Ga naar inhoud

pandora6040

Lid
  • Items

    47
  • Registratiedatum

  • Laatst bezocht

pandora6040's prestaties

  1. Hallo Kweezie Ben terug van zaterdag. Maar ik kan je het goede n ieuws mededelen dat deze zaak opgelost is door de winkel waar ik mijn nieuwe pc heb gekocht. Waren er ook niet direct mee klaar, mijn dochter is erzelf om geweest. Kan geen verduidelijking aan je mededelen maar hadden gezegd tegen haar dat gans windows overhoop lag. Met deze ga ik deze discussie afsluiten en jou en je team een welgemeende dank toewensen. Grtjs
  2. Hallo Kweezi Heb mijn pc nu pas terug, na mijn laatste bericht ben ik zelf een nieuwe pc (nu ook laptop gaan kopen omdat ik die zou kunnen meenemen op vakantie, zal ongeveer 1 maand weg zijn) Ik ben dus pandora_6039. Ik wilde van de gelegenheid gebruik maken en heb de verkoper gevraagd als service even probleem SP1 kon nazien van pc kleinkind. Ik heb dus tot vanavond moetyen wachten op mijn pc, maar het probleem met mijn kleinkinds pc is groter dat hij ook verwachte zei verkoper (technieker zelf niet meer kunnen spreken) Gevolg pc staat nu nog 1 maand in die winkel want morgen vertrek ik dus op verlof op. En hopelijk heb ik daar geen problemen nu .Had wel gevraagd dat SP1 moest geinstalleerd zijn. Hopelijk geraak ik daar op het net, is met kaart hebben ze gezegd maar ik heb daar geen ervaring mee. Ik heb ook gezien dat er deze avond nog een bericht over het probleem SP1 is binnengekomen en veel info erover is. Kan dit probleem nog zo lang als onopgelost blijven? Ik meld je ook zekerlijk moest het probleem door verkoper opgelost zijn! Alvast vele dank.
  3. Hallo Kweezie dit doet hij nog steeds niet. Starte zeker 6x terug op: conf. voorbereiden tot 40%-fout bij configureren wijzigingen ongedaan maken/2éx-3éx/ gaan slapen want 3éx nog veel langer dan vorige.Deze morgen terug moeten aanmelden en dan scherm zoals ik starte met probleem.Onherstelbare fout: ERROR_INSALL_FAILLURE (0x80070643)
  4. qoombo lijkt iedere keer zichzelf te herstellen. Er zaten daar 2 backups van het register in en die heb ik kunnen verwijderen. Ik zal toch het gevraagde uitvoeren en hopelijk met sucses.
  5. hallo Kweezie Voor dat ik de rest doe probeer ik eerst Qoobo te verwijderen via verkenner uitvoeren als administrator. Maar dit lukt niet. het piktogram van de prullebak komt wel even opzetten maar verdwijnt terug. Telkens u moet administratorsmachtigigen hebben om dit uit te voeren. Mag ik de rest al uitvoeren of moet dit eerst gebeuren?
  6. Terug vermelding dat pev.cfxxe ontbreekt en dan hersteld alles zich in de vorige toestand zeker? ComboFix 11-06-27.04 - Eigenaar 29/06/2011 14:42:24.14.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.2505 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-28 to 2011-06-29 )))))))))))))))))))))))))))))) . . 2011-06-29 12:49 . 2011-06-29 12:49 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-29 12:49 . 2011-06-29 12:49 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-29 11:35 . 2011-06-29 11:35 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0185CB9-455B-40AC-A4D5-19092E21B2ED} 2011-06-28 19:40 . 2011-06-28 19:40 388096 ----a-r- c:\users\Eigenaar\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2011-06-28 19:40 . 2011-06-28 19:40 -------- d-----w- c:\program files (x86)\Trend Micro 2011-06-28 19:24 . 2011-06-28 19:24 -------- d-----w- c:\users\Eigenaar\AppData\Local\{18400348-44C9-43DE-96EC-575FEEAEB638} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-28 20:32 -------- d-----w- c:\program files\CCleaner 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-15 22:52 . 2011-06-29 12:51 -------- d-----w- c:\windows\system32\wbem\repository . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2011-06-28 22:24 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3D184828-1B8D-4CE9-97C8-073601A167BA}\mpengine.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((( SnapShot@2011-06-28_11.02.05 ))))))))))))))))))))))))))))))))))))))))) . - 2009-07-14 05:30 . 2011-06-22 10:53 86016 c:\windows\system32\DriverStore\infpub.dat + 2009-07-14 05:30 . 2011-06-29 11:56 86016 c:\windows\system32\DriverStore\infpub.dat + 2010-01-15 00:30 . 2011-06-28 20:32 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2010-01-15 00:30 . 2011-06-28 06:36 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2010-01-15 00:30 . 2011-06-28 06:36 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2010-01-15 00:30 . 2011-06-28 20:32 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2009-07-14 04:54 . 2011-06-28 20:32 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2009-07-14 04:54 . 2011-06-28 06:36 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-14 05:30 . 2011-06-29 11:56 143360 c:\windows\system32\DriverStore\infstrng.dat - 2009-07-14 05:30 . 2011-06-22 10:53 143360 c:\windows\system32\DriverStore\infstrng.dat - 2009-07-14 05:30 . 2011-06-22 10:53 143360 c:\windows\system32\DriverStore\infstor.dat + 2009-07-14 05:30 . 2011-06-29 11:56 143360 c:\windows\system32\DriverStore\infstor.dat + 2011-06-28 19:37 . 2011-06-28 19:37 1402880 c:\windows\Installer\71b8bb.msi . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "NCInstallQueue"="netman.dll" [2009-07-14 360448] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . URLSearchHooks-{0BC6E3FA-78EF-4886-842C-5A1258C4455A} - (no file) WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-29 15:05:33 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-29 13:05 ComboFix2.txt 2011-06-28 17:44 ComboFix3.txt 2011-06-28 11:10 . Pre-Run: 370.071.113.728 bytes beschikbaar Post-Run: 369.774.104.576 bytes beschikbaar . - - End Of File - - 393519F64138DD5DD21787CC7F8282B7
  7. Hallo Heb de map Conduit Is dit hetzelfde als coduitEngine
  8. Hallo Kweezie Jammer weggemoeten, maar nu terug. Ik heb dit terug uitgevoerd als gevraagd, maar denk dat je er terug niet veel zal aan hebben omdat ik vermoed dat het toch het zelfde zal zijn, omdat ik terug zelfde probleem heb maar nu dat ander bestand gemist wordt, nl: pev.cfxxe en ze melding zullen geven als probleem is opgelost. Is dan terug gestart en hieronder het log. Eronder zal ik ook HT log plaatsen. Die problemen ondervind ik toch sedert het opnieuw inst; met 2é link of de updates die hij doet. Meschien toch terug verwijderen en met 1é link werken? ComboFix 11-06-27.04 - Eigenaar 28/06/2011 19:16:47.13.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.2213 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe gebruikte Opdracht switches :: c:\users\Eigenaar\Desktop\CFScript.txt AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-28 to 2011-06-28 )))))))))))))))))))))))))))))) . . 2011-06-28 17:30 . 2011-06-28 17:30 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-28 17:30 . 2011-06-28 17:30 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-28 07:23 . 2011-06-28 07:24 -------- d-----w- c:\users\Eigenaar\AppData\Local\{B52487C3-65BB-4A0D-BD05-FAD84C017871} 2011-06-27 19:22 . 2011-06-27 19:23 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F814101D-1356-4A1C-B680-6B6CAED48534} 2011-06-27 07:13 . 2011-06-27 07:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{68CF0F54-7924-43AD-8494-0813EDC3DC0E} 2011-06-26 19:11 . 2011-06-26 19:12 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DE25DD5D-4B45-4D77-9493-7387871FB6A5} 2011-06-26 07:04 . 2011-06-26 07:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4D46885E-4A9B-4147-8116-648A2FFD1999} 2011-06-25 19:04 . 2011-06-25 19:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CB94869A-D736-4C56-BA81-D15C7DF44195} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-25 07:03 . 2011-06-25 07:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{70C080E4-DAAA-4857-8F5A-4B693EECD0D4} 2011-06-24 19:03 . 2011-06-24 19:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{9917CE4B-4910-4D22-8F58-8EAEC564C7CE} 2011-06-24 07:01 . 2011-06-24 07:02 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0A66694-EF23-4FD7-908B-B9E785B4D890} 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-23 09:43 . 2011-06-23 09:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5B0A638F-741C-47BD-8852-4668B8C07FA4} 2011-06-22 21:43 . 2011-06-22 21:43 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BCB00099-C6AE-4C2A-A4AA-05BEEDD1D3F2} 2011-06-22 21:37 . 2011-06-22 21:37 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BC485C62-5B90-4AF4-8022-A869F5BBA0D9} 2011-06-22 07:45 . 2011-06-22 07:45 -------- d-----w- c:\users\Eigenaar\AppData\Local\{90A83CF9-6867-44D9-ADDD-ED69092EFF25} 2011-06-21 19:44 . 2011-06-21 19:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{295024DE-282A-4397-A49E-8511D2CC3E84} 2011-06-21 10:48 . 2011-06-21 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{242CC70E-AE49-43AA-9533-69C1A8B0CDD3} 2011-06-20 22:52 . 2011-06-20 22:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{96525F85-8084-46D7-AFDD-63218454AFBD} 2011-06-20 22:48 . 2011-06-20 22:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{C21C4CF0-A5AC-4F5C-B0D1-D3720D1816EA} 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-20 15:18 -------- d-----w- c:\program files\CCleaner 2011-06-20 10:48 . 2011-06-20 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DB6D856F-74CF-4C13-BCAF-A2E11EA51340} 2011-06-19 22:47 . 2011-06-19 22:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{514555E4-EF1A-4825-A7BA-1C04F3F369E7} 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-19 10:46 . 2011-06-19 10:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{AA448307-6D7E-4537-8AAF-669985540453} 2011-06-18 17:50 . 2011-06-18 17:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4512965C-6F16-43E3-962F-E2EFE4613904} 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 05:48 . 2011-06-18 05:49 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CFCB4094-B2A3-4930-B7FB-DE1AFAE4286C} 2011-06-17 02:10 . 2011-06-17 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3D5EE115-D78C-4B8F-B388-16DFC6BC213D} 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 14:10 . 2011-06-16 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{878106AD-0210-4036-B1D3-F1F99B927DEB} 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-16 00:11 . 2011-06-16 00:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F20B115B-6EAE-4252-88B8-953A78EB94CB} 2011-06-15 22:52 . 2011-06-28 17:32 -------- d-----w- c:\windows\system32\wbem\repository 2011-06-14 16:04 . 2011-06-14 16:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{83E662ED-690E-45B5-87A8-A22ADD58DCFD} 2011-06-13 07:57 . 2011-06-13 08:11 -------- d-----w- c:\users\Eigenaar\AppData\Local\{535700F7-39E4-4A7A-A47D-A56255190172} 2011-06-12 12:11 . 2011-06-12 12:21 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3B14A23A-45FC-4D8C-9385-CBE5CE07C661} 2011-06-12 09:01 . 2011-06-12 09:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D393EE50-2B6A-45A3-8AD8-177382FE84D7} 2011-06-11 11:32 . 2011-06-11 11:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{FC34AD28-525E-4E39-AFFD-63285F49CBAD} 2011-06-10 19:04 . 2011-06-10 19:09 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2177E62F-C202-44C4-88F7-FCCCA3F381F6} 2011-06-10 07:00 . 2011-06-10 07:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{466ECE7F-7AC7-419F-AD31-9C4B1222CC4E} 2011-06-09 15:40 . 2011-06-09 15:40 -------- d-----w- c:\users\Eigenaar\AppData\Local\{EB8E160A-D526-4EE7-9274-79C78C61BBB2} 2011-06-08 10:51 . 2011-06-08 10:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E837E523-918D-4A7D-A080-FEF289FC1F33} 2011-06-07 15:17 . 2011-06-07 15:17 -------- d-----w- c:\users\Eigenaar\AppData\Local\{42F4808E-245E-43A5-BADB-D0054A4977B5} 2011-06-06 14:31 . 2011-06-06 14:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2EC24D65-12B9-4FA2-BA40-58E7D1121530} 2011-06-05 10:19 . 2011-06-05 10:20 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D3A4B2CF-4EFD-47E4-BE0F-3B03DBFDB686} 2011-06-04 18:48 . 2011-06-04 18:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{839BED9D-1302-49FA-A26C-857A3D2485EC} 2011-06-01 05:36 . 2011-06-01 05:36 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2A88517A-4744-4687-93C7-90C759C34213} 2011-05-31 15:14 . 2011-05-31 15:16 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5DFB41B8-41FF-4DB6-BF46-D8682B065C74} 2011-05-29 20:35 . 2011-05-30 15:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{221651DD-9948-474A-9364-CF312D23F0C0} . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2011-06-27 19:32 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7D9D5C38-67B5-431C-BAA9-2A7D8F28EA32}\mpengine.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((( SnapShot@2011-06-28_11.02.05 ))))))))))))))))))))))))))))))))))))))))) . - 2009-07-14 05:10 . 2011-06-28 11:02 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2009-07-14 05:10 . 2011-06-28 17:35 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2009-07-13 23:25 . 2009-07-14 01:41 12288 c:\windows\servicing\wrpintapi.dll + 2010-03-06 09:45 . 2010-02-02 08:39 49664 c:\windows\servicing\GC64\tzupd.exe + 2009-07-13 23:35 . 2009-07-14 01:40 28672 c:\windows\servicing\CbsMsg.dll + 2009-07-13 23:35 . 2009-07-14 01:40 19456 c:\windows\servicing\CbsApi.dll + 2010-03-06 09:37 . 2011-06-11 11:33 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:46 . 2011-06-19 15:35 82184 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat + 2010-10-03 10:38 . 2011-03-20 10:13 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat + 2010-10-03 10:38 . 2011-03-20 10:13 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Temp\History\History.IE5\index.dat + 2010-10-03 10:38 . 2011-03-20 10:13 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Temp\Cookies\index.dat + 2010-03-06 09:37 . 2011-06-11 11:33 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2010-03-06 09:37 . 2011-06-11 11:33 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2011-06-28 10:56 . 2011-06-28 10:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2011-06-28 17:31 . 2011-06-28 17:31 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-06-28 10:56 . 2011-06-28 10:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2011-06-28 17:31 . 2011-06-28 17:31 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2009-07-13 23:35 . 2009-07-14 01:39 194048 c:\windows\servicing\TrustedInstaller.exe + 2010-03-06 09:37 . 2010-08-12 09:29 262144 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat - 2009-07-14 05:01 . 2011-06-28 10:55 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2009-07-14 05:01 . 2011-06-28 17:30 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2009-07-14 04:45 . 2011-06-19 14:59 7103170 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat + 2009-07-14 02:34 . 2011-06-28 11:17 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat - 2009-07-14 02:34 . 2011-06-28 07:35 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat - 2010-02-27 16:07 . 2011-06-28 10:55 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat + 2010-02-27 16:07 . 2011-06-28 17:30 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . URLSearchHooks-{0BC6E3FA-78EF-4886-842C-5A1258C4455A} - (no file) WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-28 19:44:12 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-28 17:44 ComboFix2.txt 2011-06-28 11:10 . Pre-Run: 370.421.280.768 bytes beschikbaar Post-Run: 370.867.777.536 bytes beschikbaar . - - End Of File - - D5F76116EEB13E6F102A8073D8683D10 Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:23:15, on 28/06/2011 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v9.00 (9.00.8112.16421) Boot mode: Normal Running processes: c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe C:\Program Files (x86)\QuickTime\qttask.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Users\Eigenaar\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Eigenaar\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Eigenaar\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Eigenaar\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Eigenaar\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Messenger Plus Live Belgium Toolbar - {d1a1c8f1-e3d9-48df-802f-20201061ef61} - C:\Program Files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Messenger Plus Live Belgium Toolbar - {d1a1c8f1-e3d9-48df-802f-20201061ef61} - C:\Program Files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll O4 - HKLM\..\Run: [Corel File Shell Monitor] C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube Download - C:\Users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = ismaili O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = ismaili O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = ismaili O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe O23 - Service: AG Core Services (AGCoreService) - AG Interactive - C:\Program Files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 13689 bytes Nu echt moeten zoeken hoe HJT op te slaan. Aanvaard aut toegewezen pad niet, maar moet gewoon documenten
  9. dat heb ik niet meer dacht dat dit bij cobofix hoorde en heb dit met andere logbestanden verwijderd
  10. Hallo Kweezi Uitgevoerd zoals je gezegd heb, deze gekopieerd en geplakt en is verwijderd dat betsand Qoo... had ik vorige keer ook niet gevonden. Dan opnieuw gedownload van andere link (2). Maar alles verloopt zoals voorheen ==> mis bestand pev.chxxe; ComboFix 11-06-27.04 - Eigenaar 28/06/2011 12:49:11.12.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.2281 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-28 to 2011-06-28 )))))))))))))))))))))))))))))) . . 2011-06-28 10:55 . 2011-06-28 10:55 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-28 10:55 . 2011-06-28 10:55 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-28 07:23 . 2011-06-28 07:24 -------- d-----w- c:\users\Eigenaar\AppData\Local\{B52487C3-65BB-4A0D-BD05-FAD84C017871} 2011-06-27 19:32 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7D9D5C38-67B5-431C-BAA9-2A7D8F28EA32}\mpengine.dll 2011-06-27 19:22 . 2011-06-27 19:23 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F814101D-1356-4A1C-B680-6B6CAED48534} 2011-06-27 07:13 . 2011-06-27 07:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{68CF0F54-7924-43AD-8494-0813EDC3DC0E} 2011-06-26 19:11 . 2011-06-26 19:12 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DE25DD5D-4B45-4D77-9493-7387871FB6A5} 2011-06-26 07:04 . 2011-06-26 07:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4D46885E-4A9B-4147-8116-648A2FFD1999} 2011-06-25 19:04 . 2011-06-25 19:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CB94869A-D736-4C56-BA81-D15C7DF44195} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-25 07:03 . 2011-06-25 07:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{70C080E4-DAAA-4857-8F5A-4B693EECD0D4} 2011-06-24 19:03 . 2011-06-24 19:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{9917CE4B-4910-4D22-8F58-8EAEC564C7CE} 2011-06-24 07:01 . 2011-06-24 07:02 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0A66694-EF23-4FD7-908B-B9E785B4D890} 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-23 09:43 . 2011-06-23 09:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5B0A638F-741C-47BD-8852-4668B8C07FA4} 2011-06-22 21:43 . 2011-06-22 21:43 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BCB00099-C6AE-4C2A-A4AA-05BEEDD1D3F2} 2011-06-22 21:37 . 2011-06-22 21:37 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BC485C62-5B90-4AF4-8022-A869F5BBA0D9} 2011-06-22 07:45 . 2011-06-22 07:45 -------- d-----w- c:\users\Eigenaar\AppData\Local\{90A83CF9-6867-44D9-ADDD-ED69092EFF25} 2011-06-21 19:44 . 2011-06-21 19:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{295024DE-282A-4397-A49E-8511D2CC3E84} 2011-06-21 10:48 . 2011-06-21 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{242CC70E-AE49-43AA-9533-69C1A8B0CDD3} 2011-06-20 22:52 . 2011-06-20 22:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{96525F85-8084-46D7-AFDD-63218454AFBD} 2011-06-20 22:48 . 2011-06-20 22:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{C21C4CF0-A5AC-4F5C-B0D1-D3720D1816EA} 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-20 15:18 -------- d-----w- c:\program files\CCleaner 2011-06-20 10:48 . 2011-06-20 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DB6D856F-74CF-4C13-BCAF-A2E11EA51340} 2011-06-19 22:47 . 2011-06-19 22:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{514555E4-EF1A-4825-A7BA-1C04F3F369E7} 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-19 10:46 . 2011-06-19 10:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{AA448307-6D7E-4537-8AAF-669985540453} 2011-06-18 17:50 . 2011-06-18 17:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4512965C-6F16-43E3-962F-E2EFE4613904} 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 05:48 . 2011-06-18 05:49 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CFCB4094-B2A3-4930-B7FB-DE1AFAE4286C} 2011-06-17 02:10 . 2011-06-17 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3D5EE115-D78C-4B8F-B388-16DFC6BC213D} 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 14:10 . 2011-06-16 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{878106AD-0210-4036-B1D3-F1F99B927DEB} 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-16 00:11 . 2011-06-16 00:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F20B115B-6EAE-4252-88B8-953A78EB94CB} 2011-06-15 23:08 . 2010-11-30 09:43 601424 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C169E9FE-987B-432C-8451-F4192D6AC6AD}\gapaengine.dll 2011-06-15 22:52 . 2011-06-28 10:58 -------- d-----w- c:\windows\system32\wbem\repository 2011-06-14 16:04 . 2011-06-14 16:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{83E662ED-690E-45B5-87A8-A22ADD58DCFD} 2011-06-13 07:57 . 2011-06-13 08:11 -------- d-----w- c:\users\Eigenaar\AppData\Local\{535700F7-39E4-4A7A-A47D-A56255190172} 2011-06-12 12:11 . 2011-06-12 12:21 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3B14A23A-45FC-4D8C-9385-CBE5CE07C661} 2011-06-12 09:01 . 2011-06-12 09:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D393EE50-2B6A-45A3-8AD8-177382FE84D7} 2011-06-11 11:32 . 2011-06-11 11:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{FC34AD28-525E-4E39-AFFD-63285F49CBAD} 2011-06-10 19:04 . 2011-06-10 19:09 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2177E62F-C202-44C4-88F7-FCCCA3F381F6} 2011-06-10 07:00 . 2011-06-10 07:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{466ECE7F-7AC7-419F-AD31-9C4B1222CC4E} 2011-06-09 15:40 . 2011-06-09 15:40 -------- d-----w- c:\users\Eigenaar\AppData\Local\{EB8E160A-D526-4EE7-9274-79C78C61BBB2} 2011-06-08 10:51 . 2011-06-08 10:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E837E523-918D-4A7D-A080-FEF289FC1F33} 2011-06-07 15:17 . 2011-06-07 15:17 -------- d-----w- c:\users\Eigenaar\AppData\Local\{42F4808E-245E-43A5-BADB-D0054A4977B5} 2011-06-06 14:31 . 2011-06-06 14:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2EC24D65-12B9-4FA2-BA40-58E7D1121530} 2011-06-05 10:19 . 2011-06-05 10:20 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D3A4B2CF-4EFD-47E4-BE0F-3B03DBFDB686} 2011-06-04 18:48 . 2011-06-04 18:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{839BED9D-1302-49FA-A26C-857A3D2485EC} 2011-06-01 05:36 . 2011-06-01 05:36 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2A88517A-4744-4687-93C7-90C759C34213} 2011-05-31 15:14 . 2011-05-31 15:16 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5DFB41B8-41FF-4DB6-BF46-D8682B065C74} 2011-05-29 20:35 . 2011-05-30 15:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{221651DD-9948-474A-9364-CF312D23F0C0} . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe AddRemove-conduitEngine - c:\progra~2\CONDUI~1\ConduitEngineUninstall.exe AddRemove-EasyBits Magic Desktop - c:\windows\system32\ezMDUninstall.exe AddRemove-Messenger_Plus_Live_Belgium Toolbar - c:\progra~2\UNWISE.EXE AddRemove-{08DB3902-2CE0-474D-BCE3-0177766CE9F1} - c:\program files (x86)\InstallShield Installation Information\{08DB3902-2CE0-474D-BCE3-0177766CE9F1}\setup.exe . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-28 13:10:37 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-28 11:10 . Pre-Run: 370.781.634.560 bytes beschikbaar Post-Run: 370.315.497.472 bytes beschikbaar . - - End Of File - - 17501697CC642A9CB4627599ABDF1EFD
  11. Hallo Kwabit Kan combofix niet verwijderen.2x geprobeerd. Uitvoeren uninstaall gedaan zoals je hebt geschreven. vroeg terug om update te doen- ok- Bl. scherm-begon terug rap zoals iedere keer het program uit te voeren-dan terug bl scherm - scande op nr 50 waar scan gedaan is, een venster pev chxxe met vermelding: pev chxxe werkt niet meer. Er komt venster dat er wordt een melding gegeven als een opl. beschikbaar is. Een knop om progr. afsluiten Het programma word gesloten en windows start terug op. ww terug ingeven-CF staart terug en er word nieuw rapport van vandaag meegegeven. Dit 2x geprobeerd en idem resultaat. Staan wij hier nu blok? tot deze opl. er komt? of kan jij verder? Toch geef ik je het nieuwe rapport mee. Bedankt Kweezi. ComboFix 11-06-27.03 - Eigenaar 28/06/2011 9:09.11.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.2493 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe gebruikte Opdracht switches :: /uninsall AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-28 to 2011-06-28 )))))))))))))))))))))))))))))) . . 2011-06-28 07:16 . 2011-06-28 07:16 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-28 07:16 . 2011-06-28 07:16 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-27 19:22 . 2011-06-27 19:23 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F814101D-1356-4A1C-B680-6B6CAED48534} 2011-06-27 07:13 . 2011-06-27 07:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{68CF0F54-7924-43AD-8494-0813EDC3DC0E} 2011-06-26 19:11 . 2011-06-26 19:12 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DE25DD5D-4B45-4D77-9493-7387871FB6A5} 2011-06-26 07:04 . 2011-06-26 07:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4D46885E-4A9B-4147-8116-648A2FFD1999} 2011-06-25 19:04 . 2011-06-25 19:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CB94869A-D736-4C56-BA81-D15C7DF44195} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-25 07:03 . 2011-06-25 07:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{70C080E4-DAAA-4857-8F5A-4B693EECD0D4} 2011-06-24 19:03 . 2011-06-24 19:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{9917CE4B-4910-4D22-8F58-8EAEC564C7CE} 2011-06-24 07:01 . 2011-06-24 07:02 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0A66694-EF23-4FD7-908B-B9E785B4D890} 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-23 09:43 . 2011-06-23 09:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5B0A638F-741C-47BD-8852-4668B8C07FA4} 2011-06-22 21:43 . 2011-06-22 21:43 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BCB00099-C6AE-4C2A-A4AA-05BEEDD1D3F2} 2011-06-22 21:37 . 2011-06-22 21:37 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BC485C62-5B90-4AF4-8022-A869F5BBA0D9} 2011-06-22 07:45 . 2011-06-22 07:45 -------- d-----w- c:\users\Eigenaar\AppData\Local\{90A83CF9-6867-44D9-ADDD-ED69092EFF25} 2011-06-21 19:44 . 2011-06-21 19:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{295024DE-282A-4397-A49E-8511D2CC3E84} 2011-06-21 10:48 . 2011-06-21 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{242CC70E-AE49-43AA-9533-69C1A8B0CDD3} 2011-06-20 22:52 . 2011-06-20 22:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{96525F85-8084-46D7-AFDD-63218454AFBD} 2011-06-20 22:48 . 2011-06-20 22:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{C21C4CF0-A5AC-4F5C-B0D1-D3720D1816EA} 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-20 15:18 -------- d-----w- c:\program files\CCleaner 2011-06-20 10:48 . 2011-06-20 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DB6D856F-74CF-4C13-BCAF-A2E11EA51340} 2011-06-19 22:47 . 2011-06-19 22:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{514555E4-EF1A-4825-A7BA-1C04F3F369E7} 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-19 10:46 . 2011-06-19 10:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{AA448307-6D7E-4537-8AAF-669985540453} 2011-06-18 17:50 . 2011-06-18 17:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4512965C-6F16-43E3-962F-E2EFE4613904} 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 05:48 . 2011-06-18 05:49 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CFCB4094-B2A3-4930-B7FB-DE1AFAE4286C} 2011-06-17 02:10 . 2011-06-17 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3D5EE115-D78C-4B8F-B388-16DFC6BC213D} 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 14:10 . 2011-06-16 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{878106AD-0210-4036-B1D3-F1F99B927DEB} 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-16 00:11 . 2011-06-16 00:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F20B115B-6EAE-4252-88B8-953A78EB94CB} 2011-06-15 22:52 . 2011-06-28 07:18 -------- d-----w- c:\windows\system32\wbem\repository 2011-06-14 16:04 . 2011-06-14 16:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{83E662ED-690E-45B5-87A8-A22ADD58DCFD} 2011-06-13 07:57 . 2011-06-13 08:11 -------- d-----w- c:\users\Eigenaar\AppData\Local\{535700F7-39E4-4A7A-A47D-A56255190172} 2011-06-12 12:11 . 2011-06-12 12:21 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3B14A23A-45FC-4D8C-9385-CBE5CE07C661} 2011-06-12 09:01 . 2011-06-12 09:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D393EE50-2B6A-45A3-8AD8-177382FE84D7} 2011-06-11 11:32 . 2011-06-11 11:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{FC34AD28-525E-4E39-AFFD-63285F49CBAD} 2011-06-10 19:04 . 2011-06-10 19:09 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2177E62F-C202-44C4-88F7-FCCCA3F381F6} 2011-06-10 07:00 . 2011-06-10 07:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{466ECE7F-7AC7-419F-AD31-9C4B1222CC4E} 2011-06-09 15:40 . 2011-06-09 15:40 -------- d-----w- c:\users\Eigenaar\AppData\Local\{EB8E160A-D526-4EE7-9274-79C78C61BBB2} 2011-06-08 10:51 . 2011-06-08 10:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E837E523-918D-4A7D-A080-FEF289FC1F33} 2011-06-07 15:17 . 2011-06-07 15:17 -------- d-----w- c:\users\Eigenaar\AppData\Local\{42F4808E-245E-43A5-BADB-D0054A4977B5} 2011-06-06 14:31 . 2011-06-06 14:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2EC24D65-12B9-4FA2-BA40-58E7D1121530} 2011-06-05 10:19 . 2011-06-05 10:20 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D3A4B2CF-4EFD-47E4-BE0F-3B03DBFDB686} 2011-06-04 18:48 . 2011-06-04 18:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{839BED9D-1302-49FA-A26C-857A3D2485EC} 2011-06-01 05:36 . 2011-06-01 05:36 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2A88517A-4744-4687-93C7-90C759C34213} 2011-05-31 15:14 . 2011-05-31 15:16 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5DFB41B8-41FF-4DB6-BF46-D8682B065C74} 2011-05-29 20:35 . 2011-05-30 15:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{221651DD-9948-474A-9364-CF312D23F0C0} 2011-05-29 08:34 . 2011-05-29 08:34 -------- d-----w- c:\users\Eigenaar\AppData\Local\{274324B1-E1D5-471A-B7E3-D1F83EBCDC84} . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2011-06-27 19:32 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7D9D5C38-67B5-431C-BAA9-2A7D8F28EA32}\mpengine.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((( SnapShot_2011-06-27_17.34.51 ))))))))))))))))))))))))))))))))))))))))) . - 2009-07-14 05:10 . 2011-06-27 17:34 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2009-07-14 05:10 . 2011-06-28 07:21 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2010-02-27 09:00 . 2011-06-28 07:21 28964 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2696175809-2240157295-830168338-1000_UserData.bin + 2010-01-15 00:30 . 2011-06-28 06:36 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2010-01-15 00:30 . 2011-06-21 19:46 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2010-01-15 00:30 . 2011-06-28 06:36 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2010-01-15 00:30 . 2011-06-21 19:46 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2009-07-14 04:54 . 2011-06-21 19:46 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-14 04:54 . 2011-06-28 06:36 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2011-06-28 07:17 . 2011-06-28 07:17 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-06-27 17:27 . 2011-06-27 17:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-06-27 17:27 . 2011-06-27 17:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2011-06-28 07:17 . 2011-06-28 07:17 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2009-07-14 05:01 . 2011-06-28 07:16 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat - 2009-07-14 05:01 . 2011-06-27 16:39 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat - 2010-02-27 16:07 . 2011-06-27 07:14 1040352 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat + 2010-02-27 16:07 . 2011-06-28 06:48 1040352 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat + 2009-07-14 02:34 . 2011-06-28 07:08 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat - 2009-07-14 02:34 . 2011-06-27 07:47 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat - 2010-02-27 16:07 . 2011-06-27 16:39 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat + 2010-02-27 16:07 . 2011-06-28 07:16 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . URLSearchHooks-{0BC6E3FA-78EF-4886-842C-5A1258C4455A} - (no file) WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-28 09:30:15 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-28 07:30 ComboFix2.txt 2011-06-28 07:02 ComboFix3.txt 2011-06-27 17:44 ComboFix4.txt 2011-06-27 07:47 ComboFix5.txt 2011-06-28 07:07 . Pre-Run: 361.208.705.024 bytes beschikbaar Post-Run: 360.858.574.848 bytes beschikbaar . - - End Of File - - FD9D67F48B5BA5919A7B115FBF8AA6A6
  12. Ik heb je ook eens vermeld dat ook norton een scan zou doen maar achteraf is dit niet uitgevoerd omdat dit bleek om aan te kopen , dit was geinstalleerd vanaf begin denk ik.
