Otl
Otl
Otl
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Mic
rosoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft C
orporation)
FF - HKLM\Software\MozillaPlugins\@nexon.com/NxGame: C:\ProgramData\Nexon\NGM\np
nxgame.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: \NGM\npNxGameUS.dll File no
t found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program
Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\
Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\
Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C
:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18:
C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohPlayer: C:\Program Files (x86)\V
eoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll (Veoh Networks Inc)
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohTVPlugin: C:\Program Files (x86)
\Veoh Networks\VeohWebPlayer\NPVeohTVPlugin.dll (Veoh Networks )
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohWebPlayer: C:\Program Files (x86
)\Veoh Networks\VeohWebPlayer\npWebPlayerVideoPluginATL.dll (Veoh)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Fi
les (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@wizvera.com/npVeraport20: C:\Program Files (x
86)\Wizvera\Veraport20\npveraport20.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Rea
der 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users
\home\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Use
rs\home\AppData\Roaming\Move Networks\plugins\npqmp071505000010.dll (Move Networ
ks)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\
Users\home\AppData\Local\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google In
c.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\
Users\home\AppData\Local\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google In
c.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program F
iles (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB
3-449D-B827-DB661701C6BB}: C:\PROGRAM FILES\CHECKPOINT\ZAFORCEFIELD\TRUSTCHECKER
[2013/06/15 17:40:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D
-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
[2013/06/15 17:40:48 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Compone
nts: C:\Program Files (x86)\Mozilla Firefox\components [2013/06/05 13:43:01 | 00
0,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins
: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/06/05 13:43:01 | 000,000,
000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Pro
gram Files (x86)\Veoh Networks\VeohWebPlayer\FFVideoFinder [2009/07/03 23:33:23
| 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\moveplayer@movenetwo
rks.com: C:\Users\home\AppData\Roaming\Move Networks [2010/03/14 14:12:44 | 000,
000,000 | ---D | M]
[2010/03/14 14:03:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\home\
AppData\Roaming\Mozilla\Extensions
[2009/08/02 20:55:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\home\
AppData\Roaming\Mozilla\Extensions\MediaCoder
[2011/09/21 21:53:45 | 000,000,000 | ---D | M] (No name found) -- C:\Users\home\
AppData\Roaming\Mozilla\Firefox\Profiles\2vl09ijl.default\extensions
[2011/09/21 21:53:45 | 000,000,000 | ---D | M] (FoxyProxy Standard) -- C:\Users\
home\AppData\Roaming\Mozilla\Firefox\Profiles\2vl09ijl.default\extensions\foxypr
[email protected]
[2011/07/18 17:53:41 | 000,031,748 | ---- | M] () (No name found) -- C:\Users\ho
me\AppData\Roaming\Mozilla\Firefox\Profiles\2vl09ijl.default\extensions\webmaste
[email protected]
[2012/06/15 15:27:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Fil
es (x86)\Mozilla Firefox\extensions
[2011/02/26 16:50:08 | 000,000,000 | ---D | M] (Java Console) -- C:\Program File
s (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/02/27 22:06:59 | 000,000,000 | ---D | M] (Java Console) -- C:\Program File
s (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/06/15 12:02:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program File
s (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2009/07/14 21:58:57 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assista
nt) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\D
OTNETASSISTANTEXTENSION
