cjoint

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Format du document : text/plain

Prévisualisation

ÿþOTL logfile created on: 03/07/2014 15:40:16 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\chaffibwek\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17126)
Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

3,93 Gb Total Physical Memory | 1,81 Gb Available Physical Memory | 46,17% Memory free
7,86 Gb Paging File | 5,63 Gb Available in Paging File | 71,72% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 261,08 Gb Total Space | 94,70 Gb Free Space | 36,27% Space Free | Partition Type: NTFS
Drive D: | 16,71 Gb Total Space | 2,72 Gb Free Space | 16,30% Space Free | Partition Type: NTFS
Drive E: | 99,34 Mb Total Space | 95,41 Mb Free Space | 96,05% Space Free | Partition Type: FAT32
Drive H: | 20,00 Gb Total Space | 4,72 Gb Free Space | 23,58% Space Free | Partition Type: NTFS

Computer Name: CHAFFIBWEK-PC | User Name: chaffibwek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2014/07/03 15:37:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\chaffibwek\Desktop\OTL.exe
PRC - [2014/06/19 08:14:45 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014/06/03 17:59:05 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2014/06/03 17:58:48 | 001,030,736 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe
PRC - [2014/06/03 17:58:45 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2014/06/03 17:58:44 | 000,737,872 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014/05/14 16:24:26 | 001,863,856 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
PRC - [2013/12/21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/03/26 12:03:34 | 001,729,024 | ---- | M] () -- C:\Program Files (x86)\ZOOM\HandyShare\HandyShare_startup.exe
PRC - [2011/09/24 16:03:42 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) -- C:\Windows\SysWOW64\NLSSRV32.EXE
PRC - [2009/10/06 23:56:44 | 000,415,016 | ---- | M] (CyberLink Corp.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
PRC - [2009/10/06 00:08:42 | 000,210,216 | ---- | M] (CyberLink) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2009/08/25 19:34:30 | 000,015,544 | R--- | M] () -- C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
PRC - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2003/04/18 18:06:26 | 000,008,192 | ---- | M] () -- C:\Windows\SysWOW64\srvany.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2014/06/19 08:14:44 | 003,852,912 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2014/05/14 16:24:25 | 016,361,136 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
MOD - [2012/03/26 12:03:34 | 001,729,024 | ---- | M] () -- C:\Program Files (x86)\ZOOM\HandyShare\HandyShare_startup.exe
MOD - [2009/10/06 23:57:02 | 000,279,976 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll
MOD - [2009/10/06 23:57:02 | 000,120,232 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLSchMgr.dll
MOD - [2009/10/06 23:57:00 | 000,464,168 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLTinyDB.dll
MOD - [2009/10/06 00:08:38 | 000,931,112 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
MOD - [2009/08/25 19:34:30 | 000,015,544 | R--- | M] () -- C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
MOD - [2009/08/20 13:35:48 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2009/08/20 13:35:46 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2009/08/20 13:35:46 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2014/05/30 11:21:05 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2013/05/27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/03/23 14:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe -- (STacSV)
SRV:[b]64bit:[/b] - [2009/07/08 14:49:02 | 000,030,520 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:[b]64bit:[/b] - [2009/03/02 18:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe -- (AESTFilters)
SRV - [2014/06/19 08:14:45 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/06/03 17:59:05 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014/06/03 17:58:49 | 001,039,440 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014/06/03 17:58:45 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014/05/14 16:24:26 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/12/21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/11/04 19:31:56 | 000,092,160 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011/09/24 16:03:42 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\Windows\SysWOW64\NLSSRV32.EXE -- (nlsX86cc)
SRV - [2010/03/23 14:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe -- (STacSV)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/06/06 02:07:28 | 000,250,616 | ---- | M] (WildTangent, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2009/03/02 18:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe -- (AESTFilters)
SRV - [2009/02/22 13:00:00 | 000,129,584 | ---- | M] (EasyBits Sofware AS) [Auto | Running] -- C:\Windows\SysWOW64\ezsvc7.dll -- (ezSharedSvc)
SRV - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2003/04/18 18:06:26 | 000,008,192 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\srvany.exe -- (WIN-srvGA)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
DRV:[b]64bit:[/b] - [2014/06/03 17:58:45 | 000,130,584 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:[b]64bit:[/b] - [2014/06/03 17:58:45 | 000,112,080 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:[b]64bit:[/b] - [2013/11/27 16:32:37 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:[b]64bit:[/b] - [2013/05/28 10:29:04 | 000,291,328 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2012/09/10 11:16:48 | 000,125,304 | ---- | M] (Focusrite Audio Engineering Limited.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ffusb2audio.sys -- (ffusb2audio)
DRV:[b]64bit:[/b] - [2012/06/13 10:43:12 | 000,124,928 | ---- | M] (ZOOM) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\q2hdwebcamaud.sys -- (Q2HDWEBCAMAUD)
DRV:[b]64bit:[/b] - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/02/18 06:47:42 | 000,202,560 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudserd.sys -- (ssudserd)
DRV:[b]64bit:[/b] - [2011/02/18 06:47:42 | 000,202,560 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:[b]64bit:[/b] - [2011/02/18 06:47:42 | 000,082,112 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:[b]64bit:[/b] - [2010/11/20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010/11/20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/11/20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2010/10/25 14:11:18 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2010/07/30 07:51:52 | 000,020,552 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgderdrv.sys -- (dgderdrv)
DRV:[b]64bit:[/b] - [2010/06/24 15:00:14 | 000,016,392 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TFsExDisk.sys -- (TFsExDisk)
DRV:[b]64bit:[/b] - [2010/05/27 22:32:56 | 000,320,560 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2010/03/23 14:53:06 | 000,505,344 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:[b]64bit:[/b] - [2010/01/13 16:37:18 | 007,675,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64)
DRV:[b]64bit:[/b] - [2009/10/13 11:16:40 | 000,409,624 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009/08/22 11:54:04 | 000,084,512 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2009/07/29 14:28:24 | 000,231,944 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mafw.sys -- (MAFW)
DRV:[b]64bit:[/b] - [2009/07/21 05:39:22 | 000,140,712 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:[b]64bit:[/b] - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:43 | 000,060,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\61883.sys -- (61883)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:43 | 000,048,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avc.sys -- (Avc)
DRV:[b]64bit:[/b] - [2009/07/08 14:49:08 | 000,030,008 | ---- | M] (Hewlett-Packard) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:[b]64bit:[/b] - [2009/07/08 14:48:50 | 000,041,272 | ---- | M] (Hewlett-Packard) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:[b]64bit:[/b] - [2009/06/29 20:17:00 | 000,070,656 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\enecir.sys -- (enecir)
DRV:[b]64bit:[/b] - [2009/06/10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:[b]64bit:[/b] - [2009/06/10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:[b]64bit:[/b] - [2009/06/10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:[b]64bit:[/b] - [2009/06/10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009/06/10 22:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:[b]64bit:[/b] - [2009/06/10 22:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:38 | 001,311,232 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/04/29 09:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:[b]64bit:[/b] - [2006/05/31 10:58:25 | 000,075,608 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswmon2.sys -- (aswMon2)
DRV:[b]64bit:[/b] - [2006/05/31 10:55:29 | 000,024,920 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2010/06/24 15:00:14 | 000,016,392 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2002/04/16 12:10:52 | 000,004,899 | ---- | M] (MAGIX AG) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\MAGIX\Samplitude_10\mxasio.sys -- (MagixASIODrv)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=tele0101&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0SyBtAyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1021087137&ir=
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0C9EB48D-5145-BF7F-2010-0CA65AFB7C12}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=0&systemid=414&sr=0&q={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{16EDC01C-FD1F-47C5-ACCA-08095879D4CD}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=telemsd&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0CyCyByEtN1L2XzutBtFtBtFzztFtCtByEyBtN1L1Czu2Z1P1I1P1H1B1Q&cr=1181930704&ir=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=tele0101&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0SyBtAyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1021087137&ir=
IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}
IE - HKLM\..\SearchScopes\{16EDC01C-FD1F-47C5-ACCA-08095879D4CD}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
IE - HKLM\..\SearchScopes\{53E6849E-39B4-71F5-9864-6E18247C4A62}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=0&systemid=414&sr=0&q={searchTerms}
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=telemsd&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0CyCyByEtN1L2XzutBtFtBtFzztFtCtByEyBtN1L1Czu2Z1P1I1P1H1B1Q&cr=1181930704&ir=

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://kogoa.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=tele0101&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0SyBtAyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1021087137&ir=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\SearchScopes,DefaultScope = {77AA745B-F4F8-45DA-9B14-61D2D95054C8}
IE - HKCU\..\SearchScopes\{0C9EB48D-5145-BF7F-2010-0CA65AFB7C12}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=402A0026C706E779&affID=119357&tsp=5005
IE - HKCU\..\SearchScopes\{16EDC01C-FD1F-47C5-ACCA-08095879D4CD}: "URL" = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sear
IE - HKCU\..\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=telemsd&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0CyCyByEtN1L2XzutBtFtBtFzztFtCtByEyBtN1L1Czu2Z1P1I1P1H1B1Q&cr=1181930704&ir=
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=0&systemid=414&sr=0&q={searchTerms}
IE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
IE - HKCU\..\SearchScopes\{C29441D4-575D-429C-A818-C4197B45E329}: "URL" = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele0101&cd=2XzuyEtN2Y1L1Qzu0CzztD0A0AzytDyByE0C0C0CtCtDyC0CtN0D0Tzu0SyBtAyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1021087137&ir=
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:30.0
FF - prefs.js..keyword.URL: ""


FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\chaffibwek\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\chaffibwek\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/07/07 18:03:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/06/19 08:14:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/06/19 08:14:38 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/07/07 18:03:12 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 30.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/06/19 08:14:35 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 30.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/06/19 08:14:38 | 000,000,000 | ---D | M]

[2013/10/29 10:05:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\chaffibwek\AppData\Roaming\mozilla\Extensions
[2014/03/21 20:35:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\chaffibwek\AppData\Roaming\mozilla\Firefox\Profiles\ypsh8xc6.default-1388915410025\extensions
[2014/03/17 13:03:19 | 000,353,958 | ---- | M] () (No name found) -- C:\Users\chaffibwek\AppData\Roaming\mozilla\firefox\profiles\ypsh8xc6.default-1388915410025\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}.xpi
[2014/01/05 12:14:04 | 000,002,393 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\mozilla\firefox\profiles\ypsh8xc6.default-1388915410025\searchplugins\Mysearchdial.xml
[2014/06/19 08:14:36 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2014/06/19 08:14:36 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2014/06/19 08:14:35 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/06/19 08:14:45 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - plugin: Error reading preferences file
CHR - Extension: Google Docs = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: Google Drive = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Recherche Google = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Google Wallet = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\chaffibwek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

Hosts file not found
O2:[b]64bit:[/b] - BHO: (Plus-HD-2.6) - {11111111-1111-1111-1111-110311341140} - C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-bho64.dll File not found
O2:[b]64bit:[/b] - BHO: (ElectroLyrics-1) - {11111111-1111-1111-1111-110411181144} - C:\Program Files (x86)\ElectroLyrics-1\ElectroLyrics-1-bho64.dll File not found
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2:[b]64bit:[/b] - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (TBSB06155 Class) - {2DA14D1D-AE74-4A74-A0FE-C79504755DB8} - C:\Program Files (x86)\seeearch\seeearch.dll File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - !{98889811-442D-49dd-99D7-DC866BE87DBC} - No CLSID value found.
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{98889811-442D-49dd-99D7-DC866BE87DBC} - No CLSID value found.
O3 - HKLM\..\Toolbar: (IE Toolbar) - {1FDA7DDD-25CE-4034-9D5B-38A120A14218} - C:\Program Files (x86)\seeearch\seeearch.dll File not found
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:[b]64bit:[/b] - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4:[b]64bit:[/b] - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.dll (NVIDIA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Corel File Shell Monitor] C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe ()
O4 - HKLM..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (EasyBits Software AS)
O4 - HKLM..\Run: [HandyShareStartup] C:\Program Files (x86)\ZOOM\HandyShare\HandyShare_startup.exe ()
O4 - HKLM..\Run: [HPCam_Menu] c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Magic Desktop for HP notification] C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (Easybits)
O4 - HKLM..\Run: [tuto4pc_fr_62] File not found
O4 - HKCU..\Run: [DriverTurbo] C:\Program Files (x86)\DriverTurbo\DriverTurbo.exe ()
O4:[b]64bit:[/b] - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideFastUserSwitching = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableLockWorkstation = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 0
O8:[b]64bit:[/b] - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:[b]64bit:[/b] - Extra context menu item: Free YouTube Download - C:\Users\chaffibwek\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Free YouTube Download - C:\Users\chaffibwek\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O9:[b]64bit:[/b] - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2C4683F1-7F65-4197-9546-D12529FF56BE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E60D7971-3CFE-43D1-AC70-FE42ABB202FA}: DhcpNameServer = 192.168.1.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - AppInit_DLLs: (c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll) - File not found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\System32\Userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll (EasyBits Software Corp.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2014/01/04 19:21:37 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{352b850c-e031-11df-bc3d-c80aa9074ccc}\Shell - "" = AutoRun
O33 - MountPoints2\{352b850c-e031-11df-bc3d-c80aa9074ccc}\Shell\AutoRun\command - "" = Evil Drums Win Setup.exe
O33 - MountPoints2\{ee65e1d4-14d5-11e2-a728-c80aa9074ccc}\Shell - "" = AutoRun
O33 - MountPoints2\{ee65e1d4-14d5-11e2-a728-c80aa9074ccc}\Shell\AutoRun\command - "" = I:\Setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

NetSvcs: ezSharedSvc - C:\Windows\SysWOW64\ezsvc7.dll (EasyBits Sofware AS)

MsConfig:64bit - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe - (Hewlett-Packard Co.)
MsConfig:64bit - StartUpFolder: C:^Users^chaffibwek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk - - File not found
MsConfig:64bit - StartUpFolder: C:^Users^chaffibwek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 2.0.lnk - - File not found
MsConfig:64bit - StartUpReg: [b]Boxore Client[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]DAEMON Tools Lite[/b] - hkey= - key= - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
MsConfig:64bit - StartUpReg: [b]HP Software Update[/b] - hkey= - key= - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
MsConfig:64bit - StartUpReg: [b]HPADVISOR[/b] - hkey= - key= - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe (Hewlett-Packard)
MsConfig:64bit - StartUpReg: [b]KiesHelper[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]KiesPDLR[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]KiesTrayAgent[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]msnmsgr[/b] - hkey= - key= - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
MsConfig:64bit - StartUpReg: [b]QuickTime Task[/b] - hkey= - key= - C:\Program Files (x86)\QuickTime\QTTask.exe (Apple Inc.)
MsConfig:64bit - StartUpReg: [b]Skype[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]SmartMenu[/b] - hkey= - key= - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
MsConfig:64bit - StartUpReg: [b]Software updater[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]tuto4pc_fr_62[/b] - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: [b]uTorrent[/b] - hkey= - key= - C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
MsConfig:64bit - StartUpReg: [b]WirelessAssistant[/b] - hkey= - key= - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (Hewlett-Packard Company)
MsConfig:64bit - State: "startup" - Reg Error: Key error.
MsConfig:64bit - State: "services" - Reg Error: Key error.

