DDS (Ver_09-12-01.01) - NTFSx86
Run by Jesper at 15:48:54,71 on 22-01-2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_17
Microsoft Windows 7 Professional 6.1.7600.0.1252.45.1030.18.1945.858 [GMT 1:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\VBoxService.exe
C:\Windows\system32\sysprep\sysprep.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\FileZilla Server\FileZilla Server.exe
C:\Program Files\Norton 360\Engine\3.5.2.11\ccSvcHst.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Norton 360\Engine\3.5.2.11\ccSvcHst.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\System32\VBoxTray.exe
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Jesper\AppData\Local\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\ctfmon.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\explorer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Jesper\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
BHO: PC Tools Browser Guard BHO: {2a0f3d1b-0909-4ff4-b272-609cce6054e7} - c:\program files\spyware doctor\bdt\PCTBrowserDefender.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton 360\engine\3.5.2.11\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton 360\engine\3.5.2.11\IPSBHO.DLL
BHO: {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File
BHO: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
c:\users\jesper\appdata\local\temp\c178.tmp\temp00
c:\users\jesper\appdata\local\temp\c178.tmp\temp00
c:\users\jesper\appdata\local\temp\c178.tmp\temp00
c:\users\jesper\appdata\local\temp\c178.tmp\temp00
c:\users\jesper\appdata\local\temp\c178.tmp\temp00
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\1.0.150\SSScheduler.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - c:\programs\partygaming\partypoker\RunApp.exe
DPF: {07D09E9E-C667-45DD-B035-217BC2A61A3B} -
hxxps://www.portalbank.dk/package/sdc/external/activex/ActiveXSikkerhedssoftware-prod-1.30.cabDPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabHandler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\norton 360\engine\3.5.2.11\CoIEPlg.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\jesper\appdata\roaming\mozilla\firefox\profiles\bhj32bwp.default\
FF - component: c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\coffplgn\components\coFFPlgn.dll
FF - component: c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\ipsffplgn\components\IPSFFPl.dll
FF - component: c:\users\jesper\appdata\roaming\mozilla\firefox\profiles\bhj32bwp.default\extensions\dttoolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\users\jesper\appdata\local\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".dk");
============= SERVICES / DRIVERS ===============
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-1-22 162640]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\n360\0305020.00b\BHDrvx86.sys [2010-1-21 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\n360\0305020.00b\cchpx86.sys [2010-1-21 482432]
R1 IDSVix86;IDSVix86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20090712.001\IDSvix86.sys [2010-1-21 293424]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-1-22 19024]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-1-22 51792]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
============== File Associations ===============
regfile="regedit.exe" "%1"
=============== Created Last 30 ================
2010-01-22 13:47:41 0 d-----w- c:\programdata\Symantec
2010-01-22 13:02:19 0 d-----w- c:\users\jesper\appdata\roaming\Malwarebytes
2010-01-22 13:01:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-22 13:01:00 0 d-----w- c:\programdata\Malwarebytes
2010-01-22 13:00:50 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-22 13:00:47 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-22 00:03:05 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-01-22 00:02:27 0 d-----w- c:\programdata\Alwil Software
2010-01-21 23:52:24 65536 --sha-w- c:\users\jesper\ntuser.dat{e1702d5e-06e7-11df-b3be-080027669dd6}.TM.blf
2010-01-21 23:52:24 524288 --sha-w- c:\users\jesper\ntuser.dat{e1702d5e-06e7-11df-b3be-080027669dd6}.TMContainer00000000000000000002.regtrans-ms
2010-01-21 23:52:24 524288 --sha-w- c:\users\jesper\ntuser.dat{e1702d5e-06e7-11df-b3be-080027669dd6}.TMContainer00000000000000000001.regtrans-ms
2010-01-21 23:09:45 0 d-----w- c:\programdata\SITEguard
2010-01-21 23:08:39 0 d-----w- c:\program files\STOPzilla!
2010-01-21 23:08:38 0 d-----w- c:\program files\common files\iS3
2010-01-21 23:08:37 0 d-----w- c:\programdata\STOPzilla!
