It is currently Thu Apr 26, 2018 7:53 pm


Programs Stop Responding

Is your PC infected? Is it running slow? Just can't figure out what's making it sluggish? Here is the place to get some help.

Moderators: liljim, Gecko

Programs Stop Responding

Postby Smithy8831 » Wed Apr 04, 2012 10:49 pm

Having trouble with some programs not responding here is my link to the post i just put up .. http://pctechforums.com/viewtopic.php?f=4&t=13230

Logfile of HijackThis v1.99.1
Scan saved at 23:41:30, on 04/04/2012
Platform: Unknown Windows (WinNT 6.01.3505 SP1)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)

Running processes:
C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\ccSvcHst.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_228_ActiveX.exe
C:\Program Files (x86)\Windows Live\Companion\companionuser.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Smudge\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
C:\Users\Smudge\Desktop\Programs\HijackThis.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://mail.google.com/mail/#inbox
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=c:\windows\syswow64\userinit.exe,
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\IPS\IPSBHO.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\coIEPlg.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - Startup: Dropbox.lnk = Smudge\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\bonjour\mdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O11 - Options group: [INTERNATIONAL] International
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Norton 360 (N360) - Unknown owner - C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\ccSvcHst.exe" /s "N360" /m "C:\Program Files (x86)\Norton 360\Engine\5.2.1.3\diMaster.dll" /prefetch:1 (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - Trusteer Ltd. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TOSHIBA HDD Protection (Thpsrv) - Unknown owner - C:\windows\system32\ThpSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: Vodafone Mobile Broadband Service (VmbService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %PROGRAMFILES%\Windows Media Player\wmpnetwk.exe (file missing)
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Gecko » Thu Apr 05, 2012 3:52 pm

After reading you other post and all the things other scans found I think you need to scan with a better tool.

Download Malwarebytes Anti-Malware from here
Double click the download and select install, once the install is finished check both update and run now boxes.
After the update select full scan and click the Scan button.

When the scan is finished it will produce a log, please copy and paste this log into your reply to this thread
User avatar
Gecko
Super Moderator
Super Moderator
 
Posts: 5209
Joined: Thu Oct 25, 2001 1:00 am
Location: Florida, USA

Thanks given:1
Thanks received:23
Top

Re: Programs Stop Responding

Postby Smithy8831 » Tue Apr 17, 2012 11:11 am

Hey gecko, sorry for the long wait for a reply :( Better late than never i guess !!

Oh and might i add i deleted the 4 items it found too.

Malwarebytes Anti-Malware (Trial) 1.61.0.1400
www.malwarebytes.org

Database version: v2012.04.16.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Smudge :: JASON [administrator]

Protection: Enabled

16/04/2012 22:03:01
mbam-log-2012-04-17 (10-51-21).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 475844
Time elapsed: 2 hour(s), 11 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 1
HKCU\SOFTWARE\YXE7DXCQ37 (Trojan.FakeAlert) -> No action taken.

Registry Values Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run|59t4 (Trojan.Downloader) -> Data: C:\Users\Smudge\AppData\Local\Temp\1biq.exe -> No action taken.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 2
C:\Downloads\SoftonicDownloader_for_doubletwist.exe (PUP.BundleOffer.Downloader.S) -> No action taken.
C:\Program Files (x86)\Free Ride Games\AppLoader2KEx.dll (Malware.Gen) -> No action taken.

(end)
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby home it guy » Thu Apr 19, 2012 1:17 pm

Hey, if you're still having problems we may have a solution. lmk.



--------------------------------------------------------------------------------------------------

http://www.homeitservice.net/

Over 20 years experience supporting personal and corporate software platforms.

We will troubleshoot any software at the same flat rate.

With remote support, we can connect to your PC or Mac to directly troubleshoot the issue.
User avatar
home it guy
Newbie
Newbie
 
Posts: 5
Joined: Wed Apr 11, 2012 7:32 pm
Location: Atlanta, Georgia
Operating System: Windows 7

Thanks given:0
Thanks received:0
Top

Re: Programs Stop Responding

Postby Gecko » Fri Apr 20, 2012 1:44 am

Smithy8831,

So how's it running now?
User avatar
Gecko
Super Moderator
Super Moderator
 
Posts: 5209
Joined: Thu Oct 25, 2001 1:00 am
Location: Florida, USA

Thanks given:1
Thanks received:23
Top

Re: Programs Stop Responding

Postby Smithy8831 » Mon Apr 23, 2012 12:11 pm

Still the same, stops responding when i open programs :(

I have found out by having a play around with different things that if i right click and run as the admin it doesnt stop responding??

I can manage like this but as you can tell when im in a rush and i forget to right click its a tedious routine...

I might try defragmenting it tonight and see if its a bad sector somewhere thats messing up
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Gecko » Mon Apr 23, 2012 2:13 pm

Smithy8831.

Start Malwarebytes Anti-Malware and select the "Settings" tab then select the "Scanner Settings" tab and make sure that "Auction for potentially unwanted programs [pup]" is set to "Show in results list and check for removal"
Also make sure that Auction for potentially unwanted modifications [pum] is also set to "Show in results list and check for removal"

Then click on the Scanner tab check full scan and click the Scan button, when the scan is finished it will produce a log, please copy and paste this log into your reply to this thread
User avatar
Gecko
Super Moderator
Super Moderator
 
Posts: 5209
Joined: Thu Oct 25, 2001 1:00 am
Location: Florida, USA

Thanks given:1
Thanks received:23
Top

Re: Programs Stop Responding

Postby Smithy8831 » Mon Apr 23, 2012 7:01 pm

Hey Gecko, Ive done what you said and ran the scan but nothing was found .... i was actually typing to say that internet explorer has stopped the whole "not responding" and just as i went to press send it only went and stopped responding lol !! Dam this machine !! Anyways heres the log :)

Malwarebytes Anti-Malware (Trial) 1.61.0.1400
www.malwarebytes.org

Database version: v2012.04.23.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Smudge :: JASON [administrator]

Protection: Enabled

23/04/2012 17:09:34
mbam-log-2012-04-23 (17-09-34).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 482490
Time elapsed: 2 hour(s), 43 minute(s), 34 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)


Cheers for the help so far :D
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Smithy8831 » Mon Apr 23, 2012 7:07 pm

Oh and another quick one here is the IE error from event viewer ... i dont know if its gonna show the cause or just the error from it closing :/

Faulting application name: iexplore.exe, version: 9.0.8112.16421, time stamp: 0x4d76255d
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x1000a104
Faulting process id: 0x894
Faulting application start time: 0x01cd217977190ece
Faulting application path: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Faulting module path: unknown
Report Id: 28395693-8d6e-11e1-89b8-705ab6c1e765

Sorry to be a pain but this looks pretty suspicious too seeing as when i run as the admin it works fine ...

Volume Shadow Copy Service warning: VSS was denied access to the root of volume \\?\Volume{08e8d38b-6345-11e1-94e2-705ab6c1e765}\. Denying administrators from accessing volume roots can cause many unexpected failures, and will prevent VSS from functioning properly. Check security on the volume, and try the operation again.

Operation:
Removing auto-release shadow copies
Loading provider

Context:
Execution Context: System Provider
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Smithy8831 » Wed May 02, 2012 3:44 pm

Hey Gecko,

Ive been troubled with an issue since i installed malwarebytes .... im using a dsl modem through a netgear wireless router, before i installed malwarebytes I could access all websites with any browser but now I cant access http:// websites and i can only access VERY limited https:// so im just wondering if malwarebytes and deleted anything that was infected but which may have been needed by windows? The strange thing is that when ever i unplug the wireless and use the ethernet into the laptop directly it works a treat and is fine but i need the wireless for my phone as you can imagine its frustrating swapping cables around.

Ive restored the modem to factory settings but no avail.

Ive browsed the web before posting on here and i cant seem to get a solution :(

Any ideas

Regards
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Gecko » Fri May 04, 2012 12:03 pm

Smithy8831,

First download Combofix from Hereto your desktop.

Shut down all other programs and then run combofix you saved to your desktop, following the prompts, if needed to shut down any active anti virus program. Combofix might have to restart your system if so this will be automatic, once combofix is finished it will produce a log please post this log in your reply.
User avatar
Gecko
Super Moderator
Super Moderator
 