SafeBootMin:[b]64bit:[/b] AppMgmt - Service
SafeBootMin:[b]64bit:[/b] Base - Driver Group
SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group
SafeBootMin:[b]64bit:[/b] File system - Driver Group
SafeBootMin:[b]64bit:[/b] Filter - Driver Group
SafeBootMin:[b]64bit:[/b] HelpSvc - Service
SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group
SafeBootMin:[b]64bit:[/b] sacsvr - Service
SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] vmms - Service
SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:[b]64bit:[/b] AppMgmt - Service
SafeBootNet:[b]64bit:[/b] Base - Driver Group
SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group
SafeBootNet:[b]64bit:[/b] File system - Driver Group
SafeBootNet:[b]64bit:[/b] Filter - Driver Group
SafeBootNet:[b]64bit:[/b] HelpSvc - Service
SafeBootNet:[b]64bit:[/b] Messenger - Service
SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group
SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group
SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group
SafeBootNet:[b]64bit:[/b] Network - Driver Group
SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group
SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group
SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group
SafeBootNet:[b]64bit:[/b] rdsessmgr - Service
SafeBootNet:[b]64bit:[/b] sacsvr - Service
SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group
SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] TDI - Driver Group
SafeBootNet:[b]64bit:[/b] vmms - Service
SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver
SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX:[b]64bit:[/b] {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:[b]64bit:[/b] {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 10.1
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 10.1
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} -
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker 2.6
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP

Drivers32:[b]64bit:[/b] msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.dvacm - C:\Program Files (x86)\Common Files\Ulead Systems\VIO\DVACM.acm (Corel TW Corp.)
Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.MPEGacm - C:\Program Files (x86)\Common Files\Ulead Systems\MPEG\MPEGACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.ulmp3acm - C:\Program Files (x86)\Common Files\Ulead Systems\MPEG\ulmp3acm.acm (Ulead systems)
Drivers32: VIDC.CSCD - C:\Windows\SysWow64\camcodec.dll (CamStudio Group)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.dvsd - C:\Windows\SysWow64\pdvcodec.dll (Matsushita Electric Industrial Co., Ltd.)
Drivers32: VIDC.WMV3 - C:\Windows\SysWow64\wmv9vcm.dll (Microsoft Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2014/07/03 15:37:06 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\chaffibwek\Desktop\OTL.exe
[2014/06/25 07:08:49 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\AppData\Local\Apps
[2014/06/23 15:37:52 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\Documents\Blocs-notes OneNote
[2014/06/22 19:09:45 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\AppData\Roaming\OpenOffice
[2014/06/22 19:07:31 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
[2014/06/22 19:06:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenOffice 4
[2014/06/22 18:57:09 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\Desktop\OpenOffice 4.1.0 (fr) Installation Files
[2014/06/19 08:14:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/06/17 19:10:32 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/06/16 16:04:05 | 000,000,000 | ---D | C] -- C:\Users\chaffibwek\Documents\MAGIX-Samplitude-10Pro[h33t][deepstatus]
[2014/06/11 06:38:49 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2014/06/11 06:38:47 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014/06/11 06:38:47 | 000,288,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2014/06/11 06:38:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml6r.dll
[2014/06/11 06:38:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml6r.dll
[2014/06/11 06:38:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014/06/11 06:38:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014/06/11 06:38:41 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/06/11 06:38:41 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/06/11 06:38:41 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/06/11 06:38:40 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/06/11 06:38:40 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/06/11 06:38:40 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/06/11 06:38:39 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/06/11 06:38:39 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/06/11 06:38:38 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/06/11 06:38:38 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/06/11 06:38:38 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/06/11 06:38:38 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/06/11 06:38:37 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/06/11 06:38:37 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/06/11 06:38:36 | 002,040,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/06/11 06:38:36 | 000,608,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/06/11 06:38:36 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/06/11 06:38:35 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/06/11 06:38:35 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/06/11 06:38:35 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/06/11 06:38:34 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/06/11 06:38:34 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/06/11 06:38:34 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/06/11 06:38:34 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/06/11 06:38:33 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/06/11 06:38:33 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/06/11 06:38:32 | 005,782,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/06/11 06:38:32 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/06/11 06:38:32 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/06/11 06:38:32 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/06/11 06:38:32 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/06/11 06:38:31 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/06/11 06:38:31 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2014/07/03 15:47:08 | 000,001,076 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/07/03 15:43:18 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014/07/03 15:37:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\chaffibwek\Desktop\OTL.exe
[2014/07/03 15:25:47 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000UA.job
[2014/07/03 15:25:39 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/07/03 15:25:39 | 000,000,308 | ---- | M] () -- C:\Windows\tasks\MySearchDial.job
[2014/07/03 15:25:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/07/03 13:12:21 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/07/03 13:12:21 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/07/03 13:05:30 | 000,003,464 | ---- | M] () -- C:\Windows\tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-3.job
[2014/07/03 13:05:30 | 000,001,072 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/07/03 13:04:28 | 3163,709,440 | -HS- | M] () -- C:\hiberfil.sys
[2014/07/02 19:09:00 | 000,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000Core.job
[2014/07/02 10:42:50 | 001,549,936 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/07/02 10:42:50 | 000,704,714 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat
[2014/07/02 10:42:50 | 000,616,242 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/07/02 10:42:50 | 000,130,988 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat
[2014/07/02 10:42:50 | 000,106,622 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/06/30 08:45:59 | 000,246,272 | ---- | M] () -- C:\Users\chaffibwek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/06/23 15:41:54 | 000,001,678 | ---- | M] () -- C:\Users\chaffibwek\Desktop\WINWORD - Raccourci.lnk
[2014/06/23 15:37:52 | 000,001,310 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk
[2014/06/23 06:21:58 | 000,497,088 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/06/19 16:13:46 | 000,409,088 | ---- | M] () -- C:\Windows\SysWow64\WIN-svrGA.exe
[2014/06/17 19:10:32 | 000,002,394 | ---- | M] () -- C:\Users\chaffibwek\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/06/17 19:10:32 | 000,002,392 | ---- | M] () -- C:\Users\chaffibwek\Desktop\Google Chrome.lnk
[2014/06/16 15:54:01 | 190,027,499 | ---- | M] () -- C:\Users\chaffibwek\Documents\MAGIX-Samplitude-10Pro[h33t][deepstatus].rar
[2014/06/16 07:26:35 | 000,001,958 | ---- | M] () -- C:\Users\chaffibwek\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/06/16 07:26:34 | 000,001,957 | ---- | M] () -- C:\Users\chaffibwek\Desktop\Mozilla Firefox.lnk
[2014/06/11 18:10:59 | 000,002,507 | ---- | M] () -- C:\Users\chaffibwek\Desktop\Windows Movie Maker 2.6.lnk
[2014/06/10 17:45:57 | 000,004,521 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\CamStudio.cfg
[2014/06/10 17:45:57 | 000,000,408 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\CamShapes.ini
[2014/06/10 17:45:57 | 000,000,408 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\CamLayout.ini
[2014/06/10 17:45:57 | 000,000,100 | ---- | M] () -- C:\Users\chaffibwek\AppData\Roaming\Camdata.ini
[2014/06/03 17:58:45 | 000,130,584 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014/06/03 17:58:45 | 000,112,080 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2014/07/03 15:43:18 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014/06/23 15:41:54 | 000,001,678 | ---- | C] () -- C:\Users\chaffibwek\Desktop\WINWORD - Raccourci.lnk
[2014/06/23 15:37:52 | 000,001,310 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk
[2014/06/19 10:59:59 | 000,409,088 | ---- | C] () -- C:\Windows\SysWow64\WIN-svrGA.exe
[2014/06/18 17:58:20 | 000,032,256 | ---- | C] () -- C:\Windows\SysWow64\instsrv.exe
[2014/06/18 17:58:20 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\srvany.exe
[2014/06/17 19:10:32 | 000,002,394 | ---- | C] () -- C:\Users\chaffibwek\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/06/17 19:10:32 | 000,002,392 | ---- | C] () -- C:\Users\chaffibwek\Desktop\Google Chrome.lnk
[2014/06/17 19:05:00 | 000,001,098 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000UA.job
[2014/06/17 19:04:59 | 000,001,046 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000Core.job
[2014/06/16 15:51:03 | 190,027,499 | ---- | C] () -- C:\Users\chaffibwek\Documents\MAGIX-Samplitude-10Pro[h33t][deepstatus].rar
[2014/06/16 07:26:34 | 000,001,989 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/06/11 18:10:59 | 000,002,507 | ---- | C] () -- C:\Users\chaffibwek\Desktop\Windows Movie Maker 2.6.lnk
[2014/05/10 19:57:06 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\zlib1.dll
[2014/04/15 21:30:49 | 000,493,272 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\~ssczfkh.exe
[2014/04/15 21:30:11 | 000,493,272 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\~pidpdkh.exe
[2014/03/20 11:00:12 | 000,492,208 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\~dpaszkx.exe
[2014/01/20 16:23:12 | 000,000,847 | ---- | C] () -- C:\Windows\Sam10_E.INI
[2014/01/05 13:13:02 | 000,000,057 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\WB.CFG
[2013/12/17 19:11:46 | 000,185,405 | ---- | C] () -- C:\Windows\hpoins44.dat.temp
[2013/12/17 19:11:46 | 000,000,512 | ---- | C] () -- C:\Windows\hpomdl44.dat.temp
[2013/11/04 23:52:32 | 000,351,124 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\mysearchdial-speeddial.crx
[2013/09/17 17:35:16 | 000,004,521 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\CamStudio.cfg
[2013/09/17 17:35:16 | 000,000,408 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\CamShapes.ini
[2013/09/17 17:35:16 | 000,000,408 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\CamLayout.ini
[2013/09/17 17:35:16 | 000,000,100 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\Camdata.ini
[2013/09/17 15:30:14 | 000,005,031 | ---- | C] () -- C:\ProgramData\uxxadbmu.rlu
[2011/08/09 01:10:45 | 000,000,272 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\.backup.dm
[2011/07/19 16:42:52 | 000,014,626 | ---- | C] () -- C:\Users\chaffibwek\Bilan180720112019170773_1066355.pdf
[2011/02/26 23:17:14 | 000,246,272 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/12/28 23:30:24 | 000,001,854 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\GhostObjGAFix.xml
[2010/12/09 21:44:55 | 000,289,375 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\tmp2010-12-08 21.43.36.JPG
[2010/12/09 21:34:03 | 000,723,719 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\tmp2010-12-08 21.43.36.0
[2010/10/02 14:45:52 | 000,001,272 | ---- | C] () -- C:\Users\chaffibwek\Snipping Tool.lnk
[2010/09/07 18:04:25 | 002,594,286 | ---- | C] () -- C:\Users\chaffibwek\gwave525.exe
[2010/08/16 17:41:20 | 000,147,945 | ---- | C] () -- C:\Users\chaffibwek\1.0.0.0__synsoacc.zip
[2010/08/16 15:31:32 | 000,000,900 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2010/08/16 13:04:23 | 000,000,788 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\wklnhst.dat
[2010/07/07 18:12:18 | 000,102,823 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\tmpESSAI SCANER0001.1
[2010/07/07 18:12:17 | 000,238,813 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\tmpESSAI SCANER0001.0
[2010/07/07 18:12:17 | 000,103,901 | ---- | C] () -- C:\Users\chaffibwek\AppData\Local\tmpESSAI SCANER0001.JPG
[1998/02/10 19:17:48 | 000,038,800 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\ARIALREG.TTF
[1997/06/07 08:47:12 | 000,025,888 | ---- | C] () -- C:\Users\chaffibwek\AppData\Roaming\regressi.fon

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/03/25 04:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/03/25 04:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== LOP Check ==========[/color]