  13. ComboFix 11-06-25.05 - Eigenaar 27/06/2011 19:15:33.9.4 - x64 NETWORK Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.3126 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe gebruikte Opdracht switches :: c:\users\Eigenaar\Desktop\CFScript.txt AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} * Nieuw herstelpunt werd aangemaakt . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-27 to 2011-06-27 )))))))))))))))))))))))))))))) . . 2011-06-27 17:26 . 2011-06-27 17:26 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-27 17:26 . 2011-06-27 17:26 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-27 07:13 . 2011-06-27 07:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{68CF0F54-7924-43AD-8494-0813EDC3DC0E} 2011-06-26 19:21 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{28890DB3-074C-4BBD-A9A0-7D2C4AA34E89}\mpengine.dll 2011-06-26 19:11 . 2011-06-26 19:12 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DE25DD5D-4B45-4D77-9493-7387871FB6A5} 2011-06-26 07:04 . 2011-06-26 07:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4D46885E-4A9B-4147-8116-648A2FFD1999} 2011-06-25 19:04 . 2011-06-25 19:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CB94869A-D736-4C56-BA81-D15C7DF44195} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-25 07:03 . 2011-06-25 07:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{70C080E4-DAAA-4857-8F5A-4B693EECD0D4} 2011-06-24 19:03 . 2011-06-24 19:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{9917CE4B-4910-4D22-8F58-8EAEC564C7CE} 2011-06-24 07:01 . 2011-06-24 07:02 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0A66694-EF23-4FD7-908B-B9E785B4D890} 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-23 09:43 . 2011-06-23 09:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5B0A638F-741C-47BD-8852-4668B8C07FA4} 2011-06-22 21:43 . 2011-06-22 21:43 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BCB00099-C6AE-4C2A-A4AA-05BEEDD1D3F2} 2011-06-22 21:37 . 2011-06-22 21:37 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BC485C62-5B90-4AF4-8022-A869F5BBA0D9} 2011-06-22 07:45 . 2011-06-22 07:45 -------- d-----w- c:\users\Eigenaar\AppData\Local\{90A83CF9-6867-44D9-ADDD-ED69092EFF25} 2011-06-21 19:44 . 2011-06-21 19:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{295024DE-282A-4397-A49E-8511D2CC3E84} 2011-06-21 10:48 . 2011-06-21 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{242CC70E-AE49-43AA-9533-69C1A8B0CDD3} 2011-06-20 22:52 . 2011-06-20 22:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{96525F85-8084-46D7-AFDD-63218454AFBD} 2011-06-20 22:48 . 2011-06-20 22:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{C21C4CF0-A5AC-4F5C-B0D1-D3720D1816EA} 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-20 15:18 -------- d-----w- c:\program files\CCleaner 2011-06-20 10:48 . 2011-06-20 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DB6D856F-74CF-4C13-BCAF-A2E11EA51340} 2011-06-19 22:47 . 2011-06-19 22:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{514555E4-EF1A-4825-A7BA-1C04F3F369E7} 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-19 10:46 . 2011-06-19 10:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{AA448307-6D7E-4537-8AAF-669985540453} 2011-06-18 17:50 . 2011-06-18 17:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4512965C-6F16-43E3-962F-E2EFE4613904} 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 05:48 . 2011-06-18 05:49 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CFCB4094-B2A3-4930-B7FB-DE1AFAE4286C} 2011-06-17 02:10 . 2011-06-17 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3D5EE115-D78C-4B8F-B388-16DFC6BC213D} 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 14:10 . 2011-06-16 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{878106AD-0210-4036-B1D3-F1F99B927DEB} 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-16 00:11 . 2011-06-16 00:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F20B115B-6EAE-4252-88B8-953A78EB94CB} 2011-06-15 23:08 . 2010-11-30 09:43 601424 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C169E9FE-987B-432C-8451-F4192D6AC6AD}\gapaengine.dll 2011-06-15 22:52 . 2011-06-27 17:31 -------- d-----w- c:\windows\system32\wbem\repository 2011-06-14 16:04 . 2011-06-14 16:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{83E662ED-690E-45B5-87A8-A22ADD58DCFD} 2011-06-13 07:57 . 2011-06-13 08:11 -------- d-----w- c:\users\Eigenaar\AppData\Local\{535700F7-39E4-4A7A-A47D-A56255190172} 2011-06-12 12:11 . 2011-06-12 12:21 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3B14A23A-45FC-4D8C-9385-CBE5CE07C661} 2011-06-12 09:01 . 2011-06-12 09:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D393EE50-2B6A-45A3-8AD8-177382FE84D7} 2011-06-11 11:32 . 2011-06-11 11:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{FC34AD28-525E-4E39-AFFD-63285F49CBAD} 2011-06-10 19:04 . 2011-06-10 19:09 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2177E62F-C202-44C4-88F7-FCCCA3F381F6} 2011-06-10 07:00 . 2011-06-10 07:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{466ECE7F-7AC7-419F-AD31-9C4B1222CC4E} 2011-06-09 15:40 . 2011-06-09 15:40 -------- d-----w- c:\users\Eigenaar\AppData\Local\{EB8E160A-D526-4EE7-9274-79C78C61BBB2} 2011-06-08 10:51 . 2011-06-08 10:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E837E523-918D-4A7D-A080-FEF289FC1F33} 2011-06-07 15:17 . 2011-06-07 15:17 -------- d-----w- c:\users\Eigenaar\AppData\Local\{42F4808E-245E-43A5-BADB-D0054A4977B5} 2011-06-06 14:31 . 2011-06-06 14:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2EC24D65-12B9-4FA2-BA40-58E7D1121530} 2011-06-05 10:19 . 2011-06-05 10:20 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D3A4B2CF-4EFD-47E4-BE0F-3B03DBFDB686} 2011-06-04 18:48 . 2011-06-04 18:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{839BED9D-1302-49FA-A26C-857A3D2485EC} 2011-06-01 05:36 . 2011-06-01 05:36 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2A88517A-4744-4687-93C7-90C759C34213} 2011-05-31 15:14 . 2011-05-31 15:16 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5DFB41B8-41FF-4DB6-BF46-D8682B065C74} 2011-05-29 20:35 . 2011-05-30 15:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{221651DD-9948-474A-9364-CF312D23F0C0} 2011-05-29 08:34 . 2011-05-29 08:34 -------- d-----w- c:\users\Eigenaar\AppData\Local\{274324B1-E1D5-471A-B7E3-D1F83EBCDC84} 2011-05-28 22:06 . 2011-06-11 14:09 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\go 2011-05-28 22:05 . 2011-06-15 22:47 -------- d-----w- c:\programdata\Easybits GO 2011-05-28 20:33 . 2011-05-28 20:34 -------- d-----w- c:\users\Eigenaar\AppData\Local\{6D9A1DC0-E3D4-43CA-B9EB-4C9426A1EBAF} . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((( SnapShot_2011-06-24_15.58.11 ))))))))))))))))))))))))))))))))))))))))) . + 2010-09-06 18:45 . 2009-05-26 11:48 98304 c:\windows\twain_32\MP270 series\SG_TRK.dll + 2010-09-06 18:45 . 2009-05-26 11:48 94208 c:\windows\twain_32\MP270 series\SG_THA.dll + 2010-09-06 18:45 . 2009-05-26 11:48 73728 c:\windows\twain_32\MP270 series\SG_KOR.dll + 2010-09-06 18:45 . 2009-05-26 11:48 73728 c:\windows\twain_32\MP270 series\SG_JPN.dll + 2010-09-06 18:45 . 2009-05-26 11:48 98304 c:\windows\twain_32\MP270 series\SG_ENU.dll + 2010-09-06 18:45 . 2009-05-26 11:48 61440 c:\windows\twain_32\MP270 series\SG_CHT.dll + 2010-09-06 18:45 . 2009-05-26 11:48 61440 c:\windows\twain_32\MP270 series\SG_CHS.dll + 2010-09-06 18:45 . 2009-05-26 11:48 98304 c:\windows\twain_32\MP270 series\SG_ARA.dll + 2010-09-06 18:45 . 2007-09-11 12:21 86016 c:\windows\twain_32\MP270 series\rstcol.dll + 2010-09-06 18:45 . 2009-03-09 15:56 98304 c:\windows\twain_32\MP270 series\MC2Plus.dll + 2010-09-06 18:45 . 2007-12-06 11:46 73728 c:\windows\twain_32\MP270 series\IJFSHLIB.dll + 2010-09-06 18:45 . 2007-11-09 06:48 53248 c:\windows\twain_32\MP270 series\HSL.DLL + 2010-09-06 18:45 . 2008-11-19 11:31 73728 c:\windows\twain_32\MP270 series\DDT.dll + 2009-02-04 02:17 . 2009-02-04 02:17 90112 c:\windows\twain_32\MP270 series\cncisco3.dll + 2010-09-06 18:45 . 2009-02-09 06:41 30720 c:\windows\twain_32\MP270 series\CNC270.DAT + 2010-09-06 18:45 . 2005-04-15 13:34 57344 c:\windows\twain_32\MP270 series\BaLCo.dll + 2009-07-13 23:51 . 2009-07-14 01:16 85504 c:\windows\SysWOW64\xwreg.dll + 2009-07-13 23:51 . 2009-07-14 01:14 41472 c:\windows\SysWOW64\xwizard.exe + 2009-07-13 23:44 . 2009-07-14 01:16 47616 c:\windows\SysWOW64\xolehlp.dll + 2009-07-13 23:52 . 2009-07-14 01:16 17920 c:\windows\SysWOW64\xmlprovi.dll + 2009-07-14 00:13 . 2009-07-14 01:16 54784 c:\windows\SysWOW64\xmlfilter.dll + 2009-07-14 00:05 . 2009-07-14 01:16 25600 c:\windows\SysWOW64\XInput9_1_0.dll + 2010-01-15 00:52 . 2007-04-04 17:53 81768 c:\windows\SysWOW64\xinput1_3.dll + 2010-01-15 00:52 . 2006-07-28 08:30 62744 c:\windows\SysWOW64\xinput1_2.dll + 2010-01-15 00:51 . 2006-03-31 11:39 62672 c:\windows\SysWOW64\xinput1_1.dll + 2009-07-13 23:15 . 2009-07-14 01:14 36864 c:\windows\SysWOW64\xcopy.exe + 2010-11-25 18:23 . 2009-09-04 16:44 69464 c:\windows\SysWOW64\XAPOFX1_3.dll + 2010-01-15 00:52 . 2007-10-22 02:37 17928 c:\windows\SysWOW64\X3DAudio1_2.dll + 2010-01-15 00:52 . 2007-03-05 11:42 15128 c:\windows\SysWOW64\x3daudio1_1.dll + 2010-01-15 00:51 . 2006-02-03 07:41 14032 c:\windows\SysWOW64\x3daudio1_0.dll + 2009-07-13 23:53 . 2009-07-14 01:16 80896 c:\windows\SysWOW64\wzcdlg.dll + 2009-07-13 23:56 . 2009-07-14 01:16 27648 c:\windows\SysWOW64\wwapi.dll + 2009-07-14 00:14 . 2009-07-14 01:16 27136 c:\windows\SysWOW64\wups.dll + 2009-07-14 00:14 . 2009-07-14 01:16 87552 c:\windows\SysWOW64\wudriver.dll + 2009-07-14 00:14 . 2009-07-14 01:14 33792 c:\windows\SysWOW64\wuapp.exe + 2009-07-14 00:02 . 2009-07-14 01:16 39936 c:\windows\SysWOW64\wtsapi32.dll + 2009-07-13 23:55 . 2009-07-14 01:16 15360 c:\windows\SysWOW64\wsock32.dll + 2009-07-13 23:55 . 2009-07-14 01:16 51712 c:\windows\SysWOW64\wsnmp32.dll + 2009-07-13 23:31 . 2009-07-14 01:11 54272 c:\windows\SysWOW64\WsmRes.dll + 2009-07-13 23:31 . 2009-07-14 01:14 12288 c:\windows\SysWOW64\wsmprovhost.exe + 2009-07-13 23:31 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\wsmplpxy.dll + 2009-07-13 23:53 . 2009-07-14 01:16 14848 c:\windows\SysWOW64\wshrm.dll + 2009-07-13 23:53 . 2009-07-14 01:16 13824 c:\windows\SysWOW64\wshqos.dll + 2009-07-13 23:53 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\wshirda.dll + 2009-07-13 23:12 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\wship6.dll + 2009-07-13 23:42 . 2009-07-14 01:16 80896 c:\windows\SysWOW64\wshext.dll + 2009-07-13 23:55 . 2009-07-14 01:16 15360 c:\windows\SysWOW64\wshelper.dll + 2009-07-13 23:42 . 2009-07-14 01:16 25600 c:\windows\SysWOW64\wshcon.dll + 2009-07-13 23:51 . 2009-07-14 01:16 35840 c:\windows\SysWOW64\wshbth.dll + 2009-07-14 00:19 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\wsdchngr.dll + 2009-07-13 23:55 . 2009-07-14 01:16 56832 c:\windows\SysWOW64\wscmisetup.dll + 2009-07-13 23:31 . 2009-07-14 01:16 18944 c:\windows\SysWOW64\wscisvif.dll + 2009-07-13 23:31 . 2009-07-14 01:16 95744 c:\windows\SysWOW64\wscinterop.dll + 2011-02-09 12:00 . 2010-12-21 05:38 51200 c:\windows\SysWOW64\wscapi.dll + 2009-07-14 00:07 . 2009-07-14 01:14 30208 c:\windows\SysWOW64\WPDShextAutoplay.exe + 2009-07-13 23:40 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\wpcsvc.dll + 2009-07-13 23:16 . 2009-07-13 23:16 14336 c:\windows\SysWOW64\wowreg32.exe + 2009-07-13 23:36 . 2009-07-14 01:16 11264 c:\windows\SysWOW64\wmsgapi.dll + 2009-07-14 00:08 . 2009-07-14 01:16 22528 c:\windows\SysWOW64\wmpcm.dll + 2009-07-13 23:13 . 2009-07-14 01:16 23040 c:\windows\SysWOW64\wmiprop.dll + 2009-07-14 00:06 . 2009-07-14 01:16 36864 c:\windows\SysWOW64\wmdmps.dll + 2009-07-14 00:06 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\wmdmlog.dll + 2009-07-14 00:07 . 2009-07-14 01:16 53760 c:\windows\SysWOW64\wmcodecdspps.dll + 2009-07-13 23:51 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\wlaninst.dll + 2009-07-13 23:51 . 2009-07-14 01:16 84480 c:\windows\SysWOW64\wlanhlp.dll + 2009-07-13 23:51 . 2009-07-14 01:14 77312 c:\windows\SysWOW64\wlanext.exe + 2009-07-13 23:51 . 2009-07-14 01:16 81408 c:\windows\SysWOW64\wlanapi.dll + 2009-07-14 00:01 . 2009-07-14 01:16 12800 c:\windows\SysWOW64\wksprtPS.dll + 2009-07-13 23:37 . 2009-07-14 01:16 47104 c:\windows\SysWOW64\wkscli.dll + 2009-07-13 23:41 . 2009-07-14 01:14 79872 c:\windows\SysWOW64\winver.exe + 2009-07-13 23:51 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\winusb.dll + 2009-07-13 23:55 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\WINSRPC.DLL + 2009-07-13 23:55 . 2009-07-14 01:16 68608 c:\windows\SysWOW64\winsockhc.dll + 2009-07-13 23:37 . 2009-07-14 01:15 11264 c:\windows\SysWOW64\winshfhc.dll + 2009-07-13 23:31 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\winrssrv.dll + 2009-07-13 23:31 . 2009-07-14 01:14 20480 c:\windows\SysWOW64\winrshost.exe + 2009-07-13 23:31 . 2009-07-14 01:14 39936 c:\windows\SysWOW64\winrs.exe + 2009-07-13 23:37 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\winrnr.dll + 2009-07-13 23:12 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\winnsi.dll + 2009-07-13 23:52 . 2009-07-14 01:16 70144 c:\windows\SysWOW64\winipsec.dll + 2009-07-13 23:36 . 2009-07-14 01:14 96256 c:\windows\SysWOW64\wininit.exe + 2010-08-02 13:20 . 1998-08-31 08:17 12800 c:\windows\SysWOW64\Wing32.dll + 2010-08-02 13:20 . 1998-08-31 08:17 92208 c:\windows\SysWOW64\Wing.dll + 2009-07-14 00:14 . 2009-07-14 01:16 27648 c:\windows\SysWOW64\WinFax.dll + 2009-07-13 23:32 . 2009-07-14 01:15 24064 c:\windows\SysWOW64\WindowsPowerShell\v1.0\pwrshsip.dll + 2009-07-13 23:32 . 2009-07-14 01:06 20480 c:\windows\SysWOW64\WindowsPowerShell\v1.0\PSEvents.dll + 2009-07-13 23:37 . 2009-07-14 01:16 35328 c:\windows\SysWOW64\wincredprovider.dll + 2009-07-13 23:18 . 2009-07-14 01:16 12800 c:\windows\SysWOW64\winbrand.dll + 2009-07-13 23:37 . 2009-07-14 01:16 57856 c:\windows\SysWOW64\winbio.dll + 2009-07-14 00:14 . 2009-07-14 01:16 12800 c:\windows\SysWOW64\wiatrace.dll + 2009-07-14 00:14 . 2009-07-14 01:16 87552 c:\windows\SysWOW64\wiascanprofiles.dll + 2009-07-14 00:15 . 2009-07-14 01:14 88576 c:\windows\SysWOW64\wiaacmgr.exe + 2009-07-13 23:15 . 2009-07-14 01:14 43008 c:\windows\SysWOW64\whoami.exe + 2009-07-13 23:55 . 2009-07-14 01:16 14848 c:\windows\SysWOW64\whhelper.dll + 2009-07-13 23:15 . 2009-07-14 01:14 35328 c:\windows\SysWOW64\where.exe + 2009-07-13 23:20 . 2009-07-14 01:16 32768 c:\windows\SysWOW64\whealogr.dll + 2009-07-13 23:52 . 2009-07-14 01:16 66048 c:\windows\SysWOW64\WfHC.dll + 2009-07-13 23:52 . 2009-07-14 01:16 18944 c:\windows\SysWOW64\wfapigp.dll + 2009-07-13 23:29 . 2009-07-14 01:16 83456 c:\windows\SysWOW64\wevtfwd.dll + 2009-07-13 23:27 . 2009-07-14 01:14 53760 c:\windows\SysWOW64\wermgr.exe + 2009-07-13 23:27 . 2009-07-14 01:14 28672 c:\windows\SysWOW64\WerFaultSecure.exe + 2009-07-13 23:27 . 2009-07-14 01:16 28672 c:\windows\SysWOW64\werdiagcontroller.dll + 2009-07-13 23:30 . 2009-07-14 01:14 80384 c:\windows\SysWOW64\wecutil.exe + 2009-07-13 23:29 . 2009-07-14 01:16 58368 c:\windows\SysWOW64\wecapi.dll + 2009-07-13 23:19 . 2009-07-14 01:16 76288 c:\windows\SysWOW64\wdi.dll + 2009-07-13 23:25 . 2009-07-14 01:16 32768 c:\windows\SysWOW64\WcsPlugInService.dll + 2009-07-13 23:52 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\WcnEapPeerProxy.dll + 2009-07-13 23:52 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\WcnEapAuthProxy.dll + 2009-07-13 23:53 . 2009-07-14 01:16 86528 c:\windows\SysWOW64\WcnApi.dll + 2009-07-13 23:30 . 2009-07-14 01:16 61952 c:\windows\SysWOW64\wbem\xml\wmi2xml.dll + 2009-07-13 23:30 . 2009-07-14 01:16 85504 c:\windows\SysWOW64\wbem\wmiutils.dll + 2009-07-13 23:19 . 2009-07-14 01:16 50176 c:\windows\SysWOW64\wbem\WmiPerfInst.dll + 2009-07-13 23:19 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\wbem\WmiPerfClass.dll + 2009-07-13 23:30 . 2009-07-14 01:16 74752 c:\windows\SysWOW64\wbem\WMICOOKR.dll + 2009-07-13 23:31 . 2009-07-14 01:16 89600 c:\windows\SysWOW64\wbem\WmiApRpl.dll + 2009-07-13 23:30 . 2009-07-14 01:14 78336 c:\windows\SysWOW64\wbem\WinMgmt.exe + 2009-07-13 23:30 . 2009-07-14 01:16 47616 c:\windows\SysWOW64\wbem\wbemsvc.dll + 2009-07-13 23:30 . 2009-07-14 01:16 29184 c:\windows\SysWOW64\wbem\wbemprox.dll + 2009-07-13 23:30 . 2009-07-14 01:16 98304 c:\windows\SysWOW64\wbem\stdprov.dll + 2009-07-13 23:22 . 2009-07-14 01:16 79360 c:\windows\SysWOW64\wbem\RacWmiProv.dll + 2009-07-13 23:30 . 2009-07-14 01:14 19968 c:\windows\SysWOW64\wbem\mofcomp.exe + 2009-07-13 23:15 . 2009-07-14 01:14 34304 c:\windows\SysWOW64\waitfor.exe + 2009-07-14 00:07 . 2009-07-14 01:16 58880 c:\windows\SysWOW64\WABSyncProvider.dll + 2009-07-13 23:37 . 2009-07-14 01:16 26624 c:\windows\SysWOW64\w32topl.dll + 2009-07-13 23:33 . 2009-07-14 01:14 65536 c:\windows\SysWOW64\w32tm.exe + 2009-07-13 23:23 . 2009-07-14 01:16 56320 c:\windows\SysWOW64\vsstrace.dll + 2009-07-13 23:23 . 2009-07-14 01:16 26112 c:\windows\SysWOW64\vss_ps.dll + 2009-07-13 23:54 . 2009-07-14 01:16 24576 c:\windows\SysWOW64\vpnikeapi.dll + 2009-07-13 23:15 . 2009-07-14 01:16 17408 c:\windows\SysWOW64\virtdisk.dll + 2009-07-14 00:03 . 2009-07-14 01:16 56832 c:\windows\SysWOW64\vfwwdm32.dll + 2009-07-14 02:35 . 2009-07-14 01:16 20535 c:\windows\SysWOW64\vfpodbc.dll + 2009-07-13 23:41 . 2009-07-14 01:16 21504 c:\windows\SysWOW64\version.dll + 2009-07-13 23:41 . 2009-07-14 01:14 10752 c:\windows\SysWOW64\verclsid.exe + 2009-07-13 23:23 . 2009-07-14 01:16 47616 c:\windows\SysWOW64\vdsvd.dll + 2009-07-13 23:23 . 2009-07-14 01:16 44544 c:\windows\SysWOW64\vds_ps.dll + 2009-07-13 23:20 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\vdmdbg.dll + 2006-07-24 09:50 . 2006-07-24 09:50 47920 c:\windows\SysWOW64\VBAME.DLL + 2009-07-13 21:04 . 2009-07-14 01:16 30749 c:\windows\SysWOW64\vbajet32.dll + 2009-07-13 23:37 . 2009-07-14 01:16 36352 c:\windows\SysWOW64\vaultcli.dll + 2009-07-13 23:38 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\UXInit.dll + 2009-07-14 00:02 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\utildll.dll + 2009-07-13 23:34 . 2009-07-14 01:14 26112 c:\windows\SysWOW64\userinit.exe + 2009-07-13 23:34 . 2009-07-14 01:16 79360 c:\windows\SysWOW64\userenv.dll + 2009-07-13 23:40 . 2009-07-14 01:16 78848 c:\windows\SysWOW64\UserAccountControlSettings.dll + 2009-07-13 23:41 . 2009-07-14 01:16 80896 c:\windows\SysWOW64\usbui.dll + 2009-07-13 23:51 . 2009-07-14 01:16 11264 c:\windows\SysWOW64\usbperf.dll + 2009-07-13 23:51 . 2009-07-14 01:16 23552 c:\windows\SysWOW64\usbceip.dll + 2009-07-13 23:14 . 2009-07-14 01:16 23040 c:\windows\SysWOW64\ureg.dll + 2009-07-13 23:55 . 2009-07-14 01:14 23552 c:\windows\SysWOW64\upnpcont.exe + 2009-07-13 23:19 . 2009-07-14 01:14 33792 c:\windows\SysWOW64\unlodctr.exe + 2009-07-13 23:55 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\uniplat.dll + 2009-07-13 23:55 . 2009-07-14 01:16 59392 c:\windows\SysWOW64\unimdmat.dll + 2009-07-13 23:55 . 2009-07-14 01:16 17920 c:\windows\SysWOW64\umdmxfrm.dll + 2009-07-13 23:55 . 2009-07-14 01:16 35328 c:\windows\SysWOW64\uicom.dll + 2009-07-13 23:28 . 2009-07-14 01:16 99328 c:\windows\SysWOW64\UIAnimation.dll + 2009-07-13 23:14 . 2009-07-14 01:16 95232 c:\windows\SysWOW64\ufat.dll + 2009-07-13 23:14 . 2009-07-14 01:16 68096 c:\windows\SysWOW64\uexfat.dll + 2009-07-13 23:55 . 2009-07-14 01:16 45056 c:\windows\SysWOW64\udhisapi.dll + 2009-07-13 23:52 . 2009-07-14 01:16 48128 c:\windows\SysWOW64\ucmhc.dll + 2009-07-13 23:15 . 2009-07-14 01:14 47616 c:\windows\SysWOW64\tzutil.exe + 2009-07-13 23:19 . 2009-07-14 01:14 40448 c:\windows\SysWOW64\typeperf.exe + 2009-07-13 23:11 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\txfw32.dll + 2009-07-13 23:44 . 2009-07-14 01:16 90624 c:\windows\SysWOW64\txflog.dll + 2009-07-14 00:05 . 2009-07-14 01:16 29696 c:\windows\SysWOW64\tvratings.dll + 2009-07-14 00:35 . 2009-06-10 21:14 34624 c:\windows\SysWOW64\TsWpfWrp.exe + 2009-07-14 00:02 . 2009-07-14 01:14 38912 c:\windows\SysWOW64\TSTheme.exe + 2009-07-13 23:34 . 2009-07-14 01:16 65024 c:\windows\SysWOW64\TSpkg.dll + 2009-07-14 00:02 . 2009-07-14 01:16 36864 c:\windows\SysWOW64\tsgqec.dll + 2009-07-13 23:29 . 2009-07-14 01:16 13312 c:\windows\SysWOW64\TSChannel.dll + 2010-03-06 09:44 . 2009-12-19 09:02 12288 c:\windows\SysWOW64\tsbyuv.dll + 2009-07-13 23:15 . 2009-07-13 23:15 16384 c:\windows\SysWOW64\tree.com + 2009-07-13 23:27 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\TRAPI.dll + 2009-07-13 23:54 . 2009-07-14 01:16 33280 c:\windows\SysWOW64\traffic.dll + 2009-07-13 23:55 . 2009-07-14 01:14 12288 c:\windows\SysWOW64\TRACERT.EXE + 2009-07-13 23:12 . 2009-07-14 01:14 94720 c:\windows\SysWOW64\TpmInit.exe + 2009-07-13 23:12 . 2009-07-14 01:16 40960 c:\windows\SysWOW64\tpmcompc.dll + 2009-07-14 00:01 . 2009-07-14 01:16 70144 c:\windows\SysWOW64\tlscsp.dll + 2009-07-13 23:15 . 2009-07-14 01:14 27136 c:\windows\SysWOW64\timeout.exe + 2009-07-13 23:40 . 2009-07-14 01:16 82944 c:\windows\SysWOW64\thumbcache.dll + 2009-07-14 00:19 . 2009-07-14 01:14 13824 c:\windows\SysWOW64\tcmsetup.exe + 2009-07-13 23:12 . 2009-07-14 01:16 12288 c:\windows\SysWOW64\tbs.dll + 2009-07-13 23:29 . 2009-07-14 01:16 36864 c:\windows\SysWOW64\TaskSchdPS.dll + 2009-07-13 23:57 . 2009-07-14 01:14 80896 c:\windows\SysWOW64\tasklist.exe + 2009-07-13 23:57 . 2009-07-14 01:14 77824 c:\windows\SysWOW64\taskkill.exe + 2009-07-14 00:19 . 2009-07-14 01:14 11264 c:\windows\SysWOW64\TapiUnattend.exe + 2009-07-13 23:15 . 2009-07-14 01:14 50688 c:\windows\SysWOW64\takeown.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesRemote.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesProtection.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesPerformance.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesHardware.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesComputerName.exe + 2009-07-13 23:40 . 2009-07-14 01:14 81920 c:\windows\SysWOW64\SystemPropertiesAdvanced.exe + 2009-07-13 23:57 . 2009-07-14 01:14 75776 c:\windows\SysWOW64\systeminfo.exe + 2009-07-13 23:17 . 2009-07-14 01:16 14336 c:\windows\SysWOW64\syssetup.dll + 2009-07-13 23:34 . 2009-07-14 01:14 28672 c:\windows\SysWOW64\syskey.exe + 2009-07-14 00:07 . 2009-07-14 01:16 55296 c:\windows\SysWOW64\Syncreg.dll + 2009-07-14 00:07 . 2009-07-14 01:16 15360 c:\windows\SysWOW64\SyncInfrastructureps.dll + 2009-07-14 00:07 . 2009-07-14 01:14 38912 c:\windows\SysWOW64\SyncHost.exe + 2009-07-13 23:39 . 2009-07-14 01:16 78336 c:\windows\SysWOW64\synceng.dll + 2009-07-13 23:16 . 2009-07-14 01:14 27136 c:\windows\SysWOW64\sxstrace.exe + 2009-07-13 23:15 . 2009-07-14 01:16 22016 c:\windows\SysWOW64\sxsstore.dll + 2009-07-13 23:23 . 2009-07-14 01:16 19456 c:\windows\SysWOW64\sxshared.dll + 2009-07-13 23:23 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\sxproxy.dll + 2009-07-13 23:19 . 2009-07-14 01:14 20992 c:\windows\SysWOW64\svchost.exe + 2009-07-13 23:15 . 2009-07-14 01:14 13824 c:\windows\SysWOW64\subst.exe + 2009-07-13 23:45 . 2009-07-14 01:16 60928 c:\windows\SysWOW64\Storprop.dll + 2009-07-13 23:42 . 2009-07-14 01:16 62464 c:\windows\SysWOW64\StorageContextHandler.dll + 2009-07-13 23:44 . 2009-07-14 01:16 65024 c:\windows\SysWOW64\stclient.dll + 2010-04-27 18:39 . 2009-12-11 07:36 96768 c:\windows\SysWOW64\sspicli.dll + 2009-07-13 23:55 . 2009-07-14 01:16 39936 c:\windows\SysWOW64\ssdpapi.dll + 2009-07-13 23:37 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\srvcli.dll + 2009-07-13 23:23 . 2009-07-14 01:16 73216 c:\windows\SysWOW64\srhelper.dll + 2009-07-13 23:23 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\srdelayed.exe + 2009-07-13 23:23 . 2009-07-14 01:16 43008 c:\windows\SysWOW64\srclient.dll + 2009-07-13 21:03 . 2009-07-13 21:03 49179 c:\windows\SysWOW64\sqlwoa.dll + 2009-07-13 21:03 . 2009-07-14 01:16 24603 c:\windows\SysWOW64\sqlwid.dll + 2009-07-13 23:17 . 2009-07-14 01:16 11264 c:\windows\SysWOW64\spwinsat.dll + 2009-07-13 23:17 . 2009-07-14 01:16 19968 c:\windows\SysWOW64\spopk.dll + 2009-07-13 23:16 . 2009-07-14 01:16 75776 c:\windows\SysWOW64\SPInf.dll + 2009-07-13 23:16 . 2009-07-14 01:16 81920 c:\windows\SysWOW64\spfileq.dll + 2009-07-14 00:14 . 2009-07-14 01:16 18944 c:\windows\SysWOW64\Speech\SpeechUX\SpeechUXPS.DLL + 2009-07-13 23:17 . 2009-07-14 01:16 61952 c:\windows\SysWOW64\spbcd.dll + 2009-07-13 23:15 . 2009-07-14 01:16 54784 c:\windows\SysWOW64\SortWindows6Compat.dll + 2009-07-13 23:15 . 2009-07-14 01:16 38400 c:\windows\SysWOW64\SortServer2003Compat.dll + 2009-07-13 23:15 . 2009-07-14 01:14 19968 c:\windows\SysWOW64\sort.exe + 2009-07-13 23:55 . 2009-07-14 01:16 22528 c:\windows\SysWOW64\snmpapi.dll + 2009-07-13 23:14 . 2009-07-14 01:16 84992 c:\windows\SysWOW64\SMBHelperClass.dll + 2011-02-09 12:00 . 2010-12-21 05:38 14336 c:\windows\SysWOW64\slwga.dll + 2009-07-13 23:35 . 2009-07-14 01:16 16384 c:\windows\SysWOW64\slcext.dll + 2009-07-13 23:35 . 2009-07-14 01:16 27136 c:\windows\SysWOW64\slc.dll + 2009-07-13 23:14 . 2009-07-14 01:16 19456 c:\windows\SysWOW64\sisbkup.dll + 2010-11-10 01:54 . 2010-11-10 01:54 49016 c:\windows\SysWOW64\sirenacm.dll + 2009-07-13 23:19 . 2009-07-14 01:16 41984 c:\windows\SysWOW64\signdrv.dll + 2009-07-13 23:34 . 2009-07-14 01:14 30720 c:\windows\SysWOW64\shutdown.exe + 2009-07-13 23:38 . 2009-07-14 01:16 10240 c:\windows\SysWOW64\shunimpl.dll + 2009-07-13 23:39 . 