Posts: 5209
Joined: Thu Oct 25, 2001 1:00 am
Location: Florida, USA

Thanks given:1
Thanks received:23
Top

Re: Programs Stop Responding

Postby Smithy8831 » Sun May 13, 2012 9:19 pm

ComboFix 12-05-07.02 - Smudge 13/05/2012 21:57:46.1.8 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.4027.1984 [GMT 2:00]
Running from: c:\users\Smudge\Desktop\cmf.exe
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
AV: Norton 360 Premier Edition *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton 360 Premier Edition *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
SP: Norton 360 Premier Edition *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
- REDUCED FUNCTIONALITY MODE -
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\xp
c:\programdata\xp\EBLib.dll
c:\programdata\xp\TPwSav.sys
c:\windows\system32\drivers\etc\hosts.ics
.
.
((((((((((((((((((((((((( Files Created from 2012-04-13 to 2012-05-13 )))))))))))))))))))))))))))))))
.
.
2012-05-13 20:00 . 2012-05-13 20:00 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-05-13 20:00 . 2012-05-13 20:00 -------- d-----w- c:\users\Guest\AppData\Local\temp
2012-05-13 20:00 . 2012-05-13 20:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-09 17:04 . 2012-05-09 17:04 -------- d-----w- c:\program files (x86)\1ClickDownload
2012-05-09 09:08 . 2012-05-13 19:54 -------- d-----w- C:\ComboFix
2012-04-19 12:28 . 2012-04-19 12:28 -------- d-----w- c:\users\Smudge\AppData\Roaming\VBA-M
2012-04-17 15:46 . 2012-04-17 15:46 -------- d-----w- c:\users\Smudge\AppData\Local\Research In Motion
2012-04-17 15:46 . 2012-04-17 15:49 -------- d-----w- c:\users\Smudge\AppData\Roaming\Research In Motion
2012-04-17 15:45 . 2011-07-20 13:58 44032 ----a-w- c:\windows\system32\drivers\RimSerial_AMD64.sys
2012-04-17 15:44 . 2012-04-17 15:44 -------- d-----w- c:\programdata\Research In Motion
2012-04-17 15:44 . 2012-04-17 15:44 -------- d-----w- c:\program files (x86)\Common Files\Research In Motion
2012-04-17 15:44 . 2012-04-17 15:44 -------- d-----w- c:\program files (x86)\Research In Motion
2012-04-16 21:01 . 2012-04-16 21:01 -------- d-----w- c:\users\Smudge\AppData\Roaming\Malwarebytes
2012-04-16 21:01 . 2012-04-16 21:01 -------- d-----w- c:\programdata\Malwarebytes
2012-04-16 21:01 . 2012-04-04 14:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-16 21:01 . 2012-04-16 21:01 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-28 16:56 . 2012-03-28 16:56 418464 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-03-28 16:56 . 2011-06-10 01:03 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-03-11 13:08 . 2012-03-11 13:08 68100 ----a-w- c:\users\Smudge\ibss.bin
2012-03-06 06:53 . 2012-04-12 10:52 5559152 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-06 05:59 . 2012-04-12 10:52 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-03-06 05:59 . 2012-04-12 10:52 3913072 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-03-01 06:46 . 2012-04-12 10:48 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-03-01 06:38 . 2012-04-12 10:48 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-03-01 06:33 . 2012-04-12 10:48 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-03-01 06:28 . 2012-04-12 10:48 5120 ----a-w- c:\windows\system32\wmi.dll
2012-03-01 05:37 . 2012-04-12 10:48 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-03-01 05:33 . 2012-04-12 10:48 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-03-01 05:29 . 2012-04-12 10:48 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-02-28 06:56 . 2012-04-12 10:53 2311168 ----a-w- c:\windows\system32\jscript9.dll
2012-02-28 06:49 . 2012-04-12 10:52 1390080 ----a-w- c:\windows\system32\wininet.dll
2012-02-28 06:48 . 2012-04-12 10:52 1493504 ----a-w- c:\windows\system32\inetcpl.cpl
2012-02-28 06:42 . 2012-04-12 10:53 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-02-28 01:18 . 2012-04-12 10:53 1799168 ----a-w- c:\windows\SysWow64\jscript9.dll
2012-02-28 01:11 . 2012-04-12 10:52 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2012-02-28 01:11 . 2012-04-12 10:52 1127424 ----a-w- c:\windows\SysWow64\wininet.dll
2012-02-28 01:03 . 2012-04-12 10:53 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb
2012-02-17 06:38 . 2012-03-14 11:39 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 05:34 . 2012-03-14 11:39 826880 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-02-17 04:58 . 2012-03-14 11:39 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:57 . 2012-03-14 11:39 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-15 10:01 . 2012-02-15 10:01 52736 ----a-w- c:\windows\system32\drivers\usbaapl64.sys
2012-02-15 10:01 . 2012-02-15 10:01 4547944 ----a-w- c:\windows\system32\usbaaplrc.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-04-01 21:14 192512 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-04-01 21:14 192512 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-04-01 21:14 192512 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-01-21 737656]
"MobileDocuments"="c:\program files (x86)\Common Files\Apple\Internet Services\ubd.exe" [2012-02-23 59240]
"Spotify Web Helper"="c:\users\Smudge\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-05-11 932528]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-03-27 421736]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
"RIMBBLaunchAgent.exe"="c:\program files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" [2011-09-01 90448]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSHIBA Online Product Information"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2010-03-03 4581280]
"Exetender"="c:\program files (x86)\Free Ride Games\GPlayer.exe" [2011-06-22 4837808]
.
c:\users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184]
.
c:\users\Smudge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Smudge\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-2-15 24246216]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 acpials;ALS Sensor Filter;c:\windows\system32\DRIVERS\acpials.sys [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-28 253600]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-02-05 137560]
R3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [2010-02-23 835952]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]
R3 vodafone_zte_cdc_acm;Vodafone Vodafone ZTE CDC-ACM driver (ZTE);c:\windows\system32\DRIVERS\vodafone_zte_cdc_acm.sys [x]
R3 vodafone_zte_cdc_ecm;vodafone_zte_cdc_ecm;c:\windows\system32\DRIVERS\vodafone_zte_cdc_ecm.sys [x]
R3 vodafone_zte_ecm_enum;Vodafone Vodafone ZTE DC Enumerator (ZTE);c:\windows\system32\DRIVERS\vodafone_zte_ecm_enum.sys [x]
R3 vodafone_zte_ecm_enum_filter;vodafone_zte_ecm_enum_filter;c:\windows\system32\DRIVERS\vodafone_zte_ecm_enum_filter.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys [x]
R4 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
R4 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2009-10-06 51512]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [x]
S0 RapportKE64;RapportKE64;c:\windows\System32\Drivers\RapportKE64.sys [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360x64\0502010.003\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360x64\0502010.003\SYMEFA64.SYS [x]
S0 Thpdrv;TOSHIBA HDD Protection Driver;c:\windows\system32\DRIVERS\thpdrv.sys [x]
S0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;c:\windows\system32\DRIVERS\Thpevm.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120507.001\BHDrvx64.sys [2012-04-02 1160824]
S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120511.001\IDSvia64.sys [2012-04-28 488568]
S1 RapportCerberus_34302;RapportCerberus_34302;c:\programdata\Trusteer\Rapport\store\exts\RapportCerberus\34302\RapportCerberus64_34302.sys [2011-12-15 397520]
S1 RapportEI64;RapportEI64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2011-11-07 55056]
S1 RapportPG64;RapportPG64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2011-11-07 61712]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360x64\0502010.003\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\N360x64\0502010.003\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
S2 iPodDrv;iPodDrv;c:\windows\system32\drivers\iPodDrv.sys [x]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-11-03 2152152]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-04-04 654408]
S2 N360;Norton 360;c:\program files (x86)\Norton 360\Engine\5.2.1.3\ccSvcHst.exe [2011-04-17 130008]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [x]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-03-22 1800808]
S2 RapportMgmtService;Rapport Management Service;c:\program files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2011-11-07 931640]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe [2010-04-06 258928]
S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys [x]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-03 2320920]
S2 VmbService;Vodafone Mobile Broadband Service;c:\program files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe [2011-07-14 9216]
S2 X5XSEx;X5XSEx;c:\program files (x86)\Free Ride Games\X5XSEx.Sys [2010-11-22 55400]
S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x]
S3 enecirhid;ENE CIR HID Receiver;c:\windows\system32\DRIVERS\enecirhid.sys [x]
S3 enecirhidma;ENE CIR HIDmini Filter;c:\windows\system32\DRIVERS\enecirhidma.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-04-01 138360]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [2011-11-27 17152]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
S3 vodafone_K3805-z_dc_enum;vodafone_K3805-z_dc_enum;c:\windows\system32\DRIVERS\vodafone_K3805-z_dc_enum.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - LAVASOFT_KERNEXPLORER
*NewlyCreated* - WS2IFSL
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1e957e5a-9982-11df-b004-705ab6c1e765}]
\shell\AutoRun\command - E:\Razor1911_Installer.exe
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8298d18f-4b8d-11e1-95db-b482fed71d9d}]
\shell\AutoRun\command - E:\setup_vmb_lite.exe /checkApplicationPresence
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8298d195-4b8d-11e1-95db-b482fed71d9d}]
\shell\AutoRun\command - E:\setup_vmb_lite.exe /checkApplicationPresence
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{89b93dc2-47ce-11e0-8731-705ab6c1e765}]
\shell\AutoRun\command - E:\KODAK_Software_Downloader.exe
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9e0297d5-bade-11df-b825-b482fed71d9d}]
\shell\AutoRun\command - "F:\WD SmartWare.exe" autoplay=true
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fce2322e-9d01-11e1-ade8-806e6f6e6963}]
\shell\AutoRun\command - E:\setup_vmb_lite.exe /checkApplicationPresence
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-28 16:56]
.
2012-05-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-203471022-2590247184-372165148-1001Core.job
- c:\users\Smudge\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-11 20:04]
.
2012-05-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-203471022-2590247184-372165148-1001UA.job
- c:\users\Smudge\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-11 20:04]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-14 22:58 97792 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-14 22:58 97792 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-14 22:58 97792 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2012-02-14 22:58 97792 ----a-w- c:\users\Smudge\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-03-22 10134560]
"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2010-03-22 896032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = https://mail.google.com/mail/#inbox
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: &Download by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/204
IE: Do&wnload selected by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/202
IE: E&xport to Microsoft Excel - c:\progra~2\MIF5BA~1\Office12\EXCEL.EXE/3000
Trusted Zone: nvidia.co.uk\www
TCP: DhcpNameServer = 139.7.30.125 139.7.30.126
TCP: Interfaces\{502905EA-8692-4354-93DF-ADDE0C6194AB}: DhcpNameServer = 139.7.30.125 139.7.30.126
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
HKLM-Run-(Default) - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App - c:\program files (x86)\WildTangent Games\App\Uninstall.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\N360]
"ImagePath"="\"c:\program files (x86)\Norton 360\Engine\5.2.1.3\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files (x86)\Norton 360\Engine\5.2.1.3\diMaster.dll\" /prefetch:1"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-203471022-2590247184-372165148-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-203471022-2590247184-372165148-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_USERS\S-1-5-21-203471022-2590247184-372165148-1001\Software\SecuROM\License information*]
"datasecu"=hex:cc,0b,c2,de,16,74,89,70,b0,77,3c,31,19,b4,75,a0,0c,0c,6d,55,53,
9a,cb,64,c4,eb,52,39,48,83,87,74,21,cc,ab,1d,be,27,f7,9c,dd,d2,18,5e,b8,32,\
"rkeysecu"=hex:11,fd,51,fc,35,52,50,44,d5,4c,18,0e,49,b1,e0,0c
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_228_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_228_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_228.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_228.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_228.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_228.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
c:\program files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
c:\program files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
c:\program files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
.
**************************************************************************
.
Completion time: 2012-05-13 22:14:42 - machine was rebooted
ComboFix-quarantined-files.txt 2012-05-13 20:14
.
Pre-Run: 47,751,393,280 bytes free
Post-Run: 48,151,642,112 bytes free
.
- - End Of File - - 33C333A0ADEC7EF166B7D34A6D0B8248
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Gecko » Mon May 14, 2012 12:38 pm

Smithy8831,

Copy and paste ALL the following text in the Quote box below into Notepad.
Click on File(in the menu at the top)>Save as../Save as Type: 'All Files' /File name: CFScript to your desktop.
Code: Select all
    File::

    Folder::
    c:\users\UpdatusUser\AppData\Local\temp
    c:\users\Guest\AppData\Local\temp
    c:\users\Default\AppData\Local\temp
    c:\users\Smudge\AppData\Local\temp
    Registry::

Now drag then drop the CFScript file onto ComboFix.exe
Image
Image
This will start ComboFix again.
After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply.
User avatar
Gecko
Super Moderator
Super Moderator
 
Posts: 5209
Joined: Thu Oct 25, 2001 1:00 am
Location: Florida, USA

Thanks given:1
Thanks received:23
Top

Re: Programs Stop Responding

Postby Smithy8831 » Mon May 14, 2012 1:37 pm

Sorry about the 3 part message, only allowed 60000 and this thing has 186000 !!!


ComboFix 12-05-07.02 - Smudge 14/05/2012 14:09:29.2.8 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.4027.2404 [GMT 2:00]
Running from: C:\Users\Smudge\Desktop\cmf.exe
Command switches used :: C:\Users\Smudge\Desktop\CFScript.txt
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
AV: Norton 360 Premier Edition *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton 360 Premier Edition *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
SP: Norton 360 Premier Edition *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

- REDUCED FUNCTIONALITY MODE -


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


c:\users\Default\AppData\Local\temp
c:\users\Guest\AppData\Local\temp
c:\users\Smudge\AppData\Local\temp
c:\users\Smudge\AppData\Local\temp\AdobeARM.log
c:\users\Smudge\AppData\Local\temp\Av-test.txt
c:\users\Smudge\AppData\Local\temp\CRX_75DAF8CB7768\crl-set
c:\users\Smudge\AppData\Local\temp\CRX_75DAF8CB7768\manifest.json
c:\users\Smudge\AppData\Local\temp\FXSAPIDebugLogFile.txt
c:\users\Smudge\AppData\Local\temp\IpAdrSet.log
c:\users\Smudge\AppData\Local\temp\uttA8D1.tmp
c:\users\Smudge\AppData\Local\temp\uttA8D2.tmp
c:\users\Smudge\AppData\Local\temp\uttA8D3.tmp
c:\users\Smudge\AppData\Local\temp\uttA8E3.tmp
c:\users\Smudge\AppData\Local\temp\uttA8E4.tmp
c:\users\Smudge\AppData\Local\temp\uttAE04.tmp
c:\users\Smudge\AppData\Local\temp\uttAE05.tmp
c:\users\Smudge\AppData\Local\temp\uttAE06.tmp
c:\users\Smudge\AppData\Local\temp\uttAE07.tmp
c:\users\Smudge\AppData\Local\temp\uttAE08.tmp
c:\users\UpdatusUser\AppData\Local\temp


((((((((((((((((((((((((( Files Created from 2012-04-14 to 2012-05-14 )))))))))))))))))))))))))))))))


2012-05-14 12:14:35 . 2012-05-14 12:14:35 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Temp
2012-05-13 13:58:00 . 2012-03-03 06:35:38 1544704 ----a-w- C:\windows\system32\DWrite.dll
2012-05-13 13:58:00 . 2012-03-03 05:31:19 1077248 ----a-w- C:\windows\SysWow64\DWrite.dll
2012-05-13 13:57:59 . 2012-03-31 06:05:57 5559664 ----a-w- C:\windows\system32\ntoskrnl.exe
2012-05-13 13:57:58 . 2012-03-31 04:39:37 3968368 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
2012-05-13 13:57:58 . 2012-03-31 04:39:37 3913072 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
2012-05-13 13:57:58 . 2012-03-31 03:10:03 3146240 ----a-w- C:\windows\system32\win32k.sys
2012-05-13 13:56:55 . 2012-03-17 07:58:57 75120 ----a-w- C:\windows\system32\drivers\partmgr.sys
2012-05-13 13:55:53 . 2012-03-30 11:35:47 1918320 ----a-w- C:\windows\system32\drivers\tcpip.sys
2012-05-13 13:55:49 . 2012-03-31 05:42:06 1732096 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2012-05-13 13:55:49 . 2012-03-31 05:40:32 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll
2012-05-13 13:55:49 . 2012-03-31 05:40:32 1367552 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2012-05-13 13:55:49 . 2012-03-31 05:40:31 1393664 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2012-05-13 13:55:49 . 2012-03-31 04:29:48 936960 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2012-05-09 17:04:32 . 2012-05-09 17:04:32 -------- d-----w- C:\Program Files (x86)\1ClickDownload
2012-05-09 09:08:27 . 2012-05-13 19:54:16 -------- d-----w- C:\ComboFix
2012-04-19 12:28:19 . 2012-04-19 12:28:19 -------- d-----w- C:\Users\Smudge\AppData\Roaming\VBA-M
2012-04-17 15:46:29 . 2012-04-17 15:46:29 -------- d-----w- C:\Users\Smudge\AppData\Local\Research In Motion
2012-04-17 15:46:28 . 2012-04-17 15:49:49 -------- d-----w- C:\Users\Smudge\AppData\Roaming\Research In Motion
2012-04-17 15:45:34 . 2011-07-20 13:58:22 44032 ----a-w- C:\windows\system32\drivers\RimSerial_AMD64.sys
2012-04-17 15:44:26 . 2012-04-17 15:44:26 -------- d-----w- C:\ProgramData\Research In Motion
2012-04-17 15:44:10 . 2012-04-17 15:44:22 -------- d-----w- C:\Program Files (x86)\Common Files\Research In Motion
2012-04-17 15:44:09 . 2012-04-17 15:44:09 -------- d-----w- C:\Program Files (x86)\Research In Motion
2012-04-16 21:01:43 . 2012-04-16 21:01:43 -------- d-----w- C:\Users\Smudge\AppData\Roaming\Malwarebytes
2012-04-16 21:01:34 . 2012-04-16 21:01:34 -------- d-----w- C:\ProgramData\Malwarebytes
2012-04-16 21:01:34 . 2012-04-04 14:56:40 24904 ----a-w- C:\windows\system32\drivers\mbam.sys
2012-04-16 21:01:33 . 2012-04-16 21:01:40 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
.


