Don't like ads? PRO users don't see any ads ;-)
Guest

OTL.text

By: a guest on Jul 4th, 2012  |  syntax: None  |  size: 233.53 KB  |  hits: 70  |  expires: Never
download  |  raw  |  embed  |  report abuse  |  print
Text below is selected. Please press Ctrl+C to copy to your clipboard. (⌘+C on Mac)
  1. OTL logfile created on: 04/07/2012 08:18:16 p.m. - Run 1
  2. OTL by OldTimer - Version 3.2.53.1     Folder = C:\Users\Evaristo\Desktop
  3.  Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
  4. Internet Explorer (Version = 9.0.8112.16421)
  5. Locale: 0000080A | Country: Mexico | Language: ESM | Date Format: dd/MM/yyyy
  6.  
  7. 1015.30 Mb Total Physical Memory | 221.39 Mb Available Physical Memory | 21.80% Memory free
  8. 1.99 Gb Paging File | 0.54 Gb Available in Paging File | 26.92% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
  12. Drive C: | 137.48 Gb Total Space | 96.11 Gb Free Space | 69.91% Space Free | Partition Type: NTFS
  13. Drive D: | 11.37 Gb Total Space | 1.90 Gb Free Space | 16.75% Space Free | Partition Type: NTFS
  14.  
  15. Computer Name: HP | User Name: Evaristo | Logged in as Administrator.
  16. Boot Mode: Normal | Scan Mode: All users
  17. Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 90 Days
  18.  
  19. [color=#E56717]========== Processes (SafeList) ==========[/color]
  20.  
  21. PRC - [2012/07/04 20:05:43 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Evaristo\Desktop\OTL.scr
  22. PRC - [2012/06/30 02:53:48 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
  23. PRC - [2012/05/24 13:39:22 | 027,112,840 | ---- | M] (Dropbox, Inc.) -- C:\Users\Evaristo\AppData\Roaming\Dropbox\bin\Dropbox.exe
  24. PRC - [2012/05/09 22:35:27 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
  25. PRC - [2012/05/09 22:35:21 | 000,465,360 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
  26. PRC - [2012/05/09 22:35:20 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
  27. PRC - [2012/05/09 22:35:20 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
  28. PRC - [2012/05/09 22:35:19 | 000,348,624 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
  29. PRC - [2011/12/09 22:18:28 | 001,130,496 | ---- | M] (Zhorn Software) -- C:\Program Files\Stickies\stickies.exe
  30. PRC - [2011/09/27 07:22:28 | 000,059,240 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
  31. PRC - [2011/09/08 15:55:10 | 000,888,488 | ---- | M] ({StringFileInfo_CompanyName}) -- C:\Program Files\Ask.com\Updater\Updater.exe
  32. PRC - [2011/06/23 23:22:20 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
  33. PRC - [2011/03/28 18:06:24 | 000,311,352 | ---- | M] (Hewlett-Packard Development Company L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
  34. PRC - [2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
  35. PRC - [2010/11/20 07:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
  36. PRC - [2010/04/14 09:08:59 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
  37. PRC - [2009/07/14 05:54:00 | 000,589,104 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP QuickSync\QuickSync.exe
  38. PRC - [2009/07/14 05:54:00 | 000,135,168 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Hewlett-Packard\HP QuickSync\jre\bin\javaw.exe
  39. PRC - [2009/07/13 20:14:36 | 000,259,072 | ---- | M] () -- C:\Windows\System32\services.exe
  40. PRC - [2009/07/08 22:55:26 | 000,323,584 | -H-- | M] (DeviceVM, Inc.) -- C:\SPLASH.SYS\config\DVMExportService.exe
  41. PRC - [2009/06/29 15:44:38 | 000,458,844 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
  42. PRC - [2009/06/29 15:44:38 | 000,221,266 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\stacsv.exe
  43. PRC - [2009/03/02 16:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\AEstSrv.exe
  44. PRC - [2009/01/08 08:44:06 | 000,070,936 | ---- | M] (Octoshape ApS) -- C:\Users\Evaristo\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
  45. PRC - [2006/10/22 23:24:02 | 000,620,152 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
  46.  
  47.  
  48. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  49.  
  50. MOD - [2012/06/30 02:53:47 | 002,042,848 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
  51. MOD - [2012/06/14 20:33:54 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\7b7fbe651c6e72f12099a298654c9594\System.Windows.Forms.ni.dll
  52. MOD - [2012/06/14 20:33:18 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6bb439b3f87736d3248ae27d43e2c0d6\System.Drawing.ni.dll
  53. MOD - [2012/05/12 13:15:15 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\9b2f17fb61b7197f2a04108f5d1a1cc6\System.Management.ni.dll
  54. MOD - [2012/05/12 10:10:48 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll
  55. MOD - [2012/05/12 10:10:28 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
  56. MOD - [2012/05/12 10:10:23 | 007,967,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll
  57. MOD - [2012/05/12 10:09:47 | 011,492,864 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll
  58. MOD - [2011/12/09 22:01:30 | 000,049,152 | ---- | M] () -- C:\Program Files\Stickies\shook70.dll
  59. MOD - [2011/09/27 07:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
  60. MOD - [2011/09/27 07:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
  61. MOD - [2011/03/02 12:40:51 | 000,140,288 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
  62.  
  63.  
  64. [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
  65.  
  66. SRV - File not found [Auto | Stopped] -- C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
  67. SRV - [2012/06/30 02:53:48 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  68. SRV - [2012/05/09 22:35:27 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
  69. SRV - [2012/05/09 22:35:21 | 000,465,360 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
  70. SRV - [2012/05/09 22:35:20 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
  71. SRV - [2012/02/29 08:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
  72. SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
  73. SRV - [2010/04/14 09:08:59 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Running] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
  74. SRV - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
  75. SRV - [2009/07/08 22:55:26 | 000,323,584 | -H-- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\SPLASH.SYS\config\DVMExportService.exe -- (DvmMDES)
  76. SRV - [2009/06/29 15:44:38 | 000,221,266 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\stacsv.exe -- (STacSV)
  77. SRV - [2009/03/02 16:43:08 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\AEstSrv.exe -- (AESTFilters)
  78. SRV - [2007/05/31 17:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
  79. SRV - [2007/05/31 17:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
  80.  
  81.  
  82. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  83.  
  84. DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\RtsUCcid.sys -- (USBCCID)
  85. DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\Rts516xIR.sys -- (RtsUIR)
  86. DRV - [2012/05/09 22:35:28 | 000,137,928 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
  87. DRV - [2012/05/09 22:35:28 | 000,083,392 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
  88. DRV - [2011/10/19 17:56:50 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avkmgr.sys -- (avkmgr)
  89. DRV - [2011/05/13 03:21:06 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
  90. DRV - [2011/05/13 03:21:06 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM)
  91. DRV - [2011/05/13 03:21:06 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd) SAMSUNG Android USB Diagnostic Serial Port (WDM)
  92. DRV - [2011/05/13 03:21:06 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter)
  93. DRV - [2011/05/13 03:21:04 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb)
  94. DRV - [2010/11/27 15:50:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k)
  95. DRV - [2010/11/27 15:50:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea)
  96. DRV - [2010/11/27 15:50:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k)
  97. DRV - [2010/11/20 05:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
  98. DRV - [2010/11/20 04:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
  99. DRV - [2010/06/17 16:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)
  100. DRV - [2009/07/27 15:01:38 | 000,016,984 | -H-- | M] (DeviceVM, Inc.) [Kernel | System | Running] -- C:\SPLASH.SYS\config\dvmio.sys -- (DVMIO)
  101. DRV - [2009/07/13 18:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
  102. DRV - [2009/07/13 17:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD)
  103. DRV - [2009/07/13 17:02:46 | 001,096,704 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athr.sys -- (athr)
  104. DRV - [2009/06/29 15:44:38 | 000,408,576 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
  105. DRV - [2009/06/24 13:59:10 | 000,167,424 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR)
  106. DRV - [2009/04/27 19:26:44 | 000,050,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C) NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20)
  107.  
  108.  
  109. [color=#E56717]========== Standard Registry (All) ==========[/color]
  110.  
  111.  
  112. [color=#E56717]========== Internet Explorer ==========[/color]
  113.  
  114. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=Pavilion&pf=cnnb
  115. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  116. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
  117. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
  118. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
  119. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  120. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
  121. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=Pavilion&pf=cnnb
  122. IE - HKLM\..\SearchScopes,DefaultScope = {EA8DD14E-EF9B-445B-B548-BE69AF049651}
  123. IE - HKLM\..\SearchScopes\{8AE804E1-E220-4AFD-A547-70B0C82D94DA}: "URL" = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
  124. IE - HKLM\..\SearchScopes\{EA8DD14E-EF9B-445B-B548-BE69AF049651}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=HPNTDF&pc=HPNTDF&src=IE-SearchBox
  125.  
  126.  
  127. IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  128.  
  129. IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  130.  
  131. IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
  132.  
  133. IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
  134.  
  135. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_US&c=94&bd=Pavilion&pf=cnnb
  136. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
  137. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  138. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com.mx/
  139. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
  140. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\SearchScopes,DefaultScope = {EA8DD14E-EF9B-445B-B548-BE69AF049651}
  141. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\SearchScopes\{8AE804E1-E220-4AFD-A547-70B0C82D94DA}: "URL" = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
  142. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\SearchScopes\{EA8DD14E-EF9B-445B-B548-BE69AF049651}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=HPNTDF&pc=HPNTDF&src=IE-SearchBox
  143. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  144. IE - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
  145.  
  146. [color=#E56717]========== FireFox ==========[/color]
  147.  
  148. FF - prefs.js..browser.startup.homepage: "http://www.google.com/ig"
  149. FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:1.0.0.%(version)s
  150. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
  151. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
  152. FF - prefs.js..extensions.enabledItems: {dd3d7613-0246-469d-bc65-2a3cc1668adc}:0.7.1.1
  153. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
  154. FF - prefs.js..extensions.enabledItems: {7f57cf46-4467-4c2d-adfa-0cba7c507e54}:1.0.0
  155. FF - prefs.js..extensions.enabledItems: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.6.0.8442
  156. FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.24
  157. FF - user.js - File not found
  158.  
  159. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
  160. FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
  161. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
  162. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
  163. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
  164. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
  165. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  166. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  167. FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
  168. FF - HKCU\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Users\Evaristo\AppData\Roaming\Move Networks\plugins\npqmp071505000011.dll (Move Networks)
  169. FF - HKCU\Software\MozillaPlugins\@octoshape.com/Octoshape Streaming Services,version=1.0: C:\Users\Evaristo\AppData\Roaming\Octoshape\Octoshape Streaming Services\sua-1101262-0-npoctoshape.dll (Octoshape ApS)
  170. FF - HKCU\Software\MozillaPlugins\@starfield.com/off: C:\Users\Evaristo\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
  171. FF - HKCU\Software\MozillaPlugins\@starfield.com/wbe: C:\Users\Evaristo\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
  172. FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Evaristo\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
  173. FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Evaristo\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
  174. FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Evaristo\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
  175. FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Evaristo\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
  176.  
  177. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/06/30 02:53:49 | 000,000,000 | ---D | M]
  178. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/04/25 22:06:03 | 000,000,000 | ---D | M]
  179. FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\moveplayer@movenetworks.com: C:\Users\Evaristo\AppData\Roaming\Move Networks [2010/03/29 21:29:09 | 000,000,000 | ---D | M]
  180. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/06/30 02:53:49 | 000,000,000 | ---D | M]
  181. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/04/25 22:06:03 | 000,000,000 | ---D | M]
  182.  
  183. [2010/01/05 22:06:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Evaristo\AppData\Roaming\mozilla\Extensions
  184. [2012/04/21 14:27:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Evaristo\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
  185. [2012/05/10 07:46:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Evaristo\AppData\Roaming\mozilla\Firefox\Profiles\t1h1yc18.default\extensions
  186. [2010/09/23 02:24:32 | 000,000,000 | ---D | M] (BlockSite) -- C:\Users\Evaristo\AppData\Roaming\mozilla\Firefox\Profiles\t1h1yc18.default\extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}
  187. [2012/02/18 10:02:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
  188. [2012/06/04 18:04:40 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
  189. [2012/06/30 02:53:49 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  190. [2010/03/29 21:29:09 | 000,000,000 | ---D | M] (Move Media Player) -- C:\USERS\EVARISTO\APPDATA\ROAMING\MOVE NETWORKS
  191. [2012/04/21 14:27:26 | 000,000,000 | ---D | M] (WBE Paste) -- C:\USERS\EVARISTO\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\WBEPASTE@STARFIELD
  192. [2012/04/21 14:27:27 | 000,000,000 | ---D | M] (Workspace Email Zoom) -- C:\USERS\EVARISTO\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\ZOOMEXT@STARFIELD
  193. [2012/05/10 07:46:41 | 000,527,037 | ---- | M] () (No name found) -- C:\USERS\EVARISTO\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T1H1YC18.DEFAULT\EXTENSIONS\{7F57CF46-4467-4C2D-ADFA-0CBA7C507E54}.XPI
  194. [2012/06/30 02:53:49 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
  195. [2007/04/10 17:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\np-mswmp.dll
  196. [2012/02/14 15:35:51 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
  197. [2010/09/22 18:10:52 | 000,103,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
  198. [2011/10/26 10:30:52 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll
  199. [2011/10/26 10:30:52 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
  200. [2011/10/26 10:30:52 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
  201. [2011/10/26 10:30:52 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
  202. [2011/10/26 10:30:53 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
  203. [2011/10/26 10:30:53 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
  204. [2011/10/26 10:30:53 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
  205. [2012/02/17 20:00:54 | 000,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
  206. [2012/02/17 20:00:54 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
  207. [2012/02/17 20:00:54 | 000,001,131 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
  208. [2012/05/05 01:49:18 | 000,003,413 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
  209. [2012/02/17 20:00:54 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
  210. [2012/02/17 20:00:54 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
  211. [2012/02/17 20:00:54 | 000,001,096 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml
  212.  
  213. O1 HOSTS File: ([2009/06/10 16:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
  214. O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
  215. O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
  216. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
  217. O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
  218. O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  219. O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
  220. O2 - BHO: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  221. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
  222. O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  223. O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  224. O3 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  225. O3 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\..\Toolbar\WebBrowser: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  226. O4 - HKLM..\Run: []  File not found
  227. O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
  228. O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
  229. O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
  230. O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe ({StringFileInfo_CompanyName})
  231. O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
  232. O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
  233. O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)
  234. O4 - HKLM..\Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe (Intel Corporation)
  235. O4 - HKLM..\Run: [HP] C:\Program Files\Hewlett-Packard\HP QuickSync\QuickSync.exe (Hewlett-Packard)
  236. O4 - HKLM..\Run: [HP BTW Detect Program] C:\Program Files\HP\HPBTWD.exe File not found
  237. O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
  238. O4 - HKLM..\Run: [IgfxTray] C:\Windows\System32\igfxtray.exe (Intel Corporation)
  239. O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
  240. O4 - HKLM..\Run: [Persistence] C:\Windows\System32\igfxpers.exe (Intel Corporation)
  241. O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
  242. O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
  243. O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated)
  244. O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
  245. O4 - HKLM..\Run: [UpdatePRCShortCut] C:\Program Files\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
  246. O4 - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
  247. O4 - HKLM..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (Hewlett-Packard)
  248. O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
  249. O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
  250. O4 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000..\Run: [Google Update] C:\Users\Evaristo\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
  251. O4 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000..\Run: [Octoshape Streaming Services] C:\Users\Evaristo\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe (Octoshape ApS)
  252. O4 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000..\Run: [Power2GoExpress]  File not found
  253. O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
  254. O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
  255. O4 - Startup: C:\Users\Evaristo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Evaristo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
  256. O4 - Startup: C:\Users\Evaristo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
  257. O4 - Startup: C:\Users\Evaristo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stickies.lnk = C:\Program Files\Stickies\stickies.exe (Zhorn Software)
  258. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
  259. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
  260. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
  261. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
  262. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
  263. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
  264. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
  265. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
  266. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
  267. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
  268. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
  269. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
  270. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
  271. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
  272. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
  273. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
  274. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
  275. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
  276. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
  277. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
  278. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
  279. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
  280. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
  281. O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: WallpaperStyle = 2
  282. O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: WallpaperStyle = 2
  283. O7 - HKU\S-1-5-21-3900810405-3807897158-2666917641-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: WallpaperStyle = 2
  284. O8 - Extra context menu item: Append to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  285. O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  286. O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  287. O8 - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  288. O8 - Extra context menu item: Convert selected links to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  289. O8 - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  290. O8 - Extra context menu item: Convert selection to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  291. O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
  292. O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
  293. O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
  294. O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
  295. O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
  296. O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
  297. O9 - Extra Button: Add to Wish List - {76c5fb99-dd0a-4186-9e75-65d1bf3da283} - C:\Program Files\Amazon\Add to Wish List IE Extension\run.htm ()
  298. O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
  299. O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
  300. O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
  301. O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
  302. O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
  303. O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
  304. O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
  305. O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\wshbth.dll (Microsoft Corporation)
  306. O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
  307. O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  308. O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
  309. O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
  310. O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
  311. O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
  312. O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
  313. O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
  314. O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
  315. O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  316. O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  317. O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  318. O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  319. O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  320. O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  321. O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  322. O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  323. O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  324. O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  325. O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  326. O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
  327. O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  328. O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  329. O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  330. O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  331. O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  332. O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  333. O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  334. O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  335. O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  336. O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  337. O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  338. O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  339. O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  340. O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  341. O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  342. O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  343. O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  344. O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  345. O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  346. O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  347. O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  348. O10 - Protocol_Catalog9\Catalog_Entries\000000000038 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  349. O10 - Protocol_Catalog9\Catalog_Entries\000000000039 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  350. O10 - Protocol_Catalog9\Catalog_Entries\000000000040 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  351. O10 - Protocol_Catalog9\Catalog_Entries\000000000041 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  352. O10 - Protocol_Catalog9\Catalog_Entries\000000000042 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  353. O10 - Protocol_Catalog9\Catalog_Entries\000000000043 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  354. O10 - Protocol_Catalog9\Catalog_Entries\000000000044 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  355. O10 - Protocol_Catalog9\Catalog_Entries\000000000045 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  356. O10 - Protocol_Catalog9\Catalog_Entries\000000000046 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  357. O10 - Protocol_Catalog9\Catalog_Entries\000000000047 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  358. O10 - Protocol_Catalog9\Catalog_Entries\000000000048 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  359. O10 - Protocol_Catalog9\Catalog_Entries\000000000049 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  360. O10 - Protocol_Catalog9\Catalog_Entries\000000000050 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
  361. O13 - gopher Prefix: missing
  362. O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
  363. O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
  364. O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
  365. O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/zuma/default/popcaploader_v6.cab (PopCapLoader Object)
  366. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.147.0.15 200.95.144.3 200.95.144.77
  367. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{14370F45-FF95-425A-BC6B-5897BF1BBAD1}: DhcpNameServer = 10.147.0.15 200.95.144.3 200.95.144.77
  368. O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
  369. O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  370. O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
  371. O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  372. O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  373. O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
  374. O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  375. O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  376. O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
  377. O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
  378. O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
  379. O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  380. O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
  381. O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
  382. O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
  383. O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
  384. O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
  385. O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
  386. O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
  387. O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
  388. O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
  389. O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
  390. O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
  391. O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
  392. O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
  393. O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
  394. O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
  395. O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
  396. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
  397. O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
  398. O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
  399. O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
  400. O20 - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\System32\igfxdev.dll (Intel Corporation)
  401. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  402. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
  403. O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
  404. O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
  405. O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
  406. O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
  407. O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
  408. O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
  409. O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
  410. O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
  411. O30 - LSA: Security Packages - (livessp) - C:\Windows\System32\livessp.dll (Microsoft Corp.)
  412. O31 - SafeBoot: AlternateShell - cmd.exe
  413. O32 - HKLM CDRom: AutoRun - 1
  414. O32 - AutoRun File - [2009/06/10 16:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
  415. O33 - MountPoints2\{54bbe8f7-ccb5-11df-98b3-18a905d749b7}\Shell - "" = AutoRun
  416. O33 - MountPoints2\{54bbe8f7-ccb5-11df-98b3-18a905d749b7}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -a
  417. O33 - MountPoints2\E\Shell - "" = AutoRun
  418. O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\LaunchU3.exe -a
  419. O34 - HKLM BootExecute: (autocheck autochk *)
  420. O35 - HKLM\..comfile [open] -- "%1" %*
  421. O35 - HKLM\..exefile [open] -- "%1" %*
  422. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  423. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  424. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  425. O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
  426. O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  427.  
  428. NetSvcs: FastUserSwitchingCompatibility -  File not found
  429. NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
  430. NetSvcs: Nla -  File not found
  431. NetSvcs: Ntmssvc -  File not found
  432. NetSvcs: NWCWorkstation -  File not found
  433. NetSvcs: Nwsapagent -  File not found
  434. NetSvcs: Sharedaccess -  File not found
  435. NetSvcs: SRService -  File not found
  436. NetSvcs: WmdmPmSp -  File not found
  437. NetSvcs: wuauserv -  File not found
  438. NetSvcs: BITS -  File not found
  439. NetSvcs: LogonHours -  File not found
  440. NetSvcs: PCAudit -  File not found
  441. NetSvcs: helpsvc -  File not found
  442. NetSvcs: uploadmgr -  File not found
  443.  
  444.  
  445. SafeBootMin: AppMgmt - Service
  446. SafeBootMin: Base - Driver Group
  447. SafeBootMin: Boot Bus Extender - Driver Group
  448. SafeBootMin: Boot file system - Driver Group
  449. SafeBootMin: File system - Driver Group
  450. SafeBootMin: Filter - Driver Group
  451. SafeBootMin: HelpSvc - Service
  452. SafeBootMin: NTDS -  File not found
  453. SafeBootMin: PCI Configuration - Driver Group
  454. SafeBootMin: PNP Filter - Driver Group
  455. SafeBootMin: Primary disk - Driver Group
  456. SafeBootMin: sacsvr - Service
  457. SafeBootMin: SCSI Class - Driver Group
  458. SafeBootMin: System Bus Extender - Driver Group
  459. SafeBootMin: vmms - Service
  460. SafeBootMin: WinDefend - Service
  461. SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
  462. SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
  463. SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
  464. SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
  465. SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
  466. SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
  467. SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
  468. SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
  469. SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
  470. SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
  471. SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
  472. SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
  473. SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
  474. SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
  475. SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
  476. SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
  477. SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
  478.  
  479. SafeBootNet: AppMgmt - Service
  480. SafeBootNet: Base - Driver Group
  481. SafeBootNet: BFE - Service
  482. SafeBootNet: Boot Bus Extender - Driver Group
  483. SafeBootNet: Boot file system - Driver Group
  484. SafeBootNet: File system - Driver Group
  485. SafeBootNet: Filter - Driver Group
  486. SafeBootNet: HelpSvc - Service
  487. SafeBootNet: Messenger - Service
  488. SafeBootNet: NDIS Wrapper - Driver Group
  489. SafeBootNet: NetBIOSGroup - Driver Group
  490. SafeBootNet: NetDDEGroup - Driver Group
  491. SafeBootNet: Network - Driver Group
  492. SafeBootNet: NetworkProvider - Driver Group
  493. SafeBootNet: NTDS -  File not found
  494. SafeBootNet: PCI Configuration - Driver Group
  495. SafeBootNet: PNP Filter - Driver Group
  496. SafeBootNet: PNP_TDI - Driver Group
  497. SafeBootNet: Primary disk - Driver Group
  498. SafeBootNet: rdsessmgr - Service
  499. SafeBootNet: sacsvr - Service
  500. SafeBootNet: SCSI Class - Driver Group
  501. SafeBootNet: SharedAccess -  File not found
  502. SafeBootNet: Streams Drivers - Driver Group
  503. SafeBootNet: System Bus Extender - Driver Group
  504. SafeBootNet: TDI - Driver Group
  505. SafeBootNet: vmms - Service
  506. SafeBootNet: WinDefend - Service
  507. SafeBootNet: WudfUsbccidDriver - Driver
  508. SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
  509. SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
  510. SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
  511. SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
  512. SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
  513. SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
  514. SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
  515. SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
  516. SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
  517. SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
  518. SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
  519. SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
  520. SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
  521. SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
  522. SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
  523. SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
  524. SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
  525. SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
  526. SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
  527. SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
  528. SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
  529. SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
  530.  
  531. ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
  532. ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 10.1
  533. ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
  534. ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 10.1
  535. ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
  536. ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
  537. ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
  538. ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
  539. ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
  540. ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
  541. ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
  542. ActiveX: {50AE3B3F-CCA8-4508-D355-2D607AB9FD25} - Microsoft Windows Media Player 12.0
  543. ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
  544. ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
  545. ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
  546. ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
  547. ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
  548. ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
  549. ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
  550. ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
  551. ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
  552. ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
  553. ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
  554. ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
  555. ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
  556. ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
  557. ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
  558. ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
  559. ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
  560.  