2009-07-14 01:16 14336 c:\windows\SysWOW64\shpafact.dll + 2009-07-13 23:39 . 2009-07-14 01:16 35840 c:\windows\SysWOW64\shimgvw.dll + 2009-07-13 23:40 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\shgina.dll + 2009-07-13 23:15 . 2009-07-14 01:16 40960 c:\windows\SysWOW64\sfc_os.dll + 2009-07-13 23:15 . 2009-07-14 01:14 35328 c:\windows\SysWOW64\sfc.exe + 2009-07-13 23:15 . 2009-07-14 01:14 46080 c:\windows\SysWOW64\setx.exe + 2009-07-13 23:53 . 2009-07-14 01:14 17920 c:\windows\SysWOW64\setupSNK.exe + 2010-03-06 09:45 . 2009-12-22 08:23 25600 c:\windows\SysWOW64\setup16.exe + 2009-07-14 00:01 . 2009-07-14 01:16 66560 c:\windows\SysWOW64\Setup\tssysprep.dll + 2009-07-13 23:54 . 2009-07-14 01:16 47104 c:\windows\SysWOW64\Setup\pbkmigr.dll + 2009-07-13 23:44 . 2009-07-14 01:15 65024 c:\windows\SysWOW64\Setup\msdtcstp.dll + 2009-07-13 23:54 . 2009-07-14 01:15 58368 c:\windows\SysWOW64\Setup\cmmigr.dll + 2011-03-25 21:06 . 2011-03-25 21:06 76800 c:\windows\SysWOW64\SetIEInstalledDate.exe + 2009-07-14 00:02 . 2009-07-14 01:16 99328 c:\windows\SysWOW64\SessEnv.dll + 2009-07-13 23:55 . 2009-07-14 01:16 18432 c:\windows\SysWOW64\serwvdrv.dll + 2009-07-13 23:55 . 2009-07-14 01:16 15360 c:\windows\SysWOW64\serialui.dll + 2009-07-13 23:21 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\SensApi.dll + 2009-07-13 23:21 . 2009-07-14 01:16 49664 c:\windows\SysWOW64\Sens.dll + 2009-07-13 23:39 . 2009-07-14 01:16 65536 c:\windows\SysWOW64\sendmail.dll + 2010-04-27 18:39 . 2009-12-11 07:39 22016 c:\windows\SysWOW64\secur32.dll + 2010-03-06 09:45 . 2010-01-18 23:29 85504 c:\windows\SysWOW64\secproc_ssp_isv.dll + 2010-03-06 09:45 . 2010-01-18 23:29 85504 c:\windows\SysWOW64\secproc_ssp.dll + 2009-07-13 23:22 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\secinit.exe + 2009-07-13 23:11 . 2009-07-14 01:16 92160 c:\windows\SysWOW64\sechost.dll + 2009-07-13 23:33 . 2009-07-14 01:14 35328 c:\windows\SysWOW64\SecEdit.exe + 2009-07-14 00:13 . 2009-07-14 01:14 86528 c:\windows\SysWOW64\SearchFilterHost.exe + 2009-07-13 23:19 . 2009-07-14 01:14 21504 c:\windows\SysWOW64\sdiagnhost.exe + 2009-07-13 23:20 . 2009-07-14 01:14 40960 c:\windows\SysWOW64\sdchange.exe + 2009-07-13 23:12 . 2009-07-14 01:14 20992 c:\windows\SysWOW64\sdbinst.exe + 2009-07-13 23:41 . 2009-07-14 01:14 10240 c:\windows\SysWOW64\scrnsave.scr + 2009-07-14 00:12 . 2009-07-14 01:16 57856 c:\windows\SysWOW64\scripto.dll + 2006-07-24 09:50 . 2006-07-24 09:50 39728 c:\windows\SysWOW64\SCP32.DLL + 2009-07-13 23:37 . 2009-07-14 01:16 17408 c:\windows\SysWOW64\schedcli.dll + 2009-07-13 23:33 . 2009-07-14 01:16 66048 c:\windows\SysWOW64\SCardDlg.dll + 2009-07-13 23:19 . 2009-07-14 01:14 37376 c:\windows\SysWOW64\sc.exe + 2009-07-13 23:40 . 2009-07-14 01:14 12288 c:\windows\SysWOW64\sbunattend.exe + 2009-07-14 00:06 . 2009-07-14 01:09 65536 c:\windows\SysWOW64\sberes.dll + 2009-07-13 23:37 . 2009-07-14 01:16 60928 c:\windows\SysWOW64\samlib.dll + 2009-07-13 23:37 . 2009-07-14 01:16 50688 c:\windows\SysWOW64\samcli.dll + 2009-07-13 23:41 . 2009-07-14 01:14 50688 c:\windows\SysWOW64\runonce.exe + 2009-07-13 23:41 . 2009-07-14 01:14 57856 c:\windows\SysWOW64\RunLegacyCPLElevated.exe + 2009-07-13 23:41 . 2009-07-14 01:14 44544 c:\windows\SysWOW64\rundll32.exe + 2009-07-13 23:15 . 2009-07-14 01:14 17408 c:\windows\SysWOW64\runas.exe + 2010-08-12 05:24 . 2010-06-19 06:23 37376 c:\windows\SysWOW64\rtutils.dll + 2009-07-14 00:13 . 2009-07-14 01:16 36864 c:\windows\SysWOW64\rtffilt.dll + 2009-07-13 23:41 . 2009-07-14 01:16 43008 c:\windows\SysWOW64\rshx32.dll + 2009-07-14 00:04 . 2009-07-14 01:14 50176 c:\windows\SysWOW64\rrinstaller.exe + 2009-07-13 23:43 . 2009-07-14 01:16 45568 c:\windows\SysWOW64\RpcRtRemote.dll + 2009-07-13 23:43 . 2009-07-14 01:14 34816 c:\windows\SysWOW64\RpcPing.exe + 2009-07-13 23:43 . 2009-07-14 01:16 27648 c:\windows\SysWOW64\rpcnsh.dll + 2009-07-13 23:43 . 2009-07-14 01:16 44544 c:\windows\SysWOW64\RPCNDFP.dll + 2009-07-13 23:55 . 2009-07-14 01:14 17920 c:\windows\SysWOW64\ROUTE.EXE + 2009-07-13 23:16 . 2009-07-14 01:14 97280 c:\windows\SysWOW64\Robocopy.exe + 2009-07-13 23:22 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\RmClient.exe + 2009-07-13 23:21 . 2009-07-14 01:16 71168 c:\windows\SysWOW64\resutils.dll + 2009-07-13 23:15 . 2009-07-14 01:14 16896 c:\windows\SysWOW64\replace.exe + 2009-07-13 23:19 . 2009-07-14 01:14 37376 c:\windows\SysWOW64\relog.exe + 2009-07-13 23:34 . 2009-07-14 01:14 61440 c:\windows\SysWOW64\rekeywiz.exe + 2009-07-13 23:58 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\regsvr32.exe + 2011-03-25 21:06 . 2011-03-25 21:06 74752 c:\windows\SysWOW64\RegisterIEPKEYs.exe + 2009-07-13 23:58 . 2009-07-14 01:14 44032 c:\windows\SysWOW64\regini.exe + 2009-07-13 23:41 . 2009-07-14 01:16 41472 c:\windows\SysWOW64\RegCtrl.dll + 2009-07-14 00:02 . 2009-07-14 01:16 71680 c:\windows\SysWOW64\regapi.dll + 2009-07-13 23:15 . 2009-07-14 01:14 62464 c:\windows\SysWOW64\reg.exe + 2009-07-13 23:15 . 2009-07-14 01:14 11776 c:\windows\SysWOW64\recover.exe + 2009-07-13 23:20 . 2009-07-14 01:14 21504 c:\windows\SysWOW64\ReAgentc.exe + 2009-07-13 23:20 . 2009-07-14 01:14 36352 c:\windows\SysWOW64\rdrleakdiag.exe + 2009-07-14 00:01 . 2009-07-14 01:16 21504 c:\windows\SysWOW64\rdprefdrvapi.dll + 2009-07-14 00:02 . 2009-07-14 01:16 52224 c:\windows\SysWOW64\rdpd3d.dll + 2009-07-13 23:54 . 2009-07-14 01:16 69632 c:\windows\SysWOW64\rastapi.dll + 2009-07-13 23:54 . 2009-07-14 01:16 22528 c:\windows\SysWOW64\rasser.dll + 2009-07-13 23:54 . 2009-07-14 01:14 50176 c:\windows\SysWOW64\rasphone.exe + 2009-07-13 23:54 . 2009-07-14 01:16 33280 c:\windows\SysWOW64\rasmxs.dll + 2009-07-13 23:54 . 2009-07-14 01:16 76800 c:\windows\SysWOW64\rasman.dll + 2009-07-13 23:54 . 2009-07-14 01:14 73216 c:\windows\SysWOW64\rasdial.exe + 2009-07-13 23:52 . 2009-07-14 01:16 61952 c:\windows\SysWOW64\rasdiag.dll + 2009-07-13 23:54 . 2009-07-14 01:16 15360 c:\windows\SysWOW64\rasctrs.dll + 2009-07-13 23:54 . 2009-07-14 01:16 81408 c:\windows\SysWOW64\rascfg.dll + 2009-07-13 23:54 . 2009-07-14 01:14 16896 c:\windows\SysWOW64\rasautou.exe + 2009-07-13 23:54 . 2009-07-14 01:16 11776 c:\windows\SysWOW64\rasadhlp.dll + 2009-07-13 23:20 . 2009-07-14 01:16 62976 c:\windows\SysWOW64\radarrs.dll + 2009-07-13 23:20 . 2009-07-14 01:16 85504 c:\windows\SysWOW64\radardt.dll + 2009-07-13 23:52 . 2009-07-14 01:16 80896 c:\windows\SysWOW64\QUTIL.DLL + 2009-07-13 23:52 . 2009-07-14 01:16 99328 c:\windows\SysWOW64\QSVRMGMT.DLL + 2009-07-13 23:29 . 2009-07-14 01:16 21504 c:\windows\SysWOW64\qmgrprxy.dll + 2009-07-13 23:52 . 2009-07-14 01:16 71680 c:\windows\SysWOW64\QCLIPROV.DLL + 2009-07-13 23:32 . 2009-07-14 01:15 41984 c:\windows\SysWOW64\pwrshplugin.dll + 2009-07-13 23:32 . 2009-07-14 01:16 23552 c:\windows\SysWOW64\pstorsvc.dll + 2009-07-13 23:32 . 2009-07-14 01:16 42496 c:\windows\SysWOW64\pstorec.dll + 2009-07-13 23:11 . 2009-07-14 01:19 52816 c:\windows\SysWOW64\PSHED.DLL + 2009-07-13 23:32 . 2009-07-14 01:16 50688 c:\windows\SysWOW64\psbase.dll + 2009-07-13 23:34 . 2009-07-14 01:14 28160 c:\windows\SysWOW64\proquota.exe + 2009-07-13 23:12 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\profapi.dll + 2009-07-14 00:18 . 2009-07-14 01:14 60928 c:\windows\SysWOW64\printui.exe + 2009-12-12 01:04 . 2009-12-12 01:04 51788 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prnqctl.vbs + 2009-12-12 01:04 . 2009-12-12 01:04 57516 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prnport.vbs + 2009-12-12 01:04 . 2009-12-12 01:04 81922 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prnmngr.vbs + 2009-12-12 01:04 . 2009-12-12 01:04 70444 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prnjobs.vbs + 2009-12-12 01:04 . 2009-12-12 01:04 52506 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prndrvr.vbs + 2009-07-13 23:15 . 2009-07-14 01:14 13824 c:\windows\SysWOW64\print.exe + 2009-07-13 23:10 . 2009-07-14 01:09 17408 c:\windows\SysWOW64\prflbmsg.dll + 2011-05-12 18:56 . 2011-02-18 05:33 31232 c:\windows\SysWOW64\prevhost.exe + 2010-07-07 07:21 . 2009-11-25 10:47 99176 c:\windows\SysWOW64\PresentationHostProxy.dll + 2009-07-13 23:16 . 2009-07-14 01:14 59392 c:\windows\SysWOW64\powercfg.exe + 2009-07-13 23:20 . 2009-07-14 01:16 22528 c:\windows\SysWOW64\pots.dll + 2009-07-14 00:06 . 2009-07-14 01:16 60928 c:\windows\SysWOW64\PortableDeviceConnectApi.dll + 2009-07-13 23:55 . 2009-07-14 01:16 65024 c:\windows\SysWOW64\pnrpnsp.dll + 2009-07-13 23:16 . 2009-07-14 01:09 74752 c:\windows\SysWOW64\pnpsetup.dll + 2011-03-25 21:06 . 2011-03-25 21:06 54272 c:\windows\SysWOW64\pngfilt.dll + 2009-07-14 00:03 . 2009-07-14 01:16 77312 c:\windows\SysWOW64\PlaySndSrv.dll + 2009-07-13 23:55 . 2009-07-14 01:14 15360 c:\windows\SysWOW64\PING.EXE + 2009-07-13 23:41 . 2009-07-14 01:09 34816 c:\windows\SysWOW64\pifmgr.dll + 2009-07-14 00:04 . 2009-07-14 01:16 36352 c:\windows\SysWOW64\pid.dll + 2008-10-29 07:03 . 2008-10-29 07:03 70936 c:\windows\SysWOW64\PhysXLoader.dll + 2008-10-07 07:13 . 2008-10-07 07:13 23320 c:\windows\SysWOW64\PhysXDevice.dll + 2009-07-14 00:02 . 2009-07-14 01:16 17408 c:\windows\SysWOW64\perfts.dll + 2009-07-13 23:19 . 2009-07-14 01:16 35328 c:\windows\SysWOW64\perfproc.dll + 2009-07-13 23:19 . 2009-07-14 01:16 28672 c:\windows\SysWOW64\perfos.dll + 2009-07-13 23:19 . 2009-07-14 01:16 20992 c:\windows\SysWOW64\perfnet.dll + 2009-07-13 23:11 . 2009-07-14 01:14 20992 c:\windows\SysWOW64\perfhost.exe + 2009-07-13 23:19 . 2009-07-14 01:16 31232 c:\windows\SysWOW64\perfdisk.dll + 2009-07-13 23:19 . 2009-07-14 01:16 39424 c:\windows\SysWOW64\perfctrs.dll + 2009-07-13 23:19 . 2009-07-14 01:16 46080 c:\windows\SysWOW64\pdhui.dll + 2009-07-13 23:11 . 2009-07-14 01:16 33280 c:\windows\SysWOW64\pcwum.dll + 2009-07-13 23:20 . 2009-07-14 01:14 15872 c:\windows\SysWOW64\pcaui.exe + 2009-07-13 23:20 . 2009-07-14 01:16 87040 c:\windows\SysWOW64\pcaui.dll + 2009-07-13 23:37 . 2009-07-14 01:16 44032 c:\windows\SysWOW64\pautoenr.dll + 2009-07-13 23:55 . 2009-07-14 01:14 13312 c:\windows\SysWOW64\PATHPING.EXE + 2009-07-13 23:41 . 2009-07-14 01:16 10752 c:\windows\SysWOW64\panmap.dll + 2009-07-13 23:39 . 2009-07-14 01:16 68096 c:\windows\SysWOW64\packager.dll + 2009-07-13 23:22 . 2009-07-14 01:16 19456 c:\windows\SysWOW64\osbaseln.dll + 2009-07-13 23:40 . 2009-07-14 01:14 97280 c:\windows\SysWOW64\OptionalFeatures.exe + 2009-07-13 23:15 . 2009-07-14 01:14 62464 c:\windows\SysWOW64\openfiles.exe + 2009-07-13 23:43 . 2009-07-14 01:16 77312 c:\windows\SysWOW64\olethk32.dll + 2009-07-13 23:43 . 2009-07-14 01:16 28672 c:\windows\SysWOW64\olesvr32.dll + 2009-07-13 23:43 . 2009-07-14 01:09 25600 c:\windows\SysWOW64\oleres.dll + 2009-07-13 23:43 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\olepro32.dll + 2009-07-13 23:44 . 2009-07-14 01:16 80384 c:\windows\SysWOW64\olecli32.dll + 2009-07-13 22:00 . 2009-06-10 21:25 42592 c:\windows\SysWOW64\ole2.dll + 2009-07-14 00:12 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\odtext32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\odpdx32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\odfox32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\odexl32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 20480 c:\windows\SysWOW64\oddbse32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 24576 c:\windows\SysWOW64\odbcji32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 86016 c:\windows\SysWOW64\odbccu32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 86016 c:\windows\SysWOW64\odbccr32.dll + 2009-07-14 00:12 . 2009-07-14 01:14 32768 c:\windows\SysWOW64\odbcconf.exe + 2009-07-14 00:12 . 2009-07-14 01:16 40960 c:\windows\SysWOW64\odbcconf.dll + 2009-07-14 00:12 . 2009-07-14 01:16 49152 c:\windows\SysWOW64\odbcbcp.dll + 2009-07-14 00:11 . 2009-07-14 01:14 86016 c:\windows\SysWOW64\odbcad32.exe + 2009-07-14 00:11 . 2009-07-14 01:16 24576 c:\windows\SysWOW64\odbc32gt.dll + 2010-03-06 09:45 . 2009-12-22 08:24 14336 c:\windows\SysWOW64\ntvdm64.dll + 2009-07-14 00:18 . 2009-07-14 01:14 61952 c:\windows\SysWOW64\ntprint.exe + 2009-07-13 23:41 . 2009-07-14 01:16 15872 c:\windows\SysWOW64\ntlanui2.dll + 2009-07-13 23:31 . 2009-07-14 01:16 69120 c:\windows\SysWOW64\ntlanman.dll + 2009-07-13 23:38 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\ntdsapi.dll + 2009-07-13 23:38 . 2009-07-14 01:14 85504 c:\windows\SysWOW64\nslookup.exe + 2009-07-13 23:53 . 2009-07-14 01:16 27136 c:\windows\SysWOW64\nshhttp.dll + 2009-07-13 23:56 . 2009-07-14 01:16 16896 c:\windows\SysWOW64\npmproxy.dll + 2009-07-13 23:15 . 2009-07-14 01:16 26112 c:\windows\SysWOW64\Nlsdl.dll + 2009-07-13 23:15 . 2009-07-14 01:10 68608 c:\windows\SysWOW64\nlsbres.dll + 2009-07-13 23:56 . 2009-07-14 01:16 11264 c:\windows\SysWOW64\nlmsprep.dll + 2009-07-13 23:53 . 2009-07-14 01:16 51712 c:\windows\SysWOW64\nlaapi.dll + 2009-12-12 01:04 . 2009-12-12 01:04 69632 c:\windows\SysWOW64\nl\AuthFWWizFwk.Resources.dll + 2009-07-13 23:16 . 2009-07-14 01:14 76800 c:\windows\SysWOW64\newdev.exe + 2009-07-13 23:53 . 2009-07-14 01:16 40960 c:\windows\SysWOW64\networkitemfactory.dll + 2009-07-13 23:37 . 2009-07-14 01:16 22016 c:\windows\SysWOW64\netutils.dll + 2009-07-13 23:55 . 2009-07-14 01:14 27136 c:\windows\SysWOW64\NETSTAT.EXE + 2009-07-13 23:54 . 2009-07-14 01:14 96256 c:\windows\SysWOW64\netsh.exe + 2009-07-13 23:39 . 2009-07-14 01:14 26112 c:\windows\SysWOW64\Netplwiz.exe + 2009-07-13 23:54 . 2009-07-14 01:14 25088 c:\windows\SysWOW64\netiougc.exe + 2010-07-07 07:21 . 2009-11-25 10:47 49472 c:\windows\SysWOW64\netfxperf.dll + 2009-07-13 23:12 . 2009-07-14 01:07 18944 c:\windows\SysWOW64\netevent.dll + 2009-07-13 23:53 . 2009-07-14 01:14 24064 c:\windows\SysWOW64\netbtugc.exe + 2009-07-13 23:53 . 2009-07-14 01:16 14336 c:\windows\SysWOW64\netbios.dll + 2009-07-13 23:37 . 2009-07-14 01:16 56832 c:\windows\SysWOW64\netapi32.dll + 2009-07-13 23:37 . 2009-07-14 01:14 46080 c:\windows\SysWOW64\net.exe + 2009-07-13 23:34 . 2009-07-14 01:16 93696 c:\windows\SysWOW64\negoexts.dll + 2009-07-13 23:52 . 2009-07-14 01:16 12288 c:\windows\SysWOW64\ndproxystub.dll + 2009-07-13 23:52 . 2009-07-14 01:16 71168 c:\windows\SysWOW64\ndishc.dll + 2009-07-13 23:52 . 2009-07-14 01:16 41984 c:\windows\SysWOW64\ndiscapCfg.dll + 2009-07-13 23:52 . 2009-07-14 01:16 94720 c:\windows\SysWOW64\ndfhcdiscovery.dll + 2009-07-13 23:52 . 2009-07-14 01:16 29696 c:\windows\SysWOW64\ndfetw.dll + 2009-07-13 23:16 . 2009-07-14 01:14 75264 c:\windows\SysWOW64\ndadmin.exe + 2009-07-13 23:32 . 2009-07-14 01:16 60928 c:\windows\SysWOW64\ncryptui.dll + 2009-07-13 23:30 . 2009-07-14 01:16 49152 c:\windows\SysWOW64\ncobjapi.dll + 2009-07-13 23:53 . 2009-07-14 01:16 78336 c:\windows\SysWOW64\nci.dll + 2009-07-13 23:22 . 2009-07-14 01:16 19968 c:\windows\SysWOW64\NcdProp.dll + 2009-07-13 23:27 . 2009-07-14 01:16 13312 c:\windows\SysWOW64\NativeHooks.dll + 2009-07-13 23:52 . 2009-07-14 01:16 38912 c:\windows\SysWOW64\napipsec.dll + 2009-07-13 23:54 . 2009-07-14 01:16 52224 c:\windows\SysWOW64\NapiNSP.dll + 2009-07-13 23:53 . 2009-07-14 01:16 67584 c:\windows\SysWOW64\napdsnap.dll + 2009-07-13 23:53 . 2009-07-14 01:22 46080 c:\windows\SysWOW64\NAPCRYPT.DLL + 2009-07-13 23:13 . 2009-07-14 01:14 70656 c:\windows\SysWOW64\MuiUnattend.exe + 2009-07-13 23:25 . 2009-07-14 01:15 13312 c:\windows\SysWOW64\muifontsetup.dll + 2009-12-12 01:04 . 2009-12-12 01:04 12624 c:\windows\SysWOW64\MUI\0413\mscorees.dll + 2010-07-07 07:21 . 2009-11-25 10:47 11600 c:\windows\SysWOW64\MUI\0409\mscorees.dll + 2009-07-13 23:44 . 2009-07-14 01:15 27648 c:\windows\SysWOW64\mtxlegih.dll + 2009-07-13 23:44 . 2009-07-14 01:15 22528 c:\windows\SysWOW64\mtxdm.dll + 2010-03-06 09:44 . 2009-12-19 09:02 22016 c:\windows\SysWOW64\msyuv.dll + 2009-10-16 19:47 . 2009-10-16 19:47 82432 c:\windows\SysWOW64\msxml4r.dll + 2009-10-16 19:47 . 2009-10-16 19:47 44544 c:\windows\SysWOW64\msxml4a.dll + 2010-03-06 09:44 . 2009-12-19 09:02 31744 c:\windows\SysWOW64\msvidc32.dll + 2009-07-13 23:10 . 2009-07-14 01:07 60928 c:\windows\SysWOW64\msvcrt40.dll + 2009-07-13 23:11 . 2009-07-14 01:15 59904 c:\windows\SysWOW64\msvcirt.dll + 2009-07-14 00:13 . 2009-07-14 01:15 17408 c:\windows\SysWOW64\msswch.dll + 2009-07-14 00:13 . 2009-07-14 01:15 35328 c:\windows\SysWOW64\mssprxy.dll + 2009-07-13 23:32 . 2009-07-14 01:15 39424 c:\windows\SysWOW64\mssign32.dll + 2009-07-14 00:12 . 2009-07-14 01:15 10240 c:\windows\SysWOW64\msshooks.dll + 2009-07-14 00:12 . 2009-07-14 01:15 59392 c:\windows\SysWOW64\msscntrs.dll + 2010-03-06 09:44 . 2009-12-19 09:02 13312 c:\windows\SysWOW64\msrle32.dll + 2009-07-14 00:02 . 2009-07-14 01:15 44544 c:\windows\SysWOW64\MsRdpWebAccess.dll + 2009-07-13 23:41 . 2009-07-14 01:15 44032 c:\windows\SysWOW64\msports.dll + 2009-07-13 23:12 . 2009-07-14 01:15 35328 c:\windows\SysWOW64\mspatcha.dll + 2009-07-13 23:42 . 2009-07-14 01:15 86528 c:\windows\SysWOW64\msoert2.dll + 2009-07-13 23:11 . 2009-07-14 01:07 60416 c:\windows\SysWOW64\msobjs.dll + 2009-07-13 21:03 . 2009-07-14 01:15 61440 c:\windows\SysWOW64\msjter40.dll + 2009-07-13 21:03 . 2009-07-14 01:15 24576 c:\windows\SysWOW64\msjint40.dll + 2009-07-13 23:31 . 2009-07-14 01:15 20480 c:\windows\SysWOW64\msisip.dll + 2009-07-13 23:26 . 2009-07-14 01:15 31232 c:\windows\SysWOW64\msimtf.dll + 2009-07-13 23:31 . 2009-07-14 01:07 25088 c:\windows\SysWOW64\msimsg.dll + 2009-07-13 23:31 . 2009-07-14 01:15 15872 c:\windows\SysWOW64\msiltcfg.dll + 2009-07-13 23:31 . 2009-07-14 01:14 73216 c:\windows\SysWOW64\msiexec.exe + 2009-07-13 23:39 . 2009-07-14 01:15 53248 c:\windows\SysWOW64\msident.dll + 2011-03-25 21:06 . 2011-03-25 21:06 48640 c:\windows\SysWOW64\mshtmler.dll + 2011-06-16 00:58 . 2011-04-22 23:26 72704 c:\windows\SysWOW64\mshtmled.dll + 2011-03-25 21:06 . 2011-03-25 21:06 11776 c:\windows\SysWOW64\mshta.exe + 2011-03-25 21:06 . 2011-03-25 21:06 10752 c:\windows\SysWOW64\msfeedssync.exe + 2011-03-25 21:06 . 2011-03-25 21:06 41472 c:\windows\SysWOW64\msfeedsbs.dll + 2009-07-13 23:44 . 2009-07-14 01:06 21504 c:\windows\SysWOW64\msdtcVSp1res.dll + 2009-07-13 22:00 . 2009-06-10 21:15 19429 c:\windows\SysWOW64\Msdtc\Trace\msdtcvtr.bat + 2009-07-14 00:03 . 2009-07-14 01:15 30208 c:\windows\SysWOW64\msdmo.dll + 2009-07-13 23:26 . 2009-07-14 01:15 85504 c:\windows\SysWOW64\msctfui.dll + 2009-07-13 23:26 . 2009-07-14 01:15 81920 c:\windows\SysWOW64\msctfp.dll + 2009-07-13 23:26 . 2009-07-14 01:15 19968 c:\windows\SysWOW64\MsCtfMonitor.dll + 2009-07-14 00:11 . 2009-07-14 01:15 28672 c:\windows\SysWOW64\mscpxl32.dLL + 2009-07-13 20:46 . 2009-06-10 21:23 80720 c:\windows\SysWOW64\mscories.dll + 2009-07-13 23:32 . 2009-07-14 01:15 10240 c:\windows\SysWOW64\mscat32.dll + 2010-03-06 09:42 . 2009-08-29 06:57 34816 c:\windows\SysWOW64\msasn1.dll + 2009-07-14 00:03 . 2009-07-14 01:14 20992 c:\windows\SysWOW64\msacm32.drv + 2009-07-14 00:03 . 2009-07-14 01:15 72192 c:\windows\SysWOW64\msacm32.dll + 2009-07-13 23:55 . 2009-07-14 01:14 11264 c:\windows\SysWOW64\MRINFO.EXE + 2009-07-13 23:54 . 2009-07-14 01:15 75264 c:\windows\SysWOW64\mprdim.dll + 2009-07-13 23:55 . 2009-07-14 01:15 64000 c:\windows\SysWOW64\mpr.dll + 2009-07-14 00:07 . 2009-07-14 01:15 79872 c:\windows\SysWOW64\MP3DMOD.DLL + 2009-07-13 23:15 . 2009-07-14 01:14 13312 c:\windows\SysWOW64\mountvol.exe + 2009-07-13 23:15 . 2009-07-13 23:15 20992 c:\windows\SysWOW64\more.com + 2009-07-13 23:15 . 2009-07-13 23:15 25088 c:\windows\SysWOW64\mode.com + 2009-07-14 00:03 . 2009-07-14 01:15 12800 c:\windows\SysWOW64\mmcico.dll + 2009-07-14 00:03 . 2009-07-14 01:15 70656 c:\windows\SysWOW64\mmci.dll + 2009-07-14 00:12 . 2009-07-14 01:15 38912 c:\windows\SysWOW64\mimefilt.dll + 2009-07-14 00:13 . 2009-07-14 01:16 57344 c:\windows\SysWOW64\migwiz\replacementmanifests\WindowsSearchEngine\WSearchMigPlugin.dll + 2009-07-13 23:51 . 2009-07-14 01:16 72192 c:\windows\SysWOW64\migwiz\replacementmanifests\Usb\usbmigplugin.dll + 2009-07-14 00:01 . 2009-07-14 01:16 75776 c:\windows\SysWOW64\migwiz\replacementmanifests\Microsoft-Windows-TerminalServices-LicenseServer\TlsRepPlugin.dll + 2009-07-13 23:42 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-shmig\shmig.dll + 2009-07-13 23:40 . 2009-07-14 01:16 19456 c:\windows\SysWOW64\migwiz\replacementmanifests\Microsoft-Windows-GameUXMig\gameuxmig.dll + 2009-07-14 00:03 . 2009-07-14 01:16 68608 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-audio-mmecore-other\audmigplugin.dll + 2009-07-13 23:15 . 2009-07-14 01:16 97280 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-international-core\nlscoremig.dll + 2009-07-13 23:32 . 2009-07-14 01:16 63488 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-activedirectory-webservices\adwsmigrate.dll + 2009-07-13 23:52 . 2009-07-14 01:16 89088 c:\windows\SysWOW64\migwiz\dlmanifests\Networking-MPSSVC-Svc\icfupgd.dll + 2009-07-13 23:26 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\TableTextServiceMig.dll + 2009-07-13 23:26 . 2009-07-14 01:16 22528 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\imtcmig.dll + 2009-07-13 23:26 . 2009-07-14 01:16 32768 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\imscmig.dll + 2009-07-13 23:26 . 2009-07-14 01:16 39936 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\imkrmig.dll + 2009-07-13 23:26 . 2009-07-14 01:16 35328 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\imjpmig.dll + 2009-07-13 23:42 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-shmig-DL\shmig.dll + 2009-07-13 23:54 . 2009-07-14 01:16 58368 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-RasConnectionManager\cmmigr.dll + 2009-07-13 23:14 . 2009-07-14 01:16 95744 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-OfflineFiles-DL\CscMigDl.dll + 2009-07-13 23:52 . 2009-07-14 01:16 62976 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-NetworkBridge\bridgemigplugin.dll + 2009-07-13 23:15 . 2009-07-14 01:16 97280 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-International-Core-DL\nlscoremig.dll + 2009-07-13 23:38 . 2009-07-14 01:16 89600 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-DirectoryServices-ADAM-DL\adammigrate.dll + 2009-07-13 23:44 . 2009-07-14 01:16 65024 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-COM-DTC-Setup-DL\msdtcstp.dll + 2009-07-13 23:44 . 2009-07-14 01:16 55296 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-COM-ComPlus-Setup-DL\commig.dll + 2009-07-13 23:51 . 2009-07-14 01:16 75776 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-Bluetooth-Config\BthMigPlugin.dll + 2009-07-13 23:36 . 2009-07-14 01:16 74752 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-ADFS-DL\adfsmig.dll + 2009-07-13 23:32 . 2009-07-14 01:16 63488 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-ActiveDirectory-WebServices-DL\adwsmigrate.dll + 2009-07-13 23:29 . 2009-07-14 01:16 61440 c:\windows\SysWOW64\migwiz\dlmanifests\BITSExtensions-Server\bitsmig.dll + 2009-07-14 00:13 . 2009-07-14 01:16 57344 c:\windows\SysWOW64\migration\WSearchMigPlugin.dll + 2011-03-25 21:06 . 2011-03-25 21:06 66048 c:\windows\SysWOW64\migration\WininetPlugin.dll + 2009-07-13 23:26 . 2009-07-14 01:16 31744 c:\windows\SysWOW64\migration\TableTextServiceMig.dll + 2009-07-13 23:41 . 2009-07-14 01:16 90112 c:\windows\SysWOW64\migration\shmig.dll + 2009-07-14 00:14 . 2009-07-14 01:16 44032 c:\windows\SysWOW64\migration\SCGMigPlugin.dll + 2009-07-13 23:19 . 2009-07-14 01:16 98304 c:\windows\SysWOW64\migration\PlaMig.dll + 2009-07-13 23:15 . 2009-07-14 01:16 97280 c:\windows\SysWOW64\migration\nlscoremig.dll + 2009-07-13 23:53 . 2009-07-14 01:16 57856 c:\windows\SysWOW64\migration\netiomig.dll + 2009-07-13 23:53 . 2009-07-14 01:15 51200 c:\windows\SysWOW64\migration\IphlpsvcMigPlugin.dll + 2009-07-13 23:26 . 2009-07-14 01:15 22528 c:\windows\SysWOW64\migration\imtcmig.dll + 2009-07-13 23:26 . 2009-07-14 01:15 32768 c:\windows\SysWOW64\migration\imscmig.dll + 2009-07-13 23:26 . 2009-07-14 01:15 39936 c:\windows\SysWOW64\migration\imkrmig.dll + 2009-07-13 23:26 . 2009-07-14 01:15 35328 c:\windows\SysWOW64\migration\imjpmig.dll + 2009-07-13 23:40 . 2009-07-14 01:15 19456 c:\windows\SysWOW64\migration\gameuxmig.dll + 2009-07-13 23:44 . 2009-07-14 01:15 55296 c:\windows\SysWOW64\migration\commig.dll + 2009-07-13 23:51 . 2009-07-14 01:15 75776 c:\windows\SysWOW64\migration\bthmigplugin.dll + 2009-07-14 00:03 . 2009-07-14 01:14 68608 c:\windows\SysWOW64\migration\audmigplugin.dll + 2009-07-13 23:17 . 2009-07-14 01:20 91728 c:\windows\SysWOW64\MigAutoPlay.exe + 2009-07-14 00:03 . 2009-07-14 01:15 16896 c:\windows\SysWOW64\midimap.dll + 2009-07-13 23:55 . 2009-07-14 01:15 18944 c:\windows\SysWOW64\mgmtapi.dll + 2009-07-14 00:08 . 2009-07-14 01:15 53248 c:\windows\SysWOW64\mfvdsp.dll + 2009-07-14 00:03 . 2009-07-14 01:14 23040 c:\windows\SysWOW64\mfpmp.exe + 2009-07-14 00:03 . 2009-07-14 01:15 77312 c:\windows\SysWOW64\mfmjpegdec.dll + 2009-07-13 23:44 . 2009-07-14 01:15 25600 c:\windows\SysWOW64\mfcsubs.dll + 2009-07-14 00:03 . 2009-07-14 01:15 92672 c:\windows\SysWOW64\mfAACEnc.dll + 2009-07-13 23:25 . 2009-07-14 01:15 41984 c:\windows\SysWOW64\mf3216.dll + 2009-07-14 00:03 . 2009-07-14 01:15 23040 c:\windows\SysWOW64\mciwave.dll + 2009-07-14 00:03 . 2009-07-14 01:15 23552 c:\windows\SysWOW64\mciseq.dll + 2009-07-14 00:03 . 2009-07-14 01:15 36352 c:\windows\SysWOW64\mciqtz32.dll + 2009-07-14 00:03 . 