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2012-03-28 16:56:21 . 2012-03-28 16:56:21 418464 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2012-03-28 16:56:21 . 2011-06-10 01:03:59 70304 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-03-11 13:08:33 . 2012-03-11 13:08:33 68100 ----a-w- C:\Users\Smudge\ibss.bin
2012-03-01 06:46:16 . 2012-04-12 10:48:41 23408 ----a-w- C:\windows\system32\drivers\fs_rec.sys
2012-03-01 06:38:27 . 2012-04-12 10:48:38 220672 ----a-w- C:\windows\system32\wintrust.dll
2012-03-01 06:33:50 . 2012-04-12 10:48:40 81408 ----a-w- C:\windows\system32\imagehlp.dll
2012-03-01 06:28:47 . 2012-04-12 10:48:38 5120 ----a-w- C:\windows\system32\wmi.dll
2012-03-01 05:37:41 . 2012-04-12 10:48:38 172544 ----a-w- C:\windows\SysWow64\wintrust.dll
2012-03-01 05:33:23 . 2012-04-12 10:48:39 159232 ----a-w- C:\windows\SysWow64\imagehlp.dll
2012-03-01 05:29:16 . 2012-04-12 10:48:38 5120 ----a-w- C:\windows\SysWow64\wmi.dll
2012-02-28 06:56:48 . 2012-04-12 10:53:01 2311168 ----a-w- C:\windows\system32\jscript9.dll
2012-02-28 06:49:56 . 2012-04-12 10:52:58 1390080 ----a-w- C:\windows\system32\wininet.dll
2012-02-28 06:48:57 . 2012-04-12 10:52:59 1493504 ----a-w- C:\windows\system32\inetcpl.cpl
2012-02-28 06:42:55 . 2012-04-12 10:53:02 2382848 ----a-w- C:\windows\system32\mshtml.tlb
2012-02-28 01:18:55 . 2012-04-12 10:53:00 1799168 ----a-w- C:\windows\SysWow64\jscript9.dll
2012-02-28 01:11:21 . 2012-04-12 10:52:59 1427456 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2012-02-28 01:11:07 . 2012-04-12 10:52:59 1127424 ----a-w- C:\windows\SysWow64\wininet.dll
2012-02-28 01:03:16 . 2012-04-12 10:53:02 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb
2012-02-17 06:38:26 . 2012-03-14 11:39:29 1031680 ----a-w- C:\windows\system32\rdpcore.dll
2012-02-17 05:34:22 . 2012-03-14 11:39:29 826880 ----a-w- C:\windows\SysWow64\rdpcore.dll
2012-02-17 04:58:24 . 2012-03-14 11:39:28 210944 ----a-w- C:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:57:32 . 2012-03-14 11:39:28 23552 ----a-w- C:\windows\system32\drivers\tdtcp.sys
2012-02-15 10:01:50 . 2012-02-15 10:01:50 52736 ----a-w- C:\windows\system32\drivers\usbaapl64.sys
2012-02-15 10:01:50 . 2012-02-15 10:01:50 4547944 ----a-w- C:\windows\system32\usbaaplrc.dll


((((((((((((((((((((((((((((( SnapShot@2012-05-13_20.04.30 )))))))))))))))))))))))))))))))))))))))))