  561. Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
  562. Drivers32: msacm.l3codecp - C:\Windows\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
  563. Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
  564. Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
  565.  
  566. [color=#E56717]========== Files/Folders - Created Within 90 Days ==========[/color]
  567.  
  568. [2012/07/04 20:05:32 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\Evaristo\Desktop\OTL.scr
  569. [2012/06/30 13:04:32 | 000,000,000 | ---D | C] -- C:\Users\Evaristo\AppData\Local\{9BDD21E5-DEFD-42B7-A10A-5AB361DD0CC6}
  570. [2012/06/30 13:04:20 | 000,000,000 | ---D | C] -- C:\Users\Evaristo\AppData\Local\{119B8908-D1D8-4B99-A9F8-AC2FD5720981}
  571. [2012/06/30 11:13:46 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_5.dll
  572. [2012/06/30 11:13:46 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
  573. [2012/06/30 11:13:44 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll
  574. [2012/06/21 11:22:53 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
  575. [2012/06/21 11:22:52 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
  576. [2012/06/21 11:22:32 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
  577. [2012/06/21 11:22:31 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
  578. [2012/06/21 11:22:31 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
  579. [2012/06/21 11:21:59 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
  580. [2012/06/21 11:21:59 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
  581. [2012/06/14 15:02:41 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
  582. [2012/06/14 15:02:38 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
  583. [2012/06/14 15:02:38 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
  584. [2012/06/14 15:02:38 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
  585. [2012/06/14 15:02:36 | 001,800,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
  586. [2012/06/14 15:02:35 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
  587. [2012/06/14 15:02:33 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
  588. [2012/06/14 11:00:31 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
  589. [2012/06/14 11:00:31 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
  590. [2012/06/14 11:00:31 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe
  591. [2012/06/14 11:00:25 | 002,343,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
  592. [2012/06/04 18:03:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
  593. [2012/06/04 18:03:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
  594. [2012/05/10 23:56:32 | 000,000,000 | ---D | C] -- C:\Users\Evaristo\AppData\Local\Audible
  595. [2012/05/10 23:51:46 | 000,255,352 | ---- | C] (Audible, Inc.) -- C:\Windows\System32\awrdscdc.ax
  596. [2012/05/10 23:51:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager
  597. [2012/05/10 23:51:32 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3a.dll
  598. [2012/05/10 23:51:12 | 000,000,000 | ---D | C] -- C:\Users\Evaristo\Documents\Audible
  599. [2012/05/10 23:51:11 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Audible
  600. [2012/05/10 23:51:11 | 000,000,000 | ---D | C] -- C:\Program Files\Audible
  601. [2012/05/10 17:28:30 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
  602. [2012/05/10 17:27:11 | 003,968,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
  603. [2012/05/10 17:27:09 | 003,913,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
  604. [2012/05/05 01:49:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
  605. [2012/05/05 01:49:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
  606. [2012/04/21 14:24:36 | 000,000,000 | ---D | C] -- C:\Users\Evaristo\AppData\Local\Workspace
  607. [5 C:\Users\Evaristo\Desktop\*.tmp files -> C:\Users\Evaristo\Desktop\*.tmp -> ]
  608. [4 C:\Users\Evaristo\Documents\*.tmp files -> C:\Users\Evaristo\Documents\*.tmp -> ]
  609. [2 C:\Users\Public\Documents\*.tmp files -> C:\Users\Public\Documents\*.tmp -> ]
  610.  
  611. [color=#E56717]========== Files - Modified Within 90 Days ==========[/color]
  612.  
  613. [2012/07/04 20:24:02 | 000,001,058 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3900810405-3807897158-2666917641-1000UA.job
  614. [2012/07/04 20:09:44 | 000,000,177 | -H-- | M] () -- C:\dvmexp.idx
  615. [2012/07/04 20:05:43 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\Evaristo\Desktop\OTL.scr
  616. [2012/07/04 19:24:23 | 000,062,936 | ---- | M] () -- C:\Users\Evaristo\Desktop\test.jpg
  617. [2012/07/04 19:15:50 | 000,004,614 | ---- | M] () -- C:\Users\Evaristo\Desktop\3.jpg
  618. [2012/07/04 17:29:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
  619. [2012/07/04 12:31:20 | 000,001,006 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3900810405-3807897158-2666917641-1000Core.job
  620. [2012/07/03 20:23:23 | 000,014,128 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  621. [2012/07/03 20:23:23 | 000,014,128 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  622. [2012/07/03 20:12:22 | 798,466,048 | -HS- | M] () -- C:\hiberfil.sys
  623. [2012/06/26 17:53:26 | 000,000,426 | ---- | M] () -- C:\Windows\BRWMARK.INI
  624. [2012/06/26 12:03:25 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForEvaristo.job
  625. [2012/06/14 20:29:49 | 000,420,360 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
  626. [2012/06/14 15:20:52 | 000,624,178 | ---- | M] () -- C:\Windows\System32\perfh009.dat
  627. [2012/06/14 15:20:52 | 000,106,522 | ---- | M] () -- C:\Windows\System32\perfc009.dat
  628. [2012/06/08 00:39:56 | 000,001,014 | ---- | M] () -- C:\Users\Evaristo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
  629. [2012/06/08 00:39:35 | 000,000,988 | ---- | M] () -- C:\Users\Evaristo\Desktop\Dropbox.lnk
  630. [2012/06/02 17:19:33 | 000,045,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
  631. [2012/06/02 17:19:32 | 000,035,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
  632. [2012/06/02 17:19:23 | 000,577,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
  633. [2012/06/02 17:12:32 | 002,422,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
  634. [2012/06/02 17:12:13 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
  635. [2012/06/02 15:19:42 | 000,171,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
  636. [2012/06/02 15:12:20 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
  637. [2012/05/24 00:25:56 | 181,227,246 | ---- | M] () -- C:\Windows\MEMORY.DMP
  638. [2012/05/17 17:45:37 | 001,800,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
  639. [2012/05/17 17:35:39 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
  640. [2012/05/17 17:33:08 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll
  641. [2012/05/17 17:31:16 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
  642. [2012/05/17 17:29:45 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
  643. [2012/05/17 17:24:45 | 002,382,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
  644. [2012/05/17 17:20:42 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
  645. [2012/05/14 20:05:38 | 002,343,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
  646. [2012/05/10 23:51:46 | 000,255,352 | ---- | M] (Audible, Inc.) -- C:\Windows\System32\awrdscdc.ax
  647. [2012/05/09 22:35:28 | 000,137,928 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
  648. [2012/05/09 22:35:28 | 000,083,392 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
  649. [2012/04/25 23:45:55 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
  650. [2012/04/25 23:45:54 | 000,129,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
  651. [2012/04/25 23:41:16 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe
  652. [2012/04/25 22:06:07 | 000,002,021 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Synchronizer.lnk
  653. [2012/04/25 22:06:07 | 000,001,951 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Acrobat 8 Professional.lnk
  654. [2012/04/25 22:06:06 | 000,002,459 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
  655. [5 C:\Users\Evaristo\Desktop\*.tmp files -> C:\Users\Evaristo\Desktop\*.tmp -> ]
  656. [4 C:\Users\Evaristo\Documents\*.tmp files -> C:\Users\Evaristo\Documents\*.tmp -> ]
  657. [2 C:\Users\Public\Documents\*.tmp files -> C:\Users\Public\Documents\*.tmp -> ]
  658.  
  659. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  660.  
  661. [2012/07/04 19:24:19 | 000,062,936 | ---- | C] () -- C:\Users\Evaristo\Desktop\test.jpg
  662. [2012/07/04 19:15:43 | 000,004,614 | ---- | C] () -- C:\Users\Evaristo\Desktop\3.jpg
  663. [2012/07/02 22:24:43 | 000,018,944 | ---- | C] () -- C:\Windows\Installer\{2a9387da-432a-b448-c2a4-1174635168f0}\U\800000cb.@
  664. [2012/07/02 22:05:39 | 000,013,312 | ---- | C] () -- C:\Windows\Installer\{2a9387da-432a-b448-c2a4-1174635168f0}\U\80000000.@
  665. [2012/06/30 11:21:31 | 000,001,211 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
  666. [2012/06/30 11:20:11 | 000,001,280 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
  667. [2012/06/30 11:18:59 | 000,002,392 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
  668. [2012/06/25 16:43:40 | 000,001,696 | ---- | C] () -- C:\Windows\Installer\{2a9387da-432a-b448-c2a4-1174635168f0}\U\00000001.@
  669. [2012/04/25 22:06:07 | 000,001,951 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Acrobat 8 Professional.lnk
  670. [2012/01/11 15:24:48 | 000,002,048 | -HS- | C] () -- C:\Windows\Installer\{2a9387da-432a-b448-c2a4-1174635168f0}\@
  671. [2012/01/11 15:24:48 | 000,002,048 | -HS- | C] () -- C:\Users\Evaristo\AppData\Local\{2a9387da-432a-b448-c2a4-1174635168f0}\@
  672. [2011/04/04 18:16:00 | 000,027,623 | ---- | C] () -- C:\Users\Evaristo\AppData\Roaming\UserTile.png
  673. [2011/01/14 19:12:55 | 000,172,284 | ---- | C] () -- C:\Windows\hphins34.dat
  674. [2011/01/14 19:12:55 | 000,000,532 | ---- | C] () -- C:\Windows\hphmdl34.dat
  675. [2010/12/29 17:01:14 | 000,001,849 | ---- | C] () -- C:\Users\Evaristo\AppData\Roaming\GhostObjGAFix.xml
  676. [2010/03/29 18:01:10 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
  677. [2010/01/01 20:18:43 | 000,001,006 | ---- | C] () -- C:\Users\Evaristo\AppData\Roaming\wklnhst.dat
  678.  
  679. [color=#E56717]========== LOP Check ==========[/color]
  680.  
  681. [2010/04/10 01:13:29 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\3M
  682. [2012/07/04 20:20:47 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\Dropbox
  683. [2010/04/10 01:11:07 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\GetRightToGo
  684. [2011/07/05 17:45:13 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\go
  685. [2011/03/23 21:44:57 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\iWin
  686. [2011/11/11 21:16:07 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\Octoshape
  687. [2010/01/11 18:30:52 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\PDF Writer
  688. [2011/04/04 18:15:59 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\PeerNetworking
  689. [2012/02/03 21:55:16 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\Rovio
  690. [2012/07/03 20:14:06 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\stickies
  691. [2010/01/01 20:18:48 | 000,000,000 | ---D | M] -- C:\Users\Evaristo\AppData\Roaming\Template
  692. [2012/01/12 04:47:25 | 000,032,592 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
  693.  
  694. [color=#E56717]========== Purity Check ==========[/color]
  695.  
  696.  
  697.  
  698. [color=#E56717]========== Custom Scans ==========[/color]
  699.  
  700. [color=#A23BEC]< C:\Program Files\Common Files\ComObjects\*.* /s >[/color]
  701.  
  702. [color=#A23BEC]< %SYSTEMDRIVE%\*.* >[/color]
  703. [2009/06/10 16:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
  704. [2009/07/13 20:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
  705. [2009/06/10 16:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
  706. [2012/07/04 20:40:00 | 000,000,177 | -H-- | M] () -- C:\dvmexp.idx
  707. [2012/07/03 20:12:22 | 798,466,048 | -HS- | M] () -- C:\hiberfil.sys
  708. [2012/07/03 20:12:27 | 1073,741,824 | -HS- | M] () -- C:\pagefile.sys
  709. [2010/01/02 00:00:21 | 000,000,061 | -H-- | M] () -- C:\splash.idx
  710. [2009/08/27 22:03:10 | 000,005,392 | -H-- | M] () -- C:\version
  711.  
  712. [color=#A23BEC]< %USERPROFILE%\*.* >[/color]
  713. [2012/07/04 20:40:06 | 005,505,024 | -HS- | M] () -- C:\Users\Evaristo\NTUSER.DAT
  714. [2012/07/04 20:40:06 | 000,262,144 | -HS- | M] () -- C:\Users\Evaristo\ntuser.dat.LOG1
  715. [2010/08/02 12:26:59 | 000,262,144 | -HS- | M] () -- C:\Users\Evaristo\ntuser.dat.LOG2
  716. [2010/01/01 20:22:11 | 000,065,536 | -HS- | M] () -- C:\Users\Evaristo\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
  717. [2010/01/01 20:22:10 | 000,524,288 | -HS- | M] () -- C:\Users\Evaristo\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
  718. [2010/01/01 20:22:11 | 000,524,288 | -HS- | M] () -- C:\Users\Evaristo\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
  719. [2010/01/01 23:59:08 | 000,000,020 | -HS- | M] () -- C:\Users\Evaristo\ntuser.ini
  720.  
  721. [color=#A23BEC]< %USERPROFILE%\AppData\Local\*.* >[/color]
  722. [2010/06/04 08:21:18 | 000,111,896 | ---- | M] () -- C:\Users\Evaristo\AppData\Local\GDIPFONTCACHEV1.DAT
  723. [2012/07/03 17:50:53 | 002,100,371 | -H-- | M] () -- C:\Users\Evaristo\AppData\Local\IconCache.db
  724.  
  725. [color=#A23BEC]< %USERPROFILE%\AppData\Roaming\*.* >[/color]
  726. [2011/07/06 18:41:12 | 000,001,849 | ---- | M] () -- C:\Users\Evaristo\AppData\Roaming\GhostObjGAFix.xml
  727. [2011/04/04 18:16:00 | 000,027,623 | ---- | M] () -- C:\Users\Evaristo\AppData\Roaming\UserTile.png
  728. [2011/11/17 11:50:32 | 000,001,006 | ---- | M] () -- C:\Users\Evaristo\AppData\Roaming\wklnhst.dat
  729.  
  730. [color=#A23BEC]< %ProgramData%\*.* >[/color]
  731. [2010/03/29 18:01:10 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
  732. [2012/07/03 20:14:18 | 000,000,194 | ---- | M] () -- C:\ProgramData\HPWALog.txt
  733. [2011/01/14 19:38:13 | 000,001,309 | ---- | M] () -- C:\ProgramData\hpzinstall.log
  734. [2009/12/09 06:43:25 | 000,000,032 | ---- | M] () -- C:\ProgramData\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
  735. [2009/09/14 16:02:38 | 000,000,109 | ---- | M] () -- C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
  736. [2009/12/09 06:42:54 | 000,000,032 | ---- | M] () -- C:\ProgramData\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
  737. [2009/09/14 16:01:16 | 000,000,105 | ---- | M] () -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
  738.  
  739. [color=#A23BEC]< %CommonProgramFiles%\*.* >[/color]
  740.  
  741. [color=#A23BEC]< %PROGRAMFILES%\*.* >[/color]
  742. [2009/07/13 23:41:57 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
  743.  
  744. [color=#A23BEC]< %windir%\installer\*. /s >[/color]
  745. [2009/09/14 15:32:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$
  746. [2009/12/09 06:43:20 | 000,000,000 | ---D | M] -- C:\Windows\installer\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}
  747. [2010/01/03 05:28:22 | 000,000,000 | ---D | M] -- C:\Windows\installer\{07FA4960-B038-49EB-891B-9F95930AA544}
  748. [2010/01/02 03:55:42 | 000,000,000 | ---D | M] -- C:\Windows\installer\{0AAA9C97-74D4-47CE-B089-0B147EF3553C}
  749. [2010/04/09 08:22:08 | 000,000,000 | ---D | M] -- C:\Windows\installer\{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
  750. [2009/12/09 06:42:45 | 000,000,000 | ---D | M] -- C:\Windows\installer\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}
  751. [2012/02/14 15:35:45 | 000,000,000 | ---D | M] -- C:\Windows\installer\{26A24AE4-039D-4CA4-87B4-2F83216031FF}
  752. [2011/10/26 10:44:00 | 000,000,000 | ---D | M] -- C:\Windows\installer\{29ED20C9-5E15-4969-9279-25BF3727A3DA}
  753. [2012/07/01 16:25:33 | 000,000,000 | -HSD | M] -- C:\Windows\installer\{2a9387da-432a-b448-c2a4-1174635168f0}
  754. [2011/02/02 16:58:24 | 000,000,000 | ---D | M] -- C:\Windows\installer\{34985F59-8F6F-46F4-9AD5-53E2714294D2}
  755. [2009/09/14 15:21:33 | 000,000,000 | ---D | M] -- C:\Windows\installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
  756. [2009/12/09 06:47:37 | 000,000,000 | ---D | M] -- C:\Windows\installer\{53F08287-443D-4FC0-B74D-1169B6B9A71C}
  757. [2009/09/14 17:03:22 | 000,000,000 | ---D | M] -- C:\Windows\installer\{54CC7901-804D-4155-B353-21F0CC9112AB}
  758. [2009/12/09 06:42:14 | 000,000,000 | ---D | M] -- C:\Windows\installer\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}
  759. [2011/10/26 10:46:50 | 000,000,000 | ---D | M] -- C:\Windows\installer\{6B9B0C6F-E5FA-4633-A640-AB98A272ECCA}
  760. [2011/10/26 10:17:49 | 000,000,000 | ---D | M] -- C:\Windows\installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
  761. [2011/10/26 10:24:09 | 000,000,000 | ---D | M] -- C:\Windows\installer\{79155F2B-9895-49D7-8612-D92580E0DE5B}
  762. [2010/02/15 20:56:12 | 000,000,000 | ---D | M] -- C:\Windows\installer\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}
  763. [2011/11/09 08:33:31 | 000,000,000 | ---D | M] -- C:\Windows\installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
  764. [2012/05/12 08:57:44 | 000,000,000 | ---D | M] -- C:\Windows\installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
  765. [2012/05/12 09:46:48 | 000,000,000 | ---D | M] -- C:\Windows\installer\{90120000-0020-0409-0000-0000000FF1CE}
  766. [2012/06/14 15:25:25 | 000,000,000 | ---D | M] -- C:\Windows\installer\{90120000-0030-0000-0000-0000000FF1CE}
  767. [2012/03/16 08:48:45 | 000,000,000 | ---D | M] -- C:\Windows\installer\{90120000-006E-0409-0000-0000000FF1CE}
  768. [2010/02/16 21:28:19 | 000,000,000 | ---D | M] -- C:\Windows\installer\{904CCF62-818D-4675-BC76-D37EB399F917}
  769. [2012/05/12 09:47:54 | 000,000,000 | ---D | M] -- C:\Windows\installer\{91120000-002F-0000-0000-0000000FF1CE}
  770. [2012/05/12 09:15:40 | 000,000,000 | ---D | M] -- C:\Windows\installer\{95120000-00AF-0409-0000-0000000FF1CE}
  771. [2011/10/26 10:35:45 | 000,000,000 | ---D | M] -- C:\Windows\installer\{A00B9A50-3090-4CFF-9CDA-82DA0BEDAA21}
  772. [2009/12/09 06:51:32 | 000,000,000 | ---D | M] -- C:\Windows\installer\{A1BF9950-8CDB-468E-83FA-EACFB00EA7D5}
  773. [2011/10/26 10:23:20 | 000,000,000 | ---D | M] -- C:\Windows\installer\{A83279FD-CA4B-4206-9535-90974DE76654}
  774. [2010/02/15 20:55:05 | 000,000,000 | ---D | M] -- C:\Windows\installer\{A85FD55B-891B-4314-97A5-EA96C0BD80B5}
  775. [2012/04/25 22:06:05 | 000,000,000 | ---D | M] -- C:\Windows\installer\{AC76BA86-1033-F400-7760-000000000003}
  776. [2010/10/21 17:04:23 | 000,000,000 | ---D | M] -- C:\Windows\installer\{AC76BA86-7AD7-1033-7B44-A94000000001}
  777. [2011/10/26 09:47:00 | 000,000,000 | ---D | M] -- C:\Windows\installer\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}
  778. [2012/06/04 18:04:48 | 000,000,000 | ---D | M] -- C:\Windows\installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}
  779. [2011/10/26 10:30:12 | 000,000,000 | ---D | M] -- C:\Windows\installer\{C9E14402-3631-4182-B377-6B0DFB1C0339}
  780. [2009/09/14 16:53:07 | 000,000,000 | ---D | M] -- C:\Windows\installer\{D46D081B-F60E-467E-A7C4-117B70D76731}
  781. [2010/01/05 16:34:11 | 000,000,000 | ---D | M] -- C:\Windows\installer\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
  782. [2012/06/30 11:19:27 | 000,000,000 | ---D | M] -- C:\Windows\installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}
  783. [2012/06/04 18:03:40 | 000,000,000 | ---D | M] -- C:\Windows\installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
  784. [2009/09/14 14:44:13 | 000,000,000 | ---D | M] -- C:\Windows\installer\{EEA95E6C-6847-49BE-83C9-ED92D8E18983}
  785. [2009/12/09 06:51:21 | 000,000,000 | ---D | M] -- C:\Windows\installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
  786. [2009/09/14 13:46:59 | 000,000,000 | ---D | M] -- C:\Windows\installer\{F6BD194C-4190-4D73-B1B1-C48C99921BFE}
  787. [2012/06/30 11:22:43 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed
  788. [2010/09/23 02:42:17 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\UnManaged
  789. [2012/03/16 10:59:29 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109020090400000000000F01FEC
  790. [2012/03/16 10:47:36 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109030000000000000000F01FEC
  791. [2012/03/16 08:50:16 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\000021091A0090400000000000F01FEC
  792. [2010/04/10 01:59:19 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109411090400000000000F01FEC
  793. [2012/03/16 08:49:41 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109440090400000000000F01FEC
  794. [2012/03/16 08:48:13 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109510090400000000000F01FEC
  795. [2010/01/08 02:36:27 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109511090400000000000F01FEC
  796. [2012/03/16 08:49:20 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109610090400000000000F01FEC
  797. [2010/04/10 01:59:21 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109711090400000000000F01FEC
  798. [2012/03/16 08:50:57 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109810090400000000000F01FEC
  799. [2012/03/16 08:51:04 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109910090400000000000F01FEC
  800. [2012/03/16 08:50:48 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109A10090400000000000F01FEC
  801. [2010/04/10 01:59:16 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109AB0090400000000000F01FEC
  802. [2012/03/16 08:51:10 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109B10090400000000000F01FEC
  803. [2012/03/16 08:48:45 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109E60090400000000000F01FEC
  804. [2010/01/08 02:36:18 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F10090400000000000F01FEC
  805. [2010/01/10 02:03:31 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F100A0C00000000000F01FEC
  806. [2010/01/10 02:03:36 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F100C0400000000000F01FEC
  807. [2012/03/16 10:57:02 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002119F20000000000000000F01FEC
  808. [2009/09/14 13:46:35 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\000021599B0090400000000000F01FEC
  809. [2012/03/15 09:40:20 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC
  810. [2012/02/20 04:02:24 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00004109500200000000000000F01FEC
  811. [2012/06/30 11:22:05 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\032440EF5AC97F34B985A55C2AA8F133
  812. [2011/10/26 10:35:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\05A9B00A0903FFC4C9AD28ADB0DEAA12
  813. [2010/01/02 13:09:41 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\0D756077321A70C3E844C138CE981581
  814. [2009/09/14 17:03:22 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\1097CC45D40855143B35120FCC1921BA
  815. [2012/06/30 11:19:27 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\11F12B5E3396B0E42AC597363E0CD711
  816. [2011/11/10 09:38:51 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\1D5E3C0FEDA1E123187686FED06E995A
  817. [2012/06/30 11:16:48 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\3D04254D3B6B9FF42B3445CE3E1E0066
  818. [2012/06/30 11:21:46 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4314AE291D01A814191EA5403531A183
  819. [2012/06/30 11:21:56 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4A4869755DDD3AC4E98AB77E9D95D34B
  820. [2012/06/30 11:22:36 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4A9D4F432C248434EB4F5E358C54947E
  821. [2011/04/15 11:51:13 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\5C1093C35543A0E32A41B090A305076A
  822. [2010/04/14 09:07:30 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\68AB67CA3301004F7706000000000030
  823. [2010/11/15 01:40:46 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\68AB67CA7DA73301B7449A0400000010
  824. [2011/06/19 09:45:51 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\6E58EC68CABDDFF39B774E7BF9389C90
  825. [2012/06/30 11:20:51 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\766F6333940964D4896BC447E3BE5C1B
  826. [2012/06/30 11:22:13 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\775F634D5961F2D4B844CA679CE90020
  827. [2012/06/30 11:17:11 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\7B292C385A83B0447A137070E0186AF4
  828. [2012/06/30 11:22:43 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\7F80AB91827CC964A853FBDB6333EB80
  829. [2011/02/10 00:21:52 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\95F58943F6F84F64A95D352E1724492D
  830. [2011/10/26 10:43:57 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\9C02DE9251E59694299752FB73723AAD
  831. [2012/06/30 11:18:33 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\B6ACDB9A3563B764CA384963D73AFB3E
  832. [2011/06/19 09:48:12 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\c1c4f01781cc94c4c8fb1542c0981a2a
  833. [2012/06/30 11:22:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\C42CF3A20CE691545AB2DF4AAEB9D242
  834. [2011/01/14 19:26:09 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\D20352A90C039D93DBF6126ECE614057
  835. [2009/09/14 13:48:04 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\D7314F9862C648A4DB8BE2A5B47BE100
  836. [2011/10/27 10:46:40 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\DF97238AB4AC602459530979D47E6645
  837. [2011/11/30 23:47:22 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\E1BDC7909C701F0499270F9F3F2A784E
  838. [2012/06/30 11:17:25 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\E97A59ECCF4EFFF4A857920FB449F22F
  839. [2012/06/30 11:18:07 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\F132F0B0A6ECD384AA32773B467F9571
  840. [2012/06/30 11:16:06 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\F4E3B286A696ED244AC1C470AE61874B
  841. [2012/03/15 09:40:15 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.4518
  842. [2012/03/16 10:59:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6612
  843. [2012/04/13 03:26:09 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518
  844. [2012/05/12 09:23:31 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612
