:56.0364 7068 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys

17:46:56.0410 7068 discache - ok

17:46:56.0457 7068 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys

17:46:56.0457 7068 Disk - ok

17:46:56.0520 7068 Dnscache (85cf424c74a1d5ec33533e1dbff9920a) C:\Windows\System32\dnsrslvr.dll

17:46:56.0629 7068 Dnscache - ok

17:46:56.0660 7068 dot3svc (14452acdb09b70964c8c21bf80a13acb) C:\Windows\System32\dot3svc.dll

17:46:56.0769 7068 dot3svc - ok

17:46:56.0800 7068 DPS (8c2ba6bea949ee6e68385f5692bafb94) C:\Windows\system32\dps.dll

17:46:56.0894 7068 DPS - ok

17:46:56.0956 7068 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys

17:46:56.0988 7068 drmkaud - ok

17:46:57.0081 7068 DXGKrnl (1633b9abf52784a1331476397a48cbef) C:\Windows\System32\drivers\dxgkrnl.sys

17:46:57.0144 7068 DXGKrnl - ok

17:46:57.0159 7068 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll

17:46:57.0253 7068 EapHost - ok

17:46:57.0487 7068 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys

17:46:57.0596 7068 ebdrv - ok

17:46:57.0752 7068 EFS (156f6159457d0aa7e59b62681b56eb90) C:\Windows\System32\lsass.exe

17:46:57.0830 7068 EFS - ok

17:46:57.0924 7068 ehRecvr (47c071994c3f649f23d9cd075ac9304a) C:\Windows\ehome\ehRecvr.exe

17:46:58.0048 7068 ehRecvr - ok

17:46:58.0064 7068 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe

17:46:58.0142 7068 ehSched - ok

17:46:58.0204 7068 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys

17:46:58.0236 7068 elxstor - ok

17:46:58.0236 7068 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys

17:46:58.0267 7068 ErrDev - ok

17:46:58.0345 7068 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll

17:46:58.0392 7068 EventSystem - ok

17:46:58.0454 7068 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys

17:46:58.0548 7068 exfat - ok

17:46:58.0594 7068 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys

17:46:58.0672 7068 fastfat - ok

17:46:58.0766 7068 Fax (d607b2f1bee3992aa6c2c92c0a2f0855) C:\Windows\system32\fxssvc.exe

17:46:58.0860 7068 Fax - ok

17:46:58.0860 7068 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys

17:46:58.0891 7068 fdc - ok

17:46:58.0938 7068 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll

17:46:59.0000 7068 fdPHost - ok

17:46:59.0000 7068 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll

17:46:59.0047 7068 FDResPub - ok

17:46:59.0078 7068 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys

17:46:59.0094 7068 FileInfo - ok

17:46:59.0109 7068 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys

17:46:59.0140 7068 Filetrace - ok

17:46:59.0281 7068 FLEXnet Licensing Service (abedfd48ac042c6aaad32452e77217a1) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

17:46:59.0328 7068 FLEXnet Licensing Service - ok

17:46:59.0359 7068 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys

17:46:59.0374 7068 flpydisk - ok

17:46:59.0406 7068 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys

17:46:59.0437 7068 FltMgr - ok

17:46:59.0546 7068 FontCache (bc00505cfda789ed3be95d2ff38c4875) C:\Windows\system32\FntCache.dll

17:46:59.0608 7068 FontCache - ok

17:46:59.0671 7068 FontCache3.0.0.0 (8d89e3131c27fdd6932189cb785e1b7a) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

17:46:59.0686 7068 FontCache3.0.0.0 - ok

17:46:59.0718 7068 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys

17:46:59.0733 7068 FsDepends - ok

17:46:59.0796 7068 fssfltr (6c06701bf1db05405804d7eb610991ce) C:\Windows\system32\DRIVERS\fssfltr.sys

17:46:59.0811 7068 fssfltr - ok

17:46:59.0967 7068 fsssvc (4ce9dac1518ff7e77bd213e6394b9d77) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe

17:47:00.0014 7068 fsssvc - ok

17:47:00.0170 7068 Fs_Rec (d3e3f93d67821a2db2b3d9fac2dc2064) C:\Windows\system32\drivers\Fs_Rec.sys

17:47:00.0186 7068 Fs_Rec - ok

17:47:00.0264 7068 fvevol (ae87ba80d0ec3b57126ed2cdc15b24ed) C:\Windows\system32\DRIVERS\fvevol.sys

17:47:00.0295 7068 fvevol - ok

17:47:00.0310 7068 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys

17:47:00.0326 7068 gagp30kx - ok

17:47:00.0388 7068 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

17:47:00.0404 7068 GEARAspiWDM - ok

17:47:00.0466 7068 gpsvc (fe5ab4525bc2ec68b9119a6e5d40128b) C:\Windows\System32\gpsvc.dll

17:47:00.0576 7068 gpsvc - ok

17:47:00.0622 7068 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys

17:47:00.0700 7068 hcw85cir - ok

17:47:00.0747 7068 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys

17:47:00.0794 7068 HdAudAddService - ok

17:47:00.0841 7068 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\drivers\HDAudBus.sys

17:47:00.0903 7068 HDAudBus - ok

17:47:00.0966 7068 HECIx64 (b6ac71aaa2b10848f57fc49d55a651af) C:\Windows\system32\DRIVERS\HECIx64.sys

17:47:00.0981 7068 HECIx64 - ok

17:47:00.0997 7068 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys

17:47:01.0059 7068 HidBatt - ok

17:47:01.0090 7068 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys

17:47:01.0122 7068 HidBth - ok

17:47:01.0137 7068 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys

17:47:01.0184 7068 HidIr - ok

17:47:01.0215 7068 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll

17:47:01.0278 7068 hidserv - ok

17:47:01.0309 7068 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\drivers\hidusb.sys

17:47:01.0324 7068 HidUsb - ok

17:47:01.0356 7068 hkmsvc (efa58ede58dd74388ffd04cb32681518) C:\Windows\system32\kmsvc.dll

17:47:01.0418 7068 hkmsvc - ok

17:47:01.0434 7068 HomeGroupListener (046b2673767ca626e2cfb7fdf735e9e8) C:\Windows\system32\ListSvc.dll

17:47:01.0527 7068 HomeGroupListener - ok

17:47:01.0558 7068 HomeGroupProvider (06a7422224d9865a5613710a089987df) C:\Windows\system32\provsvc.dll

17:47:01.0621 7068 HomeGroupProvider - ok

17:47:01.0652 7068 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\drivers\HpSAMD.sys

17:47:01.0668 7068 HpSAMD - ok

17:47:01.0730 7068 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys

17:47:01.0824 7068 HTTP - ok

17:47:01.0824 7068 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys

17:47:01.0839 7068 hwpolicy - ok

17:47:01.0886 7068 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys

17:47:01.0902 7068 i8042prt - ok

17:47:01.0948 7068 iaStor (abbf174cb394f5c437410a788b7e404a) C:\Windows\system32\drivers\iaStor.sys

17:47:01.0964 7068 iaStor - ok

17:47:02.0058 7068 IAStorDataMgrSvc (31a0e93cdf29007d6c6fffb632f375ed) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

17:47:02.0073 7068 IAStorDataMgrSvc - ok

17:47:02.0167 7068 iaStorV (b75e45c564e944a2657167d197ab29da) C:\Windows\system32\drivers\iaStorV.sys

17:47:02.0198 7068 iaStorV - ok

17:47:02.0292 7068 idsvc (2f2be70d3e02b6fa877921ab9516d43c) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

17:47:02.0323 7068 idsvc - ok

17:47:03.0025 7068 igfx (2a22ab054f4630d2ef4bab2853f6d5f6) C:\Windows\system32\DRIVERS\igdkmd64.sys

17:47:03.0352 7068 igfx ( UnsignedFile.Multi.Generic ) - warning

17:47:03.0352 7068 igfx - detected UnsignedFile.Multi.Generic (1)

17:47:03.0508 7068 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys

17:47:03.0524 7068 iirsp - ok

17:47:03.0618 7068 IKEEXT (c5b4683680df085b57bc53e5ef34861f) C:\Windows\System32\ikeext.dll

17:47:03.0711 7068 IKEEXT - ok

17:47:03.0774 7068 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys

17:47:03.0820 7068 Impcd - ok

17:47:04.0023 7068 IntcAzAudAddService (526e482afb586cb1cdd687869decf686) C:\Windows\system32\drivers\RTKVHD64.sys

17:47:04.0101 7068 IntcAzAudAddService - ok

17:47:04.0320 7068 IntcDAud (58cf58dee26c909bd6f977b61d246295) C:\Windows\system32\DRIVERS\IntcDAud.sys

17:47:04.0351 7068 IntcDAud ( UnsignedFile.Multi.Generic ) - warning

17:47:04.0351 7068 IntcDAud - detected UnsignedFile.Multi.Generic (1)

17:47:04.0382 7068 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys

17:47:04.0398 7068 intelide - ok

17:47:04.0460 7068 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys

17:47:04.0507 7068 intelppm - ok

17:47:04.0554 7068 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll

17:47:04.0647 7068 IPBusEnum - ok

17:47:04.0663 7068 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys

17:47:04.0725 7068 IpFilterDriver - ok

17:47:04.0772 7068 iphlpsvc (f8e058d17363ec580e4b7232778b6cb5) C:\Windows\System32\iphlpsvc.dll

17:47:04.0897 7068 iphlpsvc - ok

17:47:04.0944 7068 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\drivers\IPMIDrv.sys

17:47:04.0975 7068 IPMIDRV - ok

17:47:04.0975 7068 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys

17:47:05.0022 7068 IPNAT - ok

17:47:05.0193 7068 iPod Service (50d6ccc6ff5561f9f56946b3e6164fb8) C:\Program Files\iPod\bin\iPodService.exe

17:47:05.0224 7068 iPod Service - ok

17:47:05.0287 7068 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys

17:47:05.0318 7068 IRENUM - ok

17:47:05.0365 7068 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys

17:47:05.0365 7068 isapnp - ok

17:47:05.0396 7068 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\drivers\msiscsi.sys

17:47:05.0412 7068 iScsiPrt - ok

17:47:05.0458 7068 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys

17:47:05.0474 7068 kbdclass - ok

17:47:05.0490 7068 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\drivers\kbdhid.sys

17:47:05.0536 7068 kbdhid - ok

17:47:05.0599 7068 KeyIso (156f6159457d0aa7e59b62681b56eb90) C:\Windows\system32\lsass.exe

17:47:05.0614 7068 KeyIso - ok

17:47:05.0661 7068 KSecDD (16c1b906fc5ead84769f90b736b6bf0e) C:\Windows\system32\Drivers\ksecdd.sys

17:47:05.0677 7068 KSecDD - ok

17:47:05.0708 7068 KSecPkg (0b711550c56444879d71c7daabda6c83) C:\Windows\system32\Drivers\ksecpkg.sys

17:47:05.0724 7068 KSecPkg - ok

17:47:05.0755 7068 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys

17:47:05.0817 7068 ksthunk - ok

17:47:05.0864 7068 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll

17:47:05.0958 7068 KtmRm - ok

17:47:06.0036 7068 LanmanServer (81f1d04d4d0e433099365127375fd501) C:\Windows\System32\srvsvc.dll

17:47:06.0098 7068 LanmanServer - ok

17:47:06.0114 7068 LanmanWorkstation (27026eac8818e8a6c00a1cad2f11d29a) C:\Windows\System32\wkssvc.dll

17:47:06.0176 7068 LanmanWorkstation - ok

17:47:06.0238 7068 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys

17:47:06.0301 7068 lltdio - ok

17:47:06.0332 7068 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll

17:47:06.0410 7068 lltdsvc - ok

17:47:06.0426 7068 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll

17:47:06.0472 7068 lmhosts - ok

17:47:06.0597 7068 LMS (3d23191672d83e90d1cf63927ee98136) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

17:47:06.0628 7068 LMS - ok

17:47:06.0691 7068 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys

17:47:06.0706 7068 LSI_FC - ok

17:47:06.0722 7068 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys

17:47:06.0738 7068 LSI_SAS - ok

17:47:06.0738 7068 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys

17:47:06.0753 7068 LSI_SAS2 - ok

17:47:06.0769 7068 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys

17:47:06.0769 7068 LSI_SCSI - ok

17:47:06.0816 7068 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys

17:47:06.0909 7068 luafv - ok

17:47:06.0956 7068 Mcx2Svc (f84c8f1000bc11e3b7b23cbd3baff111) C:\Windows\system32\Mcx2Svc.dll

17:47:07.0003 7068 Mcx2Svc - ok

17:47:07.0003 7068 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys

17:47:07.0018 7068 megasas - ok

17:47:07.0065 7068 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys

17:47:07.0096 7068 MegaSR - ok

17:47:07.0112 7068 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

17:47:07.0159 7068 MMCSS - ok

17:47:07.0174 7068 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys

17:47:07.0206 7068 Modem - ok

17:47:07.0268 7068 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys

17:47:07.0330 7068 monitor - ok

17:47:07.0377 7068 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys

17:47:07.0393 7068 mouclass - ok

17:47:07.0455 7068 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\drivers\mouhid.sys

17:47:07.0502 7068 mouhid - ok

17:47:07.0533 7068 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys

17:47:07.0564 7068 mountmgr - ok

17:47:07.0674 7068 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

17:47:07.0705 7068 MozillaMaintenance - ok

17:47:07.0767 7068 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys

17:47:07.0783 7068 MpFilter - ok

17:47:07.0798 7068 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\drivers\mpio.sys

17:47:07.0830 7068 mpio - ok

17:47:07.0861 7068 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys

17:47:07.0923 7068 mpsdrv - ok

17:47:07.0986 7068 MpsSvc (aecab449567d1846dad63ece49e893e3) C:\Windows\system32\mpssvc.dll

17:47:08.0032 7068 MpsSvc - ok

17:47:08.0048 7068 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys

17:47:08.0095 7068 MRxDAV - ok

17:47:08.0157 7068 mrxsmb (040d62a9d8ad28922632137acdd984f2) C:\Windows\system32\DRIVERS\mrxsmb.sys

17:47:08.0188 7068 mrxsmb - ok

17:47:08.0235 7068 mrxsmb10 (f0067552f8f9b33d7c59403ab808a3cb) C:\Windows\system32\DRIVERS\mrxsmb10.sys

17:47:08.0266 7068 mrxsmb10 - ok

17:47:08.0282 7068 mrxsmb20 (3c142d31de9f2f193218a53fe2632051) C:\Windows\system32\DRIVERS\mrxsmb20.sys

17:47:08.0329 7068 mrxsmb20 - ok

17:47:08.0376 7068 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\drivers\msahci.sys

17:47:08.0391 7068 msahci - ok

17:47:08.0407 7068 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\drivers\msdsm.sys

17:47:08.0407 7068 msdsm - ok

17:47:08.0454 7068 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe

17:47:08.0485 7068 MSDTC - ok

17:47:08.0532 7068 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys

17:47:08.0625 7068 Msfs - ok

17:47:08.0656 7068 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys

17:47:08.0719 7068 mshidkmdf - ok

17:47:08.0734 7068 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys

17:47:08.0750 7068 msisadrv - ok

17:47:08.0797 7068 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll

17:47:08.0906 7068 MSiSCSI - ok

17:47:08.0906 7068 msiserver - ok

17:47:08.0968 7068 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys

17:47:09.0062 7068 MSKSSRV - ok

17:47:09.0202 7068 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) c:\Program Files\Microsoft Security Client\MsMpEng.exe

17:47:09.0218 7068 MsMpSvc - ok

17:47:09.0265 7068 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys

17:47:09.0327 7068 MSPCLOCK - ok

17:47:09.0327 7068 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys

17:47:09.0358 7068 MSPQM - ok

17:47:09.0405 7068 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys

17:47:09.0436 7068 MsRPC - ok

17:47:09.0452 7068 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys

17:47:09.0468 7068 mssmbios - ok

17:47:09.0514 7068 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys

17:47:09.0608 7068 MSTEE - ok

17:47:09.0608 7068 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys

17:47:09.0639 7068 MTConfig - ok

17:47:09.0670 7068 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys

17:47:09.0686 7068 Mup - ok

17:47:09.0733 7068 napagent (4987e079a4530fa737a128be54b63b12) C:\Windows\system32\qagentRT.dll

17:47:09.0795 7068 napagent - ok

17:47:09.0873 7068 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys

17:47:09.0904 7068 NativeWifiP - ok

17:47:09.0967 7068 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys

17:47:10.0014 7068 NDIS - ok

17:47:10.0076 7068 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys

17:47:10.0138 7068 NdisCap - ok

17:47:10.0185 7068 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys

17:47:10.0279 7068 NdisTapi - ok

17:47:10.0310 7068 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys

17:47:10.0357 7068 Ndisuio - ok

17:47:10.0372 7068 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys

17:47:10.0419 7068 NdisWan - ok

17:47:10.0450 7068 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys

17:47:10.0497 7068 NDProxy - ok

17:47:10.0544 7068 Net Driver HPZ12 (2c723e42fc8d7b0209492828f921fb50) C:\Windows\system32\HPZinw12.dll

17:47:10.0591 7068 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning

17:47:10.0591 7068 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)

17:47:10.0638 7068 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys

17:47:10.0700 7068 NetBIOS - ok

17:47:10.0731 7068 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys

17:47:10.0825 7068 NetBT - ok

17:47:10.0872 7068 Netlogon (156f6159457d0aa7e59b62681b56eb90) C:\Windows\system32\lsass.exe

17:47:10.0887 7068 Netlogon - ok

17:47:10.0965 7068 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll

17:47:11.0059 7068 Netman - ok

17:47:11.0121 7068 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll

17:47:11.0184 7068 netprofm - ok

17:47:11.0230 7068 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

17:47:11.0246 7068 NetTcpPortSharing - ok

17:47:11.0262 7068 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys

17:47:11.0277 7068 nfrd960 - ok

17:47:11.0340 7068 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys

17:47:11.0355 7068 NisDrv - ok

17:47:11.0449 7068 NisSrv (10a43829a9e606af3eef25a1c1665923) c:\Program Files\Microsoft Security Client\NisSrv.exe

17:47:11.0464 7068 NisSrv - ok

17:47:11.0527 7068 NlaSvc (d9a0ce66046d6efa0c61baa885cba0a8) C:\Windows\System32\nlasvc.dll

17:47:11.0667 7068 NlaSvc - ok

17:47:11.0698 7068 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys

17:47:11.0808 7068 Npfs - ok

17:47:11.0839 7068 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll

17:47:11.0886 7068 nsi - ok

17:47:11.0901 7068 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys

17:47:11.0932 7068 nsiproxy - ok

17:47:12.0088 7068 Ntfs (378e0e0dfea67d98ae6ea53adbbd76bc) C:\Windows\system32\drivers\Ntfs.sys

17:47:12.0151 7068 Ntfs - ok

17:47:12.0260 7068 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys

17:47:12.0338 7068 Null - ok

17:47:12.0369 7068 nvraid (a4d9c9a608a97f59307c2f2600edc6a4) C:\Windows\system32\drivers\nvraid.sys

17:47:12.0385 7068 nvraid - ok

17:47:12.0416 7068 nvstor (6c1d5f70e7a6a3fd1c90d840edc048b9) C:\Windows\system32\drivers\nvstor.sys

17:47:12.0432 7068 nvstor - ok

17:47:12.0478 7068 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys

17:47:12.0478 7068 nv_agp - ok

17:47:12.0572 7068 Oasis2Service (07571684567859da796a566cc78ffa74) C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe

17:47:12.0588 7068 Oasis2Service ( UnsignedFile.Multi.Generic ) - warning

17:47:12.0588 7068 Oasis2Service - detected UnsignedFile.Multi.Generic (1)

17:47:12.0697 7068 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

17:47:12.0728 7068 odserv - ok

17:47:12.0759 7068 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys

17:47:12.0790 7068 ohci1394 - ok

17:47:12.0837 7068 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

17:47:12.0853 7068 ose - ok

17:47:12.0915 7068 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

17:47:12.0962 7068 p2pimsvc - ok

17:47:12.0993 7068 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll

17:47:13.0024 7068 p2psvc - ok

17:47:13.0056 7068 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys

17:47:13.0071 7068 Parport - ok

17:47:13.0118 7068 partmgr (90061b1acfe8ccaa5345750ffe08d8b8) C:\Windows\system32\drivers\partmgr.sys

17:47:13.0134 7068 partmgr - ok

17:47:13.0149 7068 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll

17:47:13.0196 7068 PcaSvc - ok

17:47:13.0212 7068 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\drivers\pci.sys

17:47:13.0227 7068 pci - ok

17:47:13.0243 7068 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys

17:47:13.0258 7068 pciide - ok

17:47:13.0258 7068 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys

17:47:13.0274 7068 pcmcia - ok

17:47:13.0290 7068 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys

17:47:13.0290 7068 pcw - ok

17:47:13.0336 7068 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys

17:47:13.0414 7068 PEAUTH - ok

17:47:13.0524 7068 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe

17:47:13.0570 7068 PerfHost - ok

17:47:13.0680 7068 pla (557e9a86f65f0de18c9b6751dfe9d3f1) C:\Windows\system32\pla.dll

17:47:13.0804 7068 pla - ok

17:47:13.0898 7068 PlugPlay (98b1721b8718164293b9701b98c52d77) C:\Windows\system32\umpnpmgr.dll

17:47:14.0007 7068 PlugPlay - ok

17:47:14.0148 7068 PMBDeviceInfoProvider (63694c307273062a2167ae4ce80730ef) c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe

17:47:14.0179 7068 PMBDeviceInfoProvider - ok

17:47:14.0241 7068 Pml Driver HPZ12 (171e6d91a20aac8d02172a64e82ce90b) C:\Windows\system32\HPZipm12.dll

17:47:14.0272 7068 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning

17:47:14.0272 7068 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)

17:47:14.0288 7068 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll

17:47:14.0335 7068 PNRPAutoReg - ok

17:47:14.0382 7068 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

17:47:14.0413 7068 PNRPsvc - ok

17:47:14.0460 7068 PolicyAgent (166eb40d1f5b47e615de3d0fffe5f243) C:\Windows\System32\ipsecsvc.dll

17:47:14.0522 7068 PolicyAgent - ok

17:47:14.0600 7068 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll

17:47:14.0694 7068 Power - ok

17:47:14.0772 7068 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys

17:47:14.0881 7068 PptpMiniport - ok

17:47:14.0912 7068 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys

17:47:14.0928 7068 Processor - ok

17:47:14.0974 7068 ProfSvc (f381975e1f4346de875cb07339ce8d3a) C:\Windows\system32\profsvc.dll

17:47:15.0068 7068 ProfSvc - ok

17:47:15.0115 7068 ProtectedStorage (156f6159457d0aa7e59b62681b56eb90) C:\Windows\system32\lsass.exe

17:47:15.0146 7068 ProtectedStorage - ok

17:47:15.0208 7068 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys

17:47:15.0318 7068 Psched - ok

17:47:15.0349 7068 PxHlpa64 (fbf4db6d53585437e41a113300002a2b) C:\Windows\system32\Drivers\PxHlpa64.sys