- 2009-07-14 04:54:17 . 2012-05-13 20:03:04 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54:17 . 2012-05-14 12:14:32 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54:17 . 2012-05-13 20:03:04 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54:17 . 2012-05-14 12:14:32 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54:17 . 2012-05-13 20:03:04 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54:17 . 2012-05-14 12:14:32 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2011-12-16 10:08:14 . 2012-02-23 09:45:11 16384 C:\windows\SysWOW64\%APPDATA%\Microsoft\Windows\IETldCache\index.dat
+ 2011-12-16 10:08:14 . 2012-05-14 01:02:07 16384 C:\windows\SysWOW64\%APPDATA%\Microsoft\Windows\IETldCache\index.dat
+ 2009-07-14 05:10:35 . 2012-05-14 12:16:52 43346 C:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
- 2010-07-24 16:48:10 . 2012-05-13 20:05:43 23404 C:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-203471022-2590247184-372165148-1001_UserData.bin
+ 2010-07-24 16:48:10 . 2012-05-14 12:16:53 23404 C:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-203471022-2590247184-372165148-1001_UserData.bin
+ 2011-05-20 17:15:54 . 2011-05-20 17:15:54 13824 C:\windows\system32\vodafone_zte_CPOCoinstaller.dll
+ 2009-07-14 05:30:40 . 2012-05-13 20:15:39 86016 C:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30:40 . 2012-05-13 13:44:42 86016 C:\windows\system32\DriverStore\infpub.dat
+ 2011-05-20 17:15:52 . 2011-05-20 17:15:52 14336 C:\windows\system32\drivers\vodafone_zte_cpo.sys
+ 2009-07-14 04:46:26 . 2012-05-14 01:39:44 91680 C:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2011-11-21 21:57:40 . 2011-11-21 21:57:40 68880 C:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll
+ 2011-12-15 12:01:34 . 2011-12-15 12:01:34 68880 C:\windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll
- 2011-11-21 20:31:18 . 2011-11-21 20:31:18 57616 C:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 57616 C:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
- 2012-04-12 11:04:43 . 2012-04-12 11:04:43 87408 C:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 87408 C:\windows\Microsoft.NET\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 93024 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2012-04-12 11:04:41 . 2012-04-12 11:04:41 93024 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2012-04-12 11:04:41 . 2012-04-12 11:04:41 35688 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 35688 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
- 2012-04-12 11:04:43 . 2012-04-12 11:04:43 11120 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
+ 2012-05-14 01:12:39 . 2012-05-14 01:12:39 11120 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 17784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
- 2012-04-12 11:04:42 . 2012-04-12 11:04:42 17784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Presentation\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Presentation.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 58240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
- 2012-04-12 11:04:41 . 2012-04-12 11:04:41 58240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Input.Manipulations\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Input.Manipulations.dll
- 2012-04-12 11:04:24 . 2012-04-12 11:04:24 44920 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 44920 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.ApplicationServices\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.ApplicationServices.dll
- 2012-04-12 11:04:29 . 2012-04-12 11:04:29 37240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 37240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Channels\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Channels.dll
+ 2012-05-14 01:12:29 . 2012-05-14 01:12:29 64352 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
- 2012-04-12 11:04:24 . 2012-04-12 11:04:24 64352 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Numerics\v4.0_4.0.0.0__b77a5c561934e089\System.Numerics.dll
- 2012-04-12 11:04:24 . 2012-04-12 11:04:24 51032 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 51032 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Device\v4.0_4.0.0.0__b77a5c561934e089\System.Device.dll
- 2012-04-12 11:04:22 . 2012-04-12 11:04:22 50552 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2012-05-14 01:12:28 . 2012-05-14 01:12:28 50552 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.DataSetExtensions\v4.0_4.0.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
- 2012-04-12 11:04:15 . 2012-04-12 11:04:15 81784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2012-05-14 01:12:24 . 2012-05-14 01:12:24 81784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration.Install\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2012-04-12 11:04:22 . 2012-04-12 11:04:22 81800 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
+ 2012-05-14 01:12:28 . 2012-05-14 01:12:28 81800 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\v4.0_4.0.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
- 2012-04-12 11:04:21 . 2012-04-12 11:04:21 39784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2012-05-14 01:12:28 . 2012-05-14 01:12:28 39784 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn.Contract\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
- 2012-04-12 11:04:26 . 2012-04-12 11:04:26 68952 C:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
+ 2012-05-14 01:12:31 . 2012-05-14 01:12:31 68952 C:\windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll
+ 2012-05-14 01:12:31 . 2012-05-14 01:12:31 62880 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
- 2012-04-12 11:04:26 . 2012-04-12 11:04:26 62880 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Windows.ApplicationServer.Applications\v4.0_4.0.0.0__31bf3856ad364e35\Microsoft.Windows.ApplicationServer.Applications.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 12128 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2012-04-12 11:04:14 . 2012-04-12 11:04:14 12128 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualC\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 97680 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2012-04-12 11:04:25 . 2012-04-12 11:04:25 97680 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 17240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2012-04-12 11:04:13 . 2012-04-12 11:04:13 17240 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-05-14 01:12:21 . 2012-05-14 01:12:21 94552 C:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-04-12 11:04:11 . 2012-04-12 11:04:11 94552 C:\windows\Microsoft.NET\assembly\GAC_64\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 91488 C:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2012-04-12 11:04:13 . 2012-04-12 11:04:13 91488 C:\windows\Microsoft.NET\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-05-14 01:12:01 . 2012-05-14 01:12:01 78168 C:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-04-12 11:02:57 . 2012-04-12 11:02:57 78168 C:\windows\Microsoft.NET\assembly\GAC_32\ISymWrapper\v4.0_4.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-04-12 11:03:19 . 2012-04-12 11:03:19 81248 C:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-05-14 01:12:03 . 2012-05-14 01:12:03 81248 C:\windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2011-12-16 10:14:27 . 2011-12-16 10:14:27 49936 C:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
+ 2012-05-14 01:03:24 . 2012-05-14 01:03:24 49936 C:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
- 2011-12-16 10:14:24 . 2011-12-16 10:14:24 35600 C:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
+ 2012-05-14 01:14:06 . 2012-05-14 01:14:06 35600 C:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
- 2010-08-04 08:18:27 . 2012-02-23 09:45:28 49152 C:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-08-04 08:18:27 . 2012-05-14 01:02:30 49152 C:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2012-05-14 01:22:32 . 2012-05-14 01:22:32 10240 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7fa267d10b2df6dbd00d00d130715f0a\System.Xml.Serialization.ni.dll
+ 2012-05-14 01:22:31 . 2012-05-14 01:22:31 43520 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Pres#\054fce9466c6cef615b2f7cc9ff4e7f8\System.Windows.Presentation.ni.dll
+ 2012-05-14 01:22:17 . 2012-05-14 01:22:17 86016 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\ff78ec1b5bf38a8fb74c2d4f41bb308a\System.Web.ApplicationServices.ni.dll
+ 2012-05-14 01:20:12 . 2012-05-14 01:20:12 97792 C:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\e144d0028365c62178eb0662911ac910\System.AddIn.Contract.ni.dll
+ 2012-05-14 01:16:56 . 2012-05-14 01:16:56 14336 C:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\93295f3771dc9e5be2d49d5f5d76a7a6\Microsoft.VisualC.ni.dll
+ 2012-05-14 01:15:48 . 2012-05-14 01:15:48 10752 C:\windows\assembly\NativeImages_v4.0.30319_64\dfsvc\5ea625ce2d6c08687f70cb81a003a28b\dfsvc.ni.exe
+ 2012-05-14 01:15:48 . 2012-05-14 01:15:48 58368 C:\windows\assembly\NativeImages_v4.0.30319_64\Accessibility\061cbee19075e086d675a9e1f65725d7\Accessibility.ni.dll
+ 2012-05-14 01:24:24 . 2012-05-14 01:24:24 96768 C:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\4add87007e0864467659e6a248a7fe06\UIAutomationProvider.ni.dll
+ 2012-05-14 01:26:35 . 2012-05-14 01:26:35 35328 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\28caa2ab8a4999900321b653e8b6ddc1\System.Windows.Presentation.ni.dll
+ 2012-05-14 01:26:28 . 2012-05-14 01:26:28 71680 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\4967f3e8b106851802f212e963bb8735\System.Web.ApplicationServices.ni.dll
+ 2012-05-14 01:26:22 . 2012-05-14 01:26:22 82432 C:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\7f49661d0e79763b30e9e99e714409a3\System.ServiceModel.Channels.ni.dll
+ 2012-05-14 01:24:44 . 2012-05-14 01:24:44 78848 C:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\a5c37bc9caf315df294f8b680a1ccd6f\System.AddIn.Contract.ni.dll
+ 2012-05-14 01:24:08 . 2012-05-14 01:24:08 11776 C:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\5ccc57bb582bf753166610089f204601\Microsoft.VisualC.ni.dll
+ 2012-05-14 01:23:56 . 2012-05-14 01:23:56 44544 C:\windows\assembly\NativeImages_v4.0.30319_32\Accessibility\414da765b5d5bb7fde97c0ea22de7d74\Accessibility.ni.dll
+ 2012-05-14 01:52:01 . 2012-05-14 01:52:01 60416 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\fb4bc14964a1d415bdbe55b62ce73a52\System.Windows.Presentation.ni.dll
+ 2012-05-14 01:51:54 . 2012-05-14 01:51:54 54784 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\acd8bdefdcae0ce7c27b5ec016ef865c\System.Web.DynamicData.Design.ni.dll
+ 2012-05-14 01:50:51 . 2012-05-14 01:50:51 72192 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\78f495970511b726a0ca7b8119360e25\PresentationFontCache.ni.exe
+ 2012-05-14 01:39:41 . 2012-05-14 01:39:41 61952 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\1a359e9b908a2565c546a8ca04b241c2\PresentationCFFRasterizer.ni.dll
+ 2012-05-14 01:50:40 . 2012-05-14 01:50:40 33792 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\9d57c4bbbc0b3243046fc7839da71b00\Microsoft.WSMan.Runtime.ni.dll
+ 2012-05-14 01:50:36 . 2012-05-14 01:50:36 43520 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\d6578432220dbabf2b15027681327bf8\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-05-14 01:50:37 . 2012-05-14 01:50:37 40448 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\66deb65a87750efddf62d1e0c0655352\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2012-05-14 01:50:37 . 2012-05-14 01:50:37 36864 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4b6402dc918e41b8de8c501f29833d91\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-05-14 01:50:37 . 2012-05-14 01:50:37 45056 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\28545d2b6a0aaef4aa168f9808603bc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-05-14 01:50:38 . 2012-05-14 01:50:38 70144 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\1d8a17a2c1416a8ad4d6ad2a28b4c5fd\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-05-14 01:50:37 . 2012-05-14 01:50:37 59904 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\0abc7256549c204f39af7dcc52c9e5d5\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-05-14 01:37:56 . 2012-05-14 01:37:56 32256 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\3c3a6cce983114e7406e0a6e6116ecd8\Microsoft.VisualC.ni.dll
+ 2012-05-14 01:48:52 . 2012-05-14 01:48:52 65536 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\6ab0575bf49b60fd4b697d47e1754072\Microsoft.MediaCenter.iTv.Hosting.ni.dll
+ 2012-05-14 01:49:34 . 2012-05-14 01:49:34 40960 C:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\1569a004b1f41193818e3b3777f2c73d\LoadMxf.ni.exe
+ 2012-05-14 01:48:52 . 2012-05-14 01:48:52 49664 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\3ee98e8b2084e27d65953bbd7e362bf8\ehiUPnP.ni.dll
+ 2012-05-14 01:48:51 . 2012-05-14 01:48:51 93184 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\1cd9f92749d29b9fd61fcb1c4ae84294\ehiTVMSMusic.ni.dll
+ 2012-05-14 01:48:25 . 2012-05-14 01:48:25 28672 C:\windows\assembly\NativeImages_v2.0.50727_64\dfsvc\0811f67973c32efb2bfad62a4a2592b5\dfsvc.ni.exe
+ 2012-05-14 01:39:13 . 2012-05-14 01:39:13 78848 C:\windows\assembly\NativeImages_v2.0.50727_64\Accessibility\ae9311dcb0e713330a2a86b04cf361dc\Accessibility.ni.dll
+ 2012-05-14 01:44:41 . 2012-05-14 01:44:41 61440 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\81f5eeb0f7a4c41bece9a03c08e4d426\WindowsLiveWriter.ni.exe
+ 2012-05-14 01:44:49 . 2012-05-14 01:44:49 81408 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\20225dde0701a809f23364e1c3492449\WindowsLive.Writer.Passport.ni.dll
+ 2012-05-14 01:42:19 . 2012-05-14 01:42:19 60928 C:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\ca2eff60beb3ba00a529a2d42dceca22\UIAutomationProvider.ni.dll
+ 2012-05-14 01:47:17 . 2012-05-14 01:47:17 37888 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\66d750f3f8dde0cc865f921497ab3545\System.Windows.Presentation.ni.dll
+ 2012-05-14 01:47:11 . 2012-05-14 01:47:11 36864 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\c1ea7869d01b1b668de2181be6ebca56\System.Web.DynamicData.Design.ni.dll
+ 2012-05-14 01:46:21 . 2012-05-14 01:46:21 94208 C:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\543b0e12423bcec010bdd2ac27c5dc04\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-14 01:43:17 . 2012-05-14 01:43:17 82944 C:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\f34410ab8e82063735d876533db26c49\System.AddIn.Contract.ni.dll
+ 2012-05-14 01:46:19 . 2012-05-14 01:46:19 47104 C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\d24744f15243e28ea541a459ff7ff5d5\PresentationFontCache.ni.exe
+ 2012-05-14 01:42:27 . 2012-05-14 01:42:27 39424 C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\5a9d0ff936810991cedd098fe006a9be\PresentationCFFRasterizer.ni.dll
+ 2012-05-14 01:46:15 . 2012-05-14 01:46:15 79872 C:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\87a30ba337ed55d0905f19742e2985bc\napcrypt.ni.dll
+ 2012-05-14 01:46:12 . 2012-05-14 01:46:12 17920 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\9f2e8e0df9ff39ad21088f1d66cfadb1\Microsoft.WSMan.Runtime.ni.dll
+ 2012-05-14 01:46:10 . 2012-05-14 01:46:10 23040 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\d797123d55bb7b823120d0a7ffbbc2a7\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2012-05-14 01:46:09 . 2012-05-14 01:46:09 32256 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\cb8ad29814d9e5589bd400d38e7a0b10\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-05-14 01:46:11 . 2012-05-14 01:46:11 21504 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\cb42a0f25b7608b2675080081b03f6e5\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-05-14 01:46:09 . 2012-05-14 01:46:09 25088 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c6e9143be5afb36345875d56b61c444f\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-05-14 01:46:10 . 2012-05-14 01:46:10 19968 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\91767cf3facefe10e00734c815e925ad\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-05-14 01:46:10 . 2012-05-14 01:46:10 27136 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\66cd99d2f576cde047074e98bd5e1848\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-05-14 01:46:11 . 2012-05-14 01:46:11 86528 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\4308e1bdc640e1c3f1ea966e84e48900\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-05-14 01:45:55 . 2012-05-14 01:45:55 55296 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\06fcf2fbbe38d9425fc49d935498ec93\Microsoft.Vsa.ni.dll