  845. [2012/03/16 08:50:03 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\000021091A0090400000000000F01FEC\12.0.4518
  846. [2012/03/16 08:50:02 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\000021091A0090400000000000F01FEC\12.0.6612
  847. [2010/04/10 01:59:19 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109411090400000000000F01FEC\12.0.4518
  848. [2010/04/09 08:19:53 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109440090400000000000F01FEC\12.0.4518
  849. [2012/03/16 08:49:40 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109440090400000000000F01FEC\12.0.6612
  850. [2010/04/10 01:58:48 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109510090400000000000F01FEC\12.0.4518
  851. [2012/03/16 08:48:09 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109510090400000000000F01FEC\12.0.6612
  852. [2010/01/08 02:36:27 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109511090400000000000F01FEC\12.0.4518
  853. [2010/01/08 02:36:00 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109610090400000000000F01FEC\12.0.4518
  854. [2012/03/16 08:49:19 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109610090400000000000F01FEC\12.0.6612
  855. [2010/04/10 01:59:21 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109711090400000000000F01FEC\12.0.4518
  856. [2010/01/06 14:24:10 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109810090400000000000F01FEC\12.0.4518
  857. [2012/03/16 08:50:56 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109810090400000000000F01FEC\12.0.6612
  858. [2010/04/09 08:23:28 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109910090400000000000F01FEC\12.0.4518
  859. [2012/03/16 08:51:03 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109910090400000000000F01FEC\12.0.6612
  860. [2010/04/10 01:59:04 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109A10090400000000000F01FEC\12.0.4518
  861. [2012/03/16 08:50:38 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109A10090400000000000F01FEC\12.0.6612
  862. [2010/04/10 01:59:16 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109AB0090400000000000F01FEC\12.0.4518
  863. [2012/03/16 08:51:10 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109B10090400000000000F01FEC\12.0.4518
  864. [2012/03/16 08:51:10 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109B10090400000000000F01FEC\12.0.6612
  865. [2010/01/10 01:59:33 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109E60090400000000000F01FEC\12.0.4518
  866. [2012/03/16 08:48:44 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109E60090400000000000F01FEC\12.0.6612
  867. [2010/01/10 02:03:23 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F10090400000000000F01FEC\12.0.4518
  868. [2012/03/16 10:58:40 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F100A0C00000000000F01FEC\12.0.4518
  869. [2012/03/16 10:58:54 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002109F100C0400000000000F01FEC\12.0.4518
  870. [2012/04/13 03:26:10 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002119F20000000000000000F01FEC\12.0.4518
  871. [2012/03/16 10:56:52 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002119F20000000000000000F01FEC\12.0.6612
  872. [2010/01/08 02:34:41 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\000021599B0090400000000000F01FEC\12.0.6012
  873. [2012/03/15 09:40:15 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC\12.0.4518
  874. [2012/03/15 09:40:11 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC\12.0.6612
  875. [2012/02/20 04:02:23 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\00004109500200000000000000F01FEC\14.0.5130
  876. [2012/06/30 11:22:04 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\032440EF5AC97F34B985A55C2AA8F133\15.4.3502
  877. [2011/10/26 10:35:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\05A9B00A0903FFC4C9AD28ADB0DEAA12\4.0.0
  878. [2010/04/08 15:34:41 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\0D756077321A70C3E844C138CE981581\8.0.50727
  879. [2010/12/15 15:40:50 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\1097CC45D40855143B35120FCC1921BA\3.50.9
  880. [2012/06/30 11:19:27 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\11F12B5E3396B0E42AC597363E0CD711\15.4.3538
  881. [2011/11/10 09:38:51 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\1D5E3C0FEDA1E123187686FED06E995A\10.0.40219
  882. [2012/06/30 11:16:48 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\3D04254D3B6B9FF42B3445CE3E1E0066\15.4.3502
  883. [2012/06/30 11:21:45 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4314AE291D01A814191EA5403531A183\15.4.3502
  884. [2012/06/30 11:21:56 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4A4869755DDD3AC4E98AB77E9D95D34B\15.4.3508
  885. [2012/06/30 11:22:36 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\4A9D4F432C248434EB4F5E358C54947E\15.4.3502
  886. [2012/05/12 09:07:31 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\5C1093C35543A0E32A41B090A305076A\4.0.30319
  887. [2010/08/11 23:02:40 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\68AB67CA3301004F7706000000000030\8.0.0
  888. [2010/11/15 01:41:19 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\68AB67CA7DA73301B7449A0400000010\9.4.0
  889. [2011/06/19 09:45:51 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\6E58EC68CABDDFF39B774E7BF9389C90\9.0.30729
  890. [2012/06/30 11:20:50 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\766F6333940964D4896BC447E3BE5C1B\15.4.3502
  891. [2012/06/30 11:22:13 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\775F634D5961F2D4B844CA679CE90020\15.4.3502
  892. [2012/06/30 11:17:11 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\7B292C385A83B0447A137070E0186AF4\15.4.3508
  893. [2012/06/30 11:22:43 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\7F80AB91827CC964A853FBDB6333EB80\15.4.3502
  894. [2011/02/10 00:21:53 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\95F58943F6F84F64A95D352E1724492D\3.0.355
  895. [2011/10/26 10:43:57 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\9C02DE9251E59694299752FB73723AAD\10.5.0
  896. [2012/06/30 11:18:33 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\B6ACDB9A3563B764CA384963D73AFB3E\15.4.3502
  897. [2012/03/15 09:40:18 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\c1c4f01781cc94c4c8fb1542c0981a2a\8.0.61001
  898. [2012/06/30 11:22:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\C42CF3A20CE691545AB2DF4AAEB9D242\15.4.3538
  899. [2011/05/09 02:52:58 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\D20352A90C039D93DBF6126ECE614057\9.0.30729
  900. [2009/09/14 13:48:04 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\D7314F9862C648A4DB8BE2A5B47BE100\1.0.0
  901. [2011/12/14 04:07:50 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\DF97238AB4AC602459530979D47E6645\2.1.5
  902. [2011/11/30 23:47:22 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\E1BDC7909C701F0499270F9F3F2A784E\140.0.215
  903. [2012/06/30 11:17:25 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\E97A59ECCF4EFFF4A857920FB449F22F\15.4.3502
  904. [2012/06/30 11:18:07 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\F132F0B0A6ECD384AA32773B467F9571\15.4.3502
  905. [2012/06/30 11:16:06 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\Managed\F4E3B286A696ED244AC1C470AE61874B\15.4.3502
  906. [2009/09/14 15:32:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\UnManaged\S-1-5-21-1564784712-3930121418-1334069735-500
  907. [2010/09/23 02:47:31 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\UnManaged\S-1-5-21-3900810405-3807897158-2666917641-1000
  908. [2009/09/14 15:32:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\UnManaged\S-1-5-21-1564784712-3930121418-1334069735-500\4BFC27DAFB2CE424D90F7CAB1D3FA011
  909. [2009/09/14 15:32:26 | 000,000,000 | -HSD | M] -- C:\Windows\installer\$PatchCache$\UnManaged\S-1-5-21-1564784712-3930121418-1334069735-500\4BFC27DAFB2CE424D90F7CAB1D3FA011\11.0.0
  910. [2011/11/17 00:38:39 | 000,000,000 | -HSD | M] -- C:\Windows\installer\{2a9387da-432a-b448-c2a4-1174635168f0}\L
  911. [2012/07/03 20:14:39 | 000,000,000 | -HSD | M] -- C:\Windows\installer\{2a9387da-432a-b448-c2a4-1174635168f0}\U
  912.  
  913. [color=#A23BEC]< %systemroot%\system32\config\systemprofile\AppData\Local\*.* >[/color]
  914. [2010/10/07 15:51:00 | 000,111,896 | ---- | M] () -- C:\Windows\system32\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
  915.  
  916. [color=#A23BEC]< %windir%\SysWOW64\config\systemprofile\AppData\Local\*.* >[/color]
  917.  
  918. [color=#A23BEC]< %windir%\ServiceProfiles\LocalService\AppData\Local\Temp\*.* >[/color]
  919.  
  920. [color=#A23BEC]< %windir%\ServiceProfiles\NetworkService\AppData\Local\Temp\*.* >[/color]
  921. [2010/11/24 16:51:48 | 000,000,000 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\FXSSVCDebugLogFile.txt
  922. [2010/11/24 16:51:48 | 000,000,000 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\FXSTIFFDebugLogFile.txt
  923. [2012/06/25 00:05:16 | 000,442,656 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\MpCmdRun.log
  924. [2010/11/24 16:51:49 | 000,000,000 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\T30DebugLogFile.txt
  925.  
  926. [color=#A23BEC]< %windir%\temp\*.* >[/color]
  927. [2012/01/12 03:33:56 | 000,002,474 | ---- | M] () -- C:\Windows\temp\ACLM_GeneratedProxy.cs
  928. [2010/04/15 09:19:53 | 000,702,798 | ---- | M] () -- C:\Windows\temp\cab_1704_2
  929. [2010/04/15 09:19:53 | 000,000,046 | ---- | M] () -- C:\Windows\temp\cab_1704_3
  930. [2010/04/15 09:19:53 | 000,261,340 | ---- | M] () -- C:\Windows\temp\cab_1704_4
  931. [2010/04/15 09:19:43 | 000,000,000 | ---- | M] () -- C:\Windows\temp\cab_1704_5
  932. [2010/04/15 09:19:43 | 000,000,000 | ---- | M] () -- C:\Windows\temp\cab_1704_6
  933. [2010/04/15 09:19:52 | 000,000,000 | ---- | M] () -- C:\Windows\temp\cab_1704_7
  934. [2010/04/15 09:19:52 | 000,000,000 | ---- | M] () -- C:\Windows\temp\cab_1704_8
  935. [2012/07/01 01:00:47 | 000,004,047 | ---- | M] () -- C:\Windows\temp\coinlog.log
  936. [2010/09/18 20:10:57 | 000,502,472 | ---- | M] (McAfee, Inc.) -- C:\Windows\temp\contentDATs.exe
  937. [2011/11/30 22:27:27 | 000,000,417 | ---- | M] () -- C:\Windows\temp\CPSSMasterCatalog.ini
  938. [2010/01/03 11:18:53 | 000,232,070 | ---- | M] () -- C:\Windows\temp\dd_ATL90SP1_KB973924MSI1C69.txt
  939. [2010/01/03 11:18:54 | 000,011,668 | ---- | M] () -- C:\Windows\temp\dd_ATL90SP1_KB973924UI1C69.txt
  940. [2012/06/14 15:18:27 | 000,051,157 | ---- | M] () -- C:\Windows\temp\dd_clwireg.txt
  941. [2010/06/26 18:24:38 | 000,001,125 | ---- | M] () -- C:\Windows\temp\dd_dotNetFx40_Client_x86_decompression_log.txt
  942. [2011/08/13 10:45:24 | 000,001,055 | ---- | M] () -- C:\Windows\temp\dd_NDP40-KB2468871-v2-x86_decompression_log.txt
  943. [2010/06/26 18:24:17 | 000,000,660 | ---- | M] () -- C:\Windows\temp\dd_SetupUtility.txt
  944. [2011/06/19 09:47:35 | 000,443,876 | ---- | M] () -- C:\Windows\temp\dd_vcredistMSI33DB.txt
  945. [2011/05/09 02:53:19 | 000,432,404 | ---- | M] () -- C:\Windows\temp\dd_vcredistMSI746E.txt
  946. [2011/06/19 09:47:42 | 000,211,232 | ---- | M] () -- C:\Windows\temp\dd_vcredistUI33DB.txt
  947. [2011/05/09 02:53:19 | 000,011,682 | ---- | M] () -- C:\Windows\temp\dd_vcredistUI746E.txt
  948. [2011/12/08 08:15:16 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile00.sqm
  949. [2011/12/21 05:03:45 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile01.sqm
  950. [2012/01/24 07:58:15 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile02.sqm
  951. [2012/02/11 21:23:52 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile03.sqm
  952. [2012/03/05 10:17:14 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile04.sqm
  953. [2012/03/27 08:58:02 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile05.sqm
  954. [2012/04/08 09:52:17 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile06.sqm
  955. [2012/05/03 09:31:01 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile07.sqm
  956. [2012/05/23 14:24:03 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile08.sqm
  957. [2012/06/01 11:27:53 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile09.sqm
  958. [2012/06/09 18:01:06 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile10.sqm
  959. [2012/06/25 16:43:42 | 000,000,140 | ---- | M] () -- C:\Windows\temp\fwtsqmfile11.sqm
  960. [2011/06/14 21:54:12 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile12.sqm
  961. [2011/06/27 16:21:47 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile13.sqm
  962. [2011/08/08 09:31:43 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile14.sqm
  963. [2011/08/21 09:51:57 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile15.sqm
  964. [2011/09/04 22:27:23 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile16.sqm
  965. [2011/09/21 03:43:51 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile17.sqm
  966. [2011/10/26 09:05:01 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile18.sqm
  967. [2011/11/07 14:51:48 | 000,000,608 | ---- | M] () -- C:\Windows\temp\fwtsqmfile19.sqm
  968. [2010/01/03 15:33:14 | 000,000,000 | ---- | M] () -- C:\Windows\temp\FXSAPIDebugLogFile.txt
  969. [2010/01/03 15:33:14 | 000,000,000 | ---- | M] () -- C:\Windows\temp\FXSTIFFDebugLogFile.txt
  970. [2010/03/21 22:53:11 | 000,706,560 | ---- | M] () -- C:\Windows\temp\HPActiveCheck.msi
  971. [2010/01/03 05:14:34 | 000,508,416 | ---- | M] () -- C:\Windows\temp\HPAsset.msi
  972. [2011/01/14 19:40:21 | 000,012,360 | ---- | M] () -- C:\Windows\temp\hppldcoi.log
  973. [2009/03/24 18:16:06 | 000,002,742 | ---- | M] () -- C:\Windows\temp\HPSF.exe.config
  974. [2011/01/14 19:19:50 | 000,024,570 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0000.log
  975. [2011/01/15 18:58:18 | 000,018,573 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0001.log
  976. [2011/01/16 14:01:32 | 000,008,540 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0002.log
  977. [2011/01/21 01:49:58 | 000,051,345 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0003.log
  978. [2011/01/21 09:55:19 | 000,078,259 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0004.log
  979. [2011/01/29 17:01:16 | 000,039,724 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0005.log
  980. [2011/02/10 00:28:21 | 000,095,376 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0006.log
  981. [2011/02/11 01:19:57 | 000,012,764 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0007.log
  982. [2011/02/17 13:53:28 | 000,087,849 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0008.log
  983. [2011/02/24 04:19:55 | 000,070,431 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0009.log
  984. [2011/02/26 03:34:50 | 000,024,499 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0010.log
  985. [2011/02/28 03:32:18 | 000,034,052 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0011.log
  986. [2011/02/28 03:35:55 | 000,005,226 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0012.log
  987. [2011/02/28 15:07:46 | 000,022,600 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0013.log
  988. [2011/03/03 00:44:53 | 000,074,191 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0014.log
  989. [2011/03/03 11:35:13 | 000,006,943 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0015.log
  990. [2011/03/03 15:09:18 | 000,004,711 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0016.log
  991. [2011/03/03 20:08:50 | 000,009,918 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0017.log
  992. [2011/03/04 00:37:20 | 000,005,319 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0018.log
  993. [2011/03/06 10:13:50 | 000,041,044 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0019.log
  994. [2011/03/11 00:20:31 | 000,058,999 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0020.log
  995. [2011/03/11 10:49:08 | 000,004,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0021.log
  996. [2011/03/17 09:59:23 | 000,070,891 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0022.log
  997. [2011/03/18 14:51:59 | 000,022,606 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0023.log
  998. [2011/03/18 16:36:16 | 000,013,113 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0024.log
  999. [2011/03/19 12:40:13 | 000,234,639 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0025.log
  1000. [2011/04/13 11:51:26 | 000,025,562 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0026.log
  1001. [2011/04/22 19:56:53 | 000,037,333 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0027.log
  1002. [2011/04/23 18:33:11 | 000,005,781 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0028.log
  1003. [2011/04/23 22:29:09 | 000,004,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0029.log
  1004. [2011/04/24 03:57:15 | 000,004,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0030.log
  1005. [2011/04/24 14:19:45 | 000,005,393 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0031.log
  1006. [2011/04/28 14:08:50 | 000,031,310 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0032.log
  1007. [2011/04/28 18:13:02 | 000,003,149 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0033.log
  1008. [2011/04/29 10:38:23 | 000,008,742 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0034.log
  1009. [2011/05/01 00:28:32 | 000,014,642 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0035.log
  1010. [2011/05/03 15:22:18 | 000,014,199 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0036.log
  1011. [2011/05/03 16:03:15 | 000,044,644 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0037.log
  1012. [2011/05/09 02:54:02 | 000,004,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0038.log
  1013. [2011/05/09 23:03:38 | 000,013,249 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0039.log
  1014. [2011/05/10 12:18:28 | 000,007,327 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0040.log
  1015. [2011/05/10 19:10:59 | 000,004,711 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0041.log
  1016. [2011/05/11 00:30:10 | 000,079,864 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0042.log
  1017. [2011/05/14 09:43:26 | 000,031,260 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0043.log
  1018. [2011/05/16 01:39:25 | 000,004,680 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0044.log
  1019. [2011/05/26 21:44:56 | 000,176,928 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0045.log
  1020. [2011/05/27 01:24:18 | 000,003,372 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0046.log
  1021. [2011/05/27 18:08:41 | 000,024,391 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0047.log
  1022. [2011/05/27 22:51:44 | 000,004,700 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0048.log
  1023. [2011/06/03 00:35:42 | 000,090,171 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0049.log
  1024. [2011/06/07 17:43:04 | 000,082,440 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0050.log
  1025. [2011/06/07 17:46:31 | 000,165,236 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0051.log
  1026. [2011/06/19 10:24:44 | 000,004,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0052.log
  1027. [2011/06/20 15:43:43 | 000,028,191 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0053.log
  1028. [2011/06/27 16:27:21 | 000,081,416 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0054.log
  1029. [2011/06/29 21:02:19 | 000,036,863 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0055.log
  1030. [2011/06/29 21:05:54 | 000,004,052 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0056.log
  1031. [2011/06/29 22:02:39 | 000,000,794 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0057.log
  1032. [2011/06/30 07:11:40 | 000,007,201 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0058.log
  1033. [2011/06/30 10:10:48 | 000,013,187 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0059.log
  1034. [2011/06/30 17:47:39 | 000,080,649 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0060.log
  1035. [2011/07/11 21:04:56 | 000,096,824 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0061.log
  1036. [2011/07/12 07:13:54 | 000,011,890 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0062.log
  1037. [2011/07/13 09:01:38 | 000,015,885 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0063.log
  1038. [2011/07/13 20:45:35 | 000,017,392 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0064.log
  1039. [2011/07/14 03:27:44 | 000,010,881 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0065.log
  1040. [2011/07/14 03:32:01 | 000,065,034 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0066.log
  1041. [2011/07/19 14:39:02 | 000,047,625 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0067.log
  1042. [2011/07/25 20:44:57 | 000,032,195 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0068.log
  1043. [2011/07/26 19:27:17 | 000,014,953 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0069.log
  1044. [2011/07/31 23:38:34 | 000,088,986 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0070.log
  1045. [2011/08/14 03:57:38 | 000,181,471 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0071.log
  1046. [2011/08/25 21:43:12 | 000,205,493 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0072.log
  1047. [2011/09/05 10:57:27 | 000,015,186 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0073.log
  1048. [2011/09/05 12:38:22 | 000,005,186 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0074.log
  1049. [2011/09/08 07:08:41 | 000,029,231 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0075.log
  1050. [2011/09/09 02:53:14 | 000,020,500 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0076.log
  1051. [2011/09/12 11:19:02 | 000,040,439 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0077.log
  1052. [2011/09/14 03:40:42 | 000,023,760 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0078.log
  1053. [2011/09/14 03:44:13 | 000,168,660 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0079.log
  1054. [2011/10/27 17:07:10 | 000,046,995 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0080.log
  1055. [2011/11/08 01:05:42 | 000,045,472 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0081.log
  1056. [2011/11/09 06:54:49 | 000,015,110 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0082.log
  1057. [2011/11/09 08:47:38 | 000,007,842 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0083.log
  1058. [2011/11/10 09:51:35 | 000,012,254 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0084.log
  1059. [2011/11/13 10:37:52 | 000,046,764 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0085.log
  1060. [2011/11/14 12:29:27 | 000,026,538 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0086.log
  1061. [2011/11/15 11:09:03 | 000,013,846 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0087.log
  1062. [2011/11/16 15:45:35 | 000,036,215 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0088.log
  1063. [2011/11/17 08:15:22 | 000,011,683 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0089.log
  1064. [2011/11/17 10:16:55 | 000,057,012 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0090.log
  1065. [2011/11/24 00:20:28 | 000,016,701 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0091.log
  1066. [2011/12/01 01:15:48 | 000,111,705 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0092.log
  1067. [2011/12/01 08:17:38 | 000,178,804 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0093.log
  1068. [2011/12/14 04:50:30 | 000,330,432 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0094.log
  1069. [2012/01/12 04:33:38 | 000,014,749 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0095.log
  1070. [2012/01/12 05:52:44 | 000,004,982 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0096.log
  1071. [2012/01/12 09:35:12 | 000,055,309 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0097.log
  1072. [2012/01/15 23:35:33 | 000,032,080 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0098.log
  1073. [2012/01/17 07:48:31 | 000,018,641 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0099.log
  1074. [2012/01/28 19:54:20 | 000,146,990 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0100.log
  1075. [2012/01/31 00:27:44 | 000,031,826 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0101.log
  1076. [2012/02/04 20:50:34 | 000,094,956 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0102.log
  1077. [2012/02/20 13:07:55 | 000,043,356 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0103.log
  1078. [2012/02/20 13:41:37 | 000,004,988 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0104.log
  1079. [2012/02/21 18:52:14 | 000,013,958 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0105.log
  1080. [2012/02/21 18:58:09 | 000,110,182 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0106.log
  1081. [2012/03/15 10:07:51 | 000,250,111 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0107.log
  1082. [2012/03/17 02:42:31 | 000,031,290 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0108.log
  1083. [2012/03/19 05:47:45 | 000,039,903 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0109.log
  1084. [2012/03/25 19:52:51 | 000,136,285 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0110.log
  1085. [2012/03/29 08:31:07 | 000,096,300 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0111.log
  1086. [2012/03/31 01:27:27 | 000,044,113 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0112.log
  1087. [2012/04/08 10:34:39 | 000,092,868 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0113.log
  1088. [2012/04/13 03:49:00 | 000,068,867 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0114.log
  1089. [2012/04/14 14:51:31 | 000,027,151 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0115.log
  1090. [2012/04/21 12:08:47 | 000,109,094 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0116.log
  1091. [2012/04/22 21:06:31 | 000,036,344 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0117.log
  1092. [2012/04/23 02:01:34 | 000,026,112 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0118.log
  1093. [2012/04/25 21:25:55 | 000,075,155 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0119.log
  1094. [2012/04/25 21:29:41 | 000,011,524 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0120.log
  1095. [2012/04/26 08:46:54 | 000,125,045 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0121.log