[2013/09/14 23:35:03 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\0F1F1C2Y1H1P1C0I0T
[2012/10/17 17:51:18 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Advanced Chemistry Development
[2011/03/01 12:18:09 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Cakewalk
[2013/10/29 22:12:27 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\CheckPoint
[2010/10/25 14:25:52 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\DAEMON Tools Lite
[2014/03/15 18:04:29 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Downloaded Installations
[2013/09/15 12:21:14 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\DriverTurbo
[2012/08/13 19:09:27 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Dropbox
[2013/03/08 16:39:21 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\DVDVideoSoft
[2013/03/08 16:39:11 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\DVDVideoSoftIEHelpers
[2013/12/15 14:03:59 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\FreeSoftwareUpdater
[2014/06/30 10:46:52 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\FreeVideoConverter
[2010/10/28 09:49:40 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\FXpansion
[2013/12/15 14:04:12 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Iminent
[2010/06/30 16:45:23 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\InterTrust
[2013/09/17 15:30:46 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\MOVAVI
[2010/07/07 21:20:18 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\NCH Swift Sound
[2014/06/22 19:09:45 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\OpenOffice
[2013/07/09 13:54:30 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Optimizer Pro
[2013/09/14 15:33:07 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Samsung
[2011/03/01 14:32:18 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Steinberg
[2014/07/03 15:27:32 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\systweak
[2010/08/16 13:04:25 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Template
[2013/09/14 23:51:39 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Tlapia
[2011/09/05 22:43:27 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\uTorrent
[2014/04/15 21:32:06 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\Webplayer
[2014/07/03 13:07:32 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\wp_update
[2012/04/09 16:33:24 | 000,000,000 | ---D | M] -- C:\Users\chaffibwek\AppData\Roaming\_MDLogs

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %SYSTEMDRIVE%\*.* >[/color]
[2011/03/29 11:39:10 | 000,002,006 | ---- | M] () -- C:\aqua_bitmap.cpp
[2014/01/04 19:21:37 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2009/07/14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2014/07/03 13:04:28 | 3163,709,440 | -HS- | M] () -- C:\hiberfil.sys
[2010/07/11 13:05:33 | 000,000,087 | ---- | M] () -- C:\hpqlb.log
[2014/07/03 13:04:29 | 4218,281,984 | -HS- | M] () -- C:\pagefile.sys
[2014/07/03 15:43:18 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011/12/31 16:17:33 | 000,000,237 | ---- | M] () -- C:\user.js
[2 C:\*.tmp files -> C:\*.tmp -> ]

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#A23BEC]< %PROGRAMFILES%\*.* >[/color]
[2009/07/14 06:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini

[color=#A23BEC]< %PROGRAMFILES%\*. >[/color]
[2010/09/07 17:44:34 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ACDFREE11
[2014/04/15 21:31:39 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Adobe
[2013/09/14 13:31:52 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Apple Software Update
[2010/06/30 17:01:36 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ArcSoft
[2011/07/18 13:41:28 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Audacity
[2013/08/12 21:12:05 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Avira
[2012/07/04 18:15:24 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Avogadro
[2010/07/29 19:05:17 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\AVS4YOU
[2013/09/15 12:27:34 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\BonanzaDeals
[2011/03/01 12:14:25 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Cakewalk
[2013/09/17 17:22:37 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CamStudio 2.7
[2014/05/14 19:10:13 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Common Files
[2010/02/03 02:39:47 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Corel
[2010/01/09 02:17:48 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CyberLink
[2010/10/25 14:12:01 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DAEMON Tools Lite
[2010/10/25 14:12:01 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DAEMON Tools Toolbar
[2010/06/30 11:51:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DAMN NFO Viewer
[2013/09/15 12:21:14 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DriverTurbo
[2013/03/08 16:38:59 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DVDVideoSoft
[2014/02/20 19:49:44 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Dynamic
[2011/02/28 18:42:42 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\EASEUS
[2012/04/09 16:34:51 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\EasyBits For Kids
[2013/09/14 23:49:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\enginesysTPL
[2014/05/20 21:03:24 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Evariste
[2012/07/17 20:03:43 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Focusrite
[2011/12/06 22:22:11 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Free Video Converter
[2010/10/20 16:32:51 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\FXpansion
[2014/07/02 22:52:12 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\globalUpdate
[2010/09/07 18:04:53 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\GoldWave
[2014/05/10 20:05:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Google
[2010/09/14 19:09:16 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Guitar Pro 5
[2014/01/22 21:35:33 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hewlett-Packard
[2014/01/05 20:18:46 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hp
[2010/01/09 00:55:01 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\HP Games
[2011/03/06 22:12:24 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\IK Multimedia
[2014/05/10 19:56:45 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\InstallShield Installation Information
[2010/02/03 02:22:45 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Intel
[2014/06/12 08:58:11 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Internet Explorer
[2010/12/18 14:42:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Jaquette Express
[2014/04/17 20:38:47 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Java
[2013/09/14 23:23:16 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\K-Lite Codec Pack
[2012/07/04 18:42:52 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Kreatives.org
[2011/02/23 18:37:16 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MAGIX
[2011/03/29 11:39:14 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MarkAny
[2010/06/30 16:30:15 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Media Player Classic
[2013/09/15 12:26:31 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft
[2012/11/23 18:01:55 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Office
[2010/01/09 01:19:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
[2014/03/13 18:52:42 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Silverlight
[2010/06/30 15:49:33 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Visual Studio
[2012/11/22 23:15:18 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Works
[2011/03/29 11:33:01 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft.NET
[2014/05/01 17:42:27 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Movie Maker 2.6
[2014/06/19 08:14:45 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox
[2014/06/19 23:33:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2009/07/14 07:32:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MSBuild
[2010/07/02 11:15:39 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MSXML 4.0
[2010/07/07 21:23:54 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\NCH Software
[2010/07/07 19:44:30 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\NCH Swift Sound
[2010/06/30 10:45:37 | 000,000,000 | R--D | M] -- C:\Program Files (x86)\Online Services
[2014/06/22 19:06:51 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\OpenOffice 4
[2014/06/22 19:05:42 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\OpenOffice.org 2.0
[2011/03/30 18:40:58 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\PC Connectivity Solution
[2013/10/22 11:54:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Pinnacle
[2010/12/18 14:08:58 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Pochette Express 2
[2013/09/15 12:23:25 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\predm
[2013/09/14 23:18:36 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\QuickTime
[2013/05/28 10:29:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Realtek
[2009/07/14 07:32:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Reference Assemblies
[2011/03/29 11:45:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Samsung
[2010/06/30 11:08:49 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\SFR
[2013/09/14 15:59:03 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Software
[2011/02/27 14:38:04 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Steinberg
[2011/02/27 14:37:10 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Syncrosoft
[2009/07/14 06:57:06 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Uninstall Information
[2010/10/25 13:25:27 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\uTorrent
[2010/06/30 16:36:03 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\VideoLAN
[2013/07/10 14:45:33 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Defender
[2013/09/19 18:41:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Live
[2011/04/28 03:50:23 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Mail
[2010/02/03 02:41:55 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Media Components
[2011/04/28 03:50:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Media Player
[2009/07/14 07:32:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows NT
[2011/04/28 03:50:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Photo Viewer
[2011/04/28 03:50:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Portable Devices
[2011/04/28 03:50:23 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Sidebar
[2010/08/31 11:18:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\WinRAR
[2014/02/09 13:56:15 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ZOOM

[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

[color=#A23BEC]< MD5 for: APPMGMTS.DLL >[/color]
[2009/07/14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) MD5=4ABA3E75A76195A3E38ED2766C962899 -- C:\Windows\winsxs\amd64_microsoft-windows-g..oftwareinstallation_31bf3856ad364e35_6.1.7600.16385_none_ddc3da0b75baa7e0\appmgmts.dll
[2009/07/14 03:14:53 | 000,149,504 | ---- | M] (Microsoft Corporation) MD5=A45D184DF6A8803DA13A0B329517A64A -- C:\Windows\winsxs\wow64_microsoft-windows-g..oftwareinstallation_31bf3856ad364e35_6.1.7600.16385_none_e818845daa1b69db\appmgmts.dll

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[color=#A23BEC]< MD5 for: AUTOCHK.EXE >[/color]
[2010/01/09 09:01:55 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=2632B7125E0730E019532CFCFFFFBFC0 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe
[2010/01/09 09:01:55 | 000,777,216 | ---- | M] (Microsoft Corporation) MD5=3AE12EC776AB9830462E8197FB5C88CF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_3eab8e1bf46486d7\autochk.exe
[2010/11/20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010/11/20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009/07/14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009/07/14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010/11/20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010/11/20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2009/07/14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009/07/14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

[color=#A23BEC]< MD5 for: CNGAUDIT.DLL >[/color]
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009/07/14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009/07/14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2007/05/17 22:34:04 | 000,007,216 | ---- | M] () MD5=C2A279A458A06DE2C83D842AA042B5A8 -- C:\Program Files (x86)\CyberLink\PowerDirector\EventLog.dll

[color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color]
[2010/01/09 09:01:42 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=00B0358734CAA32C39D181FE6916B178 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_b8b0208ee0ce1889\explorer.exe
[2009/07/14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009/10/31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2010/11/20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\SysWOW64\explorer.exe
[2010/11/20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010/01/09 09:01:42 | 002,868,736 | ---- | M] (Microsoft Corporation) MD5=6D4F9E4B640B413C6F73414327484C80 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_addea9f19345cd81\explorer.exe
[2009/08/03 08:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2009/10/31 08:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009/08/03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010/11/20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\explorer.exe
[2010/11/20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009/10/31 08:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009/08/03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009/07/14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009/10/31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2010/01/09 09:01:42 | 002,868,736 | ---- | M] (Microsoft Corporation) MD5=CA17F8620815267DC838E30B68CB5052 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_ae5b763cac6d568e\explorer.exe
[2009/08/03 08:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
[2010/01/09 09:01:42 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=FC89FACA0473641CB625EDA9277D0885 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_b8335443c7a68f7c\explorer.exe

[color=#A23BEC]< MD5 for: HIDSERV.DLL >[/color]
[2009/07/14 03:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) MD5=2BC6F6A1992B3A77F5F41432CA6B3B6B -- C:\Windows\SysWOW64\hidserv.dll
[2009/07/14 03:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) MD5=2BC6F6A1992B3A77F5F41432CA6B3B6B -- C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.1.7600.16385_none_3cf5e466d58070d9\hidserv.dll
[2009/07/14 03:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) MD5=BD9EB3958F213F96B97B1D897DEE006D -- C:\Windows\SysNative\hidserv.dll
[2009/07/14 03:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) MD5=BD9EB3958F213F96B97B1D897DEE006D -- C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.1.7600.16385_none_32a13a14a11faede\hidserv.dll

[color=#A23BEC]< MD5 for: IASTOR.SYS >[/color]
[2009/08/08 06:17:26 | 000,330,264 | ---- | M] (Intel Corporation) MD5=01446278D4563B3013C92830AE6CBB26 -- C:\SwSetup\Drivers\IMSM\Winall\Driver\IaStor.sys
[2009/10/13 11:09:36 | 000,331,288 | ---- | M] (Intel Corporation) MD5=0BAA4115DFFFD6A6D809A89D65E1281A -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\driver\IaStor.sys
[2009/08/08 06:24:14 | 000,408,600 | ---- | M] (Intel Corporation) MD5=BBB3B6DF1ABB0FE35802EDE85CC1C011 -- C:\SwSetup\Drivers\IMSM\Winall\Driver64\IaStor.sys
[2009/08/08 06:24:14 | 000,408,600 | ---- | M] (Intel Corporation) MD5=BBB3B6DF1ABB0FE35802EDE85CC1C011 -- C:\Windows\SysNative\DriverStore\FileRepository\iaahci.inf_amd64_neutral_4fa22a1c88c09097\iaStor.sys
[2009/10/13 11:16:40 | 000,409,624 | ---- | M] (Intel Corporation) MD5=BE7D72FCF442C26975942007E0831241 -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
[2009/10/13 11:16:40 | 000,409,624 | ---- | M] (Intel Corporation) MD5=BE7D72FCF442C26975942007E0831241 -- C:\Windows\SysNative\drivers\iaStor.sys
[2009/10/13 11:16:40 | 000,409,624 | ---- | M] (Intel Corporation) MD5=BE7D72FCF442C26975942007E0831241 -- C:\Windows\SysNative\DriverStore\FileRepository\iaahci.inf_amd64_neutral_6fca727099cdabf1\iaStor.sys

[color=#A23BEC]< MD5 for: IASTORV.SYS >[/color]
[2010/11/20 15:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\drivers\iaStorV.sys
[2010/11/20 15:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
[2010/11/20 15:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2009/07/14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys

[color=#A23BEC]< MD5 for: IMM32.DLL >[/color]
[2009/07/14 03:11:21 | 000,119,808 | ---- | M] (Microsoft Corporation) MD5=0DE3069D6E09BA262856EF31C941BEFE -- C:\Windows\winsxs\wow64_microsoft-windows-imm32_31bf3856ad364e35_6.1.7600.16385_none_c29fba0fc87cc5a4\imm32.dll
[2010/11/20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) MD5=A6F09E5669D9A19035F6D942CAA15882 -- C:\Windows\SysWOW64\imm32.dll
[2010/11/20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) MD5=A6F09E5669D9A19035F6D942CAA15882 -- C:\Windows\winsxs\wow64_microsoft-windows-imm32_31bf3856ad364e35_6.1.7601.17514_none_c4d0cdd7c56b493e\imm32.dll
[2009/07/14 03:41:09 | 000,167,424 | ---- | M] (Microsoft Corporation) MD5=AA2C08CE85653B1A0D2E4AB407FA176C -- C:\Windows\SysNative\imm32.dll
[2009/07/14 03:41:09 | 000,167,424 | ---- | M] (Microsoft Corporation) MD5=AA2C08CE85653B1A0D2E4AB407FA176C -- C:\Windows\winsxs\amd64_microsoft-windows-imm32_31bf3856ad364e35_6.1.7600.16385_none_b84b0fbd941c03a9\imm32.dll