17:47:15.0364 7068 PxHlpa64 - ok

17:47:15.0474 7068 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys

17:47:15.0520 7068 ql2300 - ok

17:47:15.0645 7068 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys

17:47:15.0661 7068 ql40xx - ok

17:47:15.0708 7068 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll

17:47:15.0754 7068 QWAVE - ok

17:47:15.0770 7068 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys

17:47:15.0817 7068 QWAVEdrv - ok

17:47:15.0832 7068 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys

17:47:15.0879 7068 RasAcd - ok

17:47:15.0942 7068 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys

17:47:16.0004 7068 RasAgileVpn - ok

17:47:16.0035 7068 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll

17:47:16.0144 7068 RasAuto - ok

17:47:16.0191 7068 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys

17:47:16.0238 7068 Rasl2tp - ok

17:47:16.0269 7068 RasMan (47394ed3d16d053f5906efe5ab51cc83) C:\Windows\System32\rasmans.dll

17:47:16.0363 7068 RasMan - ok

17:47:16.0410 7068 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys

17:47:16.0488 7068 RasPppoe - ok

17:47:16.0503 7068 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys

17:47:16.0566 7068 RasSstp - ok

17:47:16.0612 7068 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys

17:47:16.0659 7068 rdbss - ok

17:47:16.0690 7068 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys

17:47:16.0722 7068 rdpbus - ok

17:47:16.0753 7068 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys

17:47:16.0784 7068 RDPCDD - ok

17:47:16.0815 7068 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys

17:47:16.0846 7068 RDPENCDD - ok

17:47:16.0862 7068 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys

17:47:16.0924 7068 RDPREFMP - ok

17:47:16.0987 7068 RDPWD (074ac702d8b8b660b0e1371555995386) C:\Windows\system32\drivers\RDPWD.sys

17:47:17.0034 7068 RDPWD - ok

17:47:17.0112 7068 rdyboost (e5dc9ba9e439d6dbdd79f8caacb5bf01) C:\Windows\system32\drivers\rdyboost.sys

17:47:17.0143 7068 rdyboost - ok

17:47:17.0158 7068 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll

17:47:17.0252 7068 RemoteAccess - ok

17:47:17.0283 7068 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll

17:47:17.0346 7068 RemoteRegistry - ok

17:47:17.0392 7068 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys

17:47:17.0455 7068 RFCOMM - ok

17:47:17.0517 7068 rimspci (fa6abc06b629da29634d31f1fe0347bd) C:\Windows\system32\drivers\rimssne64.sys

17:47:17.0564 7068 rimspci - ok

17:47:17.0642 7068 risdsnpe (8f8539a7f5c117d4407b2985995671f2) C:\Windows\system32\drivers\risdsne64.sys

17:47:17.0689 7068 risdsnpe - ok

17:47:17.0720 7068 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll

17:47:17.0782 7068 RpcEptMapper - ok

17:47:17.0798 7068 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe

17:47:17.0814 7068 RpcLocator - ok

17:47:17.0860 7068 RpcSs (7266972e86890e2b30c0c322e906b027) C:\Windows\system32\rpcss.dll

17:47:17.0892 7068 RpcSs - ok

17:47:17.0923 7068 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys

17:47:18.0001 7068 rspndr - ok

17:47:18.0063 7068 RTHDMIAzAudService (d6d381b76056c668679723938f06f16c) C:\Windows\system32\drivers\RtHDMIVX.sys

17:47:18.0094 7068 RTHDMIAzAudService - ok

17:47:18.0141 7068 SamSs (156f6159457d0aa7e59b62681b56eb90) C:\Windows\system32\lsass.exe

17:47:18.0141 7068 SamSs - ok

17:47:18.0157 7068 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\drivers\sbp2port.sys

17:47:18.0172 7068 sbp2port - ok

17:47:18.0204 7068 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll

17:47:18.0282 7068 SCardSvr - ok

17:47:18.0313 7068 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys

17:47:18.0375 7068 scfilter - ok

17:47:18.0469 7068 Schedule (624d0f5ff99428bb90a5b8a4123e918e) C:\Windows\system32\schedsvc.dll

17:47:18.0609 7068 Schedule - ok

17:47:18.0625 7068 SCPolicySvc (312e2f82af11e79906898ac3e3d58a1f) C:\Windows\System32\certprop.dll

17:47:18.0687 7068 SCPolicySvc - ok

17:47:18.0734 7068 sdbus (2c8d162efaf73abd36d8bcbb6340cae7) C:\Windows\system32\DRIVERS\sdbus.sys

17:47:18.0796 7068 sdbus - ok

17:47:18.0828 7068 SDRSVC (765a27c3279ce11d14cb9e4f5869fca5) C:\Windows\System32\SDRSVC.dll

17:47:18.0921 7068 SDRSVC - ok

17:47:18.0968 7068 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys

17:47:19.0062 7068 secdrv - ok

17:47:19.0093 7068 seclogon (463b386ebc70f98da5dff85f7e654346) C:\Windows\system32\seclogon.dll

17:47:19.0186 7068 seclogon - ok

17:47:19.0249 7068 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\system32\sens.dll

17:47:19.0280 7068 SENS - ok

17:47:19.0296 7068 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll

17:47:19.0327 7068 SensrSvc - ok

17:47:19.0342 7068 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys

17:47:19.0389 7068 Serenum - ok

17:47:19.0389 7068 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys

17:47:19.0436 7068 Serial - ok

17:47:19.0436 7068 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys

17:47:19.0467 7068 sermouse - ok

17:47:19.0467 7068 SessionEnv (c3bc61ce47ff6f4e88ab8a3b429a36af) C:\Windows\system32\sessenv.dll

17:47:19.0530 7068 SessionEnv - ok

17:47:19.0576 7068 SFEP (286d3889e6ab5589646ff8a63cb928ae) C:\Windows\system32\DRIVERS\SFEP.sys

17:47:19.0608 7068 SFEP - ok

17:47:19.0623 7068 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys

17:47:19.0670 7068 sffdisk - ok

17:47:19.0701 7068 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys

17:47:19.0732 7068 sffp_mmc - ok

17:47:19.0732 7068 sffp_sd (178298f767fe638c9fedcbdef58bb5e4) C:\Windows\system32\drivers\sffp_sd.sys

17:47:19.0748 7068 sffp_sd - ok

17:47:19.0764 7068 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys

17:47:19.0779 7068 sfloppy - ok

17:47:19.0842 7068 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll

17:47:19.0935 7068 SharedAccess - ok

17:47:19.0966 7068 ShellHWDetection (0298ac45d0efffb2db4baa7dd186e7bf) C:\Windows\System32\shsvcs.dll

17:47:20.0013 7068 ShellHWDetection - ok

17:47:20.0013 7068 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys

17:47:20.0013 7068 SiSRaid2 - ok

17:47:20.0029 7068 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys

17:47:20.0044 7068 SiSRaid4 - ok

17:47:20.0091 7068 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys

17:47:20.0169 7068 Smb - ok

17:47:20.0216 7068 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe

17:47:20.0247 7068 SNMPTRAP - ok

17:47:20.0341 7068 SOHCImp (c3e69db0a4e59564230e053232f39ac7) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe

17:47:20.0356 7068 SOHCImp - ok

17:47:20.0403 7068 SOHDms (65cc4779a29c3e82b987bd4961790dff) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe

17:47:20.0434 7068 SOHDms - ok

17:47:20.0450 7068 SOHDs (f47d75cee1844eef4a9ea6ee768828fb) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe

17:47:20.0466 7068 SOHDs - ok

17:47:20.0606 7068 SpfService (5449fc97476f52e027409e703791e6a9) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe

17:47:20.0622 7068 SpfService - ok

17:47:20.0668 7068 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys

17:47:20.0684 7068 spldr - ok

17:47:20.0778 7068 Spooler (f8e1fa03cb70d54a9892ac88b91d1e7b) C:\Windows\System32\spoolsv.exe

17:47:20.0824 7068 Spooler - ok

17:47:21.0058 7068 sppsvc (913d843498553a1bc8f8dbad6358e49f) C:\Windows\system32\sppsvc.exe

17:47:21.0246 7068 sppsvc - ok

17:47:21.0355 7068 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll

17:47:21.0417 7068 sppuinotify - ok

17:47:21.0511 7068 srv (2408c0366d96bcdf63e8f1c78e4a29c5) C:\Windows\system32\DRIVERS\srv.sys

17:47:21.0604 7068 srv - ok

17:47:21.0651 7068 srv2 (76548f7b818881b47d8d1ae1be9c11f8) C:\Windows\system32\DRIVERS\srv2.sys

17:47:21.0698 7068 srv2 - ok

17:47:21.0745 7068 srvnet (0af6e19d39c70844c5caa8fb0183c36e) C:\Windows\system32\DRIVERS\srvnet.sys

17:47:21.0807 7068 srvnet - ok

17:47:21.0870 7068 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll

17:47:21.0963 7068 SSDPSRV - ok

17:47:21.0963 7068 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll

17:47:22.0010 7068 SstpSvc - ok

17:47:22.0041 7068 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys

17:47:22.0041 7068 stexstor - ok

17:47:22.0104 7068 stisvc (52d0e33b681bd0f33fdc08812fee4f7d) C:\Windows\System32\wiaservc.dll

17:47:22.0166 7068 stisvc - ok

17:47:22.0182 7068 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys

17:47:22.0182 7068 swenum - ok

17:47:22.0244 7068 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll

17:47:22.0353 7068 swprv - ok

17:47:22.0494 7068 SysMain (3c1284516a62078fb68f768de4f1a7be) C:\Windows\system32\sysmain.dll

17:47:22.0572 7068 SysMain - ok

17:47:22.0696 7068 TabletInputService (238935c3cf2854886dc7cbb2a0e2cc66) C:\Windows\System32\TabSvc.dll

17:47:22.0743 7068 TabletInputService - ok

17:47:22.0774 7068 TapiSrv (884264ac597b690c5707c89723bb8e7b) C:\Windows\System32\tapisrv.dll

17:47:22.0837 7068 TapiSrv - ok

17:47:22.0837 7068 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll

17:47:22.0946 7068 TBS - ok

17:47:23.0118 7068 Tcpip (624c5b3aa4c99b3184bb922d9ece3ff0) C:\Windows\system32\drivers\tcpip.sys

17:47:23.0180 7068 Tcpip - ok

17:47:23.0445 7068 TCPIP6 (624c5b3aa4c99b3184bb922d9ece3ff0) C:\Windows\system32\DRIVERS\tcpip.sys

17:47:23.0492 7068 TCPIP6 - ok

17:47:23.0632 7068 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys

17:47:23.0695 7068 tcpipreg - ok

17:47:23.0710 7068 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys

17:47:23.0788 7068 TDPIPE - ok

17:47:23.0835 7068 TDTCP (7518f7bcfd4b308abc9192bacaf6c970) C:\Windows\system32\drivers\tdtcp.sys

17:47:23.0898 7068 TDTCP - ok

17:47:23.0898 7068 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys

17:47:23.0960 7068 tdx - ok

17:47:23.0960 7068 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\drivers\termdd.sys

17:47:23.0976 7068 TermDD - ok

17:47:24.0038 7068 TermService (0f05ec2887bfe197ad82a13287d2f404) C:\Windows\System32\termsrv.dll

17:47:24.0163 7068 TermService - ok

17:47:24.0210 7068 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll

17:47:24.0256 7068 Themes - ok

17:47:24.0288 7068 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

17:47:24.0319 7068 THREADORDER - ok

17:47:24.0350 7068 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll

17:47:24.0428 7068 TrkWks - ok

17:47:24.0475 7068 TrustedInstaller (840f7fb849f5887a49ba18c13b2da920) C:\Windows\servicing\TrustedInstaller.exe

17:47:24.0506 7068 TrustedInstaller - ok

17:47:24.0522 7068 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys

17:47:24.0568 7068 tssecsrv - ok

17:47:24.0631 7068 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys

17:47:24.0724 7068 tunnel - ok

17:47:24.0756 7068 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys

17:47:24.0756 7068 uagp35 - ok

17:47:24.0818 7068 uCamMonitor (63f6d08c54d5b3c1b12a6172032055c7) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe

17:47:24.0834 7068 uCamMonitor - ok

17:47:24.0865 7068 udfs (0e5e962b5649d544be54e8c90761ea2b) C:\Windows\system32\DRIVERS\udfs.sys

17:47:24.0912 7068 udfs - ok

17:47:24.0943 7068 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe

17:47:24.0974 7068 UI0Detect - ok

17:47:25.0021 7068 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys

17:47:25.0021 7068 uliagpkx - ok

17:47:25.0083 7068 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys

17:47:25.0099 7068 umbus - ok

17:47:25.0130 7068 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys

17:47:25.0161 7068 UmPass - ok

17:47:25.0411 7068 UNS (11a559e0f10cc5e788984023df400a6f) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

17:47:25.0458 7068 UNS - ok

17:47:25.0614 7068 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll

17:47:25.0676 7068 upnphost - ok

17:47:25.0770 7068 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys

17:47:25.0816 7068 USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning

17:47:25.0816 7068 USBAAPL64 - detected UnsignedFile.Multi.Generic (1)

17:47:25.0863 7068 usbccgp (7b6a127c93ee590e4d79a5f2a76fe46f) C:\Windows\system32\DRIVERS\usbccgp.sys

17:47:25.0957 7068 usbccgp - ok

17:47:26.0019 7068 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys

17:47:26.0082 7068 usbcir - ok

17:47:26.0113 7068 usbehci (92969ba5ac44e229c55a332864f79677) C:\Windows\system32\drivers\usbehci.sys

17:47:26.0144 7068 usbehci - ok

17:47:26.0222 7068 usbhub (e7df1cfd28ca86b35ef5add0735ceef3) C:\Windows\system32\DRIVERS\usbhub.sys

17:47:26.0300 7068 usbhub - ok

17:47:26.0347 7068 usbohci (f1bb1e55f1e7a65c5839ccc7b36d773e) C:\Windows\system32\drivers\usbohci.sys

17:47:26.0394 7068 usbohci - ok

17:47:26.0440 7068 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys

17:47:26.0472 7068 usbprint - ok

17:47:26.0487 7068 USBSTOR (f39983647bc1f3e6100778ddfe9dce29) C:\Windows\system32\DRIVERS\USBSTOR.SYS

17:47:26.0565 7068 USBSTOR - ok

17:47:26.0596 7068 usbuhci (bc3070350a491d84b518d7cca9abd36f) C:\Windows\system32\drivers\usbuhci.sys

17:47:26.0612 7068 usbuhci - ok

17:47:26.0674 7068 usbvideo (7cb8c573c6e4a2714402cc0a36eab4fe) C:\Windows\system32\Drivers\usbvideo.sys

17:47:26.0721 7068 usbvideo - ok

17:47:26.0752 7068 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll

17:47:26.0862 7068 UxSms - ok

17:47:26.0986 7068 VAIO Event Service (a60605fc66552b421ee1f3d4ebb9a4e0) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe

17:47:27.0002 7068 VAIO Event Service - ok

17:47:27.0127 7068 VAIO Power Management (d469be2723f79cf4b384680b1fdc577d) C:\Program Files\Sony\VAIO Power Management\SPMService.exe

17:47:27.0158 7068 VAIO Power Management - ok

17:47:27.0205 7068 VaultSvc (156f6159457d0aa7e59b62681b56eb90) C:\Windows\system32\lsass.exe

17:47:27.0205 7068 VaultSvc - ok

17:47:27.0361 7068 VCFw (6888526aeb8ddabde6f778fd40fc0693) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe

17:47:27.0392 7068 VCFw - ok

17:47:27.0548 7068 VcmIAlzMgr (07f47a1df726537313c1023515175532) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe

17:47:27.0595 7068 VcmIAlzMgr - ok

17:47:27.0704 7068 VcmINSMgr (e005b04dfca99f5880c5111933194ca9) C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe

17:47:27.0720 7068 VcmINSMgr - ok

17:47:27.0876 7068 VcmXmlIfHelper (c8e3ba694cc5eacec4c01660ace40d56) C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe

17:47:27.0922 7068 VcmXmlIfHelper - ok

17:47:27.0969 7068 VCService (d347d3abe070aa09c22fc37121555d52) C:\Program Files\Sony\VAIO Care\VCService.exe

17:47:27.0985 7068 VCService - ok

17:47:28.0141 7068 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys

17:47:28.0156 7068 vdrvroot - ok

17:47:28.0219 7068 vds (44d73e0bbc1d3c8981304ba15135c2f2) C:\Windows\System32\vds.exe

17:47:28.0266 7068 vds - ok

17:47:28.0297 7068 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys

17:47:28.0328 7068 vga - ok

17:47:28.0359 7068 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys

17:47:28.0422 7068 VgaSave - ok

17:47:28.0437 7068 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\drivers\vhdmp.sys

17:47:28.0453 7068 vhdmp - ok

17:47:28.0453 7068 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys

17:47:28.0468 7068 viaide - ok

17:47:28.0500 7068 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\drivers\volmgr.sys

17:47:28.0500 7068 volmgr - ok

17:47:28.0546 7068 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys

17:47:28.0578 7068 volmgrx - ok

17:47:28.0593 7068 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\drivers\volsnap.sys

17:47:28.0624 7068 volsnap - ok

17:47:28.0640 7068 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys

17:47:28.0656 7068 vsmraid - ok

17:47:28.0765 7068 VSS (787898bf9fb6d7bd87a36e2d95c899ba) C:\Windows\system32\vssvc.exe

17:47:28.0874 7068 VSS - ok

17:47:29.0061 7068 VUAgent (d62d16e057be87f5b84a54d1b83822c4) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe

17:47:29.0108 7068 VUAgent - ok

17:47:29.0217 7068 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys

17:47:29.0248 7068 vwifibus - ok

17:47:29.0264 7068 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys

17:47:29.0295 7068 vwififlt - ok

17:47:29.0342 7068 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys

17:47:29.0389 7068 vwifimp - ok

17:47:29.0467 7068 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll

17:47:29.0545 7068 W32Time - ok

17:47:29.0560 7068 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys

17:47:29.0576 7068 WacomPen - ok

17:47:29.0638 7068 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys

17:47:29.0685 7068 WANARP - ok

17:47:29.0685 7068 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys

17:47:29.0716 7068 Wanarpv6 - ok

17:47:29.0872 7068 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe

17:47:29.0919 7068 WatAdminSvc - ok

17:47:30.0028 7068 wbengine (5ab1bb85bd8b5089cc5d64200dedae68) C:\Windows\system32\wbengine.exe

17:47:30.0184 7068 wbengine - ok

17:47:30.0294 7068 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll

17:47:30.0356 7068 WbioSrvc - ok

17:47:30.0418 7068 wcncsvc (dd1bae8ebfc653824d29ccf8c9054d68) C:\Windows\System32\wcncsvc.dll

17:47:30.0528 7068 wcncsvc - ok

17:47:30.0559 7068 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll

17:47:30.0590 7068 WcsPlugInService - ok

17:47:30.0637 7068 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys

17:47:30.0652 7068 Wd - ok

17:47:30.0715 7068 WDC_SAM (a3d04ebf5227886029b4532f20d026f7) C:\Windows\system32\DRIVERS\wdcsam64.sys

17:47:30.0730 7068 WDC_SAM - ok

17:47:30.0793 7068 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys

17:47:30.0824 7068 Wdf01000 - ok

17:47:30.0840 7068 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

17:47:30.0902 7068 WdiServiceHost - ok

17:47:30.0902 7068 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

17:47:30.0918 7068 WdiSystemHost - ok

17:47:30.0964 7068 WebClient (733006127f235be7c35354ebee7b9a7b) C:\Windows\System32\webclnt.dll

17:47:31.0089 7068 WebClient - ok

17:47:31.0120 7068 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll

17:47:31.0198 7068 Wecsvc - ok

17:47:31.0230 7068 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll

17:47:31.0308 7068 wercplsupport - ok

17:47:31.0339 7068 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll

17:47:31.0386 7068 WerSvc - ok

17:47:31.0448 7068 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys

17:47:31.0510 7068 WfpLwf - ok

17:47:31.0510 7068 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys

17:47:31.0526 7068 WIMMount - ok

17:47:31.0557 7068 WinDefend - ok

17:47:31.0557 7068 WinHttpAutoProxySvc - ok

17:47:31.0620 7068 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll

17:47:31.0713 7068 Winmgmt - ok

17:47:31.0838 7068 WinRM (41fbb751936b387f9179e7f03a74fe29) C:\Windows\system32\WsmSvc.dll

17:47:31.0947 7068 WinRM - ok

17:47:32.0134 7068 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll

17:47:32.0212 7068 Wlansvc - ok

17:47:32.0322 7068 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

17:47:32.0353 7068 wlcrasvc - ok

17:47:32.0524 7068 wlidsvc (7e47c328fc4768cb8beafbcfafa70362) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

17:47:32.0571 7068 wlidsvc - ok

17:47:32.0696 7068 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys

17:47:32.0743 7068 WmiAcpi - ok

17:47:32.0821 7068 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe

17:47:32.0883 7068 wmiApSrv - ok

17:47:32.0930 7068 WMPNetworkSvc - ok

17:47:32.0992 7068 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll

17:47:33.0086 7068 WPCSvc - ok

17:47:33.0102 7068 WPDBusEnum (2e57ddf2880a7e52e76f41c7e96d327b) C:\Windows\system32\wpdbusenum.dll

17:47:33.0211 7068 WPDBusEnum - ok

17:47:33.0242 7068 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys

17:47:33.0320 7068 ws2ifsl - ok

17:47:33.0367 7068 wscsvc (8f9f3969933c02da96eb0f84576db43e) C:\Windows\system32\wscsvc.dll

17:47:33.0429 7068 wscsvc - ok

17:47:33.0429 7068 WSearch - ok

17:47:33.0601 7068 wuauserv (38340204a2d0228f1e87740fc5e554a7) C:\Windows\system32\wuaueng.dll

17:47:33.0710 7068 wuauserv - ok

17:47:33.0866 7068 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys

17:47:33.0928 7068 WudfPf - ok

17:47:33.0975 7068 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys

17:47:34.0069 7068 WUDFRd - ok

17:47:34.0116 7068 wudfsvc (b551d6637aa0e132c18ac6e504f7b79b) C:\Windows\System32\WUDFSvc.dll

17:47:34.0240 7068 wudfsvc - ok

17:47:34.0272 7068 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll

17:47:34.0303 7068 WwanSvc - ok

17:47:34.0381 7068 yukonw7 (5250193ef8e173aa7491250f00eb367f) C:\Windows\system32\DRIVERS\yk62x64.sys

17:47:34.0412 7068 yukonw7 - ok

17:47:34.0459 7068 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0

17:47:34.0818 7068 \Device\Harddisk0\DR0 - ok

17:47:34.0818 7068 Boot (0x1200) (b3d7febb5f4d5f9447db64e129fb4af9) \Device\Harddisk0\DR0\Partition0

17:47:34.0818 7068 \Device\Harddisk0\DR0\Partition0 - ok

17:47:34.0849 7068 Boot (0x1200) (5bbcf8118bf4c057d38377d07b9f55a0) \Device\Harddisk0\DR0\Partition1

17:47:34.0849 7068 \Device\Harddisk0\DR0\Partition1 - ok

17:47:34.0849 7068 ============================================================

17:47:34.0849 7068 Scan finished

17:47:34.0849 7068 ============================================================

17:47:34.0880 6404 Detected object count: 6

17:47:34.0880 6404 Actual detected object count: 6

17:48:05.0846 6404 igfx ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 igfx ( UnsignedFile.Multi.Generic ) - User select action: Skip

17:48:05.0846 6404 IntcDAud ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 IntcDAud ( UnsignedFile.Multi.Generic ) - User select action: Skip

17:48:05.0846 6404 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip

17:48:05.0846 6404 Oasis2Service ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 Oasis2Service ( UnsignedFile.Multi.Generic ) - User select action: Skip

17:48:05.0846 6404 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip

17:48:05.0846 6404 USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user

17:48:05.0846 6404 USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip

Malwarebytes Anti-Malware 1.61.0.1400

www.malwarebytes.org

Database version: v2012.05.18.08

Windows 7 x64 NTFS

Internet Explorer 9.0.8112.16421

Patty :: PATTY-VAIO [administrator]

5/18/2012 5:55:24 PM

mbam-log-2012-05-18 (17-55-24).txt

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 222585

Time elapsed: 3 minute(s), 9 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 0

(No malicious items detected)

Files Detected: 0

(No malicious items detected)

(end)

Link to post
Share on other sites

Please visit this webpage for download links, and instructions for running the tool:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

* Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Please include the C:\ComboFix.txt in your next reply for further review.