2009-07-14 01:15 38912 c:\windows\SysWOW64\mcicda.dll + 2010-03-06 09:44 . 2009-12-19 09:02 84480 c:\windows\SysWOW64\mciavi32.dll + 2009-07-14 00:12 . 2009-07-14 01:15 76800 c:\windows\SysWOW64\mapistub.dll + 2009-07-14 00:12 . 2009-07-14 01:15 76800 c:\windows\SysWOW64\mapi32.dll + 2009-07-13 23:12 . 2009-07-14 01:14 98816 c:\windows\SysWOW64\makecab.exe + 2009-07-13 23:27 . 2009-07-14 01:15 40448 c:\windows\SysWOW64\Magnification.dll + 2009-07-21 11:29 . 2009-07-21 11:29 98304 c:\windows\SysWOW64\Macromed\Shockwave 10\SwOnce.dll + 2009-07-21 11:29 . 2009-07-21 11:29 86016 c:\windows\SysWOW64\Macromed\Shockwave 10\SwMenuX.dll + 2009-07-21 11:29 . 2009-07-21 11:29 77824 c:\windows\SysWOW64\Macromed\Shockwave 10\SwInit.exe + 2009-07-21 11:29 . 2009-07-21 11:29 24576 c:\windows\SysWOW64\Macromed\Shockwave 10\DynaPlayer.dll + 2010-01-15 00:52 . 2010-01-15 01:00 88589 c:\windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe + 2009-07-13 23:15 . 2009-07-14 01:15 41472 c:\windows\SysWOW64\luainstall.dll + 2009-07-14 00:02 . 2009-07-14 01:15 20992 c:\windows\SysWOW64\lsmproxy.dll + 2009-07-13 23:25 . 2009-07-14 01:11 25600 c:\windows\SysWOW64\lpk.dll + 2009-07-13 23:19 . 2009-07-14 01:14 82432 c:\windows\SysWOW64\logman.exe + 2009-07-13 23:29 . 2009-07-14 01:15 69632 c:\windows\SysWOW64\loghours.dll + 2009-07-14 00:08 . 2009-07-14 01:14 95232 c:\windows\SysWOW64\logagent.exe + 2009-07-13 23:19 . 2009-07-14 01:14 42496 c:\windows\SysWOW64\lodctr.exe + 2009-07-13 23:45 . 2009-07-14 01:14 89600 c:\windows\SysWOW64\LocationNotifications.exe + 2009-07-13 23:39 . 2009-07-14 01:15 22016 c:\windows\SysWOW64\linkinfo.dll + 2011-03-25 21:06 . 2011-03-25 21:06 23552 c:\windows\SysWOW64\licmgr10.dll + 2007-01-17 13:47 . 2007-01-17 13:47 69632 c:\windows\SysWOW64\lfgif13n.dll + 2007-01-17 13:47 . 2007-01-17 13:47 57344 c:\windows\SysWOW64\lfbmp13n.dll + 2009-07-13 23:15 . 2009-07-14 01:14 14336 c:\windows\SysWOW64\label.exe + 2009-07-13 23:51 . 2009-07-14 01:15 54272 c:\windows\SysWOW64\l2nacp.dll + 2009-07-13 23:51 . 2009-07-14 01:15 57344 c:\windows\SysWOW64\l2gpstore.dll + 2009-07-13 23:11 . 2009-07-14 01:15 20480 c:\windows\SysWOW64\ktmw32.dll + 2009-07-13 23:15 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\ktmutil.exe + 2009-07-13 23:32 . 2009-07-14 01:15 19456 c:\windows\SysWOW64\keyiso.dll + 2009-07-13 23:25 . 2009-07-14 01:11 10752 c:\windows\SysWOW64\KBDKOR.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 11264 c:\windows\SysWOW64\KBDJPN.DLL + 2011-03-25 21:06 . 2011-03-25 21:06 65024 c:\windows\SysWOW64\jsproxy.dll + 2010-03-06 09:44 . 2009-12-19 09:02 50176 c:\windows\SysWOW64\iyuv_32.dll + 2010-01-15 00:52 . 2008-04-01 20:40 24720 c:\windows\SysWOW64\IVIresize.dll + 2009-07-13 23:40 . 2009-07-14 01:14 86528 c:\windows\SysWOW64\isoburn.exe + 2009-07-13 23:46 . 2009-07-14 01:15 66048 c:\windows\SysWOW64\iscsiwmi.dll + 2009-07-13 23:46 . 2009-07-14 01:15 28672 c:\windows\SysWOW64\iscsium.dll + 2009-07-13 23:46 . 2009-07-14 01:15 50688 c:\windows\SysWOW64\iscsidsc.dll + 2009-07-13 23:53 . 2009-07-14 01:15 15360 c:\windows\SysWOW64\irclass.dll + 2009-07-13 23:55 . 2009-07-14 01:14 27136 c:\windows\SysWOW64\ipconfig.exe + 2009-07-13 23:22 . 2009-07-14 01:15 10752 c:\windows\SysWOW64\IPBusEnumProxy.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0c0c\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0816\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0804\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0416\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\040c\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0404\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\002d\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0024\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0021\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\001f\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\001e\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\001d\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\001b\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\001a\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0019\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0015\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0014\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0013\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0012\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0011\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35840 c:\windows\SysWOW64\InstallShield\setupdir\0010\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\000e\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\000b\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35840 c:\windows\SysWOW64\InstallShield\setupdir\000a\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0009\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35840 c:\windows\SysWOW64\InstallShield\setupdir\0008\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35328 c:\windows\SysWOW64\InstallShield\setupdir\0007\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0006\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\setupdir\0005\_setup.dll + 2009-07-13 21:23 . 2009-07-14 01:11 35840 c:\windows\SysWOW64\InstallShield\setupdir\0003\_setup.dll + 2009-07-13 21:23 . 2009-06-10 21:48 71680 c:\windows\SysWOW64\InstallShield\setup.exe + 2009-07-13 21:23 . 2009-07-14 01:11 34816 c:\windows\SysWOW64\InstallShield\_setup.dll + 2009-06-10 21:48 . 2009-06-10 21:48 27648 c:\windows\SysWOW64\InstallShield\_isdel.exe + 2011-03-25 21:06 . 2011-03-25 21:06 78848 c:\windows\SysWOW64\inseng.dll + 2009-07-14 00:36 . 2009-06-10 21:14 98632 c:\windows\SysWOW64\infocardapi.dll + 2009-07-13 23:42 . 2009-07-14 01:06 84480 c:\windows\SysWOW64\INETRES.dll + 2009-07-13 23:55 . 2009-07-14 01:15 52224 c:\windows\SysWOW64\inetmib1.dll + 2011-03-25 21:06 . 2011-03-25 21:06 35840 c:\windows\SysWOW64\imgutil.dll + 2009-07-13 23:26 . 2009-07-14 01:15 11776 c:\windows\SysWOW64\IME\shared\res\padrs804.dll + 2009-07-13 23:26 . 2009-07-14 01:15 17920 c:\windows\SysWOW64\IME\shared\res\padrs412.dll + 2009-07-13 23:26 . 2009-07-14 01:15 18432 c:\windows\SysWOW64\IME\shared\res\padrs411.dll + 2009-07-13 23:26 . 2009-07-14 01:15 11264 c:\windows\SysWOW64\IME\shared\res\padrs404.dll + 2009-07-13 23:26 . 2009-07-14 01:15 15360 c:\windows\SysWOW64\IME\shared\imever.dll + 2009-07-13 23:26 . 2009-07-14 01:15 32768 c:\windows\SysWOW64\IME\shared\IMEPADSM.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 31744 c:\windows\SysWOW64\IME\shared\imecfm.dll + 2009-07-13 23:26 . 2009-07-14 01:15 29696 c:\windows\SysWOW64\IME\shared\IMEAPIS.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 58368 c:\windows\SysWOW64\IME\IMETC10\applets\IMTCDIC.dll + 2009-07-13 23:26 . 2009-07-14 01:15 53760 c:\windows\SysWOW64\IME\IMESC5\PMIGRATE.dll + 2009-07-13 23:26 . 2009-07-14 01:14 90112 c:\windows\SysWOW64\IME\IMESC5\IMSCPROP.exe + 2009-07-13 23:26 . 2009-07-14 01:15 53248 c:\windows\SysWOW64\IME\imekr8\imkrudt.dll + 2009-07-13 23:26 . 2009-07-14 01:15 78848 c:\windows\SysWOW64\IME\imekr8\dicts\imkrhjd.dll + 2009-07-13 23:26 . 2009-07-14 01:14 58368 c:\windows\SysWOW64\IME\IMEJP10\IMJPUEX.EXE + 2009-07-13 23:26 . 2009-07-14 01:14 26112 c:\windows\SysWOW64\IME\IMEJP10\imjppdmg.exe + 2009-07-13 23:26 . 2009-07-14 01:14 74240 c:\windows\SysWOW64\IME\IMEJP10\IMJPMGR.EXE + 2009-07-13 23:26 . 2009-07-14 01:14 59904 c:\windows\SysWOW64\IME\IMEJP10\IMJPDSVR.EXE + 2009-07-13 23:26 . 2009-07-14 01:15 36864 c:\windows\SysWOW64\IME\IMEJP10\IMJPDCTP.DLL + 2009-07-13 23:26 . 2009-07-14 01:14 14848 c:\windows\SysWOW64\IME\IMEJP10\IMJPDADM.EXE + 2009-07-13 23:54 . 2009-07-14 01:15 20992 c:\windows\SysWOW64\ifmon.dll + 2011-03-25 21:06 . 2011-03-25 21:06 86528 c:\windows\SysWOW64\iesysprep.dll + 2011-03-25 21:06 . 2011-03-25 21:06 74752 c:\windows\SysWOW64\iesetup.dll + 2011-03-25 21:06 . 2011-03-25 21:06 31744 c:\windows\SysWOW64\iernonce.dll + 2011-03-25 21:06 . 2011-03-25 21:06 74240 c:\windows\SysWOW64\ie4uinit.exe + 2009-07-13 23:36 . 2009-07-14 01:15 45056 c:\windows\SysWOW64\IDStore.dll + 2009-07-13 23:15 . 2009-07-14 01:15 33792 c:\windows\SysWOW64\idndl.dll + 2009-07-13 23:53 . 2009-07-14 01:14 14336 c:\windows\SysWOW64\icsunattend.exe + 2009-07-13 23:25 . 2009-07-14 01:15 21504 c:\windows\SysWOW64\icmui.dll + 2010-08-12 05:24 . 2010-07-29 06:30 82944 c:\windows\SysWOW64\iccvid.dll + 2011-03-25 21:06 . 2011-03-25 21:06 66048 c:\windows\SysWOW64\icardie.dll + 2009-07-13 23:15 . 2009-07-14 01:14 27136 c:\windows\SysWOW64\icacls.exe + 2009-07-13 23:53 . 2009-07-14 01:15 77824 c:\windows\SysWOW64\iassvcs.dll + 2009-07-13 23:53 . 2009-07-14 01:15 34304 c:\windows\SysWOW64\iaspolcy.dll + 2009-07-13 23:53 . 2009-07-14 01:15 81408 c:\windows\SysWOW64\iashlpr.dll + 2009-07-13 23:53 . 2009-07-14 01:15 49664 c:\windows\SysWOW64\iasdatastore.dll + 2009-07-13 23:53 . 2009-07-14 01:15 59392 c:\windows\SysWOW64\iasads.dll + 2009-07-13 23:53 . 2009-07-14 01:15 78336 c:\windows\SysWOW64\iasacct.dll + 2009-07-13 23:53 . 2009-07-14 01:15 19456 c:\windows\SysWOW64\ias.dll + 2009-07-13 23:25 . 2009-07-14 01:15 33792 c:\windows\SysWOW64\htui.dll + 2009-07-13 23:12 . 2009-07-14 01:15 34816 c:\windows\SysWOW64\httpapi.dll + 2009-07-13 23:52 . 2009-07-14 01:15 14848 c:\windows\SysWOW64\hnetmon.dll + 2007-06-05 22:30 . 2007-06-05 22:30 41296 c:\windows\SysWOW64\hlp95en.dll + 2009-07-13 23:43 . 2009-07-14 01:15 84992 c:\windows\SysWOW64\hlink.dll + 2009-07-13 23:51 . 2009-07-14 01:15 49152 c:\windows\SysWOW64\hidserv.dll + 2009-07-13 23:51 . 2009-07-14 01:15 22016 c:\windows\SysWOW64\hid.dll + 2009-07-14 00:12 . 2009-07-14 01:15 43008 c:\windows\SysWOW64\hhsetup.dll + 2009-07-14 00:12 . 2009-07-14 01:14 15360 c:\windows\SysWOW64\hh.exe + 2009-07-14 00:12 . 2009-07-14 01:15 55808 c:\windows\SysWOW64\HelpPaneProxy.dll + 2009-07-13 23:16 . 2009-07-14 01:14 64512 c:\windows\SysWOW64\hdwwiz.exe + 2009-07-13 23:40 . 2009-07-14 01:15 26112 c:\windows\SysWOW64\hcproviders.dll + 2009-07-13 23:46 . 2009-07-14 01:15 66048 c:\windows\SysWOW64\hbaapi.dll + 2009-07-13 23:40 . 2009-07-14 01:14 16384 c:\windows\SysWOW64\grpconv.exe + 2009-07-13 23:39 . 2009-07-14 01:14 16896 c:\windows\SysWOW64\gpupdate.exe + 2009-07-13 23:34 . 2009-07-14 01:15 18944 c:\windows\SysWOW64\gptext.dll + 2009-07-14 00:18 . 2009-07-14 01:15 33792 c:\windows\SysWOW64\gpprnext.dll + 2009-07-13 23:38 . 2009-07-14 01:15 79872 c:\windows\SysWOW64\gpapi.dll + 2009-07-13 23:31 . 2009-07-14 01:14 65024 c:\windows\SysWOW64\getmac.exe + 2009-07-14 00:14 . 2009-07-14 01:15 40448 c:\windows\SysWOW64\FXSEXT32.dll + 2009-07-14 00:15 . 2009-07-14 01:15 78336 c:\windows\SysWOW64\FXSCOM.dll + 2009-07-13 23:52 . 2009-07-14 01:15 44032 c:\windows\SysWOW64\FwRemoteSvr.dll + 2009-07-13 23:52 . 2009-07-14 01:15 57856 c:\windows\SysWOW64\fwcfg.dll + 2009-07-13 23:55 . 2009-07-14 01:14 42496 c:\windows\SysWOW64\ftp.exe + 2011-05-12 18:57 . 2011-03-11 05:37 74240 c:\windows\SysWOW64\fsutil.exe + 2009-07-13 23:53 . 2009-07-14 01:15 97792 c:\windows\SysWOW64\fphc.dll + 2009-07-13 23:15 . 2009-07-13 23:15 35840 c:\windows\SysWOW64\format.com + 2009-07-13 23:15 . 2009-07-14 01:14 43008 c:\windows\SysWOW64\forfiles.exe + 2010-03-06 09:45 . 2009-10-19 14:10 70656 c:\windows\SysWOW64\fontsub.dll + 2009-07-13 23:25 . 2009-07-14 01:15 93696 c:\windows\SysWOW64\fms.dll + 2009-07-13 23:14 . 2009-07-14 01:15 23552 c:\windows\SysWOW64\fmifs.dll + 2006-11-13 01:07 . 2006-11-13 01:07 36160 c:\windows\SysWOW64\FM20NLD.DLL + 2006-10-26 13:42 . 2006-10-26 13:42 36160 c:\windows\SysWOW64\FM20FRA.DLL + 2006-10-26 12:10 . 2006-10-26 12:10 33088 c:\windows\SysWOW64\FM20ENU.DLL + 2009-07-13 23:14 . 2009-07-14 01:14 18944 c:\windows\SysWOW64\fltMC.exe + 2009-07-13 23:14 . 2009-07-14 01:15 14848 c:\windows\SysWOW64\fltLib.dll + 2009-07-14 00:12 . 2009-07-14 01:14 14336 c:\windows\SysWOW64\fixmapi.exe + 2009-07-13 23:55 . 2009-07-14 01:14 10240 c:\windows\SysWOW64\finger.exe + 2009-07-13 23:16 . 2009-07-14 01:14 62464 c:\windows\SysWOW64\findstr.exe + 2009-07-14 00:18 . 2009-07-14 01:15 58368 c:\windows\SysWOW64\findnetprinters.dll + 2009-07-13 23:15 . 2009-07-14 01:14 13824 c:\windows\SysWOW64\find.exe + 2009-07-13 23:37 . 2009-07-14 01:15 35328 c:\windows\SysWOW64\feclient.dll + 2009-07-13 23:22 . 2009-07-14 01:15 24576 c:\windows\SysWOW64\fdWNet.dll + 2009-07-13 23:53 . 2009-07-14 01:15 81920 c:\windows\SysWOW64\fdWCN.dll + 2009-07-13 23:22 . 2009-07-14 01:15 76800 c:\windows\SysWOW64\fdSSDP.dll + 2009-07-13 23:22 . 2009-07-14 01:15 27136 c:\windows\SysWOW64\fdProxy.dll + 2009-07-13 23:22 . 2009-07-14 01:15 41984 c:\windows\SysWOW64\fdPnp.dll + 2009-07-13 23:39 . 2009-07-14 01:15 58880 c:\windows\SysWOW64\fdeploy.dll + 2009-07-13 23:51 . 2009-07-14 01:15 98304 c:\windows\SysWOW64\fdBth.dll + 2009-07-13 23:15 . 2009-07-14 01:14 19968 c:\windows\SysWOW64\fc.exe + 2009-12-11 18:08 . 2009-12-11 18:08 52272 c:\windows\SysWOW64\ezUPBHook.dll + 2009-09-02 11:00 . 2009-09-02 11:00 79920 c:\windows\SysWOW64\ezSetupMgr.exe + 2009-09-02 11:00 . 2009-09-02 11:00 61488 c:\windows\SysWOW64\ezRas7.dll + 2009-12-11 18:08 . 2009-12-11 18:08 18992 c:\windows\SysWOW64\ezMAPIHelper.exe + 2009-09-02 11:00 . 2009-09-02 11:00 72752 c:\windows\SysWOW64\ezEMail7.dll + 2009-07-13 23:12 . 2009-07-14 01:14 53248 c:\windows\SysWOW64\extrac32.exe + 2009-07-13 23:12 . 2009-07-14 01:14 53248 c:\windows\SysWOW64\expand.exe + 2009-07-13 23:29 . 2009-07-14 01:14 79872 c:\windows\SysWOW64\eventvwr.exe + 2009-07-13 23:31 . 2009-07-14 01:14 35328 c:\windows\SysWOW64\eventcreate.exe + 2009-07-13 23:23 . 2009-07-14 01:15 16896 c:\windows\SysWOW64\eventcls.dll + 2009-07-13 23:32 . 2009-07-14 01:15 38912 c:\windows\SysWOW64\esentprf.dll + 2009-07-13 23:54 . 2009-07-14 01:15 66048 c:\windows\SysWOW64\eqossnap.dll + 2009-07-14 00:03 . 2009-07-14 01:15 20992 c:\windows\SysWOW64\encapi.dll + 2009-07-13 23:15 . 2009-07-14 01:15 22016 c:\windows\SysWOW64\elsTrans.dll + 2009-07-13 23:15 . 2009-07-14 01:15 38912 c:\windows\SysWOW64\ELSCore.dll + 2009-07-13 23:33 . 2009-07-14 01:15 24576 c:\windows\SysWOW64\efsutil.dll + 2009-07-13 23:33 . 2009-07-14 01:14 12288 c:\windows\SysWOW64\efsui.exe + 2009-07-13 23:41 . 2009-07-14 01:15 82944 c:\windows\SysWOW64\efsadu.dll + 2009-07-13 23:56 . 2009-07-14 01:15 72704 c:\windows\SysWOW64\EAPQEC.DLL + 2009-07-13 23:56 . 2009-07-14 01:15 56320 c:\windows\SysWOW64\eappprxy.dll + 2009-07-13 23:56 . 2009-07-14 01:15 94208 c:\windows\SysWOW64\eappgnui.dll + 2009-07-13 23:28 . 2009-07-14 01:15 88064 c:\windows\SysWOW64\dxva2.dll + 2009-07-13 23:24 . 2009-07-14 01:15 67072 c:\windows\SysWOW64\dwmapi.dll + 2009-07-14 00:03 . 2009-07-14 01:14 21504 c:\windows\SysWOW64\dvdupgrd.exe + 2009-07-13 23:53 . 2009-07-14 01:15 32256 c:\windows\SysWOW64\dtsh.dll + 2009-07-14 00:03 . 2009-07-14 01:15 20992 c:\windows\SysWOW64\dswave.dll + 2009-07-13 23:41 . 2009-07-14 01:15 44032 c:\windows\SysWOW64\dssec.dll + 2009-07-13 23:33 . 2009-07-14 01:15 22016 c:\windows\SysWOW64\dsrole.dll + 2009-07-13 23:41 . 2009-07-14 01:15 87040 c:\windows\SysWOW64\dskquota.dll + 2010-11-26 23:58 . 1999-08-09 15:51 40208 c:\windows\SysWOW64\DSETUP.DLL + 2009-07-13 23:52 . 2009-07-14 01:15 29696 c:\windows\SysWOW64\dsauth.dll + 2009-07-14 00:11 . 2009-07-14 01:15 20480 c:\windows\SysWOW64\ds32gt.dll + 2009-07-13 23:55 . 2009-07-14 01:15 43008 c:\windows\SysWOW64\drttransport.dll + 2009-07-13 23:55 . 2009-07-14 01:15 58880 c:\windows\SysWOW64\drtprov.dll + 2009-07-14 00:02 . 2009-07-14 01:15 18944 c:\windows\SysWOW64\drprov.dll + 2009-07-13 23:17 . 2009-07-14 01:19 19008 c:\windows\SysWOW64\drivers\wimmount.sys + 2009-07-13 23:15 . 2009-07-14 01:14 66048 c:\windows\SysWOW64\driverquery.exe + 2009-07-14 00:04 . 2009-07-14 01:15 44032 c:\windows\SysWOW64\dpwsockx.dll + 2009-07-14 00:05 . 2009-07-14 01:14 33280 c:\windows\SysWOW64\dpnsvr.exe + 2009-07-14 00:05 . 2009-07-14 01:15 57344 c:\windows\SysWOW64\dpnathlp.dll + 2009-07-14 00:05 . 2009-07-14 01:15 23040 c:\windows\SysWOW64\dpmodemx.dll + 2009-07-14 00:05 . 2009-07-14 01:14 29184 c:\windows\SysWOW64\dplaysvr.exe + 2009-07-13 23:40 . 2009-07-14 01:14 76800 c:\windows\SysWOW64\DpiScaling.exe + 2009-07-13 23:37 . 2009-07-14 01:15 47616 c:\windows\SysWOW64\dpapiprovider.dll + 2009-07-13 23:32 . 2009-07-14 01:14 72192 c:\windows\SysWOW64\dpapimig.exe + 2009-07-13 23:52 . 2009-07-14 01:15 55296 c:\windows\SysWOW64\dot3hc.dll + 2009-07-13 23:52 . 2009-07-14 01:15 74752 c:\windows\SysWOW64\dot3gpclnt.dll + 2009-07-13 23:52 . 2009-07-14 01:15 47104 c:\windows\SysWOW64\dot3dlg.dll + 2009-07-13 23:52 . 2009-07-14 01:15 80896 c:\windows\SysWOW64\dot3cfg.dll + 2009-07-13 23:52 . 2009-07-14 01:15 49152 c:\windows\SysWOW64\dot3api.dll + 2009-07-13 23:15 . 2009-07-14 01:14 15872 c:\windows\SysWOW64\doskey.exe + 2009-07-13 23:39 . 2009-07-14 01:15 37376 c:\windows\SysWOW64\docprop.dll + 2011-04-13 06:44 . 2011-03-03 05:27 28672 c:\windows\SysWOW64\dnscacheugc.exe + 2009-07-13 23:23 . 2009-07-14 01:15 19968 c:\windows\SysWOW64\dmutil.dll + 2009-07-14 00:03 . 2009-07-14 01:15 86016 c:\windows\SysWOW64\dmscript.dll + 2009-07-13 23:16 . 2009-07-14 01:15 42496 c:\windows\SysWOW64\dmocx.dll + 2009-07-14 00:03 . 2009-07-14 01:15 38400 c:\windows\SysWOW64\dmloader.dll + 2009-07-13 23:23 . 2009-07-14 01:15 23040 c:\windows\SysWOW64\dmintf.dll + 2009-07-14 00:03 . 2009-07-14 01:15 63488 c:\windows\SysWOW64\dmcompos.dll + 2009-07-14 00:03 . 2009-07-14 01:15 30720 c:\windows\SysWOW64\dmband.dll + 2009-07-13 23:42 . 2009-07-14 01:15 15360 c:\windows\SysWOW64\dispex.dll + 2009-07-13 23:18 . 2009-07-14 01:15 89600 c:\windows\SysWOW64\Dism\LogProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 49152 c:\windows\SysWOW64\Dism\FolderProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:14 82944 c:\windows\SysWOW64\Dism\DismHost.exe + 2009-07-13 23:18 . 2009-07-14 01:15 49152 c:\windows\SysWOW64\Dism\DismCorePS.dll + 2009-07-13 23:19 . 2009-07-14 01:14 17408 c:\windows\SysWOW64\diskperf.exe + 2009-07-13 23:15 . 2009-07-13 23:15 11264 c:\windows\SysWOW64\diskcopy.com + 2009-07-13 23:15 . 2009-07-13 23:15 13824 c:\windows\SysWOW64\diskcomp.com + 2009-07-13 23:37 . 2009-07-14 01:15 36864 c:\windows\SysWOW64\dimsroam.dll + 2009-07-13 23:37 . 2009-07-14 01:15 33792 c:\windows\SysWOW64\dimsjob.dll + 2009-07-13 23:12 . 2009-07-14 01:14 94720 c:\windows\SysWOW64\diantz.exe + 2009-07-14 00:19 . 2009-07-14 01:14 31744 c:\windows\SysWOW64\dialer.exe + 2009-07-13 23:52 . 2009-07-14 01:15 79360 c:\windows\SysWOW64\dhcpsapi.dll + 2009-07-13 23:52 . 2009-07-14 01:15 81920 c:\windows\SysWOW64\DHCPQEC.DLL + 2009-07-13 23:12 . 2009-07-14 01:15 43008 c:\windows\SysWOW64\dhcpcsvc6.dll + 2009-07-13 23:12 . 2009-07-14 01:15 61952 c:\windows\SysWOW64\dhcpcsvc.dll + 2009-07-13 23:52 . 2009-07-14 01:15 11264 c:\windows\SysWOW64\dhcpcmonitor.dll + 2009-07-13 23:29 . 2009-07-14 01:15 54272 c:\windows\SysWOW64\DfsShlEx.dll + 2009-07-13 23:37 . 2009-07-14 01:15 43008 c:\windows\SysWOW64\dfscli.dll + 2009-07-13 23:16 . 2009-07-14 01:15 44544 c:\windows\SysWOW64\devrtl.dll + 2009-07-13 23:16 . 2009-07-14 01:15 64512 c:\windows\SysWOW64\devobj.dll + 2009-07-13 23:40 . 2009-07-14 01:14 91648 c:\windows\SysWOW64\DeviceProperties.exe + 2009-07-13 23:42 . 2009-07-14 01:14 71168 c:\windows\SysWOW64\DevicePairingWizard.exe + 2009-07-13 23:42 . 2009-07-14 01:15 55296 c:\windows\SysWOW64\DevicePairingProxy.dll + 2009-07-13 23:22 . 2009-07-14 01:15 79360 c:\windows\SysWOW64\DevicePairingHandler.dll + 2009-07-13 23:23 . 2009-07-14 01:15 24576 c:\windows\SysWOW64\DeviceMetadataParsers.dll + 2009-07-13 23:23 . 2009-07-14 01:15 17408 c:\windows\SysWOW64\DeviceDisplayStatusManager.dll + 2009-07-14 00:03 . 2009-07-14 01:15 66560 c:\windows\SysWOW64\devenum.dll + 2009-07-13 23:40 . 2009-07-14 01:15 39936 c:\windows\SysWOW64\deskperf.dll + 2009-07-13 23:40 . 2009-07-14 01:15 45568 c:\windows\SysWOW64\deskmon.dll + 2009-07-13 23:40 . 2009-07-14 01:15 47616 c:\windows\SysWOW64\deskadp.dll + 2009-07-13 23:28 . 2009-07-14 01:15 30208 c:\windows\SysWOW64\ddrawex.dll + 2009-07-13 23:23 . 2009-07-14 01:15 10752 c:\windows\SysWOW64\DDOIProxy.dll + 2009-07-13 23:24 . 2009-07-14 01:14 36864 c:\windows\SysWOW64\ddodiag.exe + 2009-07-13 23:34 . 2009-07-14 01:15 15360 c:\windows\SysWOW64\DDACLSys.dll + 2009-07-13 23:25 . 2009-07-14 01:15 10240 c:\windows\SysWOW64\dciman32.dll + 2009-07-14 00:12 . 2009-07-14 01:15 32768 c:\windows\SysWOW64\dbnmpntw.dll + 2009-07-13 23:14 . 2009-07-14 01:15 19456 c:\windows\SysWOW64\davhlpr.dll + 2011-02-09 12:00 . 2010-12-21 05:34 80384 c:\windows\SysWOW64\davclnt.dll + 2009-07-13 23:40 . 2009-07-14 01:15 17408 c:\windows\SysWOW64\dataclen.dll + 2009-07-13 23:27 . 2009-07-14 01:15 53760 c:\windows\SysWOW64\d3dxof.dll + 2009-07-13 23:27 . 2009-07-14 01:15 11264 c:\windows\SysWOW64\d3d8thk.dll + 2009-07-13 23:40 . 2009-07-14 01:14 36352 c:\windows\SysWOW64\cttunesvr.exe + 2009-07-13 21:07 . 2009-07-14 01:15 27136 c:\windows\SysWOW64\ctl3d32.dll + 2009-12-11 16:36 . 2009-08-26 14:04 53248 c:\windows\SysWOW64\CSVer.dll + 2009-07-13 23:14 . 2009-07-14 01:15 23040 c:\windows\SysWOW64\cscdll.dll + 2009-07-13 23:14 . 2009-07-14 01:15 34816 c:\windows\SysWOW64\cscapi.dll + 2009-07-13 23:32 . 2009-07-14 01:15 85504 c:\windows\SysWOW64\cryptxml.dll + 2009-07-13 23:37 . 2009-07-14 01:15 78848 c:\windows\SysWOW64\cryptsp.dll + 2009-07-13 23:32 . 2009-07-14 01:15 55296 c:\windows\SysWOW64\cryptext.dll + 2009-07-13 23:32 . 2009-07-14 01:15 58880 c:\windows\SysWOW64\cryptdll.dll + 2009-07-13 23:42 . 2009-07-14 01:15 24576 c:\windows\SysWOW64\cryptdlg.dll + 2009-07-13 23:12 . 2009-07-14 01:15 36864 c:\windows\SysWOW64\cryptbase.dll + 2009-07-13 23:34 . 2009-07-14 01:14 28160 c:\windows\SysWOW64\credwiz.exe + 2009-07-13 23:34 . 2009-07-14 01:15 16896 c:\windows\SysWOW64\credssp.dll + 2009-07-13 23:15 . 2009-07-14 01:14 17408 c:\windows\SysWOW64\convert.exe + 2009-07-13 23:41 . 2009-07-14 01:15 73216 c:\windows\SysWOW64\console.dll + 2009-07-14 04:54 . 2011-06-27 17:30 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2010-11-03 14:27 . 2010-11-03 14:27 15256 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\IdentityCRL\Production\ppcrlconfig.dll + 2009-07-14 04:54 . 2011-06-27 17:30 65536 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2009-07-14 04:54 . 2011-06-27 17:30 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-13 23:44 . 2009-07-14 01:15 89088 c:\windows\SysWOW64\comrepl.dll + 2009-07-13 23:40 . 2009-07-14 01:14 36352 c:\windows\SysWOW64\ComputerDefaults.exe + 2009-07-13 22:00 . 2009-06-10 21:25 27792 c:\windows\SysWOW64\compobj.dll + 2009-07-13 23:15 . 2009-07-14 01:14 18432 c:\windows\SysWOW64\compact.exe + 2009-07-13 23:15 . 2009-07-14 01:14 20480 c:\windows\SysWOW64\comp.exe + 2009-07-13 23:44 . 2009-07-14 01:14 11264 c:\windows\SysWOW64\com\MigRegDB.exe + 2009-07-13 23:44 . 2009-07-14 01:14 12800 c:\windows\SysWOW64\com\comrepl.exe + 2009-06-10 21:16 . 2009-06-10 21:16 61440 c:\windows\SysWOW64\com\comempty.dat + 2009-07-13 23:25 . 2009-07-14 01:14 86016 c:\windows\SysWOW64\colorcpl.exe + 2009-07-13 23:44 . 2009-07-14 01:15 63488 c:\windows\SysWOW64\colbact.dll + 2009-07-13 23:14 . 2009-07-14 01:15 32768 c:\windows\SysWOW64\cnvfat.dll + 2010-08-15 09:56 . 2008-08-25 16:02 15872 c:\windows\SysWOW64\CNHMCA.dll + 2009-07-13 23:37 . 2009-07-14 01:15 51200 c:\windows\SysWOW64\cngprovider.dll + 2009-07-13 23:32 . 2009-07-14 01:15 12288 c:\windows\SysWOW64\cngaudit.dll + 2009-07-13 23:54 . 2009-07-14 01:15 47104 c:\windows\SysWOW64\cmutil.dll + 2009-07-13 23:54 . 2009-07-14 01:15 15360 c:\windows\SysWOW64\cmstplua.dll + 2009-07-13 23:54 . 2009-07-14 01:14 84992 c:\windows\SysWOW64\cmstp.exe + 2009-07-13 23:54 . 2009-07-14 01:15 26112 c:\windows\SysWOW64\cmpbk32.dll + 2009-07-13 23:55 . 2009-07-14 01:14 43008 c:\windows\SysWOW64\cmmon32.exe + 2009-07-13 23:54 . 2009-07-14 01:15 34304 c:\windows\SysWOW64\cmlua.dll + 2009-07-13 23:52 . 2009-07-14 01:15 68608 c:\windows\SysWOW64\cmifw.dll + 2009-07-13 23:16 . 2009-07-14 01:15 64512 c:\windows\SysWOW64\cmicryptinstall.dll + 2009-07-13 23:54 . 2009-07-14 01:14 72704 c:\windows\SysWOW64\cmdl32.exe + 2009-07-13 23:34 . 2009-07-14 01:14 13824 c:\windows\SysWOW64\cmdkey.exe + 2009-07-13 23:54 . 2009-07-14 01:15 36864 c:\windows\SysWOW64\cmcfg32.dll + 2009-07-13 23:15 . 2009-07-14 01:14 26112 c:\windows\SysWOW64\clip.exe + 2009-07-14 00:12 . 2009-07-14 01:14 45056 c:\windows\SysWOW64\cliconfg.exe + 2009-07-14 00:12 . 2009-07-14 01:15 86016 c:\windows\SysWOW64\cliconfg.dll + 2009-07-13 23:11 . 2009-07-14 01:15 58880 c:\windows\SysWOW64\clfsw32.dll + 2009-07-13 23:15 . 2009-07-14 01:15 13824 c:\windows\SysWOW64\clb.dll + 2009-07-13 23:15 . 2009-07-14 01:14 37376 c:\windows\SysWOW64\cipher.exe + 2009-07-13 23:26 . 2009-07-14 01:15 10752 c:\windows\SysWOW64\CHxReadingStringIME.dll + 2009-07-13 23:15 . 2009-07-14 01:14 29696 c:\windows\SysWOW64\choice.exe + 2009-07-13 23:15 . 2009-07-14 01:14 16896 c:\windows\SysWOW64\chkntfs.exe + 2009-07-13 23:15 . 2009-07-14 01:14 16384 c:\windows\SysWOW64\chkdsk.exe + 2009-07-13 23:15 . 2009-07-13 23:15 11776 c:\windows\SysWOW64\chcp.com + 2009-07-14 00:02 . 2009-07-14 01:15 48640 c:\windows\SysWOW64\cfgbkend.dll + 2009-07-13 23:36 . 2009-07-14 01:15 65024 c:\windows\SysWOW64\CertPolEng.dll + 2009-07-13 23:33 . 2009-07-14 01:14 67072 c:\windows\SysWOW64\CertEnrollCtrl.exe + 2009-07-13 23:33 . 