[2011/06/29 16:30:36 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Progra
m Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/12/09 10:23:32 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Fi
les (x86)\mozilla firefox\plugins\npwachk.dll
[2010/01/01 01:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozi
lla firefox\searchplugins\bing.xml
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerm
s}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{go
ogle:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:ins
tantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{goog
le:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPositio
n}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: about:Tabs
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\home\AppData\Local\Google\Chrom
e\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\home\AppData\Local\Google\C
hrome\Application\27.0.1453.110\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\home\AppData\Local\Google\Chr
ome\Application\27.0.1453.110\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPS
WF32_11_3_300_265.dll
CHR - plugin: IE Tab Multi (Enabled) = C:\Users\home\AppData\Local\Google\Chrome
\User Data\Default\Extensions\fnfnbeppfinmnjnjhedifcfllpcfgeea\1.0.0.1_0\plugin/
npietab.dll
CHR - plugin: IE Tab Multi (SPA) (Enabled) = C:\Users\home\AppData\Local\Google\
Chrome\User Data\Default\Extensions\fnfnbeppfinmnjnjhedifcfllpcfgeea\1.0.0.1_0\p
lugin/npietabspa.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0
\Reader\Browser\nppdf32.dll
| ---D | C] -- C:\Windows\ERUNT
| ---D | C] -- C:\JRT
| ---- | C] (OldTimer Tools) -- C:\Users\home
| ---- | C] (Oleg N. Scherbakov) -- C:\Users\
| -HSD | C] -- C:\$RECYCLE.BIN
| ---- | C] (SteelWerX) -- C:\Windows\SWREG.e
| ---- | C] (SteelWerX) -- C:\Windows\SWSC.ex
| ---- | C] (NirSoft) -- C:\Windows\NIRCMD.ex
| ---D | C] -- C:\Qoobox
| ---D | C] -- C:\Windows\erdnt
| ---- | C] (Bleeping Computer, LLC) -- C:\Us
| ---- | C] (Bleeping Computer, LLC) -- C:\Us
| R--- | C] (Swearware) -- C:\Users\home\Desk
top\ComboFix.exe
[2013/06/15 19:08:33 | 000,000,000 | ---D | C] -- C:\Users\home\Desktop\RK_Quara
ntine
[2013/06/15 17:40:52 | 000,000,000 | ---D | C] -- C:\Users\home\Documents\ForceF
ield Shared Files
[2013/06/15 17:40:36 | 000,000,000 | ---D | C] -- C:\Users\home\AppData\Local\Ma
cromedia
[2013/06/15 17:40:02 | 000,000,000 | ---D | C] -- C:\Program Files\CheckPoint
[2013/06/15 17:39:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\Check Point
[2013/06/15 17:37:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Check P
oint Software Technologies LTD
[2013/06/15 17:37:41 | 000,000,000 | ---D | C] -- C:\Users\home\AppData\Roaming\
Check Point Software Technologies LTD
[2013/06/15 17:36:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CheckPo
int
[2013/06/15 15:22:24 | 000,688,992 | R--- | C] (Swearware) -- C:\Users\home\Desk
top\dds.com
[2013/06/14 18:40:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' A
nti-Malware (portable)
[2013/06/14 18:38:06 | 000,000,000 | ---D | C] -- C:\Users\home\Desktop\mbar
[2013/06/13 14:43:53 | 006,018,568 | ---- | C] (Trend Micro, Inc.
) -- C:\Users\home\Desktop\RUBottedSetup.exe
[2013/06/12 03:04:28 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\mshtmled.dll
[2013/06/12 03:04:27 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\mshtmled.dll
[2013/06/12 03:04:17 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\ieui.dll
[2013/06/12 03:04:17 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\ieui.dll
[2013/06/12 03:04:14 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\ieUnatt.exe
[2013/06/12 03:04:11 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\ieUnatt.exe
[2013/06/12 03:04:07 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\url.dll
[2013/06/12 03:04:06 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\url.dll
[2013/06/12 03:03:54 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\inetcpl.cpl
[2013/06/12 03:03:53 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\inetcpl.cpl
[2013/06/12 03:03:52 | 002,312,704 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\jscript9.dll
[2013/06/12 03:03:50 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\msfeeds.dll