  1096. [2012/05/06 01:18:54 | 000,004,988 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0122.log
  1097. [2012/05/06 10:30:31 | 000,006,929 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0123.log
  1098. [2012/05/10 03:35:30 | 000,053,720 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0124.log
  1099. [2012/05/12 10:05:20 | 000,042,885 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0125.log
  1100. [2012/05/15 16:02:57 | 000,032,981 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0126.log
  1101. [2012/05/15 19:32:01 | 000,012,150 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0127.log
  1102. [2012/05/16 11:40:27 | 000,091,092 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0128.log
  1103. [2012/05/24 23:03:14 | 000,025,388 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0129.log
  1104. [2012/06/02 14:40:44 | 000,110,177 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0130.log
  1105. [2012/06/14 15:26:22 | 000,186,979 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0131.log
  1106. [2012/06/20 21:31:53 | 000,167,310 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0132.log
  1107. [2012/06/26 08:54:01 | 000,166,082 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0133.log
  1108. [2012/06/28 13:26:11 | 000,067,803 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0134.log
  1109. [2012/06/28 13:32:10 | 000,053,495 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0135.log
  1110. [2012/06/30 16:13:38 | 000,020,691 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0136.log
  1111. [2012/07/03 17:52:29 | 000,065,852 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0137.log
  1112. [2012/07/03 20:17:16 | 000,033,304 | ---- | M] () -- C:\Windows\temp\HPSLPSVC0138.log
  1113. [2011/04/15 11:57:39 | 004,205,376 | ---- | M] () -- C:\Windows\temp\KB2446708_20110415_114956204-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1114. [2011/04/15 11:57:44 | 000,056,536 | ---- | M] () -- C:\Windows\temp\KB2446708_20110415_114956204.html
  1115. [2011/08/13 10:45:18 | 005,887,012 | ---- | M] () -- C:\Windows\temp\KB2468871v2_20110813_103420371-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1116. [2011/08/13 10:45:23 | 000,055,268 | ---- | M] () -- C:\Windows\temp\KB2468871v2_20110813_103420371.html
  1117. [2011/06/19 09:42:04 | 004,909,550 | ---- | M] () -- C:\Windows\temp\KB2478663_20110619_093528457-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1118. [2011/06/19 09:42:19 | 000,055,258 | ---- | M] () -- C:\Windows\temp\KB2478663_20110619_093528457.html
  1119. [2011/06/19 09:31:52 | 004,636,188 | ---- | M] () -- C:\Windows\temp\KB2518870_20110619_092058459-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1120. [2011/06/19 09:32:06 | 000,055,290 | ---- | M] () -- C:\Windows\temp\KB2518870_20110619_092058459.html
  1121. [2011/08/13 10:54:34 | 006,285,078 | ---- | M] () -- C:\Windows\temp\KB2533523_20110813_104651163-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1122. [2011/08/13 10:54:38 | 000,056,430 | ---- | M] () -- C:\Windows\temp\KB2533523_20110813_104651163.html
  1123. [2011/08/13 10:19:02 | 005,231,502 | ---- | M] () -- C:\Windows\temp\KB2539636_20110813_101042737-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1124. [2011/08/13 10:19:06 | 000,055,542 | ---- | M] () -- C:\Windows\temp\KB2539636_20110813_101042737.html
  1125. [2011/10/27 10:40:48 | 006,638,870 | ---- | M] () -- C:\Windows\temp\KB2572078_20111027_102259119-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1126. [2011/10/27 10:40:58 | 000,055,306 | ---- | M] () -- C:\Windows\temp\KB2572078_20111027_102259119.html
  1127. [2012/02/27 04:14:04 | 007,860,168 | ---- | M] () -- C:\Windows\temp\KB2600217_20120227_030337335-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1128. [2012/02/27 04:14:04 | 000,060,172 | ---- | M] () -- C:\Windows\temp\KB2600217_20120227_030337335.html
  1129. [2012/05/12 09:14:11 | 011,264,536 | ---- | M] () -- C:\Windows\temp\KB2604121_20120512_090506218-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1130. [2012/05/12 09:14:11 | 000,059,154 | ---- | M] () -- C:\Windows\temp\KB2604121_20120512_090506218.html
  1131. [2012/01/06 04:07:32 | 007,024,200 | ---- | M] () -- C:\Windows\temp\KB2656351_20120106_030246152-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1132. [2012/01/06 04:07:32 | 000,058,240 | ---- | M] () -- C:\Windows\temp\KB2656351_20120106_030246152.html
  1133. [2012/06/14 15:10:17 | 012,365,954 | ---- | M] () -- C:\Windows\temp\KB2656368v2_20120614_150412197-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1134. [2012/06/14 15:10:17 | 000,058,754 | ---- | M] () -- C:\Windows\temp\KB2656368v2_20120614_150412197.html
  1135. [2012/04/13 03:21:12 | 010,549,648 | ---- | M] () -- C:\Windows\temp\KB2656368_20120413_031316258-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1136. [2012/04/13 03:21:12 | 000,058,554 | ---- | M] () -- C:\Windows\temp\KB2656368_20120413_031316258.html
  1137. [2012/05/12 09:32:48 | 011,746,802 | ---- | M] () -- C:\Windows\temp\KB2656405_20120512_092517777-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1138. [2012/05/12 09:32:48 | 000,059,058 | ---- | M] () -- C:\Windows\temp\KB2656405_20120512_092517777.html
  1139. [2012/06/14 15:23:02 | 012,932,786 | ---- | M] () -- C:\Windows\temp\KB2686827_20120614_151838099-Microsoft .NET Framework 4 Client Profile-MSP0.txt
  1140. [2012/06/14 15:23:02 | 000,059,126 | ---- | M] () -- C:\Windows\temp\KB2686827_20120614_151838099.html
  1141. [2010/06/26 18:24:16 | 003,606,256 | ---- | M] () -- C:\Windows\temp\Microsoft .NET Framework 4 Client Profile Setup_20100626_181423837-MSI_netfx_Core_x86.msi.txt
  1142. [2010/06/26 18:24:37 | 000,580,402 | ---- | M] () -- C:\Windows\temp\Microsoft .NET Framework 4 Client Profile Setup_20100626_181423837.html
  1143. [2011/11/10 09:38:53 | 000,360,410 | ---- | M] () -- C:\Windows\temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20111110_083756823-Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219-MSP0.txt
  1144. [2011/11/10 09:38:55 | 000,078,578 | ---- | M] () -- C:\Windows\temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20111110_083756823.html
  1145. [2012/06/25 00:01:49 | 000,457,614 | ---- | M] () -- C:\Windows\temp\MpCmdRun.log
  1146. [2012/06/22 08:47:20 | 000,893,342 | ---- | M] () -- C:\Windows\temp\MpSigStub.log
  1147. [2010/02/16 21:28:21 | 000,159,942 | ---- | M] () -- C:\Windows\temp\MSIb8103.LOG
  1148. [2012/05/12 08:57:55 | 000,002,542 | ---- | M] () -- C:\Windows\temp\Silverlight0.log
  1149. [2012/05/12 08:57:55 | 003,661,040 | ---- | M] () -- C:\Windows\temp\SilverlightMSI.log
  1150. [2011/10/02 22:09:12 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000000136E02A1F4EE4D351
  1151. [2010/05/25 09:44:51 | 000,524,288 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Windows\temp\TMP00000001FCB21FCA69FA5D79
  1152. [2010/06/04 01:58:14 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP000000028E974F65E617906D
  1153. [2011/04/24 14:19:36 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000000028F2C6A956B10C853
  1154. [2010/05/08 01:50:14 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP000000031E410EF900CFCFC0
  1155. [2010/01/16 00:56:13 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000005482662A18813A505
  1156. [2010/08/20 19:26:25 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000007B9E1FE22433DE2E5
  1157. [2010/05/21 12:50:31 | 000,524,288 | ---- | M] (Avira GmbH) -- C:\Windows\temp\TMP000000098BD8FD84FECFE036
  1158. [2010/04/15 10:54:45 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000009F3BF11623914B7DE
  1159. [2012/05/06 10:30:13 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000000ADF024A9C8BD82D72
  1160. [2010/04/30 09:49:12 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000000AF19DA55A047548F8
  1161. [2010/05/20 13:41:33 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000000C2ED0B0E298CEE096
  1162. [2010/01/13 21:26:24 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000000DB6F15D9CE33CC416
  1163. [2010/04/27 17:54:42 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000000F375A603A5D31A30A
  1164. [2010/06/01 11:45:43 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000000FB464CF10369671A9
  1165. [2010/04/30 17:22:23 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP000000161AEECF4F936B8657
  1166. [2010/04/25 11:01:31 | 000,524,288 | ---- | M] (Avira GmbH) -- C:\Windows\temp\TMP0000001783A9882C4286F395
  1167. [2010/05/14 22:21:05 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001871DD277A3149F1CA
  1168. [2010/06/28 22:44:10 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001A7FADCB85ABC96839
  1169. [2010/06/03 14:24:13 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001A85FBC6909B2AF6AB
  1170. [2010/06/11 14:23:09 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001AA867920BF06AC5F9
  1171. [2010/08/16 22:25:58 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001CBDCA8B7F2904C13D
  1172. [2010/04/15 14:10:38 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000001EE2419BF033B09906
  1173. [2010/04/13 23:44:05 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00000022ECBF7AF05F36A17E
  1174. [2010/04/11 10:44:54 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00000025BD2B922C56EF1272
  1175. [2010/05/10 12:29:50 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000002731038AAA3913A63A
  1176. [2011/04/29 10:38:17 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000000283A6ACC5CE63D0218
  1177. [2010/05/05 13:36:36 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000002A10206EF0EAF9FAF3
  1178. [2010/08/16 20:30:31 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000002C0B30B6B17861D867
  1179. [2010/04/10 15:49:43 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000002CD00B2EAEEEF5384D
  1180. [2011/05/09 23:03:23 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000002D45A2D3F3FA9955FC
  1181. [2010/08/02 12:01:32 | 000,524,288 | ---- | M] (Avira GmbH) -- C:\Windows\temp\TMP00000031D71500AE31AC5220
  1182. [2010/05/15 06:15:39 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP000000346B8C0E25FC4C8AFB
  1183. [2010/02/07 00:29:53 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000035EE079A72C580318A
  1184. [2010/11/30 15:07:38 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00000039818753C6753035B2
  1185. [2010/09/23 01:59:52 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000047CEA9E1E3A5D1642F
  1186. [2010/01/05 01:53:12 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000004DCEE15299CA59C52A
  1187. [2012/02/17 19:55:30 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000000528E61E2D922CBBA0F
  1188. [2010/06/18 01:25:28 | 000,524,288 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\temp\TMP00000055E4BF25D280BD75DD
  1189. [2010/01/26 00:14:14 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000007239E02652E66239D6
  1190. [2012/05/24 00:06:49 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000009BC4C479A446189F57
  1191. [2011/11/17 08:15:11 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000000EAF490B14954501F4A
  1192. [2010/01/04 07:21:46 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP000000F927ADC1A7B0321AAE
  1193. [2010/08/11 17:44:25 | 000,524,288 | ---- | M] (Avira GmbH) -- C:\Windows\temp\TMP000000FC002C76FE5367333B
  1194. [2012/04/14 14:50:58 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000010CAA36919B1C0EF0AE
  1195. [2010/02/16 22:48:24 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000011CA95E09615523F7BE
  1196. [2011/07/12 07:13:30 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000015C3BEAD65C9FC651E8
  1197. [2011/06/19 10:02:46 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000001B1CFE8E8B148205F45
  1198. [2010/01/10 02:00:51 | 000,524,288 | ---- | M] (Apple Inc.) -- C:\Windows\temp\TMP00000200DC8E964C16B7A59E
  1199. [2011/11/09 08:47:02 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000024EE24B1A1081A25B42
  1200. [2010/01/10 02:03:08 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000025837DA4E61F5D79E4B
  1201. [2010/01/03 05:32:36 | 000,524,288 | ---- | M] (Avira GmbH) -- C:\Windows\temp\TMP000002660E4D69B578153845
  1202. [2011/06/20 15:43:25 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000026AA0D7477030634DA0
  1203. [2011/09/05 10:57:08 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000027889D3288921FDDD0C
  1204. [2012/03/29 08:29:17 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000002B45481245C66F8477A
  1205. [2011/10/02 22:12:34 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00000333AEC3D3C49B185934
  1206. [2011/10/02 22:13:05 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000003475A69E3B445833F80
  1207. [2011/09/08 07:08:30 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000003F0EAF8EA41A81FAF0B
  1208. [2011/11/08 01:05:25 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP0000045BEF32D4967C430A45
  1209. [2012/02/27 04:33:29 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00000C133D6E3CFDF22D659D
  1210. [2010/01/04 09:08:40 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP00000ED572687125F40B18D8
  1211. [2010/07/21 14:18:55 | 000,524,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\temp\TMP0000133B5BE25213217A96DE
  1212. [2010/07/15 13:49:39 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP000013C5D1CEB4AF556A84C7
  1213. [2010/12/14 16:19:21 | 000,524,288 | ---- | M] () -- C:\Windows\temp\TMP00001D14F1D13008D71A5FCD
  1214. [2012/04/03 12:06:16 | 000,015,819 | ---- | M] () -- C:\Windows\temp\USBInstallInfo.log
  1215. [2010/09/30 12:05:41 | 000,002,342 | ---- | M] () -- C:\Windows\temp\WER9F62.tmp.WERInternalMetadata.xml
  1216. [2012/04/25 23:38:19 | 000,005,948 | ---- | M] () -- C:\Windows\temp\WERC6C9.tmp.appcompat.txt
  1217. [2012/04/25 23:38:19 | 000,003,228 | ---- | M] () -- C:\Windows\temp\WERCDEC.tmp.WERInternalMetadata.xml
  1218. [2012/04/25 23:38:19 | 000,000,000 | ---- | M] () -- C:\Windows\temp\WERCE0C.tmp.hdmp
  1219. [5 C:\Windows\temp\*.tmp files -> C:\Windows\temp\*.tmp -> ]
  1220.  
  1221. [color=#A23BEC]< %windir%\*. >[/color]
  1222. [2009/07/13 23:52:31 | 000,000,000 | ---D | M] -- C:\Windows\addins
  1223. [2009/07/13 21:37:05 | 000,000,000 | ---D | M] -- C:\Windows\AppCompat
  1224. [2012/02/20 13:36:30 | 000,000,000 | ---D | M] -- C:\Windows\AppPatch
  1225. [2012/06/14 21:20:39 | 000,000,000 | R-SD | M] -- C:\Windows\assembly
  1226. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\Boot
  1227. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\Branding
  1228. [2009/07/13 23:52:31 | 000,000,000 | ---D | M] -- C:\Windows\Cursors
  1229. [2011/03/10 08:47:16 | 000,000,000 | ---D | M] -- C:\Windows\debug
  1230. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\diagnostics
  1231. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\DigitalLocker
  1232. [2010/09/06 23:07:13 | 000,000,000 | ---D | M] -- C:\Windows\Downloaded Program Files
  1233. [2012/06/30 11:22:35 | 000,000,000 | ---D | M] -- C:\Windows\en
  1234. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\en-US
  1235. [2012/02/20 13:36:32 | 000,000,000 | R-SD | M] -- C:\Windows\Fonts
  1236. [2009/07/13 21:37:06 | 000,000,000 | ---D | M] -- C:\Windows\Globalization
  1237. [2012/01/12 05:30:05 | 000,000,000 | ---D | M] -- C:\Windows\Help
  1238. [2010/09/23 02:42:16 | 000,000,000 | ---D | M] -- C:\Windows\hr
  1239. [2010/09/23 02:42:17 | 000,000,000 | ---D | M] -- C:\Windows\hu
  1240. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\IME
  1241. [2012/06/14 15:20:51 | 000,000,000 | ---D | M] -- C:\Windows\inf
  1242. [2012/06/30 11:23:19 | 000,000,000 | -HSD | M] -- C:\Windows\Installer
  1243. [2009/07/13 23:52:31 | 000,000,000 | ---D | M] -- C:\Windows\L2Schemas
  1244. [2009/07/13 21:03:55 | 000,000,000 | ---D | M] -- C:\Windows\LiveKernelReports
  1245. [2012/06/30 11:11:48 | 000,000,000 | ---D | M] -- C:\Windows\Logs
  1246. [2009/07/13 23:52:32 | 000,000,000 | R-SD | M] -- C:\Windows\Media
  1247. [2012/06/14 21:20:40 | 000,000,000 | ---D | M] -- C:\Windows\Microsoft.NET
  1248. [2012/05/24 00:26:16 | 000,000,000 | ---D | M] -- C:\Windows\Minidump
  1249. [2012/04/03 12:07:43 | 000,000,000 | ---D | M] -- C:\Windows\ModemLogs
  1250. [2009/07/13 23:52:32 | 000,000,000 | ---D | M] -- C:\Windows\Offline Web Pages
  1251. [2010/01/01 23:56:07 | 000,000,000 | ---D | M] -- C:\Windows\Panther
  1252. [2009/09/14 13:46:17 | 000,000,000 | ---D | M] -- C:\Windows\PCHEALTH
  1253. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\Performance
  1254. [2009/07/13 21:37:07 | 000,000,000 | ---D | M] -- C:\Windows\PLA
  1255. [2012/02/27 04:31:28 | 000,000,000 | ---D | M] -- C:\Windows\PolicyDefinitions
  1256. [2012/07/04 20:16:43 | 000,000,000 | ---D | M] -- C:\Windows\Prefetch
  1257. [2009/07/13 21:37:07 | 000,000,000 | ---D | M] -- C:\Windows\Registration
  1258. [2012/06/28 18:09:27 | 000,000,000 | ---D | M] -- C:\Windows\rescache
  1259. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\Resources
  1260. [2009/07/13 21:05:02 | 000,000,000 | ---D | M] -- C:\Windows\SchCache
  1261. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\schemas
  1262. [2009/07/13 21:37:07 | 000,000,000 | ---D | M] -- C:\Windows\security
  1263. [2009/07/13 23:34:14 | 000,000,000 | ---D | M] -- C:\Windows\ServiceProfiles
  1264. [2012/02/20 13:38:15 | 000,000,000 | ---D | M] -- C:\Windows\servicing
  1265. [2009/09/14 14:31:38 | 000,000,000 | ---D | M] -- C:\Windows\Setup
  1266. [2010/04/08 15:32:07 | 000,000,000 | ---D | M] -- C:\Windows\SHELLNEW
  1267. [2010/01/02 13:13:35 | 000,000,000 | ---D | M] -- C:\Windows\SoftwareDistribution
  1268. [2009/07/13 23:56:47 | 000,000,000 | ---D | M] -- C:\Windows\Speech
  1269. [2010/09/23 02:42:17 | 000,000,000 | ---D | M] -- C:\Windows\sr-SP-Latn
  1270. [2009/07/13 23:52:31 | 000,000,000 | ---D | M] -- C:\Windows\system
  1271. [2012/06/30 11:19:27 | 000,000,000 | ---D | M] -- C:\Windows\System32
  1272. [2009/07/13 23:46:36 | 000,000,000 | ---D | M] -- C:\Windows\TAPI
  1273. [2012/03/27 16:43:07 | 000,000,000 | ---D | M] -- C:\Windows\Tasks
  1274. [2012/07/04 20:31:53 | 000,000,000 | ---D | M] -- C:\Windows\Temp
  1275. [2012/07/03 20:15:20 | 000,000,000 | ---D | M] -- C:\Windows\tracing
  1276. [2010/05/22 14:03:03 | 000,000,000 | ---D | M] -- C:\Windows\twain_32
  1277. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\Vss
  1278. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\Web
  1279. [2010/02/16 21:30:20 | 000,000,000 | ---D | M] -- C:\Windows\WindowsMobile
  1280. [2012/06/30 11:33:06 | 000,000,000 | ---D | M] -- C:\Windows\winsxs
  1281.  
  1282. [color=#A23BEC]< %windir%\system32\*. >[/color]
  1283. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\0409
  1284. [2009/09/14 15:32:22 | 000,000,000 | ---D | M] -- C:\Windows\system32\Adobe
  1285. [2012/02/20 13:37:51 | 000,000,000 | ---D | M] -- C:\Windows\system32\AdvancedInstallers
  1286. [2010/07/07 14:15:00 | 000,000,000 | ---D | M] -- C:\Windows\system32\ar-SA
  1287. [2009/12/09 06:09:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\Atheros_L1e
  1288. [2010/07/07 14:15:00 | 000,000,000 | ---D | M] -- C:\Windows\system32\bg-BG
  1289. [2012/02/20 13:36:12 | 000,000,000 | ---D | M] -- C:\Windows\system32\Boot
  1290. [2012/06/21 11:23:12 | 000,000,000 | ---D | M] -- C:\Windows\system32\catroot
  1291. [2012/06/21 11:22:42 | 000,000,000 | ---D | M] -- C:\Windows\system32\catroot2
  1292. [2009/07/24 11:14:50 | 000,000,000 | ---D | M] -- C:\Windows\system32\CodeIntegrity
  1293. [2009/07/13 23:56:47 | 000,000,000 | ---D | M] -- C:\Windows\system32\com
  1294. [2012/07/03 06:53:10 | 000,000,000 | ---D | M] -- C:\Windows\system32\config
  1295. [2012/02/20 13:37:51 | 000,000,000 | ---D | M] -- C:\Windows\system32\cs-CZ
  1296. [2012/02/20 13:38:00 | 000,000,000 | ---D | M] -- C:\Windows\system32\da-DK
  1297. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\de-DE
  1298. [2012/02/20 13:37:44 | 000,000,000 | ---D | M] -- C:\Windows\system32\Dism
  1299. [2012/06/14 20:27:52 | 000,000,000 | ---D | M] -- C:\Windows\system32\drivers
  1300. [2012/04/03 12:06:14 | 000,000,000 | ---D | M] -- C:\Windows\system32\DriverStore
  1301. [2010/12/13 20:31:30 | 000,000,000 | ---D | M] -- C:\Windows\system32\DRVSTORE
  1302. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\el-GR
  1303. [2012/02/20 13:37:51 | 000,000,000 | ---D | M] -- C:\Windows\system32\en
  1304. [2012/06/26 08:54:53 | 000,000,000 | ---D | M] -- C:\Windows\system32\en-US
  1305. [2012/02/20 13:37:50 | 000,000,000 | ---D | M] -- C:\Windows\system32\es-ES
  1306. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\et-EE
  1307. [2012/02/19 03:48:10 | 000,000,000 | ---D | M] -- C:\Windows\system32\EventProviders
  1308. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\fi-FI
  1309. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\fr-FR
  1310. [2012/02/17 20:09:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\FxsTmp
  1311. [2009/07/13 21:03:57 | 000,000,000 | ---D | M] -- C:\Windows\system32\GroupPolicy
  1312. [2009/07/13 21:03:57 | 000,000,000 | ---D | M] -- C:\Windows\system32\GroupPolicyUsers
  1313. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\he-IL
  1314. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\hr-HR
  1315. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\hu-HU
  1316. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\ias
  1317. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\icsxml
  1318. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\IME
  1319. [2009/07/13 21:05:45 | 000,000,000 | ---D | M] -- C:\Windows\system32\inetsrv
  1320. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\it-IT
  1321. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\ja-JP
  1322. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\ko-KR
  1323. [2010/04/05 07:19:43 | 000,000,000 | ---D | M] -- C:\Windows\system32\LogFiles
  1324. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\lt-LT
  1325. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\lv-LV
  1326. [2009/09/14 15:32:22 | 000,000,000 | ---D | M] -- C:\Windows\system32\Macromed
  1327. [2012/02/20 13:37:51 | 000,000,000 | ---D | M] -- C:\Windows\system32\manifeststore
  1328. [2009/07/13 23:34:06 | 000,000,000 | --SD | M] -- C:\Windows\system32\Microsoft
  1329. [2012/06/14 20:27:52 | 000,000,000 | ---D | M] -- C:\Windows\system32\migration
  1330. [2012/02/20 13:37:44 | 000,000,000 | ---D | M] -- C:\Windows\system32\migwiz
  1331. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\Msdtc
  1332. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\MUI
  1333. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\nb-NO
  1334. [2012/06/28 13:50:54 | 000,000,000 | ---D | M] -- C:\Windows\system32\NDF
  1335. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\NetworkList
  1336. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\nl-NL
  1337. [2012/02/20 13:37:56 | 000,000,000 | ---D | M] -- C:\Windows\system32\oobe
  1338. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\pl-PL
  1339. [2009/07/13 23:56:47 | 000,000,000 | ---D | M] -- C:\Windows\system32\Printing_Admin_Scripts
  1340. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\pt-BR
  1341. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\pt-PT
  1342. [2009/07/13 21:37:08 | 000,000,000 | ---D | M] -- C:\Windows\system32\ras
  1343. [2010/01/02 00:02:17 | 000,000,000 | ---D | M] -- C:\Windows\system32\Recovery
  1344. [2010/01/02 00:02:29 | 000,000,000 | ---D | M] -- C:\Windows\system32\restore
  1345. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\ro-RO
  1346. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\ru-RU
  1347. [2009/12/09 06:11:37 | 000,000,000 | ---D | M] -- C:\Windows\system32\sda
  1348. [2012/02/20 13:37:51 | 000,000,000 | ---D | M] -- C:\Windows\system32\Setup
  1349. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\sk-SK
  1350. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\sl-SI
  1351. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\slmgr
  1352. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\system32\SMI
  1353. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\system32\Speech
  1354. [2009/07/13 23:41:18 | 000,000,000 | ---D | M] -- C:\Windows\system32\spool
  1355. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\system32\spp
  1356. [2012/02/20 13:37:50 | 000,000,000 | ---D | M] -- C:\Windows\system32\sppui
  1357. [2012/02/19 03:50:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\SPReview
  1358. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\system32\sr-Latn-CS
  1359. [2009/12/09 06:16:31 | 000,000,000 | ---D | M] -- C:\Windows\system32\SRSLabs
  1360. [2012/04/03 12:06:16 | 000,000,000 | ---D | M] -- C:\Windows\system32\SupportAppXL
  1361. [2010/07/07 14:15:01 | 000,000,000 | ---D | M] -- C:\Windows\system32\sv-SE
  1362. [2012/02/20 13:37:54 | 000,000,000 | ---D | M] -- C:\Windows\system32\sysprep
  1363. [2012/05/10 23:51:53 | 000,000,000 | ---D | M] -- C:\Windows\system32\Tasks
  1364. [2010/07/07 14:15:02 | 000,000,000 | ---D | M] -- C:\Windows\system32\th-TH
  1365. [2010/07/07 14:15:02 | 000,000,000 | ---D | M] -- C:\Windows\system32\tr-TR
  1366. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\system32\uk-UA
  1367. [2012/02/20 13:37:47 | 000,000,000 | ---D | M] -- C:\Windows\system32\wbem
  1368. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\WCN
  1369. [2012/04/21 12:13:22 | 000,000,000 | ---D | M] -- C:\Windows\system32\wdi
  1370. [2009/07/13 23:54:47 | 000,000,000 | ---D | M] -- C:\Windows\system32\wfp
  1371. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\system32\WinBioDatabase
  1372. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\WinBioPlugIns
  1373. [2009/07/13 23:52:30 | 000,000,000 | ---D | M] -- C:\Windows\system32\WindowsPowerShell
  1374. [2009/07/13 21:37:09 | 000,000,000 | ---D | M] -- C:\Windows\system32\winevt
  1375. [2009/07/13 23:56:48 | 000,000,000 | ---D | M] -- C:\Windows\system32\winrm
  1376. [2010/08/13 18:12:56 | 000,000,000 | ---D | M] -- C:\Windows\system32\x64
  1377. [2010/07/07 14:15:02 | 000,000,000 | ---D | M] -- C:\Windows\system32\zh-CN
  1378. [2010/07/07 14:15:02 | 000,000,000 | ---D | M] -- C:\Windows\system32\zh-HK
  1379. [2010/07/07 14:15:02 | 000,000,000 | ---D | M] -- C:\Windows\system32\zh-TW
  1380.  