[color=#A23BEC]< MD5 for: KERNEL32.DLL >[/color]
[2011/07/16 07:21:15 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=06835B46D9676BEDD80AF25ACF6845FD -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21010_none_f083035588e611da\kernel32.dll
[2011/05/14 09:20:00 | 001,162,752 | ---- | M] (Microsoft Corporation) MD5=0E1B2E16235AA7F89F064EE75DFC905E -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17617_none_f1e6ed746ce85c1b\kernel32.dll
[2011/05/14 08:22:22 | 000,837,632 | ---- | M] (Microsoft Corporation) MD5=166116134C58DC36400DE59ACD64FB39 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17617_none_fc3b97c6a1491e16\kernel32.dll
[2012/10/04 19:41:16 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=1DC3504CA4C57900F1557E9A3F01D272 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17965_none_f1aee2f66d12ac97\kernel32.dll
[2012/10/04 19:32:16 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=1DDCACAB8DA5399E5521051923016B18 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17135_none_efe8cbf06fd422f3\kernel32.dll
[2011/07/16 06:21:33 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=2113248DB2D1AF9CA790B09F3E6C6E85 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21010_none_fad7ada7bd46d3d5\kernel32.dll
[2011/07/16 07:28:00 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=27AC02D8EE4C02E7648C41CB880151DA -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21772_none_f22aa945863b24d8\kernel32.dll
[2013/07/08 07:05:01 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=2997A7BC59E3EEFE8E86D1B0F3A3D748 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22379_none_fc86373dba95bd39\kernel32.dll
[2013/08/02 03:50:41 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=365A5034093AD9E04F433046C4CDF6AB -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18229_none_fc32aa0ea14f91ba\kernel32.dll
[2013/01/04 06:51:08 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=385BE92E3106491BBB542F8F1C06C606 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17206_none_fa5ee836a41ba799\kernel32.dll
[2013/07/08 07:14:41 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=38E54D419A2962E24D35D868E4724AE7 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22379_none_f2318ceb8634fb3e\kernel32.dll
[2011/05/14 08:32:33 | 000,837,120 | ---- | M] (Microsoft Corporation) MD5=40EACEE0B6432CBE2459A11B298E9D88 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16816_none_fa543a76a42398d3\kernel32.dll
[2013/01/04 07:30:34 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=43DB3433F141F01E53D1C5AA0F434098 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17206_none_f00a3de46fbae59e\kernel32.dll
[2011/07/16 06:30:27 | 001,048,576 | ---- | M] (Microsoft Corporation) MD5=4EA99F1644627B1EBAD99D0B93CDEE1C -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16850_none_fa22f90aa449708d\kernel32.dll
[2014/03/04 13:08:24 | 001,164,800 | ---- | M] (Microsoft Corporation) MD5=52E77DC8E31C89FBB1E968699C8121C5 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22616_none_f26f71478606ff08\kernel32.dll
[2009/07/14 03:41:13 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=5B4B379AD10DEDA4EDA01B8C6961B193 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16385_none_efb2d6e86ffc8f55\kernel32.dll
[2012/10/04 18:36:32 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=5FA395364EE727E4BEE6B1406C207F98 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22125_none_fcb841e5ba70d1da\kernel32.dll
[2009/07/14 03:11:23 | 000,836,608 | ---- | M] (Microsoft Corporation) MD5=606ECB76A424CC535407E7A24E2A34BC -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16385_none_fa07813aa45d5150\kernel32.dll
[2013/08/02 07:55:39 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=61579F821AB5FF7FA2966D64D1070BA8 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22411_none_fcbf165bba6c4802\kernel32.dll
[2012/11/30 07:41:07 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=65C113214F7B05820F6D8A65B1485196 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18015_none_f1e4cab46cea5424\kernel32.dll
[2011/05/14 09:11:10 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=6743E8705A96FCBF71279B5AE2CCFDBC -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21728_none_f266ba9d860d312d\kernel32.dll
[2011/06/03 07:58:27 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=6EB2AEE15C20681E323E9A3E334FE6CF -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.20978_none_fa9ef84dbd7012f1\kernel32.dll
[2012/10/04 19:29:16 | 001,162,752 | ---- | M] (Microsoft Corporation) MD5=6EED0D77C20137948979EA47360A890B -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21335_none_f0726aa188f1bfe4\kernel32.dll
[2014/03/04 11:16:17 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=76161B9D78A275F8F28DD67436013110 -- C:\Windows\SysWOW64\kernel32.dll
[2014/03/04 11:16:17 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=76161B9D78A275F8F28DD67436013110 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18409_none_fc484db2a13f5426\kernel32.dll
[2014/04/12 04:32:01 | 001,164,800 | ---- | M] (Microsoft Corporation) MD5=77BBBF70BCE286CD19E1E68F248363FA -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22653_none_f24130b9862a22c7\kernel32.dll
[2013/12/04 08:21:52 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=786D234A90FCAC72633AE6FC52653A49 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22436_none_f259cda386173c9c\kernel32.dll
[2010/11/20 15:26:42 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=7A6326D96D53048FDEC542DF23D875A0 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17514_none_f1e3eab06ceb12ef\kernel32.dll
[2013/01/04 06:52:09 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=7E55988F5CB3BA67E2732370E8D71BBB -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22209_none_fcd1e4cbba5cfc7b\kernel32.dll
[2011/06/03 08:54:47 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=8225958BAC83EAFCDB6BAB6EE5EDF6E6 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.20978_none_f04a4dfb890f50f6\kernel32.dll
[2014/03/04 12:38:24 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=866696FBE24914047462E34812169954 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22616_none_fcc41b99ba67c103\kernel32.dll
[2011/05/14 09:36:24 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=98DA1B7572DAD6BA10296E0DF0950B37 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16816_none_efff90246fc2d6d8\kernel32.dll
[2011/07/16 06:24:22 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=99C3F8E9CC59D95666EB8D8A8B4C2BEB -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17651_none_fc0a565aa16ef5d0\kernel32.dll
[2013/01/04 16:14:42 | 001,162,752 | ---- | M] (Microsoft Corporation) MD5=9DD828EFBD17246275E8A74D58E836AC -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21416_none_f0890ca988e09e80\kernel32.dll
[2012/10/04 18:54:17 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=A6778FC49011313995A4D718F624CC74 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17135_none_fa3d7642a434e4ee\kernel32.dll
[2012/11/30 06:53:59 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=AC0B6F41882FC6ED186962D770EBF1D2 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18015_none_fc397506a14b161f\kernel32.dll
[2013/01/04 07:36:09 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=B844114B247D8EF1E5E4E93A282D2E6F -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22209_none_f27d3a7985fc3a80\kernel32.dll
[2011/07/16 07:37:12 | 001,162,752 | ---- | M] (Microsoft Corporation) MD5=B9B42A302325537D7B9DC52D47F33A73 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17651_none_f1b5ac086d0e33d5\kernel32.dll
[2013/08/02 08:22:04 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=C525D51A79B01342344F02E38866CF60 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22411_none_f26a6c09860b8607\kernel32.dll
[2014/04/12 04:05:53 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=C8C41EBEE097FEB29FB816854D3AD1E7 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22653_none_fc95db0bba8ae4c2\kernel32.dll
[2011/05/14 09:33:36 | 000,837,632 | ---- | M] (Microsoft Corporation) MD5=CC5CBC069944E7EA70D8674478A70A37 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21728_none_fcbb64efba6df328\kernel32.dll
[2014/03/04 11:44:00 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=D2A513EE880D71BDE7F0257F38B9D019 -- C:\Windows\SysNative\kernel32.dll
[2014/03/04 11:44:00 | 001,163,264 | ---- | M] (Microsoft Corporation) MD5=D2A513EE880D71BDE7F0257F38B9D019 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18409_none_f1f3a3606cde922b\kernel32.dll
[2011/07/16 06:49:33 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=D3CB12854171DF61D117D7C2BF22C675 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21772_none_fc7f5397ba9be6d3\kernel32.dll
[2012/10/04 18:47:40 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=D4F3176082566CEFA633B4945802D4C4 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17965_none_fc038d48a1736e92\kernel32.dll
[2013/08/02 04:13:34 | 001,161,216 | ---- | M] (Microsoft Corporation) MD5=D8973E71F1B35CD3F3DEA7C12D49D0F0 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18229_none_f1ddffbc6ceecfbf\kernel32.dll
[2011/07/16 07:21:32 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=DDBD24DC04DA5FD0EDF45CF72B7C01E2 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16850_none_efce4eb86fe8ae92\kernel32.dll
[2012/10/04 18:56:24 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=DE7A37CB1F48526A78A2D42786411578 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21335_none_fac714f3bd5281df\kernel32.dll
[2010/11/20 14:08:56 | 000,837,632 | ---- | M] (Microsoft Corporation) MD5=E80758CF485DB142FCA1EE03A34EAD05 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17514_none_fc389502a14bd4ea\kernel32.dll
[2013/12/04 08:21:51 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=EE751CBD5D0C332FDF3DF7187B612416 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22436_none_fcae77f5ba77fe97\kernel32.dll
[2012/10/04 19:37:46 | 001,162,240 | ---- | M] (Microsoft Corporation) MD5=F3C594D0DA3ACFA6C7B781A490AB4282 -- C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22125_none_f263979386100fdf\kernel32.dll
[2013/01/04 06:51:07 | 001,114,112 | ---- | M] (Microsoft Corporation) MD5=F9F6CD9EF1F6C896A56B5259B81027D9 -- C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21416_none_faddb6fbbd41607b\kernel32.dll

[color=#A23BEC]< MD5 for: MSWSOCK.DLL >[/color]
[2009/07/14 03:15:51 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=11A41F17527ED75D6B758FDD7F4FD00D -- C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7600.16385_none_b829ad298e9f53ff\mswsock.dll
[2010/11/20 15:27:10 | 000,326,144 | ---- | M] (Microsoft Corporation) MD5=1D5185A4C7E6695431AE4B55C3D7D333 -- C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_16795c7543eb48cf\mswsock.dll
[2013/12/04 08:21:02 | 000,231,424 | ---- | M] (Microsoft Corporation) MD5=6547D445C4B69DC0083B619AC642DF04 -- C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.22444_none_bac3d364a4c3ea89\mswsock.dll
[2010/11/20 14:19:56 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=8999B8631C7FD9F7F9EC3CAFD953BA24 -- C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_ba5ac0f18b8dd799\mswsock.dll
[2013/12/04 08:21:02 | 000,327,168 | ---- | M] (Microsoft Corporation) MD5=9A9F9F1A77D6A80EE28B57664F00013E -- C:\Windows\SysNative\mswsock.dll
[2013/12/04 08:21:02 | 000,327,168 | ---- | M] (Microsoft Corporation) MD5=9A9F9F1A77D6A80EE28B57664F00013E -- C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.18254_none_164e004b440bdabf\mswsock.dll
[2013/12/04 08:21:02 | 000,327,168 | ---- | M] (Microsoft Corporation) MD5=BDDB1FD258B92DEE00F222D3304B5D9C -- C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.22444_none_16e26ee85d215bbf\mswsock.dll
[2013/12/04 08:21:02 | 000,231,424 | ---- | M] (Microsoft Corporation) MD5=E94C583CDE2348950155F2AF2876F34D -- C:\Windows\SysWOW64\mswsock.dll
[2013/12/04 08:21:02 | 000,231,424 | ---- | M] (Microsoft Corporation) MD5=E94C583CDE2348950155F2AF2876F34D -- C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.18254_none_ba2f64c78bae6989\mswsock.dll
[2009/07/14 03:41:34 | 000,320,000 | ---- | M] (Microsoft Corporation) MD5=FC76FE3C1E1FDB761244D4F74EF560FD -- C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7600.16385_none_144848ad46fcc535\mswsock.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2010/11/20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010/11/20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009/07/14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

[color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
[2009/07/14 03:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2010/11/20 15:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
[2010/11/20 15:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010/11/20 14:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
[2010/11/20 14:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
[2009/07/14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll

[color=#A23BEC]< MD5 for: NTFS.SYS >[/color]
[2010/11/20 15:33:46 | 001,659,776 | ---- | M] (Microsoft Corporation) MD5=05D78AA5CB5F3F5C31160BDB955D0B7C -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7601.17514_none_04972f2c338b23d4\ntfs.sys
[2009/07/14 03:48:27 | 001,659,984 | ---- | M] (Microsoft Corporation) MD5=356698A13C4630D5B31C37378D469196 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7600.16385_none_02661b64369ca03a\ntfs.sys
[2013/04/12 16:36:57 | 001,679,208 | ---- | M] (Microsoft Corporation) MD5=91127EC56F7BA2182EA1340DC00F98E5 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7600.21499_none_02e8d2a34fbedaf2\ntfs.sys
[2013/04/12 16:36:37 | 001,653,096 | ---- | M] (Microsoft Corporation) MD5=9A6089B056EA1B83B36424FC9D0A300E -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7600.17281_none_0262018e36a05758\ntfs.sys
[2013/03/02 07:21:45 | 001,686,376 | ---- | M] (Microsoft Corporation) MD5=9A77052C2F5F408CB8402D992360BC07 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7601.22272_none_04ddcd7b4cdb5d9b\ntfs.sys
[2013/04/12 16:16:02 | 001,686,888 | ---- | M] (Microsoft Corporation) MD5=A6AE4551BF8EED09FA3B6FCDF472F3E1 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7601.22297_none_04cd2f154ce71430\ntfs.sys
[2013/03/02 07:52:57 | 001,652,568 | ---- | M] (Microsoft Corporation) MD5=A7368ED1B924FA49283F1A83776F8A02 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7600.17267_none_027da322368ab780\ntfs.sys
[2013/03/02 07:51:35 | 001,679,192 | ---- | M] (Microsoft Corporation) MD5=B147ABE91034179A87E5CE7D8CDCFAD1 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7600.21483_none_02eda0d34fbc26f7\ntfs.sys
[2013/03/02 08:04:53 | 001,655,656 | ---- | M] (Microsoft Corporation) MD5=B8965FB53551B5455630A4B804D0791F -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7601.18106_none_04a3e14c33815f96\ntfs.sys
[2013/04/12 16:45:08 | 001,656,680 | ---- | M] (Microsoft Corporation) MD5=B98F8C6E31CD07B2E6F71F7F648E38C0 -- C:\Windows\SysNative\drivers\ntfs.sys
[2013/04/12 16:45:08 | 001,656,680 | ---- | M] (Microsoft Corporation) MD5=B98F8C6E31CD07B2E6F71F7F648E38C0 -- C:\Windows\winsxs\amd64_microsoft-windows-ntfs_31bf3856ad364e35_6.1.7601.18127_none_048f41be3390b0cf\ntfs.sys