2010-01-21 23:07:42 977920 ----a-w- c:\windows\system32\wininet.dll
2010-01-21 21:02:27 767952 ----a-w- c:\windows\BDTSupport.dll
2010-01-21 21:02:12 882 ----a-w- c:\windows\RegSDImport.xml
2010-01-21 21:02:07 880 ----a-w- c:\windows\RegISSImport.xml
2010-01-21 21:02:06 149456 ----a-w- c:\windows\SGDetectionTool.dll
2010-01-21 21:02:06 131 ----a-w- c:\windows\IDB.zip
2010-01-21 21:02:04 1152444 ----a-w- c:\windows\UDB.zip
2010-01-21 21:02:03 1640400 ----a-w- c:\windows\PCTBDCore.dll
2010-01-21 21:02:02 165840 ----a-w- c:\windows\PCTBDRes.dll
2010-01-21 21:00:05 7387 ----a-w- c:\windows\system32\drivers\pctgntdi.cat
2010-01-21 21:00:04 233136 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
2010-01-21 21:00:02 98600 ----a-w- c:\windows\system32\drivers\pctwfpfilter.sys
2010-01-21 20:58:37 7412 ----a-w- c:\windows\system32\drivers\PCTAppEvent.cat
2010-01-21 20:58:37 7383 ----a-w- c:\windows\system32\drivers\pctcore.cat
2010-01-21 20:58:37 207792 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2010-01-21 20:58:36 87784 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
2010-01-21 20:58:05 7383 ----a-w- c:\windows\system32\drivers\pctplsg.cat
2010-01-21 20:58:04 70408 ----a-w- c:\windows\system32\drivers\pctplsg.sys
2010-01-21 20:57:38 0 d-----w- c:\users\jesper\appdata\roaming\PC Tools
2010-01-21 20:57:38 0 d-----w- c:\programdata\PC Tools
2010-01-21 20:57:38 0 d-----w- c:\program files\Spyware Doctor
2010-01-21 20:57:38 0 d-----w- c:\program files\common files\PC Tools
2010-01-21 20:57:27 0 d---a-w- c:\programdata\TEMP
2010-01-21 19:47:22 26600 ----a-r- c:\windows\system32\drivers\GEARAspiWDM.sys
2010-01-21 19:47:22 107368 ----a-r- c:\windows\system32\GEARAspi.dll
2010-01-21 19:47:17 25648 ----a-r- c:\windows\system32\drivers\SymIMV.sys
2010-01-21 19:47:07 806 ----a-w- c:\windows\system32\drivers\SYMEVENT.INF
2010-01-21 19:47:07 7456 ----a-w- c:\windows\system32\drivers\SYMEVENT.CAT
2010-01-21 19:47:07 124976 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2010-01-21 19:46:58 0 d-----w- c:\program files\Symantec
2010-01-21 19:46:58 0 d-----w- c:\program files\common files\Symantec Shared
2010-01-21 19:45:51 0 d-----w- c:\windows\system32\drivers\N360
2010-01-21 19:45:48 0 d-----w- c:\program files\Norton 360
2010-01-21 19:45:46 0 d-----w- c:\programdata\Norton
2010-01-21 19:45:34 0 d-----w- c:\programdata\NortonInstaller
2010-01-21 19:45:34 0 d-----w- c:\program files\NortonInstaller
2010-01-21 19:41:04 0 dc----w- c:\programdata\{5163CD15-ECCB-48A1-8C5C-22A36002B9DB}
2010-01-21 19:40:55 0 d-----w- c:\users\jesper\appdata\roaming\Fighters
2010-01-21 19:34:53 0 d-----w- c:\program files\CCleaner
2010-01-21 18:10:48 232448 ----a-w- c:\windows\system32\sshnas21.dll
2010-01-21 18:08:31 57856 ---h--w- c:\users\jesper\img.exe
2010-01-21 17:43:37 0 d-----w- C:\Nexus Content
2010-01-21 17:38:02 0 d-----w- c:\program files\DAEMON Tools Toolbar
2010-01-21 17:37:48 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-01-21 17:37:24 0 d-----w- c:\program files\DAEMON Tools Lite
2010-01-21 17:37:12 0 d-----w- c:\users\jesper\appdata\roaming\DAEMON Tools Lite
2010-01-21 17:37:10 0 d-----w- c:\programdata\DAEMON Tools Lite
2010-01-21 17:02:54 0 d-----w- c:\program files\V
2010-01-21 12:11:49 0 d-----w- c:\program files\InterLok