  1381. [color=#A23BEC]< %windir%\sysnative\*. >[/color]
  1382.  
  1383. [color=#A23BEC]< %Temp%\smtmp\1\*.* >[/color]
  1384.  
  1385. [color=#A23BEC]< %Temp%\smtmp\2\*.* >[/color]
  1386.  
  1387. [color=#A23BEC]< %Temp%\smtmp\3\*.* >[/color]
  1388.  
  1389. [color=#A23BEC]< %Temp%\smtmp\4\*.* >[/color]
  1390.  
  1391. [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
  1392.  
  1393. [color=#A23BEC]< %systemroot%\syswow64\*.dll /lockedfiles >[/color]
  1394.  
  1395. [color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]
  1396.  
  1397. [color=#A23BEC]< %systemroot%\system32\drivers\*.sys /90 >[/color]
  1398. [2012/05/09 22:35:28 | 000,083,392 | ---- | M] (Avira GmbH) -- C:\Windows\system32\drivers\avgntflt.sys
  1399. [2012/05/09 22:35:28 | 000,137,928 | ---- | M] (Avira GmbH) -- C:\Windows\system32\drivers\avipbb.sys
  1400. [2012/04/27 22:17:07 | 000,183,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drivers\rdpwd.sys
  1401.  
  1402. [color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]
  1403.  
  1404. [color=#A23BEC]< %systemroot%\syswow64\drivers\*.sys /90 >[/color]
  1405.  
  1406. [color=#A23BEC]< %systemroot%\syswow64\drivers\*.sys /lockedfiles >[/color]
  1407.  
  1408. [color=#A23BEC]< %systemroot%\*. /rp /s >[/color]
  1409.  
  1410. [color=#A23BEC]< %systemroot%\assembly\tmp\*.* /S /MD5 >[/color]
  1411.  
  1412. [color=#A23BEC]< %systemroot%\assembly\temp\*.* /S /MD5 >[/color]
  1413.  
  1414. [color=#A23BEC]< %systemroot%\assembly\GAC\*.* /S /MD5 >[/color]
  1415. [2010/01/05 16:31:36 | 000,110,592 | ---- | M] () MD5=7ECB661F50F34A941A44DAC7241F7D08 -- C:\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
  1416. [2010/01/05 16:32:53 | 000,000,196 | ---- | M] () MD5=44300D5320DA9FE1A79F85D3CC8369AB -- C:\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1417. [2010/04/08 15:33:12 | 000,065,536 | ---- | M] () MD5=BA073EDDE13179DA2DEFF264C2A272AB -- C:\Windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
  1418. [2010/04/08 15:40:08 | 000,000,195 | ---- | M] () MD5=19B3B194049ED86FA5D9F6EB31556E80 -- C:\Windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\__AssemblyInfo__.ini
  1419. [2010/04/08 15:33:23 | 000,245,760 | ---- | M] () MD5=FE221DB7B22B28F513BEBC2BE699D6FE -- C:\Windows\assembly\GAC\EnvDTE\8.0.0.0__b03f5f7f11d50a3a\envdte.dll
  1420. [2010/04/08 15:40:18 | 000,000,194 | ---- | M] () MD5=ED14A431D3EBD68B33D1C8A147A6B9F0 -- C:\Windows\assembly\GAC\EnvDTE\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1421. [2010/04/08 15:33:22 | 000,135,168 | ---- | M] () MD5=DCA17D268FCAC6DCC667FD8EE77932B2 -- C:\Windows\assembly\GAC\EnvDTE80\8.0.0.0__b03f5f7f11d50a3a\envdte80.dll
  1422. [2010/04/08 15:40:18 | 000,000,196 | ---- | M] () MD5=14928DF01EE9E7F5E5BB93D0B2A21FB8 -- C:\Windows\assembly\GAC\EnvDTE80\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1423. [2010/01/05 16:31:36 | 000,004,608 | ---- | M] () MD5=74C8987F1B2549E1DF3EB3874B68ECAC -- C:\Windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
  1424. [2010/01/05 16:32:51 | 000,000,204 | ---- | M] () MD5=B020031BAAF51236A37136B9198E0ECC -- C:\Windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1425. [2010/01/05 16:31:35 | 001,215,328 | ---- | M] () MD5=11CD947E77F4B91E61EFDCF7DD1A8766 -- C:\Windows\assembly\GAC\IACore\1.7.6223.0__31bf3856ad364e35\IACore.dll
  1426. [2010/01/05 16:32:59 | 000,000,197 | ---- | M] () MD5=518608D6F97FAB45E5D610E3793EF228 -- C:\Windows\assembly\GAC\IACore\1.7.6223.0__31bf3856ad364e35\__AssemblyInfo__.ini
  1427. [2010/01/05 16:31:35 | 000,082,784 | ---- | M] () MD5=523E4CC118AD2751A6A6C0EA3CC08F70 -- C:\Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
  1428. [2010/01/05 16:32:59 | 000,000,199 | ---- | M] () MD5=3689B8AC7230590BB996DD400FA24139 -- C:\Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\__AssemblyInfo__.ini
  1429. [2010/04/08 15:32:56 | 000,031,560 | ---- | M] () MD5=038334CD1EFE7B2CB5684B09AF39F666 -- C:\Windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\IPDMCTRL.DLL
  1430. [2010/04/08 15:40:22 | 000,000,197 | ---- | M] () MD5=D4A0EA981874B9885745A2F6E62C273A -- C:\Windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1431. [2009/07/13 23:42:34 | 000,356,352 | ---- | M] () MD5=DD2EB5E64619613C4C108CFB192F4950 -- C:\Windows\assembly\GAC\Microsoft.Ink\1.0.2201.0__31bf3856ad364e35\Microsoft.Ink.dll
  1432. [2009/07/13 23:42:34 | 000,000,325 | ---- | M] () MD5=3A74C27634435F509DC024FEEBE670E5 -- C:\Windows\assembly\GAC\Microsoft.Ink\1.0.2201.0__31bf3856ad364e35\__AssemblyInfo__.ini
  1433. [2009/07/13 23:42:34 | 000,516,096 | ---- | M] () MD5=A02EE61542CAAE25F8A44C9428D30247 -- C:\Windows\assembly\GAC\Microsoft.Ink\1.7.2600.2180__31bf3856ad364e35\Microsoft.Ink.dll
  1434. [2009/07/13 23:42:34 | 000,000,328 | ---- | M] () MD5=FAF707724A740277714E33A65F4995BF -- C:\Windows\assembly\GAC\Microsoft.Ink\1.7.2600.2180__31bf3856ad364e35\__AssemblyInfo__.ini
  1435. [2010/01/05 16:31:36 | 008,007,680 | ---- | M] () MD5=5440EE9CD44616D60CDE57EBDB286E95 -- C:\Windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
  1436. [2010/01/05 16:32:53 | 000,000,207 | ---- | M] () MD5=1FF29DC2A2197D5984E5D418C904D3DF -- C:\Windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1437. [2010/04/08 15:32:57 | 000,016,712 | ---- | M] () MD5=8CB3CF3CDD7E41FAE6D0CBF94F00DEF5 -- C:\Windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Permission.dll
  1438. [2010/04/08 15:40:22 | 000,000,225 | ---- | M] () MD5=0C4DC2E9F3A0B42477BA5BFCA042ACF7 -- C:\Windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1439. [2010/01/05 16:31:02 | 000,080,696 | ---- | M] () MD5=54582B7054EAD1EFBF9F0A8218B61C4B -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
  1440. [2010/01/05 16:33:00 | 000,000,224 | ---- | M] () MD5=553A1D17C8B2C73D599EC156ACA6CB7D -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1441. [2010/04/08 15:32:03 | 001,612,592 | ---- | M] () MD5=F653D1F20A2EC194EAEC6E59435C5C7B -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
  1442. [2010/04/08 15:40:08 | 000,000,220 | ---- | M] () MD5=BD77A7B56575BAF85941BF1AB5589890 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1443. [2012/03/16 10:46:29 | 001,279,864 | ---- | M] () MD5=A30331358FA33B3C7FDB972D802F57C4 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
  1444. [2012/03/16 10:53:07 | 000,000,219 | ---- | M] () MD5=1F7EE91CD8AE8A1CBF71624227DB3D63 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1445. [2012/03/16 10:46:03 | 000,149,368 | ---- | M] () MD5=3AF754C16AF954DB7367FB39C3739387 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
  1446. [2012/03/16 10:53:07 | 000,000,219 | ---- | M] () MD5=2E0B0F90BA89FA1EDCC289688BF58A7B -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1447. [2010/04/08 15:33:01 | 000,404,296 | ---- | M] () MD5=604DE0F15138665E4108B986F0FDD94B -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.SemiTrust.dll
  1448. [2010/04/08 15:40:22 | 000,000,232 | ---- | M] () MD5=0AFFE8E498124664ADDFAB6632A93927 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1449. [2010/04/08 15:32:04 | 000,088,896 | ---- | M] () MD5=B1CD282FBEF31E321F48E103E2840DD0 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
  1450. [2010/04/08 15:40:22 | 000,000,226 | ---- | M] () MD5=0A56011D14E56BA6037C48FAE6064F2B -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1451. [2010/04/08 15:32:03 | 000,146,232 | ---- | M] () MD5=9A0E901BACEF14628977517AA002C765 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
  1452. [2010/04/08 15:40:22 | 000,000,222 | ---- | M] () MD5=CCC7961EC6B4CEF20C4A41E1BFF5CF78 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1453. [2010/01/05 16:31:30 | 000,017,208 | ---- | M] () MD5=5B8B3F76720166BF777A6AD38D12010F -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.OneNote\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OneNote.dll
  1454. [2010/01/05 16:32:59 | 000,000,221 | ---- | M] () MD5=7C1C66BFBB15C0B3C1B9AFEEE2986CF8 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.OneNote\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1455. [2010/04/08 15:32:03 | 000,920,376 | ---- | M] () MD5=5CBE57423C5CAFAA11B50E5C25DAE19D -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
  1456. [2010/04/08 15:40:23 | 000,000,221 | ---- | M] () MD5=6B6872FAF93931EA6EB4F2E1E30A37D4 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1457. [2012/03/16 10:46:31 | 000,034,696 | ---- | M] () MD5=7E181C30E192223908BBF509AB827B41 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
  1458. [2012/03/16 10:53:08 | 000,000,228 | ---- | M] () MD5=2C6E214F297382A5343D10D8D8ED62C6 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1459. [2011/12/14 04:24:15 | 000,350,080 | ---- | M] () MD5=5C62BA3A0FEE2D763BB79F858204D09D -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
  1460. [2011/12/14 04:24:26 | 000,000,224 | ---- | M] () MD5=EF446200B015C1662F07955E95322DCE -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1461. [2010/04/08 15:32:03 | 000,232,248 | ---- | M] () MD5=0944C6C65C258A4BE89605D666DE5880 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
  1462. [2010/04/08 15:40:24 | 000,000,223 | ---- | M] () MD5=89274E3F135691355EBD73770EAFF34D -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1463. [2010/01/10 02:01:38 | 000,019,320 | ---- | M] () MD5=3CC99DCCB5B9F51483AF7532A6D65F92 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
  1464. [2010/01/10 02:03:02 | 000,000,222 | ---- | M] () MD5=3C3CC20ADA56EB38EAF363E7A6BEEE93 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1465. [2012/03/16 10:46:34 | 000,870,256 | ---- | M] () MD5=54719FDC6A752DC78B364A3980DBC2E9 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
  1466. [2012/03/16 10:53:08 | 000,000,218 | ---- | M] () MD5=2A6411671028D5A543646989CB01DBD8 -- C:\Windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1467. [2010/01/05 16:31:35 | 000,013,312 | ---- | M] () MD5=D80746B2F94A3A28E380735D4B8A9EA3 -- C:\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
  1468. [2010/01/05 16:32:52 | 000,000,210 | ---- | M] () MD5=A57C6028DAE8D855FFC2BBC2D6E57246 -- C:\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1469. [2010/01/05 16:31:18 | 000,371,496 | ---- | M] () MD5=BA4FB255E3887A039CB74A5870192220 -- C:\Windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
  1470. [2010/01/05 16:33:00 | 000,000,216 | ---- | M] () MD5=E9A3D4644D3B7C20C5EE60970BC5681C -- C:\Windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1471. [2012/03/16 10:46:05 | 000,063,336 | ---- | M] () MD5=B60C87E3CD3ACFA71DAD8145C66D6E9C -- C:\Windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
  1472. [2012/03/16 10:53:06 | 000,000,210 | ---- | M] () MD5=F4663120ABF3E8FF67D7AAF33BD68EDF -- C:\Windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1473. [2010/04/08 15:33:26 | 000,069,632 | ---- | M] () MD5=FF6283D65F5CC5D17DD92DAB4CBA312F -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.CommandBars\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.CommandBars.dll
  1474. [2010/04/08 15:40:19 | 000,000,222 | ---- | M] () MD5=2914A2C837D4E1164B0D0917D0432D68 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.CommandBars\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1475. [2010/04/08 15:33:40 | 000,176,128 | ---- | M] () MD5=71DADEF003283030E03755ADADD1FBAD -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Debugger.Interop\8.0.1.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Debugger.Interop.dll
  1476. [2010/04/08 15:40:20 | 000,000,227 | ---- | M] () MD5=D85D9588B05E9EC505106F392B61E68D -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Debugger.Interop\8.0.1.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1477. [2010/04/08 15:33:20 | 000,008,704 | ---- | M] () MD5=4FCA230D88B5AFA87CAA2428031EBED1 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Designer.Interfaces\1.0.5000.0__b03f5f7f11d50a3a\microsoft.visualstudio.designer.interfaces.dll
  1478. [2010/04/08 15:40:17 | 000,000,233 | ---- | M] () MD5=8FEA10406D90B571E90E967F3E9491A5 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Designer.Interfaces\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1479. [2010/04/08 15:33:41 | 000,118,784 | ---- | M] () MD5=7709C1B080F9E8E0DEB8EB29006ED3EC -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.OLE.Interop\7.1.40304.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.OLE.Interop.dll
  1480. [2010/04/08 15:40:21 | 000,000,226 | ---- | M] () MD5=8D3A8913217E3C29FDA67D7E71CAAEB7 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.OLE.Interop\7.1.40304.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1481. [2010/04/08 15:33:40 | 000,167,936 | ---- | M] () MD5=DB0D03AEF0FFDDEBBAAFCB461631AE67 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Shell.Interop.8.0\8.0.0.0__b03f5f7f11d50a3a\microsoft.visualstudio.shell.interop.8.0.dll
  1482. [2010/04/08 15:40:20 | 000,000,228 | ---- | M] () MD5=8235973FFD5A590D61536638AEEF7DC1 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Shell.Interop.8.0\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1483. [2010/04/08 15:33:41 | 000,249,856 | ---- | M] () MD5=29325059E5F32BC13B57DDC4F985FD59 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Shell.Interop\7.1.40304.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Shell.Interop.dll
  1484. [2010/04/08 15:40:21 | 000,000,228 | ---- | M] () MD5=3ED7EC8F3B9859E2DC83E58528F8A235 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.Shell.Interop\7.1.40304.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1485. [2010/04/08 15:33:40 | 000,057,344 | ---- | M] () MD5=988D0B28C126A65802E1FBB7A4551A1F -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.TextManager.Interop.8.0\8.0.0.0__b03f5f7f11d50a3a\microsoft.visualstudio.textmanager.interop.8.0.dll
  1486. [2010/04/08 15:40:21 | 000,000,234 | ---- | M] () MD5=0A1BA3BFE3A20F36ABC7348604F168F6 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.TextManager.Interop.8.0\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1487. [2010/04/08 15:33:41 | 000,114,688 | ---- | M] () MD5=63E205DB51D22B83239B6F3EB1404CCD -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.TextManager.Interop\7.1.40304.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.TextManager.Interop.dll
  1488. [2010/04/08 15:40:21 | 000,000,234 | ---- | M] () MD5=B724409728CEA1F98B7F20202118B353 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.TextManager.Interop\7.1.40304.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1489. [2010/04/08 15:33:37 | 000,011,264 | ---- | M] () MD5=3ACA803A026087F4EB2958EF80FC0EE4 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.VSHelp\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.VSHelp.dll
  1490. [2010/04/08 15:40:20 | 000,000,220 | ---- | M] () MD5=85674EF202149526463072C0F3CB87B1 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.VSHelp\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1491. [2010/04/08 15:33:37 | 000,008,704 | ---- | M] () MD5=D52106A5E29673059DC496DDFE53AE4C -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.VSHelp80\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.VSHelp80.dll
  1492. [2010/04/08 15:40:20 | 000,000,219 | ---- | M] () MD5=EE39BC164C82E99CF4436B8C09E0AA20 -- C:\Windows\assembly\GAC\Microsoft.VisualStudio.VSHelp80\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1493. [2010/01/05 16:31:35 | 000,229,376 | ---- | M] () MD5=FDA48714F6A291E25A1A219E89D59D9B -- C:\Windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
  1494. [2010/01/05 16:33:00 | 000,000,200 | ---- | M] () MD5=481E504FBEA25FBF5408DB65F44FA5FA -- C:\Windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\__AssemblyInfo__.ini
  1495. [2010/01/05 16:31:36 | 000,004,096 | ---- | M] () MD5=AAA2E20588E154A10747BF1B31B55125 -- C:\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
  1496. [2010/01/05 16:32:53 | 000,000,200 | ---- | M] () MD5=C1F5FADD74964959FC4394832BBC3E59 -- C:\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1497. [2010/01/10 02:01:38 | 000,423,784 | ---- | M] () MD5=DF7CBCD2DB89880A8A92EA134611B038 -- C:\Windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
  1498. [2010/01/10 02:03:00 | 000,000,195 | ---- | M] () MD5=7C4A765B5AC30DBD8B53CD071B73840C -- C:\Windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1499. [2010/04/08 15:30:59 | 000,000,900 | ---- | M] () MD5=3D144BF3BA28D9E2BEDBA405FA672780 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.config
  1500. [2010/04/08 15:30:59 | 000,012,104 | ---- | M] () MD5=3BBBF705C91C7F399A073D96A4AE304A -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.dll
  1501. [2010/04/08 15:40:07 | 000,000,232 | ---- | M] () MD5=F14297FB0C6A046E4FB77263CBE167AF -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1502. [2010/01/10 02:02:01 | 000,000,898 | ---- | M] () MD5=DCC5E6E13187570656FB60EBB51751A8 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.config
  1503. [2010/01/10 02:02:01 | 000,011,144 | ---- | M] () MD5=AA14986D717AF25CF6362C69BFA13359 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.dll
  1504. [2010/01/10 02:03:00 | 000,000,231 | ---- | M] () MD5=4B9F522E4B403A5B090681600D9070C2 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1505. [2010/01/10 02:01:36 | 000,000,898 | ---- | M] () MD5=CC9313747F69E39B66D6B7EFE22FD328 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.config
  1506. [2010/01/10 02:01:36 | 000,011,128 | ---- | M] () MD5=CE0EDD4D644A7C624FA79E1B14B00323 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.dll
  1507. [2010/01/10 02:03:02 | 000,000,231 | ---- | M] () MD5=69CD87BB9C6DA0537CE63A53E7092F32 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1508. [2010/04/08 15:33:03 | 000,000,912 | ---- | M] () MD5=8A8FAFB921AFF270260924C1D31CE163 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.config
  1509. [2010/04/08 15:33:03 | 000,012,616 | ---- | M] () MD5=EC7F771DBC984954E076D03F055E0DBF -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.dll
  1510. [2010/04/08 15:40:23 | 000,000,238 | ---- | M] () MD5=8352AC255CC3F25FDF9AF1FECC8BD6F3 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1511. [2010/04/08 15:33:02 | 000,000,904 | ---- | M] () MD5=577D9B55DE8E70B51042ED8124D55C18 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.config
  1512. [2010/04/08 15:33:02 | 000,012,616 | ---- | M] () MD5=5B97D1FFA46C9CF752FA8164AB171C56 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.dll
  1513. [2010/04/08 15:40:22 | 000,000,234 | ---- | M] () MD5=8F1C69873B1ADCE21B3005A52A6921BA -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1514. [2010/04/08 15:32:42 | 000,000,902 | ---- | M] () MD5=E2724C2DF4C312D34E4A7BCABBDD5AB6 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.config
  1515. [2010/04/08 15:32:42 | 000,012,104 | ---- | M] () MD5=2EE2F1AD6A3B6317D045D2C31F6FEF65 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.dll
  1516. [2010/04/08 15:40:24 | 000,000,233 | ---- | M] () MD5=A1C0A9578F9D8E0FCA9A4440070F31B0 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1517. [2010/04/08 15:32:40 | 000,000,916 | ---- | M] () MD5=DA6AC9B205A7A7FF0AB028049FD3AEA1 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.config
  1518. [2010/04/08 15:32:40 | 000,012,632 | ---- | M] () MD5=DB1CC715650EC69FA2B20042B2DC6B5B -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.dll
  1519. [2010/04/08 15:40:24 | 000,000,240 | ---- | M] () MD5=47440CFB37970DEFA6E164D85EE5491B -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1520. [2010/01/10 02:02:06 | 000,000,908 | ---- | M] () MD5=49E684EE5FF535D8FF08056769A9F9E6 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.config
  1521. [2010/01/10 02:02:06 | 000,011,152 | ---- | M] () MD5=445F0A07EAE252BE0464273767B22453 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
  1522. [2010/01/10 02:03:02 | 000,000,236 | ---- | M] () MD5=CC90EB2A26912AB4C5102CDEF753E91F -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1523. [2010/04/08 15:32:46 | 000,000,906 | ---- | M] () MD5=1B1C62C31CB95E0E1D20FF7F4EE99A34 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.config
  1524. [2010/04/08 15:32:46 | 000,012,104 | ---- | M] () MD5=554DA52E16EAB6C18D003C0157BE0DD3 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.dll
  1525. [2010/04/08 15:40:24 | 000,000,235 | ---- | M] () MD5=B3B78A70350941D7D6992D5142275669 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1526. [2010/01/10 02:01:38 | 000,000,904 | ---- | M] () MD5=AC1B446DC4969CE1D3F605D9CE098DDB -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.config
  1527. [2010/01/10 02:01:38 | 000,011,136 | ---- | M] () MD5=C2F8D5E1D25BCAE6516E88AA0342FB6E -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
  1528. [2010/01/10 02:03:02 | 000,000,234 | ---- | M] () MD5=79D81B7149BDC2CD7CB5B48D05D75F37 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1529. [2012/03/16 10:46:32 | 000,000,896 | ---- | M] () MD5=33324BF6E22A322816FD4C1C58BB032C -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.config
  1530. [2012/03/16 10:46:32 | 000,011,144 | ---- | M] () MD5=2CE989B779144889EA1F30A046DF13CB -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.dll
  1531. [2012/03/16 10:53:08 | 000,000,230 | ---- | M] () MD5=314847472C40A8C3574130C873856447 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1532. [2010/01/10 02:01:39 | 000,000,880 | ---- | M] () MD5=AEEFC22DA8D1EBBA43AC2E8B0599DFE3 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.config
  1533. [2010/01/10 02:01:39 | 000,011,112 | ---- | M] () MD5=FFD49049DE84727DE54922181E0AFBA5 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
  1534. [2010/01/10 02:03:01 | 000,000,222 | ---- | M] () MD5=122F7F6C517CFA276B874A7F20A796B4 -- C:\Windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1535. [2010/01/10 02:01:38 | 000,000,850 | ---- | M] () MD5=5717939AB3C1CFFDF93DDC9A14856755 -- C:\Windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.office.config
  1536. [2010/01/10 02:01:38 | 000,010,576 | ---- | M] () MD5=B6C7C64CB13A418DF859A018EC93727B -- C:\Windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
  1537. [2010/01/10 02:03:01 | 000,000,207 | ---- | M] () MD5=E7E59ABBFF65ED4C142D4006A6197E0E -- C:\Windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
  1538. [2010/01/05 16:31:35 | 000,016,384 | ---- | M] () MD5=E1EEB7E26AB04075EECC7275239B20B3 -- C:\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
  1539. [2010/01/05 16:32:52 | 000,000,197 | ---- | M] () MD5=FC75E46DA5B9F9263B958C7B027ACBFC -- C:\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1540. [2010/04/08 15:33:43 | 000,053,248 | ---- | M] () MD5=B2E444D38228A013E5DAEEB6C33386D2 -- C:\Windows\assembly\GAC\VSLangProj\7.0.3300.0__b03f5f7f11d50a3a\VSLangProj.dll
  1541. [2010/04/08 15:40:21 | 000,000,201 | ---- | M] () MD5=B051868BA40F1AB525C03330732515A3 -- C:\Windows\assembly\GAC\VSLangProj\7.0.3300.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1542. [2010/04/08 15:33:42 | 000,019,968 | ---- | M] () MD5=9E15AD1AF0B92F798FB17013D3253235 -- C:\Windows\assembly\GAC\VSLangProj2\7.0.5000.0__b03f5f7f11d50a3a\VSLangProj2.dll
  1543. [2010/04/08 15:40:21 | 000,000,202 | ---- | M] () MD5=ED22203E2C83F9BD865C271DE0DC3805 -- C:\Windows\assembly\GAC\VSLangProj2\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1544. [2010/04/08 15:33:42 | 000,073,728 | ---- | M] () MD5=5A713F72D87CC2E9A2B5CEC4E7B8C915 -- C:\Windows\assembly\GAC\VSLangProj80\8.0.0.0__b03f5f7f11d50a3a\VSLangProj80.dll
  1545. [2010/04/08 15:40:21 | 000,000,200 | ---- | M] () MD5=775BB75FAF80E01C3C22E46A2286F2BC -- C:\Windows\assembly\GAC\VSLangProj80\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1546. [2010/04/08 15:33:31 | 000,049,152 | ---- | M] () MD5=4FB0672D5842DDB98898784461480E8B -- C:\Windows\assembly\GAC\VsWebSite.Interop\8.0.0.0__b03f5f7f11d50a3a\VsWebSite.Interop.dll
  1547. [2010/04/08 15:40:19 | 000,000,205 | ---- | M] () MD5=6118596E680ABB25DBA81AF1970CA12F -- C:\Windows\assembly\GAC\VsWebSite.Interop\8.0.0.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
  1548.  