[color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color]
[2009/07/14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
[2010/11/20 15:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\drivers\nvstor.sys
[2010/11/20 15:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
[2010/11/20 15:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys

[color=#A23BEC]< MD5 for: PROQUOTA.EXE >[/color]
[2009/07/14 03:39:28 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=19117589BA265AAF89BEBE1E9040000C -- C:\Windows\winsxs\amd64_microsoft-windows-proquota_31bf3856ad364e35_6.1.7600.16385_none_83bbe97eac162e90\proquota.exe
[2010/11/20 14:17:30 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=2E77BAB79F078654782F83F0A0AEFE31 -- C:\Windows\SysWOW64\proquota.exe
[2010/11/20 14:17:30 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=2E77BAB79F078654782F83F0A0AEFE31 -- C:\Windows\winsxs\x86_microsoft-windows-proquota_31bf3856ad364e35_6.1.7601.17514_none_29ce61c2f0a740f4\proquota.exe
[2009/07/14 03:14:29 | 000,028,160 | ---- | M] (Microsoft Corporation) MD5=8CDF71E78469BE54C29C1AD2FC8DE611 -- C:\Windows\winsxs\x86_microsoft-windows-proquota_31bf3856ad364e35_6.1.7600.16385_none_279d4dfaf3b8bd5a\proquota.exe
[2010/11/20 15:25:04 | 000,031,744 | ---- | M] (Microsoft Corporation) MD5=C6C83C0DF40E11FA1F06625E95E41DE7 -- C:\Windows\SysNative\proquota.exe
[2010/11/20 15:25:04 | 000,031,744 | ---- | M] (Microsoft Corporation) MD5=C6C83C0DF40E11FA1F06625E95E41DE7 -- C:\Windows\winsxs\amd64_microsoft-windows-proquota_31bf3856ad364e35_6.1.7601.17514_none_85ecfd46a904b22a\proquota.exe

[color=#A23BEC]< MD5 for: QMGR.DLL >[/color]
[2010/11/20 15:27:23 | 000,849,920 | ---- | M] (Microsoft Corporation) MD5=1EA7969E3271CBC59E1730697DC74682 -- C:\Windows\SysNative\qmgr.dll
[2010/11/20 15:27:23 | 000,849,920 | ---- | M] (Microsoft Corporation) MD5=1EA7969E3271CBC59E1730697DC74682 -- C:\Windows\winsxs\amd64_microsoft-windows-bits-client_31bf3856ad364e35_6.1.7601.17514_none_81b6ca5c101195cd\qmgr.dll
[2009/07/14 03:41:53 | 000,848,384 | ---- | M] (Microsoft Corporation) MD5=7F0C323FE3DA28AA4AA1BDA3F575707F -- C:\Windows\winsxs\amd64_microsoft-windows-bits-client_31bf3856ad364e35_6.1.7600.16385_none_7f85b69413231233\qmgr.dll

[color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
[2009/07/14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010/11/20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010/11/20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010/11/20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010/11/20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

[color=#A23BEC]< MD5 for: SPOOLSV.EXE >[/color]
[2010/08/20 07:38:12 | 000,559,104 | ---- | M] (Microsoft Corporation) MD5=8547491BE7086EE317163365D83A37D2 -- C:\Windows\winsxs\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.1.7600.20785_none_32ca3745f45762fc\spoolsv.exe
[2009/07/14 03:39:44 | 000,558,080 | ---- | M] (Microsoft Corporation) MD5=89E8550C5862999FCF482EA562B0E98E -- C:\Windows\winsxs\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.1.7600.16385_none_324094c8db39cbbd\spoolsv.exe
[2010/11/20 15:25:21 | 000,559,104 | ---- | M] (Microsoft Corporation) MD5=B96C17B5DC1424D56EEA3A99E97428CD -- C:\Windows\SysNative\spoolsv.exe
[2010/11/20 15:25:21 | 000,559,104 | ---- | M] (Microsoft Corporation) MD5=B96C17B5DC1424D56EEA3A99E97428CD -- C:\Windows\winsxs\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.1.7601.17514_none_3471a890d8284f57\spoolsv.exe
[2010/08/21 08:29:47 | 000,558,592 | ---- | M] (Microsoft Corporation) MD5=F8E1FA03CB70D54A9892AC88B91D1E7B -- C:\Windows\winsxs\amd64_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.1.7600.16661_none_3252392adb2d25f4\spoolsv.exe

[color=#A23BEC]< MD5 for: SVCHOST.EXE >[/color]
[2009/07/14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

[color=#A23BEC]< MD5 for: TERMSRV.DLL >[/color]
[2009/07/14 03:41:55 | 000,706,560 | ---- | M] (Microsoft Corporation) MD5=0F05EC2887BFE197AD82A13287D2F404 -- C:\Windows\winsxs\amd64_microsoft-windows-t..teconnectionmanager_31bf3856ad364e35_6.1.7600.16385_none_ea94336f6df51e09\termsrv.dll
[2010/11/20 15:27:26 | 000,680,960 | ---- | M] (Microsoft Corporation) MD5=2E648163254233755035B46DD7B89123 -- C:\Windows\SysNative\termsrv.dll
[2010/11/20 15:27:26 | 000,680,960 | ---- | M] (Microsoft Corporation) MD5=2E648163254233755035B46DD7B89123 -- C:\Windows\winsxs\amd64_microsoft-windows-t..teconnectionmanager_31bf3856ad364e35_6.1.7601.17514_none_ecc547376ae3a1a3\termsrv.dll

[color=#A23BEC]< MD5 for: USERINIT.EXE >[/color]
[2010/11/20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009/07/14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009/07/14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010/11/20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

[color=#A23BEC]< MD5 for: VOLSNAP.SYS >[/color]
[2010/11/20 15:34:02 | 000,295,808 | ---- | M] (Microsoft Corporation) MD5=0D08D2F3B3FF84E433346669B5E0F639 -- C:\Windows\SysNative\drivers\volsnap.sys
[2010/11/20 15:34:02 | 000,295,808 | ---- | M] (Microsoft Corporation) MD5=0D08D2F3B3FF84E433346669B5E0F639 -- C:\Windows\SysNative\DriverStore\FileRepository\volume.inf_amd64_neutral_df8bea40ac96ca21\volsnap.sys
[2010/11/20 15:34:02 | 000,295,808 | ---- | M] (Microsoft Corporation) MD5=0D08D2F3B3FF84E433346669B5E0F639 -- C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_73dcbcf012b4850e\volsnap.sys
[2009/07/14 03:45:55 | 000,294,992 | ---- | M] (Microsoft Corporation) MD5=58F82EED8CA24B461441F9C3E4F0BF5C -- C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7600.16385_none_71aba92815c60174\volsnap.sys