Link to post
Share on other sites

I've split the log into two posts since it was too long to post as one:

ComboFix 12-05-19.01 - Patty 05/19/2012 12:31:21.2.4 - x64

Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3950.2253 [GMT -5:00]

Running from: c:\users\Patty\Desktop\ComboFix.exe

AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}

SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

((((((((((((((((((((((((( Files Created from 2012-04-19 to 2012-05-19 )))))))))))))))))))))))))))))))

.

.

2012-05-19 17:36 . 2012-05-19 17:36 -------- d-----w- c:\users\Default\AppData\Local\temp

2012-05-19 17:36 . 2012-05-19 17:36 -------- d-----w- c:\users\boinc_master\AppData\Local\temp

2012-05-19 17:22 . 2012-05-19 17:22 69000 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{08BE054C-01B0-4756-95FE-471F21D077FF}\offreg.dll

2012-05-18 20:53 . 2012-05-08 17:02 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{08BE054C-01B0-4756-95FE-471F21D077FF}\mpengine.dll

2012-05-18 15:08 . 2012-05-18 15:08 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service

2012-05-17 18:19 . 2012-05-08 17:02 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2012-05-17 18:12 . 2012-05-17 18:12 -------- d-----w- c:\users\Patty\AppData\Local\PackageAware

2012-05-17 17:45 . 2012-05-17 18:50 -------- d-----w- c:\program files (x86)\Google

2012-05-17 17:45 . 2012-05-17 17:57 -------- d-----w- c:\users\Patty\AppData\Local\Google

2012-05-17 17:45 . 2012-03-06 23:15 258520 ----a-w- c:\windows\system32\aswBoot.exe

2012-05-17 17:44 . 2012-05-17 18:07 -------- d-----w- c:\programdata\AVAST Software

2012-05-17 17:44 . 2012-05-17 17:44 -------- d-----w- c:\program files\AVAST Software

2012-05-12 03:26 . 2012-05-12 06:22 -------- d-----w- c:\users\Patty\AppData\Roaming\vlc

2012-05-12 03:25 . 2012-05-12 03:25 -------- d-----w- c:\program files (x86)\VideoLAN

2012-05-11 08:01 . 2012-05-11 08:01 -------- d-----w- c:\program files\Microsoft Silverlight

2012-05-11 08:01 . 2012-05-11 08:01 -------- d-----w- c:\program files (x86)\Microsoft Silverlight

2012-05-10 08:16 . 2012-04-02 04:40 936960 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 08:16 . 2012-04-02 05:26 1732096 ----a-w- c:\program files\Windows Journal\NBDoc.DLL

2012-05-10 08:16 . 2012-04-02 05:24 1393664 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll

2012-05-10 08:16 . 2012-04-02 05:24 1367552 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 08:15 . 2012-04-02 05:24 1402880 ----a-w- c:\program files\Windows Journal\JNWDRV.dll

2012-05-10 03:05 . 2012-03-03 05:40 739840 ----a-w- c:\windows\SysWow64\d2d1.dll

2012-05-10 03:05 . 2012-03-03 06:29 1541120 ----a-w- c:\windows\system32\DWrite.dll

2012-05-10 03:05 . 2012-03-03 05:40 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll

2012-05-10 03:05 . 2012-03-03 06:29 320512 ----a-w- c:\windows\system32\d3d10_1core.dll

2012-05-10 03:05 . 2012-03-03 06:29 197120 ----a-w- c:\windows\system32\d3d10_1.dll

2012-05-10 03:05 . 2012-03-03 06:29 1837568 ----a-w- c:\windows\system32\d3d10warp.dll

2012-05-10 03:05 . 2012-03-03 06:29 902656 ----a-w- c:\windows\system32\d2d1.dll

2012-05-10 03:05 . 2012-03-03 05:40 1170944 ----a-w- c:\windows\SysWow64\d3d10warp.dll

2012-05-10 03:05 . 2012-03-03 05:40 218624 ----a-w- c:\windows\SysWow64\d3d10_1core.dll

2012-05-10 03:05 . 2012-03-03 05:40 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll

2012-05-10 03:04 . 2012-04-02 05:34 5504880 ----a-w- c:\windows\system32\ntoskrnl.exe

2012-05-10 03:04 . 2012-04-02 03:01 3143680 ----a-w- c:\windows\system32\win32k.sys

2012-05-10 03:04 . 2012-04-02 04:46 3958128 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe

2012-05-10 03:04 . 2012-04-02 04:46 3902320 ----a-w- c:\windows\SysWow64\ntoskrnl.exe

2012-05-10 03:04 . 2012-03-17 07:55 75632 ----a-w- c:\windows\system32\drivers\partmgr.sys

2012-05-10 03:04 . 2012-03-30 11:09 1895280 ----a-w- c:\windows\system32\drivers\tcpip.sys

2012-05-07 00:00 . 2012-05-07 00:00 -------- d-----w- c:\program files (x86)\ESET

2012-05-06 08:40 . 2012-05-06 08:41 -------- d-----w- c:\programdata\HitmanPro

2012-05-06 04:21 . 2012-05-06 04:21 -------- d-----w- c:\program files\iPod

2012-05-06 04:21 . 2012-05-06 04:22 -------- d-----w- c:\program files\iTunes

2012-05-06 04:21 . 2012-05-06 04:22 -------- d-----w- c:\program files (x86)\iTunes

2012-05-01 08:01 . 2012-05-01 08:01 -------- d-----w- c:\program files (x86)\Microsoft Security Client

2012-04-29 16:43 . 2012-04-29 16:43 -------- d-----w- c:\users\Patty\AppData\Roaming\Skype

.

.

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-04-04 20:56 . 2012-01-04 00:02 24904 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-03-21 01:44 . 2011-04-27 21:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys

2012-03-21 01:44 . 2011-04-18 19:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys

2012-03-01 06:54 . 2012-04-11 08:01 22896 ----a-w- c:\windows\system32\drivers\fs_rec.sys

2012-03-01 06:45 . 2012-04-11 08:01 220672 ----a-w- c:\windows\system32\wintrust.dll

2012-03-01 06:40 . 2012-04-11 08:01 80896 ----a-w- c:\windows\system32\imagehlp.dll

2012-03-01 06:35 . 2012-04-11 08:01 5120 ----a-w- c:\windows\system32\wmi.dll

2012-03-01 05:49 . 2012-04-11 08:01 172544 ----a-w- c:\windows\SysWow64\wintrust.dll

2012-03-01 05:45 . 2012-04-11 08:01 158720 ----a-w- c:\windows\SysWow64\imagehlp.dll

2012-03-01 05:40 . 2012-04-11 08:01 5120 ----a-w- c:\windows\SysWow64\wmi.dll

2012-02-28 19:50 . 2012-02-18 04:46 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2012-02-28 06:56 . 2012-04-11 08:05 2311168 ----a-w- c:\windows\system32\jscript9.dll

2012-02-28 06:49 . 2012-04-11 08:05 1390080 ----a-w- c:\windows\system32\wininet.dll

2012-02-28 06:48 . 2012-04-11 08:05 1493504 ----a-w- c:\windows\system32\inetcpl.cpl

2012-02-28 06:42 . 2012-04-11 08:05 2382848 ----a-w- c:\windows\system32\mshtml.tlb

2012-02-28 01:18 . 2012-04-11 08:05 1799168 ----a-w- c:\windows\SysWow64\jscript9.dll

2012-02-28 01:11 . 2012-04-11 08:05 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl

2012-02-28 01:11 . 2012-04-11 08:05 1127424 ----a-w- c:\windows\SysWow64\wininet.dll

2012-02-28 01:03 . 2012-04-11 08:05 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb

.

.

((((((((((((((((((((((((((((( SnapShot@2012-05-06_09.06.02 )))))))))))))))))))))))))))))))))))))))))

.

- 2009-07-14 04:54 . 2012-01-01 20:03 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

+ 2009-07-14 04:54 . 2012-05-17 18:08 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

+ 2009-07-14 04:54 . 2012-05-17 18:08 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

- 2009-07-14 04:54 . 2012-01-01 20:03 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

+ 2009-07-14 04:54 . 2012-05-17 18:08 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

- 2009-07-14 04:54 . 2012-01-01 20:03 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

+ 2011-01-10 19:06 . 2012-05-17 18:09 44758 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin

+ 2009-07-14 05:10 . 2012-05-17 18:09 33646 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin

- 2012-01-01 09:37 . 2012-05-06 07:52 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

+ 2012-01-01 09:37 . 2012-05-19 17:19 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat

+ 2012-05-07 03:37 . 2012-05-19 17:19 49152 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

- 2012-01-01 09:37 . 2012-05-06 07:52 49152 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat

+ 2009-07-14 04:54 . 2012-05-19 17:19 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

- 2009-07-14 04:54 . 2012-05-06 07:52 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat

- 2009-07-14 04:46 . 2012-04-12 16:02 80352 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat

+ 2009-07-14 04:46 . 2012-05-11 01:01 80352 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat

- 2011-11-22 04:57 . 2011-11-22 04:57 68880 c:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 68880 c:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 57616 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 57616 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 87408 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 93024 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 35688 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 11120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 17784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 58240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 44920 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 37240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 64352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 51032 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 50552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 81784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 81800 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 39784 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 68952 c:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 62880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 12128 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll

- 2012-04-11 08:10 . 2012-04-11 08:10 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 97680 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 17240 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 94552 c:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 91488 c:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 78168 c:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 81248 c:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll

+ 2012-04-11 09:55 . 2012-04-11 09:55 41472 c:\windows\Installer\4182a50.msi

- 2012-01-10 04:43 . 2012-04-11 08:07 35088 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\oisicon.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 35088 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\oisicon.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 18704 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\mspicons.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 18704 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\mspicons.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 20240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\cagicon.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 20240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\cagicon.exe

+ 2012-05-10 08:18 . 2012-05-10 08:18 10240 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7fa267d10b2df6dbd00d00d130715f0a\System.Xml.Serialization.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 43520 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Pres#\054fce9466c6cef615b2f7cc9ff4e7f8\System.Windows.Presentation.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 86016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\ff78ec1b5bf38a8fb74c2d4f41bb308a\System.Web.ApplicationServices.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 97792 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\e144d0028365c62178eb0662911ac910\System.AddIn.Contract.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 14336 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\93295f3771dc9e5be2d49d5f5d76a7a6\Microsoft.VisualC.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 10752 c:\windows\assembly\NativeImages_v4.0.30319_64\dfsvc\5ea625ce2d6c08687f70cb81a003a28b\dfsvc.ni.exe

+ 2012-05-10 08:14 . 2012-05-10 08:14 58368 c:\windows\assembly\NativeImages_v4.0.30319_64\Accessibility\061cbee19075e086d675a9e1f65725d7\Accessibility.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 96768 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\05787d96761cf20b76b927ace10ef1d3\UIAutomationProvider.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 35328 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\f3a9c6e87bfa4bab3689ec1cdb56964f\System.Windows.Presentation.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 71680 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\9b418f37f4594806e1f4b0ed6d083a95\System.Web.ApplicationServices.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 82432 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\d09c237ee72af3935f1a01388ef8e315\System.ServiceModel.Channels.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 78848 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\59be5fb54e018032511415f0b0523ee3\System.AddIn.Contract.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 11776 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\46f273930666397a8cb538ffe9190eef\Microsoft.VisualC.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 44544 c:\windows\assembly\NativeImages_v4.0.30319_32\Accessibility\62c1a496dff99a6e5f5e4278d31ca4c1\Accessibility.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 60416 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\cf409e6576e3acec611838a755293418\System.Windows.Presentation.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\99c48948cadbb09df96bfe36edf60511\System.Web.DynamicData.Design.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 90624 c:\windows\assembly\NativeImages_v2.0.50727_64\stdole\ef1f41de2634a23063369e7eb1cac97b\stdole.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 72192 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\ecc5750e8d62675bf59eb202eeeeacbe\PresentationFontCache.ni.exe

+ 2012-05-10 08:34 . 2012-05-10 08:34 61952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\cc29df25d166ceed89d259b00e2bba9e\PresentationCFFRasterizer.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 33792 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\dd71ed714dc374e3d85824c17795e706\Microsoft.WSMan.Runtime.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 45056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\b8dac004fdabbb2dc12830dcd22fed29\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 70144 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\6b86a80d8cb8fb51252e0cd8fe697f9f\Microsoft.Windows.Diagnosis.SDEngine.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 43520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\64c811070a4d05e238e27d2a6e9bed25\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 40448 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4eaff8355f942bb1a95300aeb2882602\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 59904 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\3453bb2216048726659887ecaf5cce4a\Microsoft.Windows.Diagnosis.SDHost.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 36864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\12abdc966e63bcb3077c71c6483762c3\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 32256 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\e0e2b0cdfa700bc21e09ddac3a9b46cc\Microsoft.VisualC.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 65536 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c341c5df5ab35bb87765f39688c1e7ec\Microsoft.MediaCenter.iTv.Hosting.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 40960 c:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\62299472064bb88c63cdfa740cc34f1d\LoadMxf.ni.exe

+ 2012-05-10 08:43 . 2012-05-10 08:43 49664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\4ba55ae7274a85c8ae32a36aa8bcbfc5\ehiUPnP.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 93184 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\f9bd420501d5877ff7dd7fe308663935\ehiTVMSMusic.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 28672 c:\windows\assembly\NativeImages_v2.0.50727_64\dfsvc\c1ba413fc8eb57b417a2de4cf678e4f6\dfsvc.ni.exe

+ 2012-05-10 08:34 . 2012-05-10 08:34 78848 c:\windows\assembly\NativeImages_v2.0.50727_64\Accessibility\0bc383bf9841cca7654fe938399b3a07\Accessibility.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 61440 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\727ca1f963e5ccc727c30f2985f8069f\WindowsLiveWriter.ni.exe

+ 2012-05-10 08:40 . 2012-05-10 08:40 81408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\dfe1496c2a27c01b1e24cd9bae3ccf8c\WindowsLive.Writer.Passport.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 33792 c:\windows\assembly\NativeImages_v2.0.50727_32\vmpRegionConf\57cbee2b7f686f7b8f0dfe87f4cb829e\vmpRegionConf.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\68b5806af0df6ce86027bacb7dc37233\UIAutomationProvider.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 52224 c:\windows\assembly\NativeImages_v2.0.50727_32\ThumbnailCache\9030fa67ff766be10a567e9a4ff196ec\ThumbnailCache.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\b0b664ed5c18ac51259abb7902671370\System.Windows.Presentation.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\4171538a927bfd6882f7d5a21619e2a1\System.Web.DynamicData.Design.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\bdf3aabfa0a15d557aec32505a5eaaee\System.ComponentModel.DataAnnotations.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\99bb6d93ce5daed24761530fa32ed5f4\System.AddIn.Contract.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\5357cca887f53e1007fc9cf4c0c9a412\stdole.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\b0cdc419b6f2b0ddf0cda5f157e67516\PresentationFontCache.ni.exe

+ 2012-05-10 08:37 . 2012-05-10 08:37 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\8ac4be1ad8f1aae0c23366c9ce0724e0\PresentationCFFRasterizer.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 62976 c:\windows\assembly\NativeImages_v2.0.50727_32\PMB\47f576cb49e2c548950248a34a7ef506\PMB.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\1af767233028c3165de880775391c53f\napcrypt.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\MusicDataAccessIF\e584764ca7b7f7b9fc9d55b7ab5811d1\MusicDataAccessIF.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 97280 c:\windows\assembly\NativeImages_v2.0.50727_32\MidFileConvert\32de838980f269209a87e3e86546eff4\MidFileConvert.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\b9935982ad038d7a02f7931a8ee2977b\Microsoft.WSMan.Runtime.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ea54c98d0fa82cdb0bf5ec9b50463d75\Microsoft.Windows.Diagnosis.SDEngine.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ddf3add57c84af5d63b3a2398ed5e1a4\Microsoft.Windows.Diagnosis.SDHost.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\bd26bb6b78c6c02df886f26342b5e76a\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\6a491bf821cc13223f288eb72176ffc7\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 86016 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\6a1cb87d9cb795b53eab2c57e2d7db48\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\62e634be25913db13e84a26296cee020\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\5c234eea7e7d54a466ad00d9ac238e6a\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\dc44431123bc3e6b39dbea49ac1f1963\Microsoft.Vsa.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 15872 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\b69ac98f94e80b659eac618c6142ea9b\Microsoft.VisualC.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\6ddfa12f22ada63da088e98223858b69\Microsoft.Build.Framework.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\2f7754efa196f832b12b4133f0eae060\Microsoft.Build.Framework.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 38400 c:\windows\assembly\NativeImages_v2.0.50727_32\MessageDialog\4e7e9a5e12a0d02fab854704022c65b9\MessageDialog.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\324e702f2ed99ff0d0c92ad4bf5841f3\IAStorDataMgrSvc.ni.exe

+ 2012-05-10 08:40 . 2012-05-10 08:40 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\094c7076aed91bda969c01f72d4bb63a\ehiUserXp.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 80384 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscTypeSelectUI\07f07a27431355e73bc546d1a8b95c86\DiscTypeSelectUI.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\3c44431071abcaba099902fb72392688\dfsvc.ni.exe

+ 2012-05-10 08:39 . 2012-05-10 08:39 33792 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeThreadModel\06d157c3a5d4449e29f0882b8d0e1a87\ctdeThreadModel.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 49664 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdetheme\a52e4dc1fcddd9202174dfc8b9405f79\ctdetheme.ni.exe

+ 2012-05-10 08:39 . 2012-05-10 08:39 70144 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeDefinition\ba21548abb8d310935401a97a6afbbb3\ctdeDefinition.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeconf\80e2f8db28f733d93d05e4fd564dabe8\ctdeconf.ni.exe

+ 2012-05-10 08:37 . 2012-05-10 08:37 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\34f340b0c113f7216a55dd7c82a69cc2\Accessibility.ni.dll

+ 2012-02-01 09:16 . 2012-05-07 03:18 5972 c:\windows\system32\wdi\ERCQueuedResolutions.dat

+ 2012-01-01 08:14 . 2012-05-17 18:09 7818 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-949116002-603324069-511764575-1006_UserData.bin

+ 2012-05-17 18:07 . 2012-05-17 18:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

- 2012-05-06 07:43 . 2012-05-06 07:43 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

- 2012-05-06 07:43 . 2012-05-06 07:43 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

+ 2012-05-17 18:07 . 2012-05-17 18:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

+ 2012-05-10 08:21 . 2012-05-10 08:21 9216 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\4b540b784465ca3f0742990e5af444e3\System.Xml.Serialization.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 9728 c:\windows\assembly\NativeImages_v4.0.30319_32\dfsvc\fd866b4158c3bd2a26c875f2896c5573\dfsvc.ni.exe

+ 2012-01-02 18:31 . 2012-05-19 17:19 224746 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin

+ 2012-01-02 04:46 . 2012-05-19 12:16 235446 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

+ 2009-07-14 02:36 . 2012-05-12 03:19 626330 c:\windows\system32\perfh009.dat

+ 2009-07-14 02:36 . 2012-05-12 03:19 107574 c:\windows\system32\perfc009.dat

- 2009-07-14 04:45 . 2012-03-14 08:23 336168 c:\windows\system32\FNTCACHE.DAT

+ 2009-07-14 04:45 . 2012-05-10 08:32 336168 c:\windows\system32\FNTCACHE.DAT

- 2009-07-14 05:38 . 2012-01-01 07:41 262144 c:\windows\system32\config\systemprofile\ntuser.dat

+ 2009-07-14 05:38 . 2012-05-10 00:45 262144 c:\windows\system32\config\systemprofile\ntuser.dat

- 2012-01-01 07:57 . 2012-05-06 07:43 872184 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat

+ 2012-01-01 07:57 . 2012-05-14 16:52 872184 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat

+ 2009-07-14 05:01 . 2012-05-14 16:51 295748 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

- 2009-07-14 05:01 . 2012-05-06 07:43 295748 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

+ 2011-12-15 19:01 . 2011-12-15 19:01 226600 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationHost_v0400.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 156440 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.AddIn.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 598784 c:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll

- 2011-11-22 04:57 . 2011-11-22 04:57 598784 c:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll

+ 2012-05-10 03:05 . 2012-04-06 00:45 172128 c:\windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationHostDLL.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 486144 c:\windows\Microsoft.NET\Framework64\v2.0.50727\SOS.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 182056 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationHost_v0400.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 156440 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.AddIn.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 518400 c:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 518400 c:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 957200 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 957200 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 386824 c:\windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 131168 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 389888 c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 364816 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 996112 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 350592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 163168 c:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 138592 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 699224 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 857960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 675672 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 113512 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 129912 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 390008 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 505208 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 261472 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 122264 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 291184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 349568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 236880 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 253280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 378720 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 134528 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 123736 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 392552 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 125816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 120152 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 616216 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 616216 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 395120 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 182144 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 285072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 829280 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 747360 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 436600 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 683872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 409448 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 210816 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 156440 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn\v4.0_4.0.0.0__b77a5c561934e089\System.AddIn.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 122248 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 525704 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 112976 c:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 581464 c:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 832856 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 194424 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 478576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 167288 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 232304 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 661352 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 349576 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 387960 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 746336 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 505184 c:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 288616 c:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 335712 c:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 125440 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 237424 c:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 187776 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 269672 c:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 334688 c:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 109568 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 246128 c:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 170368 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll

+ 2012-02-10 16:38 . 2012-02-10 16:38 475136 c:\windows\Installer\ee091e.msi

+ 2012-01-10 04:43 . 2012-05-10 08:13 888080 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\wordicon.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 888080 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\wordicon.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 922384 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\pptico.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 922384 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\pptico.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 845584 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\outicon.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 845584 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\outicon.exe

+ 2012-01-10 04:43 . 2012-05-10 08:13 217864 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\misc.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 217864 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\misc.exe

+ 2010-03-18 19:16 . 2010-03-18 19:16 181096 c:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_X86.dll