+ 2012-05-14 01:41:56 . 2012-05-14 01:41:56 15872 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\55c57057dc81a5e8c5bde3a230f0bcb9\Microsoft.VisualC.ni.dll
+ 2012-05-14 01:45:39 . 2012-05-14 01:45:39 74752 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e3ef400b1f37e4d3b79a42a8a602ea02\Microsoft.Build.Framework.ni.dll
+ 2012-05-14 01:45:40 . 2012-05-14 01:45:40 65024 C:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\2095344bf8c40f8baa94ba53a993fb4c\Microsoft.Build.Framework.ni.dll
+ 2012-05-14 01:45:24 . 2012-05-14 01:45:24 60416 C:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\dc93539af5a961641a26ada75f730136\ehiUserXp.ni.dll
+ 2012-05-14 01:45:18 . 2012-05-14 01:45:18 14336 C:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\53d03b0e238c77cf7e5ac88e02aecd2c\dfsvc.ni.exe
+ 2012-05-14 01:42:19 . 2012-05-14 01:42:19 25600 C:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\2ec98ab0193d64e95b7d09d094deed97\Accessibility.ni.dll
- 2012-02-06 15:50:19 . 2012-05-13 13:50:07 9560 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_48.bin
+ 2012-02-06 15:50:19 . 2012-05-14 08:25:35 9560 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_48.bin
+ 2012-02-06 15:50:19 . 2012-05-14 08:25:35 4280 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_32.bin
- 2012-02-06 15:50:19 . 2012-05-13 13:50:07 4280 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_32.bin
+ 2012-02-06 15:50:19 . 2012-05-14 08:25:34 2456 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_24.bin
- 2012-02-06 15:50:19 . 2012-05-13 13:50:07 2456 C:\windows\system32\NetworkList\Icons\{C18CF685-FEF4-40A6-824A-E00D4D30F156}_24.bin
+ 2012-05-14 12:14:30 . 2012-05-14 12:14:30 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-05-13 20:03:01 . 2012-05-13 20:03:01 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-05-14 12:14:30 . 2012-05-14 12:14:30 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-05-13 20:03:01 . 2012-05-13 20:03:01 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-05-14 01:26:36 . 2012-05-14 01:26:36 9216 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\5d0529cca67ada47749f5373ae050a4a\System.Xml.Serialization.ni.dll
+ 2012-05-14 01:23:56 . 2012-05-14 01:23:56 9728 C:\windows\assembly\NativeImages_v4.0.30319_32\dfsvc\1361a05238cfe45d7da6cb4b367a986c\dfsvc.ni.exe
- 2011-11-05 08:21:33 . 2012-05-13 20:03:04 262144 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2011-11-05 08:21:33 . 2012-05-14 12:14:32 262144 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2012-02-13 13:58:12 . 2012-05-14 08:10:51 381146 C:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_FastS4.bin
+ 2009-07-14 02:36:59 . 2012-05-14 01:11:55 616686 C:\windows\system32\perfh009.dat
+ 2009-07-14 02:36:59 . 2012-05-14 01:11:55 106808 C:\windows\system32\perfc009.dat
- 2009-07-14 04:45:34 . 2012-04-12 11:25:14 369536 C:\windows\system32\FNTCACHE.DAT
+ 2009-07-14 04:45:34 . 2012-05-14 01:36:11 369536 C:\windows\system32\FNTCACHE.DAT
+ 2009-07-14 05:30:40 . 2012-05-13 20:15:39 143360 C:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30:40 . 2012-05-13 13:44:42 143360 C:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:01:48 . 2012-05-14 12:12:54 358164 C:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 05:01:48 . 2012-05-13 20:01:29 358164 C:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-12-15 12:01:34 . 2011-12-15 12:01:34 226600 C:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationHost_v0400.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 156440 C:\windows\Microsoft.NET\Framework64\v4.0.30319\System.AddIn.dll
- 2011-11-21 21:57:40 . 2011-11-21 21:57:40 598784 C:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll
+ 2011-12-15 12:01:34 . 2011-12-15 12:01:34 598784 C:\windows\Microsoft.NET\Framework64\v4.0.30319\SOS.dll
+ 2012-05-13 13:56:49 . 2012-02-10 23:29:44 172320 C:\windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationHostDLL.dll
+ 2012-05-13 13:57:46 . 2012-01-04 03:34:39 486144 C:\windows\Microsoft.NET\Framework64\v2.0.50727\SOS.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 182056 C:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationHost_v0400.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 156440 C:\windows\Microsoft.NET\Framework\v4.0.30319\System.AddIn.dll
- 2011-11-21 20:31:18 . 2011-11-21 20:31:18 518400 C:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 518400 C:\windows\Microsoft.NET\Framework\v4.0.30319\SOS.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 957200 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll
- 2011-11-21 20:31:18 . 2011-11-21 20:31:18 957200 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscordbi.dll
+ 2011-12-15 11:08:30 . 2011-12-15 11:08:30 386824 C:\windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
+ 2012-05-13 13:56:49 . 2012-02-10 23:31:42 131360 C:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2012-05-13 13:57:45 . 2012-01-04 02:51:03 389888 C:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2012-05-13 13:57:46 . 2012-01-04 02:50:59 364816 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2012-05-13 13:57:46 . 2012-01-04 02:50:59 996624 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 350592 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
- 2012-04-12 11:04:41 . 2012-04-12 11:04:41 350592 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClientsideProviders\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 163168 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2012-04-12 11:04:40 . 2012-04-12 11:04:40 163168 C:\windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationClient\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 138592 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
- 2012-04-12 11:04:24 . 2012-04-12 11:04:24 138592 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2012-05-14 01:12:35 . 2012-05-14 01:12:35 699224 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
- 2012-04-12 11:04:32 . 2012-04-12 11:04:32 699224 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Xaml\v4.0_4.0.0.0__b77a5c561934e089\System.Xaml.dll
- 2012-04-12 11:04:31 . 2012-04-12 11:04:31 857960 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-05-14 01:12:35 . 2012-05-14 01:12:35 857960 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Services\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2012-04-12 11:04:35 . 2012-04-12 11:04:36 675672 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2012-05-14 01:12:35 . 2012-05-14 01:12:35 675672 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Speech\v4.0_4.0.0.0__31bf3856ad364e35\System.Speech.dll
- 2012-04-12 11:04:19 . 2012-04-12 11:04:19 113512 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-05-14 01:12:26 . 2012-05-14 01:12:26 113512 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceProcess\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 129912 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
- 2012-04-12 11:04:30 . 2012-04-12 11:04:30 129912 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Routing\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Routing.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 390008 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
- 2012-04-12 11:04:30 . 2012-04-12 11:04:30 390008 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Discovery\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Discovery.dll
- 2012-04-12 11:04:29 . 2012-04-12 11:04:29 505208 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 505208 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Activities\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Activities.dll
+ 2012-05-14 01:12:26 . 2012-05-14 01:12:26 261472 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2012-04-12 11:04:19 . 2012-04-12 11:04:19 261472 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2012-04-12 11:04:30 . 2012-04-12 11:04:30 122264 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 122264 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 291184 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2012-04-12 11:04:30 . 2012-04-12 11:04:30 291184 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-05-14 01:12:33 . 2012-05-14 01:12:33 349568 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
- 2012-04-12 11:04:28 . 2012-04-12 11:04:28 349568 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Runtime.DurableInstancing.dll
+ 2012-05-14 01:12:29 . 2012-05-14 01:12:29 236880 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
- 2012-04-12 11:04:24 . 2012-04-12 11:04:24 236880 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Net\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Net.dll
+ 2012-05-14 01:12:34 . 2012-05-14 01:12:34 253280 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2012-04-12 11:04:30 . 2012-04-12 11:04:30 253280 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Messaging\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2012-04-12 11:04:18 . 2012-04-12 11:04:18 378720 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-05-14 01:12:26 . 2012-05-14 01:12:26 378720 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2012-04-12 11:04:23 . 2012-04-12 11:04:23 134528 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
+ 2012-05-14 01:12:29 . 2012-05-14 01:12:29 134528 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Instrumentation\v4.0_4.0.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
- 2012-04-12 11:04:28 . 2012-04-12 11:04:28 123736 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2012-05-14 01:12:32 . 2012-05-14 01:12:32 123736 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Log\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2012-04-12 11:04:28 . 2012-04-12 11:04:28 392552 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2012-05-14 01:12:32 . 2012-05-14 01:12:32 392552 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2012-04-12 11:04:28 . 2012-04-12 11:04:28 125816 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2012-05-14 01:12:32 . 2012-05-14 01:12:32 125816 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.IdentityModel.Selectors\v4.0_4.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 120152 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
- 2012-04-12 11:04:13 . 2012-04-12 11:04:13 120152 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll
- 2012-04-12 11:04:18 . 2012-04-12 11:04:18 616216 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-05-14 01:12:26 . 2012-05-14 01:12:26 616216 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-05-14 01:12:25 . 2012-05-14 01:12:25 395120 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2012-04-12 11:04:16 . 2012-04-12 11:04:16 395120 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2012-05-14 01:12:25 . 2012-05-14 01:12:25 182144 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2012-04-12 11:04:17 . 2012-04-12 11:04:17 182144 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.Protocols\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2012-04-12 11:04:17 . 2012-04-12 11:04:17 285072 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
+ 2012-05-14 01:12:25 . 2012-05-14 01:12:25 285072 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\v4.0_4.0.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
- 2012-04-12 11:04:16 . 2012-04-12 11:04:16 829280 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-05-14 01:12:24 . 2012-05-14 01:12:24 829280 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2012-04-12 11:04:16 . 2012-04-12 11:04:16 747360 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-05-14 01:12:24 . 2012-05-14 01:12:24 747360 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.SqlXml\v4.0_4.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-05-14 01:12:29 . 2012-05-14 01:12:29 436600 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
- 2012-04-12 11:04:23 . 2012-04-12 11:04:23 436600 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Services.Client\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Services.Client.dll
- 2012-04-12 11:04:23 . 2012-04-12 11:04:23 683872 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2012-05-14 01:12:29 . 2012-05-14 01:12:29 683872 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Data.Linq\v4.0_4.0.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2012-05-14 01:12:24 . 2012-05-14 01:12:24 409448 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2012-04-12 11:04:14 . 2012-04-12 11:04:14 409448 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-05-14 01:12:28 . 2012-05-14 01:12:28 210816 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
- 2012-04-12 11:04:22 . 2012-04-12 11:04:22 210816 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.ComponentModel.Composition\v4.0_4.0.0.0__b77a5c561934e089\System.ComponentModel.Composition.dll
+ 2012-05-14 01:12:28 . 2012-05-14 01:12:28 156440 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.AddIn\v4.0_4.0.0.0__b77a5c561934e089\System.AddIn.dll
- 2012-04-12 11:04:27 . 2012-04-12 11:04:27 122248 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
+ 2012-05-14 01:12:32 . 2012-05-14 01:12:32 122248 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.DurableInstancing\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.DurableInstancing.dll
- 2012-04-12 11:04:27 . 2012-04-12 11:04:27 525704 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
+ 2012-05-14 01:12:31 . 2012-05-14 01:12:31 525704 C:\windows\Microsoft.NET\assembly\GAC_MSIL\System.Activities.Core.Presentation\v4.0_4.0.0.0__31bf3856ad364e35\System.Activities.Core.Presentation.dll
- 2012-04-12 11:04:14 . 2012-04-12 11:04:14 112976 C:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 112976 C:\windows\Microsoft.NET\assembly\GAC_MSIL\sysglobl\v4.0_4.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-05-14 01:12:38 . 2012-05-14 01:12:38 581464 C:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2012-04-12 11:04:41 . 2012-04-12 11:04:41 581464 C:\windows\Microsoft.NET\assembly\GAC_MSIL\ReachFramework\v4.0_4.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 832856 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
- 2012-04-12 11:04:39 . 2012-04-12 11:04:39 832856 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationUI\v4.0_4.0.0.0__31bf3856ad364e35\PresentationUI.dll
- 2012-04-12 11:04:39 . 2012-04-12 11:04:39 194424 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 194424 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Royale\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 478576 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
- 2012-04-12 11:04:39 . 2012-04-12 11:04:39 478576 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Luna\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
- 2012-04-12 11:04:39 . 2012-04-12 11:04:39 167288 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 167288 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Classic\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2012-05-14 01:12:37 . 2012-05-14 01:12:37 232304 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2012-04-12 11:04:38 . 2012-04-12 11:04:38 232304 C:\windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework.Aero\v4.0_4.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2012-04-12 11:04:14 . 2012-04-12 11:04:14 661352 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 661352 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 349576 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-04-12 11:04:25 . 2012-04-12 11:04:25 349576 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-04-12 11:04:25 . 2012-04-12 11:04:25 387960 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2012-05-14 01:12:30 . 2012-05-14 01:12:30 387960 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 746336 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2012-04-12 11:04:13 . 2012-04-12 11:04:14 746336 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.JScript\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2012-05-14 01:12:23 . 2012-05-14 01:12:23 505184 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
- 2012-04-12 11:04:13 . 2012-04-12 11:04:13 505184 C:\windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll
+ 2012-05-14 01:12:35 . 2012-05-14 01:12:35 288616 C:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2012-04-12 11:04:31 . 2012-04-12 11:04:31 288616 C:\windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2012-04-12 11:04:37 . 2012-04-12 11:04:37 335712 C:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-05-14 01:12:35 . 2012-05-14 01:12:35 335712 C:\windows\Microsoft.NET\assembly\GAC_64\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-04-12 11:04:12 . 2012-04-12 11:04:12 125440
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Re: Programs Stop Responding