2009-07-14 01:15 43008 c:\windows\SysWOW64\certenc.dll + 2009-07-14 00:05 . 2009-07-14 01:15 66560 c:\windows\SysWOW64\cca.dll + 2009-07-13 23:44 . 2009-07-14 01:15 24064 c:\windows\SysWOW64\catsrvps.dll + 2009-07-13 23:32 . 2009-07-14 01:15 19968 c:\windows\SysWOW64\capisp.dll + 2009-07-13 23:37 . 2009-07-14 01:15 48128 c:\windows\SysWOW64\capiprovider.dll + 2009-07-13 23:15 . 2009-07-14 01:14 25600 c:\windows\SysWOW64\cacls.exe + 2009-07-13 23:12 . 2009-07-14 01:15 72704 c:\windows\SysWOW64\cabinet.dll + 2009-07-13 23:15 . 2009-07-14 01:15 10752 c:\windows\SysWOW64\C_ISCII.DLL + 2009-07-13 23:15 . 2009-07-14 01:15 10240 c:\windows\SysWOW64\C_IS2022.DLL + 2009-07-13 23:42 . 2009-07-14 01:15 10752 c:\windows\SysWOW64\BWUnpairElevated.dll + 2009-07-13 23:42 . 2009-07-14 01:15 64000 c:\windows\SysWOW64\BWContextHandler.dll + 2009-07-13 23:52 . 2009-07-14 01:15 66560 c:\windows\SysWOW64\btpanui.dll + 2009-07-13 23:51 . 2009-07-14 01:14 35328 c:\windows\SysWOW64\bthudtask.exe + 2009-07-13 23:39 . 2009-07-14 01:15 10240 c:\windows\SysWOW64\browseui.dll + 2009-07-13 23:37 . 2009-07-14 01:15 41472 c:\windows\SysWOW64\browcli.dll + 2009-07-13 23:11 . 2009-07-14 01:26 21584 c:\windows\SysWOW64\BOOTVID.DLL + 2009-07-13 23:31 . 2009-07-14 01:14 81408 c:\windows\SysWOW64\bootcfg.exe + 2009-07-13 23:29 . 2009-07-14 01:14 10240 c:\windows\SysWOW64\bitsprx6.dll + 2009-07-13 23:29 . 2009-07-14 01:14 18432 c:\windows\SysWOW64\bitsprx5.dll + 2009-07-13 23:29 . 2009-07-14 01:14 10240 c:\windows\SysWOW64\bitsprx3.dll + 2009-07-13 23:29 . 2009-07-14 01:14 10752 c:\windows\SysWOW64\bitsprx2.dll + 2009-07-13 23:29 . 2009-07-14 01:14 18944 c:\windows\SysWOW64\bitsperf.dll + 2009-07-14 00:18 . 2009-07-14 01:14 34304 c:\windows\SysWOW64\bidispl.dll + 2009-07-13 23:32 . 2009-07-14 01:11 80896 c:\windows\SysWOW64\bcrypt.dll + 2009-07-13 23:34 . 2009-07-14 01:14 27648 c:\windows\SysWOW64\AzSqlExt.dll + 2009-07-14 00:07 . 2009-07-14 01:14 14336 c:\windows\SysWOW64\avrt.dll + 2010-03-06 09:44 . 2009-12-19 09:02 91648 c:\windows\SysWOW64\avifil32.dll + 2009-07-14 00:03 . 2009-07-14 01:14 65024 c:\windows\SysWOW64\avicap32.dll + 2009-07-13 23:34 . 2009-07-14 01:14 98816 c:\windows\SysWOW64\authz.dll + 2009-07-13 23:34 . 2009-07-14 01:14 50176 c:\windows\SysWOW64\auditpol.exe + 2009-07-13 23:15 . 2009-07-14 01:14 16384 c:\windows\SysWOW64\attrib.exe + 2011-04-13 06:44 . 2011-02-19 05:32 34304 c:\windows\SysWOW64\atmlib.dll + 2009-10-16 19:47 . 2009-10-16 19:47 89088 c:\windows\SysWOW64\atl71.dll + 2009-07-14 00:14 . 2009-07-14 01:14 70144 c:\windows\SysWOW64\atl.dll + 2009-07-14 00:13 . 2009-07-14 01:14 29184 c:\windows\SysWOW64\AtBroker.exe + 2009-07-13 23:37 . 2009-07-14 01:14 24064 c:\windows\SysWOW64\at.exe + 2010-07-03 17:29 . 2010-03-05 07:42 67584 c:\windows\SysWOW64\asycfilt.dll + 2009-07-13 23:55 . 2009-07-14 01:14 20992 c:\windows\SysWOW64\ARP.EXE + 2009-07-13 23:36 . 2009-07-14 01:14 50688 c:\windows\SysWOW64\appidapi.dll + 2009-07-13 23:20 . 2009-07-14 01:14 29696 c:\windows\SysWOW64\Apphlpdm.dll + 2009-07-13 23:20 . 2009-07-14 01:14 15360 c:\windows\SysWOW64\apilogen.dll + 2009-07-13 23:20 . 2009-07-14 01:14 24064 c:\windows\SysWOW64\amxread.dll + 2009-07-14 00:03 . 2009-07-14 01:14 70656 c:\windows\SysWOW64\amstream.dll + 2009-07-13 23:39 . 2009-07-14 01:14 46592 c:\windows\SysWOW64\AltTab.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelTraditionalChinese.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelSwedish.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelSpanish.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelSimplifiedChinese.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelPortugese.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelKorean.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelJapanese.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelGerman.dll + 2008-10-07 07:13 . 2008-10-07 07:13 58648 c:\windows\SysWOW64\AgCPanelFrench.dll + 2009-07-13 23:20 . 2009-07-14 01:03 23040 c:\windows\SysWOW64\aeevts.dll + 2009-07-13 23:38 . 2009-07-14 01:14 77312 c:\windows\SysWOW64\adsmsext.dll + 2009-07-13 23:37 . 2009-07-14 01:14 49664 c:\windows\SysWOW64\adprovider.dll + 2011-05-18 13:46 . 2011-05-18 13:49 87699 c:\windows\SysWOW64\Adobe\Shockwave 11\uninstaller.exe + 2011-04-26 06:51 . 2011-04-26 06:51 98304 c:\windows\SysWOW64\Adobe\Shockwave 11\SwMenu.dll + 2011-04-26 06:07 . 2011-04-26 06:07 73408 c:\windows\SysWOW64\Adobe\Shockwave 11\gtapi.dll + 2011-04-26 06:07 . 2011-04-26 06:07 64512 c:\windows\SysWOW64\Adobe\Shockwave 11\gcapi_dll.dll + 2011-04-26 07:00 . 2011-04-26 07:00 68536 c:\windows\SysWOW64\Adobe\Director\SWDNLD.EXE + 2009-07-13 23:40 . 2009-07-14 01:14 38912 c:\windows\SysWOW64\AdapterTroubleshooter.exe + 2009-07-13 23:26 . 2009-07-14 01:14 45568 c:\windows\SysWOW64\acppage.dll + 2009-07-13 23:42 . 2009-07-14 01:03 39424 c:\windows\SysWOW64\ACCTRES.dll + 2009-12-11 16:21 . 2011-06-27 17:34 61522 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin + 2009-07-14 05:10 . 2011-06-27 17:34 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin - 2009-07-14 05:10 . 2011-06-24 15:58 64612 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2010-02-27 09:00 . 2011-06-27 17:34 28568 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2696175809-2240157295-830168338-1000_UserData.bin + 2010-08-22 13:56 . 1998-08-31 08:17 12800 c:\windows\system\Wing32.dll + 2010-08-22 13:56 . 1998-08-31 08:17 92208 c:\windows\system\Wing.dll + 2009-07-14 00:33 . 2009-07-14 01:39 44544 c:\windows\Speech\Common\sapisvr.exe + 2010-09-06 18:45 . 2009-02-09 15:45 6057 c:\windows\twain_32\MP270 series\SCNDB.DAT + 2009-07-13 23:12 . 2009-07-14 01:16 9216 c:\windows\SysWOW64\WSHTCPIP.DLL + 2009-07-13 23:31 . 2009-07-14 01:16 9728 c:\windows\SysWOW64\wscproxystub.dll + 2009-07-13 23:54 . 2009-07-14 01:11 4608 c:\windows\SysWOW64\ws2help.dll + 2009-07-13 23:41 . 2009-07-14 01:14 9216 c:\windows\SysWOW64\write.exe + 2010-03-06 09:45 . 2009-12-22 08:22 5120 c:\windows\SysWOW64\wow32.dll + 2009-07-14 00:19 . 2009-07-14 01:11 5120 c:\windows\SysWOW64\wmi.dll + 2009-07-14 00:08 . 2009-07-14 01:11 2048 c:\windows\SysWOW64\wmerror.dll + 2009-07-13 23:36 . 2009-07-14 01:16 8704 c:\windows\SysWOW64\WlS0WndH.dll + 2009-07-13 23:51 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\wlanutil.dll + 2009-07-13 23:31 . 2009-07-14 01:11 1536 c:\windows\SysWOW64\winrsmgr.dll + 2010-08-02 13:20 . 1998-08-31 08:17 6736 c:\windows\SysWOW64\Wingdib.drv + 2009-07-13 23:32 . 2009-07-14 01:06 2048 c:\windows\SysWOW64\WindowsPowerShell\v1.0\pwrshmsg.dll + 2009-12-12 01:04 . 2009-12-12 01:04 4096 c:\windows\SysWOW64\WindowsPowerShell\v1.0\nl-NL\powershell_ise.resources.dll + 2009-07-14 00:14 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\WiaExtensionHost64.dll + 2009-07-13 23:17 . 2009-07-14 01:10 2560 c:\windows\SysWOW64\uxlibres.dll + 2010-03-06 09:45 . 2009-12-22 04:28 2048 c:\windows\SysWOW64\user.exe + 2010-12-15 12:09 . 2010-10-27 04:32 2048 c:\windows\SysWOW64\tzres.dll + 2009-07-13 23:13 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\TimeDateMUICallback.dll + 2009-07-13 23:55 . 2009-07-14 01:14 9216 c:\windows\SysWOW64\TCPSVCS.EXE + 2009-07-14 00:19 . 2009-07-14 01:16 9216 c:\windows\SysWOW64\TapiSysprep.dll + 2009-07-14 00:19 . 2009-07-14 01:16 8704 c:\windows\SysWOW64\tapiperf.dll + 2009-07-13 23:40 . 2009-07-14 01:14 8192 c:\windows\SysWOW64\systray.exe + 2009-07-14 00:07 . 2009-07-14 01:16 9728 c:\windows\SysWOW64\SyncHostps.dll + 2009-07-13 22:00 . 2009-06-10 21:25 4208 c:\windows\SysWOW64\storage.dll + 2010-10-15 04:54 . 2010-08-27 05:46 9728 c:\windows\SysWOW64\sscore.dll + 2009-07-14 00:08 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\spwmp.dll + 2009-07-13 23:17 . 2009-07-14 01:10 7168 c:\windows\SysWOW64\spwizres.dll + 2009-07-13 23:17 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\spnet.dll + 2009-07-13 23:32 . 2009-07-14 01:16 8704 c:\windows\SysWOW64\softpub.dll + 2009-07-13 23:12 . 2009-07-14 01:16 5120 c:\windows\SysWOW64\shimeng.dll + 2009-07-13 23:40 . 2009-07-14 01:16 7168 c:\windows\SysWOW64\shfolder.dll + 2009-07-13 23:15 . 2009-07-14 01:10 2560 c:\windows\SysWOW64\sfc.dll + 2009-07-13 23:33 . 2009-07-14 01:09 4608 c:\windows\SysWOW64\security.dll + 2009-07-13 23:36 . 2009-07-14 01:16 8704 c:\windows\SysWOW64\sas.dll + 2009-07-14 00:06 . 2009-07-14 01:09 2048 c:\windows\SysWOW64\SampleRes.dll + 2009-07-13 23:43 . 2009-07-14 01:16 7680 c:\windows\SysWOW64\RpcNs4.dll + 2009-07-13 23:43 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\RpcDiag.dll + 2009-07-13 23:54 . 2009-07-14 01:09 2560 c:\windows\SysWOW64\rnr20.dll + 2009-07-13 23:26 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\riched32.dll + 2009-07-13 23:15 . 2009-07-14 01:14 9216 c:\windows\SysWOW64\regedt32.exe + 2009-07-13 23:15 . 2009-07-14 01:16 6144 c:\windows\SysWOW64\psapi.dll + 2009-12-12 01:04 . 2009-12-12 01:04 7466 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\pubprn.vbs + 2009-07-13 23:18 . 2009-07-14 01:16 6656 c:\windows\SysWOW64\osuninst.dll + 2009-07-13 23:25 . 2009-07-14 01:09 4096 c:\windows\SysWOW64\oleaccrc.dll + 2009-07-13 23:25 . 2009-07-14 01:16 9216 c:\windows\SysWOW64\oleacchooks.dll + 2009-07-13 23:12 . 2009-07-14 01:16 8704 c:\windows\SysWOW64\nsi.dll + 2009-07-13 23:15 . 2009-07-14 01:09 2048 c:\windows\SysWOW64\normaliz.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4096 c:\windows\SysWOW64\NlsLexicons002a.dll + 2009-07-13 22:56 . 2009-06-10 21:15 9560 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\office_48.bin + 2009-07-13 22:56 . 2009-06-10 21:15 4280 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\office_32.bin + 2009-07-13 22:56 . 2009-06-10 21:15 2456 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\office_24.bin + 2009-07-13 22:56 . 2009-06-10 21:15 9560 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\house_48.bin + 2009-07-13 22:56 . 2009-06-10 21:15 4280 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\house_32.bin + 2009-07-13 22:56 . 2009-06-10 21:15 2456 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\house_24.bin + 2009-07-13 22:56 . 2009-06-10 21:15 9560 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\bench_48.bin + 2009-07-13 22:56 . 2009-06-10 21:15 4280 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\bench_32.bin + 2009-07-13 22:56 . 2009-06-10 21:15 2456 c:\windows\SysWOW64\NetworkList\Icons\StockIcons\bench_24.bin + 2009-07-13 23:37 . 2009-07-14 01:07 2048 c:\windows\SysWOW64\netmsg.dll + 2009-07-13 23:37 . 2009-07-14 01:07 2048 c:\windows\SysWOW64\neth.dll + 2009-07-13 23:25 . 2009-07-14 01:16 8192 c:\windows\SysWOW64\nddeapi.dll + 2009-07-13 23:44 . 2009-07-14 01:15 6656 c:\windows\SysWOW64\mtxex.dll + 2009-07-14 00:19 . 2009-07-14 01:07 2048 c:\windows\SysWOW64\msxml6r.dll + 2009-07-14 00:19 . 2009-07-14 01:07 2048 c:\windows\SysWOW64\msxml3r.dll + 2009-07-13 23:32 . 2009-07-14 01:15 7680 c:\windows\SysWOW64\mssip32.dll + 2009-07-14 00:11 . 2009-07-14 01:07 8192 c:\windows\SysWOW64\msorc32r.dll + 2009-07-13 23:25 . 2009-07-14 01:15 4608 c:\windows\SysWOW64\msimg32.dll + 2009-07-13 23:39 . 2009-07-14 01:07 4608 c:\windows\SysWOW64\msidntld.dll + 2009-07-13 23:39 . 2009-07-14 01:15 7680 c:\windows\SysWOW64\msidle.dll + 2009-07-14 00:11 . 2009-07-14 01:06 8192 c:\windows\SysWOW64\mscpx32r.dLL + 2009-07-13 23:54 . 2009-07-14 01:06 2560 c:\windows\SysWOW64\msafd.dll + 2009-07-13 23:17 . 2009-06-10 21:44 1644 c:\windows\SysWOW64\migwiz\SFLCID.dat + 2009-07-13 23:17 . 2009-06-10 21:44 1824 c:\windows\SysWOW64\migwiz\SFCN.dat + 2009-07-13 23:17 . 2009-07-14 01:06 7168 c:\windows\SysWOW64\migwiz\migres.dll + 2009-07-14 00:03 . 2009-07-14 01:06 2048 c:\windows\SysWOW64\mferror.dll + 2009-07-13 23:38 . 2009-07-14 01:06 2048 c:\windows\SysWOW64\mctres.dll + 2009-07-13 23:12 . 2009-07-14 01:06 2560 c:\windows\SysWOW64\lz32.dll + 2009-07-14 00:08 . 2009-07-14 01:15 9728 c:\windows\SysWOW64\LAPRXY.DLL + 2009-07-14 00:03 . 2009-07-14 01:15 4608 c:\windows\SysWOW64\ksuser.dll + 2009-07-13 23:25 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDYCL.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDYCC.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDYBA.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDYAK.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDWOL.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDVNTC.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUZB.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDUSX.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUSR.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUSL.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUSA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDUS.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDURDU.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDUR1.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDUR.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDUKX.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUK.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDUGHR1.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDUGHR.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDTURME.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDTUQ.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDTUF.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDTIPRC.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDTH3.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDTH2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDTH1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDTH0.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDTAT.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDTAJIK.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDSYR2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDSYR1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDSW09.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDSW.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDSP.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDSORST.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDSORS1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDSOREX.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDSN1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDSMSNO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDSMSFI.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDSL1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDSL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDSG.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDSF.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDRU1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDRU.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDROST.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDROPR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDRO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDPO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDPL1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDPL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDPASH.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDNSO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDNO1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDNO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDNEPR.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\kbdnecnt.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 9728 c:\windows\SysWOW64\kbdnecat.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\kbdnec95.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\kbdnec.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDNE.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDMONMO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDMON.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDMLT48.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDMLT47.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDMAORI.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDMACST.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDMAC.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDLV1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDLV.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDLT2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDLT1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDLT.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbdlk41a.dll + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDLAO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDLA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDKYR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDKHMR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDKAZ.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDIULAT.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDIT142.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDIT.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDIR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDINUK2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDINTEL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINTAM.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINPUN.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINORI.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINMAR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDINMAL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINKAN.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINHIN.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINGUJ.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDINDEV.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINBEN.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINBE2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINBE1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDINASA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDIC.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDIBO.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\kbdibm02.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDHU1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDHU.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 9216 c:\windows\SysWOW64\KBDHEPT.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDHELA3.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDHELA2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDHEB.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDHE319.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDHE220.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDHE.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDHAU.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDGRLND.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDGR1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDGR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDGKL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\kbdgeoqw.dll + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbdgeoer.dll + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDGEO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDGAE.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDFR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDFO.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8192 c:\windows\SysWOW64\KBDFI1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDFI.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDFC.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDFA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDEST.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDES.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDDV.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDDIV2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDDIV1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDDA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDCZ2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDCZ1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDCZ.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\KBDCR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 8704 c:\windows\SysWOW64\KBDCAN.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDCA.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDBULG.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDBU.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDBR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDBLR.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDBHC.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDBGPH1.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDBGPH.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDBENE.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDBE.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDBASH.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDAZEL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDAZE.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\kbdax2.dll + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDARMW.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6144 c:\windows\SysWOW64\KBDARME.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDAL.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\KBDA3.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDA2.DLL + 2009-07-13 23:24 . 2009-07-14 01:11 6656 c:\windows\SysWOW64\KBDA1.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\kbd106n.dll + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\kbd106.dll + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbd103.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbd101c.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbd101b.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbd101a.DLL + 2009-07-13 23:25 . 2009-07-14 01:11 7168 c:\windows\SysWOW64\kbd101.DLL + 2009-07-13 23:46 . 2009-07-14 01:15 8192 c:\windows\SysWOW64\iscsied.dll + 2009-07-13 23:54 . 2009-07-14 01:15 8192 c:\windows\SysWOW64\iprtprio.dll + 2009-07-13 23:43 . 2009-07-14 01:06 2560 c:\windows\SysWOW64\iprop.dll + 2009-07-13 23:45 . 2009-07-14 01:06 2048 c:\windows\SysWOW64\iologmsg.dll + 2010-03-06 09:45 . 2009-12-22 04:28 7680 c:\windows\SysWOW64\instnm.exe + 2009-07-13 23:16 . 2009-07-14 01:14 9216 c:\windows\SysWOW64\InfDefaultInstall.exe + 2009-07-13 23:14 . 2009-07-14 01:15 8704 c:\windows\SysWOW64\ifsutilx.dll + 2009-07-13 23:25 . 2009-07-14 01:15 9728 c:\windows\SysWOW64\IconCodecService.dll + 2009-07-13 23:55 . 2009-07-14 01:05 3072 c:\windows\SysWOW64\icmp.dll + 2009-07-14 00:36 . 2009-06-10 21:14 8000 c:\windows\SysWOW64\icardres.dll + 2009-07-13 23:55 . 2009-07-14 01:14 8704 c:\windows\SysWOW64\HOSTNAME.EXE + 2009-07-13 23:15 . 2009-07-14 01:14 8704 c:\windows\SysWOW64\help.exe + 2009-07-13 23:41 . 2009-07-14 01:15 7680 c:\windows\SysWOW64\getuname.dll + 2009-07-13 23:51 . 2009-07-14 01:15 9728 c:\windows\SysWOW64\fdBthProxy.dll + 2009-07-13 23:25 . 2009-07-14 01:11 7680 c:\windows\SysWOW64\f3ahvoas.dll + 2009-12-11 18:09 . 2009-12-11 18:09 9868 c:\windows\SysWOW64\ezdigsgn.dat + 2009-07-14 00:09 . 2009-07-14 01:16 4096 c:\windows\SysWOW64\dxmasf.dll + 2009-07-14 00:03 . 2009-07-14 01:14 9728 c:\windows\SysWOW64\dvdplay.exe + 2009-07-14 00:05 . 2009-07-14 01:04 2560 c:\windows\SysWOW64\dpnlobby.dll + 2009-07-14 00:05 . 2009-07-14 01:15 7168 c:\windows\SysWOW64\dpnhupnp.dll + 2009-07-14 00:05 . 2009-07-14 01:15 7168 c:\windows\SysWOW64\dpnhpast.dll + 2009-07-14 00:05 . 2009-07-14 01:04 2048 c:\windows\SysWOW64\dpnaddr.dll + 2009-07-13 23:23 . 2009-07-14 01:04 2048 c:\windows\SysWOW64\dmdskres2.dll + 2009-07-13 23:43 . 2009-07-14 01:14 7168 c:\windows\SysWOW64\dllhst3g.exe + 2009-07-13 23:43 . 2009-07-14 01:14 7168 c:\windows\SysWOW64\dllhost.exe + 2009-07-13 23:41 . 2009-07-14 01:15 9728 c:\windows\SysWOW64\DeviceUxRes.dll + 2009-07-13 23:44 . 2009-07-14 01:14 8704 c:\windows\SysWOW64\dcomcnfg.exe + 2009-07-13 23:26 . 2009-07-14 01:14 8704 c:\windows\SysWOW64\ctfmon.exe + 2009-07-13 23:43 . 2009-07-14 01:15 7168 c:\windows\SysWOW64\comcat.dll + 2009-07-13 23:29 . 2009-07-14 01:14 9216 c:\windows\SysWOW64\bitsprx4.dll + 2009-07-14 00:08 . 2009-07-14 01:03 2048 c:\windows\SysWOW64\asferror.dll + 2009-07-13 23:10 . 2009-07-14 01:03 6656 c:\windows\SysWOW64\apisetschema.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-service-winsvc-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 2560 c:\windows\SysWOW64\api-ms-win-service-management-l2-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 2560 c:\windows\SysWOW64\api-ms-win-service-management-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 2560 c:\windows\SysWOW64\api-ms-win-service-core-l1-1-0.dll + 2009-07-13 23:11 . 2009-07-13 23:11 3072 c:\windows\SysWOW64\api-ms-win-security-sddl-l1-1-0.dll + 2009-07-13 23:11 . 2009-07-13 23:11 3584 c:\windows\SysWOW64\api-ms-win-security-lsalookup-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-13 23:10 6144 c:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-13 23:10 3584 c:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-13 23:10 3072 c:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-13 23:10 4608 c:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4096 c:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4096 c:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4608 c:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4096 c:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4096 c:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 4096 c:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3584 c:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 5120 c:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll + 2009-07-13 23:10 . 