+ 2010-03-18 20:27 . 2010-03-18 20:27 225640 c:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_AMD64.dll

+ 2011-01-14 12:10 . 2011-01-14 12:10 155520 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKWORD6.DLL

+ 2011-01-14 12:10 . 2011-01-14 12:10 140160 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKEXCEL2.DLL

+ 2011-09-16 01:41 . 2011-09-16 01:41 408936 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6612\WINWORD.EXE

+ 2012-05-10 08:18 . 2012-05-10 08:18 337408 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\65f25960625d91ca79a40f9067adc021\WindowsFormsIntegration.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 231424 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\fb43d84bc59b21e8a7f3e36d616eea90\UIAutomationTypes.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 122368 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\26f12a0a3baed2a227cf30aaeae03913\UIAutomationProvider.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 645120 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClient\1c3c298326e9ac14796516ac1da09a16\UIAutomationClient.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 528896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\307eea660f877dc40ae90882ce554757\System.Xml.Linq.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 256000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\b4afa252d0f0e27b0b5e8fcb2cc5b3a7\System.Windows.Input.Manipulations.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 903168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\8c0ee7b970cc4e8c2986c7898af71661\System.Transactions.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 281088 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\85810fe277a718273eb946a460ae8010\System.ServiceProcess.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 108032 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\eb4fb369926faaffede7aaf317fd6532\System.ServiceModel.Channels.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 517120 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\e5ab3c37897bb578bdbfe6b7e0558ad8\System.ServiceModel.Routing.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 946688 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Security\e48b6a8c491a96d1bc601795532af605\System.Security.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 376832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\7590828d50338d512b11a4d3f87d69a2\System.Runtime.Serialization.Formatters.Soap.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 987648 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\21d5b44ef01ccfa69e79674a51707de0\System.Runtime.Remoting.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 176640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Numerics\5f2bfb0585061dc256ee9587d430959f\System.Numerics.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 933376 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Net\6996a415485a84fef2d2556b0462336f\System.Net.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 781824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\a3849a373beeb3509d8c22d5751dfad3\System.Messaging.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 521728 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\92d266f677605e5475b7f39c063c4a9d\System.Management.Instrumentation.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 531456 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\07a0e1efc063042be3e8faf62b413a12\System.IO.Log.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 290816 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\7fd39b9a208214e6e5eba4e9396409f1\System.IdentityModel.Selectors.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 348672 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\8e10d4f2a408dc5a9740f8d0df5cebac\System.EnterpriseServices.Wrapper.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 512000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\521f5bccf74318a4777597b0c01fda1e\System.Dynamic.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 632832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\6a8bd7d373c988a585e90bb61c5ec8cc\System.DirectoryServices.Protocols.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 141824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Device\78dd02d104bb15bc3820c06bd2876239\System.Device.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 176128 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\97d1aaf3733b107ecdbecb9d21050ff4\System.Data.DataSetExtensions.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 181760 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuratio#\c3d7a7ff58ff502887d8f1b77e61adbc\System.Configuration.Install.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 255488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\a4f91f2dfd1656ef2e42917963f6bf50\System.ComponentModel.DataAnnotations.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 871936 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\b1c67ee2e0e6e78c31985069fbc82596\System.AddIn.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 560640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\c69fb0f955adc7ca80cd5f2fd730edea\System.Activities.DurableInstancing.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 432128 c:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\11fc863fa4f5092fca4f2ce25a9ac361\SMSvcHost.ni.exe

+ 2012-05-10 08:16 . 2012-05-10 08:16 185344 c:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\50e8e826488639e549589ba34666933e\SMDiagnostics.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 428032 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\722c0236432dd5ccc047481d3ebbd49e\PresentationFramework.Royale.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 622592 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\6739c3715c9e38dbdfbfd57b424a3094\PresentationFramework.Aero.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 802304 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\3e7359f5f0fb68565314f88f6ec2d67a\PresentationFramework.Luna.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 349184 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\263748f3d18955b9e467710da1e8546f\PresentationFramework.Classic.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 422912 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\6493bbb60833072904ad141a5a4d08ac\Microsoft.VisualBasic.Compatibility.Data.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 600064 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\6480551111832c83ee88bcf756a72533\Microsoft.Transactions.Bridge.Dtc.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 279552 c:\windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\0e81a3996f7cbff23fc01bea4185a918\CustomMarshalers.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 253952 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\ede3b9144bc31da0eaaf86c7b6a9eaaa\WindowsFormsIntegration.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 196096 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\0a80fd3af7e48eb9cc9099fee5814dff\UIAutomationTypes.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 484352 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\7a9f70fa774076a7ec19bc03e7064d0d\UIAutomationClient.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 393216 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\4837a5c6204d53e7aa4f7dd94b98207c\System.Xml.Linq.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 189440 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\c477bbff1e4662263255a1bf17bd9c2a\System.Windows.Input.Manipulations.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 649728 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\67a386434938003bceb0752e979dabb3\System.Transactions.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 221696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\35da2da22db8fde344d9e17b20a91816\System.ServiceProcess.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 369664 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\dc86fe1c7a6e3a7ce9e9c1f13d9b1e8e\System.ServiceModel.Routing.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 736768 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Security\5a3beae8b211b91bfc620c029cf4c2d4\System.Security.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 311296 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\5a4d233916a69d48fa12a9f7f103d893\System.Runtime.Serialization.Formatters.Soap.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 762880 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\65f0d70169a0e73b45307dddbd86f92b\System.Runtime.Remoting.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 145408 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\7b7719d46a4da2e91e8c501347e48ab9\System.Numerics.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 657408 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Net\dd25ddcfa0417d40e3f1385e30abcd6f\System.Net.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 626176 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\87f2fdf92547c337644f4db30caa63e3\System.Messaging.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 395264 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\08397796343d5730a29f42e61c7f6ee7\System.Management.Instrumentation.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 413696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\ff1250d2409bd16283c423650d6fd3f6\System.IO.Log.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 229888 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\e60675d3ba7fa94924489dc8466ebff5\System.IdentityModel.Selectors.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 236032 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\bb40644f323a93fa9bc09be350918ef3\System.EnterpriseServices.Wrapper.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 787456 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\bb40644f323a93fa9bc09be350918ef3\System.EnterpriseServices.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 377856 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Dynamic\a9b1e597aaa263dea2cf8754440bd271\System.Dynamic.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 470528 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\e41e86da56bb60523251e0e08210a77b\System.DirectoryServices.Protocols.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 913920 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\94d45f7f28d81304d7fa83bcea849141\System.DirectoryServices.AccountManagement.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 112640 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Device\4c50d8a951546d6dffdc8bcb23f47a7b\System.Device.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 134656 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\7803f4398a527a87d5cace8023e93e8b\System.Data.DataSetExtensions.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 982528 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\623d2a0f11dd82bb9bc13d1cb981b239\System.Configuration.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 148480 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\977c7c2badf6a9059ba8371a0f645fc8\System.Configuration.Install.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 693760 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\877ef74350e6d374ca8f80b489a8cc8e\System.ComponentModel.Composition.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\4330e93f9d0ef85f1a972e11c2ac5156\System.ComponentModel.DataAnnotations.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 624128 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\0c67d9fc14856eb7d8b4e405aef79960\System.AddIn.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 411136 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\2b046f2d5f056b906d7b25b75ca23575\System.Activities.DurableInstancing.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 317952 c:\windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\4847f66153121ec4ed532909f7c152be\SMSvcHost.ni.exe

+ 2012-05-10 08:19 . 2012-05-10 08:19 143360 c:\windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\bb97517e4ca64e02282fca24612ce8ad\SMDiagnostics.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 309760 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\ef6e3eb351fe12a5766be7c956c35d95\PresentationFramework.Classic.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 387072 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e49a124fdad0f1db135f03a49f18fb48\PresentationFramework.Royale.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 595968 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\a5fa2a1cfc6e9fdc39d9a8f2baa57bc9\PresentationFramework.Aero.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 755712 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\141f0a8fbfb83604fa3dd43dbe8fa0f4\PresentationFramework.Luna.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 303104 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\a604989c1d4b14505e020b7d015cacbd\Microsoft.VisualBasic.Compatibility.Data.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 418816 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\01c5ff7a1ea0463414736df5d449e0a9\Microsoft.Transactions.Bridge.Dtc.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\f11d5fea7ded12068e8cdb8b2f1bdbd9\CustomMarshalers.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 468992 c:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\3fbaee209e13d65183d2d802cf053f10\WsatConfig.ni.exe

+ 2012-05-10 08:46 . 2012-05-10 08:46 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\886c50212ca6df7af595db7a064dcf5f\WindowsFormsIntegration.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 253952 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\f0e602dd94327e6eea126e72cb24c4a3\UIAutomationTypes.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\ef1cc397129c81ecb60431633b7d6f94\UIAutomationProvider.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 653312 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\2adb36011c54ef24dff70bef5e31a71a\UIAutomationClient.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\c7f75a753decf48756decba7a49bb76c\TaskScheduler.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 529920 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\b0bc5a1ed5648bbe61d4ceb1b4bde03d\System.Xml.Linq.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\589c5c722cae4122c8643c9b028d3212\System.Web.Routing.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 261120 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.RegularE#\9a541383d78143dc386512b092cb58a9\System.Web.RegularExpressions.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\0db8a7c8fae88d5e8d3fae1787f01c43\System.Web.Entity.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\793107042814869ffcf96bb21af5a5c1\System.Web.Entity.Design.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\a40d32e42e3aab08e4bc2fc2cddcee24\System.Web.DynamicData.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\74564af483830e4898d9acf98b14aaa1\System.Web.Abstractions.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 921600 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Transactions\348482b8eb60eb9595a313ed706fa074\System.Transactions.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 295424 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\71f666396537e860a5ebccc6923b99cd\System.ServiceProcess.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 928768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Security\3fbac653667adb06ac98561f57049751\System.Security.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 396288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\3805923cd6a0d7c9c4c872c1ede4619d\System.Runtime.Serialization.Formatters.Soap.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 916480 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\c944f6d1355c8e02be1b6adb9022efd8\System.Net.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\d52b2623571f82c20cc8c6fe8e162a4a\System.Messaging.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 534016 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\27bb4472bb5e4fe714126010e7c615ca\System.Management.Instrumentation.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 569344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\beb72e4d0964165386096323e4494003\System.IO.Log.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 294400 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\0e83d3c8f7e6295055548caa2a1a3743\System.IdentityModel.Selectors.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 446464 c:\windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\b48bd4bfbc25e5fb2b6bbc0627bb7aad\System.EnterpriseServices.Wrapper.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 288768 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\b7b3b4681359f5ced9d65e88d09a81f6\System.Drawing.Design.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 649728 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\3d2da45f50b57ab5871ff32fa9a0fa71\System.DirectoryServices.Protocols.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 493056 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\c1999d1e18a7c62be8765f97398c1b7c\System.Data.Services.Design.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 194560 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\2e18ba464979573aa3dcf04e07e79d87\System.Data.DataSetExtensions.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 192000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuratio#\58d7e28f550aa89ebc5046b960525b46\System.Configuration.Install.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 132096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\3de11837ee6fc7bda6f50bdc8eed68ce\System.ComponentModel.DataAnnotations.ni.dll

+ 2012-05-10 08:38 . 2012-05-10 08:38 890880 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\eb850c90fad10f90fa495be2efa5d8ec\System.AddIn.ni.dll

+ 2012-05-10 08:38 . 2012-05-10 08:38 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\236fe667af3ca016ae66a5b08fb94bd8\System.AddIn.Contract.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 297984 c:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\9cf7f4430b8c379ca9bfe4428932af5e\sysglobl.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 525824 c:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\510283052ba3df05080787d71eb6fa31\SMSvcHost.ni.exe

+ 2012-05-10 08:43 . 2012-05-10 08:43 349184 c:\windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\97ef3ca694f50f101c0b369e3c3528cc\SMDiagnostics.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 279040 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\dc82ea5f368056cb5340c270bb75becb\PresentationFramework.Classic.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 620544 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\76933856fb4dd9f9cf17136aac2ca38c\PresentationFramework.Luna.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 463360 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\5a95213214431ffa96c6e4dbfa36345e\PresentationFramework.Aero.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 317440 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\57138d0d992b152869c9bb250e9d3735\PresentationFramework.Royale.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\7a6aa6677bc211e2099940c2e7efb750\napsnap.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\9f0fd74c37ad79dc7d5cd30026223c97\napinit.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 175104 c:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\4a034fcf374482db0b2cb8a7f661608c\naphlpr.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 127488 c:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\41854d8487d49fad7f177425b6c781f7\napcrypt.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 184320 c:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\02fa94543dd6ba737d98562e9a42e519\MSBuild.ni.exe

+ 2012-05-10 08:44 . 2012-05-10 08:44 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\85e4c8805347480c7a1b97f3fba54293\MMCFxCommon.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 681472 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\d4a321be6b1775b27e878d5866ac9b6d\Microsoft.WSMan.Management.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 122368 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\bdfc36a270290eeff2dfa72949ff20ca\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll

Link to post
Share on other sites

+ 2012-05-10 08:45 . 2012-05-10 08:45 105984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\915c41bb932618c4abf94b123df9ceae\Microsoft.Vsa.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 584192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\b90d3fa08fb2f482ec06283b20bf4525\Microsoft.Transactions.Bridge.Dtc.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 237056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f50a903783750e4c093cbf105f334ead\Microsoft.PowerShell.Security.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 999936 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\65d6ad0aa6d85a25d2840ab5f7d7405c\Microsoft.PowerShell.GraphicalHost.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 713216 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3acefb890be23403069123754db8a8d1\Microsoft.PowerShell.ConsoleHost.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 416768 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\2708d6ea3f3db7891db1a609018064d8\Microsoft.PowerShell.Commands.Diagnostics.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 965632 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\fe529847ae6fd62b1ef4e0ce5ab14569\Microsoft.MediaCenter.Sports.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\62e3cbb17abebaf9ea084cffb9fab0b7\Microsoft.MediaCenter.ITVVM.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 522240 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4817b5f63709e4dbf02cfa2f1fbf68dd\Microsoft.MediaCenter.Interop.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 370176 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\29c42a85dce9c813e64c8c7e7c1a713c\Microsoft.MediaCenter.Playback.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\14b89978817f3f74a7f5964f21d78ef0\Microsoft.MediaCenter.iTv.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 164864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\10492ed390f72165b7701b0b209f41b1\Microsoft.MediaCenter.Mheg.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 219648 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\0e7cbd0361f32288ba6d9010608fffb9\Microsoft.MediaCenter.iTv.Media.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 797696 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\982b45a798752360cc28a6bd40b439fa\Microsoft.ManagementConsole.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 198656 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\6f1c7692333bbe4aba03d4c68cd56210\Microsoft.Build.Utilities.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 244224 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\05ab0f916af911347d5b7fda20fab3e3\Microsoft.Build.Utilities.v3.5.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\a92742de12c5358a722d9b81f4c93f8b\Microsoft.Build.Framework.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 142336 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\4d843288146d5c6ddcd942e1d68b510b\Microsoft.Build.Framework.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 294912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\9435c4788924ed688417b3087ff5cdd2\Microsoft.Build.Conversion.v3.5.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 107520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\1302272bd95a6d5bbeaf3e1a832f2552\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 380928 c:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\d0c9c13cbeb5e9d29c3300c7dc6ad18f\Mcx2Dvcs.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 547328 c:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\b65913a9eb492b4ec40363f59badb1cb\mcupdate.ni.exe

+ 2012-05-10 08:43 . 2012-05-10 08:43 533504 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\6de88da68ff92581d1bce3deaa25d9c0\mcstoredb.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\d77784d57cde949b3d0314f70b724120\mcplayerinterop.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\c35cda7fc41b48607b9c85a956fc39d6\mcGlidHostObj.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\07d8613ab03648bcfed976e469523541\MCESidebarCtrl.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\6ac6c70eca79dc3d803241ae6b8c4911\EventViewer.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 969216 c:\windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\80ae3deb3ce5b39e8134838689f5e616\ehRecObj.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 661504 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\81a510ea5fd14aa30ff41d4fc7f74161\ehiWUapi.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 933888 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\608233581ceee7892045ebae25b48248\ehiwmp.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 145408 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\0ff5bc978a9279d484cdf59d919e60df\ehiUserXp.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 196096 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\75957f1e4c465eb8053fb9f235c5c696\ehiiTv.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 397824 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\165c31078ab64ffe338512b778f3a645\ehiExtens.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 110080 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\097208918b41f71a55e52cf2e8a14b9e\ehiBmlDataCarousel.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 126976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\e59e98a748cfb940f1ec7032d0d634c9\ehiActivScp.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\31d694b6e7f85c1ef3548b8b8e643dfd\ehExtHost.ni.exe

+ 2012-05-10 08:43 . 2012-05-10 08:43 313856 c:\windows\assembly\NativeImages_v2.0.50727_64\ehCIR\f5cd36f9696a44997ffb61cc38067006\ehCIR.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 348672 c:\windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\e7e8991e9dfce879c22b2647edb72287\CustomMarshalers.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 640000 c:\windows\assembly\NativeImages_v2.0.50727_64\ComSvcConfig\bad60d21de09740f3c2a498fa4aaa7b0\ComSvcConfig.ni.exe

+ 2012-05-10 08:42 . 2012-05-10 08:42 971264 c:\windows\assembly\NativeImages_v2.0.50727_64\BDATunePIA\a7fd2038556fca7f411cf6f0a62c1671\BDATunePIA.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 321024 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\2aac794e7890acc1a1430e065e16b31a\WsatConfig.ni.exe

+ 2012-05-10 08:40 . 2012-05-10 08:40 634368 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\b9dc7a6e382fd0d26176c58ecce0ba09\WindowsLiveLocal.WriterPlugin.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 326144 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\fa2f3625c3b5ee3a8d448f0c670fcff3\WindowsLive.Writer.SpellChecker.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 122368 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ee010540c4ed2ecc3f9cdd848d25afb1\WindowsLive.Writer.Extensibility.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e040c9e32d2b6ec6aab2e0d55df8642a\WindowsLive.Writer.Interop.SHDocVw.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 871424 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c7d1f7b40c3e926235de0b3a5b9c333a\WindowsLive.Writer.BlogClient.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 374272 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b1f51c1ca821dc30de115903fa3ff89f\WindowsLive.Writer.Interop.Mshtml.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 890880 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\a8bb95de06e77c96568a217d737ed051\WindowsLive.Writer.HtmlEditor.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\9423cdd3034e4b9f28d15b8bb16b81f5\WindowsLive.Writer.Mshtml.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 101376 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\92e2ce445600ffad38256d36b3ee4b77\WindowsLive.Writer.Api.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\708342fbde17b6e9869d3ecf2520ebbd\WindowsLive.Writer.FileDestinations.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 156672 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\66d9e139e0f27e9b1e27158fd87ee00a\WindowsLive.Writer.HtmlParser.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 665600 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4aa77cc1279580e3da0797a02ada88f1\WindowsLive.Writer.Interop.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 780288 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\44bfec6d459d794b7f0e8ddee22edb98\WindowsLive.Writer.Controls.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\2aeadf3af88f0b1c4e7096415a15b529\WindowsLive.Writer.BrowserControl.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 146432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\26ba2702eaf0d1badfa87109c5a13ddc\WindowsLive.Writer.Instrumentation.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 223232 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\8f957e9088d35be4757139a607fbab89\WindowsLive.Client.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\38c7b1199d544eeec3e4df39e1b8125a\WindowsFormsIntegration.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 446976 c:\windows\assembly\NativeImages_v2.0.50727_32\VistaFileOpenDialog\c027228c32193bca00ca34d20ddc5ffb\VistaFileOpenDialog.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\5e398c245811fe932ce6bcf68664e307\UIAutomationTypes.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\42378a09ba2a003848de7d2cfeb1c56a\UIAutomationClient.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 141824 c:\windows\assembly\NativeImages_v2.0.50727_32\TemplateSelectUI\114f97802198abedc18d6798eec65927\TemplateSelectUI.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 278016 c:\windows\assembly\NativeImages_v2.0.50727_32\TemplateNavigator\cd6f041dc6ecf873c418412b31252992\TemplateNavigator.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 245248 c:\windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\816210dd625e1f83fdc4c390c05eaa39\TaskScheduler.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\496033ebd93c3381e4ba09486bf23cc3\System.Xml.Linq.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\fd3d5330dcbb6008e561c8e08dda3f3b\System.Web.Routing.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\e6a25bb61babf2ad6d6fa3256a2ea41a\System.Web.RegularExpressions.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 860160 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\521b21223611de894d88c24d70bfec1e\System.Web.Extensions.Design.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\11b452b0f0e9e6c5b84cbf4b9e0b2906\System.Web.Entity.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 301568 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\287413c3a7948acc8b32770f738ac24d\System.Web.Entity.Design.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\c7b032f865f68d8ed7134d15f5f9ff18\System.Web.DynamicData.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\2f6d1381e071c6d15efe6b33a762817a\System.Web.Abstractions.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 627200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\61fbbd8bc7d76972115b292b132ff2d1\System.Transactions.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\49ed832fa09c702258b6ed873c485428\System.ServiceProcess.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 680960 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\61af058c2bc079f28397a29ed145fbc7\System.Security.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 310784 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\35fcbda2532ece23d09a044aa2ef62a4\System.Runtime.Serialization.Formatters.Soap.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 771584 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0c00b1a8336dd4c1bd1ebce7780f20b4\System.Runtime.Remoting.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\cd8ad97063680071342f13d12376fd17\System.Net.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\44cdbda89fda50d3ae4ef0062d871d7e\System.Messaging.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 997888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\3f9dee1ce0ccb42145293a5bfcbe7205\System.Management.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\c9986072b91eb63728d4843ae798e121\System.Management.Instrumentation.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\870427539c6829f750490719470bfa22\System.IO.Log.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\f93d41cf41160cc660aea5eb8be181d6\System.IdentityModel.Selectors.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 280064 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\558fa6c6131f14af258f94291a5d19d6\System.EnterpriseServices.Wrapper.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 628224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\558fa6c6131f14af258f94291a5d19d6\System.EnterpriseServices.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\aad1941e0b3bd9cf27abd9a5c6aa4e43\System.Drawing.Design.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\bbede691e8386ac49379edad37eb7e3c\System.DirectoryServices.AccountManagement.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\77fb2ee5038b95bb20353a305918df9e\System.DirectoryServices.Protocols.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\4c7d1e5492f79ac7217577e45a06f559\System.Data.Services.Client.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\35dfab6426c2a64cae53944e19623dca\System.Data.Services.Design.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\71d6318c39c6ee8abb7c3ae61cf2fd4f\System.Data.Entity.Design.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\4f1cef2fd7b12da72654f2522f169d2e\System.Data.DataSetExtensions.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 971264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cb079eab134fd1a752ad91db13274110\System.Configuration.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\f96bc91c85c7aafc6cc0f04742359564\System.Configuration.Install.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 634368 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\db477bc003958f524c72bc30040f0899\System.AddIn.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 232448 c:\windows\assembly\NativeImages_v2.0.50727_32\sysglobl\51f227c6d989cd851b46ac157df263a3\sysglobl.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\4bc345ee664ca736a30a7fafd8c5a16c\SMSvcHost.ni.exe