  1549. [color=#A23BEC]< %systemroot%\assembly\GAC_32\*.* /S /MD5 >[/color]
  1550. [2010/11/04 20:57:39 | 000,069,120 | ---- | M] () MD5=C80DA476BFBAD97D874A0EFE037D7113 -- C:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
  1551. [2010/11/04 20:57:43 | 000,072,192 | ---- | M] () MD5=D58D4E4AA8D6146D838BE02500F50B27 -- C:\Windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
  1552. [2009/07/13 20:24:14 | 000,507,904 | ---- | M] () MD5=269691AFEE6C44C52CDCA23C24BDBB0C -- C:\Windows\assembly\GAC_32\Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Microsoft.Ink.dll
  1553. [2009/07/13 20:24:28 | 000,077,824 | ---- | M] () MD5=BB2BB7BFE455562249E922A7AA4493A5 -- C:\Windows\assembly\GAC_32\Microsoft.Interop.Security.AzRoles\2.0.0.0__31bf3856ad364e35\Microsoft.Interop.Security.AzRoles.dll
  1554. [2012/03/16 10:46:38 | 000,117,160 | ---- | M] () MD5=8AC30B331C6791B953D06802F7CBA374 -- C:\Windows\assembly\GAC_32\Microsoft.Office.InfoPath.Client.Internal.Host.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
  1555. [2010/11/04 20:52:36 | 000,163,840 | ---- | M] () MD5=059B857CCA35C20F06B5DEBD51C4FB38 -- C:\Windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
  1556. [2010/04/08 15:33:47 | 000,367,400 | ---- | M] () MD5=6CAD87F2BE4A4BC31D3FD5C923741418 -- C:\Windows\assembly\GAC_32\Microsoft.VisualStudio.Tools.Applications.InteropAdapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.InteropAdapter.dll
  1557. [2009/07/13 20:26:31 | 000,008,192 | ---- | M] () MD5=FA44A672F1C12791984D9ECAB7DC3177 -- C:\Windows\assembly\GAC_32\Microsoft.Windows.Diagnosis.SDEngine\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.SDEngine.dll
  1558. [2010/11/20 07:32:22 | 000,019,968 | ---- | M] () MD5=36D6B6EFE1AFD20700DB4C4E20F400A7 -- C:\Windows\assembly\GAC_32\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop\6.1.0.0__31bf3856ad364e35\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.dll
  1559. [2009/06/10 16:14:52 | 000,087,888 | ---- | M] () MD5=2E5F1CF69F92392F8829FC9C9263AE9B -- C:\Windows\assembly\GAC_32\MSBuild\3.5.0.0__b03f5f7f11d50a3a\MSBuild.exe
  1560. [2009/06/10 16:14:53 | 000,001,581 | ---- | M] () MD5=1EA3E30080C0E256C2EF0C621E91C345 -- C:\Windows\assembly\GAC_32\MSBuild\3.5.0.0__b03f5f7f11d50a3a\msbuild.exe.config
  1561. [2010/04/08 15:33:24 | 001,662,976 | ---- | M] () MD5=2148068617A9D2B5E08520CAD7014E64 -- C:\Windows\assembly\GAC_32\mscorcfg\2.0.0.0__b03f5f7f11d50a3a\mscorcfg.dll
  1562. [2009/06/10 16:22:47 | 000,066,728 | ---- | M] () MD5=C01B81BB10AD14DBC5C4ECD350638096 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\big5.nlp
  1563. [2009/06/10 16:22:47 | 000,082,172 | ---- | M] () MD5=EE1F60F8774D74BED8B13498F3FE737A -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\bopomofo.nlp
  1564. [2009/06/10 16:22:58 | 000,116,756 | ---- | M] () MD5=F6DFDA5A31162D848634504565F6D321 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\ksc.nlp
  1565. [2012/01/03 21:50:59 | 004,550,656 | ---- | M] () MD5=C850A6041F5AEDE21C53514BBE9AB09D -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
  1566. [2009/06/10 16:23:13 | 000,059,342 | ---- | M] () MD5=DA5748A89E22A3932387E65694B25BBB -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\normidna.nlp
  1567. [2009/06/10 16:23:13 | 000,045,794 | ---- | M] () MD5=3831A5E217D6FA828CCE1011DA26E677 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\normnfc.nlp
  1568. [2009/06/10 16:23:13 | 000,039,284 | ---- | M] () MD5=DBDE664E0BA4BACD0A6A04AE2232B205 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\normnfd.nlp
  1569. [2009/06/10 16:23:13 | 000,066,384 | ---- | M] () MD5=C9B88B759FE81D59CE8EBF5A0A8EB75A -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\normnfkc.nlp
  1570. [2009/06/10 16:23:13 | 000,060,294 | ---- | M] () MD5=3CAB6AB66759FCDF73B61EE262C9ACF4 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\normnfkd.nlp
  1571. [2009/06/10 16:23:14 | 000,083,748 | ---- | M] () MD5=54144F43EDF5AA8F504A30E7C1D1A7B5 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\prc.nlp
  1572. [2009/06/10 16:23:14 | 000,083,748 | ---- | M] () MD5=901863C68E6523336CAC602FE9320ABC -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\prcp.nlp
  1573. [2009/06/10 16:23:17 | 000,262,148 | ---- | M] ()[b] Unable to obtain MD5[/b] -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sortkey.nlp
  1574. [2009/06/10 16:23:17 | 000,020,320 | ---- | M] ()[b] Unable to obtain MD5[/b] -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sorttbls.nlp
  1575. [2009/06/10 16:23:23 | 000,028,288 | ---- | M] () MD5=09E420F90A329BDA68477FA4AF43CB28 -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\xjis.nlp
  1576. [2010/11/20 07:36:00 | 000,046,080 | ---- | M] () MD5=93C4029DABC19166076BE347283AB969 -- C:\Windows\assembly\GAC_32\napcrypt\6.1.0.0__31bf3856ad364e35\NAPCRYPT.DLL
  1577. [2010/11/20 07:36:00 | 000,107,008 | ---- | M] () MD5=E9CFC1884D1E579E82073103827FA62B -- C:\Windows\assembly\GAC_32\naphlpr\6.1.0.0__31bf3856ad364e35\NAPHLPR.DLL
  1578. [2009/07/13 17:04:07 | 000,000,442 | ---- | M] () MD5=13E4BF7A255D57592EEDBD04A500C09B -- C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.1.0.Microsoft.Ink.config
  1579. [2009/07/13 20:25:25 | 000,005,632 | ---- | M] () MD5=608232474C33C71F863B0866E5165C1C -- C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.1.0.Microsoft.Ink.dll
  1580. [2009/06/10 16:32:22 | 000,000,494 | ---- | M] () MD5=453626B1A59F62F9A141AC62F4E44E75 -- C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\Microsoft.Interop.Security.AzRoles.config
  1581. [2009/07/13 20:26:15 | 000,005,632 | ---- | M] () MD5=2641880E8C12BEE37DDC2813908A2A0F -- C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\Policy.1.0.Microsoft.Interop.Security.AzRoles.dll
  1582. [2009/06/10 16:32:22 | 000,000,494 | ---- | M] () MD5=453626B1A59F62F9A141AC62F4E44E75 -- C:\Windows\assembly\GAC_32\Policy.1.2.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\Policy.1.2.Microsoft.Interop.Security.AzRoles.config
  1583. [2009/07/13 20:23:30 | 000,005,632 | ---- | M] () MD5=D6C077082EAA747911C212A9EB64A813 -- C:\Windows\assembly\GAC_32\Policy.1.2.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\Policy.1.2.Microsoft.Interop.Security.AzRoles.dll
  1584. [2009/07/13 17:04:07 | 000,000,442 | ---- | M] () MD5=13E4BF7A255D57592EEDBD04A500C09B -- C:\Windows\assembly\GAC_32\Policy.1.7.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.1.7.Microsoft.Ink.config
  1585. [2009/07/13 20:22:54 | 000,005,632 | ---- | M] () MD5=331021DA8B00A9ADCDD54B5782943204 -- C:\Windows\assembly\GAC_32\Policy.1.7.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.1.7.Microsoft.Ink.dll
  1586. [2009/07/13 17:04:08 | 000,000,442 | ---- | M] () MD5=13E4BF7A255D57592EEDBD04A500C09B -- C:\Windows\assembly\GAC_32\Policy.6.0.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.6.0.Microsoft.Ink.config
  1587. [2009/07/13 20:23:04 | 000,005,632 | ---- | M] () MD5=B3DB67C90DBBB75BFE110A86E951C2EC -- C:\Windows\assembly\GAC_32\Policy.6.0.Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Policy.6.0.Microsoft.Ink.dll
  1588. [2012/02/10 18:31:40 | 004,218,880 | ---- | M] () MD5=AEDDFD540E3E6BECDB14C30D1F12B78A -- C:\Windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
  1589. [2009/06/10 16:14:51 | 000,000,161 | ---- | M] () MD5=C0856EC51C8C75B8FDF02C1BBCFE7B93 -- C:\Windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe.config
  1590. [2012/02/10 18:31:42 | 001,737,496 | ---- | M] () MD5=DDFBFD8959F32AC0CF3947F36BAC3081 -- C:\Windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll
  1591. [2010/11/04 20:58:05 | 000,486,400 | ---- | M] () MD5=ED40D020A6A82748394F1653CE324CE4 -- C:\Windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
  1592. [2010/11/04 20:58:05 | 002,927,616 | ---- | M] () MD5=35CAB7CF3754C41AEB69DCE1D5ACA5A4 -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
  1593. [2010/11/04 20:58:08 | 000,258,048 | ---- | M] () MD5=6DB969DF540BC71722848940D180AC08 -- C:\Windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
  1594. [2010/11/19 23:12:59 | 000,113,664 | ---- | M] () MD5=C865DC05ADE0B41A9E14DD585E0CDF94 -- C:\Windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
  1595. [2012/02/10 18:31:41 | 000,372,736 | ---- | M] () MD5=A151947AD131A883870A6174CACF423B -- C:\Windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
  1596. [2009/06/10 16:23:19 | 000,261,632 | ---- | M] () MD5=5F3F1BF5F5B43293953FC915845910C4 -- C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
  1597. [2011/12/25 15:42:15 | 005,255,168 | ---- | M] () MD5=7D2B8E2CE3EF2DC633689F1E1F4A7504 -- C:\Windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
  1598.  
  1599. [color=#A23BEC]< %systemroot%\assembly\GAC_64\*.* /S /MD5 >[/color]
  1600.  
  1601. [color=#A23BEC]< %SystemRoot%\assembly\GAC_MSIL\*.* /S /MD5 >[/color]
  1602. [2009/06/10 16:22:40 | 000,010,752 | ---- | M] () MD5=7E8C840853FB6EBD5CC16D3C10C7C127 -- C:\Windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
  1603. [2009/06/10 16:22:47 | 000,507,904 | ---- | M] () MD5=11B30A8447A724C6E9FBF6261AC0DA6E -- C:\Windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
  1604. [2010/01/11 18:23:59 | 000,017,920 | ---- | M] () MD5=C9296731175FA414FF5144FE840A86CD -- C:\Windows\assembly\GAC_MSIL\Bullzip.PdfWriter\1.0.0.4__041d71cacb6e853c\Bullzip.PDFWriter.dll
  1605. [2010/11/04 20:52:35 | 000,165,720 | ---- | M] () MD5=501E961FEEBBDE040FB836CB5DE122C2 -- C:\Windows\assembly\GAC_MSIL\ComSvcConfig\3.0.0.0__b03f5f7f11d50a3a\ComSvcConfig.exe
  1606. [2009/06/10 16:22:50 | 000,013,312 | ---- | M] () MD5=AAD128271C76C6596E69CFA81D765C2C -- C:\Windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
  1607. [2009/06/10 16:22:50 | 000,005,120 | ---- | M] () MD5=BA86FDE9C3B5BD2FF5EA7A99BF648E82 -- C:\Windows\assembly\GAC_MSIL\dfsvc\2.0.0.0__b03f5f7f11d50a3a\dfsvc.exe
  1608. [2010/11/20 07:19:48 | 000,008,192 | ---- | M] () MD5=D7081D68005C975549685E8BF129794E -- C:\Windows\assembly\GAC_MSIL\EventViewer.Resources\6.1.0.0_en_31bf3856ad364e35\EventViewer.resources.dll
  1609. [2010/11/20 07:32:20 | 000,368,640 | ---- | M] () MD5=F046EB4BBFC631D178C6DF20819C1DE5 -- C:\Windows\assembly\GAC_MSIL\EventViewer\6.1.0.0__31bf3856ad364e35\EventViewer.dll
  1610. [2009/06/10 16:22:54 | 000,008,192 | ---- | M] () MD5=96D9E7E468D537443DE037A7E15CB804 -- C:\Windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
  1611. [2009/06/10 16:22:55 | 000,077,824 | ---- | M] () MD5=AF29AA7F2F613951A9E913B4290B2ECE -- C:\Windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
  1612. [2009/06/10 16:22:55 | 000,006,656 | ---- | M] () MD5=D051642D0ED61E2886FD8917E8B6FAFD -- C:\Windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
  1613. [2009/07/13 21:12:50 | 000,007,168 | ---- | M] () MD5=FCA8AC8ABBCE37458663CCA33E7F71F7 -- C:\Windows\assembly\GAC_MSIL\Microsoft.BackgroundIntelligentTransfer.Management.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.BackgroundIntelligentTransfer.Management.resources.dll
  1614. [2009/07/13 20:20:28 | 000,057,344 | ---- | M] () MD5=D16F569EB4264641241465BEFA107BD0 -- C:\Windows\assembly\GAC_MSIL\Microsoft.BackgroundIntelligentTransfer.Management\1.0.0.0__31bf3856ad364e35\Microsoft.BackgroundIntelligentTransfer.Management.dll
  1615. [2009/06/10 16:14:36 | 000,106,496 | ---- | M] () MD5=550E75434C424A17A1E06669D8335C26 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Conversion.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Conversion.v3.5.dll
  1616. [2010/04/08 15:33:24 | 000,106,496 | ---- | M] () MD5=4F1E7D370C91BB2325FE15861D5291B2 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Conversion\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Conversion.dll
  1617. [2010/11/04 20:57:44 | 000,348,160 | ---- | M] () MD5=24FDCD95121E59D39DCB1585EC8C5901 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
  1618. [2010/11/04 20:53:30 | 000,733,184 | ---- | M] () MD5=DC6476726F4A15BF5BC8CF2C235B17C6 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Engine\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
  1619. [2010/11/04 20:57:44 | 000,036,864 | ---- | M] () MD5=4B177641BEBC8965220EC474D65981A3 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
  1620. [2009/06/10 16:14:40 | 000,036,864 | ---- | M] () MD5=80F89EC03B39E5A6700C9CA5A5545230 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
  1621. [2010/11/04 20:53:36 | 000,802,816 | ---- | M] () MD5=9EBE67131D1776B86410B56FFC95A5BF -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Tasks.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.v3.5.dll
  1622. [2010/11/04 20:57:45 | 000,655,360 | ---- | M] () MD5=5B5AEB3CEB1FC6D77E57821E6A42DE72 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
  1623. [2010/11/04 20:53:30 | 000,094,208 | ---- | M] () MD5=B6EF0B4C1898D03FC7814B890FCE9B72 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.v3.5.dll
  1624. [2010/11/04 20:57:45 | 000,077,824 | ---- | M] () MD5=D7A537839EAB83BAD8F3C053098198E8 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
  1625. [2009/07/13 21:13:02 | 000,036,864 | ---- | M] () MD5=3576E621125C0ECE94313B85CCE6F8B6 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Ink.Resources\6.1.0.0_en_31bf3856ad364e35\Microsoft.Ink.Resources.dll
  1626. [2009/06/10 16:23:03 | 000,749,568 | ---- | M] () MD5=3CF65928E67E362D5B25424EBCC27B12 -- C:\Windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
  1627. [2009/07/13 21:13:00 | 000,016,384 | ---- | M] () MD5=4D9D34F0204D5DF8EF1DBBD704735EEB -- C:\Windows\assembly\GAC_MSIL\Microsoft.ManagementConsole.Resources\3.0.0.0_en_31bf3856ad364e35\Microsoft.ManagementConsole.Resources.dll
  1628. [2009/07/13 20:21:42 | 000,188,416 | ---- | M] () MD5=F8B72BFD1D8C36E1A2C98E25C9CF2504 -- C:\Windows\assembly\GAC_MSIL\Microsoft.ManagementConsole\3.0.0.0__31bf3856ad364e35\Microsoft.ManagementConsole.dll
  1629. [2010/04/08 15:33:34 | 000,069,632 | ---- | M] () MD5=BA7F254248637B611DE7090207DE1891 -- C:\Windows\assembly\GAC_MSIL\Microsoft.MSXML\8.0.0.0__b03f5f7f11d50a3a\microsoft.msxml.dll
  1630. [2012/03/16 10:46:38 | 000,608,136 | ---- | M] () MD5=BEEAF7900437FE41918C729AD4957862 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Client.Internal.Host\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.dll
  1631. [2010/04/08 15:32:57 | 000,043,840 | ---- | M] () MD5=0B8A9BB294B8CF79C99DD3486317285C -- C:\Windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.FormControl\12.0.0.0__71e9bce111e9429c\microsoft.office.infopath.formcontrol.dll
  1632. [2010/04/08 15:33:02 | 000,039,728 | ---- | M] () MD5=A4DAC1328EB3271B7F18B56572BC6433 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Vsta\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Vsta.dll
  1633. [2010/04/08 15:32:59 | 000,060,200 | ---- | M] () MD5=F8B8E043A7CF09E811A9914BA4A6FE34 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.dll
  1634. [2009/07/13 21:13:04 | 000,010,752 | ---- | M] () MD5=65B27C38DBD68EFEC636665FDBF4D1FF -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Diagnostics.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Commands.Diagnostics.resources.dll
  1635. [2010/11/20 07:35:58 | 000,102,400 | ---- | M] () MD5=2E86EDB34D366FCC9425B1A4654FC543 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Diagnostics\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Commands.Diagnostics.dll
  1636. [2009/07/13 21:13:06 | 000,036,864 | ---- | M] () MD5=10C9C4380C4B403B95D757C4517AFD5B -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Management.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Commands.Management.Resources.dll
  1637. [2010/11/20 07:35:58 | 000,290,816 | ---- | M] () MD5=33C0200ED261F9738AB90A58C97E2E52 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Management\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Commands.Management.dll
  1638. [2010/11/20 07:19:49 | 000,049,152 | ---- | M] () MD5=28AF2A12179398B90A6F18E451010209 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Utility.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Commands.Utility.Resources.dll
  1639. [2010/11/20 07:35:59 | 000,667,648 | ---- | M] () MD5=C23ACC08CB8049A8DDC7D8CD84280096 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Utility\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Commands.Utility.dll
  1640. [2010/11/20 07:19:49 | 000,040,960 | ---- | M] () MD5=42CDE70A57616C7D54694E881C5F84A9 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.ConsoleHost.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.ConsoleHost.Resources.dll
  1641. [2009/07/13 20:23:47 | 000,200,704 | ---- | M] () MD5=61408B3CF77B787A753B6F4F4A6840B1 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.ConsoleHost\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.ConsoleHost.dll
  1642. [2009/07/13 21:13:04 | 000,069,632 | ---- | M] () MD5=DF60F16CB3FA971EBD1CB6B1FA346AF6 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Editor.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Editor.Resources.dll
  1643. [2010/11/20 07:35:59 | 000,991,232 | ---- | M] () MD5=7E6557381C8CF162A4ED0D9A581F870B -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Editor\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Editor.dll
  1644. [2009/07/13 21:13:06 | 000,040,960 | ---- | M] () MD5=41888D6ED40E49C4DAED8E412BB18B90 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.GPowerShell.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Gpowershell.resources.dll
  1645. [2009/07/13 20:22:04 | 000,651,264 | ---- | M] () MD5=E66B1EEE2AB24DE9F3D5189A1FC8D4BF -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.GPowerShell\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.GPowerShell.dll
  1646. [2009/07/13 21:13:06 | 000,016,896 | ---- | M] () MD5=E848EEBF463086883E026AAD11C24F1A -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.GraphicalHost.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.GraphicalHost.Resources.dll
  1647. [2009/07/13 20:20:38 | 000,278,528 | ---- | M] () MD5=3EAB4DBDC290EDC4D53FE77F1FDB9E59 -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.GraphicalHost\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.GraphicalHost.dll
  1648. [2009/07/13 21:11:48 | 000,009,216 | ---- | M] () MD5=462D0B841E939094840CFA61C990410F -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Security.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.PowerShell.Security.Resources.dll
  1649. [2010/11/20 07:35:58 | 000,077,824 | ---- | M] () MD5=B1282FC909517D890C61F7F3313134EF -- C:\Windows\assembly\GAC_MSIL\Microsoft.PowerShell.Security\1.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Security.dll
  1650. [2009/07/13 21:13:06 | 000,073,728 | ---- | M] () MD5=67F68317A9F346A32039F9651C7EAC46 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Tpm.Resources\6.1.0.0_en_31bf3856ad364e35\microsoft.tpm.resources.dll
  1651. [2009/07/13 20:24:19 | 000,192,512 | ---- | M] () MD5=466761E68D1AAED81DFD5E43B168D2F0 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Tpm\6.1.0.0__31bf3856ad364e35\Microsoft.Tpm.dll
  1652. [2009/06/10 16:14:03 | 000,397,312 | ---- | M] () MD5=130FF58B6245F78097E7619EFB61CDD2 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
  1653. [2009/06/10 16:23:03 | 000,110,592 | ---- | M] () MD5=A070FD9509392CEB84A3ED8F8A42A504 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
  1654. [2010/11/04 20:57:46 | 000,372,736 | ---- | M] () MD5=B424A0AF636B1D3DAE3A664285EF9795 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
  1655. [2009/06/10 16:23:04 | 000,028,672 | ---- | M] () MD5=A5B5F03020C0A01276801CF2C807FF8C -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
  1656. [2010/11/04 20:57:46 | 000,610,304 | ---- | M] () MD5=DF1F3AFE18D254F759BB1A000B811C15 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
  1657. [2009/06/10 16:14:40 | 000,041,984 | ---- | M] () MD5=DD26812B72AF01116F7A1DDD4FA21E49 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.STLCLR.dll
  1658. [2009/06/10 16:23:04 | 000,005,632 | ---- | M] () MD5=BBAEF0C6E310A25D3BCCAA2ADC538F82 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
  1659. [2010/04/08 15:33:17 | 000,733,184 | ---- | M] () MD5=6EB73468B811FEA67F87367A28D181BB -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.CommonIDE\8.0.0.0__b03f5f7f11d50a3a\microsoft.visualstudio.commonide.dll
  1660. [2010/04/08 15:33:20 | 000,106,496 | ---- | M] () MD5=D55A304702CC9F83A54F67FB4FA90549 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Configuration\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Configuration.dll
  1661. [2010/04/08 15:25:52 | 000,049,152 | ---- | M] () MD5=0204A4EFAC2AB1338FE398389103392B -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.DebuggerVisualizers\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.DebuggerVisualizers.dll
  1662. [2010/04/08 15:33:20 | 000,434,176 | ---- | M] () MD5=A3FE76ED7AB2DE1ED1CD58BFCA4C4308 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Design\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Design.dll
  1663. [2010/04/08 15:33:36 | 001,859,584 | ---- | M] () MD5=898EE60BEE554C509969149875DDE899 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Editors\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Editors.dll
  1664. [2010/04/08 15:33:38 | 000,024,576 | ---- | M] () MD5=3498FAA72B4643AC448913473ECAB5A6 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.HostingProcess.Utilities.Sync\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.HostingProcess.Utilities.Sync.dll
  1665. [2010/04/08 15:33:39 | 000,049,152 | ---- | M] () MD5=0FEABE92B0B9BF5A12A2E052346750A9 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.HostingProcess.Utilities\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.HostingProcess.Utilities.dll
  1666. [2010/04/08 15:33:24 | 000,032,768 | ---- | M] () MD5=BCD01AA9DF13CA298DE8E5603810CF16 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.ManagedInterfaces\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.ManagedInterfaces.dll
  1667. [2010/04/08 15:33:21 | 000,344,064 | ---- | M] () MD5=E955D901EA021B4E89BAA07914070B11 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Package.LanguageService\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Package.LanguageService.dll
  1668. [2010/04/08 15:33:23 | 000,004,096 | ---- | M] () MD5=36C05C727EC46ABB326CC182A43E02E3 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.ProjectAggregator\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.ProjectAggregator.dll
  1669. [2010/04/08 15:33:47 | 000,806,912 | ---- | M] () MD5=C95AFA6E9733A5118C076A26CD1B2267 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Publish\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Publish.dll
  1670. [2010/04/08 15:33:22 | 000,249,856 | ---- | M] () MD5=D3D257A5140422A17ECB4D85A249EF36 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Shell.Design\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Shell.Design.dll