[color=#A23BEC]< MD5 for: WININET.DLL >[/color]
[2010/12/18 07:31:01 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=025031C16D3A486F6AFE1C9B2FB1ADE0 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20861_none_1d14d3eb933996fc\wininet.dll
[2012/02/28 08:27:38 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=05ED629EB0A11CAFB87EFB7847943312 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21931_none_7b3a41eb48a517c0\wininet.dll
[2012/02/28 08:35:54 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=063FB03BDCD3431E87550C7E7F0913EE -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16968_none_78b0d87632731417\wininet.dll
[2013/10/12 08:55:04 | 001,777,152 | ---- | M] (Microsoft Corporation) MD5=06715E12E72EFBC2D660A779FFF32944 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20848_none_0cb73c4a73a7d810\wininet.dll
[2013/06/12 07:12:14 | 002,248,704 | ---- | M] (Microsoft Corporation) MD5=09BF0D9701F9D846BBC5ABED003851CB -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20742_none_68e1306a2bfc938f\wininet.dll
[2010/09/08 07:36:17 | 001,192,960 | ---- | M] (Microsoft Corporation) MD5=09E42C1CE2199E0442E3531A599983A8 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16671_none_789f00d232818732\wininet.dll
[2013/08/10 07:14:47 | 002,248,704 | ---- | M] (Microsoft Corporation) MD5=0A380C8E396975463E3F643E88AE8BDF -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20794_none_68e6044c2bf84584\wininet.dll
[2012/10/27 07:36:37 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=0D5335A61B9D69A61C683A6AB440E3A6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17153_none_78b680f8326fa9dc\wininet.dll
[2012/08/24 18:58:13 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=0D5ADA91A4176674D12DC990DD022E84 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22099_none_1ee2a15190714c2a\wininet.dll
[2009/07/14 03:16:19 | 000,977,920 | ---- | M] (Microsoft Corporation) MD5=0D874F3BC751CC2198AF2E6783FB8B35 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16385_none_1c7990d87a289fd4\wininet.dll
[2013/05/17 02:59:03 | 002,241,024 | ---- | M] (Microsoft Corporation) MD5=12716D987D475B051F35895659159705 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16614_none_7fb67884124fff26\wininet.dll
[2013/09/23 01:23:28 | 002,248,704 | ---- | M] (Microsoft Corporation) MD5=1377A310439639A610097ED56975AE19 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20831_none_68d576fc2c057c88\wininet.dll
[2012/10/27 06:56:29 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=16E1C86531C6DDA240D2A64603D99F99 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21355_none_1d2384b9932e0845\wininet.dll
[2011/11/05 06:31:42 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=1903228FE0C7D402B26A217F8D7713FD -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21855_none_1f0a05d1905446a1\wininet.dll
[2011/11/05 06:35:00 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=19714FA7D7204D9BEE1EE12791DA9010 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17720_none_1e9bd7587722d451\wininet.dll
[2011/06/21 08:20:53 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=1A36497983C867FB85FF1DCD4933015F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17638_none_7ab7a35a2f812f09\wininet.dll
[2013/04/05 07:19:01 | 001,775,616 | ---- | M] (Microsoft Corporation) MD5=1D48B7F4618EE77430ACECCA1BCA88E1 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20681_none_0cd17cc273935223\wininet.dll
[2011/08/20 06:38:10 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=1DBC7303366C0C9B80E51C4B4BECB7ED -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16869_none_1c933b567a14bf11\wininet.dll
[2011/02/24 07:32:44 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=214605C48AE416BC067C39D227CFCC57 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16766_none_1c9038927a1775e5\wininet.dll
[2012/12/20 16:01:55 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=2369627A789B29866825BD9504F7B237 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22199_none_7b013ebb48ceba87\wininet.dll
[2012/10/27 07:54:52 | 001,198,592 | ---- | M] (Microsoft Corporation) MD5=245F82821B1E47ED7EA1D1B03DB666EE -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21355_none_7942203d4b8b797b\wininet.dll
[2013/05/17 03:25:57 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=2473CA6595A2659D7039A4A89FECA269 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16614_none_2397dd0059f28df0\wininet.dll
[2013/06/12 06:19:11 | 001,777,664 | ---- | M] (Microsoft Corporation) MD5=24AE444B165D11835EF3D38CF3CC7FA4 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20742_none_0cc294e6739f2259\wininet.dll
[2010/06/30 08:25:31 | 000,978,432 | ---- | M] (Microsoft Corporation) MD5=250267CE6217C1AB4517F22FB7EA13E8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16625_none_1cba761279f7efa3\wininet.dll
[2010/09/08 07:29:57 | 001,196,032 | ---- | M] (Microsoft Corporation) MD5=25B069DDF6206EF3C968179F98D351C7 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20795_none_7916feed4babc43a\wininet.dll
[2012/05/15 05:03:54 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=2606B35DDADCA19BEA9A08033C621B97 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17842_none_1e8839fa77313c08\wininet.dll
[2014/02/06 11:24:52 | 002,334,208 | ---- | M] (Microsoft Corporation) MD5=263B6E451526A90FF8B1CEC759F22956 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16518_none_e4343655b6ea4626\wininet.dll
[2013/08/10 06:33:03 | 001,777,664 | ---- | M] (Microsoft Corporation) MD5=26BD13BB9196C2D8F8155C3C6169BC22 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20794_none_0cc768c8739ad44e\wininet.dll
[2013/04/05 08:52:14 | 002,242,048 | ---- | M] (Microsoft Corporation) MD5=27A9000C534AA9BADC9EE74940F50C6D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16576_none_7fc71c9c1242ae81\wininet.dll
[2011/04/22 21:31:50 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=27CDAF355CCE3762C7F13719E814418B -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16800_none_1ccb184479ec335c\wininet.dll
[2011/08/20 07:26:06 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=2B4973A8A9D0336EEF6E10DBD6E5B87D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21795_none_7afd5fbf48d22a74\wininet.dll
[2011/04/22 21:10:01 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=2CA020EACDC6DDB2BEA89FEA02C90945 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17601_none_1eb275947711b89f\wininet.dll
[2013/02/28 18:34:37 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=2CB9A124659320621A9A0B134ADF9D43 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17256_none_78b983bc326cf308\wininet.dll
[2011/04/23 00:08:29 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=2DCA688631F71722B0B5E57F526BB2EB -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17601_none_7ad111182f6f29d5\wininet.dll
[2012/02/28 08:51:34 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=2F6A29DAE9BAC86BE14CD2FF1261FDD5 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21158_none_79451d4f4b88cb32\wininet.dll
[2013/02/25 01:21:50 | 002,247,168 | ---- | M] (Microsoft Corporation) MD5=32D39C8BA5940DA0EB6E7993F3190F92 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20644_none_68ebd2c62bf4aae0\wininet.dll
[2012/08/24 20:19:37 | 001,198,592 | ---- | M] (Microsoft Corporation) MD5=37ABD0F9CB119F50E5C33C6B9A356D54 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21313_none_796b5f594b6cd709\wininet.dll
[2010/09/08 06:30:04 | 000,978,432 | ---- | M] (Microsoft Corporation) MD5=3D6AA6DD4D0F3BB41B804747EB489831 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16671_none_1c80654e7a2415fc\wininet.dll
[2010/06/30 09:13:46 | 001,192,960 | ---- | M] (Microsoft Corporation) MD5=3DEB428ACD3D4DECD1619C24E4628DD2 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16625_none_78d91196325560d9\wininet.dll
[2012/05/15 04:51:09 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=3E5195AB78F4DCE48E04CC6979D9B428 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21995_none_1edec8079074b38c\wininet.dll
[2010/05/21 07:59:29 | 001,196,032 | ---- | M] (Microsoft Corporation) MD5=40643F8400F5C05770EE8F1373BBE3EA -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20716_none_796e7e974b69fe09\wininet.dll
[2014/05/30 09:56:56 | 002,266,112 | ---- | M] (Microsoft Corporation) MD5=40BFD9D6EC8E174145F012246CA73CCD -- C:\Windows\SysNative\wininet.dll
[2014/05/30 09:56:56 | 002,266,112 | ---- | M] (Microsoft Corporation) MD5=40BFD9D6EC8E174145F012246CA73CCD -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.17126_none_e460a5c5b6c8b99e\wininet.dll
[2013/05/17 03:42:58 | 001,777,664 | ---- | M] (Microsoft Corporation) MD5=425A20F1C6855222944BFD4FA9BE61A5 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20719_none_0cbef49073a289bb\wininet.dll
[2012/10/27 08:26:55 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=42C671E0525618E23371D0E68282F37C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17984_none_1e5efcc4774fdba1\wininet.dll
[2012/08/24 19:10:47 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=4408FA39C6DCF639C6CC34059E201D16 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17115_none_1cc525b879effb90\wininet.dll
[2010/11/20 14:21:36 | 000,980,992 | ---- | M] (Microsoft Corporation) MD5=44214C94911C7CFB1D52CB64D5E8368D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17514_none_1eaaa4a07717236e\wininet.dll
[2012/08/24 20:05:06 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=443D30EB805EEEE1E31C91ADCC82AB89 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17940_none_7aa4d6d02f9077b7\wininet.dll
[2011/06/21 08:20:48 | 001,197,056 | ---- | M] (Microsoft Corporation) MD5=463302B41295A7FCAAC655CCB5DE79F8 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16839_none_78d2469e3259dc74\wininet.dll
[2010/11/04 08:41:11 | 001,197,056 | ---- | M] (Microsoft Corporation) MD5=480E62DF24AD9019824344612CD7CF16 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20831_none_7953df334b7eb45f\wininet.dll
[2011/02/24 08:29:15 | 001,197,056 | ---- | M] (Microsoft Corporation) MD5=4DAEEEE0248F5D85751B05D9C6DA28CC -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16766_none_78aed4163274e71b\wininet.dll
[2011/11/05 07:41:43 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=4EFC156290537BB9706D3A7A1A4B8733 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17720_none_7aba72dc2f804587\wininet.dll
[2012/08/24 18:57:48 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=4F4E2103C7F8A2AB6679071855549C93 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17940_none_1e863b4c77330681\wininet.dll
[2012/05/15 05:57:07 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=507FBE142C77A32C1AE56CA35B6A7307 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21995_none_7afd638b48d224c2\wininet.dll
[2013/08/10 05:59:10 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=535F6263035F2530A62D5D64EF6E73D3 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16686_none_239eb17659ec7293\wininet.dll
[2012/06/27 07:49:12 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=54D506A1F7D9E1AF6439F7A06CC6488A -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22032_none_1f1c7ed39046f323\wininet.dll
[2012/06/27 08:03:21 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=552D000E5D6CD1310D8510515B305FFE -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17051_none_1c95e2fa7a1408d1\wininet.dll
[2012/06/27 09:03:25 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=569593095FF5260DFE1D23E3F426369F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17051_none_78b47e7e32717a07\wininet.dll
[2012/06/27 07:53:07 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=58CFAE82CC4092C5988555B73CD557B8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17874_none_1e69caca7747c289\wininet.dll
[2011/02/24 08:27:32 | 001,198,592 | ---- | M] (Microsoft Corporation) MD5=5A33324B358D9B7E39424505EE242377 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20908_none_797b52e34b600f14\wininet.dll
[2013/04/05 07:28:24 | 001,767,424 | ---- | M] (Microsoft Corporation) MD5=5ABB3F36AF17007F33FA275E96A2C95E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16576_none_23a8811859e53d4b\wininet.dll
[2013/07/26 06:00:11 | 002,248,704 | ---- | M] (Microsoft Corporation) MD5=5C49F5A791B944AD8247473ABD35602D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20768_none_68e2a84e2bfb6003\wininet.dll
[2012/10/27 06:50:37 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=5CD2659F5F1728C7A71D4A15AA4A7D53 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22145_none_1f14b1ab904c5840\wininet.dll
[2011/12/16 10:41:15 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=5DCD862869A5E06F5A7E03EE22DDD738 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21108_none_797b2ceb4b603f7d\wininet.dll
[2013/10/12 09:03:50 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=5FD4335DCD343D0FEA9FA6B18ED408D9 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16736_none_238ee01859f90fd1\wininet.dll
[2010/05/21 07:09:57 | 000,980,480 | ---- | M] (Microsoft Corporation) MD5=5FF3118C688D43ED77DEADC6F4895EF9 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20716_none_1d4fe313930c8cd3\wininet.dll
[2013/04/05 07:12:39 | 002,247,168 | ---- | M] (Microsoft Corporation) MD5=61962C7A2D6E32827F089E6F0A03E533 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20681_none_68f018462bf0c359\wininet.dll
[2012/08/24 19:47:53 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=635D10865A99EA8E7E532C84D952D769 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22099_none_7b013cd548cebd60\wininet.dll
[2011/12/16 10:02:26 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=653109C31F7F190072C9E4DF31154225 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16930_none_1caaaa667a048456\wininet.dll
[2012/12/20 14:53:51 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=6554DA6A01F14B3F017161879C8DB9BC -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.18035_none_1e95e4cc77269c85\wininet.dll
[2011/06/21 08:13:56 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=66DD24C471324CB2EA747087846C122E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20992_none_791401db4bae7283\wininet.dll
[2013/09/23 01:36:52 | 001,777,152 | ---- | M] (Microsoft Corporation) MD5=67220EB57550F10E1219D57D89937456 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20831_none_0cb6db7873a80b52\wininet.dll
[2012/06/27 08:47:59 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=69449A3D42AC7000ACF5055172618632 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22032_none_7b3b1a5748a46459\wininet.dll
[2013/03/22 22:27:54 | 002,240,512 | ---- | M] (Microsoft Corporation) MD5=69F1D418B4C4EC23033D598E4CBC6B73 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16521_none_7fc28d121246afa9\wininet.dll
[2012/02/28 07:25:01 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=6A5778483A8023B4DB9C5A509D382392 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21931_none_1f1ba6679047a68a\wininet.dll
[2011/04/22 22:18:28 | 001,197,056 | ---- | M] (Microsoft Corporation) MD5=6A977E22D6D9077F2C9E617D89236297 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16800_none_78e9b3c83249a492\wininet.dll
[2011/06/21 08:17:27 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=6ABD901E178675DFE86CCE75F2FAC9A5 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21754_none_7b279f2548b2a159\wininet.dll
[2012/10/27 07:39:15 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=6C11E0E42D91728C8283917A8F57A72E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22145_none_7b334d2f48a9c976\wininet.dll
[2012/02/28 07:44:19 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=6D57EAE6BC922EC56DBD9EF4AD9986BD -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21158_none_1d2681cb932b59fc\wininet.dll
[2011/06/21 07:26:35 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=6DC5A5F57FACFF20149F04440BB4523C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20992_none_1cf566579351014d\wininet.dll
[2012/12/20 14:59:24 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=6EE6F7BFF92590051ACFA519AEE8ACE5 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17197_none_1c70a6ec7a2f0dc6\wininet.dll
[2012/12/20 15:25:08 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=6F5EF9687B17FACD529C8EEC61791A01 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21406_none_1d5a96859304930e\wininet.dll
[2012/10/27 07:00:40 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=703CD7A8E6F8A233118E8070B5FB7C1F -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17153_none_1c97e5747a1238a6\wininet.dll
[2013/02/28 15:56:54 | 001,189,888 | ---- | M] (Microsoft Corporation) MD5=734A1387945DA9215102A782E83C460E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22258_none_7b2b800748af2e93\wininet.dll
[2011/06/21 07:28:33 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=748FD4CAB1AFFD90A9556EB7D5AA1FEB -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17638_none_1e9907d67723bdd3\wininet.dll
[2010/11/04 07:53:56 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=749A4DDB8915066566E2BB38C2618048 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20831_none_1d3543af93214329\wininet.dll
[2013/02/21 12:15:07 | 002,240,512 | ---- | M] (Microsoft Corporation) MD5=753C0848AE7872A3F59663078A517293 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16540_none_7fc4a46e1244c8b6\wininet.dll
[2011/08/20 07:53:02 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=7570FA3FC82E08FB637E32D2D95DB41D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21795_none_1edec43b9074b93e\wininet.dll