2009-07-14 01:03 3072 c:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll + 2009-07-13 23:12 . 2009-07-14 01:14 6656 c:\windows\SysWOW64\aecache.dll + 2011-04-26 06:52 . 2011-04-26 06:52 9216 c:\windows\SysWOW64\Adobe\Shockwave 11\DynaPlayer.dll + 2009-07-13 23:31 . 2009-07-14 01:14 7680 c:\windows\SysWOW64\acledit.dll + 2011-06-26 21:17 . 2011-06-26 21:17 9560 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_48.bin + 2011-06-26 21:17 . 2011-06-26 21:17 4280 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_32.bin + 2011-06-26 21:17 . 2011-06-26 21:17 2456 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_24.bin + 2011-06-27 17:27 . 2011-06-27 17:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-06-24 15:52 . 2011-06-24 15:52 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-06-24 15:52 . 2011-06-24 15:52 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2011-06-27 17:27 . 2011-06-27 17:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2010-12-24 19:42 . 2010-12-24 19:42 451072 c:\windows\Yahoo Games 0wner\uninstall.exe + 2010-09-06 18:45 . 2009-03-11 14:20 487424 c:\windows\twain_32\MP270 series\usip.dll + 2010-09-06 18:45 . 2010-03-12 11:45 229376 c:\windows\twain_32\MP270 series\TPM.dll + 2010-09-06 18:45 . 2009-01-21 09:41 122880 c:\windows\twain_32\MP270 series\softfare.dll + 2010-09-06 18:45 . 2009-05-26 11:48 102400 c:\windows\twain_32\MP270 series\SG_SVE.dll + 2010-09-06 18:45 . 2009-05-26 11:48 106496 c:\windows\twain_32\MP270 series\SG_RUS.dll + 2010-09-06 18:45 . 2009-05-26 11:48 110592 c:\windows\twain_32\MP270 series\SG_PTB.dll + 2010-09-06 18:45 . 2009-05-26 11:48 106496 c:\windows\twain_32\MP270 series\SG_PLK.dll + 2010-09-06 18:45 . 2009-06-23 07:36 102400 c:\windows\twain_32\MP270 series\SG_NOR.dll + 2010-09-06 18:45 . 2009-05-26 11:48 110592 c:\windows\twain_32\MP270 series\SG_NLD.dll + 2010-09-06 18:45 . 2009-05-26 11:48 114688 c:\windows\twain_32\MP270 series\SG_ITA.dll + 2010-09-06 18:45 . 2009-05-26 11:48 102400 c:\windows\twain_32\MP270 series\SG_IND.dll + 2010-09-06 18:45 . 2009-05-26 11:48 106496 c:\windows\twain_32\MP270 series\SG_HUN.dll + 2010-09-06 18:45 . 2009-05-26 11:48 110592 c:\windows\twain_32\MP270 series\SG_FRA.dll + 2010-09-06 18:45 . 2009-05-26 11:48 102400 c:\windows\twain_32\MP270 series\SG_FIN.dll + 2010-09-06 18:45 . 2009-05-26 11:48 114688 c:\windows\twain_32\MP270 series\SG_ESP.dll + 2010-09-06 18:45 . 2009-05-26 11:48 114688 c:\windows\twain_32\MP270 series\SG_ELL.dll + 2010-09-06 18:45 . 2009-05-26 11:48 110592 c:\windows\twain_32\MP270 series\SG_DEU.dll + 2010-09-06 18:45 . 2009-05-26 11:48 102400 c:\windows\twain_32\MP270 series\SG_DAN.dll + 2010-09-06 18:45 . 2009-06-23 07:36 102400 c:\windows\twain_32\MP270 series\SG_CSY.dll + 2010-09-06 18:45 . 2007-07-02 09:04 114688 c:\windows\twain_32\MP270 series\scrprmvl.dll + 2010-09-06 18:45 . 2005-02-02 16:34 118784 c:\windows\twain_32\MP270 series\SCRPRMV.DLL + 2010-09-06 18:45 . 2010-03-09 08:27 446464 c:\windows\twain_32\MP270 series\SCNIF.dll + 2010-09-06 18:45 . 2010-03-12 11:46 376832 c:\windows\twain_32\MP270 series\SCNFLW.dll + 2010-09-06 18:45 . 2010-03-12 11:44 204800 c:\windows\twain_32\MP270 series\SCNDB.dll + 2010-09-06 18:45 . 2008-01-23 14:45 454656 c:\windows\twain_32\MP270 series\RACSLIB.dll + 2010-09-06 18:45 . 2009-01-22 09:09 139264 c:\windows\twain_32\MP270 series\MC2.dll + 2010-09-06 18:45 . 2004-06-07 10:58 290816 c:\windows\twain_32\MP270 series\libBLC.dll + 2010-09-06 18:45 . 2008-11-07 12:20 176128 c:\windows\twain_32\MP270 series\CUBS.dll + 2009-02-04 02:18 . 2009-02-04 02:18 104960 c:\windows\twain_32\MP270 series\cncisco6.dll + 2010-09-06 18:45 . 2008-10-30 13:44 148200 c:\windows\twain_32\MP270 series\CNC270P.DAT + 2010-09-06 18:45 . 2005-08-24 13:51 126976 c:\windows\twain_32\MP270 series\CFine2.dll + 2010-09-06 18:45 . 2008-11-05 08:10 118784 c:\windows\twain_32\MP270 series\CAPS.dll + 2010-09-06 18:45 . 2007-10-24 11:36 118784 c:\windows\twain_32\MP270 series\AG.dll + 2009-07-13 23:40 . 2009-07-14 01:16 327680 c:\windows\SysWOW64\zipfldr.dll + 2009-07-13 23:51 . 2009-07-14 01:16 107520 c:\windows\SysWOW64\xwtpw32.dll + 2009-07-13 23:51 . 2009-07-14 01:16 158208 c:\windows\SysWOW64\xwtpdui.dll + 2009-07-13 23:51 . 2009-07-14 01:16 354816 c:\windows\SysWOW64\xwizards.dll + 2009-07-14 00:19 . 2009-07-14 01:16 930816 c:\windows\SysWOW64\xpssvcs.dll + 2009-07-14 00:16 . 2009-07-14 01:16 443904 c:\windows\SysWOW64\XPSSHHDR.dll + 2011-01-12 07:48 . 2010-11-02 04:41 135168 c:\windows\SysWOW64\XpsRasterService.dll + 2011-05-12 18:58 . 2011-03-12 11:31 442880 c:\windows\SysWOW64\XpsPrint.dll + 2011-04-13 06:44 . 2011-02-24 05:32 288256 c:\windows\SysWOW64\XpsGdiConverter.dll + 2009-07-14 00:17 . 2009-07-14 01:16 601600 c:\windows\SysWOW64\XpsFilt.dll + 2009-07-14 00:20 . 2009-07-14 01:16 180224 c:\windows\SysWOW64\xmllite.dll + 2010-11-25 18:23 . 2009-09-04 16:44 515416 c:\windows\SysWOW64\XAudio2_5.dll + 2010-01-15 00:52 . 2007-07-19 23:57 267112 c:\windows\SysWOW64\xactengine2_9.dll + 2010-01-15 00:52 . 2007-06-20 19:46 266088 c:\windows\SysWOW64\xactengine2_8.dll + 2010-01-15 00:52 . 2007-04-04 17:55 261480 c:\windows\SysWOW64\xactengine2_7.dll + 2010-01-15 00:52 . 2007-01-24 14:27 255848 c:\windows\SysWOW64\xactengine2_6.dll + 2010-01-15 00:52 . 2006-12-08 11:02 251672 c:\windows\SysWOW64\xactengine2_5.dll + 2010-01-15 00:52 . 2006-09-28 15:05 237848 c:\windows\SysWOW64\xactengine2_4.dll + 2010-01-15 00:52 . 2006-07-28 08:30 236824 c:\windows\SysWOW64\xactengine2_3.dll + 2010-01-15 00:52 . 2006-05-31 06:24 230168 c:\windows\SysWOW64\xactengine2_2.dll + 2010-01-15 00:52 . 2007-10-22 02:39 267272 c:\windows\SysWOW64\xactengine2_10.dll + 2010-01-15 00:51 . 2006-03-31 11:39 229584 c:\windows\SysWOW64\xactengine2_1.dll + 2010-01-15 00:51 . 2006-02-03 07:42 230096 c:\windows\SysWOW64\xactengine2_0.dll + 2009-07-13 23:56 . 2009-07-14 01:16 284672 c:\windows\SysWOW64\WWanAPI.dll + 2009-07-13 23:19 . 2009-07-14 01:16 444928 c:\windows\SysWOW64\wvc.dll + 2009-07-14 00:14 . 2009-07-14 01:16 164352 c:\windows\SysWOW64\wuwebv.dll + 2009-07-13 23:22 . 2009-07-14 01:14 314880 c:\windows\SysWOW64\wusa.exe + 2009-07-14 00:14 . 2009-07-14 01:16 560128 c:\windows\SysWOW64\wuapi.dll + 2009-07-13 23:31 . 2009-07-14 01:16 213504 c:\windows\SysWOW64\WsmWmiPl.dll + 2009-07-13 23:31 . 2009-07-14 01:16 145920 c:\windows\SysWOW64\WsmAuto.dll + 2009-07-13 23:31 . 2009-07-14 01:16 248832 c:\windows\SysWOW64\WSManMigrationPlugin.dll + 2009-07-13 23:31 . 2009-07-14 01:14 198144 c:\windows\SysWOW64\WSManHTTPConfig.exe + 2009-07-13 23:23 . 2009-07-14 01:16 458240 c:\windows\SysWOW64\WSDApi.dll + 2009-07-13 23:42 . 2009-07-14 01:14 141824 c:\windows\SysWOW64\wscript.exe + 2009-07-13 23:12 . 2009-07-14 01:16 206336 c:\windows\SysWOW64\ws2_32.dll + 2009-07-14 00:07 . 2009-07-14 01:16 198144 c:\windows\SysWOW64\wpdwcn.dll + 2009-07-14 00:06 . 2009-07-14 01:16 350720 c:\windows\SysWOW64\WPDSp.dll + 2009-07-14 00:07 . 2009-07-14 01:16 105984 c:\windows\SysWOW64\WPDShServiceObj.dll + 2009-07-13 23:39 . 2009-07-14 01:16 128512 c:\windows\SysWOW64\wpcao.dll + 2009-07-13 23:40 . 2009-07-14 01:16 308736 c:\windows\SysWOW64\Wpc.dll + 2009-07-14 00:08 . 2009-07-14 01:16 664576 c:\windows\SysWOW64\WMVXENCD.DLL + 2009-07-14 00:08 . 2009-07-14 01:16 358400 c:\windows\SysWOW64\WMVSENCD.DLL + 2009-07-14 00:09 . 2009-07-14 01:16 541184 c:\windows\SysWOW64\WMVSDECD.DLL + 2009-07-14 00:08 . 2009-07-14 01:16 144896 c:\windows\SysWOW64\wmvdspa.dll + 2009-07-14 00:08 . 2009-07-14 01:16 739328 c:\windows\SysWOW64\WMSPDMOD.DLL + 2009-07-14 00:08 . 2009-07-14 01:16 182272 c:\windows\SysWOW64\wmpsrcwp.dll + 2009-07-14 00:09 . 2009-07-14 01:16 105472 c:\windows\SysWOW64\wmpshell.dll + 2009-07-14 00:09 . 2009-07-14 01:16 143872 c:\windows\SysWOW64\wmpps.dll + 2010-10-15 04:55 . 2010-08-21 05:36 738816 c:\windows\SysWOW64\wmpmde.dll + 2009-07-14 00:07 . 2009-07-14 01:16 318464 c:\windows\SysWOW64\WMPhoto.dll + 2009-07-14 00:09 . 2009-07-14 01:16 344576 c:\windows\SysWOW64\wmpeffects.dll + 2009-07-14 00:09 . 2009-07-14 01:16 299520 c:\windows\SysWOW64\wmpdxm.dll + 2009-07-13 23:26 . 2009-07-14 01:16 170496 c:\windows\SysWOW64\WmpDui.dll + 2009-07-14 00:08 . 2009-07-14 01:16 155136 c:\windows\SysWOW64\wmidx.dll + 2009-07-14 00:06 . 2009-07-14 01:16 616960 c:\windows\SysWOW64\wmdrmsdk.dll + 2009-07-14 00:05 . 2009-07-14 01:16 436736 c:\windows\SysWOW64\wmdrmnet.dll + 2009-07-14 00:06 . 2009-07-14 01:16 507392 c:\windows\SysWOW64\wmdrmdev.dll + 2009-07-14 00:08 . 2009-07-14 01:16 237568 c:\windows\SysWOW64\WMASF.DLL + 2009-07-14 00:07 . 2009-07-14 01:16 812032 c:\windows\SysWOW64\WMADMOE.DLL + 2009-07-14 00:08 . 2009-07-14 01:16 902656 c:\windows\SysWOW64\WMADMOD.DLL + 2009-07-13 23:51 . 2009-07-14 01:16 118784 c:\windows\SysWOW64\wlgpclnt.dll + 2009-07-13 23:38 . 2009-07-14 01:16 268800 c:\windows\SysWOW64\Wldap32.dll + 2009-07-13 23:52 . 2009-07-14 01:16 410112 c:\windows\SysWOW64\wlanui.dll + 2009-07-13 23:51 . 2009-07-14 01:16 392192 c:\windows\SysWOW64\wlansec.dll + 2009-07-13 23:51 . 2009-07-14 01:16 428032 c:\windows\SysWOW64\wlanmsm.dll + 2009-07-13 23:55 . 2009-07-14 01:16 748544 c:\windows\SysWOW64\WlanMM.dll + 2009-07-13 23:51 . 2009-07-14 01:16 411648 c:\windows\SysWOW64\wlangpui.dll + 2009-07-13 23:52 . 2009-07-14 01:16 505856 c:\windows\SysWOW64\wlandlg.dll + 2009-07-13 23:55 . 2009-07-14 01:16 669696 c:\windows\SysWOW64\WLanConn.dll + 2009-07-13 23:51 . 2009-07-14 01:16 177152 c:\windows\SysWOW64\wlancfg.dll + 2006-10-26 12:45 . 2006-10-26 12:45 293376 c:\windows\SysWOW64\WISPTIS.EXE + 2010-04-14 06:41 . 2009-12-29 06:55 172032 c:\windows\SysWOW64\wintrust.dll + 2009-07-14 00:07 . 2009-07-14 01:16 116736 c:\windows\SysWOW64\WinSyncProviders.dll + 2009-07-14 00:07 . 2009-07-14 01:16 173056 c:\windows\SysWOW64\WinSyncMetastore.dll + 2009-07-14 00:07 . 2009-07-14 01:16 296960 c:\windows\SysWOW64\WinSync.dll + 2009-07-14 00:02 . 2009-07-14 01:16 156160 c:\windows\SysWOW64\winsta.dll + 2009-07-14 00:18 . 2009-07-14 01:14 319488 c:\windows\SysWOW64\winspool.drv + 2009-07-13 23:33 . 2009-07-14 01:16 134144 c:\windows\SysWOW64\WinSCard.dll + 2009-07-13 23:22 . 2009-07-14 01:16 335872 c:\windows\SysWOW64\WinSATAPI.dll + 2009-07-13 23:31 . 2009-07-14 01:16 240128 c:\windows\SysWOW64\winrscmd.dll + 2009-07-13 22:06 . 2009-06-10 21:40 201034 c:\windows\SysWOW64\winrm.vbs + 2009-07-14 00:03 . 2009-07-14 01:16 194048 c:\windows\SysWOW64\winmm.dll + 2011-02-09 12:00 . 2010-12-21 05:38 350720 c:\windows\SysWOW64\winhttp.dll + 2010-08-02 13:20 . 1998-08-31 08:17 188960 c:\windows\SysWOW64\Wingde.dll + 2009-07-13 23:32 . 2009-07-14 01:23 154624 c:\windows\SysWOW64\WindowsPowerShell\v1.0\pspluginwkr.dll + 2009-07-13 21:47 . 2009-07-14 01:23 204800 c:\windows\SysWOW64\WindowsPowerShell\v1.0\powershell_ise.exe + 2009-07-13 23:32 . 2009-07-14 01:14 452608 c:\windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe + 2009-07-13 23:29 . 2009-07-14 01:20 104448 c:\windows\SysWOW64\WindowsPowerShell\v1.0\Modules\BitsTransfer\Microsoft.BackgroundIntelligentTransfer.Management.Interop.dll + 2009-07-13 20:34 . 2009-07-14 01:06 126976 c:\windows\SysWOW64\WindowsPowerShell\v1.0\CompiledComposition.Microsoft.PowerShell.GPowerShell.dll + 2009-07-13 23:27 . 2009-07-14 01:16 192512 c:\windows\SysWOW64\WindowsCodecsExt.dll + 2009-07-14 00:18 . 2009-07-14 01:16 489472 c:\windows\SysWOW64\win32spl.dll + 2009-07-13 23:18 . 2009-07-14 01:14 327680 c:\windows\SysWOW64\wimserv.exe + 2009-07-13 23:18 . 2009-07-14 01:16 406016 c:\windows\SysWOW64\wimgapi.dll + 2009-07-14 00:14 . 2009-07-14 01:16 110080 c:\windows\SysWOW64\wiavideo.dll + 2009-07-14 00:15 . 2009-07-14 01:16 444928 c:\windows\SysWOW64\wiashext.dll + 2009-07-14 00:14 . 2009-07-14 01:16 113664 c:\windows\SysWOW64\wiadss.dll + 2009-07-14 00:15 . 2009-07-14 01:16 416256 c:\windows\SysWOW64\wiadefui.dll + 2009-07-14 00:14 . 2009-07-14 01:16 544256 c:\windows\SysWOW64\wiaaut.dll + 2011-03-25 21:06 . 2011-03-25 21:06 152064 c:\windows\SysWOW64\wextract.exe + 2009-07-13 23:30 . 2009-07-14 01:14 175616 c:\windows\SysWOW64\wevtutil.exe + 2009-07-13 23:30 . 2009-07-14 01:16 262144 c:\windows\SysWOW64\wevtapi.dll + 2009-07-13 23:27 . 2009-07-14 01:16 160256 c:\windows\SysWOW64\werui.dll + 2009-07-13 23:27 . 2009-07-14 01:14 360448 c:\windows\SysWOW64\WerFault.exe + 2009-07-13 23:27 . 2009-07-14 01:16 377856 c:\windows\SysWOW64\wer.dll + 2009-07-13 23:46 . 2009-07-14 01:16 782336 c:\windows\SysWOW64\webservices.dll + 2010-12-15 12:09 . 2010-10-16 04:36 314368 c:\windows\SysWOW64\webio.dll + 2011-02-09 12:00 . 2010-12-21 05:38 204800 c:\windows\SysWOW64\WebClnt.dll + 2011-03-25 21:06 . 2011-03-25 21:06 203776 c:\windows\SysWOW64\webcheck.dll + 2009-07-13 23:17 . 2009-07-14 01:16 189952 c:\windows\SysWOW64\wdscore.dll + 2009-07-14 00:03 . 2009-07-14 01:14 172032 c:\windows\SysWOW64\wdmaud.drv + 2009-07-13 23:34 . 2009-07-14 01:16 171520 c:\windows\SysWOW64\wdigest.dll + 2009-07-13 23:53 . 2009-07-14 01:16 994816 c:\windows\SysWOW64\wcnwiz.dll + 2011-02-22 20:21 . 2010-09-14 06:07 276992 c:\windows\SysWOW64\wcncsvc.dll + 2009-07-13 23:30 . 2009-07-14 01:16 362496 c:\windows\SysWOW64\wbemcomn.dll + 2009-07-13 23:30 . 2009-07-14 01:14 254976 c:\windows\SysWOW64\wbem\WmiPrvSE.exe + 2009-07-13 23:30 . 2009-07-14 01:16 131072 c:\windows\SysWOW64\wbem\WmiDcPrv.dll + 2009-07-13 23:31 . 2009-07-14 01:14 395776 c:\windows\SysWOW64\wbem\WMIC.exe + 2009-07-13 23:30 . 2009-07-14 01:14 115200 c:\windows\SysWOW64\wbem\WMIADAP.exe + 2009-07-13 23:13 . 2009-07-14 01:17 102448 c:\windows\SysWOW64\wbem\Win32_Tpm.dll + 2009-07-13 23:31 . 2009-07-14 01:16 187392 c:\windows\SysWOW64\wbem\wbemdisp.dll + 2009-07-13 23:31 . 2009-07-14 01:16 300032 c:\windows\SysWOW64\wbem\wbemcntl.dll + 2009-07-13 23:23 . 2009-07-14 01:16 113664 c:\windows\SysWOW64\wbem\vsswmi.dll + 2009-07-13 23:30 . 2009-07-14 01:16 135680 c:\windows\SysWOW64\wbem\viewprov.dll + 2009-07-13 23:23 . 2009-07-14 01:16 138240 c:\windows\SysWOW64\wbem\vdswmi.dll + 2009-07-13 23:30 . 2009-07-14 01:15 192000 c:\windows\SysWOW64\wbem\mofd.dll + 2009-07-13 23:31 . 2009-07-14 01:15 605696 c:\windows\SysWOW64\wbem\fastprox.dll + 2009-07-13 23:30 . 2009-07-14 01:15 266240 c:\windows\SysWOW64\wbem\esscli.dll + 2009-07-14 00:19 . 2009-07-14 01:16 222208 c:\windows\SysWOW64\wavemsp.dll + 2010-07-07 18:20 . 2010-07-07 07:21 128424 c:\windows\SysWOW64\Wat\WatWeb.dll + 2010-07-07 18:20 . 2010-07-07 07:21 114600 c:\windows\SysWOW64\Wat\npWatWeb.dll + 2009-07-13 23:23 . 2009-07-14 01:14 115200 c:\windows\SysWOW64\vssadmin.exe + 2010-04-13 12:31 . 2009-07-13 20:59 445504 c:\windows\SysWOW64\vp6vfw.dll + 2009-07-14 00:07 . 2009-07-14 01:16 154112 c:\windows\SysWOW64\VIDRESZR.DLL + 2009-07-13 23:59 . 2009-07-14 01:14 103424 c:\windows\SysWOW64\verifier.exe + 2009-07-13 23:22 . 2009-07-14 01:16 341504 c:\windows\SysWOW64\verifier.dll + 2009-07-13 23:23 . 2009-07-14 01:16 518144 c:\windows\SysWOW64\vdsdyn.dll + 2009-07-13 23:23 . 2009-07-14 01:16 160256 c:\windows\SysWOW64\vdsbas.dll + 2011-03-25 21:06 . 2011-03-25 21:06 420864 c:\windows\SysWOW64\vbscript.dll + 2009-07-13 23:37 . 2009-07-14 01:16 933376 c:\windows\SysWOW64\Vault.dll + 2009-07-13 23:55 . 2009-07-14 01:16 638976 c:\windows\SysWOW64\VAN.dll + 2009-07-13 23:39 . 2009-07-14 01:11 245760 c:\windows\SysWOW64\uxtheme.dll + 2009-07-13 23:17 . 2009-07-14 01:16 118272 c:\windows\SysWOW64\uxlib.dll + 2009-07-13 23:14 . 2009-07-14 01:16 135680 c:\windows\SysWOW64\uudf.dll + 2009-07-13 23:25 . 2009-07-14 01:16 627200 c:\windows\SysWOW64\usp10.dll + 2009-07-13 23:40 . 2009-07-14 01:16 600064 c:\windows\SysWOW64\usercpl.dll + 2009-07-13 23:40 . 2009-07-14 01:14 192512 c:\windows\SysWOW64\UserAccountControlSettings.exe + 2009-07-13 23:24 . 2009-07-14 01:11 833024 c:\windows\SysWOW64\user32.dll + 2011-03-25 21:06 . 2011-03-25 21:06 231936 c:\windows\SysWOW64\url.dll + 2009-07-13 23:55 . 2009-07-14 01:16 266752 c:\windows\SysWOW64\upnphost.dll + 2011-02-09 12:00 . 2010-12-21 05:38 204288 c:\windows\SysWOW64\upnp.dll + 2009-07-13 23:14 . 2009-07-14 01:16 346112 c:\windows\SysWOW64\untfs.dll + 2009-07-14 00:09 . 2009-07-14 01:14 278528 c:\windows\SysWOW64\unregmp2.exe + 2008-09-23 15:46 . 2008-09-23 15:46 245408 c:\windows\SysWOW64\unicows.dll + 2009-07-13 23:15 . 2009-07-14 01:16 108544 c:\windows\SysWOW64\ulib.dll + 2009-07-13 23:27 . 2009-07-14 01:16 561664 c:\windows\SysWOW64\UIAutomationCore.dll + 2009-07-13 23:19 . 2009-07-14 01:16 170496 c:\windows\SysWOW64\ubpm.dll + 2009-06-10 21:25 . 2009-06-10 21:25 177856 c:\windows\SysWOW64\typelib.dll + 2009-07-13 23:39 . 2009-07-14 01:16 146432 c:\windows\SysWOW64\twext.dll + 2009-07-14 00:03 . 2009-07-14 01:16 594432 c:\windows\SysWOW64\TSWorkspace.dll + 2009-07-14 00:02 . 2009-07-14 01:16 262656 c:\windows\SysWOW64\tsmf.dll + 2009-07-13 23:20 . 2009-07-14 01:14 364544 c:\windows\SysWOW64\tracerpt.exe + 2009-07-14 00:11 . 2009-07-14 01:16 313856 c:\windows\SysWOW64\thawbrkr.dll + 2009-07-14 00:20 . 2009-07-14 01:16 352768 c:\windows\SysWOW64\termmgr.dll + 2009-07-13 23:20 . 2009-07-14 01:16 606720 c:\windows\SysWOW64\tdh.dll + 2009-07-13 23:55 . 2009-07-14 01:16 180736 c:\windows\SysWOW64\tcpipcfg.dll + 2010-12-15 12:09 . 2010-11-02 04:40 496128 c:\windows\SysWOW64\taskschd.dll + 2009-07-13 23:20 . 2009-07-14 01:14 227328 c:\windows\SysWOW64\taskmgr.exe + 2010-12-15 12:09 . 2010-11-02 04:34 192000 c:\windows\SysWOW64\taskeng.exe + 2010-12-15 12:09 . 2010-11-02 04:40 305152 c:\windows\SysWOW64\taskcomp.dll + 2009-07-14 00:19 . 2009-07-14 01:10 108544 c:\windows\SysWOW64\tapiui.dll + 2009-07-14 00:19 . 2009-07-14 01:16 241664 c:\windows\SysWOW64\tapisrv.dll + 2009-07-14 00:19 . 2009-07-14 01:16 100864 c:\windows\SysWOW64\TapiMigPlugin.dll + 2009-07-14 00:19 . 2009-07-14 01:16 192000 c:\windows\SysWOW64\tapi32.dll + 2009-07-14 00:19 . 2009-07-14 01:16 855552 c:\windows\SysWOW64\tapi3.dll + 2010-10-15 04:55 . 2010-08-26 04:39 109056 c:\windows\SysWOW64\t2embed.dll + 2009-07-13 23:40 . 2009-07-14 01:16 410624 c:\windows\SysWOW64\systemcpl.dll + 2010-05-27 20:29 . 2010-05-27 20:29 107816 c:\windows\SysWOW64\SynTPCOM.dll + 2009-07-13 23:39 . 2009-07-14 01:16 158720 c:\windows\SysWOW64\syncui.dll + 2010-05-27 20:29 . 2010-05-27 20:29 210216 c:\windows\SysWOW64\SynCtrl.dll + 2010-05-27 20:29 . 2010-05-27 20:29 173352 c:\windows\SysWOW64\SynCOM.dll + 2009-07-14 00:07 . 2009-07-14 01:16 323072 c:\windows\SysWOW64\SyncInfrastructure.dll + 2009-07-13 23:16 . 2009-07-14 01:16 380416 c:\windows\SysWOW64\sxs.dll + 2009-07-13 23:40 . 2009-07-14 01:16 755200 c:\windows\SysWOW64\sud.dll + 2010-10-15 04:55 . 2010-05-05 06:46 363520 c:\windows\SysWOW64\StructuredQuery.dll + 2009-07-13 23:40 . 2009-07-14 01:16 227328 c:\windows\SysWOW64\stobject.dll + 2009-07-14 00:14 . 2009-07-14 01:16 199680 c:\windows\SysWOW64\sti.dll + 2009-07-13 23:41 . 2009-07-14 01:14 293888 c:\windows\SysWOW64\ssText3d.scr + 2009-07-13 23:22 . 2009-07-14 01:16 110080 c:\windows\SysWOW64\SSShim.dll + 2009-07-13 23:41 . 2009-07-14 01:16 301568 c:\windows\SysWOW64\srchadmin.dll + 2009-07-13 23:27 . 2009-07-14 01:16 189440 c:\windows\SysWOW64\sqmapi.dll + 2009-06-10 21:16 . 2009-07-14 01:16 180800 c:\windows\SysWOW64\sqlunirl.dll + 2009-07-14 00:12 . 2009-07-14 01:16 782336 c:\windows\SysWOW64\sqlsrv32.dll + 2009-07-14 00:07 . 2009-07-14 01:16 309760 c:\windows\SysWOW64\sqlcese30.dll + 2009-07-14 00:07 . 2009-07-14 01:16 605184 c:\windows\SysWOW64\sqlceqp30.dll + 2009-07-14 00:07 . 2009-07-14 01:16 151552 c:\windows\SysWOW64\sqlceoledb30.dll + 2009-07-13 23:17 . 2009-07-14 01:16 351744 c:\windows\SysWOW64\spwizeng.dll + 2009-07-13 23:36 . 2009-07-14 01:16 118784 c:\windows\SysWOW64\sppwmi.dll + 2009-07-13 23:35 . 2009-07-14 01:16 100352 c:\windows\SysWOW64\sppinst.dll + 2009-07-13 23:36 . 2009-07-14 01:16 345088 c:\windows\SysWOW64\sppcommdlg.dll + 2009-07-13 23:36 . 2009-07-14 01:16 193024 c:\windows\SysWOW64\sppcomapi.dll + 2009-07-13 23:36 . 2009-07-14 01:16 389632 c:\windows\SysWOW64\sppcc.dll + 2009-07-14 00:41 . 2009-07-14 01:16 121344 c:\windows\SysWOW64\sppc.dll + 2009-07-13 23:23 . 2009-07-14 01:16 171008 c:\windows\SysWOW64\spp.dll + 2009-07-14 00:14 . 2009-07-14 01:16 412160 c:\windows\SysWOW64\Speech\Engines\SR\srloc.dll + 2009-07-14 00:13 . 2009-07-14 01:16 108032 c:\windows\SysWOW64\Speech\Engines\SR\spsrx.dll + 2009-07-14 00:14 . 2009-07-14 01:16 873984 c:\windows\SysWOW64\Speech\Engines\SR\spsreng.dll + 2009-07-13 23:26 . 2009-07-14 01:16 126464 c:\windows\SysWOW64\softkbd.dll + 2009-07-14 00:04 . 2009-07-14 01:16 220160 c:\windows\SysWOW64\SndVolSSO.dll + 2009-07-14 00:04 . 2009-07-14 01:14 314368 c:\windows\SysWOW64\SndVol.exe + 2009-07-13 23:33 . 2009-07-14 01:16 152064 c:\windows\SysWOW64\SmartcardCredentialProvider.dll + 2009-06-10 21:38 . 2009-06-10 21:38 113629 c:\windows\SysWOW64\slmgr.vbs + 2009-07-13 23:40 . 2009-07-14 01:16 428544 c:\windows\SysWOW64\shwebsvc.dll + 2009-07-13 23:39 . 2009-07-14 01:16 328192 c:\windows\SysWOW64\shsvcs.dll + 2009-07-13 23:41 . 2009-07-14 01:16 110592 c:\windows\SysWOW64\shsetup.dll + 2009-07-13 23:31 . 2009-07-14 01:14 391680 c:\windows\SysWOW64\shrpubw.exe + 2009-07-13 23:39 . 2009-07-14 01:16 350208 c:\windows\SysWOW64\shlwapi.dll + 2009-07-13 23:38 . 2009-07-14 01:04 514048 c:\windows\SysWOW64\shellstyle.dll + 2009-07-13 23:39 . 2009-07-14 01:16 179712 c:\windows\SysWOW64\shdocvw.dll + 2009-07-13 23:39 . 2009-07-14 01:16 108032 c:\windows\SysWOW64\shacct.dll + 2009-07-13 23:17 . 2009-07-14 01:14 112640 c:\windows\SysWOW64\setupugc.exe + 2009-07-13 23:17 . 2009-07-14 01:16 115200 c:\windows\SysWOW64\setupcln.dll + 2009-07-13 23:54 . 2009-07-14 01:16 116736 c:\windows\SysWOW64\Setup\RasMigPlugin.dll + 2009-07-13 23:44 . 2009-07-14 01:15 247296 c:\windows\SysWOW64\Setup\comsetup.dll + 2009-07-14 00:13 . 2009-07-14 01:14 270336 c:\windows\SysWOW64\sethc.exe + 2009-07-13 23:45 . 2009-07-14 01:16 129024 c:\windows\SysWOW64\SensorsApi.dll + 2010-03-06 09:45 . 2010-01-18 23:29 365568 c:\windows\SysWOW64\secproc_isv.dll + 2010-03-06 09:45 . 2010-01-18 23:29 369152 c:\windows\SysWOW64\secproc.dll + 2009-07-14 00:14 . 2009-07-14 01:14 164352 c:\windows\SysWOW64\SearchProtocolHost.exe + 2009-07-14 00:14 . 2009-07-14 01:14 428032 c:\windows\SysWOW64\SearchIndexer.exe + 2009-07-13 23:43 . 2009-07-14 01:16 643072 c:\windows\SysWOW64\SearchFolder.dll + 2009-07-13 23:53 . 2009-07-14 01:16 358400 c:\windows\SysWOW64\sdohlp.dll + 2009-07-13 23:19 . 2009-07-14 01:16 240128 c:\windows\SysWOW64\sdiagprv.dll + 2009-07-13 23:19 . 2009-07-14 01:16 178176 c:\windows\SysWOW64\sdiageng.dll + 2009-07-13 23:42 . 2009-07-14 01:16 163840 c:\windows\SysWOW64\scrrun.dll + 2009-07-13 23:42 . 2009-07-14 01:16 173568 c:\windows\SysWOW64\scrobj.dll + 2009-07-13 23:33 . 2009-07-14 01:16 180224 c:\windows\SysWOW64\scksp.dll + 2010-12-15 12:09 . 2010-11-02 04:34 179712 c:\windows\SysWOW64\schtasks.exe + 2010-10-15 04:55 . 2010-08-21 05:36 224256 c:\windows\SysWOW64\schannel.dll + 2009-07-13 23:33 . 2009-07-14 01:16 307712 c:\windows\SysWOW64\scesrv.dll + 2009-07-13 23:33 . 2009-07-14 01:16 175616 c:\windows\SysWOW64\scecli.dll + 2009-07-14 00:14 . 2009-07-14 01:16 245760 c:\windows\SysWOW64\scansetting.dll + 2009-07-14 00:06 . 2009-07-14 01:16 153600 c:\windows\SysWOW64\sbeio.dll + 2011-03-09 10:08 . 2010-12-23 05:28 850432 c:\windows\SysWOW64\sbe.dll + 2009-07-13 23:54 . 2009-07-14 01:16 115200 c:\windows\SysWOW64\rtm.dll + 2009-07-13 23:22 . 2009-07-14 01:16 152064 c:\windows\SysWOW64\RstrtMgr.dll + 2009-07-13 23:37 . 2009-07-14 01:17 242936 c:\windows\SysWOW64\rsaenh.dll + 2009-07-13 23:12 . 2009-07-14 01:11 662528 c:\windows\SysWOW64\rpcrt4.dll + 2009-07-13 23:43 . 2009-07-14 01:16 134656 c:\windows\SysWOW64\rpchttp.dll + 2010-03-06 09:45 . 2010-01-18 23:28 277504 c:\windows\SysWOW64\RMActivate_ssp_isv.exe + 2010-03-06 09:45 . 2010-01-18 23:28 280064 c:\windows\SysWOW64\RMActivate_ssp.exe + 2010-03-06 09:45 . 2010-01-18 23:28 324608 c:\windows\SysWOW64\RMActivate_isv.exe + 2010-03-06 09:45 . 2010-01-18 23:28 320512 c:\windows\SysWOW64\RMActivate.exe + 2009-07-13 23:26 . 2009-07-14 01:16 473600 c:\windows\SysWOW64\riched20.dll + 2009-07-13 23:41 . 2009-07-14 01:14 220672 c:\windows\SysWOW64\Ribbons.scr + 2009-07-13 23:27 . 2009-07-14 01:16 147968 c:\windows\SysWOW64\rgb9rast.dll + 2009-07-13 23:19 . 2009-07-14 01:14 103424 c:\windows\SysWOW64\resmon.exe + 2009-07-14 00:07 . 2009-07-14 01:16 206848 c:\windows\SysWOW64\RESAMPLEDMO.DLL + 2009-07-14 00:02 . 2009-07-14 01:16 146944 c:\windows\SysWOW64\remotepg.dll + 2009-07-13 23:17 . 2009-07-14 01:14 398336 c:\windows\SysWOW64\regedit.exe + 2009-07-13 23:20 . 2009-07-14 01:16 247808 c:\windows\SysWOW64\ReAgent.dll + 2009-07-14 00:01 . 2009-07-14 01:16 186368 c:\windows\SysWOW64\rdpencom.dll + 2009-07-14 00:01 . 2009-07-14 01:16 826368 c:\windows\SysWOW64\rdpcore.dll + 2009-07-13 23:54 . 2009-07-14 01:16 372224 c:\windows\SysWOW64\rastls.dll + 2009-07-13 23:54 . 2009-07-14 01:16 176640 c:\windows\SysWOW64\rasppp.dll + 2009-07-13 23:54 . 