2010-01-21 12:09:52 995383 ----a-w- c:\windows\system32\temp.003
2010-01-21 12:09:51 50688 ----a-w- c:\windows\system32\temp.002
2010-01-21 12:09:51 322560 ----a-w- c:\windows\system32\temp.001
2010-01-21 12:09:50 401462 ----a-w- c:\windows\system32\temp.000
2010-01-21 12:09:49 0 d-----w- c:\program files\Pro-53
2010-01-21 12:09:34 0 d-----w- c:\users\jesper\appdata\roaming\Antares
2010-01-21 12:09:29 0 d-----w- c:\program files\Antares Audio Technologies
2010-01-20 16:15:02 0 d-----w- C:\Programs
2010-01-20 16:04:39 0 d-----w- c:\program files\Full Tilt Poker
2010-01-19 19:08:53 0 d-----w- c:\program files\Gadwin Systems
2010-01-17 17:42:35 0 d-----w- c:\program files\Microsoft Keyboard Layout Creator 1.4
2010-01-16 19:51:00 0 d-----w- c:\programdata\McAfee
2010-01-15 13:47:52 0 d-----w- c:\program files\DVDVideoSoft
2010-01-15 13:47:52 0 d-----w- c:\program files\common files\DVDVideoSoft
2010-01-15 13:42:25 0 d-----w- c:\program files\Audacity
2010-01-15 13:25:46 0 d-----w- c:\program files\Image-Lin6e
2010-01-15 13:23:57 0 d-----w- c:\program files\MC_Score_5_Demo
2010-01-14 20:47:36 0 d-----w- c:\program files\MIDI-Click
2010-01-14 20:47:21 0 d-----w- C:\MC_Score_5_Demo
2010-01-14 20:46:54 0 d-----w- C:\MC_Bundle_5
2010-01-14 19:57:07 0 d-----w- c:\program files\FileZilla Server
2010-01-14 19:50:57 0 d-----w- c:\programdata\McAfee Security Scan
2010-01-14 19:50:56 0 d-----w- c:\program files\McAfee Security Scan
2010-01-14 19:39:57 0 d-----w- c:\program files\MidiLink Software
2010-01-14 18:37:08 0 d-----w- c:\program files\Realtek
2010-01-14 18:37:06 0 d--h--w- c:\program files\Temp
2010-01-14 18:17:31 979968 ----a-w- c:\windows\system32\MMDSoundX2.OCX
2010-01-14 18:17:31 63488 ----a-w- c:\windows\system32\MMRegOCX.EXE
2010-01-14 18:17:31 428032 ----a-w- c:\windows\system32\MMTypesX2.OCX
2010-01-14 18:17:31 417 ----a-w- c:\windows\system32\MMDSoundX2.dep
2010-01-14 18:17:31 40448 ----a-w- c:\windows\system32\AXDIST.EXE
2010-01-14 18:17:26 0 d-----w- C:\MMDSOUNDX2
2010-01-14 17:54:31 10975264 ----a-w- c:\windows\system32\RTLCPL.EXE
2010-01-14 17:54:31 0 d-----w- c:\program files\Realtek AC97
2010-01-14 17:54:29 604704 ----a-w- c:\windows\SOUNDMAN.EXE
2010-01-14 17:54:29 4172832 ----a-w- c:\windows\system32\drivers\RTKVAC.SYS
2010-01-14 17:54:29 19036704 ----a-w- c:\windows\system32\ALSNDMGR.CPL
2010-01-14 17:54:29 154144 ----a-w- c:\windows\system32\RTLCPAPI.dll
2010-01-14 17:54:28 965664 ----a-w- c:\windows\system32\RtkPgExt.dll
2010-01-14 17:54:28 315392 ----a-w- c:\windows\alcupd.exe
2010-01-14 17:54:28 2510368 ----a-w- c:\windows\system32\RtkAPO.dll
2010-01-14 17:54:28 223776 ----a-w- c:\windows\alcrmv.exe
2010-01-14 17:54:28 141856 ----a-w- c:\windows\system32\RtkCfg.dll
2010-01-14 17:54:10 838176 ----a-w- c:\windows\RtlExUpd.dll
2010-01-14 17:46:33 0 d-----w- c:\windows\system32\appmgmt
2010-01-14 16:39:07 257024 ----a-w- c:\windows\system32\msv1_0.dll
2010-01-14 16:38:11 2048 ----a-w- c:\windows\system32\tzres.dll
2010-01-14 16:37:29 728648 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2010-01-14 16:37:29 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2010-01-14 16:37:27 507568 ----a-w- c:\windows\system32\winload.exe
2010-01-14 16:37:27 442920 ----a-w- c:\windows\system32\winresume.exe