[2011/12/16 10:39:23 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=7710ECF9F1355F986463D4351562439E -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21878_none_7b16025b48bf3bbe\wininet.dll
[2014/05/30 09:21:10 | 001,790,976 | ---- | M] (Microsoft Corporation) MD5=771CDBC3D62437D6DB070820BB1EDCCF -- C:\Windows\SysWOW64\wininet.dll
[2014/05/30 09:21:10 | 001,790,976 | ---- | M] (Microsoft Corporation) MD5=771CDBC3D62437D6DB070820BB1EDCCF -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.17126_none_88420a41fe6b4868\wininet.dll
[2011/08/20 06:35:24 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=79FFA6C81F9F5B2244C5668D08387EA6 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21033_none_1d371e4b931fa640\wininet.dll
[2011/04/22 21:51:33 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=7A11DB452989040AD8570A3DCE2E9DE2 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21710_none_1f30422990385b03\wininet.dll
[2012/12/20 16:07:05 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=7B0C153254450192EAD602B992009F72 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17197_none_788f4270328c7efc\wininet.dll
[2012/06/27 08:08:59 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=7BD5EBE065E3F8632504BE397B5C640F -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21245_none_1d2e52bf9325ef2d\wininet.dll
[2012/02/28 07:38:52 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=7CCA8574A3B9BB41A4150739E21F1B23 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17785_none_1e5ff942774efaaa\wininet.dll
[2012/10/27 07:51:21 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=7E04D13661FB771CA4FDBB836AD0BA49 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17984_none_7a7d98482fad4cd7\wininet.dll
[2013/05/17 03:34:23 | 002,248,704 | ---- | M] (Microsoft Corporation) MD5=7E43B93C0E9C138AC1008F646B06E919 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20719_none_68dd90142bfffaf1\wininet.dll
[2013/10/12 09:16:42 | 002,249,216 | ---- | M] (Microsoft Corporation) MD5=7E7F32C588DA6A4554046804D8EEAC55 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20848_none_68d5d7ce2c054946\wininet.dll
[2013/02/28 15:57:26 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=7EA5274E1688339A72C152438F5BBE80 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.18094_none_7a72a07e2fb59c0a\wininet.dll
[2010/12/18 08:09:39 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=7EC667385C0D726C9D91D966886B7CFD -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20861_none_79336f6f4b970832\wininet.dll
[2011/11/05 06:35:50 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=7F5B51FACA193430346970283C50769F -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16912_none_1cc24ad279f27f22\wininet.dll
[2011/12/16 11:00:03 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=808C0CE9D4DBC0A6F72761294EB10FB2 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21878_none_1ef766d79061ca88\wininet.dll
[2012/12/20 15:59:36 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=81101547092783DC117D800D3573EBD4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.18035_none_7ab480502f840dbb\wininet.dll
[2010/12/18 08:15:38 | 001,197,056 | ---- | M] (Microsoft Corporation) MD5=8178D4C37F236BF810B2178415FE4949 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16722_none_78d6129e325811fb\wininet.dll
[2010/09/08 06:34:55 | 000,980,480 | ---- | M] (Microsoft Corporation) MD5=84795F28EB2E942951138827B8704819 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20795_none_1cf86369934e5304\wininet.dll
[2013/02/28 17:59:19 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=84DFC6513C2472230E2940B7B12FB21D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22258_none_1f0ce4839051bd5d\wininet.dll
[2012/05/15 05:56:59 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=8D3BC4F666B994382CE1B02E1BFEE0F6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17024_none_78d7ef2032567239\wininet.dll
[2012/05/15 05:59:23 | 001,198,592 | ---- | M] (Microsoft Corporation) MD5=8DE6FAB55DFDA754CA952B654D1C5784 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21215_none_796d5e074b6b0c90\wininet.dll
[2011/12/16 09:51:05 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=8DFDD881CEF74ED749BA968E060418CA -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21108_none_1d5c91679302ce47\wininet.dll
[2011/11/05 07:37:32 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=8F2CC83B92626A3B7E1DF360720FAD30 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21855_none_7b28a15548b1b7d7\wininet.dll
[2012/08/24 20:05:27 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=9156C3499C3794BC680FCCAA39DFA126 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17115_none_78e3c13c324d6cc6\wininet.dll
[2010/06/30 08:18:57 | 000,980,480 | ---- | M] (Microsoft Corporation) MD5=91A9CCAD9829A89C840899932B9EC2DF -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20745_none_1d2e73059325c74f\wininet.dll
[2013/11/26 08:33:33 | 001,820,160 | ---- | M] (Microsoft Corporation) MD5=927FA6456AD6D7630F6854828D2FD16B -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16476_none_88269a09fe7f1dc7\wininet.dll
[2011/03/07 08:20:10 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=93679DC9407BFC602D7E6BFC027455E0 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21676_none_7b13fdfb48c10ec2\wininet.dll
[2013/10/12 10:45:20 | 002,241,536 | ---- | M] (Microsoft Corporation) MD5=9706C99DAEBE3FEAC811B239617E98C4 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16736_none_7fad7b9c12568107\wininet.dll
[2013/02/28 15:37:29 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=989937C1C1333EE55CC2982340CB1DBA -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.18094_none_1e5404fa77582ad4\wininet.dll
[2012/05/15 05:08:48 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=9B086D98370BA0219F6805675D38DDA7 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17024_none_1cb9539c79f90103\wininet.dll
[2013/11/26 09:07:57 | 002,334,208 | ---- | M] (Microsoft Corporation) MD5=9B6678DB9C6A232C5A84D2FDFFF8B0E1 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16476_none_e445358db6dc8efd\wininet.dll
[2013/06/12 01:43:37 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=9BF7C7654EFD098EE3A27B49492A382A -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16635_none_2399c6cc59f0da3f\wininet.dll
[2014/02/06 10:41:35 | 001,820,160 | ---- | M] (Microsoft Corporation) MD5=9C89246184979A070B0C6CCF61C68136 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16518_none_88159ad1fe8cd4f0\wininet.dll
[2011/12/16 10:45:22 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=A283F0C807968F45D50B9B8AC10BA438 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16930_none_78c945ea3261f58c\wininet.dll
[2011/11/05 07:32:19 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=A35680AEE7E4BEF4B2ADC1A380B8E31F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21085_none_7921aac74ba3d5d9\wininet.dll
[2011/03/07 07:33:13 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=A5B19B240901CAB0C8E7767D2873613E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17573_none_1e68c4ce7748b1bd\wininet.dll
[2010/11/04 07:52:17 | 000,978,944 | ---- | M] (Microsoft Corporation) MD5=A7360A3B20B38F1D6A09402FB6E9E2C3 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16700_none_1ccb165e79ec3635\wininet.dll
[2013/08/10 07:22:18 | 002,241,024 | ---- | M] (Microsoft Corporation) MD5=AAFA952E774DDDB0956D3BDFAE5B5B99 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16686_none_7fbd4cfa1249e3c9\wininet.dll
[2014/03/01 04:32:16 | 001,820,160 | ---- | M] (Microsoft Corporation) MD5=AAFEAB4FC9D70253F8C7E353E879E8A2 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16521_none_88173a93fe8b3ae0\wininet.dll
[2011/03/07 08:31:44 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=AB026A724960570803E90DC370893BD0 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17573_none_7a8760522fa622f3\wininet.dll
[2010/05/21 07:18:06 | 000,977,920 | ---- | M] (Microsoft Corporation) MD5=ABE73A2F762A74B6AD2C9BE636915595 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16596_none_1c6fc5027a2fcf6a\wininet.dll
[2013/07/26 07:13:37 | 002,241,024 | ---- | M] (Microsoft Corporation) MD5=AC155DD9BD1E6D3B740826A4D1C68AAE -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16660_none_7fbbd516124b1755\wininet.dll
[2012/06/27 09:06:53 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=ADC0BAC148C957CF51B1F6F658A4FCA6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17874_none_7a88664e2fa533bf\wininet.dll
[2009/07/14 03:41:56 | 001,193,472 | ---- | M] (Microsoft Corporation) MD5=B1037F0131C9A010D611F6914E03CD92 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16385_none_78982c5c3286110a\wininet.dll
[2013/12/04 08:25:04 | 001,818,112 | ---- | M] (Microsoft Corporation) MD5=B5EB5BD3066959611E1F7A80FD6CC172 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16428_none_88216b07fe83d256\wininet.dll
[2013/02/25 01:26:06 | 001,775,616 | ---- | M] (Microsoft Corporation) MD5=B9A72493B83C77E78FE6213F4B01DB5D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20644_none_0ccd3742739739aa\wininet.dll
[2013/03/22 22:27:55 | 001,766,912 | ---- | M] (Microsoft Corporation) MD5=BA15504FA59A8DC304F1CBAEBA6252A1 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16521_none_23a3f18e59e93e73\wininet.dll
[2012/05/15 05:08:11 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=BBC4EE1EC1B484B710499FA74639DABA -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21215_none_1d4ec283930d9b5a\wininet.dll
[2011/04/22 21:51:18 | 001,189,376 | ---- | M] (Microsoft Corporation) MD5=BC661E59AE2BC840C6D8165F170DE7DE -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21710_none_7b4eddad4895cc39\wininet.dll
[2011/12/16 09:54:22 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=BDB7450CC556F238FD973C9DA300FEB8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17744_none_1e8a38a8772f718f\wininet.dll
[2012/06/27 09:03:40 | 001,198,592 | ---- | M] (Microsoft Corporation) MD5=C1DA026AA80BF160486BD74347FCF0AD -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21245_none_794cee434b836063\wininet.dll
[2012/08/24 19:06:08 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=C37D28AF883DD7A461D7C4A1E61AA42D -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21313_none_1d4cc3d5930f65d3\wininet.dll
[2011/04/22 22:17:28 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=C57E3F0ED76CB54D7D355A6E089561FA -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20949_none_7951137d4b7f982f\wininet.dll
[2011/08/20 07:45:20 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=CB8E57622E5966A87D4D9859D4F12D8D -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16869_none_78b1d6da32723047\wininet.dll
[2013/02/28 18:16:46 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=CC60CC36EF22880D349988211965C892 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17256_none_1c9ae8387a0f81d2\wininet.dll
[2010/05/21 07:52:30 | 001,192,960 | ---- | M] (Microsoft Corporation) MD5=CE40A889CB71A292E2947DBC630F47DF -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16596_none_788e6086328d40a0\wininet.dll
[2012/05/15 06:01:31 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=CE5BFBD9685EE37DB942211450AAEA8F -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17842_none_7aa6d57e2f8ead3e\wininet.dll
[2013/02/21 12:30:16 | 001,766,912 | ---- | M] (Microsoft Corporation) MD5=CFE0CEE587F9CEA4C29DEEC6D85FC91C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16540_none_23a608ea59e75780\wininet.dll
[2011/06/21 08:49:27 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=D1E7C4FA045B34C32D12BFBB415EBE1B -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21754_none_1f0903a190553023\wininet.dll
[2013/09/23 00:55:10 | 002,241,024 | ---- | M] (Microsoft Corporation) MD5=D28B35DE88D27EFB27DF4B1E8319E3C0 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16721_none_7faced3a1256e78b\wininet.dll
[2012/12/20 16:06:15 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=D37C305E7EBBD9A4529791168421816A -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21406_none_797932094b620444\wininet.dll
[2013/02/28 19:21:19 | 000,982,528 | ---- | M] (Microsoft Corporation) MD5=D7E39ACC14994BDD3E10E0F2D7C72ED2 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21471_none_1d09e59f9341d7f2\wininet.dll
[2011/02/24 07:46:10 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=DA2950BAD7306006EBA77DD93CC42690 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20908_none_1d5cb75f93029dde\wininet.dll
[2013/07/26 05:13:24 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=DAA3903F06116AE9EE7AC1D1B93684A4 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16660_none_239d399259eda61f\wininet.dll
[2011/08/20 07:37:58 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=DB33A1489C1DA1F37AC2D84CB9756DD1 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17671_none_7a8561a42fa7ed6c\wininet.dll
[2010/06/30 09:31:01 | 001,196,544 | ---- | M] (Microsoft Corporation) MD5=DBC6EC40DDEDF875C0576CF2C0CAF9C3 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20745_none_794d0e894b833885\wininet.dll
[2011/08/20 06:31:05 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=DBF24E87CB605A4F6E7424DD86F7A62C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17671_none_1e66c620774a7c36\wininet.dll
[2012/02/28 08:39:37 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=DE03C917EDED2A999C942A4F943D3068 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17785_none_7a7e94c62fac6be0\wininet.dll
[2013/07/26 05:10:53 | 001,777,664 | ---- | M] (Microsoft Corporation) MD5=DE581A5E0E70BB63898F8776EB274428 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20768_none_0cc40cca739deecd\wininet.dll
[2014/03/01 05:10:28 | 002,334,208 | ---- | M] (Microsoft Corporation) MD5=DF79CE9B950C62677D232154E93A81C7 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16521_none_e435d617b6e8ac16\wininet.dll
[2011/04/22 21:13:53 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=E391DB6E8CA3638B9772A990E6D280FF -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20949_none_1d3277f9932226f9\wininet.dll
[2011/11/05 06:37:37 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=E49448ACD38A375E4FBCCB87056E1467 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21085_none_1d030f43934664a3\wininet.dll
[2014/03/06 07:41:49 | 001,789,440 | ---- | M] (Microsoft Corporation) MD5=E4E829EE073E046B0EB19B5FECB19B8C -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.17041_none_884f4ca9fe60df00\wininet.dll
[2013/09/23 01:28:06 | 001,767,936 | ---- | M] (Microsoft Corporation) MD5=E4FEB264B47360B7296AEA4E052F88D8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16721_none_238e51b659f97655\wininet.dll
[2010/11/04 08:35:53 | 001,194,496 | ---- | M] (Microsoft Corporation) MD5=E521F850ADDCEBDBF755819FA608D1FF -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16700_none_78e9b1e23249a76b\wininet.dll
[2013/12/04 08:25:01 | 002,332,160 | ---- | M] (Microsoft Corporation) MD5=E6CB36B85BE59095337427E853A5B65A -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.16428_none_e440068bb6e1438c\wininet.dll
[2012/12/20 15:08:01 | 000,982,016 | ---- | M] (Microsoft Corporation) MD5=ED5F1E888F7D75EE5C8590A155423720 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.22199_none_1ee2a33790714951\wininet.dll
[2011/03/07 07:22:07 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=EDEB2904636B657782F824D8FF97D0B8 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21676_none_1ef5627790639d8c\wininet.dll
[2011/06/21 07:36:36 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=EE0D7471EBF9CE40CC4A203B1F90F028 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16839_none_1cb3ab1a79fc6b3e\wininet.dll
[2010/12/18 07:32:22 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=F019FCA21F609E34B79AE130681D08F7 -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16722_none_1cb7771a79faa0c5\wininet.dll
[2011/08/20 07:41:29 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=F0822436F58BE708D33AB0B95E524812 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21033_none_7955b9cf4b7d1776\wininet.dll
[2012/02/28 07:40:21 | 000,981,504 | ---- | M] (Microsoft Corporation) MD5=F09F1A921CB0F1B708D23CC58F8EB21E -- C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16968_none_1c923cf27a15a2e1\wininet.dll
[2011/11/05 07:26:29 | 001,197,568 | ---- | M] (Microsoft Corporation) MD5=F12CB8EFB15813723575EE94C6A76E8B -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16912_none_78e0e656324ff058\wininet.dll
[2014/03/06 08:22:40 | 002,260,480 | ---- | M] (Microsoft Corporation) MD5=F220BA78AB542C70211D73AE4729B2CD -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_11.2.9600.17041_none_e46de82db6be5036\wininet.dll
[2013/02/28 19:29:13 | 001,198,080 | ---- | M] (Microsoft Corporation) MD5=F694EF252671B85B7CA964BD6153F871 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21471_none_792881234b9f4928\wininet.dll
[2011/12/16 10:47:38 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=F6C45D1D448B38A3298505917710F047 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17744_none_7aa8d42c2f8ce2c5\wininet.dll
[2010/11/20 15:27:28 | 001,188,864 | ---- | M] (Microsoft Corporation) MD5=F6C5302E1F4813D552F41A0AC82455E5 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17514_none_7ac940242f7494a4\wininet.dll
[2013/06/12 01:26:20 | 002,241,024 | ---- | M] (Microsoft Corporation) MD5=FAF6EC2460AD5FBBD38D8E1AE28B0D77 -- C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16635_none_7fb86250124e4b75\wininet.dll