  1671. [2010/04/08 15:33:23 | 000,376,832 | ---- | M] () MD5=669D7717532331180C86E692EFC248AE -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Shell\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Shell.dll
  1672. [2010/04/08 15:33:19 | 000,015,872 | ---- | M] () MD5=E44AA3564E4C522C8FC9B51196488955 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.TemplateWizardInterface\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.TemplateWizardInterface.dll
  1673. [2010/04/08 15:33:09 | 000,211,736 | ---- | M] () MD5=2D273C8B22DA28704B4968E5197A793F -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.dll
  1674. [2010/04/08 15:33:09 | 000,105,248 | ---- | M] () MD5=F05A0DC8BC23982813A4AD61EAA89E7D -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.dll
  1675. [2010/04/08 15:33:07 | 000,330,520 | ---- | M] () MD5=7FBD0EDFBE1A28CD9FC392735699E749 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.dll
  1676. [2010/04/08 15:33:10 | 000,039,712 | ---- | M] () MD5=52FC5D2D66561348D3ECF4BB5F55145D -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.dll
  1677. [2010/04/08 15:33:10 | 000,039,704 | ---- | M] () MD5=3DAE657D730C6B4E50107831F7B334E8 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.dll
  1678. [2010/04/08 15:33:08 | 000,072,472 | ---- | M] () MD5=69A552F5D231C02F43F1E18ABC69B131 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.dll
  1679. [2010/04/08 15:33:15 | 000,016,384 | ---- | M] () MD5=4D064E04F3D498E49F545FBEFEFD39EF -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.VSContentInstaller\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.VSContentInstaller.dll
  1680. [2010/04/08 15:33:21 | 000,360,448 | ---- | M] () MD5=6197D7C45305377B8DC0B72DCCF7BC45 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Windows.Forms\2.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Windows.Forms.dll
  1681. [2010/04/08 15:33:20 | 000,073,728 | ---- | M] () MD5=8CAE0671D23233812E0C2F2AE9368FDC -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.WizardFramework\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.WizardFramework.Dll
  1682. [2010/04/08 15:25:43 | 000,053,248 | ---- | M] () MD5=5AEE74056A4EF4ADEB708D17BACFD5F3 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Zip\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Zip.dll
  1683. [2010/04/08 15:33:21 | 000,294,912 | ---- | M] () MD5=84C39155D5D6AEDBECB9E1C6C107E305 -- C:\Windows\assembly\GAC_MSIL\Microsoft.VisualStudio\2.0.0.0__b03f5f7f11d50a3a\microsoft.visualstudio.dll
  1684. [2009/06/10 16:23:04 | 000,012,800 | ---- | M] () MD5=71C2F1A0F8FFD6D017F039AC023DE81C -- C:\Windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
  1685. [2009/06/10 16:23:04 | 000,032,768 | ---- | M] () MD5=45F2E4914DDCDA6F468D99FAA91911F2 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
  1686. [2010/04/08 15:33:35 | 004,202,496 | ---- | M] () MD5=8980A73297251F71AE19E319A1413A5E -- C:\Windows\assembly\GAC_MSIL\Microsoft.VSDesigner\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VSDesigner.dll
  1687. [2009/07/13 21:13:08 | 000,004,096 | ---- | M] () MD5=04D3E891B3256A1EBD36FA7B6F984920 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.resources.dll
  1688. [2009/07/13 20:25:15 | 000,009,728 | ---- | M] () MD5=96F718F03F4D8782D7EB11954AC0E914 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.GetDiagInput\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.dll
  1689. [2009/07/13 21:13:08 | 000,004,096 | ---- | M] () MD5=ADD629AFA64864C8519B2485F6F61554 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.resources.dll
  1690. [2009/07/13 20:26:39 | 000,010,752 | ---- | M] () MD5=78EF40CE03E23CB6702391D919F95436 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.dll
  1691. [2009/07/13 21:13:08 | 000,004,096 | ---- | M] () MD5=84AA3A80B726C6DCCDAA38A879862D6D -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.resources.dll
  1692. [2009/07/13 20:25:40 | 000,009,216 | ---- | M] () MD5=EE5B0505F2E8E8305748DD270A7AD929 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.dll
  1693. [2009/07/13 21:13:08 | 000,004,096 | ---- | M] () MD5=BEBFDDCB2DB36E9302A4358878C8CFD4 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.resources.dll
  1694. [2009/07/13 20:25:32 | 000,008,192 | ---- | M] () MD5=7FBCA94271448B41DB000C98C9615312 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.dll
  1695. [2010/11/20 07:19:49 | 000,004,096 | ---- | M] () MD5=B8E015AD059FFAFCE9CB40DF775B11E0 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.SDHost.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.SDHost.resources.dll
  1696. [2009/07/13 20:25:35 | 000,024,576 | ---- | M] () MD5=915BBFA6BBF105C0C51398A3398D19CB -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.SDHost\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.SDHost.dll
  1697. [2009/07/13 21:13:08 | 000,006,656 | ---- | M] () MD5=FC66A5034B5B6A7C09FCE86C47BBF4ED -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.TroubleshootingPack.Resources\6.1.0.0_en_31bf3856ad364e35\Microsoft.Windows.Diagnosis.TroubleshootingPack.resources.dll
  1698. [2009/07/13 20:26:37 | 000,049,152 | ---- | M] () MD5=4BB0FF1D72803CC075D92CE2FBDCA2B3 -- C:\Windows\assembly\GAC_MSIL\Microsoft.Windows.Diagnosis.TroubleshootingPack\6.1.0.0__31bf3856ad364e35\Microsoft.Windows.Diagnosis.TroubleshootingPack.dll
  1699. [2010/11/20 07:19:49 | 000,013,824 | ---- | M] () MD5=C58C7003380F76221AB9B5BBB4AE4452 -- C:\Windows\assembly\GAC_MSIL\Microsoft.WSMan.Management.Resources\1.0.0.0_en_31bf3856ad364e35\Microsoft.WSMan.Management.resources.dll
  1700. [2010/11/20 07:36:00 | 000,286,720 | ---- | M] () MD5=64C192235DF8F704412F0D66BAF5C1B1 -- C:\Windows\assembly\GAC_MSIL\Microsoft.WSMan.Management\1.0.0.0__31bf3856ad364e35\Microsoft.WSMan.Management.dll
  1701. [2009/07/13 20:22:00 | 000,007,168 | ---- | M] () MD5=D5F86545FAF811ED2CCF3C6117B0EC44 -- C:\Windows\assembly\GAC_MSIL\Microsoft.WSMan.Runtime\1.0.0.0__31bf3856ad364e35\Microsoft.WSMan.Runtime.dll
  1702. [2009/06/10 16:23:04 | 000,007,168 | ---- | M] () MD5=E5640EF09DA87B03E78F18F850CFF728 -- C:\Windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
  1703. [2009/07/13 21:13:12 | 001,552,384 | ---- | M] () MD5=5D85FA66189E6832466C8DEE97CA8C3F -- C:\Windows\assembly\GAC_MSIL\MiguiControls.Resources\1.0.0.0_en_31bf3856ad364e35\MIGUIControls.resources.dll
  1704. [2010/11/20 07:36:00 | 003,416,064 | ---- | M] () MD5=CD35B1936F50990D1FCEAE31E2D1553F -- C:\Windows\assembly\GAC_MSIL\MiguiControls\1.0.0.0__31bf3856ad364e35\MIGUIControls.dll
  1705. [2010/11/20 07:19:49 | 000,036,864 | ---- | M] () MD5=E5956455F8A07B174CF146247EC6315E -- C:\Windows\assembly\GAC_MSIL\MMCEx.Resources\3.0.0.0_en_31bf3856ad364e35\MMCEx.Resources.dll
  1706. [2009/07/13 20:26:50 | 000,421,888 | ---- | M] () MD5=A9D4275CE5EA165C267AE05A6821CB54 -- C:\Windows\assembly\GAC_MSIL\MMCEx\3.0.0.0__31bf3856ad364e35\MMCEx.dll
  1707. [2010/11/20 07:19:49 | 000,004,096 | ---- | M] () MD5=930887F063E075C31E38E435F9C3D94C -- C:\Windows\assembly\GAC_MSIL\MMCFxCommon.Resources\3.0.0.0_en_31bf3856ad364e35\MMCFxCommon.Resources.dll
  1708. [2009/07/13 20:26:07 | 000,110,592 | ---- | M] () MD5=E72BF459A519312B4FF7F3FA8A85BA13 -- C:\Windows\assembly\GAC_MSIL\MMCFxCommon\3.0.0.0__31bf3856ad364e35\MMCFxCommon.dll
  1709. [2010/11/20 07:19:49 | 000,049,152 | ---- | M] () MD5=B0F301AA13B7E4F227F6964856739530 -- C:\Windows\assembly\GAC_MSIL\napinit.resources\6.1.0.0_en_31bf3856ad364e35\napinit.Resources.dll
  1710. [2009/07/13 20:22:44 | 000,073,728 | ---- | M] () MD5=0E2E919A5255D305CF1B3AE9B9D452F1 -- C:\Windows\assembly\GAC_MSIL\napinit\6.1.0.0__31bf3856ad364e35\NAPINIT.DLL
  1711. [2009/07/13 21:12:16 | 000,233,472 | ---- | M] () MD5=804C49310D2EA3B1A2E3809CE3C93B47 -- C:\Windows\assembly\GAC_MSIL\napsnap.resources\6.1.0.0_en_31bf3856ad364e35\napsnap.resources.dll
  1712. [2009/07/13 20:25:01 | 000,454,656 | ---- | M] () MD5=FC35785CC6FD225A4E504A23DE13D085 -- C:\Windows\assembly\GAC_MSIL\napsnap\6.1.0.0__31bf3856ad364e35\NAPSNAP.DLL
  1713. [2010/11/20 07:36:00 | 001,077,248 | ---- | M] () MD5=95DE3CF54E0A360EED766DBDDF152F0D -- C:\Windows\assembly\GAC_MSIL\Narrator\6.1.0.0__31bf3856ad364e35\Narrator.exe
  1714. [2010/11/04 20:53:21 | 000,598,016 | ---- | M] () MD5=AEFD96A1A087027A7EDC21F83F1B4727 -- C:\Windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
  1715. [2009/06/10 16:14:50 | 000,032,768 | ---- | M] () MD5=24F02A6A94DC8AE6F2ACDA7950CBEEB3 -- C:\Windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
  1716. [2009/06/10 16:14:51 | 000,042,856 | ---- | M] () MD5=E56F39F6B7FDA0AC77A79B0FD3DE1A2F -- C:\Windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
  1717. [2009/06/10 16:14:43 | 000,196,608 | ---- | M] () MD5=C9DF30B6F5D99C8147C528528B9CC498 -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
  1718. [2009/06/10 16:14:44 | 000,139,264 | ---- | M] () MD5=98F2493B40E00061B4A4369E63790293 -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
  1719. [2010/11/04 20:53:23 | 000,397,312 | ---- | M] () MD5=4E9FDA223530F931AC1F03ABB58E4DA5 -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
  1720. [2009/06/10 16:14:44 | 000,163,840 | ---- | M] () MD5=13E8EC241CA1402C923DF3A1DA9CAF70 -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
  1721. [2012/02/10 18:31:41 | 005,283,840 | ---- | M] () MD5=530DFD580E4C341B267ED4E2A56B8233 -- C:\Windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
  1722. [2009/06/10 16:14:52 | 000,864,256 | ---- | M] () MD5=0F8242348EBA698FF93193A6BDC55362 -- C:\Windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
  1723. [2012/02/10 18:31:41 | 000,532,480 | ---- | M] () MD5=93CF6C96CDBFC1834A28F835B769E8BA -- C:\Windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
  1724. [2009/06/10 16:15:18 | 000,005,632 | ---- | M] () MD5=AA7004ABA8C37DDCA200E16F1570EF62 -- C:\Windows\assembly\GAC_MSIL\Sentinel.v3.5Client\3.5.0.0__b03f5f7f11d50a3a\Sentinel.v3.5Client.dll
  1725. [2010/11/04 20:52:39 | 000,110,592 | ---- | M] () MD5=6F145DEF09821EB6614C501430CB838C -- C:\Windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
  1726. [2010/11/04 20:52:39 | 000,128,848 | ---- | M] () MD5=F476EC40033CDB91EFBE73EB99B8362D -- C:\Windows\assembly\GAC_MSIL\SMSvcHost\3.0.0.0__b03f5f7f11d50a3a\SMSvcHost.exe
  1727. [2009/06/10 16:23:17 | 000,110,592 | ---- | M] () MD5=3C8AF820562CC8E3A1CF82650518F66C -- C:\Windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
  1728. [2010/11/04 20:53:30 | 000,045,056 | ---- | M] () MD5=6D593E9AE74E39A62F8184515B27DF28 -- C:\Windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
  1729. [2010/04/08 15:33:10 | 000,039,624 | ---- | M] () MD5=80F57E4804E4BA1B203F8427C0475470 -- C:\Windows\assembly\GAC_MSIL\System.AddIn\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.dll
  1730. [2012/01/03 21:50:53 | 000,163,840 | ---- | M] () MD5=C2EC2AD05B97F9124399E1DA1D1386C2 -- C:\Windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
  1731. [2010/11/04 20:53:30 | 000,057,344 | ---- | M] () MD5=27E76A55FA5C3586297C2D42986304AC -- C:\Windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\3.5.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
  1732. [2010/11/04 20:58:04 | 000,081,920 | ---- | M] () MD5=ED2D3B032733BFC7A68FCE05BC7F93B4 -- C:\Windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
  1733. [2010/11/04 20:58:04 | 000,425,984 | ---- | M] () MD5=5A7A33F7F9DFC0C0A8B8E000F4D9D898 -- C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
  1734. [2010/11/04 20:53:30 | 000,667,648 | ---- | M] () MD5=FC114C6C8AB34F1A357069AD3E4477F8 -- C:\Windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
  1735. [2010/11/04 20:53:31 | 000,053,248 | ---- | M] () MD5=82D34DEB3105E63981A0306B03C10A07 -- C:\Windows\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
  1736. [2010/11/04 20:53:31 | 000,229,376 | ---- | M] () MD5=02B81AAEB463E966372AF6A1C0B6038E -- C:\Windows\assembly\GAC_MSIL\System.Data.Entity.Design\3.5.0.0__b77a5c561934e089\System.Data.Entity.Design.dll
  1737. [2010/11/04 20:53:31 | 002,879,488 | ---- | M] () MD5=EEDCBC7607D2852BBF74409B49A8D1C1 -- C:\Windows\assembly\GAC_MSIL\System.Data.Entity\3.5.0.0__b77a5c561934e089\System.Data.Entity.dll
  1738. [2010/11/04 20:53:31 | 000,684,032 | ---- | M] () MD5=8AB40EB71BB5D5F4641AA5895712B981 -- C:\Windows\assembly\GAC_MSIL\System.Data.Linq\3.5.0.0__b77a5c561934e089\System.Data.Linq.dll
  1739. [2010/11/04 20:53:32 | 000,462,848 | ---- | M] () MD5=606ACF1553423BFDD3CABEBA3DF264B9 -- C:\Windows\assembly\GAC_MSIL\System.Data.Services.Client\3.5.0.0__b77a5c561934e089\System.Data.Services.Client.dll
  1740. [2010/11/04 20:53:32 | 000,163,840 | ---- | M] () MD5=0ACA904F87E674CF3CB6746D9D3AB321 -- C:\Windows\assembly\GAC_MSIL\System.Data.Services.Design\3.5.0.0__b77a5c561934e089\System.Data.Services.Design.dll
  1741. [2010/11/04 20:53:32 | 000,692,224 | ---- | M] () MD5=4BA482E447D6096E8D4348AAE306CE1B -- C:\Windows\assembly\GAC_MSIL\System.Data.Services\3.5.0.0__b77a5c561934e089\System.Data.Services.dll
  1742. [2009/12/09 06:51:19 | 000,236,392 | ---- | M] () MD5=A200E7209B42BAA18F438695CE45B0B9 -- C:\Windows\assembly\GAC_MSIL\System.Data.SqlServerCe\9.0.242.0__89845dcd8080cc91\System.Data.SqlServerCe.dll
  1743. [2010/11/04 20:58:05 | 000,745,472 | ---- | M] () MD5=800484A3335EACDAA9600120385CCBDC -- C:\Windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
  1744. [2010/11/04 20:58:05 | 000,970,752 | ---- | M] () MD5=418EC83A2FC441A3D40F3FDCDA851392 -- C:\Windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
  1745. [2012/03/21 17:32:36 | 004,927,488 | ---- | M] () MD5=93B68EBA6B5BB6AC877441C8BE9E40C0 -- C:\Windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
  1746. [2010/11/04 20:53:32 | 000,290,816 | ---- | M] () MD5=CD86BDCB5E115635E6AB7DFE77FC1D11 -- C:\Windows\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\3.5.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
  1747. [2009/06/10 16:23:18 | 000,188,416 | ---- | M] () MD5=EE1DCDAA3EA8F53DA56116875CD01653 -- C:\Windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
  1748. [2010/11/04 20:58:06 | 000,401,408 | ---- | M] () MD5=AF1F47FBADABB9134002359970F5FD1C -- C:\Windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
  1749. [2009/06/10 16:23:18 | 000,081,920 | ---- | M] () MD5=D195A195E3D16A867FD4382D786313B8 -- C:\Windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
  1750. [2012/04/23 17:35:09 | 000,630,784 | ---- | M] () MD5=1312BDEE8EC4F13CBB25BDBB359768A0 -- C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
  1751. [2010/11/04 20:52:27 | 000,126,976 | ---- | M] () MD5=DF7FEE2563BF2D59926B786FBF636510 -- C:\Windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
  1752. [2010/11/04 20:52:27 | 000,442,368 | ---- | M] () MD5=9638C20A92962CAFC45E8F48AE6238F5 -- C:\Windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
  1753. [2009/06/10 16:13:54 | 000,131,072 | ---- | M] () MD5=AC45DB17E166ECEBD320D4FA2820C1B6 -- C:\Windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
  1754. [2010/11/20 07:19:49 | 000,253,952 | ---- | M] () MD5=53998D919FABB0F5EF2BD7C38533D2B7 -- C:\Windows\assembly\GAC_MSIL\System.Management.Automation.Resources\1.0.0.0_en_31bf3856ad364e35\System.Management.Automation.Resources.dll
  1755. [2010/11/20 07:36:01 | 003,010,560 | ---- | M] () MD5=4214698AD147EA8E83CC0E7DCF883DB3 -- C:\Windows\assembly\GAC_MSIL\System.Management.Automation\1.0.0.0__31bf3856ad364e35\System.Management.Automation.dll
  1756. [2010/11/04 20:53:32 | 000,143,360 | ---- | M] () MD5=BCD4761D6E2290B490498126C67A35D0 -- C:\Windows\assembly\GAC_MSIL\System.Management.Instrumentation\3.5.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
  1757. [2010/11/04 20:58:09 | 000,385,024 | ---- | M] () MD5=52C875E8F96E4F9E69914A538C129C6E -- C:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
  1758. [2010/11/04 20:58:09 | 000,258,048 | ---- | M] () MD5=3035497DE3B9208633BC7F3604D781FB -- C:\Windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
  1759. [2010/11/04 20:53:32 | 000,237,568 | ---- | M] () MD5=74446FB0C54CB43A279E735F9C335752 -- C:\Windows\assembly\GAC_MSIL\System.Net\3.5.0.0__b03f5f7f11d50a3a\System.Net.dll
  1760. [2010/11/04 20:58:10 | 000,303,104 | ---- | M] () MD5=1D4DA021B0AD837B35AFB772CC7C636D -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
  1761. [2009/06/10 16:23:19 | 000,131,072 | ---- | M] () MD5=C9781DA4EE6A5BBAE271CC0AC4B25D7C -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
  1762. [2010/11/04 20:52:27 | 000,970,752 | ---- | M] () MD5=01D4E1005C901889517EED7F438DB501 -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
  1763. [2010/11/04 20:58:10 | 000,258,048 | ---- | M] () MD5=A15491BE2D672FCDBFEB250E9594D7ED -- C:\Windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
  1764. [2010/11/04 20:52:40 | 000,073,728 | ---- | M] () MD5=4E0883AF9D5B4F2AAFD19F6663CBAF5F -- C:\Windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
  1765. [2010/11/04 20:52:41 | 000,032,768 | ---- | M] () MD5=9A9827B4F896F40607DF8103B9C438C0 -- C:\Windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
  1766. [2010/11/04 20:52:44 | 000,569,344 | ---- | M] () MD5=EA5213E7090668C917EEB947FDC3CD46 -- C:\Windows\assembly\GAC_MSIL\System.ServiceModel.Web\3.5.0.0__31bf3856ad364e35\System.ServiceModel.Web.dll
  1767. [2010/11/04 20:52:30 | 005,988,352 | ---- | M] () MD5=196D093057DE9D765FF8DDFA24215D3B -- C:\Windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
  1768. [2010/11/04 20:58:10 | 000,114,688 | ---- | M] () MD5=F68CAFF425A9F37E498193BDDC5CC652 -- C:\Windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
  1769. [2009/06/10 16:14:45 | 000,688,128 | ---- | M] () MD5=31588B867657A7DF046AC1908550D73C -- C:\Windows\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
  1770. [2010/11/04 20:53:32 | 000,077,824 | ---- | M] () MD5=DE8831D65E92BC50304F37CC75EC31D5 -- C:\Windows\assembly\GAC_MSIL\System.Web.Abstractions\3.5.0.0__31bf3856ad364e35\System.Web.Abstractions.dll
  1771. [2010/11/04 20:53:32 | 000,032,768 | ---- | M] () MD5=4A1EF32D7C394D8400870C73B40CA2A4 -- C:\Windows\assembly\GAC_MSIL\System.Web.DynamicData.Design\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.Design.dll
  1772. [2010/11/04 20:53:32 | 000,229,376 | ---- | M] () MD5=054F8B86C1258EDDB833A38B54155CF7 -- C:\Windows\assembly\GAC_MSIL\System.Web.DynamicData\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.dll
  1773. [2010/11/04 20:53:32 | 000,131,072 | ---- | M] () MD5=A282147F21B0DB24DB3B3566E828A8AE -- C:\Windows\assembly\GAC_MSIL\System.Web.Entity.Design\3.5.0.0__b77a5c561934e089\System.Web.Entity.Design.dll
  1774. [2010/11/04 20:53:33 | 000,139,264 | ---- | M] () MD5=A5722B31B8454EE1CC50753C93CFDB4E -- C:\Windows\assembly\GAC_MSIL\System.Web.Entity\3.5.0.0__b77a5c561934e089\System.Web.Entity.dll
  1775. [2010/11/04 20:53:33 | 000,335,872 | ---- | M] () MD5=C935E89C6F71F188282632F35A04D0C1 -- C:\Windows\assembly\GAC_MSIL\System.Web.Extensions.Design\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.Design.dll
  1776. [2011/12/25 15:42:15 | 001,277,952 | ---- | M] () MD5=58AD1FECFBAEE633D6326377D8E0982E -- C:\Windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
  1777. [2010/11/04 20:58:11 | 000,835,584 | ---- | M] () MD5=18FDA35C607C486C0D5B91D7DD06CD17 -- C:\Windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
  1778. [2009/06/10 16:23:20 | 000,077,824 | ---- | M] () MD5=1CDB3B55F1330F85A674B0B5927399F4 -- C:\Windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
  1779. [2010/11/04 20:53:33 | 000,061,440 | ---- | M] () MD5=6D138BD2348457A5097F2772C78FE094 -- C:\Windows\assembly\GAC_MSIL\System.Web.Routing\3.5.0.0__31bf3856ad364e35\System.Web.Routing.dll
  1780. [2010/11/04 20:58:12 | 000,839,680 | ---- | M] () MD5=8C0B098B41A27B08D58CAE7A61A3BA19 -- C:\Windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
  1781. [2012/03/21 17:32:36 | 005,025,792 | ---- | M] () MD5=68CE18072E9CDFE63DD2E083868C7433 -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
  1782. [2009/06/10 16:15:18 | 000,012,288 | ---- | M] () MD5=1CCEE8037C8EF9A08DD0ADB7E3E38D78 -- C:\Windows\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\System.Windows.Presentation.dll
  1783. [2010/11/04 20:53:45 | 001,142,784 | ---- | M] () MD5=A422312AE61E44B166FAC615786296A1 -- C:\Windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
  1784. [2010/11/04 20:53:46 | 001,630,208 | ---- | M] () MD5=BD0B0F768E7E74C5CD7A34B8B4BCC81D -- C:\Windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
  1785. [2010/11/04 20:53:46 | 000,540,672 | ---- | M] () MD5=32FF0E945F51F5147A8304026B5C19EA -- C:\Windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
  1786. [2010/11/04 20:52:45 | 000,507,904 | ---- | M] () MD5=CC3B424ED10A8E477B5D466188531F26 -- C:\Windows\assembly\GAC_MSIL\System.WorkflowServices\3.5.0.0__31bf3856ad364e35\System.WorkflowServices.dll
  1787. [2010/11/04 20:53:34 | 000,139,264 | ---- | M] () MD5=EF6CEBC989FBDAEEB83E5662F1499FC0 -- C:\Windows\assembly\GAC_MSIL\System.Xml.Linq\3.5.0.0__b77a5c561934e089\System.Xml.Linq.dll
  1788. [2010/11/04 20:58:14 | 002,048,000 | ---- | M] () MD5=5B3FA17E1CD6FBBDF41AC34DAEECC256 -- C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
  1789. [2012/01/03 21:51:03 | 003,190,784 | ---- | M] () MD5=5259AD96BE93F3DC9B649759DAC05B7A -- C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
  1790. [2009/07/13 21:12:46 | 000,007,168 | ---- | M] () MD5=ABBF43F681EF160CAAB7C41BC289DA06 -- C:\Windows\assembly\GAC_MSIL\TaskScheduler.Resources\6.1.0.0_en_31bf3856ad364e35\TaskScheduler.resources.dll
  1791. [2010/11/20 07:36:00 | 000,167,936 | ---- | M] () MD5=1D264989FFABEF36745304F5DD216DC7 -- C:\Windows\assembly\GAC_MSIL\TaskScheduler\6.1.0.0__31bf3856ad364e35\TaskScheduler.dll
  1792. [2009/06/10 16:14:45 | 000,172,032 | ---- | M] () MD5=3F47DB8D603A84FBF1154901AAC177CD -- C:\Windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
  1793. [2009/06/10 16:14:46 | 000,380,928 | ---- | M] () MD5=32D7B8CC805D2DA70D01DA89982DCE1D -- C:\Windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
  1794. [2009/06/10 16:14:46 | 000,040,960 | ---- | M] () MD5=0D2A84FF4383B4F41EDA8B4DE2D45D6C -- C:\Windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
  1795. [2009/06/10 16:14:46 | 000,098,304 | ---- | M] () MD5=62DF8C1D169752DF885E44D21309F7E6 -- C:\Windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
  1796. [2010/04/08 15:33:08 | 000,013,024 | ---- | M] () MD5=8388E76E9B756543BA0457B7145EED0F -- C:\Windows\assembly\GAC_MSIL\VSTADTEProvider.Interop\8.0.0.0__b03f5f7f11d50a3a\VSTADTEProvider.Interop.dll
  1797. [2012/02/10 18:31:42 | 001,253,376 | ---- | M] () MD5=9F668404AB36B97B0FF5C4B140A1F1FE -- C:\Windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
  1798. [2009/06/10 16:14:47 | 000,094,208 | ---- | M] () MD5=D9673C241B14E5526A81B3ABAD3FD3BA -- C:\Windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
  1799. [2010/11/04 20:52:42 | 000,149,328 | ---- | M] () MD5=8AB248DD85018CC3232D2F20E45A30E7 -- C:\Windows\assembly\GAC_MSIL\WsatConfig\3.0.0.0__b03f5f7f11d50a3a\WsatConfig.exe
  1800.  