+ 2012-05-10 08:40 . 2012-05-10 08:40 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\26a852935ab27c328a148effb43a76bf\SMDiagnostics.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 396288 c:\windows\assembly\NativeImages_v2.0.50727_32\SliderShowSetting\1727a38d5e5f9061a4bc20a6a5d76282\SliderShowSetting.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 159232 c:\windows\assembly\NativeImages_v2.0.50727_32\ResourceLoad\f2279bd39455d713a99a794f0fab0619\ResourceLoad.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 112640 c:\windows\assembly\NativeImages_v2.0.50727_32\RecordedDateTimeEdi#\ad1b76a83d6122c7d75bda4bd1bb4ae3\RecordedDateTimeEditUI.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\ProjectManagement\6c790bde7c642be924daae4d8a80d097\ProjectManagement.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 652800 c:\windows\assembly\NativeImages_v2.0.50727_32\PreviewControls\e81ebbda8cacbac66f15ca27e5f96507\PreviewControls.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\fcdfda3443709bbe8d0a44cf2e0e1660\PresentationFramework.Classic.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\fc626095c194be137bceb219934b06a7\PresentationFramework.Aero.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d85fc1508cff1e635f87b4afb4f4cc9a\PresentationFramework.Luna.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\056f7ed4e914569f97b47631c0ade534\PresentationFramework.Royale.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 424960 c:\windows\assembly\NativeImages_v2.0.50727_32\PMBProxy\d84039cd10e62fd7312c41b2a5052daf\PMBProxy.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 793600 c:\windows\assembly\NativeImages_v2.0.50727_32\PlayUI\e7d2be19debe8a93df5a2cc4f92ba185\PlayUI.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 988160 c:\windows\assembly\NativeImages_v2.0.50727_32\Player\e07dad016c5d47cac443dd64e122369e\Player.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 278528 c:\windows\assembly\NativeImages_v2.0.50727_32\PbServiceCore\dc46022809f95e1e4ec61458ae15fdf0\PbServiceCore.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\PbResource\6892e840a026d2cc02adf2f346956764\PbResource.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 814592 c:\windows\assembly\NativeImages_v2.0.50727_32\PbAreas\362a0fdf2e2d3e05db81b451eda966c9\PbAreas.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 123392 c:\windows\assembly\NativeImages_v2.0.50727_32\OpenningMovieSelect#\eb9ad44610a81fda12704d229c09d85c\OpenningMovieSelectUI.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 350720 c:\windows\assembly\NativeImages_v2.0.50727_32\OnlineAlbumSetting\517035680b2ae4eeb798d0f37512e63b\OnlineAlbumSetting.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\c06cabe7cc72d1f18bb454f6f4e1c124\napsnap.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\7ca76665c67d005c42b36ee5fa780eee\napinit.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\5de0fa9a3f84bad3c0827c3f77387c25\naphlpr.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 105472 c:\windows\assembly\NativeImages_v2.0.50727_32\MusicDataSource\1881b9e1927910f783315ff14ee548d1\MusicDataSource.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 683520 c:\windows\assembly\NativeImages_v2.0.50727_32\MusicDataAccess\8564be044cc158bbb43c0c447d3d53a4\MusicDataAccess.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 761344 c:\windows\assembly\NativeImages_v2.0.50727_32\MusicDataAccess\78d2aeadb2bfa77707d3089b3b3dc5d5\MusicDataAccess.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 721920 c:\windows\assembly\NativeImages_v2.0.50727_32\MusicBox\9cfdd00aa2323a77cd7e7317d1f82efa\MusicBox.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\b31fec98f29b3530a72c044d36c88cfa\MSBuild.ni.exe

+ 2012-05-10 08:40 . 2012-05-10 08:40 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\2c915521c7e4dbe76780d123d1f8d259\MMCFxCommon.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 121344 c:\windows\assembly\NativeImages_v2.0.50727_32\MidFileSetting\5ace62c284be423db44a0e0810d11316\MidFileSetting.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 531456 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\530aebd2f4fb78e463e4622b53fa1d29\Microsoft.WSMan.Management.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 187392 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC.S#\f3c2fc6b5975bcbace0b430729eff304\Microsoft.VisualC.STLCLR.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\0329bf8cfafd687cee2b2d682d182ce9\Microsoft.Transactions.Bridge.Dtc.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ec25dcf853949dc1b1055f0a8d3d3817\Microsoft.PowerShell.Commands.Diagnostics.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d664a2c965541177d610a2deffd28a29\Microsoft.PowerShell.Security.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 785920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d3719732987a18c70428002240fa0271\Microsoft.PowerShell.Commands.Management.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\83032d78b29cd09caf0ef69d05d33cd3\Microsoft.PowerShell.GraphicalHost.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\6140e4423431468afff328b69276bd43\Microsoft.PowerShell.ConsoleHost.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\56c4103033df8fc653ada2246689cecc\Microsoft.ManagementConsole.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\a3163f28829b22e3ae962dbaa9216028\Microsoft.Build.Utilities.v3.5.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4e130bab9541f548007f649552225772\Microsoft.Build.Utilities.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\c617adec91d29b55d0690ace389d1b46\Microsoft.Build.Engine.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\aa7fe29b3123fc147df14c38b18aed9d\Microsoft.Build.Conversion.v3.5.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\6b3830a6c3f619389a49d05164a9306f\mcstoredb.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 170496 c:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\8974e548fc54655fc112b538495d412a\IsdiInterop.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 452608 c:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\73baa23d28d21c7c01e334211330a84e\IAStorUtil.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 176640 c:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\5ad580e5c45304d16878d60da1c68c44\IAStorDataMgr.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 701440 c:\windows\assembly\NativeImages_v2.0.50727_32\FileSelect\ed3eedf9f235d7717997c708b343440d\FileSelect.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 671232 c:\windows\assembly\NativeImages_v2.0.50727_32\FileSelect\8f869b069256e61c8a332859cfcab098\FileSelect.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\30b555c6b4d92466e6b08b3f23044af1\EventViewer.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 104448 c:\windows\assembly\NativeImages_v2.0.50727_32\EngineFacadeIF\6633a55870a112c4de17bb855fce4317\EngineFacadeIF.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\44cb15eb402bd0ca508daca85020225a\ehRecObj.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\ae72fa5ad8bbb6651ebe2c56dabbd193\ehiVidCtl.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\f627a0274101e3dae80ddcde40885795\ehiProxy.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\b052b90444da59b2ebd1d6485cf49605\ehiExtens.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\237b3740b5aa69cf33124f3d7623b706\ehExtHost32.ni.exe

+ 2012-05-10 08:39 . 2012-05-10 08:39 474112 c:\windows\assembly\NativeImages_v2.0.50727_32\EditorDll\3c064e3d2c61105d14f538ea23194649\EditorDll.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 266240 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscPreview\f08cac52e652529a3978acbc5f4a3ad2\DiscPreview.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 865792 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscExportor\93211763ccf479f4cbf4f5af86d5ad4f\DiscExportor.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 241664 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscExporterProgress\06b55e5e8550bb5584d160e5e594ae07\DiscExporterProgress.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 188416 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscEditor\fb0bf7e5533d424e9d1cb755b640a56c\DiscEditor.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 200704 c:\windows\assembly\NativeImages_v2.0.50727_32\DiscDetailSetting\9a2a5e6ad3349f9217353287997abf21\DiscDetailSetting.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 699904 c:\windows\assembly\NativeImages_v2.0.50727_32\DataSource\92cf68317cf724081c7194a7a7b42d49\DataSource.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\1435db5dea878f59191dc112a40e2185\CustomMarshalers.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 184832 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeControls\8829a01754b04ac001e2c0ac46b6dd95\ctdeControls.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 673792 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeApp\699a9ce7d49e7a88cc2a5a6ac579c27e\ctdeApp.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 230912 c:\windows\assembly\NativeImages_v2.0.50727_32\ContentsEditor\b1e8c7ca4ce4cf2ea32f4c87d89db1fd\ContentsEditor.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\1d948af5bf966ad1277936a6e30f91e3\ComSvcConfig.ni.exe

+ 2012-05-10 08:39 . 2012-05-10 08:39 126464 c:\windows\assembly\NativeImages_v2.0.50727_32\BDJUpdate\d895c9793575d49271afab736fa40fb1\BDJUpdate.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 621568 c:\windows\assembly\NativeImages_v2.0.50727_32\BDATunePIA\7ac2fa31914eca722b63ebd994550211\BDATunePIA.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 835072 c:\windows\assembly\NativeImages_v2.0.50727_32\ASProxy\b16cc9065a4e47194cf6e1f05777875f\ASProxy.ni.dll

- 2009-07-13 21:10 . 2009-06-10 21:14 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll

- 2009-07-14 00:35 . 2009-06-10 21:14 532480 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 532480 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll

+ 2012-05-10 03:05 . 2012-04-06 00:45 357376 c:\windows\assembly\GAC_64\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll

- 2009-07-14 01:01 . 2009-06-10 20:30 357376 c:\windows\assembly\GAC_64\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll

- 2009-07-14 00:35 . 2009-06-10 21:14 368640 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 368640 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll

+ 2012-05-10 08:16 . 2012-04-02 05:24 1402880 c:\windows\system32\spool\drivers\x64\3\JNWDRV.dll

- 2009-07-14 00:03 . 2009-07-14 01:41 1402880 c:\windows\system32\spool\drivers\x64\3\JNWDRV.dll

- 2009-07-14 04:45 . 2012-04-11 16:39 3801083 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat

+ 2009-07-14 04:45 . 2012-05-10 13:00 3801083 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat

+ 2012-01-01 08:09 . 2012-05-14 16:52 1632004 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-949116002-603324069-511764575-1006-8192.dat

- 2012-01-01 08:09 . 2012-05-06 07:43 1632004 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-949116002-603324069-511764575-1006-8192.dat

- 2012-01-04 00:32 . 2012-05-06 04:45 1359864 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-949116002-603324069-511764575-1006-12288.dat

+ 2012-01-04 00:32 . 2012-05-06 19:00 1359864 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-949116002-603324069-511764575-1006-12288.dat

+ 2012-01-19 18:08 . 2012-01-19 18:08 1369872 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WindowsBase.dll

+ 2012-01-19 18:08 . 2012-01-19 18:08 6429992 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationFramework.dll

+ 2012-01-19 18:52 . 2012-01-19 18:52 3825952 c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationCore.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 5029160 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.Windows.Forms.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 3512072 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 3512072 c:\windows\Microsoft.NET\Framework64\v4.0.30319\System.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 4970768 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorlib.dll

- 2011-11-22 04:57 . 2011-11-22 04:57 4970768 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorlib.dll

- 2011-11-22 04:57 . 2011-11-22 04:57 1455376 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordbi.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 1455376 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordbi.dll

- 2011-11-22 04:57 . 2011-11-22 04:57 1515792 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 1515792 c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 1512712 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll

+ 2011-12-15 19:01 . 2011-12-15 19:01 9793280 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll

- 2011-11-22 04:57 . 2011-11-22 04:57 9793280 c:\windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll

+ 2012-05-10 03:05 . 2012-04-06 00:45 2255952 c:\windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll

- 2012-01-01 07:54 . 2011-03-29 22:26 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll

+ 2012-05-10 03:05 . 2012-03-21 22:28 5025792 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 3182592 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.dll

- 2012-02-15 02:42 . 2011-10-31 23:16 3182592 c:\windows\Microsoft.NET\Framework64\v2.0.50727\System.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 4567040 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll

- 2012-01-01 07:54 . 2011-07-08 22:32 4567040 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 1577744 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 1765136 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscordacwks.dll

+ 2012-01-19 18:08 . 2012-01-19 18:08 1369872 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsBase.dll

+ 2012-01-19 18:08 . 2012-01-19 18:08 6429992 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationFramework.dll

+ 2012-01-19 18:08 . 2012-01-19 18:08 3790112 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationCore.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 5029160 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Windows.Forms.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 3512072 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 3512072 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 5201168 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorlib.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 5201168 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorlib.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 1143568 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordacwks.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 1143568 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscordacwks.dll

- 2011-11-22 03:31 . 2011-11-22 03:31 6727424 c:\windows\Microsoft.NET\Framework\v4.0.30319\clr.dll

+ 2011-12-15 18:08 . 2011-12-15 18:08 6727424 c:\windows\Microsoft.NET\Framework\v4.0.30319\clr.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 1737296 c:\windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll

+ 2012-05-10 03:05 . 2012-03-21 22:29 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll

- 2012-01-01 07:54 . 2011-03-29 22:31 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll

- 2012-02-15 02:42 . 2011-10-31 23:17 3182592 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 3182592 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 5917456 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll

- 2012-01-01 07:54 . 2011-07-08 22:35 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 1369872 c:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsBase\v4.0_4.0.0.0__31bf3856ad364e35\WindowsBase.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 3512072 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 2207568 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 5029160 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 1711496 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms.DataVisualization\v4.0_4.0.0.0__31bf3856ad364e35\System.Windows.Forms.DataVisualization.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 6097256 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel\v4.0_4.0.0.0__b77a5c561934e089\System.ServiceModel.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 1026936 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 4464480 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Entity\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Entity.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 1354584 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 1199968 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 1462648 c:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Presentation.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 6429992 c:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 3116376 c:\windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 3825952 c:\windows\Microsoft.NET\assembly\GAC_64\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 4970768 c:\windows\Microsoft.NET\assembly\GAC_64\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll

- 2012-04-11 08:10 . 2012-04-11 08:10 3563408 c:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 2975064 c:\windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 3790112 c:\windows\Microsoft.NET\assembly\GAC_32\PresentationCore\v4.0_4.0.0.0__31bf3856ad364e35\PresentationCore.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 5201168 c:\windows\Microsoft.NET\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.dll

- 2012-04-11 08:09 . 2012-04-11 08:09 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll

+ 2012-05-10 08:10 . 2012-05-10 08:10 2989456 c:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.VisualBasic.Activities.Compiler\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Activities.Compiler.dll

+ 2012-04-05 03:38 . 2012-04-05 03:38 2831360 c:\windows\Installer\15b3887.msp

+ 2012-04-29 02:44 . 2012-04-29 02:44 9101824 c:\windows\Installer\15b3876.msp

+ 2012-04-29 02:44 . 2012-04-29 02:44 9586176 c:\windows\Installer\15b3865.msp

+ 2012-04-30 19:38 . 2012-04-30 19:38 5011456 c:\windows\Installer\15b3847.msp

+ 2012-04-05 03:38 . 2012-04-05 03:38 3620864 c:\windows\Installer\15b3814.msp

+ 2012-03-15 07:24 . 2012-03-15 07:24 1795584 c:\windows\Installer\15b3803.msp

+ 2012-04-29 02:43 . 2012-04-29 02:43 8459264 c:\windows\Installer\15b37f2.msp

+ 2012-02-17 13:45 . 2012-02-17 13:45 2299392 c:\windows\Installer\15b37e1.msp

+ 2011-07-21 17:34 . 2011-07-21 17:34 3456000 c:\windows\Installer\138b254b.msp

+ 2011-01-15 14:46 . 2011-01-15 14:46 2049536 c:\windows\Installer\126e1d44.msi

+ 2012-01-10 04:43 . 2012-05-10 08:13 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe

- 2012-01-10 04:43 . 2012-04-11 08:07 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe

+ 2011-01-14 12:10 . 2011-01-14 12:10 2395008 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKWORD.DLL

+ 2011-01-14 12:10 . 2011-01-14 12:10 2180992 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKPOWERPOINT.DLL

+ 2011-01-14 12:10 . 2011-01-14 12:10 3443072 c:\windows\Installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130\GKEXCEL.DLL

+ 2011-08-17 14:49 . 2011-08-17 14:49 4683624 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6612\WRD12CNV.DLL

+ 2011-07-07 07:58 . 2011-07-07 07:58 1616240 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6612\OGL.DLL

+ 2012-05-10 08:14 . 2012-05-10 08:14 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\e41f5739292f4771c64a55940369efd2\WindowsBase.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 1430016 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClients#\6ee9d76d9f1e618cd6fb94b13355bcc9\UIAutomationClientsideProviders.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 7037952 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml\28ca4f076264ab07f1d00a6c9623dc49\System.Xml.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 2449408 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\df013cbfec0defc7e9997cdaa90b89bc\System.Xaml.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 5645824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Form#\9e50e3bca6cb19f9acab815d46f5e7e5\System.Windows.Forms.DataVisualization.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 2236416 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\bc6df78c506c89659ab7be738179b2ba\System.Web.Services.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 2735616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Speech\cd7c3aed4408c3554c30a8f0236b90e1\System.Speech.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 1918976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\94289b88c5b494f572cd7114fa995487\System.ServiceModel.Activities.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 1579008 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\2dbc7aabd92cc0d470acb455c498d919\System.ServiceModel.Discovery.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 3412992 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\affb28e2d9cc3c19de0758e7e8c68e8f\System.Runtime.Serialization.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 1348096 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\b37e6f4b1d742031f328504eb99d0f6c\System.Runtime.DurableInstancing.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 1467392 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Printing\682ea473b36fc9043d982c4f5a667568\System.Printing.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 1470464 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management\b83f2453b4538b2e80fe09cfd94dce00\System.Management.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 1416192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\60bf6251873ef465abcebeb9a24b7932\System.IdentityModel.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 1098752 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\8e10d4f2a408dc5a9740f8d0df5cebac\System.EnterpriseServices.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 2303488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\dadeee26c90fecbf3196eba10dc077b4\System.Drawing.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 1217024 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\a68116468a194678fd04167067134712\System.DirectoryServices.AccountManagement.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 1622528 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\3a737af86a6a819af97a6d1a04c0e944\System.DirectoryServices.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 2403328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\f20144fba069563333d0f6be2e0b6e06\System.Deployment.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 8601600 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data\0ec8effb7b9d03ae69d37922813bc880\System.Data.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 3390976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.SqlXml\0eb72df497fad5c273ff16f88b0fb950\System.Data.SqlXml.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 1799168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\536e12016ad3adc78e0708b77e6b9219\System.Data.Services.Client.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 3386368 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Linq\86553c1d7f3e66c17fc3e0274de7a2de\System.Data.Linq.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 1257472 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\6aea67f24827961ce1d48356715389d8\System.Configuration.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 1007616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\eac19ca5a18a6d08cd247e68b618ba68\System.ComponentModel.Composition.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 5695488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities\3869077874ba987242c791b3a18b2f8b\System.Activities.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 5048832 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\a7c19841c70fbce3b17ad3a46ee410d8\System.Activities.Presentation.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 2064896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.C#\96083298999a677341c98fc2bf01b248\System.Activities.Core.Presentation.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 4233216 c:\windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\fe1704ff12348776e6b70dd4a2c69163\ReachFramework.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 2056704 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\b0b05b1ecbfb813474f685de13027585\PresentationUI.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 1843712 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\a36cd27bd492b55a5f443a4b4029f569\Microsoft.VisualBasic.Compatibility.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\93536d93a44ce7d5a60faf1aeb55f49e\Microsoft.VisualBasic.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 1623040 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\16425c121db8083cbaa51f619c9e51e7\Microsoft.VisualBasic.Activities.Compiler.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 1526784 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\5284682fcf04815a86233bcaf696da66\Microsoft.Transactions.Bridge.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 3313664 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.JScript\4b1d24a96b3882f9e77445e48a7c59ee\Microsoft.JScript.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 2009600 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.CSharp\1ff62486cdefbfc2dab41b686a9aa4e2\Microsoft.CSharp.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 3858432 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\4b7adff986a085bb562222d0c5fdf5aa\WindowsBase.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1063424 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClients#\24ed0e1df6a605cdb2088f87ae2ab8ff\UIAutomationClientsideProviders.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 9091584 c:\windows\assembly\NativeImages_v4.0.30319_32\System\6f9f0467e8b2dd3f69b015c8e30ac945\System.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 5617664 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\d1f299160424bad90fe9f658661389e2\System.Xml.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1782272 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\d234eceae699d070b5a5712ce776c01f\System.Xaml.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 4587008 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\8ca12588b9ef54dbd02e607699fea6ae\System.Windows.Forms.DataVisualization.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1885696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Services\b37cc0aa41e7feaba9f290da4da91d71\System.Web.Services.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 2012160 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Speech\f368c85283c4e6c9650dd1c8d369dcc5\System.Speech.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1140736 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\ec057796972ce41b751eaa3a8306fbcb\System.ServiceModel.Discovery.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1393152 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\5055b60e339143bbace5871f5fe4b114\System.ServiceModel.Activities.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 2647040 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\8a9fac9cb825b5d2db0bdb867fff940e\System.Runtime.Serialization.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1021952 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\79ac99fe5274fb82ffcff2c15f71854c\System.Runtime.DurableInstancing.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 1060864 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Printing\bd371863e99082fa48cd630a73259448\System.Printing.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1218560 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management\0c2b0d52156447592f33edf4116b7e7d\System.Management.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1072640 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\bd28f26b18b8ffeee1a0fbaa98f5810e\System.IdentityModel.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 1665536 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\03b5233f1511f5fdb39eb681b04e5506\System.Drawing.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1172992 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\0fe1e56d17858b6156a3a46330f75f27\System.DirectoryServices.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 1880064 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\75b4d98f7c7a434aff4e18cb724deae4\System.Deployment.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 6815232 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data\99d0f7ba920eea1117e45dcd9fec0eb5\System.Data.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 2550272 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.SqlXml\fdb98c6d783fe167c1dc0022f27b7cd6\System.Data.SqlXml.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 1343488 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\b894a1df3e6d58ada8f1aa303465ca23\System.Data.Services.Client.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 2517504 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\82c0c56ff8259e1440cfd0d5727a26d8\System.Data.Linq.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 7069184 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\ed91b57205429a23bb91f4499059a459\System.Core.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 4129280 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities\51025a1c89f6fd752a5396a059d608b2\System.Activities.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 3757568 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\ebdd265de5f0300069da5f64983eca82\System.Activities.Presentation.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 1546752 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\66893548d2b2cad29cabf3b3578f356f\System.Activities.Core.Presentation.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 2906624 c:\windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\4b6c6c090a1bcfe70c056f6c7116e8a9\ReachFramework.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1641984 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\ea5933189eb5f066028b6e7d27d1d797\PresentationUI.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1139712 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\ebae0a4b7d3ae616b70417e6c778f48c\Microsoft.VisualBasic.Compatibility.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1838080 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\92694d06b9da1bff8e1722913a1d62bc\Microsoft.VisualBasic.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1172480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\42a7f127f3fda82fb12c6a6e144d08c1\Microsoft.VisualBasic.Activities.Compiler.ni.dll