2010-01-14 16:37:27 2613248 ----a-w- c:\windows\explorer.exe
2010-01-14 16:37:22 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2010-01-14 16:37:10 34816 ----a-w- c:\windows\system32\msasn1.dll
2010-01-14 16:36:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2010-01-14 16:36:51 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-01-14 16:36:51 108544 ----a-w- c:\windows\system32\t2embed.dll
2010-01-14 16:21:20 141016 ----a-w- c:\windows\system32\ALSNDMGR.WAV
2010-01-14 16:14:03 0 d-----w- c:\program files\ASIO4ALL v2
2010-01-14 16:13:22 225280 ----a-w- c:\windows\system32\rewire.dll
2010-01-14 16:13:22 0 d-----w- c:\program files\VstPlugins
2010-01-14 16:13:10 1294336 ----a-w- c:\windows\system32\vorbis.acm
2010-01-14 16:12:53 0 d-----w- c:\program files\Outsim
2010-01-14 16:11:48 0 d-----w- c:\program files\Image-Line
2010-01-14 16:09:37 0 d-----w- c:\users\jesper\Tracing
2010-01-14 16:08:16 0 d-----w- c:\program files\Microsoft
2010-01-14 16:07:54 0 d-----w- c:\program files\Windows Live SkyDrive
2010-01-14 16:07:33 0 d-----w- c:\windows\PCHEALTH
2010-01-14 16:02:56 0 d-----w- c:\program files\Ask.com
2010-01-14 16:02:46 0 d-----w- c:\users\jesper\appdata\roaming\BitTorrent
2010-01-14 16:02:39 0 d-----w- c:\program files\BitTorrent
2010-01-14 16:01:22 0 d-----w- c:\program files\common files\Windows Live
2010-01-14 15:50:15 0 d-----w- c:\program files\Sun
2010-01-14 15:42:15 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-14 15:38:25 1088 ----a-w- C:\EBJKeystore.store
2010-01-14 15:33:21 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-14 15:32:53 0 d-sh--w- c:\windows\Installer
2010-01-14 15:13:09 1240086 ----a-w- c:\windows\system32\PerfStringBackup.INI
2010-01-14 15:11:46 0 d-----w- c:\windows\system32\wbem\Performance
2010-01-14 15:09:56 0 d-sh--we C:\Programmer
2010-01-14 15:09:56 0 d-sh--we c:\programdata\Skrivebord
2010-01-14 15:09:56 0 d-sh--we c:\programdata\Skabeloner
2010-01-14 15:09:56 0 d-sh--we c:\programdata\Menuen Start
2010-01-14 15:09:56 0 d-sh--we c:\programdata\Favoritter
2010-01-14 15:09:56 0 d-sh--we c:\programdata\Dokumenter
2010-01-14 15:09:56 0 d-sh--we c:\program files\Fælles filer
2010-01-14 15:09:56 0 d-sh--w- C:\Recovery
2010-01-14 15:01:55 0 d-----w- c:\windows\Panther
==================== Find3M ====================
2010-01-22 02:27:46 76536 ----a-w- c:\windows\system32\perfc006.dat
2010-01-22 02:27:46 461038 ----a-w- c:\windows\system32\perfh006.dat
2009-12-23 13:04:54 17408 ----a-r- c:\windows\system32\SZIO5.dll
2009-12-14 09:24:24 163600 ----a-r- c:\windows\system32\drivers\SZKGFS.sys
2009-12-10 15:09:08 61440 ----a-r- c:\windows\system32\IS3Hks5.dll
2009-12-07 15:59:32 61328 ----a-r- c:\windows\system32\drivers\SZKG.sys
2009-07-14 08:37:57 39236 ----a-w- c:\windows\inf\perflib\0406\perfd.dat
2009-07-14 08:37:57 39236 ----a-w- c:\windows\inf\perflib\0406\perfc.dat
2009-07-14 08:37:57 306636 ----a-w- c:\windows\inf\perflib\0406\perfi.dat
2009-07-14 08:37:57 306636 ----a-w- c:\windows\inf\perflib\0406\perfh.dat
2009-07-14 04:41:57 174 --sha-w- c:\program files\desktop.ini
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-06-10 21:26:35 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
============= FINISH: 15:57:57,41 ===============