Postby Smithy8831 » Mon May 14, 2012 1:41 pm

- 2012-04-12 11:04:12 . 2012-04-12 11:04:12 125440 C:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:12:22 . 2012-05-14 01:12:22 125440 C:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-04-12 11:04:12 . 2012-04-12 11:04:12 237424 C:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-05-14 01:12:22 . 2012-05-14 01:12:22 237424 C:\windows\Microsoft.NET\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-05-14 01:12:31 . 2012-05-14 01:12:31 187776 C:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2012-04-12 11:04:25 . 2012-04-12 11:04:25 187776 C:\windows\Microsoft.NET\assembly\GAC_64\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2012-04-12 11:03:52 . 2012-04-12 11:03:52 269672 C:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-05-14 01:12:17 . 2012-05-14 01:12:17 269672 C:\windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-05-14 01:12:18 . 2012-05-14 01:12:18 334688 C:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2012-04-12 11:03:54 . 2012-04-12 11:03:54 334688 C:\windows\Microsoft.NET\assembly\GAC_32\System.Printing\v4.0_4.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-05-14 01:12:03 . 2012-05-14 01:12:03 109568 C:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-04-12 11:03:11 . 2012-04-12 11:03:11 109568 C:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:12:03 . 2012-05-14 01:12:03 246128 C:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-04-12 11:03:11 . 2012-04-12 11:03:11 246128 C:\windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-04-12 11:03:39 . 2012-04-12 11:03:39 170368 C:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2012-05-14 01:12:13 . 2012-05-14 01:12:13 170368 C:\windows\Microsoft.NET\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2010-03-18 12:16:28 . 2010-03-18 12:16:28 181096 C:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_X86.dll
+ 2010-03-18 13:27:14 . 2010-03-18 13:27:14 225640 C:\windows\Installer\$PatchCache$\Managed\DFC90B5F2B0FFA63D84FD16F6BF37C4B\4.0.30319\PresentationHostDLL_AMD64.dll
+ 2012-05-14 01:22:38 . 2012-05-14 01:22:38 337408 C:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\65f25960625d91ca79a40f9067adc021\WindowsFormsIntegration.ni.dll
+ 2012-05-14 01:19:15 . 2012-05-14 01:19:15 231424 C:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\fb43d84bc59b21e8a7f3e36d616eea90\UIAutomationTypes.ni.dll
+ 2012-05-14 01:19:15 . 2012-05-14 01:19:15 122368 C:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\26f12a0a3baed2a227cf30aaeae03913\UIAutomationProvider.ni.dll
+ 2012-05-14 01:22:34 . 2012-05-14 01:22:34 645120 C:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClient\1c3c298326e9ac14796516ac1da09a16\UIAutomationClient.ni.dll
+ 2012-05-14 01:18:41 . 2012-05-14 01:18:41 528896 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\307eea660f877dc40ae90882ce554757\System.Xml.Linq.ni.dll
+ 2012-05-14 01:19:16 . 2012-05-14 01:19:16 256000 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\b4afa252d0f0e27b0b5e8fcb2cc5b3a7\System.Windows.Input.Manipulations.ni.dll
+ 2012-05-14 01:18:52 . 2012-05-14 01:18:52 903168 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\8c0ee7b970cc4e8c2986c7898af71661\System.Transactions.ni.dll
+ 2012-05-14 01:22:13 . 2012-05-14 01:22:13 281088 C:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\85810fe277a718273eb946a460ae8010\System.ServiceProcess.ni.dll
+ 2012-05-14 01:22:09 . 2012-05-14 01:22:09 108032 C:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\eb4fb369926faaffede7aaf317fd6532\System.ServiceModel.Channels.ni.dll
+ 2012-05-14 01:22:12 . 2012-05-14 01:22:12 517120 C:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\e5ab3c37897bb578bdbfe6b7e0558ad8\System.ServiceModel.Routing.ni.dll
+ 2012-05-14 01:16:33 . 2012-05-14 01:16:33 946688 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Security\e48b6a8c491a96d1bc601795532af605\System.Security.ni.dll
+ 2012-05-14 01:19:01 . 2012-05-14 01:19:01 376832 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\7590828d50338d512b11a4d3f87d69a2\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-14 01:19:00 . 2012-05-14 01:19:00 987648 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\21d5b44ef01ccfa69e79674a51707de0\System.Runtime.Remoting.ni.dll
+ 2012-05-14 01:16:33 . 2012-05-14 01:16:33 176640 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Numerics\5f2bfb0585061dc256ee9587d430959f\System.Numerics.ni.dll
+ 2012-05-14 01:21:29 . 2012-05-14 01:21:29 933376 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Net\6996a415485a84fef2d2556b0462336f\System.Net.ni.dll
+ 2012-05-14 01:21:28 . 2012-05-14 01:21:28 781824 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\a3849a373beeb3509d8c22d5751dfad3\System.Messaging.ni.dll
+ 2012-05-14 01:21:20 . 2012-05-14 01:21:20 521728 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\92d266f677605e5475b7f39c063c4a9d\System.Management.Instrumentation.ni.dll
+ 2012-05-14 01:21:19 . 2012-05-14 01:21:19 531456 C:\windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\07a0e1efc063042be3e8faf62b413a12\System.IO.Log.ni.dll
+ 2012-05-14 01:21:17 . 2012-05-14 01:21:17 290816 C:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\7fd39b9a208214e6e5eba4e9396409f1\System.IdentityModel.Selectors.ni.dll
+ 2012-05-14 01:18:55 . 2012-05-14 01:18:55 348672 C:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\8e10d4f2a408dc5a9740f8d0df5cebac\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:16:34 . 2012-05-14 01:16:34 512000 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\521f5bccf74318a4777597b0c01fda1e\System.Dynamic.ni.dll
+ 2012-05-14 01:21:13 . 2012-05-14 01:21:13 632832 C:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\6a8bd7d373c988a585e90bb61c5ec8cc\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-14 01:21:10 . 2012-05-14 01:21:10 141824 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Device\78dd02d104bb15bc3820c06bd2876239\System.Device.ni.dll
+ 2012-05-14 01:20:16 . 2012-05-14 01:20:16 176128 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\97d1aaf3733b107ecdbecb9d21050ff4\System.Data.DataSetExtensions.ni.dll
+ 2012-05-14 01:20:15 . 2012-05-14 01:20:15 181760 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuratio#\c3d7a7ff58ff502887d8f1b77e61adbc\System.Configuration.Install.ni.dll
+ 2012-05-14 01:20:14 . 2012-05-14 01:20:14 255488 C:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\a4f91f2dfd1656ef2e42917963f6bf50\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-14 01:20:12 . 2012-05-14 01:20:12 871936 C:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\b1c67ee2e0e6e78c31985069fbc82596\System.AddIn.ni.dll
+ 2012-05-14 01:20:03 . 2012-05-14 01:20:03 560640 C:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\c69fb0f955adc7ca80cd5f2fd730edea\System.Activities.DurableInstancing.ni.dll
+ 2012-05-14 01:15:50 . 2012-05-14 01:15:50 432128 C:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\11fc863fa4f5092fca4f2ce25a9ac361\SMSvcHost.ni.exe
+ 2012-05-14 01:18:48 . 2012-05-14 01:18:48 185344 C:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\50e8e826488639e549589ba34666933e\SMDiagnostics.ni.dll
+ 2012-05-14 01:18:28 . 2012-05-14 01:18:28 428032 C:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\722c0236432dd5ccc047481d3ebbd49e\PresentationFramework.Royale.ni.dll
+ 2012-05-14 01:18:25 . 2012-05-14 01:18:25 622592 C:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\6739c3715c9e38dbdfbfd57b424a3094\PresentationFramework.Aero.ni.dll
+ 2012-05-14 01:18:27 . 2012-05-14 01:18:27 802304 C:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\3e7359f5f0fb68565314f88f6ec2d67a\PresentationFramework.Luna.ni.dll
+ 2012-05-14 01:18:26 . 2012-05-14 01:18:26 349184 C:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\263748f3d18955b9e467710da1e8546f\PresentationFramework.Classic.ni.dll
+ 2012-05-14 01:16:55 . 2012-05-14 01:16:55 289280 C:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\798505dff98cafa6debc659b9030cd51\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-05-14 01:16:38 . 2012-05-14 01:16:38 600064 C:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\6480551111832c83ee88bcf756a72533\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-14 01:15:51 . 2012-05-14 01:15:51 279552 C:\windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\0e81a3996f7cbff23fc01bea4185a918\CustomMarshalers.ni.dll
+ 2012-05-14 01:26:44 . 2012-05-14 01:26:44 253952 C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\2b8468e27c6b45ac2e6a58811b7e8f9e\WindowsFormsIntegration.ni.dll
+ 2012-05-14 01:24:25 . 2012-05-14 01:24:25 196096 C:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\6823effdbb0434f96511748697349862\UIAutomationTypes.ni.dll
+ 2012-05-14 01:26:37 . 2012-05-14 01:26:37 484352 C:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\021651282dda157fbe5a1f3575c67534\UIAutomationClient.ni.dll
+ 2012-05-14 01:24:16 . 2012-05-14 01:24:16 393216 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\8f0cf05d2b1e46a772312143227cb6ed\System.Xml.Linq.ni.dll
+ 2012-05-14 01:24:25 . 2012-05-14 01:24:25 189440 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\5fc7ab2af170ab1217c5e1a7328b999b\System.Windows.Input.Manipulations.ni.dll
+ 2012-05-14 01:24:20 . 2012-05-14 01:24:20 649728 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\6cb2089f1eaf08c3d94a54031cf1313a\System.Transactions.ni.dll
+ 2012-05-14 01:26:25 . 2012-05-14 01:26:25 221696 C:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\0c9be85e41445175a85178cfadb56955\System.ServiceProcess.ni.dll
+ 2012-05-14 01:26:25 . 2012-05-14 01:26:25 369664 C:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\8e3ba21dc083837fdc1c8b9f98c5f4bf\System.ServiceModel.Routing.ni.dll
+ 2012-05-14 01:08:56 . 2012-05-14 01:08:56 736768 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Security\4278bedb3086448c94c1e7f563325052\System.Security.ni.dll
+ 2012-05-14 01:24:24 . 2012-05-14 01:24:24 311296 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\490f9ea2b1a2e738d203af00c5c9b735\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-14 01:24:23 . 2012-05-14 01:24:23 762880 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\e5f1db35163684e821bca4a2fb0311b1\System.Runtime.Remoting.ni.dll
+ 2012-05-14 01:08:46 . 2012-05-14 01:08:46 145408 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\360e9c00572679f437fff0ae719a5886\System.Numerics.ni.dll
+ 2012-05-14 01:26:02 . 2012-05-14 01:26:02 657408 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Net\62a6ed6942237e009110ffa55adbb77a\System.Net.ni.dll
+ 2012-05-14 01:26:02 . 2012-05-14 01:26:02 626176 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\6e750741719093e396cd2eaa96ec1e3e\System.Messaging.ni.dll
+ 2012-05-14 01:25:57 . 2012-05-14 01:25:57 395264 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\0eb2dedcc5b7f32e7886b83635d22dbc\System.Management.Instrumentation.ni.dll
+ 2012-05-14 01:25:56 . 2012-05-14 01:25:56 413696 C:\windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\54f78c72dbc55f90983ee1a887b27547\System.IO.Log.ni.dll
+ 2012-05-14 01:25:56 . 2012-05-14 01:25:56 229888 C:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\7cfdedf408ac80e153d7988e308c7caa\System.IdentityModel.Selectors.ni.dll
+ 2012-05-14 01:24:21 . 2012-05-14 01:24:21 236032 C:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\058fc53adeb7f06708bb4fa9f92fab5c\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:24:21 . 2012-05-14 01:24:21 787456 C:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\058fc53adeb7f06708bb4fa9f92fab5c\System.EnterpriseServices.ni.dll
+ 2012-05-14 01:09:03 . 2012-05-14 01:09:03 377856 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Dynamic\559594e862b578f3040446d7d4498cb7\System.Dynamic.ni.dll
+ 2012-05-14 01:25:53 . 2012-05-14 01:25:53 913920 C:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\41173dd435cb9e35b406e5ee17894cd1\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-14 01:25:53 . 2012-05-14 01:25:53 470528 C:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\40466b947e5932c0c96529915fef0c45\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-14 01:25:52 . 2012-05-14 01:25:52 112640 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Device\e38e62fe185dbc8344fc242b2093aee2\System.Device.ni.dll
+ 2012-05-14 01:24:46 . 2012-05-14 01:24:46 134656 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\bc5bf4e71af4c7689ffed22f5187d922\System.Data.DataSetExtensions.ni.dll
+ 2012-05-14 01:08:56 . 2012-05-14 01:08:56 982528 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\6711765f90c0082ec393943b924ed277\System.Configuration.ni.dll
+ 2012-05-14 01:24:45 . 2012-05-14 01:24:45 148480 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\951ece575b9f8ed9a4abde6e58df473c\System.Configuration.Install.ni.dll