+ 2012-05-10 08:19 . 2012-05-10 08:19 1085952 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\9a37f4e64ce5b856ac3892fef064c7de\Microsoft.Transactions.Bridge.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 2452480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.JScript\cfcc92c125ddfaabad24abe61cfc0471\Microsoft.JScript.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 1616896 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.CSharp\9912b6d76c1017b5af6ef24730f550ca\Microsoft.CSharp.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 4927488 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\7cdb4f5d0ff25c672e52a333ee394bb8\WindowsBase.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1458688 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\916d509de3e37ffe61381dc35ee84575\UIAutomationClientsideProviders.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 6948864 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml\c40cbbdf7af03daedb16f4d9ef1b6f5f\System.Xml.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1817600 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\40fce8294696001d3173082a7ed926cb\System.WorkflowServices.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 2707456 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\47b1ab994a04ce5c86ebce127aee0cdc\System.Workflow.Runtime.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 5955072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\3e5e0f85dbb392338bfbccdf1a422a81\System.Workflow.ComponentModel.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\478bf65037218ac93aeabfe9be3618a8\System.Workflow.Activities.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 2291712 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\fedfcde924e0675f0d54fdc9c99a384c\System.Web.Services.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 3335680 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\4f53b7366ae3155567199e9c5dafb3fa\System.Web.Mobile.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 3043840 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\dc09d79b9edef19b18625c52e043a33c\System.Web.Extensions.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\bd9d4f497a28d1b42339ec9794878619\System.Web.Extensions.Design.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 2727936 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Speech\070cd8d59ce62cb6dc5d38b9fecd3858\System.Speech.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 2312704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\f486134488aa17c44b14af6038a5c8cf\System.ServiceModel.Web.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 3073536 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\f37d2ca916cafdabe1c4f6f9c6b2c518\System.Runtime.Serialization.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 1022976 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\17bf0932e5c6cb8ba59046456f13328d\System.Runtime.Remoting.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 1453568 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\0723e51c552c452678f29554d765cdd1\System.Printing.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 1408512 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management\bc4eb71543857d07a7401eab3a93d412\System.Management.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1433088 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\8310af7cfed169c2e806347dfd31ed03\System.IdentityModel.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 1081344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\b48bd4bfbc25e5fb2b6bbc0627bb7aad\System.EnterpriseServices.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 2317312 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\8636d00875c34d840f00ff2374042802\System.Drawing.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1229824 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\d0f7e6fad3bf0b055fa9b1d0e5d43305\System.DirectoryServices.AccountManagement.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 1640448 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\09fa848feffe98e25571f12ba6533b71\System.DirectoryServices.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 2444288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\f78e7943cc7e0f345d12019c4301f618\System.Deployment.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 8692736 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data\d223792883556acb200a74d695a1c2c5\System.Data.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 3461632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.SqlXml\e2bf05478288e42b7d5b3953303b43ea\System.Data.SqlXml.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1846272 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\027818d739a4d16c6c6a6d3a3f97d5ed\System.Data.Services.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1289728 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\ce4bbe0a9167e14e22e97c188649ef95\System.Data.Services.Client.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 1506816 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.OracleC#\a3f0cb65205bc8101de152a3049efa53\System.Data.OracleClient.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 3480576 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\611d21d7fb315802ca1880a6f1c0b8b4\System.Data.Linq.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 1080320 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\4aeeafaf88950db2b1412aa9c1dfc542\System.Data.Entity.Design.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 3312128 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Core\fb0a7c597f43ec6c1fa7eb5c1404cac3\System.Core.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 1308160 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\dcadcfb938ccdd3f70859fdcdd329ec5\System.Configuration.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 3101696 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\22acde7b46a9cad4b0436385c6b9903e\ReachFramework.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\054482b553b27984bda24a4459d6b369\PresentationUI.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 1881088 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\42dad1fa286c2dfef840436e0117f195\PresentationBuildTasks.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\a740600cbaefec4afd8de70c1c75f572\Narrator.ni.exe

+ 2012-05-10 08:45 . 2012-05-10 08:45 2327040 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\3eb1397829aeb2408ff898acb33904fd\MMCEx.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 7966208 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\8b6194eeff2834f8f657a6ad70ced7f7\MIGUIControls.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\398a7f3447fe798b5d7a470748866c54\Microsoft.VisualBasic.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1598464 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\f0d782756caeea9306a63de672c6da6e\Microsoft.Transactions.Bridge.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 2175488 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fc0dc8cdb3ee38e9a9eda92522ab1e3d\Microsoft.PowerShell.Commands.Utility.ni.dll

Link to post
Share on other sites

+ 2012-05-10 08:45 . 2012-05-10 08:45 1131008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f99d492441caaf40f1825b2fb1bb018d\Microsoft.PowerShell.Commands.Management.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\b2a90c6f1e99fd284159c30dfe2f34e8\Microsoft.PowerShell.GPowerShell.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 5351424 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3f5c64a4319c2a6b34c47a37acbfc0e5\Microsoft.PowerShell.Editor.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1142784 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\cc1a3125cc25ececf6bdd96313e1b43d\Microsoft.MediaCenter.Shell.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1170432 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5940bb2af41ce045c35a68977ce3d1f6\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1516032 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\412abec4a101fce0b9e37d09b3829ddf\Microsoft.MediaCenter.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\3b2137602ecc3ad77f6f1cb9fec8d935\Microsoft.MediaCenter.UI.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\0542d171e88a5d01c6f465d4d7cb2608\Microsoft.MediaCenter.Bml.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 3208192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\729baa115f5b270a3b161e72ef7f5351\Microsoft.JScript.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\725cc0ffc106eee638d854e0e6d841a2\Microsoft.Ink.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\e9c66f026559f5907afb717a7f419542\Microsoft.Build.Tasks.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 2677760 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\26582383c3f3fab9f2f302acfe9db979\Microsoft.Build.Tasks.v3.5.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 1137152 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\dc5d8b624b01a2a1db10e4ed5be18b93\Microsoft.Build.Engine.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 2544640 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\3a40ad58fa2e38681f57c1f1e641e329\Microsoft.Build.Engine.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\269c4d2e1d81702c829589ee2616f152\mcstore.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 4086784 c:\windows\assembly\NativeImages_v2.0.50727_64\mcepg\c83d93208a390e05a61e34216be32d35\mcepg.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 2184192 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\5d36ff5947a27bcb6028b1341799f15d\ehiVidCtl.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 1201664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\2260f0ed059f4db1564c6015bb1a591d\ehiProxy.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 2193408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8484d523c38a7efd276ee3338e060963\WindowsLive.Writer.CoreServices.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 7024640 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\5b941ab52aa2ecc39b80098019dcb795\WindowsLive.Writer.PostEditor.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1284608 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\3efc59e0040331857fa90ea4c785271e\WindowsLive.Writer.ApplicationFramework.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1346560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\319031a2ce550bba3eb041ead3d99791\WindowsLive.Writer.Localization.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 3325952 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\b68fdf2c95b93fc5006a092c11eed07c\WindowsBase.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 2056704 c:\windows\assembly\NativeImages_v2.0.50727_32\VMStory\2cb33bb658285a3c3c125d9a11276735\VMStory.ni.exe

+ 2012-05-10 08:42 . 2012-05-10 08:42 1047552 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\7f102c92f212048da706c724d5809f12\UIAutomationClientsideProviders.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 7952384 c:\windows\assembly\NativeImages_v2.0.50727_32\System\2ebb3c259eab50af565e3a8dba6ad20e\System.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 5453312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5c85c9c42e1b8a8760de82ecb4c7d582\System.Xml.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 1358336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\13796de8a54987bb81962fc88ebc5589\System.WorkflowServices.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1914880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\5200c29898fe3425993ac296aa658b46\System.Workflow.Runtime.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\7dcb5b6841443367e63641a90497efa0\System.Workflow.ComponentModel.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 2994688 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\a0e8a6d93aeafe497170c27addc916e4\System.Workflow.Activities.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\d22418c5321007d35bb4fd24b45b1193\System.Web.Services.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 2209792 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\5032e48a0c8aa274e94c7ffb4758ed41\System.Web.Mobile.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 2403840 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\353f1fed8b73483d8701369165a801dd\System.Web.Extensions.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 1917952 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\f68d50b9cfb466c62939548433943b3f\System.Speech.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\b744ac6047519b7b186db4d77a78ca0c\System.ServiceModel.Web.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\3848d7865bda88a9e94e03480b5ada2f\System.Runtime.Serialization.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\7a14d8a3491b651ee388e888a86c3eee\System.Printing.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 8871936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\c9b40cfc4764cf4f9585897f6d2d6110\System.Management.Automation.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1072128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\f77eb3dd20db5f2277636d4e700a2a2a\System.IdentityModel.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1590784 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\e65dbd1b68789fc21b9fb3c605b699a7\System.Drawing.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1117184 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\027d378a0f7111c18fb687d2948088a9\System.DirectoryServices.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1806848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\309eebf17dd056ae1ca53e043ba5761e\System.Deployment.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 6618624 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\294d439cfe959b5528ca81d37d3d502f\System.Data.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 2508288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\e8dd334aba14a540d9ac95e372564310\System.Data.SqlXml.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\30664d5f93b99eb6e51900ec8137909d\System.Data.Services.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\e05825b235c398d3148bbac51abab75d\System.Data.OracleClient.ni.dll

+ 2012-05-10 08:42 . 2012-05-10 08:42 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\98bbe3c24de8dfbbfa6faa685fac7632\System.Data.Linq.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\e7f8e31dd8f015e08388619be47e632c\System.Data.Entity.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\c366ebd7f33816762268154efc68176d\System.Core.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 2147328 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\5da719affe4a2b197bcbba58c3a539db\ReachFramework.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\2452f24ad176da2f23b3818cbaf55f99\PresentationUI.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1449984 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\178be2ae406d87f35b4f22458af0d448\PresentationBuildTasks.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1502720 c:\windows\assembly\NativeImages_v2.0.50727_32\PbCore\25c3de3b88fe3b8f8a7f6566de1cf91e\PbCore.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1440256 c:\windows\assembly\NativeImages_v2.0.50727_32\PbControls\1e558ae014444e23bcfd6ce6fe4ef43e\PbControls.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\dcdc552cdee180749bced4cccdb67ae8\Narrator.ni.exe

+ 2012-05-10 08:41 . 2012-05-10 08:41 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\abaeeaab7cef7f99e98de64782bb4429\MMCEx.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 6434304 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\593745afe5a5c7b6e23d0d91561fe1d1\MIGUIControls.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\0b49f79d0cc797b403f61bee47f078c5\Microsoft.VisualBasic.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1092608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\7f5335e134e48d154c8cc8aa5d1d9cce\Microsoft.Transactions.Bridge.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1705472 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\6a81878ac094031e85d9b01001dee716\Microsoft.PowerShell.GPowerShell.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\45e18183af9d6ffc68aade1906a693c2\Microsoft.PowerShell.Commands.Utility.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\3e9faf43d0c02f801560382ed3d74c40\Microsoft.PowerShell.Editor.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\8dde71da2dd70e02910501b55eba50b5\Microsoft.MediaCenter.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\60f6e71007b7619a8e8e924734a34112\Microsoft.MediaCenter.UI.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 2332672 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\45c2fc4880b3ea85ee32d106553d5484\Microsoft.JScript.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\56430813a696f8928d5ef1e112b209a7\Microsoft.Ink.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\5360ec6a331552c16d419d384b4a333c\Microsoft.Build.Tasks.v3.5.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\464cccd260644e399417fe52afadcd98\Microsoft.Build.Tasks.ni.dll

+ 2012-05-10 08:41 . 2012-05-10 08:41 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\cf8b29164df493cae5121e9da162150a\Microsoft.Build.Engine.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\cf45e23d0b1d0df73a4f0c87b9f300d9\mcstore.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\9b8e2dfba66cb800d532e0f9596b336f\mcepg.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 2989568 c:\windows\assembly\NativeImages_v2.0.50727_32\EngineFacade\46fbc5abd31880d9cae8b4ea052897f2\EngineFacade.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 1331200 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeUtility\d50772697b92a1ec60548851f03c6b63\ctdeUtility.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 2582016 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdeModel\daa320935ca589bb934a3b6b1d220f58\ctdeModel.ni.dll

+ 2012-05-10 08:39 . 2012-05-10 08:39 5261824 c:\windows\assembly\NativeImages_v2.0.50727_32\ctdEditor\ab6877b67c9e86e85ed3b81993dca97e\ctdEditor.ni.exe

+ 2012-05-10 08:39 . 2012-05-10 08:39 1092096 c:\windows\assembly\NativeImages_v2.0.50727_32\Convertor\fb999c18219ef27653c7a7e64bb71c29\Convertor.ni.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll

- 2012-01-01 07:54 . 2010-03-02 23:24 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll

- 2012-02-15 02:42 . 2011-10-31 23:17 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll

+ 2012-05-10 03:05 . 2012-03-21 22:29 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll

- 2012-01-01 07:54 . 2011-03-29 22:31 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 5279744 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll

- 2012-01-01 07:54 . 2010-03-02 23:24 5279744 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll

+ 2012-05-10 03:05 . 2012-04-06 00:45 2255952 c:\windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll

+ 2012-05-10 03:05 . 2012-04-06 00:45 3997696 c:\windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll

- 2012-01-01 07:54 . 2011-07-08 22:32 4567040 c:\windows\assembly\GAC_64\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2012-05-10 03:05 . 2012-01-04 02:48 4567040 c:\windows\assembly\GAC_64\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 1737296 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll

- 2012-01-01 07:54 . 2010-03-02 23:24 4214784 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll

+ 2012-05-10 03:05 . 2012-04-06 00:49 4214784 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll

- 2012-01-01 07:54 . 2011-07-08 22:35 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2012-05-10 03:05 . 2012-01-04 02:51 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll

+ 2009-07-14 02:34 . 2012-05-18 21:05 10485760 c:\windows\system32\SMI\Store\Machine\schema.dat

- 2009-07-14 02:34 . 2012-05-06 07:59 10485760 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT

+ 2012-01-01 08:02 . 2012-05-10 08:13 57848688 c:\windows\system32\MRT.exe

+ 2012-01-03 23:25 . 2012-05-14 16:52 41130372 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-949116002-603324069-511764575-1006-4096.dat

+ 2012-05-10 03:05 . 2012-01-04 02:48 10005264 c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll

+ 2012-05-11 08:00 . 2012-05-11 08:00 53217792 c:\windows\Installer\4182a57.msp

+ 2012-01-19 19:20 . 2012-01-19 19:20 11997696 c:\windows\Installer\15b3854.msp

+ 2011-12-15 19:54 . 2011-12-15 19:54 39732736 c:\windows\Installer\15b3837.msp

+ 2011-09-16 01:42 . 2011-09-16 01:42 18115432 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6612\WWLIB.DLL

+ 2012-05-10 08:07 . 2012-05-10 08:07 11880448 c:\windows\assembly\NativeImages_v4.0.30319_64\System\935aea6e7eae16674abdd96a68ec97af\System.ni.dll

+ 2012-05-10 08:16 . 2012-05-10 08:16 17353728 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\401ebcc2dd54ce1e0d63a544f7ed7b8a\System.Windows.Forms.ni.dll

+ 2012-05-10 08:18 . 2012-05-10 08:18 24551936 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\c4cc7eb7733c4221c32caccfd66ae320\System.ServiceModel.ni.dll

+ 2012-05-10 08:17 . 2012-05-10 08:17 18479616 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity\9df4e7ae75baa7bbb1af30c8061a6e9b\System.Data.Entity.ni.dll

+ 2012-05-10 08:14 . 2012-05-10 08:14 10440192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Core\b64f213e823a591607c45fac4997801e\System.Core.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 24407552 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\34c2013b5f730680bd610d6a98d2977f\PresentationFramework.ni.dll

+ 2012-05-10 08:15 . 2012-05-10 08:15 15908864 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\4464e9df7184e3393b4cbb0f6dc286ba\PresentationCore.ni.dll

+ 2012-05-10 08:06 . 2012-05-10 08:06 19353600 c:\windows\assembly\NativeImages_v4.0.30319_64\mscorlib\6087fce8f76d9af69af496cb10b7d1ee\mscorlib.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 13197312 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\9ee9841d9e33fe5dceba4cd7d90f2ae0\System.Windows.Forms.ni.dll

+ 2012-05-10 08:21 . 2012-05-10 08:21 18058752 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\cfece6f67593b4d8bb58d23b7fdcc470\System.ServiceModel.ni.dll

+ 2012-05-10 08:20 . 2012-05-10 08:20 13345792 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\7aa839fb16503243d6ae454ab334bcf4\System.Data.Entity.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 18000896 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\041b1bcf6ae9ab58925791d8198c37e2\PresentationFramework.ni.dll

+ 2012-05-10 08:11 . 2012-05-10 08:11 11451904 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\a1de74c8d0dfd15e3246e5dd394013bf\PresentationCore.ni.dll

+ 2012-05-10 08:07 . 2012-05-10 08:07 14412800 c:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 10605056 c:\windows\assembly\NativeImages_v2.0.50727_64\System\6ec488b702c100ad5d3e712db0e88554\System.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 17382912 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\25dda503f77f3786a3944794ece71d14\System.Windows.Forms.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 15252992 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web\531db786f4ac5b7579d3628f641c34e4\System.Web.ni.dll

+ 2012-05-10 08:43 . 2012-05-10 08:43 23812096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\de361406af8223de5eaa109782ea8272\System.ServiceModel.ni.dll

+ 2012-05-10 08:45 . 2012-05-10 08:45 11898880 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\e8015a653e9913ada402b8361ced3d7e\System.Management.Automation.ni.dll

+ 2012-05-10 08:35 . 2012-05-10 08:35 13609472 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Design\f69aad54f3b9482d7ebf99b4f875e31c\System.Design.ni.dll

+ 2012-05-10 08:46 . 2012-05-10 08:46 13757952 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\b0920f4fb4f89400b383e2db88209bf5\System.Data.Entity.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 19173376 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a07c96ec1f80a7fc6707630e06a41a5b\PresentationFramework.ni.dll

+ 2012-05-10 08:34 . 2012-05-10 08:34 16517120 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\d996fe58d9df5844dc92c35c919ece21\PresentationCore.ni.dll

+ 2012-05-10 08:33 . 2012-05-10 08:33 15568896 c:\windows\assembly\NativeImages_v2.0.50727_64\mscorlib\9a7b48ad2929bc93362ec42cd4573f87\mscorlib.ni.dll

+ 2012-05-10 08:44 . 2012-05-10 08:44 25462272 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\2c5f869682d8433bfb7d4852cef560a5\ehshell.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 12433920 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\90d42781d5b19478870e412f7b7c71eb\System.Windows.Forms.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 11824128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\82a4878fa9c3f8b634ad38909c99db7c\System.Web.ni.dll

+ 2012-05-10 08:40 . 2012-05-10 08:40 17400320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\7900b4e8c860d8b4a3c1f98047c3c1a3\System.ServiceModel.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 10578432 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\c0f29cbfe296d34ca4b09aca0105d59d\System.Design.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 14325760 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\06623b3ab0c6af2ebba43aa2fa0e211f\PresentationFramework.ni.dll

+ 2012-05-10 08:37 . 2012-05-10 08:37 12218880 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\43c26b0f01acc4b15423a49af278e1df\PresentationCore.ni.dll

+ 2012-05-10 08:36 . 2012-05-10 08:36 11490816 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\5858678a79aae31262b0214424245d06\mscorlib.ni.dll

.

-- Snapshot reset to current date --

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"="c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]

"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]

"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2012-01-04 40376]

"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2012-01-03 640440]

"SmartWiHelper"="c:\program files (x86)\Sony\SmartWi Connection Utility\SmartWiHelper.exe" [2010-07-15 89080]

"ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" [2010-06-01 673136]

"PMBVolumeWatcher"="c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe" [2010-11-27 648032]

"Microsoft Default Manager"="c:\program files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2010-05-10 439568]

"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-09-21 102400]

"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]

"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]

"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-03-27 421736]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2010-6-9 1128224]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

R2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe [2012-02-10 193816]

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;c:\program files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-09-06 169312]

R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe [2012-02-10 240408]

R3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [x]

R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]

R3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]

R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-21 129976]

R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]

R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]

R3 SOHCImp;VAIO Media plus Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2010-06-21 108400]

R3 SOHDms;VAIO Media plus Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2010-06-18 423280]

R3 SOHDs;VAIO Media plus Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2010-06-21 67952]

R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]

R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2011-05-24 655088]

R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2010-06-09 384880]

R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2010-10-26 101152]

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]

R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys [x]

R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]

S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]

S2 Oasis2Service;Oasis2Service;c:\program files (x86)\DDNi\Oasis2Service\Oasis2Service.exe [2012-02-10 53248]

S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2010-11-27 398176]

S2 rimspci;rimspci;c:\windows\system32\drivers\rimssne64.sys [x]

S2 risdsnpe;risdsnpe;c:\windows\system32\drivers\risdsne64.sys [x]

S2 SampleCollector;VAIO Care Performance Service;c:\program files\Sony\VAIO Care\VCPerfService.exe [2011-01-29 259192]

S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]

S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-05-28 2320920]

S2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe [2010-06-22 575856]

S2 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2010-09-27 864000]

S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]

S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]

S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x]

S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]

S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]

S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys [x]

S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2010-06-07 304496]

S3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe [2011-02-14 44736]

S3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update Common\VUAgent.exe [2011-10-27 1429608]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]

S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x]

.

.

--- Other Services/Drivers In Memory ---

.

*NewlyCreated* - 62379014

*Deregistered* - 62379014

.

.

--------- x86-64 -----------

.

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-05-31 10775584]

"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2010-05-31 2040352]

"Apoint"="c:\program files (x86)\Apoint\Apoint.exe" [bU]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]

.

------- Supplementary Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page = hxxp://www.google.com/

mLocal Page = c:\windows\SysWOW64\blank.htm

uInternet Settings,ProxyOverride = *.local

TCP: DhcpNameServer = 192.168.1.1 209.18.47.61 209.18.47.62

FF - ProfilePath - c:\users\Patty\AppData\Roaming\Mozilla\Firefox\Profiles\7zlqyqzx.default\

.

- - - - ORPHANS REMOVED - - - -

.

AddRemove-{0131D7EF-65FF-478F-8ABD-5ABEE24EC8EF} - c:\programdata\{F974CC36-BF25-4374-A035-B0A9DA79E735}\VAIO Messenger Setup 2.0.424.0.exe

.

.

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SampleCollector]

"ImagePath"="\"c:\program files\Sony\VAIO Care\VCPerfService.exe\" \"/service\" \"/sstates\" \"/sampleinterval=5000\" \"/procinterval=5\" \"/dllinterval=120\" \"/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1\" \"/counter=\Network Interface(*)\Bytes Total/sec:1\" \"/expandcounter=\Processor Information(*)\Processor Frequency:1\" \"/expandcounter=\Processor(*)\% Idle Time:1\" \"/expandcounter=\Processor(*)\% C1 Time:1\" \"/expandcounter=\Processor(*)\% C2 Time:1\" \"/expandcounter=\Processor(*)\% C3 Time:1\" \"/expandcounter=\Processor(*)\% Processor Time:1\" \"/directory=c:\programdata\Sony Corporation\VAIO Care\inteldata\""

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11f_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11f_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.10"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

@Denied: (A 2) (Everyone)

@="IFlashBroker4"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Completion time: 2012-05-19 12:37:57

ComboFix-quarantined-files.txt 2012-05-19 17:37

.

Pre-Run: 176,689,405,952 bytes free

Post-Run: 176,781,836,288 bytes free

.