[2013/06/12 03:03:46 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\jscript.dll
[2013/06/12 03:03:46 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\jscript.dll
[2013/06/12 03:03:46 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\vbscript.dll
[2013/06/11 16:12:06 | 001,078,272 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\certutil.exe
[2013/06/11 16:12:06 | 000,812,544 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysWow64\certutil.exe
[2013/06/11 16:12:05 | 001,269,248 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\crypt32.dll
[2013/06/11 16:12:04 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\SysNative\cryptnet.dll
[2013/06/11 16:12:04 | 000,050,688 | ---- |
dows\SysNative\certenc.dll
[2013/06/11 16:12:02 | 000,041,984 | ---- |
dows\SysWow64\certenc.dll
[2013/06/11 16:11:46 | 000,030,720 | ---- |
dows\SysNative\cryptdlg.dll
[2013/06/11 16:11:46 | 000,024,576 | ---- |
dows\SysWow64\cryptdlg.dll
[2013/06/11 16:11:35 | 000,686,080 | ---- |
dows\SysNative\win32spl.dll
[2013/06/11 16:11:34 | 000,443,904 | ---- |
dows\SysWow64\win32spl.dll
[2013/06/11 16:11:33 | 000,037,376 | ---- |
dows\SysWow64\printcom.dll
[2013/06/05 19:08:15 | 000,000,000 | ---D |
[2013/06/05 17:32:27 | 000,000,000 | ---D |
ws\Start Menu\Programs\Python 2.7
[2013/06/05 17:29:38 | 000,000,000 | ---D |
[2013/06/05 13:42:44 | 000,000,000 | ---D |
ws\Start Menu\Programs\QuickTime
[2013/06/05 13:42:19 | 000,000,000 | ---D |
me
[2013/06/05 13:42:18 | 000,000,000 | ---D |
[2013/06/04 17:29:42 | 000,000,000 | ---D |
ws\Start Menu\Programs\GNU Octave (3.6.4)
[2013/06/04 17:29:08 | 000,000,000 | ---D |
[2013/06/04 16:53:40 | 000,000,000 | ---D |
[1 C:\Windows\SysNative\drivers\*.tmp files
p -> ]
[2013/06/16 13:31:01 | 000,256,000 | ---[2013/06/16 13:31:01 | 000,208,896 | ---[2013/06/16 13:31:01 | 000,098,816 | ---[2013/06/16 13:31:01 | 000,080,412 | ---[2013/06/16 13:31:01 | 000,068,096 | ---[2013/06/15 17:40:54 | 000,417,563 | ---s\vsconfig.xml
[2013/06/14 18:23:34 | 000,791,040 | ---KillerX64.exe
[2013/06/14 18:18:23 | 013,169,742 | ---1.06.0.1003.zip
[2013/06/14 15:21:45 | 000,054,725 | ---1_369322526501674_439372319_n.jpg
[2013/06/13 22:09:00 | 000,174,050 | ---led.jpg
[2013/06/05 20:57:00 | 000,544,427 | ----math-guide.pdf
[2013/06/05 18:43:13 | 000,000,424 | ---[2013/06/05 17:08:54 | 000,000,724 | ---nMathIDE.bat - Shortcut.lnk
[2013/06/04 17:34:00 | 000,000,261 | ---[2013/06/04 17:29:42 | 000,001,693 | ---ave 3.6.4.lnk
[2013/05/25 17:16:25 | 000,040,119 | ---Kl.jpg
[2012/12/14 03:29:11 | 000,645,632 | ---e.dll
[2012/12/14 03:29:11 | 000,240,640 | ---.dll
[2012/07/29 16:12:32 | 000,047,280 | ---\SCSK5.sys
[2012/07/29 16:12:25 | 000,000,024 | ---figEH.ini
[2012/07/29 16:08:07 | 000,024,576 | ---ll
[2011/12/30 20:57:59 | 000,175,616 | ---ll
[2011/12/30 20:57:53 | 000,079,360 | ---dll
[2011/12/28 14:35:39 | 000,234,768 | ---B.exe
[2011/12/28 14:35:32 | 000,075,136 | ---A.exe
[2011/12/10 18:26:39 | 000,000,000 | ---\{2205DC0E-1DA3-4C4A-8515-33A3AE64A23F}
[2011/12/04 15:08:09 | 000,005,255 | ---d.xbel
[2011/08/25 23:54:39 | 000,000,036 | ---epp.usagedata.recording.userId
[2011/06/30 19:37:54 | 000,098,696 | ---wdrv03.exe
[2011/06/30 19:37:54 | 000,013,704 | ---v.sys
[2011/03/29 15:33:58 | 000,000,483 | RH-[2010/09/28 00:31:33 | 000,000,867 | ---(with feedback).sps
[2010/07/14 20:54:46 | 000,009,704 | ---k.old
[2010/07/14 20:54:46 | 000,009,704 | ---k
|
|
|
|
|
|
C]
C]
C]
C]
C]
C]
()
()
()
()
()
()
-------
C:\Windows\PEV.exe
C:\Windows\MBR.exe
C:\Windows\sed.exe
C:\Windows\grep.exe
C:\Windows\zip.exe
C:\Windows\SysNative\driver
| C] () -- C:\Users\home\Desktop\Rogue
| C] () -- C:\Users\home\Desktop\mbar| C] () -- C:\Users\home\Desktop\40188
| C] () -- C:\Users\home\Desktop\Untit
| C] () -- C:\Users\home\Desktop\short
| C] () -- C:\Users\home\.octaverc
| C] () -- C:\Users\home\Desktop\Domai
| C] () -- C:\Users\home\.octave_hist
| C] () -- C:\Users\Public\Desktop\Oct
| C] () -- C:\Users\home\Desktop\SmT0T
| C] () -- C:\Windows\SysWow64\xvidcor
| C] () -- C:\Windows\SysWow64\xvidvfw
| C] () -- C:\Windows\SysWow64\drivers
| C] () -- C:\Windows\SysWow64\scskCon
| C] () -- C:\Windows\INIUpdateAdmin.d
| C] () -- C:\Windows\SysWow64\unrar.d
| C] () -- C:\Windows\SysWow64\ff_vfw.