+ 2012-05-14 01:09:03 . 2012-05-14 01:09:03 693760 C:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\dcf415181fba99d99ec87eefdf082864\System.ComponentModel.Composition.ni.dll
+ 2012-05-14 01:24:44 . 2012-05-14 01:24:44 194048 C:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\41a21613a657cc7d9ea10386f271d388\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-14 01:24:43 . 2012-05-14 01:24:43 624128 C:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\cdd87ceeb66eb0db86b02c27372cc31c\System.AddIn.ni.dll
+ 2012-05-14 01:24:39 . 2012-05-14 01:24:39 411136 C:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\139ec162dfa0903f5b00d623d2e944be\System.Activities.DurableInstancing.ni.dll
+ 2012-05-14 01:23:57 . 2012-05-14 01:23:57 317952 C:\windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\01c8de400571afc3469fb99c6b7edecc\SMSvcHost.ni.exe
+ 2012-05-14 01:24:18 . 2012-05-14 01:24:18 143360 C:\windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\4dd48e938a8834fe950cf0cd11603c71\SMDiagnostics.ni.dll
+ 2012-05-14 01:13:15 . 2012-05-14 01:13:15 309760 C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\a6b504e505c1c4bc6204136a957a4e30\PresentationFramework.Classic.ni.dll
+ 2012-05-14 01:13:16 . 2012-05-14 01:13:16 755712 C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\71bcb2ec4fe3e7edb47397dfc1687576\PresentationFramework.Luna.ni.dll
+ 2012-05-14 01:13:17 . 2012-05-14 01:13:17 387072 C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\453c2355cf76a74cc01226680cca4a01\PresentationFramework.Royale.ni.dll
+ 2012-05-14 01:13:15 . 2012-05-14 01:13:15 595968 C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\3263fe38362543170c1682381eeac25a\PresentationFramework.Aero.ni.dll
+ 2012-05-14 01:24:07 . 2012-05-14 01:24:07 219136 C:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\d41c8b5e091531b0399cb1b3c771997d\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-05-14 01:24:00 . 2012-05-14 01:24:00 418816 C:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\dd47533d2837e1d78400f759f5f05e41\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-14 01:23:58 . 2012-05-14 01:23:58 194048 C:\windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\8f0e78c2aa12e929ecf3b0c912ac8406\CustomMarshalers.ni.dll
+ 2012-05-14 01:52:08 . 2012-05-14 01:52:08 468992 C:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\ad7f43afb4f124acae4d503b40f591c1\WsatConfig.ni.exe
+ 2012-05-14 01:52:07 . 2012-05-14 01:52:07 329216 C:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\cefe28fde401a6a5718d1718c345fb37\WindowsFormsIntegration.ni.dll
+ 2012-05-14 01:39:14 . 2012-05-14 01:39:14 253952 C:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\bf634b0e2e28466c6ed6ae1eb602b09f\UIAutomationTypes.ni.dll
+ 2012-05-14 01:39:14 . 2012-05-14 01:39:14 120832 C:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\1ff8fb81d6f045f1dc6f50be95444292\UIAutomationProvider.ni.dll
+ 2012-05-14 01:50:28 . 2012-05-14 01:50:29 653312 C:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\1f36e020c3563e0ff414f13138e238e1\UIAutomationClient.ni.dll
+ 2012-05-14 01:52:04 . 2012-05-14 01:52:04 304128 C:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\769b7666d915de95db5b63ec22bf3e42\TaskScheduler.ni.dll
+ 2012-05-14 01:51:28 . 2012-05-14 01:51:28 529920 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\de45d043775d8c805f6feca40d7a9ed2\System.Xml.Linq.ni.dll
+ 2012-05-14 01:51:52 . 2012-05-14 01:51:52 187392 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\181702fb83901c085401957c6f731cf4\System.Web.Routing.ni.dll
+ 2012-05-14 01:41:15 . 2012-05-14 01:41:15 261120 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.RegularE#\76662ce36d2141e45513e64386073cc2\System.Web.RegularExpressions.ni.dll
+ 2012-05-14 01:51:55 . 2012-05-14 01:51:55 449024 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\9b9d3e3e44dc7d03bb96033a5b829a6b\System.Web.Entity.ni.dll
+ 2012-05-14 01:51:55 . 2012-05-14 01:51:55 398848 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\ad2339c5f0fd9aa8a9989800825da487\System.Web.Entity.Design.ni.dll
+ 2012-05-14 01:51:53 . 2012-05-14 01:51:53 753664 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\8309dc5dd39b93f3e105a4d455b74a00\System.Web.DynamicData.ni.dll
+ 2012-05-14 01:51:36 . 2012-05-14 01:51:36 204800 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\a79640760b61cc1c23ac3cfdfa6f0f3f\System.Web.Abstractions.ni.dll
+ 2012-05-14 01:40:35 . 2012-05-14 01:40:35 921600 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Transactions\ec95ad2463c5588fc8ef552b3f375ee6\System.Transactions.ni.dll
+ 2012-05-14 01:41:16 . 2012-05-14 01:41:16 295424 C:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\05acafa7eb44049849a5aafd39147ee5\System.ServiceProcess.ni.dll
+ 2012-05-14 01:38:36 . 2012-05-14 01:38:36 928768 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Security\1875b50d0228f29aef00bed38ab594d6\System.Security.ni.dll
+ 2012-05-14 01:39:41 . 2012-05-14 01:39:41 396288 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\807759890a40e4047c35a24e64dc76d5\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-14 01:51:47 . 2012-05-14 01:51:47 916480 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\3b3581851a728bef36f319e9d4c72499\System.Net.ni.dll
+ 2012-05-14 01:48:22 . 2012-05-14 01:48:22 783360 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\b4297ef47e0839fce0145f665349dcc9\System.Messaging.ni.dll
+ 2012-05-14 01:51:46 . 2012-05-14 01:51:46 534016 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\599954438a668c94dd38e8e7e506ac2a\System.Management.Instrumentation.ni.dll
+ 2012-05-14 01:51:45 . 2012-05-14 01:51:45 569856 C:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\fd51741bfd973ad507bbd141e98932f8\System.IO.Log.ni.dll
+ 2012-05-14 01:48:22 . 2012-05-14 01:48:22 294400 C:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\ef6abe121bb11bff2514bfdfb7e76b7a\System.IdentityModel.Selectors.ni.dll
+ 2012-05-14 01:40:36 . 2012-05-14 01:40:36 446464 C:\windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\d50cde53634ccbb5e0231738784ff4b8\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:41:13 . 2012-05-14 01:41:13 288768 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\e7abd70c16a5e638a7121fc5f68484cc\System.Drawing.Design.ni.dll
+ 2012-05-14 01:41:16 . 2012-05-14 01:41:16 649728 C:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\4bb1134d9b166434327385ddf3c5dd54\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-14 01:51:42 . 2012-05-14 01:51:42 629760 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\7c4ce1b8a2f83ef29aa6d5f126ab5b71\System.Data.Services.Design.ni.dll
+ 2012-05-14 01:50:54 . 2012-05-14 01:50:54 194560 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\19d1414f1ca718ce4d0c07e7305b3450\System.Data.DataSetExtensions.ni.dll
+ 2012-05-14 01:41:17 . 2012-05-14 01:41:17 192000 C:\windows\assembly\NativeImages_v2.0.50727_64\System.Configuratio#\4aebed13b5309398cd809454cafe472f\System.Configuration.Install.ni.dll
+ 2012-05-14 01:50:53 . 2012-05-14 01:50:53 132096 C:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\9536bb262c4f1ea389d287ab669767d4\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-14 01:43:19 . 2012-05-14 01:43:19 890880 C:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\84262138e2e9f34c88fd282caa82baa5\System.AddIn.ni.dll
+ 2012-05-14 01:43:19 . 2012-05-14 01:43:19 156672 C:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\176899be7b920fb20408ff49e636a776\System.AddIn.Contract.ni.dll
+ 2012-05-14 01:51:52 . 2012-05-14 01:51:52 297984 C:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\ee0608cd62dfb37016016884fc39e425\sysglobl.ni.dll
+ 2012-05-14 01:50:52 . 2012-05-14 01:50:52 525824 C:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\9fa1abf006689e262527ae50d452e97e\SMSvcHost.ni.exe
+ 2012-05-14 01:48:15 . 2012-05-14 01:48:15 349184 C:\windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\2eac9c598de3341eba5c16787c74f220\SMDiagnostics.ni.dll
+ 2012-05-14 01:41:18 . 2012-05-14 01:41:18 282624 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\89de197bdde5984658045ade41c2c9b9\PresentationFramework.Classic.ni.dll
+ 2012-05-14 01:41:19 . 2012-05-14 01:41:19 620544 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\7ffb91db770d0b09921f623bc5d68b4f\PresentationFramework.Luna.ni.dll
+ 2012-05-14 01:41:18 . 2012-05-14 01:41:18 463360 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\4f3567165e2a444fc9a62980c4d0ea82\PresentationFramework.Aero.ni.dll
+ 2012-05-14 01:41:20 . 2012-05-14 01:41:20 317440 C:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\205bb33cef9ae6b906ceadd6f2861c86\PresentationFramework.Royale.ni.dll
+ 2012-05-14 01:50:45 . 2012-05-14 01:50:45 855040 C:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\bc8a2d99d8ebd29f94905072ccf4b3b8\napsnap.ni.dll
+ 2012-05-14 01:50:44 . 2012-05-14 01:50:44 162816 C:\windows\assembly\NativeImages_v2.0.50727_64\napinit\b79da521cf602154b475ea740cc7fd3b\napinit.ni.dll
+ 2012-05-14 01:50:44 . 2012-05-14 01:50:44 175104 C:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\5f0ae15f9d1cade37fbfaacff7e64bff\naphlpr.ni.dll
+ 2012-05-14 01:50:43 . 2012-05-14 01:50:43 127488 C:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\5346ceca518baf5e5fa3fed9f900f792\napcrypt.ni.dll
+ 2012-05-14 01:50:43 . 2012-05-14 01:50:43 184320 C:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\8f792883d0adad8c7beccf24aed65817\MSBuild.ni.exe
+ 2012-05-14 01:49:28 . 2012-05-14 01:49:28 417792 C:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\926d20041c179cebc6f4398155b1b2c4\MMCFxCommon.ni.dll
+ 2012-05-14 01:50:39 . 2012-05-14 01:50:39 681984 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\b78beede8a3c9720095dde4a4a162acc\Microsoft.WSMan.Management.ni.dll
+ 2012-05-14 01:50:39 . 2012-05-14 01:50:39 122368 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\83222514e209f186ad3a1c3794168bfd\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-05-14 01:50:14 . 2012-05-14 01:50:14 105984 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\a843956bb452503139683304de4cc8f6\Microsoft.Vsa.ni.dll
+ 2012-05-14 01:50:34 . 2012-05-14 01:50:34 584192 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\c56d6513e4b239b1b1dbe29b0588321a\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-14 01:50:22 . 2012-05-14 01:50:23 713216 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fb0d102ca78bd05fe7064b9e6be30fc7\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-05-14 01:50:32 . 2012-05-14 01:50:32 237056 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\b21fa6ff448b99a97319e18c166c03e2\Microsoft.PowerShell.Security.ni.dll
+ 2012-05-14 01:50:32 . 2012-05-14 01:50:32 999936 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6c3fe42a14ac5b48ebd43be290973d24\Microsoft.PowerShell.GraphicalHost.ni.dll
+ 2012-05-14 01:50:18 . 2012-05-14 01:50:18 416768 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\2572e94f9d0b412cdc529c8d74fdb689\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-05-14 01:48:57 . 2012-05-14 01:48:57 152576 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f4faec8b6d3e2c327c68070963ec1750\Microsoft.MediaCenter.ITVVM.ni.dll
+ 2012-05-14 01:49:56 . 2012-05-14 01:49:56 164864 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f04ccbbf5199d2b264f1b1175be44686\Microsoft.MediaCenter.Mheg.ni.dll
+ 2012-05-14 01:49:26 . 2012-05-14 01:49:26 219648 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f015188310f7613f819fcf032f98705a\Microsoft.MediaCenter.iTv.Media.ni.dll
+ 2012-05-14 01:49:25 . 2012-05-14 01:49:25 312320 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c5f4ab28f67d5bf0cc221ef81e7f6966\Microsoft.MediaCenter.iTv.ni.dll
+ 2012-05-14 01:48:57 . 2012-05-14 01:48:57 370176 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\6dbd502a13b5e3caae0b1f2b4847612f\Microsoft.MediaCenter.Playback.ni.dll
+ 2012-05-14 01:48:57 . 2012-05-14 01:48:57 522240 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\514667153fd74307d21e7f50b79858c9\Microsoft.MediaCenter.Interop.ni.dll
+ 2012-05-14 01:49:00 . 2012-05-14 01:49:00 965632 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\18367b9a0b9e9261d1d9e371230af87c\Microsoft.MediaCenter.Sports.ni.dll
+ 2012-05-14 01:49:27 . 2012-05-14 01:49:27 798720 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\718cd5a598ed3e225a73b2aba7bcc1e1\Microsoft.ManagementConsole.ni.dll
+ 2012-05-14 01:49:49 . 2012-05-14 01:49:49 244736 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\d68a27daca73749e4438a47e61643c3c\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-05-14 01:49:50 . 2012-05-14 01:49:50 198656 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\3151235c1c38db94fd44e3c6f290ff38\Microsoft.Build.Utilities.ni.dll