- - End Of File - - 9C96BE1FDAFC4DD45AD523D6FFF8FDFF

Link to post
Share on other sites

Please run a free online scan with the ESET Online Scanner

Note: You will need to use Internet Explorer for this scan

  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install
  • Click Start
  • Make sure that the options Remove found threats and the option Scan unwanted applications is checked
  • Click Scan (This scan can take several hours, so please be patient)
  • Once the scan is completed, you may close the window
  • Use Notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
  • Copy and paste that log as a reply to this topic

Link to post
Share on other sites

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software

Run date: 2012-05-21 19:43:30

-----------------------------

19:43:30.752 OS Version: Windows x64 6.1.7600

19:43:30.752 Number of processors: 4 586 0x2505

19:43:30.752 ComputerName: PATTY-VAIO UserName: Patty

19:43:32.608 Initialize success

19:44:13.885 AVAST engine defs: 12052101

19:44:55.459 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1

19:44:55.474 Disk 0 Vendor: Hitachi_ PB3O Size: 305245MB BusType: 3

19:44:55.474 Disk 1 \Device\Harddisk1\DR1 -> \Device\00000080

19:44:55.474 Disk 1 Vendor: RICOH 02 Size: 7678MB BusType: 0

19:44:55.506 Disk 0 MBR read successfully

19:44:55.506 Disk 0 MBR scan

19:44:55.599 Disk 0 Windows 7 default MBR code

19:44:55.599 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 14275 MB offset 2048

19:44:55.646 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 29237248

19:44:55.677 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 290868 MB offset 29442048

19:44:55.740 Disk 0 scanning C:\Windows\system32\drivers

19:45:08.547 Service scanning

19:45:49.294 Modules scanning

19:45:49.809 Disk 0 trace - called modules:

19:45:49.840 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll

19:45:49.840 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8006378060]

19:45:49.856 3 CLASSPNP.SYS[fffff88001afb43f] -> nt!IofCallDriver -> [0xfffffa8004333b20]

19:45:49.856 5 ACPI.sys[fffff88000f05781] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004339050]

19:45:50.854 AVAST engine scan C:\Windows

19:45:56.314 AVAST engine scan C:\Windows\system32

19:52:31.760 AVAST engine scan C:\Windows\system32\drivers

19:53:27.249 AVAST engine scan C:\Users\Patty

19:56:25.978 Disk 0 MBR has been saved successfully to "C:\Users\Patty\Desktop\MBR.dat"

19:56:26.041 The log file has been saved successfully to "C:\Users\Patty\Desktop\aswMBR.txt"

Link to post
Share on other sites

Download OTL to your Desktop

  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Please tick the Scan All users. Next, click the Quick Scan button. The scan wont take long.
    • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
    • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time and post them in your topic.

Link to post
Share on other sites

OTL logfile created on: 5/22/2012 4:45:54 PM - Run 1

OTL by OldTimer - Version 3.2.43.1 Folder = C:\Users\Patty\Desktop

64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation

Internet Explorer (Version = 9.0.8112.16421)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.86 Gb Total Physical Memory | 2.46 Gb Available Physical Memory | 63.85% Memory free

7.71 Gb Paging File | 5.48 Gb Available in Paging File | 71.01% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 284.05 Gb Total Space | 163.47 Gb Free Space | 57.55% Space Free | Partition Type: NTFS

Drive E: | 7.49 Gb Total Space | 1.60 Gb Free Space | 21.38% Space Free | Partition Type: FAT32

Computer Name: PATTY-VAIO | User Name: Patty | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans

Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/05/22 16:45:17 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Patty\Desktop\OTL.exe

PRC - [2012/02/28 14:45:04 | 000,250,016 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11f_ActiveX.exe

PRC - [2012/02/15 10:32:12 | 000,055,144 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe

PRC - [2012/02/09 19:40:16 | 000,053,248 | ---- | M] (Digital Delivery Networks, Inc.) -- C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe

PRC - [2012/01/03 09:23:11 | 000,640,440 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe

PRC - [2011/02/14 14:23:50 | 000,044,736 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCService.exe

PRC - [2011/01/29 06:36:18 | 000,081,016 | ---- | M] (Sony of America Corporation) -- C:\Program Files\Sony\VAIO Care\listener.exe

PRC - [2010/11/27 03:55:44 | 000,648,032 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe

PRC - [2010/11/27 03:55:44 | 000,398,176 | ---- | M] (Sony Corporation) -- c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe

PRC - [2010/09/27 18:12:36 | 000,864,000 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe

PRC - [2010/07/15 14:07:40 | 000,184,816 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWi.exe

PRC - [2010/07/15 14:07:40 | 000,040,952 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\PowerManager.exe

PRC - [2010/07/15 14:07:40 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\ThirdPartyAppMgr.exe

PRC - [2010/07/15 14:07:40 | 000,022,504 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\CCP.exe

PRC - [2010/06/09 02:55:16 | 000,013,600 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe

PRC - [2010/05/31 22:18:32 | 000,217,968 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe

PRC - [2010/05/31 22:18:32 | 000,120,176 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe

PRC - [2010/05/31 20:01:52 | 000,673,136 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe

PRC - [2010/05/28 15:02:57 | 002,320,920 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

PRC - [2010/05/28 15:02:38 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

PRC - [2010/03/03 23:16:06 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

PRC - [2010/03/03 23:16:04 | 000,284,696 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

PRC - [2008/09/18 13:59:10 | 000,104,960 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe

========== Modules (No Company Name) ==========

MOD - [2012/05/10 03:39:27 | 000,452,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\73baa23d28d21c7c01e334211330a84e\IAStorUtil.ni.dll

MOD - [2012/05/10 03:37:38 | 011,824,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\82a4878fa9c3f8b634ad38909c99db7c\System.Web.ni.dll

MOD - [2012/05/10 03:37:34 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0c00b1a8336dd4c1bd1ebce7780f20b4\System.Runtime.Remoting.ni.dll

MOD - [2012/05/10 03:37:12 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\90d42781d5b19478870e412f7b7c71eb\System.Windows.Forms.ni.dll

MOD - [2012/05/10 03:37:06 | 001,590,784 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\e65dbd1b68789fc21b9fb3c605b699a7\System.Drawing.ni.dll

MOD - [2012/05/10 03:36:55 | 003,325,952 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\b68fdf2c95b93fc5006a092c11eed07c\WindowsBase.ni.dll

MOD - [2012/05/10 03:36:50 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5c85c9c42e1b8a8760de82ecb4c7d582\System.Xml.ni.dll

MOD - [2012/05/10 03:36:47 | 007,952,384 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\2ebb3c259eab50af565e3a8dba6ad20e\System.ni.dll

MOD - [2012/05/10 03:36:47 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cb079eab134fd1a752ad91db13274110\System.Configuration.ni.dll

MOD - [2012/05/10 03:36:41 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\5858678a79aae31262b0214424245d06\mscorlib.ni.dll

MOD - [2012/03/21 17:29:45 | 005,025,792 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll

MOD - [2012/01/26 18:35:31 | 000,630,784 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll

MOD - [2012/01/03 21:51:18 | 003,182,592 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll

MOD - [2011/11/02 00:26:32 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll

MOD - [2011/11/02 00:26:12 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

MOD - [2010/07/15 14:07:40 | 000,184,816 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWi.exe

MOD - [2010/07/15 14:07:40 | 000,131,072 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\SonyCommonLib.dll

MOD - [2010/07/15 14:07:40 | 000,109,568 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\DevicePanel.dll

MOD - [2010/07/15 14:07:40 | 000,040,952 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\PowerManager.exe

MOD - [2010/07/15 14:07:40 | 000,027,648 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.BtPower.dll

MOD - [2010/07/15 14:07:40 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\ThirdPartyAppMgr.exe

MOD - [2010/07/15 14:07:40 | 000,023,040 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Generic.dll

MOD - [2010/07/15 14:07:40 | 000,022,504 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\CCP.exe

MOD - [2010/07/15 14:07:40 | 000,018,944 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\DictionaryLookup.dll

MOD - [2010/07/15 14:07:40 | 000,015,872 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.NativeWifiThirdPartyApp.dll

MOD - [2010/07/15 14:07:40 | 000,015,360 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\SharedInterfaces.dll

MOD - [2010/07/15 14:07:40 | 000,011,264 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Resources.dll

MOD - [2010/07/15 14:07:40 | 000,011,264 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\MessageXML.dll

MOD - [2010/07/15 14:07:40 | 000,009,728 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.TosBtThirdPartyApp.dll

MOD - [2010/07/15 14:07:40 | 000,007,680 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\DebugMsg.dll

MOD - [2010/07/15 14:07:40 | 000,006,656 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.WlanPower.dll

MOD - [2010/07/15 14:07:40 | 000,005,120 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\SystemPowerDLL.dll

MOD - [2010/07/15 14:07:40 | 000,005,120 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.ThirdPartyApp.dll

MOD - [2010/07/15 14:07:40 | 000,005,120 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.Generic.dll

MOD - [2010/07/15 14:07:40 | 000,004,608 | ---- | M] () -- C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Power.dll

MOD - [2009/06/10 16:23:20 | 002,048,000 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll

MOD - [2009/06/10 16:23:19 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll

MOD - [2009/06/10 16:23:18 | 000,372,736 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll

========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)

SRV:64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)

SRV:64bit: - [2011/10/27 18:12:16 | 001,429,608 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Update Common\VUAgent.exe -- (VUAgent)

SRV:64bit: - [2011/05/24 08:00:00 | 000,655,088 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr)

SRV:64bit: - [2011/02/14 14:23:50 | 000,044,736 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Care\VCService.exe -- (VCService)

SRV:64bit: - [2011/01/29 06:36:18 | 000,259,192 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe -- (SampleCollector)

SRV:64bit: - [2010/10/25 20:26:34 | 000,101,152 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe -- (VcmXmlIfHelper)

SRV:64bit: - [2010/10/08 01:55:08 | 000,202,752 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)

SRV:64bit: - [2010/09/22 21:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)

SRV:64bit: - [2010/06/21 21:00:52 | 000,575,856 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe -- (VAIO Power Management)

SRV:64bit: - [2010/06/09 18:56:02 | 000,384,880 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe -- (VcmINSMgr)

SRV:64bit: - [2010/06/09 02:55:14 | 000,952,096 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)

SRV:64bit: - [2010/06/07 01:13:46 | 000,304,496 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)

SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)

SRV - [2012/04/20 20:19:00 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)

SRV - [2012/02/10 11:28:06 | 000,240,408 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE -- (BBUpdate)

SRV - [2012/02/10 11:28:06 | 000,193,816 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.EXE -- (BBSvc)

SRV - [2012/02/09 19:40:16 | 000,053,248 | ---- | M] (Digital Delivery Networks, Inc.) [Auto | Running] -- C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe -- (Oasis2Service)

SRV - [2012/01/01 03:07:47 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)

SRV - [2010/11/27 03:55:44 | 000,398,176 | ---- | M] (Sony Corporation) [Auto | Running] -- c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)

SRV - [2010/09/27 18:12:36 | 000,864,000 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -- (VCFw)

SRV - [2010/06/21 00:47:18 | 000,108,400 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -- (SOHCImp)

SRV - [2010/06/21 00:47:16 | 000,067,952 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)

SRV - [2010/06/18 10:07:12 | 000,423,280 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -- (SOHDms)

SRV - [2010/05/31 22:18:32 | 000,217,968 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service)

SRV - [2010/05/28 15:02:57 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS) Intel®

SRV - [2010/05/28 15:02:38 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS) Intel®

SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)

SRV - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)

SRV - [2010/03/03 23:16:06 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel®

SRV - [2009/09/06 09:06:20 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)

SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)

SRV - [2008/09/18 13:59:10 | 000,104,960 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe -- (uCamMonitor)

========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)

DRV:64bit: - [2012/03/01 01:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)

DRV:64bit: - [2012/02/15 11:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)

DRV:64bit: - [2011/03/11 01:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)

DRV:64bit: - [2011/03/11 01:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)

DRV:64bit: - [2010/10/08 01:55:08 | 006,661,120 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)

DRV:64bit: - [2010/10/08 01:55:08 | 006,661,120 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)

DRV:64bit: - [2010/10/08 01:55:08 | 000,195,584 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)

DRV:64bit: - [2010/09/23 03:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)

DRV:64bit: - [2010/06/24 15:34:53 | 000,271,872 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) Intel®

DRV:64bit: - [2010/06/24 15:33:43 | 010,326,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)

DRV:64bit: - [2010/06/23 15:04:45 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)

DRV:64bit: - [2010/06/23 15:04:43 | 000,342,056 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)

DRV:64bit: - [2010/06/23 15:04:43 | 000,135,720 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)

DRV:64bit: - [2010/06/23 15:04:43 | 000,102,952 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)

DRV:64bit: - [2010/06/23 15:04:09 | 000,039,464 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)

DRV:64bit: - [2010/06/23 15:03:07 | 000,078,848 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\risdsne64.sys -- (risdsnpe)

DRV:64bit: - [2010/06/23 15:02:59 | 000,094,208 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rimssne64.sys -- (rimspci)

DRV:64bit: - [2010/05/31 16:36:54 | 000,299,568 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Apfiltr.sys -- (ApfiltrService)

DRV:64bit: - [2010/05/31 16:36:48 | 000,402,720 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)

DRV:64bit: - [2010/05/31 16:36:41 | 001,573,888 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)

DRV:64bit: - [2010/05/31 15:10:13 | 000,231,328 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)

DRV:64bit: - [2010/05/28 15:03:12 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)

DRV:64bit: - [2010/05/28 15:02:36 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel®

DRV:64bit: - [2010/04/26 15:20:29 | 000,012,032 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SFEP.sys -- (SFEP)

DRV:64bit: - [2010/03/03 22:51:40 | 000,540,696 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)

DRV:64bit: - [2009/10/09 21:41:20 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)

DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)

DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)

DRV:64bit: - [2009/07/13 20:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)

DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)

DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)

DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)

DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)

DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)

DRV:64bit: - [2009/05/26 17:32:04 | 000,019,968 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter)

DRV:64bit: - [2009/05/18 14:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)

DRV:64bit: - [2008/06/16 06:00:00 | 000,055,024 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)

DRV:64bit: - [2008/05/06 16:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)

DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=SNYVDF&pc=MASA&src=IE-SearchBox

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=SNYVDF&pc=MASA&src=IE-SearchBox

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-949116002-603324069-511764575-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-21-949116002-603324069-511764575-1006\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-949116002-603324069-511764575-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-949116002-603324069-511764575-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()

FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2012/01/01 04:22:19 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/05/18 10:08:28 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2012/01/01 15:04:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Patty\AppData\Roaming\Mozilla\Extensions

[2012/05/19 15:38:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Patty\AppData\Roaming\Mozilla\Firefox\Profiles\7zlqyqzx.default\extensions

[2012/05/19 15:38:06 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Patty\AppData\Roaming\Mozilla\Firefox\Profiles\7zlqyqzx.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}

[2012/05/18 10:08:28 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions

[2012/01/06 14:08:07 | 000,634,964 | ---- | M] () (No name found) -- C:\USERS\PATTY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7ZLQYQZX.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI

[2012/05/05 18:37:10 | 000,004,733 | ---- | M] () (No name found) -- C:\USERS\PATTY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7ZLQYQZX.DEFAULT\EXTENSIONS\WVXGTINKOU@WVXGTINKOU.ORG.XPI

[2012/04/20 20:19:34 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll

[2012/04/20 20:18:25 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml

[2012/04/20 20:18:25 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - Extension: YouTube = C:\Users\Patty\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0\

CHR - Extension: Google Search = C:\Users\Patty\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0\

CHR - Extension: Gmail = C:\Users\Patty\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0\

O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts

O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.

O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)

O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)

O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll File not found

O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)

O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)

O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)

O3 - HKU\S-1-5-21-949116002-603324069-511764575-1006\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)

O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)

O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)

O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)

O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)

O4 - HKLM..\Run: [Acrobat Assistant 8.0] c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)

O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)

O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)

O4 - HKLM..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)

O4 - HKLM..\Run: [iSBMgr.exe] C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)

O4 - HKLM..\Run: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)

O4 - HKLM..\Run: [smartWiHelper] C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWiHelper.exe (Sony Electronics Corporation)

O4 - HKLM..\Run: [startCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)

O4 - HKU\S-1-5-21-949116002-603324069-511764575-1006..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11f_ActiveX.exe (Adobe Systems, Inc.)

O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3

O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-21-949116002-603324069-511764575-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-21-949116002-603324069-511764575-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O9 - Extra Button: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - c:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll (Evernote Corporation)

O9 - Extra 'Tools' menuitem : Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - c:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll (Evernote Corporation)

O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)

O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)

O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)

O16:64bit: - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)

O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 209.18.47.61 209.18.47.62

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{198F0C01-C53B-4763-8787-736C4B97C334}: DhcpNameServer = 192.168.1.1 209.18.47.61 209.18.47.62

O18:64bit: - Protocol\Handler\livecall - No CLSID value found

O18:64bit: - Protocol\Handler\ms-help - No CLSID value found

O18:64bit: - Protocol\Handler\msnim - No CLSID value found

O18:64bit: - Protocol\Handler\skype4com - No CLSID value found

O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found

O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found

O18:64bit: - Protocol\Handler\wlpg - No CLSID value found

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)

O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found

O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)

O32 - HKLM CDRom: AutoRun - 1

O34 - HKLM BootExecute: (autocheck autochk *)

O35:64bit: - HKLM\..comfile [open] -- "%1" %*

O35:64bit: - HKLM\..exefile [open] -- "%1" %*

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*

O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*

O37 - HKLM\...com [@ = ComFile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/05/22 16:45:17 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\Patty\Desktop\OTL.exe

[2012/05/21 19:43:01 | 004,731,392 | ---- | C] (AVAST Software) -- C:\Users\Patty\Desktop\aswMBR.exe

[2012/05/21 14:14:37 | 000,000,000 | ---D | C] -- C:\Windows\LastGood

[2012/05/20 21:36:17 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Local\{E5115C6C-D423-4A81-8575-FF381AF44BB6}

[2012/05/20 19:56:43 | 000,000,000 | ---D | C] -- C:\HP Universal Print Driver

[2012/05/20 00:16:20 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN

[2012/05/19 12:37:59 | 000,000,000 | ---D | C] -- C:\Windows\temp

[2012/05/19 12:21:59 | 004,498,946 | R--- | C] (Swearware) -- C:\Users\Patty\Desktop\ComboFix.exe

[2012/05/18 17:45:21 | 002,126,424 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Patty\Desktop\tdsskiller.exe

[2012/05/18 10:08:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service

[2012/05/18 10:08:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox

[2012/05/17 17:26:53 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Patty\Desktop\dds.scr

[2012/05/17 13:12:57 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Local\PackageAware

[2012/05/17 12:45:14 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Local\Google

[2012/05/17 12:45:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google

[2012/05/17 12:45:00 | 000,258,520 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe

[2012/05/17 12:44:13 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software

[2012/05/17 12:44:13 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software

[2012/05/15 16:09:48 | 000,000,000 | ---D | C] -- C:\Users\Patty\Desktop\GooredFix Backups

[2012/05/15 16:08:59 | 000,071,398 | ---- | C] (jpshortstuff) -- C:\Users\Patty\Desktop\GooredFix.exe

[2012/05/11 22:26:27 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Roaming\vlc

[2012/05/11 22:25:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN

[2012/05/11 22:22:56 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Local\{34613859-AA1C-473B-ACF8-EB3F58E17969}

[2012/05/11 03:01:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

[2012/05/11 03:01:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight

[2012/05/11 03:01:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight

[2012/05/06 19:00:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET

[2012/05/06 04:00:26 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe

[2012/05/06 04:00:26 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe

[2012/05/06 04:00:26 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe

[2012/05/06 04:00:22 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT

[2012/05/06 03:53:07 | 000,000,000 | ---D | C] -- C:\Qoobox

[2012/05/06 03:40:20 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro

[2012/05/05 23:22:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes

[2012/05/05 23:21:30 | 000,000,000 | ---D | C] -- C:\Program Files\iPod

[2012/05/05 23:21:29 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes

[2012/05/05 23:21:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes

[2012/05/04 22:13:32 | 000,000,000 | ---D | C] -- C:\Users\Patty\Desktop\Carlisle, dayton, oh

[2012/05/03 15:50:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla

[2012/05/01 03:01:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client

[2012/04/29 11:43:02 | 000,000,000 | ---D | C] -- C:\Users\Patty\AppData\Roaming\Skype

========== Files - Modified Within 30 Days ==========

[2012/05/22 16:45:17 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Patty\Desktop\OTL.exe

[2012/05/22 16:27:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat

[2012/05/21 19:56:26 | 000,000,512 | ---- | M] () -- C:\Users\Patty\Desktop\MBR.dat

[2012/05/21 19:43:13 | 004,731,392 | ---- | M] (AVAST Software) -- C:\Users\Patty\Desktop\aswMBR.exe

[2012/05/21 14:14:51 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf

[2012/05/20 21:33:49 | 000,729,688 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI

[2012/05/20 21:33:49 | 000,626,330 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat

[2012/05/20 21:33:49 | 000,107,574 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat

[2012/05/20 11:34:26 | 000,181,504 | ---- | M] () -- C:\Users\Patty\Desktop\14 Alberta Lease 052012.pdf

[2012/05/19 12:21:59 | 004,498,946 | R--- | M] (Swearware) -- C:\Users\Patty\Desktop\ComboFix.exe

[2012/05/18 17:45:21 | 002,126,424 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Patty\Desktop\tdsskiller.exe

[2012/05/18 13:35:35 | 000,010,096 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

[2012/05/18 13:35:35 | 000,010,096 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

[2012/05/18 10:08:32 | 000,001,086 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk

[2012/05/17 17:26:53 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Patty\Desktop\dds.scr

[2012/05/17 16:45:42 | 000,004,449 | ---- | M] () -- C:\Users\Patty\Desktop\phoenix-emblem_design.png

[2012/05/17 13:07:48 | 3106,480,128 | -HS- | M] () -- C:\hiberfil.sys

[2012/05/17 12:45:00 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt

[2012/05/15 16:09:00 | 000,071,398 | ---- | M] (jpshortstuff) -- C:\Users\Patty\Desktop\GooredFix.exe

[2012/05/10 03:32:20 | 000,336,168 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT

[2012/05/06 03:24:46 | 000,020,666 | ---- | M] () -- C:\Users\Patty\Desktop\bookmarks-2012-05-06.json

[2012/05/05 23:22:10 | 000,001,743 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk

[2012/05/05 19:04:43 | 000,001,065 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

[2012/05/01 03:01:52 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif

[2012/05/01 03:01:34 | 000,743,534 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI

[2012/04/29 18:47:21 | 000,072,461 | ---- | M] () -- C:\Users\Patty\Desktop\Rental Realtors Yellow Springs.pdf

[2012/04/28 00:02:55 | 001,177,182 | ---- | M] () -- C:\Users\Patty\Desktop\1823 gondert.zip

========== Files Created - No Company Name ==========

[2012/05/21 19:56:25 | 000,000,512 | ---- | C] () -- C:\Users\Patty\Desktop\MBR.dat

[2012/05/21 14:14:51 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf

[2012/05/20 11:34:21 | 000,181,504 | ---- | C] () -- C:\Users\Patty\Desktop\14 Alberta Lease 052012.pdf

[2012/05/18 10:08:32 | 000,001,086 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk

[2012/05/18 10:08:31 | 000,001,098 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

[2012/05/17 22:38:04 | 000,004,449 | ---- | C] () -- C:\Users\Patty\Desktop\phoenix-emblem_design.png

[2012/05/17 12:45:00 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt

[2012/05/06 04:00:26 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe

[2012/05/06 04:00:26 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe

[2012/05/06 04:00:26 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe

[2012/05/06 04:00:26 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe

[2012/05/06 04:00:26 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe

[2012/05/06 03:24:46 | 000,020,666 | ---- | C] () -- C:\Users\Patty\Desktop\bookmarks-2012-05-06.json

[2012/05/05 23:22:10 | 000,001,743 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk

[2012/04/29 18:47:20 | 000,072,461 | ---- | C] () -- C:\Users\Patty\Desktop\Rental Realtors Yellow Springs.pdf

[2012/04/28 00:02:55 | 001,177,182 | ---- | C] () -- C:\Users\Patty\Desktop\1823 gondert.zip

[2012/01/03 20:39:37 | 000,743,534 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI

[2012/01/03 18:19:44 | 000,010,892 | -HS- | C] () -- C:\Users\Patty\AppData\Local\065kr67xl40u45727283owdbue7r458gph5jp23624x

[2012/01/03 18:19:44 | 000,010,892 | -HS- | C] () -- C:\ProgramData\065kr67xl40u45727283owdbue7r458gph5jp23624x

[2012/01/01 16:40:03 | 000,000,000 | ---- | C] () -- C:\Windows\HPMProp.INI

[2012/01/01 16:39:55 | 000,316,928 | ---- | C] () -- C:\Windows\SysWow64\hpcc3118.dll

[2011/01/10 17:14:17 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

[2011/01/10 13:50:27 | 000,870,560 | ---- | C] () -- C:\Windows\SysWow64\igkrng575.bin

[2011/01/10 13:50:27 | 000,208,896 | ---- | C] () -- C:\Windows\SysWow64\iglhsip32.dll

[2011/01/10 13:50:27 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\iglhcp32.dll

[2011/01/10 13:50:26 | 000,104,636 | ---- | C] () -- C:\Windows\SysWow64\igfcg575m.bin

[2011/01/10 13:50:25 | 000,127,868 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng575.bin

[2011/01/10 13:50:19 | 000,028,732 | ---- | C] () -- C:\Windows\SysWow64\ativvsny.dat

[2011/01/10 13:50:19 | 000,026,936 | ---- | C] () -- C:\Windows\SysWow64\ativvsnl.dat

[2010/10/08 01:55:10 | 000,002,023 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

========== LOP Check ==========

[2009/07/14 00:08:49 | 000,019,382 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========

< End of report >

Link to post
Share on other sites

OTL Extras logfile created on: 5/22/2012 4:45:58 PM - Run 1

OTL by OldTimer - Version 3.2.43.1 Folder = C:\Users\Patty\Desktop

64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation

Internet Explorer (Version = 9.0.8112.16421)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.86 Gb Total Physical Memory | 2.46 Gb Available Physical Memory | 63.85% Memory free

7.71 Gb Paging File | 5.48 Gb Available in Paging File | 71.01% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 284.05 Gb Total Space | 163.47 Gb Free Space | 57.55% Space Free | Partition Type: NTFS

Drive E: | 7.49 Gb Total Space | 1.60 Gb Free Space | 21.38% Space Free | Partition Type: FAT32

Computer Name: PATTY-VAIO | User Name: Patty | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans

Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========

========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.html[@ = ChromeHTML] -- Reg Error: Key error. File not found

.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-949116002-603324069-511764575-1006\SOFTWARE\Classes\<extension>]

.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)

https [open] -- Reg Error: Key error.

inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)

InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)

InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

https [open] -- Reg Error: Key error.