2009-07-14 01:16 385024 c:\windows\SysWOW64\rasplap.dll + 2009-07-13 23:54 . 2009-07-14 01:16 179200 c:\windows\SysWOW64\rasmontr.dll + 2009-07-13 23:55 . 2009-07-14 01:16 845824 c:\windows\SysWOW64\RASMM.dll + 2009-07-13 23:54 . 2009-07-14 01:16 761856 c:\windows\SysWOW64\rasgcw.dll + 2009-07-13 23:20 . 2009-07-14 01:14 101888 c:\windows\SysWOW64\raserver.exe + 2009-07-13 23:55 . 2009-07-14 01:16 772608 c:\windows\SysWOW64\rasdlg.dll + 2009-07-13 23:54 . 2009-07-14 01:16 318464 c:\windows\SysWOW64\raschap.dll + 2009-07-13 23:55 . 2009-07-14 01:16 325120 c:\windows\SysWOW64\rasapi32.dll + 2009-07-13 23:20 . 2009-07-14 01:16 111616 c:\windows\SysWOW64\racpldlg.dll + 2009-07-13 23:54 . 2009-07-14 01:16 210944 c:\windows\SysWOW64\qwave.dll + 2009-07-13 23:52 . 2009-07-14 01:16 167936 c:\windows\SysWOW64\QSHVHOST.DLL + 2009-07-14 00:03 . 2009-07-14 01:09 733184 c:\windows\SysWOW64\qedwipes.dll + 2009-07-14 00:03 . 2009-07-14 01:16 509440 c:\windows\SysWOW64\qedit.dll + 2009-07-14 00:03 . 2009-07-14 01:16 514560 c:\windows\SysWOW64\qdvd.dll + 2009-07-14 00:03 . 2009-07-14 01:16 283136 c:\windows\SysWOW64\qdv.dll + 2009-07-14 00:03 . 2009-07-14 01:16 190976 c:\windows\SysWOW64\qcap.dll + 2009-07-14 00:09 . 2009-07-14 01:16 206848 c:\windows\SysWOW64\qasf.dll + 2009-07-13 23:52 . 2009-07-14 01:16 171008 c:\windows\SysWOW64\QAGENT.DLL + 2009-07-14 00:19 . 2009-07-14 01:16 324096 c:\windows\SysWOW64\puiobj.dll + 2009-07-14 00:19 . 2009-07-14 01:16 169472 c:\windows\SysWOW64\puiapi.dll + 2009-07-13 23:20 . 2009-07-14 01:14 696320 c:\windows\SysWOW64\psr.exe + 2010-03-06 09:44 . 2009-12-13 09:30 465408 c:\windows\SysWOW64\psisdecd.dll + 2009-07-13 23:30 . 2009-07-14 01:16 189952 c:\windows\SysWOW64\provthrd.dll + 2009-07-13 23:39 . 2009-07-14 01:16 165376 c:\windows\SysWOW64\provsvc.dll + 2009-07-13 23:40 . 2009-07-14 01:16 988160 c:\windows\SysWOW64\propsys.dll + 2009-07-14 00:18 . 2009-07-14 01:16 119808 c:\windows\SysWOW64\prntvpt.dll + 2009-07-14 00:19 . 2009-07-14 01:16 175616 c:\windows\SysWOW64\prnntfy.dll + 2009-07-14 00:19 . 2009-07-14 01:16 395264 c:\windows\SysWOW64\prnfldr.dll + 2009-07-14 00:18 . 2009-07-14 01:16 114688 c:\windows\SysWOW64\prncache.dll + 2009-07-14 00:19 . 2009-07-14 01:16 931840 c:\windows\SysWOW64\printui.dll + 2009-12-12 01:04 . 2009-12-12 01:04 106640 c:\windows\SysWOW64\Printing_Admin_Scripts\nl-NL\prncnfg.vbs + 2009-07-14 00:35 . 2009-06-10 21:14 778096 c:\windows\SysWOW64\PresentationNative_v0300.dll + 2010-07-07 07:21 . 2009-11-25 10:47 295264 c:\windows\SysWOW64\PresentationHost.exe + 2009-07-14 00:35 . 2009-06-10 21:14 101768 c:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll + 2009-07-13 23:16 . 2009-07-14 01:16 145408 c:\windows\SysWOW64\powrprof.dll + 2009-07-13 23:41 . 2009-07-14 01:16 441856 c:\windows\SysWOW64\powercpl.dll + 2009-07-14 00:06 . 2009-07-14 01:16 196608 c:\windows\SysWOW64\PortableDeviceWMDRM.dll + 2009-07-14 00:07 . 2009-07-14 01:16 138240 c:\windows\SysWOW64\PortableDeviceWiaCompat.dll + 2009-07-14 00:06 . 2009-07-14 01:16 159744 c:\windows\SysWOW64\PortableDeviceTypes.dll + 2009-07-14 00:07 . 2009-07-14 01:16 183296 c:\windows\SysWOW64\PortableDeviceSyncProvider.dll + 2009-07-14 00:07 . 2009-07-14 01:16 427520 c:\windows\SysWOW64\PortableDeviceStatus.dll + 2009-07-14 00:06 . 2009-07-14 01:16 110080 c:\windows\SysWOW64\PortableDeviceClassExtension.dll + 2009-07-14 00:07 . 2009-07-14 01:16 547328 c:\windows\SysWOW64\PortableDeviceApi.dll + 2009-07-13 23:53 . 2009-07-14 01:16 273920 c:\windows\SysWOW64\polstore.dll + 2009-07-13 23:34 . 2009-07-14 01:16 186880 c:\windows\SysWOW64\pku2u.dll + 2009-07-13 23:22 . 2009-07-14 01:14 209920 c:\windows\SysWOW64\PkgMgr.exe + 2008-10-07 07:13 . 2008-10-07 07:13 197912 c:\windows\SysWOW64\physxcudart_20.dll + 2008-10-15 07:04 . 2008-10-15 07:04 288024 c:\windows\SysWOW64\PhysXCplUI.exe + 2008-10-15 07:04 . 2008-10-15 07:04 288024 c:\windows\SysWOW64\PhysXCompatCplUI.exe + 2009-07-14 00:10 . 2009-07-14 01:16 295424 c:\windows\SysWOW64\photowiz.dll + 2009-07-14 00:11 . 2009-07-14 01:14 413696 c:\windows\SysWOW64\PhotoScreensaver.scr + 2009-07-14 00:10 . 2009-07-14 01:16 316928 c:\windows\SysWOW64\PhotoMetadataHandler.dll + 2009-07-13 23:20 . 2009-07-14 01:14 157184 c:\windows\SysWOW64\perfmon.exe + 2009-07-13 23:40 . 2009-07-14 01:16 600576 c:\windows\SysWOW64\PerfCenterCPL.dll + 2009-07-13 23:19 . 2009-07-14 01:16 236544 c:\windows\SysWOW64\pdh.dll + 2009-07-13 23:55 . 2009-07-14 01:16 136704 c:\windows\SysWOW64\p2pnetsh.dll + 2009-07-13 23:55 . 2009-07-14 01:16 334848 c:\windows\SysWOW64\P2PGraph.dll + 2009-07-13 23:56 . 2009-07-14 01:16 412672 c:\windows\SysWOW64\p2pcollab.dll + 2009-07-13 23:56 . 2009-07-14 01:16 217088 c:\windows\SysWOW64\P2P.dll + 2009-07-14 00:14 . 2009-07-14 01:14 646144 c:\windows\SysWOW64\osk.exe + 2009-07-13 23:28 . 2009-07-14 01:16 791552 c:\windows\SysWOW64\opengl32.dll + 2009-07-13 23:39 . 2009-07-14 01:16 859648 c:\windows\SysWOW64\OobeFldr.dll + 2009-07-13 23:16 . 2009-07-14 01:16 268288 c:\windows\SysWOW64\oobe\cmisetup.dll + 2009-07-13 23:37 . 2009-07-14 01:16 218112 c:\windows\SysWOW64\OnLineIDCpl.dll + 2009-07-13 23:51 . 2009-07-14 01:16 199168 c:\windows\SysWOW64\onex.dll + 2009-07-14 00:18 . 2009-07-14 01:16 107008 c:\windows\SysWOW64\oleprn.dll + 2009-07-13 23:43 . 2009-07-14 01:16 103424 c:\windows\SysWOW64\oledlg.dll + 2011-06-16 00:22 . 2010-12-18 05:31 571904 c:\windows\SysWOW64\oleaut32.dll + 2009-07-13 23:26 . 2009-07-14 01:16 233472 c:\windows\SysWOW64\oleacc.dll + 2009-07-13 22:00 . 2009-06-10 21:25 153008 c:\windows\SysWOW64\ole2nls.dll + 2009-07-13 22:00 . 2009-06-10 21:25 169520 c:\windows\SysWOW64\ole2disp.dll + 2009-07-14 00:11 . 2009-07-14 01:16 204800 c:\windows\SysWOW64\offfilt.dll + 2009-07-14 00:11 . 2009-07-14 01:16 163840 c:\windows\SysWOW64\odbctrac.dll + 2009-07-14 00:12 . 2009-07-14 01:16 319488 c:\windows\SysWOW64\odbcjt32.dll + 2009-07-14 00:11 . 2009-07-14 01:09 229376 c:\windows\SysWOW64\odbcint.dll + 2009-07-14 00:12 . 2009-07-14 01:16 122880 c:\windows\SysWOW64\odbccp32.dll + 2011-01-12 07:48 . 2010-10-16 04:34 573440 c:\windows\SysWOW64\odbc32.dll + 2009-07-13 23:22 . 2009-07-14 01:14 197632 c:\windows\SysWOW64\ocsetup.exe + 2009-07-13 23:22 . 2009-07-14 01:16 174592 c:\windows\SysWOW64\ocsetapi.dll + 2011-03-25 21:06 . 2011-03-25 21:06 123392 c:\windows\SysWOW64\occache.dll + 2009-07-13 23:29 . 2009-07-14 01:16 537600 c:\windows\SysWOW64\objsel.dll + 2009-10-03 18:02 . 2009-10-03 18:02 260712 c:\windows\SysWOW64\nvdecodemft.dll + 2009-10-03 18:02 . 2009-10-03 18:02 678504 c:\windows\SysWOW64\nvcuvid.dll + 2009-07-13 23:41 . 2009-07-14 01:16 442880 c:\windows\SysWOW64\ntshrui.dll + 2009-07-14 00:18 . 2009-07-14 01:16 297472 c:\windows\SysWOW64\ntprint.dll + 2009-07-13 23:34 . 2009-07-14 01:16 121856 c:\windows\SysWOW64\ntmarta.dll + 2009-07-13 23:53 . 2009-07-14 01:16 656384 c:\windows\SysWOW64\nshwfp.dll + 2009-07-13 23:52 . 2009-07-14 01:16 346112 c:\windows\SysWOW64\nshipsec.dll + 2009-07-13 23:41 . 2009-07-14 01:14 179712 c:\windows\SysWOW64\notepad.exe + 2009-07-13 23:56 . 2009-07-14 01:16 156672 c:\windows\SysWOW64\nlmgp.dll + 2009-07-14 00:12 . 2009-07-14 01:16 134144 c:\windows\SysWOW64\nlhtml.dll + 2009-07-13 23:16 . 2009-07-14 01:16 313856 c:\windows\SysWOW64\newdev.dll + 2009-07-13 23:56 . 2009-07-14 01:16 360448 c:\windows\SysWOW64\netprofm.dll + 2009-07-13 23:56 . 2009-07-14 01:16 481792 c:\windows\SysWOW64\netprof.dll + 2009-07-13 23:39 . 2009-07-14 01:16 175616 c:\windows\SysWOW64\netplwiz.dll + 2009-07-13 23:38 . 2009-07-14 01:16 563712 c:\windows\SysWOW64\netlogon.dll + 2009-07-13 23:37 . 2009-07-14 01:16 161792 c:\windows\SysWOW64\netjoin.dll + 2009-07-13 23:54 . 2009-07-14 01:16 165888 c:\windows\SysWOW64\netiohlp.dll + 2009-07-13 23:29 . 2009-07-14 01:16 116736 c:\windows\SysWOW64\netid.dll + 2009-07-13 23:52 . 2009-07-14 01:16 225792 c:\windows\SysWOW64\netdiagfx.dll + 2009-07-13 23:52 . 2009-07-14 01:16 175104 c:\windows\SysWOW64\netcorehc.dll + 2009-07-13 23:52 . 2009-07-14 01:16 403456 c:\windows\SysWOW64\netcfgx.dll + 2009-07-13 23:38 . 2009-07-14 01:14 159232 c:\windows\SysWOW64\net1.exe + 2009-07-13 23:52 . 2009-07-14 01:16 200192 c:\windows\SysWOW64\ndfapi.dll + 2009-07-13 23:52 . 2009-07-14 01:16 152064 c:\windows\SysWOW64\ncsi.dll + 2009-07-13 23:33 . 2009-07-14 01:16 219136 c:\windows\SysWOW64\ncrypt.dll + 2009-07-14 00:14 . 2009-07-14 01:16 801280 c:\windows\SysWOW64\NaturalLanguage6.dll + 2009-07-13 23:52 . 2009-07-14 01:14 279552 c:\windows\SysWOW64\NAPSTAT.EXE + 2009-07-13 23:52 . 2009-07-14 01:16 158208 c:\windows\SysWOW64\NAPMONTR.DLL + 2009-07-13 23:53 . 2009-07-14 01:22 107008 c:\windows\SysWOW64\NAPHLPR.DLL + 2009-07-13 23:41 . 2009-07-14 01:14 221184 c:\windows\SysWOW64\Mystify.scr + 2009-07-13 23:39 . 2009-07-14 01:16 136192 c:\windows\SysWOW64\mydocs.dll + 2009-07-13 23:29 . 2009-07-14 01:16 229888 c:\windows\SysWOW64\mycomput.dll + 2009-07-13 23:44 . 2009-07-14 01:15 111616 c:\windows\SysWOW64\mtxoci.dll + 2009-07-13 23:44 . 2009-07-14 01:15 320512 c:\windows\SysWOW64\mtxclu.dll + 2009-07-13 23:44 . 2009-07-14 01:14 125440 c:\windows\SysWOW64\mtstocom.exe + 2009-07-13 21:04 . 2009-07-14 01:15 454656 c:\windows\SysWOW64\msxbde40.dll + 2009-07-13 21:04 . 2009-07-14 01:15 618496 c:\windows\SysWOW64\mswstr10.dll + 2009-07-13 23:12 . 2009-07-14 01:15 232448 c:\windows\SysWOW64\mswsock.dll + 2009-07-14 00:06 . 2009-07-14 01:15 296960 c:\windows\SysWOW64\mswmdm.dll + 2009-07-13 21:04 . 2009-07-14 01:15 856064 c:\windows\SysWOW64\mswdat10.dll + 2009-07-14 00:03 . 2009-07-14 01:15 120320 c:\windows\SysWOW64\msvfw32.dll + 2010-08-02 13:20 . 1998-06-16 22:00 385100 c:\windows\SysWOW64\MSVCRTD.DLL + 2009-07-13 21:07 . 2009-07-14 01:15 253952 c:\windows\SysWOW64\msvcrt20.dll + 2009-07-13 23:12 . 2009-07-14 01:15 690688 c:\windows\SysWOW64\msvcrt.dll + 2010-11-26 22:53 . 2006-12-01 21:03 626688 c:\windows\SysWOW64\msvcr80.dll + 2009-07-21 11:22 . 2009-07-21 11:22 348160 c:\windows\SysWOW64\msvcr71.dll + 2010-08-02 13:20 . 1996-02-19 23:05 444928 c:\windows\SysWOW64\MSVCR40D.DLL + 2010-03-18 12:16 . 2010-03-18 12:16 771424 c:\windows\SysWOW64\msvcr100_clr0400.dll + 2010-11-26 22:53 . 2006-12-01 21:03 548864 c:\windows\SysWOW64\msvcp80.dll + 2009-07-21 11:22 . 2009-07-21 11:22 499712 c:\windows\SysWOW64\msvcp71.dll + 2009-07-13 23:11 . 2009-07-14 01:15 406528 c:\windows\SysWOW64\msvcp60.dll + 2010-11-26 22:53 . 2006-12-02 05:22 479232 c:\windows\SysWOW64\msvcm80.dll + 2010-03-11 13:35 . 2009-09-10 05:52 257024 c:\windows\SysWOW64\msv1_0.dll + 2009-07-13 23:26 . 2009-07-14 01:15 167936 c:\windows\SysWOW64\msutb.dll + 2009-07-13 21:04 . 2009-07-14 01:15 282624 c:\windows\SysWOW64\mstext40.dll + 2009-07-13 23:30 . 2009-07-14 01:15 209920 c:\windows\SysWOW64\mstask.dll + 2009-07-14 00:13 . 2009-07-14 01:15 666624 c:\windows\SysWOW64\mssvp.dll + 2006-07-24 09:50 . 2006-07-24 09:50 125744 c:\windows\SysWOW64\MSSTDFMT.DLL + 2009-07-14 00:14 . 2009-07-14 01:15 197120 c:\windows\SysWOW64\mssphtb.dll + 2009-07-14 00:13 . 2009-07-14 01:15 337408 c:\windows\SysWOW64\mssph.dll + 2009-07-14 00:12 . 2009-07-14 01:15 104448 c:\windows\SysWOW64\mssitlb.dll + 2009-07-13 23:52 . 2009-07-14 01:07 268800 c:\windows\SysWOW64\msshavmsg.dll + 2009-07-13 23:52 . 2009-07-14 01:15 171520 c:\windows\SysWOW64\mssha.dll + 2009-07-14 00:05 . 2009-07-14 01:15 504320 c:\windows\SysWOW64\msscp.dll + 2009-07-13 21:04 . 2009-07-14 01:15 643072 c:\windows\SysWOW64\msrepl40.dll + 2009-07-13 23:14 . 2009-07-14 01:15 159232 c:\windows\SysWOW64\msrdc.dll + 2009-07-13 21:04 . 2009-07-14 01:15 344064 c:\windows\SysWOW64\msrd3x40.dll + 2009-07-13 21:04 . 2009-07-14 01:15 319488 c:\windows\SysWOW64\msrd2x40.dll + 2011-03-25 21:06 . 2011-03-25 21:06 162304 c:\windows\SysWOW64\msrating.dll + 2009-07-13 23:20 . 2009-07-14 01:14 108032 c:\windows\SysWOW64\msra.exe + 2009-07-13 21:04 . 2009-07-14 01:15 368640 c:\windows\SysWOW64\mspbde40.dll + 2009-07-14 00:12 . 2009-07-14 01:15 176128 c:\windows\SysWOW64\msorcl32.dll + 2009-07-13 23:42 . 2009-07-14 01:15 206336 c:\windows\SysWOW64\msoeacct.dll + 2009-07-14 00:05 . 2009-07-14 01:15 265216 c:\windows\SysWOW64\msnetobj.dll + 2009-07-14 00:08 . 2009-07-14 01:15 830464 c:\windows\SysWOW64\MSMPEG2ENC.DLL + 2009-06-10 21:41 . 2009-07-14 01:15 970240 c:\windows\SysWOW64\msmpeg2adec.dll + 2009-07-13 21:04 . 2009-07-14 01:15 241664 c:\windows\SysWOW64\msltus40.dll + 2011-03-25 21:06 . 2011-03-25 21:06 161792 c:\windows\SysWOW64\msls31.dll + 2009-07-13 21:04 . 2009-07-14 01:15 290816 c:\windows\SysWOW64\msjtes40.dll + 2009-07-13 21:03 . 2009-07-14 01:15 364544 c:\windows\SysWOW64\msjetoledb40.dll + 2009-07-13 23:20 . 2009-07-14 01:14 303104 c:\windows\SysWOW64\msinfo32.exe + 2009-07-13 23:31 . 2009-07-14 01:15 337408 c:\windows\SysWOW64\msihnd.dll + 2009-07-13 23:40 . 2009-07-14 01:15 301568 c:\windows\SysWOW64\msieftp.dll + 2009-07-13 23:43 . 2009-07-14 01:15 479232 c:\windows\SysWOW64\msidcrl30.dll + 2009-07-13 23:27 . 2009-07-14 01:15 592384 c:\windows\SysWOW64\msftedit.dll + 2011-03-25 21:06 . 2011-03-25 21:06 580608 c:\windows\SysWOW64\msfeeds.dll + 2009-07-13 21:03 . 2009-07-14 01:15 339968 c:\windows\SysWOW64\msexcl40.dll + 2009-07-13 21:03 . 2009-07-14 01:15 409600 c:\windows\SysWOW64\msexch40.dll + 2009-07-13 23:44 . 2009-07-14 01:15 237568 c:\windows\SysWOW64\msdtcuiu.dll + 2009-07-13 23:44 . 2009-07-14 01:15 578560 c:\windows\SysWOW64\msdtcprx.dll + 2009-07-13 23:20 . 2009-07-14 01:14 983040 c:\windows\SysWOW64\msdt.exe + 2009-07-13 23:34 . 2009-07-14 01:15 334848 c:\windows\SysWOW64\msdrm.dll + 2009-07-13 23:12 . 2009-07-14 01:15 305152 c:\windows\SysWOW64\msdelta.dll + 2009-07-14 00:11 . 2009-07-14 01:15 126976 c:\windows\SysWOW64\msdart.dll + 2009-07-14 00:11 . 2009-07-14 01:15 163840 c:\windows\SysWOW64\msdadiag.dll + 2009-07-13 23:28 . 2009-07-14 01:15 828928 c:\windows\SysWOW64\msctf.dll + 2009-07-13 20:46 . 2009-06-10 21:23 155984 c:\windows\SysWOW64\mscorier.dll + 2010-07-07 07:21 . 2009-11-25 10:47 297808 c:\windows\SysWOW64\mscoree.dll + 2009-07-13 23:26 . 2009-07-14 01:15 481280 c:\windows\SysWOW64\mscms.dll + 2009-07-13 23:26 . 2009-07-14 01:15 219648 c:\windows\SysWOW64\mscandui.dll + 2009-07-13 23:11 . 2009-07-14 01:06 145920 c:\windows\SysWOW64\msaudite.dll + 2009-07-14 00:08 . 2009-07-14 01:15 226304 c:\windows\SysWOW64\MSAC3ENC.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 121344 c:\windows\SysWOW64\msaatext.dll + 2009-07-13 23:54 . 2009-07-14 01:15 104960 c:\windows\SysWOW64\mprmsg.dll + 2009-07-13 23:54 . 2009-07-14 01:15 268288 c:\windows\SysWOW64\mprddm.dll + 2009-07-13 23:54 . 2009-07-14 01:15 158720 c:\windows\SysWOW64\mprapi.dll + 2009-07-14 00:07 . 2009-07-14 01:15 241152 c:\windows\SysWOW64\MPG4DECD.DLL + 2009-07-14 00:08 . 2009-07-14 01:15 415744 c:\windows\SysWOW64\MP4SDECD.DLL + 2009-07-14 00:07 . 2009-07-14 01:15 241152 c:\windows\SysWOW64\MP43DECD.DLL + 2009-07-13 23:41 . 2009-07-14 01:06 184832 c:\windows\SysWOW64\moricons.dll + 2009-07-13 23:55 . 2009-07-14 01:15 288768 c:\windows\SysWOW64\modemui.dll + 2009-07-13 23:39 . 2009-07-14 01:14 101376 c:\windows\SysWOW64\mobsync.exe + 2009-07-14 00:03 . 2009-07-14 01:15 213504 c:\windows\SysWOW64\MMDevAPI.dll + 2009-07-13 23:29 . 2009-07-14 01:15 128512 c:\windows\SysWOW64\mmcshext.dll + 2009-07-13 23:29 . 2009-07-14 01:15 304128 c:\windows\SysWOW64\mmcbase.dll + 2009-07-13 23:40 . 2009-07-14 01:15 177664 c:\windows\SysWOW64\mlang.dll + 2009-06-10 21:26 . 2009-06-10 21:26 673088 c:\windows\SysWOW64\mlang.dat + 2009-07-13 23:17 . 2009-07-14 01:15 736256 c:\windows\SysWOW64\migwiz\unbcl.dll + 2009-07-14 00:01 . 2009-07-14 01:16 108032 c:\windows\SysWOW64\migwiz\replacementmanifests\Microsoft-Windows-TerminalServices-AppServer-Licensing\tsmigplugin.dll + 2009-07-13 23:14 . 2009-07-14 01:16 109568 c:\windows\SysWOW64\migwiz\replacementmanifests\Microsoft-Windows-OfflineFiles-Core\CscMig.dll + 2009-07-13 23:53 . 2009-07-14 01:16 156160 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-ndis\ndismigplugin.dll + 2009-07-14 00:11 . 2009-07-14 01:16 281088 c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-iis-rm\iismig.dll + 2009-07-13 23:17 . 2009-07-14 01:14 636416 c:\windows\SysWOW64\migwiz\PostMig.exe + 2009-07-13 23:17 . 2009-07-14 01:15 224256 c:\windows\SysWOW64\migwiz\MXEAgent.dll + 2009-07-13 23:17 . 2009-07-14 01:14 429056 c:\windows\SysWOW64\migwiz\migwiz.exe + 2009-07-13 23:17 . 2009-07-14 01:15 282112 c:\windows\SysWOW64\migwiz\MigSys.dll + 2009-07-13 23:17 . 2009-07-14 01:15 892416 c:\windows\SysWOW64\migwiz\migstore.dll + 2009-07-13 23:17 . 2009-07-14 01:17 156440 c:\windows\SysWOW64\migwiz\MigSetup.exe + 2009-07-13 23:17 . 2009-07-14 01:14 258560 c:\windows\SysWOW64\migwiz\mighost.exe + 2009-07-13 23:31 . 2009-07-14 01:16 388096 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-WMI-Core\WMIMigrationPlugin.dll + 2009-07-13 23:55 . 2009-07-14 01:16 145920 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-Unimodem-Config\ModemMigPlugin.dll + 2009-07-13 23:26 . 2009-07-14 01:16 156160 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TextServicesFramework-Migration-DL\msctfmig.dll + 2009-07-14 00:19 . 2009-07-14 01:16 100864 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-TapiSetup\TapiMigPlugin.dll + 2009-07-13 23:15 . 2009-07-14 01:16 112128 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-Sxs\SxsMigPlugin.dll + 2009-07-13 23:46 . 2009-07-14 01:16 206848 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-StorageMigration\StorMigPlugin.dll + 2009-07-13 23:54 . 2009-07-14 01:16 116736 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-RasServer-MigPlugin\RasMigPlugin.dll + 2009-07-13 23:19 . 2009-07-14 01:16 124416 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-PerformanceCounterInfrastructure-DL\CntrtextMig.dll + 2009-07-13 23:55 . 2009-07-14 01:16 137728 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-NetworkLoadBalancing-Core\NlbMigPlugin.dll + 2009-07-13 23:53 . 2009-07-14 01:16 156160 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-NDIS\ndismigplugin.dll + 2009-07-14 00:10 . 2009-07-14 01:16 125952 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-msmq-messagingcoreservice\mqmigplugin.dll + 2009-07-14 00:09 . 2009-07-14 01:16 553472 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-MediaPlayer\MediaPlayer-DLMigPlugin.dll + 2009-07-14 00:06 . 2009-07-14 01:16 402944 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-MediaPlayer-DRM-DL\drmmgrtn.dll + 2009-07-14 00:11 . 2009-07-14 01:16 281088 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-IIS-DL\iismig.dll + 2009-07-13 23:53 . 2009-07-14 01:16 485376 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-IasServer-MigPlugin\IasMigPlugin.dll + 2009-07-13 23:52 . 2009-07-14 01:16 126464 c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-DHCPServerMigPlugin-DL\DhcpSrvMigPlugin.dll + 2009-07-13 23:17 . 2009-07-14 01:15 461312 c:\windows\SysWOW64\migwiz\csiagent.dll + 2009-07-13 23:17 . 2009-07-14 01:15 164864 c:\windows\SysWOW64\migwiz\cmi2migxml.dll + 2009-07-13 23:31 . 2009-07-14 01:15 181760 c:\windows\SysWOW64\miguiresource.dll + 2009-07-13 23:55 . 2009-07-14 01:16 163328 c:\windows\SysWOW64\migration\WsUpgrade.dll + 2009-07-13 23:31 . 2009-07-14 01:16 388096 c:\windows\SysWOW64\migration\WMIMigrationPlugin.dll + 2009-07-13 23:15 . 2009-07-14 01:16 112128 c:\windows\SysWOW64\migration\SxsMigPlugin.dll + 2009-07-13 23:46 . 2009-07-14 01:16 206848 c:\windows\SysWOW64\migration\StorMigPlugin.dll + 2009-07-13 23:26 . 2009-07-14 01:15 156160 c:\windows\SysWOW64\migration\msctfmig.dll + 2009-07-13 23:55 . 2009-07-14 01:15 145920 c:\windows\SysWOW64\migration\modemmigplugin.dll + 2009-07-14 00:09 . 2009-07-14 01:16 553472 c:\windows\SysWOW64\migration\MediaPlayer-DLMigPlugin.dll + 2009-07-13 23:19 . 2009-07-14 01:16 124416 c:\windows\SysWOW64\migration\CntrtextMig.dll + 2009-07-13 23:16 . 2009-07-14 01:15 101888 c:\windows\SysWOW64\migisol.dll + 2009-07-14 00:07 . 2009-07-14 01:15 609280 c:\windows\SysWOW64\MFWMAAEC.DLL + 2010-11-25 18:21 . 2010-05-23 10:11 196608 c:\windows\SysWOW64\mfreadwrite.dll + 2009-07-14 00:03 . 2009-07-14 01:15 103424 c:\windows\SysWOW64\mfps.dll + 2009-07-14 00:03 . 2009-07-14 01:15 176128 c:\windows\SysWOW64\MFPlay.dll + 2009-07-14 00:04 . 2009-07-14 01:15 352768 c:\windows\SysWOW64\mfplat.dll + 2009-07-14 00:03 . 2009-07-14 01:15 281088 c:\windows\SysWOW64\mfh264enc.dll + 2009-07-14 00:03 . 2009-07-14 01:15 140288 c:\windows\SysWOW64\mfdvdec.dll + 2009-07-14 00:03 . 2009-07-14 01:15 292864 c:\windows\SysWOW64\mfds.dll + 2010-10-15 04:55 . 2010-08-31 04:32 954288 c:\windows\SysWOW64\mfc40u.dll + 2010-10-15 04:55 . 2010-08-31 04:32 954752 c:\windows\SysWOW64\mfc40.dll + 2009-07-14 00:09 . 2009-07-14 01:15 266752 c:\windows\SysWOW64\MediaMetadataHandler.dll + 2009-07-13 23:55 . 2009-07-14 01:15 205824 c:\windows\SysWOW64\mdminst.dll + 2009-06-10 21:39 . 2009-06-10 21:39 313208 c:\windows\SysWOW64\MCEWMDRMNDBootstrap.dll + 2009-07-13 23:13 . 2009-07-14 01:14 302080 c:\windows\SysWOW64\mcbuilder.exe + 2009-07-14 00:13 . 2009-07-14 01:14 629760 c:\windows\SysWOW64\Magnify.exe + 2009-07-21 11:29 . 2009-07-21 11:29 180224 c:\windows\SysWOW64\Macromed\Shockwave 10\Proj.dll + 2009-07-21 11:29 . 2009-07-21 11:29 475136 c:\windows\SysWOW64\Macromed\Shockwave 10\PluginPing.dll + 2009-07-21 11:29 . 2009-07-21 11:29 339968 c:\windows\SysWOW64\Macromed\Shockwave 10\Plugin.dll + 2009-07-21 11:29 . 2009-07-21 11:29 606208 c:\windows\SysWOW64\Macromed\Shockwave 10\iml32X.dll + 2009-07-21 11:29 . 2009-07-21 11:29 581632 c:\windows\SysWOW64\Macromed\Shockwave 10\Control.dll + 2011-05-13 05:16 . 2011-05-13 05:16 239776 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10q_Plugin.exe + 2009-07-18 03:12 . 2009-07-18 03:12 257440 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe + 2007-01-17 13:47 . 2007-01-17 13:47 462848 c:\windows\SysWOW64\ltkrn13n.dll + 2007-01-17 13:47 . 2007-01-17 13:47 450560 c:\windows\SysWOW64\ltimg13n.dll + 2007-01-17 13:47 . 2007-01-17 13:47 163840 c:\windows\SysWOW64\ltfil13n.dll + 2007-01-17 13:47 . 2007-01-17 13:47 299008 c:\windows\SysWOW64\ltdis13n.dll + 2009-07-13 23:37 . 2009-07-14 01:15 127488 c:\windows\SysWOW64\logoncli.dll + 2009-07-13 23:45 . 2009-07-14 01:15 226816 c:\windows\SysWOW64\LocationApi.dll + 2009-07-13 23:29 . 2009-07-14 01:15 429056 c:\windows\SysWOW64\localsec.dll + 2009-07-13 23:19 . 2009-07-14 01:15 115712 c:\windows\SysWOW64\loadperf.dll + 2010-09-21 13:03 . 2010-09-21 13:03 208768 c:\windows\SysWOW64\LIVESSP.DLL + 2007-01-17 13:47 . 2007-01-17 13:47 159744 c:\windows\SysWOW64\lfpng13n.dll + 2007-01-17 13:47 . 2007-01-17 13:47 401408 c:\windows\SysWOW64\lfcmp13n.dll + 2009-07-13 23:51 . 2009-07-14 01:15 180224 c:\windows\SysWOW64\L2SecHC.dll + 2009-07-14 00:11 . 2009-07-14 01:15 145408 c:\windows\SysWOW64\korwbrkr.dll + 2009-07-13 23:34 . 2009-07-14 01:15 158720 c:\windows\SysWOW64\keymgr.dll + 2009-07-13 23:11 . 2009-07-14 01:11 269824 c:\windows\SysWOW64\KernelBase.dll + 2009-07-13 23:16 . 2009-07-14 01:11 836608 c:\windows\SysWOW64\kernel32.dll + 2011-02-09 12:00 . 2010-12-18 05:29 541184 c:\windows\SysWOW64\kerberos.dll + 2011-06-16 00:57 . 2011-04-22 23:26 716800 c:\windows\SysWOW64\jscript.dll + 2011-06-23 10:01 . 2011-05-04 02:52 157472 c:\windows\SysWOW64\javaws.exe + 2011-06-23 10:01 . 2011-05-04 02:52 145184 c:\windows\SysWOW64\javaw.exe + 2011-06-23 10:01 . 2011-05-04 02:52 145184 c:\windows\SysWOW64\java.exe + 2010-01-15 00:52 . 2008-04-01 20:40 209040 c:\windows\SysWOW64\IVIresizeW7.dll + 2010-01-15 00:52 . 2008-04-01 20:40 192656 c:\windows\SysWOW64\IVIresizePX.dll + 2010-01-15 00:52 . 2008-04-01 20:40 196752 c:\windows\SysWOW64\IVIresizeP6.dll + 2010-01-15 00:52 . 2008-04-01 20:40 196752 c:\windows\SysWOW64\IVIresizeM6.dll + 2010-01-15 00:52 . 2008-04-01 20:40 204944 c:\windows\SysWOW64\IVIresizeA6.dll + 2009-07-14 00:08 . 2009-07-14 01:15 219648 c:\windows\SysWOW64\iTVData.dll + 2009-07-14 00:12 . 2009-07-14 01:15 142848 c:\windows\SysWOW64\itss.dll + 2009-07-14 00:12 . 2009-07-14 01:15 158208 c:\windows\SysWOW64\itircl.dll + 2009-07-13 23:46 . 2009-07-14 01:14 120320 c:\windows\SysWOW64\iscsicpl.exe + 2009-07-13 23:46 . 2009-07-14 01:15 218624 c:\windows\SysWOW64\iscsicpl.dll + 2009-07-13 23:46 . 2009-07-14 01:14 144896 c:\windows\SysWOW64\iscsicli.exe + 2009-07-13 22:25 . 2009-07-14 01:15 200192 c:\windows\SysWOW64\ir50_qcx.dll + 2009-07-13 22:25 . 2009-07-14 01:15 200192 c:\windows\SysWOW64\ir50_qc.dll + 2009-07-13 22:25 . 2009-07-14 01:15 746496 c:\windows\SysWOW64\ir50_32.dll + 2009-06-10 21:18 . 2009-07-14 01:15 120320 c:\windows\SysWOW64\ir41_qcx.dll + 2009-06-10 21:18 . 2009-07-14 01:15 120320 c:\windows\SysWOW64\ir41_qc.dll + 2009-07-13 22:25 . 2009-07-14 01:15 197632 c:\windows\SysWOW64\ir32_32.dll + 2009-07-13 23:53 . 2009-07-14 01:15 400896 c:\windows\SysWOW64\ipsmsnap.dll + 2009-07-13 23:52 . 2009-07-14 01:15 757760 c:\windows\SysWOW64\ipsecsnp.dll + 2009-07-13 23:54 . 2009-07-14 01:15 271360 c:\windows\SysWOW64\iprtrmgr.dll + 2009-07-13 23:12 . 2009-07-14 01:15 103936 c:\windows\SysWOW64\IPHLPAPI.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 202240 c:\windows\SysWOW64\input.dll + 2009-07-13 23:46 . 2009-07-14 01:15 216064 c:\windows\SysWOW64\InkEd.dll + 2011-06-16 00:22 . 2011-05-03 04:50 740864 c:\windows\SysWOW64\inetcomm.dll + 2009-07-13 23:25 . 