  1801. [color=#A23BEC]< HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s >[/color]
  1802. "" = Microsoft WBEM New Event Subsystem
  1803. [HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32]
  1804. "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 20:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
  1805. "ThreadingModel" = Both
  1806.  
  1807. [color=#A23BEC]< HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color]
  1808. [HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32]
  1809. "ThreadingModel" = Both
  1810. "" = C:\Users\Evaristo\AppData\Local\{2a9387da-432a-b448-c2a4-1174635168f0}\n.
  1811.  
  1812. [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s >[/color]
  1813. "" = Microsoft WBEM New Event Subsystem
  1814. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32]
  1815. "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 20:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
  1816. "ThreadingModel" = Both
  1817.  
  1818. [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color]
  1819. "" = MruPidlList
  1820. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  1821. "" = %SystemRoot%\system32\shell32.dll -- [2012/01/04 03:59:38 | 012,872,704 | ---- | M] (Microsoft Corporation)
  1822. "ThreadingModel" = Apartment
  1823.  
  1824. [color=#A23BEC]< type c:\diskreport.txt /c >[/color]
  1825. Microsoft DiskPart version 6.1.7601
  1826. Copyright (C) 1999-2008 Microsoft Corporation.
  1827. On computer: HP
  1828.   Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  1829.   ----------  ---  -----------  -----  ----------  -------  ---------  --------
  1830.   Volume 0     C                NTFS   Partition    137 GB  Healthy    Boot    
  1831.   Volume 1     D   RECOVERY     NTFS   Partition     11 GB  Healthy            
  1832.   Volume 2         SYSTEM       NTFS   Partition    201 MB  Healthy    System  
  1833.  
  1834. [color=#A23BEC]< MD5 for: AFD.SYS  >[/color]
  1835. [2011/04/24 21:35:40 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=0DB7A48388D54D154EBEC120461A0FCD -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16802_none_d81220b5bf827af7\afd.sys
  1836. [2010/11/20 03:40:03 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=1151FD4FB0216CFED887BFDE29EBD516 -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17514_none_d9efac7dbcaf385b\afd.sys
  1837. [2011/04/24 21:18:03 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=9EBBBA55060F786F0FCAA3893BFA2806 -- C:\Windows\System32\drivers\afd.sys
  1838. [2011/04/24 21:18:03 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=9EBBBA55060F786F0FCAA3893BFA2806 -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_d9f97e05bca8003a\afd.sys
  1839. [2011/04/24 21:27:23 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=C114AB7A1550D42EA1700FFD4179CF5A -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.20951_none_d864ad9ad8c98d1f\afd.sys
  1840. [2011/04/24 22:24:09 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=C427F91A748CD342A2B3F9278D9FD6A5 -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21712_none_da774a9ad5cea29e\afd.sys
  1841. [2009/07/13 18:12:38 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=DDC040FDB01EF1712A6B13E52AFB104C -- C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16385_none_d7be98b5bfc0b4c1\afd.sys
  1842.  
  1843. [color=#A23BEC]< MD5 for: ATAPI.SYS  >[/color]
  1844. [2009/07/13 20:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
  1845. [2009/07/13 20:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
  1846. [2009/07/13 20:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
  1847. [2009/07/13 20:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys
  1848.  
  1849. [color=#A23BEC]< MD5 for: CSC.SYS  >[/color]
  1850. [2009/07/13 18:15:13 | 000,387,584 | ---- | M] (Microsoft Corporation) MD5=27C9490BDD0AE48911AB8CF1932591ED -- C:\Windows\winsxs\x86_microsoft-windows-offlinefiles-core_31bf3856ad364e35_6.1.7600.16385_none_9e1e9f0abd3adf87\csc.sys
  1851. [2010/11/20 03:44:36 | 000,388,096 | ---- | M] (Microsoft Corporation) MD5=3C2177A897B4CA2788C6FB0C3FD81D4B -- C:\Windows\winsxs\x86_microsoft-windows-offlinefiles-core_31bf3856ad364e35_6.1.7601.17514_none_a04fb2d2ba296321\csc.sys
  1852.  
  1853. [color=#A23BEC]< MD5 for: DFSC.SYS  >[/color]
  1854. [2011/04/26 21:33:46 | 000,078,336 | ---- | M] (Microsoft Corporation) MD5=83D1ECEA8FAAE75604C0FA49AC7AD996 -- C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16804_none_87c60c95472f7333\dfsc.sys
  1855. [2011/04/26 21:24:42 | 000,078,336 | ---- | M] (Microsoft Corporation) MD5=886E8C1608146CC355DDD455F5C8DD87 -- C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.20953_none_8818997a6076855b\dfsc.sys
  1856. [2009/07/13 18:14:17 | 000,078,336 | ---- | M] (Microsoft Corporation) MD5=8E09E52EE2E3CEB199EF3DD99CF9E3FB -- C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys
  1857. [2010/11/20 03:42:32 | 000,078,336 | ---- | M] (Microsoft Corporation) MD5=F024449C97EC1E464AAFFDA18593DB88 -- C:\Windows\System32\drivers\dfsc.sys
  1858. [2010/11/20 03:42:32 | 000,078,336 | ---- | M] (Microsoft Corporation) MD5=F024449C97EC1E464AAFFDA18593DB88 -- C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7601.17514_none_89a197c9445dfde9\dfsc.sys
  1859.  
  1860. [color=#A23BEC]< MD5 for: DISK.SYS  >[/color]
  1861. [2009/07/13 20:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\System32\drivers\disk.sys
  1862. [2009/07/13 20:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\System32\DriverStore\FileRepository\disk.inf_x86_neutral_b431b61a11f8df6c\disk.sys
  1863. [2009/07/13 20:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\winsxs\x86_disk.inf_31bf3856ad364e35_6.1.7600.16385_none_f99cd807d58018cb\disk.sys
  1864.  
  1865. [color=#A23BEC]< MD5 for: EXPLORER.EXE  >[/color]
  1866. [2011/02/26 00:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
  1867. [2009/07/13 20:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
  1868. [2011/02/26 00:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
  1869. [2009/10/31 00:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
  1870. [2011/02/26 00:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
  1871. [2010/11/20 07:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
  1872. [2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
  1873. [2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
  1874. [2009/08/03 00:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
  1875. [2009/08/03 00:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
  1876. [2009/10/31 01:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe
  1877.  
  1878. [color=#A23BEC]< MD5 for: I8042PRT.SYS  >[/color]
  1879. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\System32\drivers\i8042prt.sys
  1880. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_x86_neutral_50ad659974198591\i8042prt.sys
  1881. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_x86_neutral_7a9084e0177406eb\i8042prt.sys
  1882. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\winsxs\x86_keyboard.inf_31bf3856ad364e35_6.1.7600.16385_none_9724c3fc3a4c81ef\i8042prt.sys
  1883. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\winsxs\x86_keyboard.inf_31bf3856ad364e35_6.1.7601.17514_none_9955d7c4373b0589\i8042prt.sys
  1884. [2009/07/13 18:11:24 | 000,080,896 | ---- | M] (Microsoft Corporation) MD5=F151F0BDC47F4A28B1B20A0818EA36D6 -- C:\Windows\winsxs\x86_msmouse.inf_31bf3856ad364e35_6.1.7600.16385_none_4e0a61a033aec8c3\i8042prt.sys
  1885.  
  1886. [color=#A23BEC]< MD5 for: IASTOR.SYS  >[/color]
  1887. [2009/06/04 21:54:36 | 000,408,600 | ---- | M] (Intel Corporation) MD5=1D004CB1DA6323B1F55CAEF7F94B61D9 -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
  1888. [2009/06/04 21:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver\IaStor.sys
  1889. [2009/06/04 21:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\SwSetup\HDD\IaStor.sys
  1890. [2009/06/04 21:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Windows\System32\drivers\iaStor.sys
  1891. [2009/06/04 21:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_x86_neutral_4f144d6467fc7c22\iaStor.sys
  1892.  
  1893. [color=#A23BEC]< MD5 for: LSASS.EXE  >[/color]
  1894. [2011/11/17 02:09:25 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=05F38CB7CAB3CE8E9A1812D517DA93EF -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.21092_none_a69c8e86d7476262\lsass.exe
  1895. [2011/11/17 00:29:50 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=81951F51E318AECC2D68559E47485CC4 -- C:\Windows\System32\lsass.exe
  1896. [2011/11/17 00:29:50 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=81951F51E318AECC2D68559E47485CC4 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_a84828d7bb1480d7\lsass.exe
  1897. [2011/11/17 00:36:26 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=C2243FF9E9AAD0C30E8B1A0914DA15B6 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16915_none_a66c9bbdbde5f8fa\lsass.exe
  1898. [2009/07/13 20:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16385_none_a620e0e5be1ecda7\lsass.exe
  1899. [2009/07/13 20:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16484_none_a61fe281be1fb177\lsass.exe
  1900. [2009/07/13 20:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.20594_none_a69eaf60d7456d32\lsass.exe
  1901. [2009/07/13 20:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_a851f4adbb0d5141\lsass.exe
  1902. [2011/11/17 00:24:04 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=FBCB2DFA40862DAA7B1534C9538208A5 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_a8a284cad4562b09\lsass.exe
  1903.  
  1904. [color=#A23BEC]< MD5 for: NETBT.SYS  >[/color]
  1905. [2010/11/20 03:39:44 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=280122DDCF04B378EDD1AD54D71C1E54 -- C:\Windows\System32\drivers\netbt.sys
  1906. [2010/11/20 03:39:44 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=280122DDCF04B378EDD1AD54D71C1E54 -- C:\Windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_626c324d55864070\netbt.sys
  1907. [2009/07/13 18:12:21 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=DD52A733BF4CA5AF84562A5E2F963B91 -- C:\Windows\winsxs\x86_microsoft-windows-netbt_31bf3856ad364e35_6.1.7600.16385_none_603b1e855897bcd6\netbt.sys
  1908.  
  1909. [color=#A23BEC]< MD5 for: SERIAL.SYS  >[/color]
  1910. [2009/07/13 18:45:33 | 000,083,456 | ---- | M] (Microsoft Corporation) MD5=5FB7FCEA0490D821F26F39CC5EA3D1E2 -- C:\Windows\System32\drivers\serial.sys
  1911. [2009/07/13 18:45:33 | 000,083,456 | ---- | M] (Microsoft Corporation) MD5=5FB7FCEA0490D821F26F39CC5EA3D1E2 -- C:\Windows\System32\DriverStore\FileRepository\msports.inf_x86_neutral_c1a802e06677f73f\serial.sys
  1912. [2009/07/13 18:45:33 | 000,083,456 | ---- | M] (Microsoft Corporation) MD5=5FB7FCEA0490D821F26F39CC5EA3D1E2 -- C:\Windows\winsxs\x86_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_f86e06d519b1d9a4\serial.sys
  1913.  
  1914. [color=#A23BEC]< MD5 for: SERVICES.EXE  >[/color]
  1915. [2009/07/13 20:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
  1916. [2009/07/13 20:14:36 | 000,259,072 | ---- | M] ()[b] Unable to obtain MD5[/b] -- C:\Windows\System32\services.exe
  1917.  
  1918. [color=#A23BEC]< MD5 for: SVCHOST.EXE  >[/color]
  1919. [2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
  1920. [2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
  1921.  
  1922. [color=#A23BEC]< MD5 for: TCPIP.SYS  >[/color]
  1923. [2011/04/24 23:56:06 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=0158D5E9982E9D6A90DFC802F618E130 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_b347f075c77b9c9d\tcpip.sys
  1924. [2011/06/21 00:34:23 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=04E4A7D53A7ACE02E8C55B17A498F631 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17638_none_b513df73c4b4f466\tcpip.sys
  1925. [2011/09/29 11:02:44 | 001,301,872 | ---- | M] (Microsoft Corporation) MD5=22F7E7CBCA308DEE3428B097D4F8A61C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_b38e8546e0cbe4a1\tcpip.sys
  1926. [2011/04/24 23:31:30 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=24326784DF8F3D5F5BBB9F878CE33C14 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_b52f4dc5c4a121e0\tcpip.sys
  1927. [2009/07/13 20:19:10 | 001,285,712 | ---- | M] (Microsoft Corporation) MD5=2CC3D75488ABD3EC628BBB9A4FC84EFC -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_b2f46875c7b9d667\tcpip.sys
  1928. [2010/11/20 07:30:12 | 001,290,112 | ---- | M] (Microsoft Corporation) MD5=37E8FA3779668837CA9E2C36D2415949 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_b5257c3dc4a85a01\tcpip.sys
  1929. [2011/09/29 11:17:18 | 001,303,920 | ---- | M] (Microsoft Corporation) MD5=3C1C41E317710F74CEC1E7F0D5325993 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_b5a84e10ddca7566\tcpip.sys
  1930. [2012/03/30 05:29:05 | 001,287,024 | ---- | M] (Microsoft Corporation) MD5=55E9965552741F3850CB22CBBA9671ED -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_b2f57423c7b8dea8\tcpip.sys
  1931. [2011/09/29 10:43:37 | 001,285,488 | ---- | M] (Microsoft Corporation) MD5=56C198AC82EFA622DD93E9E43575F79C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_b2f8731bc7b62d86\tcpip.sys
  1932. [2011/09/29 11:03:04 | 001,290,608 | ---- | M] (Microsoft Corporation) MD5=65D10B191C59C5501A1263FC33F6894B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_b4d1ffa1c4e682b5\tcpip.sys
  1933. [2011/04/25 01:31:09 | 001,301,376 | ---- | M] (Microsoft Corporation) MD5=6D4728CFF2724FF3A4654971D61D0F1C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_b5ad1a5addc7c444\tcpip.sys
  1934. [2012/03/30 05:23:11 | 001,291,632 | ---- | M] (Microsoft Corporation) MD5=7FA2E0F8B072BD04B77B421480B6CC22 -- C:\Windows\System32\drivers\tcpip.sys
  1935. [2012/03/30 05:23:11 | 001,291,632 | ---- | M] (Microsoft Corporation) MD5=7FA2E0F8B072BD04B77B421480B6CC22 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_b52e5147c4a202d7\tcpip.sys
  1936. [2011/04/24 23:44:18 | 001,298,816 | ---- | M] (Microsoft Corporation) MD5=8861B9A06BA99C6E1D62D0C86DFAB86C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_b39a7d5ae0c2aec5\tcpip.sys
  1937. [2012/03/30 04:04:23 | 001,306,480 | ---- | M] (Microsoft Corporation) MD5=88FCDB9923EFECA207B3CEBD24407126 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_b583df0adde66104\tcpip.sys
  1938. [2011/06/21 00:30:45 | 001,301,376 | ---- | M] (Microsoft Corporation) MD5=93C444D118B184452132357C322124CD -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20992_none_b3703df4e0e237e0\tcpip.sys
  1939. [2010/06/14 01:06:58 | 001,288,576 | ---- | M] (Microsoft Corporation) MD5=A39EA325C081AD27461F630C8E3E56E0 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_b3b219fae0b0af43\tcpip.sys
  1940. [2010/06/14 01:12:30 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=BB7F39C31C4A4417FD318E7CD184E225 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_b33b1c29c7858b92\tcpip.sys
  1941. [2011/06/21 00:39:53 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=C2DAAEB48F3A47C410B041A0D2382EE1 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16839_none_b32e82b7c78da1d1\tcpip.sys
  1942. [2011/06/21 01:54:00 | 001,303,424 | ---- | M] (Microsoft Corporation) MD5=DEC4940487050AE13C60C86F40E07E75 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21754_none_b583db3edde666b6\tcpip.sys
  1943. [2012/03/30 05:08:19 | 001,303,408 | ---- | M] (Microsoft Corporation) MD5=E47C2844A1605A44178F4281E4D58B3D -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_b38bb990e0ccc871\tcpip.sys
  1944.  
  1945. [color=#A23BEC]< MD5 for: USERINIT.EXE  >[/color]
  1946. [2010/11/20 07:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
  1947. [2010/11/20 07:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
  1948. [2009/07/13 20:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
  1949.  
  1950. [color=#A23BEC]< MD5 for: VOLSNAP.SYS  >[/color]
  1951. [2009/07/13 20:19:10 | 000,245,328 | ---- | M] (Microsoft Corporation) MD5=58DF9D2481A56EDDE167E51B334D44FD -- C:\Windows\winsxs\x86_volume.inf_31bf3856ad364e35_6.1.7600.16385_none_158d0da45d68903e\volsnap.sys
  1952. [2010/11/20 07:30:16 | 000,245,632 | ---- | M] (Microsoft Corporation) MD5=F497F67932C6FA693D7DE2780631CFE7 -- C:\Windows\System32\drivers\volsnap.sys
  1953. [2010/11/20 07:30:16 | 000,245,632 | ---- | M] (Microsoft Corporation) MD5=F497F67932C6FA693D7DE2780631CFE7 -- C:\Windows\System32\DriverStore\FileRepository\volume.inf_x86_neutral_6dee0205881d1a1d\volsnap.sys
  1954. [2010/11/20 07:30:16 | 000,245,632 | ---- | M] (Microsoft Corporation) MD5=F497F67932C6FA693D7DE2780631CFE7 -- C:\Windows\winsxs\x86_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_17be216c5a5713d8\volsnap.sys
  1955.  
  1956. [color=#A23BEC]< MD5 for: WININIT.EXE  >[/color]
  1957. [2009/07/13 20:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\System32\wininit.exe
  1958. [2009/07/13 20:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe
  1959.  
  1960. [color=#A23BEC]< MD5 for: WINLOGON.EXE  >[/color]
  1961. [2009/10/28 01:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
  1962. [2009/10/28 00:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
  1963. [2010/11/20 07:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
  1964. [2010/11/20 07:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
  1965. [2009/07/13 20:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
  1966.  
  1967. [color=#E56717]========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========[/color]
  1968. [C:\Windows\System32\config\systemprofile\AppData\Local\Application Data] -> C:\Windows\system32\config\systemprofile\AppData\Local -> Junction
  1969. [C:\Windows\System32\config\systemprofile\AppData\Local\History] -> C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History -> Junction
  1970. [C:\Windows\System32\config\systemprofile\AppData\Local\Temporary Internet Files] -> C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files -> Junction
  1971. [C:\Windows\System32\config\systemprofile\Application Data] -> C:\Windows\system32\config\systemprofile\AppData\Roaming -> Junction
  1972. [C:\Windows\System32\config\systemprofile\Cookies] -> C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies -> Junction
  1973. [C:\Windows\System32\config\systemprofile\Local Settings] -> C:\Windows\system32\config\systemprofile\AppData\Local -> Junction
  1974.  
  1975. [color=#E56717]========== Alternate Data Streams ==========[/color]
  1976.  
  1977. @Alternate Data Stream - 834 bytes -> C:\ProgramData\Temp:35E5AF34
  1978. @Alternate Data Stream - 142 bytes -> C:\ProgramData\Temp:BDD83DC4
  1979.  
  1980. < End of report >