+ 2012-05-14 01:49:44 . 2012-05-14 01:49:44 121344 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\cf5e9b5d10682467a9e03358a6d6258f\Microsoft.Build.Framework.ni.dll
+ 2012-05-14 01:49:42 . 2012-05-14 01:49:42 142336 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0f233d0eb396065719e83ab573a72cc5\Microsoft.Build.Framework.ni.dll
+ 2012-05-14 01:49:39 . 2012-05-14 01:49:39 294912 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\2416af06edb993f98a751acb69f67016\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-05-14 01:49:39 . 2012-05-14 01:49:39 107008 C:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\2e54c0c284ab2337d24b5f5d26f457e1\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
+ 2012-05-14 01:49:25 . 2012-05-14 01:49:25 380928 C:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\74e4adc90675c3b1365825c7e78b5ce9\Mcx2Dvcs.ni.dll
+ 2012-05-14 01:49:38 . 2012-05-14 01:49:38 547328 C:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\4a1f9a648a3928d42b77a91666d9aa8a\mcupdate.ni.exe
+ 2012-05-14 01:48:47 . 2012-05-14 01:48:47 533504 C:\windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\40d70417c04f9ccb5fdecb5b9be5a6a3\mcstoredb.ni.dll
+ 2012-05-14 01:49:37 . 2012-05-14 01:49:37 549376 C:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\927ada02b440d95fdf36a37ee96aaa54\mcplayerinterop.ni.dll
+ 2012-05-14 01:49:36 . 2012-05-14 01:49:36 696320 C:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\35023ad5cb299ca2020bd660f5dba2fc\mcGlidHostObj.ni.dll
+ 2012-05-14 01:49:35 . 2012-05-14 01:49:35 156672 C:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\3fc113fe40d0145cd87afca2d107bf6d\MCESidebarCtrl.ni.dll
+ 2012-05-14 01:49:27 . 2012-05-14 01:49:27 659456 C:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\0bd8d37bc6f648d092e1d8034609a107\EventViewer.ni.dll
+ 2012-05-14 01:48:39 . 2012-05-14 01:48:39 969216 C:\windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\584d419d4c837ea19f7f450a807b0273\ehRecObj.ni.dll
+ 2012-05-14 01:48:54 . 2012-05-14 01:48:54 661504 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\20c3505378a50f4859c9b2e7dcbb5fa2\ehiWUapi.ni.dll
+ 2012-05-14 01:48:53 . 2012-05-14 01:48:53 933888 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\2f9f48ad6496c9103043db1c21a651fd\ehiwmp.ni.dll
+ 2012-05-14 01:48:38 . 2012-05-14 01:48:38 145408 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\0955237aa3c1cb3a643248b8c58ec34c\ehiUserXp.ni.dll
+ 2012-05-14 01:48:51 . 2012-05-14 01:48:51 196096 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\7998173654fa518876cc97e37b86d465\ehiiTv.ni.dll
+ 2012-05-14 01:48:50 . 2012-05-14 01:48:50 397824 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\6c97aa6908f96ac9816ce74e4f6251ac\ehiExtens.ni.dll
+ 2012-05-14 01:48:50 . 2012-05-14 01:48:50 110080 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\a501747a95523297a8a1f119df8b1642\ehiBmlDataCarousel.ni.dll
+ 2012-05-14 01:48:50 . 2012-05-14 01:48:50 125440 C:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\880c8b97f2b065a3bbe27b7c37581d17\ehiActivScp.ni.dll
+ 2012-05-14 01:48:27 . 2012-05-14 01:48:27 389120 C:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\24d3859bba3ed02775f22c50ae5ab5a6\ehExtHost.ni.exe
+ 2012-05-14 01:48:25 . 2012-05-14 01:48:25 313856 C:\windows\assembly\NativeImages_v2.0.50727_64\ehCIR\ff7ef4caed03d6934669d1a39877a8ac\ehCIR.ni.dll
+ 2012-05-14 01:48:25 . 2012-05-14 01:48:25 348672 C:\windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\b7916689137fd0bc9ba1ba5a27e2a38a\CustomMarshalers.ni.dll
+ 2012-05-14 01:47:47 . 2012-05-14 01:47:47 640000 C:\windows\assembly\NativeImages_v2.0.50727_64\ComSvcConfig\cc6e6febcd804604bf4d92d0eb8ec6ae\ComSvcConfig.ni.exe
+ 2012-05-14 01:47:45 . 2012-05-14 01:47:45 971264 C:\windows\assembly\NativeImages_v2.0.50727_64\BDATunePIA\d18719c2df1334364cac199bb9c86adf\BDATunePIA.ni.dll
+ 2012-05-14 01:47:22 . 2012-05-14 01:47:22 321024 C:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\9d60139fdead64a892985181d663989f\WsatConfig.ni.exe
+ 2012-05-14 01:44:56 . 2012-05-14 01:44:56 634368 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\f77fce25dd92edeaabc82b974aa07405\WindowsLiveLocal.WriterPlugin.ni.dll
+ 2012-05-14 01:44:47 . 2012-05-14 01:44:47 665600 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\f3f0b329b55a2116a4adbd5b1e8192da\WindowsLive.Writer.Interop.ni.dll
+ 2012-05-14 01:44:55 . 2012-05-14 01:44:55 119296 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\dfe80d53679a718a297e2c194cb995f4\WindowsLive.Writer.FileDestinations.ni.dll
+ 2012-05-14 01:44:48 . 2012-05-14 01:44:48 313856 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\dbbb5914ff727ce0f6793177c4da31ba\WindowsLive.Writer.Interop.SHDocVw.ni.dll
+ 2012-05-14 01:44:54 . 2012-05-14 01:44:54 871424 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c532739f321891af14f02114ae8ef284\WindowsLive.Writer.BlogClient.ni.dll
+ 2012-05-14 01:44:51 . 2012-05-14 01:44:51 146432 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c3902b80bdc944a554776f5d6c07cff9\WindowsLive.Writer.Instrumentation.ni.dll
+ 2012-05-14 01:44:52 . 2012-05-14 01:44:52 122368 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\bb3e7c55751c5ac738006b543cd1b183\WindowsLive.Writer.Extensibility.ni.dll
+ 2012-05-14 01:44:49 . 2012-05-14 01:44:49 156672 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\aab0bad2dc60d6748745835dc38c52c6\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-05-14 01:44:45 . 2012-05-14 01:44:45 780800 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8fa39c2020c4fc79f399f224b59bd4a4\WindowsLive.Writer.Controls.ni.dll
+ 2012-05-14 01:44:50 . 2012-05-14 01:44:50 328192 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8b7b104895037121090062d97855ed48\WindowsLive.Writer.Mshtml.ni.dll
+ 2012-05-14 01:44:50 . 2012-05-14 01:44:50 101376 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\87f1094d48016e76451b56ccea04ba98\WindowsLive.Writer.Api.ni.dll
+ 2012-05-14 01:44:48 . 2012-05-14 01:44:48 374272 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\43f78ae7292b5d31b471b9ecf89430af\WindowsLive.Writer.Interop.Mshtml.ni.dll
+ 2012-05-14 01:44:53 . 2012-05-14 01:44:53 326144 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\29a4bfb2662c8e108152983c5a1cf509\WindowsLive.Writer.SpellChecker.ni.dll
+ 2012-05-14 01:44:53 . 2012-05-14 01:44:53 891392 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\192746f3a18da9e978f89dbf2cb67c5c\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-05-14 01:44:48 . 2012-05-14 01:44:48 174080 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\091657a3e9d01b55993186fa713d9e5f\WindowsLive.Writer.BrowserControl.ni.dll
+ 2012-05-14 01:44:55 . 2012-05-14 01:44:55 223232 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\adfac934a7fc1bc2b0b5530c606a741f\WindowsLive.Client.ni.dll
+ 2012-05-14 01:47:21 . 2012-05-14 01:47:21 240128 C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\9bfbf0613d3780e34d98333c7b381218\WindowsFormsIntegration.ni.dll
+ 2012-05-14 01:42:19 . 2012-05-14 01:42:19 185344 C:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\d8af9a65cf0ed85d47360796e2645a06\UIAutomationTypes.ni.dll
+ 2012-05-14 01:46:03 . 2012-05-14 01:46:04 452096 C:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\779b08c46960a1824503aa6f089673fa\UIAutomationClient.ni.dll
+ 2012-05-14 01:47:19 . 2012-05-14 01:47:19 245248 C:\windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\c4edf782e69aa24453554f8b6cb40773\TaskScheduler.ni.dll
+ 2012-05-14 01:46:54 . 2012-05-14 01:46:54 401408 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\64de6810023adccdc56ddae13bdd6b03\System.Xml.Linq.ni.dll
+ 2012-05-14 01:47:10 . 2012-05-14 01:47:10 129536 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\d75f0b1e2ea688466552da04fd805949\System.Web.Routing.ni.dll
+ 2012-05-14 01:43:04 . 2012-05-14 01:43:04 202240 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\2b129372a27469195acbe3b6b81786ef\System.Web.RegularExpressions.ni.dll
+ 2012-05-14 01:47:14 . 2012-05-14 01:47:14 860160 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\5d6fdd022660b8ca4be19ff06ddfee7a\System.Web.Extensions.Design.ni.dll
+ 2012-05-14 01:47:12 . 2012-05-14 01:47:12 328192 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\d084aa31b82c66eb83e40853ba961b48\System.Web.Entity.ni.dll
+ 2012-05-14 01:47:13 . 2012-05-14 01:47:13 301568 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\53ca1042189a64dcd1f8ff487922b749\System.Web.Entity.Design.ni.dll
+ 2012-05-14 01:47:11 . 2012-05-14 01:47:11 547328 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\0b8a9e120d8f557a9702229e3c64987c\System.Web.DynamicData.ni.dll
+ 2012-05-14 01:46:59 . 2012-05-14 01:46:59 141312 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\5d95b9a6cee5a9b1aac34b5d33c721ba\System.Web.Abstractions.ni.dll
+ 2012-05-14 01:42:49 . 2012-05-14 01:42:49 627200 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\80fae9f16f80075535e72458ef293f7a\System.Transactions.ni.dll
+ 2012-05-14 01:43:04 . 2012-05-14 01:43:04 212992 C:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\5abddd1112204bd1e3347be519eaa28f\System.ServiceProcess.ni.dll
+ 2012-05-14 01:42:06 . 2012-05-14 01:42:06 680448 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\054fcff18035c210487b0888e6461192\System.Security.ni.dll
+ 2012-05-14 01:42:27 . 2012-05-14 01:42:27 310784 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\2ff4e90c5842525f7a7456639de090d8\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-14 01:42:50 . 2012-05-14 01:42:50 771584 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\03dee80574f4ec770b6f77ca030ded6c\System.Runtime.Remoting.ni.dll
+ 2012-05-14 01:47:06 . 2012-05-14 01:47:06 624128 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\0b5f082230e3486412e0fa333290e85a\System.Net.ni.dll
+ 2012-05-14 01:45:16 . 2012-05-14 01:45:16 593408 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\f1241239a9b8229f91ce55d230fad38c\System.Messaging.ni.dll
+ 2012-05-14 01:47:06 . 2012-05-14 01:47:06 330240 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\8280490a2939075b726fd051d9010cc0\System.Management.Instrumentation.ni.dll
+ 2012-05-14 01:47:05 . 2012-05-14 01:47:05 381440 C:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\a03191ed937f6c1dc827b53d94ea0176\System.IO.Log.ni.dll
+ 2012-05-14 01:45:17 . 2012-05-14 01:45:17 212992 C:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\100d39c2f8985cb93e26feef86ba5212\System.IdentityModel.Selectors.ni.dll
+ 2012-05-14 01:42:49 . 2012-05-14 01:42:49 280064 C:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\168755d010e5a96ac940b0ddd27616a4\System.EnterpriseServices.Wrapper.dll
+ 2012-05-14 01:42:49 . 2012-05-14 01:42:49 628224 C:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\168755d010e5a96ac940b0ddd27616a4\System.EnterpriseServices.ni.dll
+ 2012-05-14 01:43:03 . 2012-05-14 01:43:03 208384 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\6b16664ac4ab46643c4a7fdd960ef9fb\System.Drawing.Design.ni.dll
+ 2012-05-14 01:43:04 . 2012-05-14 01:43:04 455680 C:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\55545e89f96539ef93375524d1145a6f\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-14 01:47:04 . 2012-05-14 01:47:04 888320 C:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\4d73a7649876bb6e54a01ccbf235919b\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-14 01:47:02 . 2012-05-14 01:47:02 462336 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\e36e03067b12bc35fcc3787dc81022c8\System.Data.Services.Design.ni.dll
+ 2012-05-14 01:46:51 . 2012-05-14 01:46:51 763392 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\5a29fff52e2c3d13ec15e8701027ab17\System.Data.Entity.Design.ni.dll
+ 2012-05-14 01:46:22 . 2012-05-14 01:46:22 135680 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\940f62a5d077405e0b324422afb6ff2c\System.Data.DataSetExtensions.ni.dll
+ 2012-05-14 01:42:01 . 2012-05-14 01:42:01 971264 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
+ 2012-05-14 01:43:04 . 2012-05-14 01:43:05 141312 C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\d3325c6bced333a67122db7414c1fd1e\System.Configuration.Install.ni.dll
+ 2012-05-14 01:43:17 . 2012-05-14 01:43:17 634368 C:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\a90ec436f1d2c5cb0133a53c2e47d61a\System.AddIn.ni.dll
+ 2012-05-14 01:47:09 . 2012-05-14 01:47:09 232448 C:\windows\assembly\NativeImages_v2.0.50727_32\sysglobl\1ed79278fe139272e868e3a53d736f22\sysglobl.ni.dll
User avatar
Smithy8831
Geek in Training
Geek in Training
 
Posts: 20
Joined: Sat Nov 26, 2011 1:13 pm
Operating System: Windows 7

Thanks given:2
Thanks received:0
Top

Next

Return to Malware Support

Who is online

Users browsing this forum: No registered users and 5 guests

cron