unless you know that the hashes are the same as the the one that were on the ones posted it can actually be anything...
you have seen the reports and i have even talked of ways malware can get into the win7 installation...
if you have the same hashes then that is the same as the RC...
even to the the date modified...
(you can even check it yourself)
you can check whether any files where modified during the time it leaked and the time it came on msdn and technet or consequently in the CTP...
and if you see the files they are the same...
(as long as you know the leaked and the ctp hashes are the same..)
md-5 and even more the sha-1 algorithm are made so that if even if a single *bit*, *nibble*, *word*, or *byte* are modified then the whole "bit-wise answer "
changes completely to the point were you can tell by just glancing at it....

so if you have the correct hashes (and this is critical) and those hashes match on the downloaded them bit by bit as the leaked....
It Is the Same as the CTP !!!