[color=#A23BEC]< MD5 for: WININIT.EXE >[/color]
[2009/07/14 03:39:52 | 000,129,024 | ---- | M] (Microsoft Corporation) MD5=94355C28C1970635A31B3FE52EB7CEBA -- C:\Windows\SysNative\wininit.exe
[2009/07/14 03:39:52 | 000,129,024 | ---- | M] (Microsoft Corporation) MD5=94355C28C1970635A31B3FE52EB7CEBA -- C:\Windows\winsxs\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49\wininit.exe
[2009/07/14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\SysWOW64\wininit.exe
[2009/07/14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010/11/20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2010/11/20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009/07/14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009/07/14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2014/03/04 13:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014/03/04 13:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014/03/04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\SysNative\winlogon.exe
[2014/03/04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\SysNative\winlogon.exe
[2014/03/04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
[2014/03/04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
[2009/10/28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009/10/28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009/10/28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
[2009/10/28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

[color=#A23BEC]< MD5 for: WS2_32.DLL >[/color]
[2010/11/20 15:27:29 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SysNative\ws2_32.dll
[2010/11/20 15:27:29 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2009/07/14 03:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_4eaca269e8070c6b\ws2_32.dll
[2010/11/20 14:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SysWOW64\ws2_32.dll
[2010/11/20 14:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
[2009/07/14 03:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_f28e06e62fa99b35\ws2_32.dll

[color=#A23BEC]< HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s >[/color]
"Debug" =
"" = mnmsrvc
"Kmode" = \SystemRoot\System32\win32k.sys
"Optional" = Posix [binary data]
"Posix" = %SystemRoot%\system32\psxss.exe
"Required" = DebugWindows [binary data]
"Windows" = %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

[color=#A23BEC]< %systemroot%\*. /mp /s >[/color]

[color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]

[color=#A23BEC]< c:\$recycle.bin\*.* /s >[/color]
[2011/08/13 14:32:58 | 000,000,129 | -HS- | M] () -- c:\$recycle.bin\S-1-5-20\desktop.ini
[2010/01/09 00:15:57 | 000,000,129 | -HS- | M] () -- c:\$recycle.bin\S-1-5-21-1964084851-1622096546-2455244959-500\desktop.ini
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I094SIT.flv
[2014/05/19 07:02:11 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I0IHNOK.zip
[2014/06/11 18:30:44 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I1TIOFG.avi
[2014/05/10 17:25:00 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I1XCK5Z.GIF
[2014/05/30 16:40:51 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I21OKL4.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I23C2XA.flv
[2013/10/21 22:02:31 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I2BP0ZN.exe
[2014/05/11 17:14:30 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I2UPTZ8.docx
[2014/05/31 17:27:50 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I31DTCI.wav
[2013/10/20 14:12:25 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I34A01M
[2014/07/02 18:53:00 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I3Q2PJZ
[2014/07/02 18:58:51 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I3SMF12
[2014/05/31 17:25:49 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I3WC9JK.flv
[2014/05/31 17:26:08 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I42M2HR.wmv
[2014/06/10 17:47:42 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I42XSFO
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I4OJ1TK.flv
[2014/07/02 12:20:37 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I4RUHNO.zip
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I67ARL5.flv
[2014/06/24 17:20:35 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I6IM058.xls
[2014/06/29 20:01:40 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I6QYUAT
[2014/06/10 21:50:01 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I77DQN8.avi
[2014/06/10 17:16:57 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I7LRJDP.mp4
[2014/05/18 14:19:56 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I7MBADC.JPG
[2014/06/10 17:16:57 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I7STWYR.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I8Z8K0H.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$I9JL2T1.flv
[2014/05/07 18:14:58 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IA468W1.avi
[2014/05/31 17:28:17 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IAFVSH9
[2014/05/18 14:47:53 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IAGBH74.odp
[2014/05/07 10:13:49 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IAJLD85
[2014/06/11 18:29:41 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IAZU2V3.avi
[2014/05/07 18:17:46 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IBL7VCL.flv
[2014/05/11 17:34:00 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IBOJLJR.zip
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IBZE98J.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IC0LEX9.flv
[2014/05/07 18:11:04 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IC7JYNZ.HDP
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IC7MHQB.flv
[2014/05/10 17:25:06 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IE0N361.GIF
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IE930GK.flv
[2014/05/18 14:19:50 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IFI2UPV.JPG
[2014/05/17 14:50:17 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IFZ6CJ7.docx
[2014/05/07 18:11:04 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IGSSQO0.H2
[2014/06/11 18:30:40 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IGV6WOB.avi
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IH39H7T.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IHNC1UP.avi
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$II5GP3Z.flv
[2014/05/31 17:27:48 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IIO0O57.wav
[2014/05/18 14:20:08 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IJ4PLPS.JPG
[2014/05/07 18:15:28 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IJ7I9ZH.flv
[2014/06/11 18:10:48 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IJFNJQ7.lnk
[2014/05/31 17:27:31 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IJKN9B1.wmv
[2014/05/31 17:27:24 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IL3ZK32.wmv
[2014/05/31 17:27:38 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$ILFZ0UC.wmv
[2014/06/19 07:26:41 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$ILGQ7BM.lnk
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$ILO00EF.flv
[2014/05/13 09:10:13 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IMKOD65.zip
[2014/05/07 21:40:39 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IMWAAVH.mp4
[2014/06/11 18:30:40 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IN31OUX.avi
[2014/06/19 15:00:08 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IN8CL6F.zip
[2014/06/11 18:32:31 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IOBHCQK
[2014/05/31 17:27:52 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IPC6WJX.wav
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IPXN0YM.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IQ1MFTA.flv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IQDYCKA.flv
[2014/05/10 17:25:03 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IQN8SS9.GIF
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$ITTE51Y.flv
[2014/05/31 17:27:57 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IU1B0RL.mp3
[2014/05/23 17:17:37 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IUUFSQ5.zip
[2014/07/03 07:23:16 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IV2G6SB
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IV89MYW.flv
[2014/07/03 07:23:25 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IVGQYQK
[2014/06/10 17:16:57 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IVVGLXR.flv
[2014/05/31 17:27:12 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IWPKLZ5.mp3
[2014/06/24 17:14:30 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IX21BGH.zip
[2014/06/10 17:16:57 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IYGE8O3.flv
[2014/05/31 17:27:35 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IYXFQ0L.wmv
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IZ9SDVZ.flv
[2014/06/10 17:25:13 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IZDDLDF.avi
[2014/06/11 18:26:14 | 000,000,544 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$IZZJA5Z.flv
[2014/06/10 20:10:48 | 004,933,377 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R094SIT.flv
[2014/05/18 21:17:36 | 000,059,307 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R0IHNOK.zip
[2014/06/10 20:48:29 | 009,893,812 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R1TIOFG.avi
[2014/05/10 16:58:44 | 000,158,135 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R1XCK5Z.GIF
[2014/05/07 19:14:36 | 013,482,235 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R21OKL4.flv
[2014/06/10 20:08:05 | 002,976,762 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R23C2XA.flv
[2014/03/17 23:40:40 | 000,286,540 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R2UPTZ8.docx
[2014/05/25 17:09:05 | 023,199,640 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R31DTCI.wav
[2010/01/27 22:25:48 | 006,364,030 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3WC9JK.flv
[2014/05/30 18:53:23 | 010,129,663 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R42M2HR.wmv
[2014/06/10 20:05:04 | 001,954,463 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R4OJ1TK.flv
[2014/07/02 12:20:22 | 000,248,672 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R4RUHNO.zip
[2014/06/10 19:58:00 | 008,342,542 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R67ARL5.flv
[2014/06/21 15:42:53 | 000,053,760 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R6IM058.xls
[2014/06/10 17:20:37 | 000,064,512 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R77DQN8.avi
[2014/06/02 17:04:36 | 011,463,843 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R7LRJDP.mp4
[2014/05/18 13:40:26 | 001,743,360 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R7MBADC.JPG
[2014/06/06 17:38:43 | 005,219,031 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R7STWYR.flv
[2014/06/10 19:56:04 | 005,101,666 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R8Z8K0H.flv
[2014/06/10 20:17:09 | 004,851,912 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R9JL2T1.flv
[2012/08/10 14:50:53 | 001,742,504 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RA468W1.avi
[2014/05/18 14:14:42 | 000,002,421 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RAGBH74.odp
[2014/06/10 20:41:25 | 026,856,088 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RAZU2V3.avi
[2014/03/02 18:02:57 | 019,543,943 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RBL7VCL.flv
[2014/05/11 17:33:20 | 036,180,967 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RBOJLJR.zip
[2014/06/10 20:14:05 | 004,626,518 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RBZE98J.flv
[2014/06/10 19:59:46 | 008,933,930 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RC0LEX9.flv
[2014/05/07 10:14:35 | 000,056,172 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RC7JYNZ.HDP
[2014/06/10 19:59:28 | 001,055,198 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RC7MHQB.flv
[2014/05/01 18:42:02 | 000,154,864 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RE0N361.GIF
[2014/06/10 20:10:46 | 007,880,121 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RE930GK.flv
[2014/05/18 13:40:00 | 002,023,936 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RFI2UPV.JPG
[2014/05/17 12:18:20 | 000,032,856 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RFZ6CJ7.docx
[2014/05/07 10:13:27 | 000,545,256 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RGSSQO0.H2
[2014/06/10 20:40:51 | 017,876,436 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RGV6WOB.avi
[2014/06/10 20:08:31 | 010,930,219 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RH39H7T.flv
[2014/06/10 17:45:25 | 063,375,872 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RHNC1UP.avi
[2014/06/10 20:18:29 | 005,973,080 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RI5GP3Z.flv
[2014/05/24 23:45:40 | 022,422,000 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RIO0O57.wav
[2014/05/18 13:42:54 | 001,613,312 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RJ4PLPS.JPG
[2014/05/06 08:17:20 | 013,085,026 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RJ7I9ZH.flv
[2013/10/22 12:05:34 | 000,000,947 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RJFNJQ7.lnk
[2014/05/30 18:53:23 | 010,129,663 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RJKN9B1.wmv
[2014/05/30 22:05:03 | 010,000,029 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RL3ZK32.wmv
[2014/05/30 18:45:41 | 010,136,863 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RLFZ0UC.wmv
[2010/06/30 15:50:01 | 000,002,753 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RLGQ7BM.lnk
[2014/06/10 20:03:48 | 013,769,398 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RLO00EF.flv
[2014/05/13 09:09:58 | 001,641,950 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RMKOD65.zip
[2009/12/27 14:39:08 | 006,328,785 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RMWAAVH.mp4
[2014/06/10 17:45:25 | 063,375,872 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RN31OUX.avi
[2014/06/19 14:59:54 | 000,105,557 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RN8CL6F.zip
[2014/05/30 16:30:29 | 024,954,148 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RPC6WJX.wav
[2014/06/10 20:05:56 | 010,623,021 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RPXN0YM.flv
[2014/06/10 20:05:36 | 000,319,042 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RQ1MFTA.flv
[2014/06/10 20:58:52 | 017,693,341 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RQDYCKA.flv
[2014/05/01 18:54:24 | 000,173,930 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RQN8SS9.GIF
[2014/06/10 20:09:49 | 007,099,857 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RTTE51Y.flv
[2014/05/24 18:33:27 | 000,103,878 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RU1B0RL.mp3
[2014/05/23 17:17:19 | 000,406,520 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RUUFSQ5.zip
[2014/06/10 20:21:13 | 008,458,319 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RV89MYW.flv
[2014/06/06 17:38:33 | 007,501,037 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RVVGLXR.flv
[2014/05/24 18:33:17 | 000,105,550 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RWPKLZ5.mp3
[2014/06/24 17:14:17 | 000,049,834 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RX21BGH.zip
[2014/06/06 17:37:37 | 005,857,709 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RYGE8O3.flv
[2014/05/30 18:06:03 | 007,207,763 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RYXFQ0L.wmv
[2014/06/10 20:14:39 | 013,299,622 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RZ9SDVZ.flv
[2014/06/10 17:15:18 | 000,042,496 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RZDDLDF.avi
[2014/06/10 21:01:47 | 008,934,400 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$RZZJA5Z.flv
[2010/06/30 10:48:56 | 000,000,129 | -HS- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\desktop.ini
[2014/02/01 13:45:24 | 000,300,622 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_0046.JPG
[2014/02/01 13:45:32 | 000,318,680 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_0047.JPG
[2014/02/01 13:45:56 | 000,362,291 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_0048.JPG
[2014/02/01 13:46:02 | 000,311,307 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_0049.JPG
[2014/02/01 18:22:38 | 000,215,973 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_2522.JPG
[2014/06/27 17:18:58 | 000,385,986 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3Q2PJZ\IMG_3507.JPG
[2014/07/02 12:59:38 | 000,075,264 | -HS- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R3SMF12\Thumbs.db
[2014/02/01 18:15:24 | 000,000,088 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R6QYUAT\M0101.CTG
[2014/02/01 18:20:36 | 000,000,070 | ---- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-1000\$R6QYUAT\M0125.CTG
[2010/02/03 03:01:39 | 000,000,129 | -HS- | M] () -- c:\$recycle.bin\S-1-5-21-340849774-531108057-1735277169-500\desktop.ini
[2009/07/14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009/07/14 07:08:49 | 000,032,482 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/04/07 13:21:45 | 000,001,002 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012/05/18 20:36:59 | 000,001,072 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012/05/18 20:37:02 | 000,001,076 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014/01/05 12:13:55 | 000,000,308 | ---- | C] () -- C:\Windows\Tasks\MySearchDial.job
[2014/05/29 10:45:45 | 000,003,464 | ---- | C] () -- C:\Windows\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-3.job
[2014/06/17 19:04:59 | 000,001,046 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000Core.job
[2014/06/17 19:05:00 | 000,001,098 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-340849774-531108057-1735277169-1000UA.job

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2013/11/09 12:25:22 | 103,378,319 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\½ìݬí‘
[2013/11/09 12:25:22 | 103,378,319 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\½ìݬí‘
[2013/10/31 23:26:01 | 104,433,978 | ---- | M] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\
Ìv­¬í
[2013/10/31 23:26:01 | 104,433,978 | ---- | C] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\
Ìv­¬í
[2013/10/24 06:47:42 | 102,749,940 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\sPž¬í‹
[2013/10/23 16:38:56 | 102,749,940 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\sPž¬í‹
[2013/09/24 17:14:26 | 097,531,747 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\mB¤¬íŠ
[2013/09/24 17:14:26 | 097,531,747 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\mB¤¬íŠ

< End of report >

Publicité

Soutenons La Quadrature du Net ! Soutenons La Quadrature du Net !

Signaler le contenu de ce document

Publicité

Soutenons La Quadrature du Net !