| C] () -- C:\Windows\SysWow64\PnkBstr
| C] () -- C:\Windows\SysWow64\PnkBstr
| C] () -- C:\Users\home\AppData\Local
| C] () -- C:\Users\home\.recently-use
| C] () -- C:\Users\home\.org.eclipse.
| C] () -- C:\Windows\SysWow64\setuppr
| C] () -- C:\Windows\SysWow64\prwntdr
| C] () -- C:\Users\home\xw90ldy.dyc
| C] () -- C:\Users\home\sean - delay
| C] () -- C:\Users\home\opera6.adr.ba
| C] () -- C:\Users\home\opera6.adr.ba
[2010/07/14 20:54:46 | 000,009,704 | ---[2009/12/19 15:23:26 | 000,002,146 | ---[2009/12/07 15:53:29 | 000,001,064 | RH-[2009/12/07 15:53:28 | 000,000,483 | RH-[2009/06/24 22:03:19 | 000,000,204 | ---ng\wklnhst.dat
[2009/06/09 22:53:36 | 000,004,200 | ---eg
[2009/06/09 22:53:36 | 000,001,264 | ---g
[2009/06/09 22:53:36 | 000,000,579 | ---d
[2009/06/09 22:53:07 | 000,004,200 | ---kMSO.reg
[2009/06/09 22:53:07 | 000,001,264 | ---reg.reg
[2009/06/09 22:53:07 | 000,000,579 | ---all.cmd
[2009/05/26 00:54:56 | 000,000,056 | -H-[2009/05/04 01:18:04 | 000,005,972 | ---\d3d9caps.dat
[2009/03/04 22:20:39 | 000,011,377 | ---[2009/03/04 20:56:42 | 000,165,376 | ---\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
|
|
|
|
|
C]
C]
C]
C]
C]
()
()
()
()
()
------
C:\Users\home\opera6.adr
C:\Users\home\photorec.cfg
C:\Users\home\XrxWm.ini
C:\Users\home\xw90xdy.dyc
C:\Users\home\AppData\Roami
| C] () -- C:\Program Files\TweakMSO.r
| C] () -- C:\Program Files\NoRereg.re
| C] () -- C:\Program Files\install.cm
| C] () -- C:\Program Files (x86)\Twea
| C] () -- C:\Program Files (x86)\NoRe
| C] () -- C:\Program Files (x86)\inst
| C] () -- C:\ProgramData\ezsidmv.dat
| C] () -- C:\Users\home\AppData\Local
| C] () -- C:\Users\home\gsview32.ini
| C] () -- C:\Users\home\AppData\Local
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDAD6A79037F57F}\InProcServer32]
"" = %systemroot%\SysWow64\wbem\fastprox.dll -- [2009/04/10 23:28:19 | 000,614,9
12 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1
}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2008/01/20 19:50:58 | 000,513,024
| ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB3285FFC23AF9C1}\InProcServer32]
"" = %systemroot%\SysWow64\wbem\wbemess.dll
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data
@Alternate Data
Shareaza.GUID
@Alternate Data
@Alternate Data
@Alternate Data
@Alternate Data