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"cval" = 1

"FirewallDisableNotify" = 0

"AntiVirusDisableNotify" = 0

"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]

"AntiVirusOverride" = 0

"AntiSpywareOverride" = 0

"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"FirewallDisableNotify" = 0

"AntiVirusDisableNotify" = 0

"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]

"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{02971B58-8D75-4490-8B87-931606273D34}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{0EBDD371-C1D0-4A8E-B605-50A7474423F5}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{19FFEC7A-AEF1-4342-A5F7-BC041C499A52}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{334FF6F2-91F3-4CE0-B700-C114FD64DE7E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |

"{37D43EE4-01EE-4D90-B4F0-89212777787F}" = lport=139 | protocol=6 | dir=in | app=system |

"{3A145B12-6E63-468F-9BC7-4F9F2A0078C4}" = lport=445 | protocol=6 | dir=in | app=system |

"{488A8066-AE27-4CF0-B6CC-C92979ADEEC0}" = lport=138 | protocol=17 | dir=in | app=system |

"{4975F209-EF31-4652-849F-4CBFC8594321}" = lport=137 | protocol=17 | dir=in | app=system |

"{4FC801ED-4B14-4C68-8401-84E3E7CB1128}" = rport=10243 | protocol=6 | dir=out | app=system |

"{5F59EB02-B335-4379-B808-AF6C37DF5F33}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{6324DF49-0EC0-4431-BB3A-C632605C84B7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{6E7D52BD-B59A-4EF3-A657-80354B7C8EF1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{6FD0E156-04ED-4D99-914D-877D07D1BF28}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{713A6396-CDF5-4D92-9C8D-12B17B152983}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |

"{90B55701-7641-441D-AC67-05AC260F3FB5}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |

"{A1F33683-6665-46F2-9919-7CFECFE61120}" = rport=137 | protocol=17 | dir=out | app=system |

"{C900BFFB-F8E4-4FF0-8A36-E8BECCCEEF41}" = lport=10243 | protocol=6 | dir=in | app=system |

"{D15DF51A-D085-4CC1-A61C-BED233B8FD1A}" = rport=445 | protocol=6 | dir=out | app=system |

"{D18048DC-DC94-4DC6-B5CD-A7F13B3A1A31}" = lport=2869 | protocol=6 | dir=in | app=system |

"{DF09CCBE-162B-4E5A-905F-638ED5D9391A}" = rport=138 | protocol=17 | dir=out | app=system |

"{F0464B6E-CB7A-460B-BA1C-AE3598559A86}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |

"{F11BD077-B23A-41CC-B3C5-4BD060E2E16C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |

"{F6391F33-238B-45AF-9D07-5B39D548AC6D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{F677E988-663C-42EE-BB4B-7075F87AE41C}" = rport=139 | protocol=6 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{01FF8F76-9823-484E-8F1A-AA84754F1627}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |

"{0EA3199A-6DDD-4E20-9454-ADA908F08240}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{169B9097-6B5C-4284-BE5E-7FE11A32698C}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |

"{223446FC-3609-4310-8030-8CD3EEF0699D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{28A35606-FC9A-4DD6-8650-1DE354F782E7}" = protocol=6 | dir=out | app=system |

"{2E6467BF-479D-447D-BC56-7A22C1F2A0CD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{2F33D9C2-BC97-4F67-A450-DB51272919FE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{32B280E8-8E6E-48DC-81F5-3F5EE9660406}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{32EE9A6C-8888-409E-A794-20CC05ADE2DA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |

"{39A82A9D-9F9B-4C02-B93C-EEC326ADCB98}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{3E053A93-9EE9-4370-8DFF-833BD5F83880}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |

"{45C88BA5-BB0A-438A-B845-1697F6902394}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{4D25179B-CC47-4527-86A4-F2B615FC2A95}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{76D87935-273F-4B23-A96B-A4B1207C9F2C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |

"{790178C3-3158-405C-899F-91C5DE7C9AA9}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |

"{7A14E9DA-9DE9-458D-B795-F45958EBCAC7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |

"{7A91406F-4982-4224-8B9E-4E008E4381A4}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |

"{9025935F-325E-4CBF-B364-35998275D2B4}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{9338CD5A-BC68-4B4B-A159-8AABA644C360}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |

"{9D6131FD-5A82-44E4-92E1-0A397E5CFCBB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |

"{AF793607-6C9B-4366-A557-424CA3D6CCCD}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |

"{B6152794-0370-4E20-A211-5B710DF1BC71}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |

"{BE9B55EB-514F-44C5-BCA7-63E9947800D6}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |

"{BF6B7C03-5DC7-4F8A-AECB-33DD153C61F1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{C7D784DE-ECB8-4431-8724-A3B82B89DB71}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{D352CDA8-D827-4E16-8986-70685A03FA0F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{D8849802-1B10-4C7C-A431-D13908599035}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{E53D12AA-9544-4F35-B1BA-98A4D4970A38}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |

"{E8690386-CA8D-41F6-A7AB-060BA36E9910}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{115B60D5-BBDB-490E-AF2E-064D37A3CE01}" = Media Gallery

"{133D3F07-D558-46CE-80E8-F4D75DBBAD63}" = PMB VAIO Edition Plug-in

"{1AAF3A3B-7B32-4DDF-8ABB-438DAEB46EEC}" = Windows Live Family Safety

"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant

"{202B76AB-1B21-434E-A289-788D767D3A7C}" = Media Gallery

"{259FD439-13B0-0136-D0A0-FA89BB05831D}" = ccc-utility64

"{26A24AE4-039D-4CA4-87B4-2F86416020FF}" = Java 6 Update 20 (64-bit)

"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software

"{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety

"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148

"{5AFD1F5C-8FDA-413C-AF38-F1E7BD10D72F}" = VAIO Media plus

"{5BC83141-83DD-07BE-C940-04B385540F04}" = ATI Catalyst Install Manager

"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources

"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour

"{7C3AC18F-F19B-4082-8D13-7D603848E06C}" = VAIO Update Merge Module x64

"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007

"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007

"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007

"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting

"{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}" = Microsoft Security Client

"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Alps Pointing-device for VAIO

"{A3D964A6-411A-4817-9D58-5CB8808F494E}" = VAIO Media plus

"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)

"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053

"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support

"{BC741628-0AFC-405C-8946-DD46D1005A0A}" = 64 Bit HP CIO Components Installer

"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64

"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes

"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector

"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter

"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client

"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile

"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit

"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit

"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile

"Microsoft Security Client" = Microsoft Security Essentials

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{00B03993-F5A1-47B1-9C54-EC8FBDDDE17E}" = VAIO Care

"{07441A52-E208-478A-92B7-5C337CA8C131}" = Remote Play with PlayStation®3

"{07B7598E-1FB8-1A95-7A30-F534A55726B4}" = CCC Help Czech

"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer

"{0F952661-0BFE-4D92-A50C-A8DD13DCEDFA}" = Media Gallery

"{159E5135-4BEA-52B7-8CDC-823F1ED6D8A5}" = CCC Help Spanish

"{177AF091-7854-4615-8327-AC7518F62782}" = VAIO Media plus

"{17DFE37C-064E-4834-AD8F-A4B2B4DF68F8}" = Adobe Photoshop Elements 8.0

"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser

"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker

"{1B500D37-E7CF-480B-8054-8A563594EC4E}" = OOBE

"{1C5EC8F6-5C5F-421F-85BE-919B5D0CAD4C}" = Adobe Flash Player 10 Plugin

"{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager

"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update

"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions

"{25AF1025-095C-4AA9-A3FD-29710D3C3AE5}" = Remote Keyboard

"{265F0D95-A883-7162-0458-B78085B6B693}" = Catalyst Control Center Graphics Light

"{270380EB-8812-42E1-8289-53700DB840D2}" = PMB VAIO Edition Plug-in

"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections

"{2F9D63BE-A891-4E39-AFB3-7402D486800C}" = VAIO Hardware Diagnostics

"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery

"{34B37A74-125E-4406-87BA-E4BD3D097AE5}" = VAIO Survey

"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery

"{35111E7A-03B9-25EC-F434-A1CD976907FC}" = CCC Help Chinese Traditional

"{36C5BBF0-E5BF-4DE1-B684-7E90B0C93FB5}" = VAIO Care

"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU

"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology

"{427E8AD0-A4B1-D225-836E-CCB6068B490A}" = CCC Help French

"{44D25B45-5C0E-2187-6739-E2FA0E8AFE1D}" = CCC Help Portuguese

"{4685A344-6718-4923-AA9D-158A0A2E1CFB}" = SmartSound Quicktracks for Premiere Elements 8.0

"{4B9DA746-5AE1-4BA0-9087-BDB162242890}" = VAIO Media plus

"{4E6DF745-C99E-909F-BCF0-B7C24A51E56E}" = CCC Help Japanese

"{50816F92-1652-4A7C-B9BC-48F682742C4B}" = Messenger Companion

"{52F9CDDA-26F6-4499-90E0-6DDDE6D2259C}" = VAIO Media plus

"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI

"{547C9EB4-4CA6-402F-9D1B-8BD30DC71E44}" = VAIO Sample Contents

"{5736590B-36C7-4881-5EBE-F9B390F00774}" = Catalyst Control Center Core Implementation

"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack

"{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}" = VAIO Data Restore Tool

"{5A92468F-3ED8-4F96-A9E1-4F176C80EC29}" = VAIO Quick Web Access

"{5BEE8F1F-BD32-4553-8107-500439E43BD7}" = VAIO Update

"{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}" = VAIO Transfer Support

"{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer

"{61F569A3-1647-B6F4-08C8-40A011831827}" = CCC Help English

"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components

"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE

"{6A3F204B-323C-7E32-F890-A7308768728D}" = CCC Help Russian

"{6BF03C88-C06A-48DC-B9A1-FE72B24E5FA9}" = VAIO Media plus Opening Movie

"{7002773F-2A53-E9F2-E161-DB3DDA0F05BE}" = CCC Help Hungarian

"{70991E0A-1108-437E-BA7D-085702C670C0}" =

"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable

"{72042FA6-5609-489F-A8EA-3C2DD650F667}" = VAIO Control Center

"{734B6C6C-4740-476F-BB0C-F7AF469EDBB2}" = Remote Play with PlayStation 3

"{7396FB15-9AB4-4B78-BDD8-24A9C15D2C65}" = VAIO - Remote Keyboard

"{76DECE17-BCF5-9640-2854-3CA049834A40}" = CCC Help Chinese Standard

"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053

"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update

"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core

"{7A63F0C4-6B2B-694C-ED72-D0670612BC29}" = CCC Help Swedish

"{7BB90344-0647-468E-925A-7F69F7983421}" = ArcSoft Magic-i Visual Effects 2

"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime

"{803E4FA5-A940-4420-B89D-A8BC2E160247}" =

"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger

"{8211C280-5B02-4E7E-B55F-845A207249BA}" = VAIO Data Restore Tool

"{82F09B1C-F602-4552-9C40-5BD5F8EAF750}" =

"{8356CB97-A48F-44CB-837A-A12838DC4669}" = PMB VAIO Edition Plug-in

"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform

"{855DDD3C-131E-42A8-BCBD-F9581F80CACB}" =

"{88001121-87E2-2104-F9F5-ECC15DFCA1E0}" = Catalyst Control Center Graphics Full Existing

"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime

"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT

"{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}" = VAIO Media plus

"{8EB34C0B-AF54-F265-844C-3E6FA9AE2FCD}" = CCC Help German

"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007

"{90120000-0016-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007

"{90120000-0018-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007

"{90120000-001A-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007

"{90120000-001B-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007

"{90120000-001F-0409-0000-0000000FF1CE}_STANDARDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007

"{90120000-001F-040C-0000-0000000FF1CE}_STANDARDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007

"{90120000-001F-0C0A-0000-0000000FF1CE}_STANDARDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-002A-0000-1000-0000000FF1CE}_STANDARDR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002A-0409-1000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007

"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007

"{90120000-006E-0409-0000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007

"{90120000-0115-0409-0000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0116-0409-1000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In

"{91120000-0012-0000-0000-0000000FF1CE}" = Microsoft Office Standard 2007

"{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker

"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010

"{97E0EB8D-8A24-47F9-9BFA-C45D65195957}" = Media Gallery

"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars

"{9B5F85CA-90D4-4AFC-BB37-32477FD0D2B9}" = SmartWi Connection Utility

"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

"{9C73041C-AB71-995D-EEC7-B4E940F93F36}" = CCC Help Finnish

"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail

"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh

"{A0E583D1-23F7-4C35-9620-B169D7715E4B}" = Adobe Premiere Elements 8.0

"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer

"{A7C30414-2382-4086-B0D6-01A88ABA21C3}" = VAIO Gate

"{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}" =

"{A8D53A4E-77A1-E23E-A396-6D9C86A2F273}" = Catalyst Control Center Graphics Full New

"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common

"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer

"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer

"{AC76BA86-1033-0000-BA7E-000000000004}" = Adobe Acrobat 9 Standard

"{AC76BA86-1033-0000-BA7E-000000000004}_950" = Adobe Acrobat 9.5.0 - CPSID_83708

"{AC76BA86-1033-0000-BA7E-000000000004}{AC76BA86-1033-0000-BA7E-000000000004}" = Adobe Acrobat 9 Standard

"{AD3E7141-A22E-40F1-A7A4-55E898AE35E3}" = VAIO Help and Support

"{B375D641-9644-E4F6-963C-8CB3097C9F02}" = Catalyst Control Center InstallProxy

"{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}" = PMB

"{B7546697-2A80-4256-A24B-1C33163F535B}" = VAIO Gate Default

"{B8548B93-DE2D-4A98-874C-BDC9BFE7E4FF}" = Media Gallery

"{B941F34C-F36A-4A6F-A97C-50B5948E451F}" = VAIO Media plus

"{BFF37C6E-D735-4487-390C-271E030AA62C}" = CCC Help Italian

"{C2E171F6-9B58-4CE1-7B8B-B69FA04EBAB8}" = Catalyst Control Center Graphics Previews Vista

"{C459D829-0FF0-C210-B2BF-83DB63FC1D61}" = CCC Help Korean

"{C5529BC1-C2BF-44E8-B62A-01913D70081C}" = Catalyst Control Center - Branding

"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail

"{C6E893E7-E5EA-4CD5-917C-5443E753FCBD}" = VAIO Manual

"{C7477742-DDB4-43E5-AC8D-0259E1E661B1}" =

"{C83B7CBB-C736-BF46-9832-7A9D07E9D94C}" = CCC Help Polish

"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform

"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64

"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2

"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common

"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform

"{D49989B0-7BC2-F7F1-8017-3257F617347A}" = Catalyst Control Center Graphics Previews Common

"{D6C3C9E7-D334-4918-BD57-5B1EF14C207D}" = Bing Bar

"{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel® Turbo Boost Technology Driver

"{D6DEC295-88A0-5CFA-0B29-C8FDF091FFD3}" = CCC Help Dutch

"{DD88F979-FA58-41AC-980C-A6E1A82B61D9}" = VAIO - Media Gallery

"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources

"{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}" = ArcSoft WebCam Companion 3

"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh

"{DF693121-40C0-3020-D655-612E51616423}" = CCC Help Danish

"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10

"{E50FC5DB-7CBD-407D-A46E-0C13E45BC386}" = Oasis2Service

"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger

"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support

"{EBDDC3CC-343A-C0DD-79BA-8A12D0A2CA10}" = CCC Help Turkish

"{ECF0D151-BCA0-8E6D-62DB-5D44DB4A3836}" = CCC Help Thai

"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver

"{F1B95046-E9DA-CFEC-42A8-C8224646AA32}" = ccc-core-static

"{F30FE437-0E45-D409-F629-5D86960A6591}" = CCC Help Norwegian

"{F5CC9A13-6C57-4948-75A8-3A2C92A3183B}" = Catalyst Control Center Localization All

"{F67C14C0-D73E-C55B-E132-B1904A1A709C}" = CCC Help Greek

"{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote

"{F7E8DD1D-9BFD-38BB-86A5-BEF313B00C51}" = Catalyst Control Center InstallProxy

"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel® Control Center

"{FB77DB0C-6951-47B6-9D80-A0FDBEE0334C}" =

"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials

"{FF1FC66F-536F-46BD-98E3-D8DA127A810E}" = PMB VAIO Edition Guide

"Adobe Photoshop Elements 8.0" = Adobe Photoshop Elements 8.0

"Application Manager for VAIO" = Application Manager for VAIO

"ESET Online Scanner" = ESET Online Scanner v3

"InstallShield_{270380EB-8812-42E1-8289-53700DB840D2}" = VAIO - PMB VAIO Edition Plug-in

"InstallShield_{4685A344-6718-4923-AA9D-158A0A2E1CFB}" = SmartSound Quicktracks for Premiere Elements 8.0

"InstallShield_{FF1FC66F-536F-46BD-98E3-D8DA127A810E}" = VAIO - PMB VAIO Edition Guide

"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400

"Mozilla Firefox 12.0 (x86 en-US)" = Mozilla Firefox 12.0 (x86 en-US)

"MozillaMaintenanceService" = Mozilla Maintenance Service

"PremElem80" = Adobe Premiere Elements 8.0

"splashtop" = VAIO Quick Web Access

"STANDARDR" = Microsoft Office Standard 2007

"VLC media player" = VLC media player 2.0.1

"WinLiveSuite" = Windows Live Essentials

========== Last 10 Event Log Errors ==========

[ Application Events ]

Error - 5/5/2012 2:27:50 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 3120

Error - 5/5/2012 8:27:49 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

Error - 5/5/2012 8:27:49 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 21602488

Error - 5/5/2012 8:27:49 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 21602488

Error - 5/5/2012 8:28:01 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

Error - 5/5/2012 8:28:01 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 1045

Error - 5/5/2012 8:28:01 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 1045

Error - 5/5/2012 8:28:02 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: Continuously busy for more than a second

Error - 5/5/2012 8:28:02 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledEvent 2059

Error - 5/5/2012 8:28:02 AM | Computer Name = PATTY-VAIO | Source = Bonjour Service | ID = 100

Description = Task Scheduling Error: m->NextScheduledSPRetry 2059

[ System Events ]

Error - 5/5/2012 11:27:04 PM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7001

Description = The Network List Service service depends on the Network Location Awareness

service which failed to start because of the following error: %%1068

Error - 5/5/2012 11:27:04 PM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7001

Description = The Network List Service service depends on the Network Location Awareness

service which failed to start because of the following error: %%1068

Error - 5/5/2012 11:27:04 PM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7001

Description = The Network List Service service depends on the Network Location Awareness

service which failed to start because of the following error: %%1068

Error - 5/6/2012 12:19:45 AM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7031

Description = The Apple Mobile Device service terminated unexpectedly. It has done

this 1 time(s). The following corrective action will be taken in 60000 milliseconds:

Restart the service.

Error - 5/6/2012 3:43:08 AM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7023

Description = The Windows Time service terminated with the following error: %%1115

Error - 5/6/2012 5:04:03 AM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7030

Description = The PEVSystemStart service is marked as an interactive service. However,

the system is configured to not allow interactive services. This service may not

function properly.

Error - 5/6/2012 5:06:00 AM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7030

Description = The PEVSystemStart service is marked as an interactive service. However,

the system is configured to not allow interactive services. This service may not

function properly.

Error - 5/6/2012 11:18:06 PM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7031

Description = The Apple Mobile Device service terminated unexpectedly. It has done

this 1 time(s). The following corrective action will be taken in 60000 milliseconds:

Restart the service.

Error - 5/6/2012 11:25:15 PM | Computer Name = Patty-VAIO | Source = Service Control Manager | ID = 7031

Description = The Apple Mobile Device service terminated unexpectedly. It has done

this 1 time(s). The following corrective action will be taken in 60000 milliseconds:

Restart the service.

Error - 5/7/2012 2:54:03 PM | Computer Name = Patty-VAIO | Source = DCOM | ID = 10010

Description =

< End of report >

Link to post
Share on other sites

Be sure to uninstall Combofix

Clean up with OTL:

  • Double-click OTL.exe to start the program.
  • Close all other programs apart from OTL as this step will require a reboot
  • On the OTL main screen, press the CLEANUP button
  • Say Yes to the prompt and then allow the program to reboot your computer.

Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.