2009-07-14 01:11 119808 c:\windows\SysWOW64\imm32.dll + 2009-07-13 23:26 . 2009-07-14 01:15 701440 c:\windows\SysWOW64\IMJP10K.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 607232 c:\windows\SysWOW64\IME\shared\MSCAND20.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 126976 c:\windows\SysWOW64\IME\shared\IMJKAPI.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 374272 c:\windows\SysWOW64\IME\shared\IMETIP.DLL + 2009-07-13 23:26 . 2009-07-14 01:14 269824 c:\windows\SysWOW64\IME\shared\IMEPADSV.EXE + 2009-07-13 23:26 . 2009-07-14 01:14 286208 c:\windows\SysWOW64\IME\shared\IMCCPHR.exe + 2009-07-13 23:26 . 2009-07-14 01:15 421888 c:\windows\SysWOW64\IME\IMETC10\imtcui.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 607232 c:\windows\SysWOW64\IME\IMETC10\IMTCTIP.dll + 2009-07-13 23:26 . 2009-07-14 01:14 362496 c:\windows\SysWOW64\IME\IMETC10\IMTCPROP.exe + 2009-07-13 23:26 . 2009-07-14 01:15 545792 c:\windows\SysWOW64\IME\IMETC10\IMTCCORE.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 171520 c:\windows\SysWOW64\IME\IMETC10\IMTCCFG.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 125440 c:\windows\SysWOW64\IME\IMETC10\applets\IMTCSKF.dll + 2009-07-13 23:26 . 2009-07-14 01:15 226816 c:\windows\SysWOW64\IME\IMETC10\applets\IMTCCAC.dll + 2009-07-13 23:26 . 2009-07-14 01:15 371200 c:\windows\SysWOW64\IME\IMESC5\imscui.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 319488 c:\windows\SysWOW64\IME\IMESC5\IMSCTIP.dll + 2009-07-13 23:27 . 2009-07-14 01:15 655872 c:\windows\SysWOW64\IME\IMESC5\ImSCCore.dll + 2009-07-13 23:26 . 2009-07-14 01:15 126976 c:\windows\SysWOW64\IME\IMESC5\ImSCCfg.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 132096 c:\windows\SysWOW64\IME\IMESC5\applets\PINTLCSA.dll + 2009-07-13 23:26 . 2009-07-14 01:15 562176 c:\windows\SysWOW64\IME\imekr8\imkrtip.dll + 2009-07-13 23:26 . 2009-07-14 01:15 113664 c:\windows\SysWOW64\IME\imekr8\imkrapi.dll + 2009-07-13 23:26 . 2009-07-14 01:15 128512 c:\windows\SysWOW64\IME\imekr8\applets\imkrskf.dll + 2009-07-13 23:26 . 2009-07-14 01:15 218624 c:\windows\SysWOW64\IME\imekr8\applets\imkrcac.dll + 2009-07-13 23:26 . 2009-07-14 01:15 305664 c:\windows\SysWOW64\IME\IMEJP10\imjputyc.dll + 2009-07-13 23:26 . 2009-07-14 01:14 105984 c:\windows\SysWOW64\IME\IMEJP10\imjpuexc.exe + 2009-07-13 23:26 . 2009-07-14 01:14 346112 c:\windows\SysWOW64\IME\IMEJP10\IMJPDCT.EXE + 2009-07-13 23:26 . 2009-07-14 01:15 166912 c:\windows\SysWOW64\IME\IMEJP10\IMJPCD.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 361472 c:\windows\SysWOW64\IME\IMEJP10\IMJPAPI.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 226816 c:\windows\SysWOW64\IME\IMEJP10\APPLETS\IMJPSKF.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 448000 c:\windows\SysWOW64\IME\IMEJP10\APPLETS\IMJPKDIC.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 629248 c:\windows\SysWOW64\IME\IMEJP10\APPLETS\IMJPCLST.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 280064 c:\windows\SysWOW64\IME\IMEJP10\APPLETS\IMJPCAC.DLL + 2009-07-13 23:46 . 2009-07-14 01:15 732160 c:\windows\SysWOW64\imapi2fs.dll + 2009-07-13 23:45 . 2009-07-14 01:15 392704 c:\windows\SysWOW64\imapi2.dll + 2009-07-13 23:45 . 2009-07-14 01:15 109056 c:\windows\SysWOW64\imapi.dll + 2009-07-13 23:41 . 2009-07-14 01:06 705536 c:\windows\SysWOW64\imagesp1.dll + 2009-07-13 23:57 . 2009-07-14 01:15 154624 c:\windows\SysWOW64\imagehlp.dll + 2009-07-13 23:15 . 2009-07-14 01:15 148992 c:\windows\SysWOW64\ifsutil.dll + 2011-03-25 21:06 . 2011-03-25 21:06 150528 c:\windows\SysWOW64\iexpress.exe + 2011-03-25 21:06 . 2011-03-25 21:06 142848 c:\windows\SysWOW64\ieUnatt.exe + 2011-06-16 00:58 . 2011-04-22 23:24 176640 c:\windows\SysWOW64\ieui.dll + 2011-03-25 21:06 . 2011-03-25 21:06 118784 c:\windows\SysWOW64\iepeers.dll + 2011-03-25 21:06 . 2011-03-25 21:06 353584 c:\windows\SysWOW64\iedkcs32.dll + 2011-03-25 21:06 . 2011-03-25 21:06 434176 c:\windows\SysWOW64\ieapfltr.dll + 2011-03-25 21:06 . 2011-03-25 21:06 163840 c:\windows\SysWOW64\ieakui.dll + 2011-03-25 21:06 . 2011-03-25 21:06 227840 c:\windows\SysWOW64\ieaksie.dll + 2011-03-25 21:06 . 2011-03-25 21:06 130560 c:\windows\SysWOW64\ieakeng.dll + 2011-03-25 21:06 . 2011-03-25 21:06 110592 c:\windows\SysWOW64\IEAdvpack.dll + 2009-07-13 23:52 . 2009-07-14 01:15 143360 c:\windows\SysWOW64\icsigd.dll + 2009-07-13 23:25 . 2009-07-14 01:15 215040 c:\windows\SysWOW64\icm32.dll + 2009-07-14 00:36 . 2009-06-10 21:14 618832 c:\windows\SysWOW64\icardagt.exe + 2009-07-13 23:53 . 2009-07-14 01:15 322560 c:\windows\SysWOW64\iassdo.dll + 2009-07-13 23:53 . 2009-07-14 01:15 191488 c:\windows\SysWOW64\iassam.dll + 2009-07-13 23:53 . 2009-07-14 01:15 122368 c:\windows\SysWOW64\iasrecst.dll + 2009-07-13 23:53 . 2009-07-14 01:15 172032 c:\windows\SysWOW64\iasrad.dll + 2009-07-13 23:53 . 2009-07-14 01:15 157696 c:\windows\SysWOW64\iasnap.dll + 2009-07-13 23:53 . 2009-07-14 01:16 485376 c:\windows\SysWOW64\IasMigPlugin.dll + 2009-07-13 23:53 . 2009-07-14 01:15 288256 c:\windows\SysWOW64\hnetcfg.dll + 2009-07-13 23:41 . 2009-07-14 01:15 312320 c:\windows\SysWOW64\hgcpl.dll + 2009-07-13 23:38 . 2009-07-14 01:14 128000 c:\windows\SysWOW64\gpresult.exe + 2009-07-13 23:38 . 2009-07-14 01:15 951808 c:\windows\SysWOW64\gpedit.dll + 2009-07-13 23:28 . 2009-07-14 01:15 130048 c:\windows\SysWOW64\glu32.dll + 2009-07-13 23:28 . 2009-07-14 01:15 315392 c:\windows\SysWOW64\glmf32.dll + 2009-07-13 23:25 . 2009-07-14 01:11 310784 c:\windows\SysWOW64\gdi32.dll + 2009-07-14 00:04 . 2009-07-14 01:15 120832 c:\windows\SysWOW64\gcdef.dll + 2009-07-14 00:14 . 2009-07-14 01:15 457216 c:\windows\SysWOW64\FXSXP32.dll + 2009-07-14 00:15 . 2009-07-14 01:05 925184 c:\windows\SysWOW64\FXSRESM.dll + 2009-07-14 00:15 . 2009-07-14 01:15 472576 c:\windows\SysWOW64\FXSCOMEX.dll + 2009-07-14 00:15 . 2009-07-14 01:15 227328 c:\windows\SysWOW64\FXSAPI.dll + 2009-07-13 23:54 . 2009-07-14 01:15 216576 c:\windows\SysWOW64\FWPUCLNT.DLL + 2009-07-13 23:22 . 2009-07-14 01:15 167424 c:\windows\SysWOW64\fundisc.dll + 2009-07-13 23:20 . 2009-07-14 01:15 179712 c:\windows\SysWOW64\fthsvc.dll + 2009-07-13 23:31 . 2009-07-14 01:15 206336 c:\windows\SysWOW64\framedynos.dll + 2009-07-13 23:31 . 2009-07-14 01:15 203264 c:\windows\SysWOW64\framedyn.dll + 2009-07-13 23:41 . 2009-07-14 01:14 104448 c:\windows\SysWOW64\fontview.exe + 2009-07-13 23:41 . 2009-07-14 01:15 828928 c:\windows\SysWOW64\fontext.dll + 2009-07-13 23:53 . 2009-07-14 01:15 856576 c:\windows\SysWOW64\FirewallControlPanel.dll + 2009-07-13 23:53 . 2009-07-14 01:15 462848 c:\windows\SysWOW64\FirewallAPI.dll + 2009-07-13 23:29 . 2009-07-14 01:15 444416 c:\windows\SysWOW64\filemgmt.dll + 2009-07-13 23:22 . 2009-07-14 01:15 107008 c:\windows\SysWOW64\fdWSD.dll + 2009-07-13 23:39 . 2009-07-14 01:15 123904 c:\windows\SysWOW64\fde.dll + 2009-07-13 23:27 . 2009-07-14 01:15 320512 c:\windows\SysWOW64\Faultrep.dll + 2009-09-02 11:00 . 2009-09-02 11:00 485936 c:\windows\SysWOW64\ezWizard7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 728112 c:\windows\SysWOW64\ezUtils7.dll + 2009-12-11 18:08 . 2009-12-11 18:08 120368 c:\windows\SysWOW64\ezUninst.exe + 2009-12-11 18:09 . 2010-04-04 12:44 588472 c:\windows\SysWOW64\ezsvc7x.dll + 2009-12-11 18:09 . 2009-02-22 11:00 129584 c:\windows\SysWOW64\ezsvc7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 111104 c:\windows\SysWOW64\ezSubs7.dll + 2009-12-11 18:08 . 2009-12-11 18:08 117808 c:\windows\SysWOW64\ezShellStart.exe + 2009-09-02 11:00 . 2009-09-02 11:00 545792 c:\windows\SysWOW64\ezShell7.dll + 2009-12-11 18:08 . 2009-12-11 18:08 286768 c:\windows\SysWOW64\ezseng.exe + 2009-09-02 11:00 . 2009-09-02 11:00 590896 c:\windows\SysWOW64\ezScrSvr.scr + 2009-09-02 11:00 . 2009-09-02 11:00 635440 c:\windows\SysWOW64\ezScore7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 905264 c:\windows\SysWOW64\ezPrint7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 565296 c:\windows\SysWOW64\ezMenu7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 225328 c:\windows\SysWOW64\ezMDUninstall.exe + 2009-09-02 11:00 . 2009-09-02 11:00 171520 c:\windows\SysWOW64\ezLicPrompt7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 267824 c:\windows\SysWOW64\ezHints7.dll + 2009-09-02 11:00 . 2009-09-02 11:00 161328 c:\windows\SysWOW64\ezFileImport7.dll + 2009-07-13 21:04 . 2009-07-14 01:15 380957 c:\windows\SysWOW64\expsrv.dll + 2009-07-14 00:04 . 2009-07-14 01:15 488448 c:\windows\SysWOW64\evr.dll + 2009-07-13 23:41 . 2009-07-14 01:14 288256 c:\windows\SysWOW64\eudcedit.exe + 2009-07-13 23:32 . 2009-07-14 01:14 123392 c:\windows\SysWOW64\esentutl.exe + 2009-07-13 23:44 . 2009-07-14 01:15 271360 c:\windows\SysWOW64\es.dll + 2011-03-09 10:08 . 2010-12-23 05:28 534528 c:\windows\SysWOW64\EncDec.dll + 2009-07-13 23:15 . 2009-07-14 01:15 551424 c:\windows\SysWOW64\elslad.dll + 2009-07-13 23:29 . 2009-07-14 01:15 179200 c:\windows\SysWOW64\els.dll + 2009-07-13 23:45 . 2009-07-14 01:15 189952 c:\windows\SysWOW64\EhStorShell.dll + 2009-07-13 23:45 . 2009-07-14 01:15 105472 c:\windows\SysWOW64\EhStorPwdMgr.dll + 2009-07-13 23:46 . 2009-07-14 01:14 130560 c:\windows\SysWOW64\EhStorAuthn.exe + 2009-07-13 23:45 . 2009-07-14 01:15 128512 c:\windows\SysWOW64\EhStorAPI.dll + 2009-07-13 23:33 . 2009-07-14 01:15 204800 c:\windows\SysWOW64\efscore.dll + 2009-07-13 23:56 . 2009-07-14 01:15 222208 c:\windows\SysWOW64\eapphost.dll + 2009-07-13 23:56 . 2009-07-14 01:15 183296 c:\windows\SysWOW64\eappcfg.dll + 2009-07-13 23:56 . 2009-07-14 01:15 242176 c:\windows\SysWOW64\eapp3hst.dll + 2011-03-25 21:06 . 2011-03-25 21:06 223232 c:\windows\SysWOW64\dxtrans.dll + 2011-03-25 21:06 . 2011-03-25 21:06 353792 c:\windows\SysWOW64\dxtmsft.dll + 2009-07-14 00:07 . 2009-07-14 01:15 630784 c:\windows\SysWOW64\DXPTaskRingtone.dll + 2009-07-13 23:28 . 2009-07-14 01:15 507392 c:\windows\SysWOW64\dxgi.dll + 2009-07-13 23:29 . 2009-07-14 01:15 210432 c:\windows\SysWOW64\dxdiagn.dll + 2009-07-13 23:28 . 2009-07-14 01:14 264704 c:\windows\SysWOW64\dxdiag.exe + 2009-07-13 23:27 . 2009-07-14 01:14 130048 c:\windows\SysWOW64\DWWIN.EXE + 2009-07-13 23:26 . 2009-07-14 01:15 181248 c:\windows\SysWOW64\duser.dll + 2009-07-13 23:28 . 2009-07-14 01:15 717824 c:\windows\SysWOW64\dui70.dll + 2009-07-13 23:39 . 2009-07-14 01:15 685056 c:\windows\SysWOW64\dsuiext.dll + 2009-07-13 23:37 . 2009-07-14 01:17 156728 c:\windows\SysWOW64\dssenh.dll + 2009-07-14 02:34 . 2009-06-10 21:34 215943 c:\windows\SysWOW64\dssec.dat + 2009-07-13 23:40 . 2009-07-14 01:15 395776 c:\windows\SysWOW64\dsquery.dll + 2009-07-13 23:29 . 2009-07-14 01:15 148992 c:\windows\SysWOW64\dsprop.dll + 2009-07-14 00:03 . 2009-07-14 01:15 453632 c:\windows\SysWOW64\dsound.dll + 2009-07-13 23:41 . 2009-07-14 01:15 196608 c:\windows\SysWOW64\dskquoui.dll + 2009-07-14 00:02 . 2009-07-14 01:15 245248 c:\windows\SysWOW64\DShowRdpFilter.dll + 2009-07-14 00:03 . 2009-07-14 01:15 173568 c:\windows\SysWOW64\dsdmo.dll + 2009-07-13 23:16 . 2009-07-14 01:15 318464 c:\windows\SysWOW64\drvstore.dll + 2009-07-13 23:16 . 2009-07-14 01:14 252928 c:\windows\SysWOW64\drvinst.exe + 2009-07-13 23:56 . 2009-07-14 01:15 225280 c:\windows\SysWOW64\drt.dll + 2009-07-14 00:06 . 2009-07-14 01:15 986624 c:\windows\SysWOW64\drmv2clt.dll + 2009-07-14 00:06 . 2009-07-14 01:15 402944 c:\windows\SysWOW64\drmmgrtn.dll + 2009-07-13 23:12 . 2009-07-14 01:15 256512 c:\windows\SysWOW64\dpx.dll + 2009-07-14 00:05 . 2009-07-14 01:15 376832 c:\windows\SysWOW64\dpnet.dll + 2009-07-14 00:04 . 2009-07-14 01:15 213504 c:\windows\SysWOW64\dplayx.dll + 2009-07-13 23:52 . 2009-07-14 01:15 333824 c:\windows\SysWOW64\dot3ui.dll + 2009-07-13 23:52 . 2009-07-14 01:15 115200 c:\windows\SysWOW64\dot3msm.dll + 2009-07-13 23:52 . 2009-07-14 01:15 265728 c:\windows\SysWOW64\dot3gpui.dll + 2009-07-13 23:56 . 2009-07-14 01:15 108544 c:\windows\SysWOW64\dnscmmc.dll + 2011-04-13 06:44 . 2011-03-03 05:29 269824 c:\windows\SysWOW64\dnsapi.dll + 2009-07-13 23:23 . 2009-07-14 01:15 145920 c:\windows\SysWOW64\dmvdsitf.dll + 2009-07-14 00:03 . 2009-07-14 01:15 101376 c:\windows\SysWOW64\dmusic.dll + 2009-07-14 00:03 . 2009-07-14 01:15 105472 c:\windows\SysWOW64\dmsynth.dll + 2009-07-14 00:03 . 2009-07-14 01:15 105984 c:\windows\SysWOW64\dmstyle.dll + 2009-07-13 23:16 . 2009-07-14 01:15 111616 c:\windows\SysWOW64\dmrc.dll + 2009-07-14 00:03 . 2009-07-14 01:15 179712 c:\windows\SysWOW64\dmime.dll + 2009-07-13 23:23 . 2009-07-14 01:04 372224 c:\windows\SysWOW64\dmdskres.dll + 2009-07-13 23:23 . 2009-07-14 01:15 199680 c:\windows\SysWOW64\dmdskmgr.dll + 2009-07-13 23:23 . 2009-07-14 01:15 395776 c:\windows\SysWOW64\dmdlgs.dll + 2009-07-13 23:39 . 2009-07-14 01:14 522752 c:\windows\SysWOW64\DisplaySwitch.exe + 2009-07-13 23:18 . 2009-07-14 01:16 345600 c:\windows\SysWOW64\Dism\WimProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:16 242688 c:\windows\SysWOW64\Dism\UnattendProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:16 344576 c:\windows\SysWOW64\Dism\TransmogProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:16 220160 c:\windows\SysWOW64\Dism\SmiProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:16 102400 c:\windows\SysWOW64\Dism\OSProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 159744 c:\windows\SysWOW64\Dism\MsiProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 250880 c:\windows\SysWOW64\Dism\IntlProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 318464 c:\windows\SysWOW64\Dism\DmiProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 141312 c:\windows\SysWOW64\Dism\DismProv.dll + 2009-07-13 23:18 . 2009-07-14 01:15 229376 c:\windows\SysWOW64\Dism\DismCore.dll + 2009-07-13 23:18 . 2009-07-14 01:15 141312 c:\windows\SysWOW64\Dism\CompatProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:15 499712 c:\windows\SysWOW64\Dism\CbsProvider.dll + 2009-07-13 23:18 . 2009-07-14 01:14 202752 c:\windows\SysWOW64\Dism.exe + 2009-07-13 23:24 . 2009-07-14 01:14 276480 c:\windows\SysWOW64\diskraid.exe + 2009-07-13 23:24 . 2009-07-14 01:14 133632 c:\windows\SysWOW64\diskpart.exe + 2009-07-14 00:04 . 2009-07-14 01:15 145408 c:\windows\SysWOW64\dinput8.dll + 2009-07-14 00:04 . 2009-07-14 01:15 136704 c:\windows\SysWOW64\dinput.dll + 2009-07-13 23:16 . 2009-07-14 01:15 315904 c:\windows\SysWOW64\difxapi.dll + 2009-07-13 23:12 . 2009-07-14 01:15 191488 c:\windows\SysWOW64\dhcpcore6.dll + 2009-07-13 23:12 . 2009-07-14 01:15 253440 c:\windows\SysWOW64\dhcpcore.dll + 2009-07-13 23:23 . 2009-07-14 01:14 586752 c:\windows\SysWOW64\dfrgui.exe + 2009-07-13 23:16 . 2009-07-14 01:15 410624 c:\windows\SysWOW64\devmgr.dll + 2009-07-13 23:42 . 2009-07-14 01:15 211456 c:\windows\SysWOW64\DevicePairingFolder.dll + 2009-07-13 23:42 . 2009-07-14 01:15 181248 c:\windows\SysWOW64\DevicePairing.dll + 2009-07-13 23:42 . 2009-07-14 01:15 484864 c:\windows\SysWOW64\DeviceCenter.dll + 2009-07-13 23:45 . 2009-07-14 01:15 220672 c:\windows\SysWOW64\defaultlocationcpl.dll + 2009-07-13 23:27 . 2009-07-14 01:15 531968 c:\windows\SysWOW64\ddraw.dll + 2009-07-13 23:25 . 2009-07-14 01:14 868352 c:\windows\SysWOW64\dccw.exe + 2009-07-14 00:12 . 2009-07-14 01:15 135168 c:\windows\SysWOW64\dbnetlib.dll + 2009-07-13 23:58 . 2009-07-14 01:15 854528 c:\windows\SysWOW64\dbghelp.dll + 2010-11-25 18:23 . 2009-09-04 16:29 453456 c:\windows\SysWOW64\d3dx10_42.dll + 2010-07-11 14:47 . 2010-07-11 14:47 453456 c:\windows\SysWOW64\d3dx10_41.dll + 2010-01-15 00:52 . 2007-10-02 08:56 444776 c:\windows\SysWOW64\d3dx10_36.dll + 2010-01-15 00:52 . 2007-07-19 17:14 444776 c:\windows\SysWOW64\d3dx10_35.dll + 2010-01-15 00:52 . 2007-05-16 15:45 443752 c:\windows\SysWOW64\d3dx10_34.dll + 2010-01-15 00:52 . 2007-03-15 15:57 443752 c:\windows\SysWOW64\d3dx10_33.dll + 2010-01-15 00:52 . 2006-11-29 12:06 440080 c:\windows\SysWOW64\d3dx10.dll + 2009-07-13 23:27 . 2009-07-14 01:15 593920 c:\windows\SysWOW64\d3dramp.dll + 2009-07-13 23:28 . 2009-07-14 01:15 817664 c:\windows\SysWOW64\d3dim700.dll + 2009-07-13 23:27 . 2009-07-14 01:15 386048 c:\windows\SysWOW64\d3dim.dll + 2009-07-13 23:27 . 2009-07-14 01:15 522752 c:\windows\SysWOW64\d3d11.dll + 2009-07-13 23:28 . 2009-07-14 01:15 489984 c:\windows\SysWOW64\d3d10level9.dll + 2009-07-13 23:28 . 2009-07-14 01:15 190464 c:\windows\SysWOW64\d3d10core.dll + 2011-01-12 07:48 . 2010-11-02 04:35 218624 c:\windows\SysWOW64\d3d10_1core.dll + 2011-06-16 00:22 . 2011-01-17 05:38 161792 c:\windows\SysWOW64\d3d10_1.dll + 2011-03-09 10:08 . 2011-02-19 05:32 739840 c:\windows\SysWOW64\d2d1.dll + 2009-07-13 23:41 . 2009-07-14 01:14 309248 c:\windows\SysWOW64\cttune.exe + 2009-07-13 23:42 . 2009-07-14 01:14 126976 c:\windows\SysWOW64\cscript.exe + 2009-07-13 23:33 . 2009-07-14 01:15 135680 c:\windows\SysWOW64\cryptsvc.dll + 2009-07-13 23:32 . 2009-07-14 01:15 103424 c:\windows\SysWOW64\cryptnet.dll + 2009-07-13 21:07 . 2009-07-14 01:15 149019 c:\windows\SysWOW64\crtdll.dll + 2009-07-13 23:37 . 2009-07-14 01:15 189952 c:\windows\SysWOW64\credui.dll + 2011-03-09 10:08 . 2010-12-23 05:28 642048 c:\windows\SysWOW64\CPFilters.dll + 2009-07-13 23:40 . 2009-07-14 01:14 113152 c:\windows\SysWOW64\control.exe + 2010-03-06 16:09 . 2011-06-27 07:34 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat + 2009-07-13 23:44 . 2009-07-14 01:15 584704 c:\windows\SysWOW64\comuid.dll + 2009-07-13 23:44 . 2009-07-14 01:15 220160 c:\windows\SysWOW64\comsnap.dll + 2009-07-14 00:19 . 2009-07-14 01:15 276480 c:\windows\SysWOW64\compstui.dll + 2009-07-13 23:39 . 2009-07-14 01:15 486912 c:\windows\SysWOW64\comdlg32.dll + 2010-10-15 04:55 . 2010-08-21 05:33 530432 c:\windows\SysWOW64\comctl32.dll + 2009-07-13 23:44 . 2009-07-14 01:15 201216 c:\windows\SysWOW64\com\comadmin.dll + 2009-07-13 23:25 . 2009-07-14 01:15 606208 c:\windows\SysWOW64\colorui.dll + 2009-07-14 00:07 . 2009-07-14 01:15 153600 c:\windows\SysWOW64\COLORCNV.DLL + 2010-09-06 18:45 . 2009-04-03 13:57 106496 c:\windows\SysWOW64\CNC270U.dll + 2010-09-06 18:45 . 2009-03-11 09:34 303104 c:\windows\SysWOW64\CNC270L.dll + 2009-07-13 23:16 . 2009-07-14 01:15 304640 c:\windows\SysWOW64\cmipnpinstall.dll + 2009-07-13 23:54 . 2009-07-14 01:15 484352 c:\windows\SysWOW64\cmdial32.dll + 2009-07-13 23:22 . 2009-07-14 01:14 301568 c:\windows\SysWOW64\cmd.exe + 2009-07-13 23:22 . 2009-07-14 01:15 230912 c:\windows\SysWOW64\clusapi.dll + 2009-07-13 23:40 . 2009-07-14 01:14 212480 c:\windows\SysWOW64\cleanmgr.exe + 2009-07-13 23:44 . 2009-07-14 01:15 522240 c:\windows\SysWOW64\clbcatq.dll + 2009-07-13 23:29 . 2009-07-14 01:15 172544 c:\windows\SysWOW64\cic.dll + 2009-07-13 23:41 . 2009-07-14 01:14 155136 c:\windows\SysWOW64\charmap.exe + 2009-07-13 23:16 . 2009-07-14 01:15 145920 c:\windows\SysWOW64\cfgmgr32.dll + 2009-07-14 00:06 . 2009-07-14 01:15 210432 c:\windows\SysWOW64\cewmdm.dll + 2009-07-13 23:33 . 2009-07-14 01:14 889856 c:\windows\SysWOW64\certutil.exe + 2009-07-13 23:33 . 2009-07-14 01:14 263168 c:\windows\SysWOW64\certreq.exe + 2009-07-13 23:33 . 2009-07-14 01:15 271872 c:\windows\SysWOW64\CertEnrollUI.dll + 2009-07-13 23:32 . 2009-07-14 01:15 122880 c:\windows\SysWOW64\certCredProvider.dll + 2009-07-13 23:33 . 2009-07-14 01:15 335360 c:\windows\SysWOW64\certcli.dll + 2009-07-14 00:12 . 2009-07-14 01:15 805376 c:\windows\SysWOW64\cdosys.dll + 2009-07-13 23:44 . 2009-07-14 01:15 487936 c:\windows\SysWOW64\catsrvut.dll + 2009-07-13 23:44 . 2009-07-14 01:15 449024 c:\windows\SysWOW64\catsrv.dll + 2009-07-13 23:41 . 2009-07-14 01:14 776192 c:\windows\SysWOW64\calc.exe + 2010-04-14 06:41 . 2010-01-09 06:52 132608 c:\windows\SysWOW64\cabview.dll + 2009-07-13 23:15 . 2009-07-14 01:15 221696 c:\windows\SysWOW64\C_G18030.DLL + 2009-07-13 23:41 . 2009-07-14 01:14 878592 c:\windows\SysWOW64\Bubbles.scr + 2009-07-14 00:05 . 2009-07-14 01:15 743424 c:\windows\SysWOW64\blackbox.dll + 2009-07-13 23:30 . 2009-07-14 01:14 186368 c:\windows\SysWOW64\bitsadmin.exe + 2009-07-13 23:37 . 2009-07-14 01:14 171520 c:\windows\SysWOW64\BioCredProv.dll + 2009-07-13 23:33 . 2009-07-14 01:17 249680 c:\windows\SysWOW64\bcryptprimitives.dll + 2009-07-13 23:41 . 2009-07-14 01:14 739840 c:\windows\SysWOW64\batmeter.dll + 2009-07-13 23:33 . 2009-07-14 01:17 143936 c:\windows\SysWOW64\basecsp.dll + 2009-07-13 23:29 . 2009-07-14 01:14 314368 c:\windows\SysWOW64\azroleui.dll + 2009-07-13 23:34 . 2009-07-14 01:14 759296 c:\windows\SysWOW64\azroles.dll + 2009-07-13 23:45 . 2009-07-14 01:14 665600 c:\windows\SysWOW64\AuxiliaryDisplayCpl.dll + 2009-07-13 23:45 . 2009-07-14 01:14 119808 c:\windows\SysWOW64\AuxiliaryDisplayApi.dll + 2009-07-13 23:40 . 2009-07-14 01:14 146944 c:\windows\SysWOW64\autoplay.dll + 2009-07-13 23:15 . 2009-07-14 01:14 659456 c:\windows\SysWOW64\autofmt.exe + 2009-07-13 23:15 . 2009-07-14 01:14 679936 c:\windows\SysWOW64\autoconv.exe + 2009-12-12 01:08 . 2009-12-12 01:08 668160 c:\windows\SysWOW64\autochk.exe + 2009-07-13 22:11 . 2009-07-14 01:20 126976 c:\windows\SysWOW64\AuthFWWizFwk.dll + 2009-07-13 23:52 . 2009-07-14 01:14 297472 c:\windows\SysWOW64\AuthFWGP.dll + 2009-07-13 23:52 . 2009-07-14 01:14 334336 c:\windows\SysWOW64\authfwcfg.dll + 2009-07-14 00:03 . 2009-07-14 01:14 195584 c:\windows\SysWOW64\AudioSes.dll + 2009-07-14 00:41 . 2009-07-14 01:16 442880 c:\windows\SysWOW64\AUDIOKSE.dll + 2009-07-14 00:03 . 2009-07-14 01:14 374784 c:\windows\SysWOW64\AudioEng.dll + 2009-07-14 00:07 . 2009-07-14 01:14 243712 c:\windows\SysWOW64\audiodev.dll + 2011-04-13 06:44 . 2011-02-19 03:37 294912 c:\windows\SysWOW64\atmfd.dll + 2009-07-14 00:12 . 2009-07-14 01:14 200192 c:\windows\SysWOW64\apss.dll + 2009-07-13 23:14 . 2009-07-14 01:14 292352 c:\windows\SysWOW64\apphelp.dll + 2009-07-14 00:12 . 2009-07-14 01:14 221184 c:\windows\SysWOW64\apircl.dll + 2008-10-07 07:13 . 2008-10-07 07:13 116977 c:\windows\SysWOW64\AGEIA\AG1021\diag.bin + 2008-10-07 07:13 . 2008-10-07 07:13 214629 c:\windows\SysWOW64\AGEIA\AG1021\app.bin + 2008-10-07 07:13 . 2008-10-07 07:13 119473 c:\windows\SysWOW64\AGEIA\AG1011\diag.bin + 2008-10-07 07:13 . 2008-10-07 07:13 199885 c:\windows\SysWOW64\AGEIA\AG1011\app.bin + 2009-07-13 23:42 . 2009-07-14 01:14 126464 c:\windows\SysWOW64\advpack.dll + 2009-07-14 00:20 . 2009-07-14 01:14 640000 c:\windows\SysWOW64\advapi32.dll + 2009-07-14 00:12 . 2009-07-14 01:16 151040 c:\windows\SysWOW64\AdvancedInstallers\OEMHelpIns.dll + 2009-07-13 23:22 . 2009-07-14 01:15 119808 c:\windows\SysWOW64\AdvancedInstallers\cmiadapter.dll + 2009-07-13 23:11 . 2009-07-14 01:03 680448 c:\windows\SysWOW64\adtschema.dll + 2009-07-13 23:38 . 2009-07-14 01:14 260608 c:\windows\SysWOW64\adsnt.dll + 2009-07-13 23:38 . 2009-07-14 01:14 202752 c:\windows\SysWOW64\adsldpc.dll + 2009-07-13 23:38 . 2009-07-14 01:14 186880 c:\windows\SysWOW64\adsldp.dll + 2011-05-18 13:46 . 2011-05-18 13:46 292216 c:\windows\SysWOW64\Adobe\Shockwave 11\syminstallstub.exe + 2011-04-26 06:51 . 2011-04-26 06:51 114688 c:\windows\SysWOW64\Adobe\Shockwave 11\SwInit.exe + 2011-04-26 07:00 . 2011-04-26 07:00 469944 c:\windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1159620.exe + 2009-07-21 12:47 . 2009-07-21 12:47 468408 c:\windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1151601.exe + 2011-04-26 06:07 . 2011-04-26 06:07 136568 c:\windows\SysWOW64\Adobe\Shockwave 11\SCC.dll + 2011-04-26 06:53 . 2011-04-26 06:53 446464 c:\windows\SysWOW64\Adobe\Shockwave 11\Proj.dll + 2011-04-26 06:52 . 2011-04-26 06:52 372736 c:\windows\SysWOW64\Adobe\Shockwave 11\Plugin.dll + 2011-04-26 06:53 . 2011-04-26 06:53 880640 c:\windows\SysWOW64\Adobe\Shockwave 11\gi.dll + 2011-04-26 06:51 . 2011-04-26 06:51 503808 c:\windows\SysWOW64\Adobe\Shockwave 11\Control.dll + 2011-04-26 07:00 . 2011-04-26 07:00 215992 c:\windows\SysWOW64\Adobe\Director\SwDir.dll + 2011-04-26 06:52 . 2011-04-26 06:52 135168 c:\windows\SysWOW64\Adobe\Director\np32dsw.dll + 2011-03-25 21:06 . 2011-03-25 21:06 101888 c:\windows\SysWOW64\admparse.dll + 2009-07-14 00:20 . 2009-07-14 01:14 309248 c:\windows\SysWOW64\actxprxy.dll + 2009-07-13 23:38 . 2009-07-14 01:14 202752 c:\windows\SysWOW64\activeds.dll + 2009-07-13 23:41 . 2009-07-14 01:14 537600 c:\windows\SysWOW64\ActionCenterCPL.dll + 2009-07-13 23:40 . 2009-07-14 01:14 744448 c:\windows\SysWOW64\ActionCenter.dll + 2009-07-13 23:41 . 2009-07-14 01:14 125440 c:\windows\SysWOW64\aclui.dll + 2009-07-14 00:02 . 2009-07-14 01:14 130560 c:\windows\SysWOW64\aaclient.dll - 2009-07-14 05:01 . 2011-06-24 15:51 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2009-07-14 05:01 . 2011-06-27 16:39 324900 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2010-09-06 18:45 . 2008-12-26 08:56 1168896 c:\windows\twain_32\MP270 series\SGCFLTR6.dll + 2010-09-06 18:45 . 2008-12-26 08:57 1159168 c:\windows\twain_32\MP270 series\SGCFLTR.dll + 2010-09-06 18:45 . 2010-03-12 11:49 2297856 c:\windows\twain_32\MP270 series\SCNUI.dll + 2010-09-06 18:45 . 2008-12-01 16:04 2102320 c:\windows\twain_32\MP270 series\CNC270R.DAT + 2009-07-14 00:22 . 2009-07-14 01:16 1712640 c:\windows\SysWOW64\xpsservices.dll + 2009-07-14 00:24 . 2009-07-14 01:14 3405312 c:\windows\SysWOW64\xpsrchvw.exe + 2009-07-13 23:31 . 2009-07-14 01:16 1175040 c:\windows\SysWOW64\WsmSvc.dll + 2009-07-13 23:29 . 2009-07-14 01:16 1294336 c:\windows\SysWOW64\wsecedit.dll + 2009-07-14 00:07 . 2009-07-14 01:16 2311168 c:\windows\SysWOW64\wpdshext.dll + 2009-07-14 00:09 . 2009-07-14 01:16 1568768 c:\windows\SysWOW64\WMVENCOD.DLL + 2010-11-25 18:21 . 2010-05-23 10:15 1619456 c:\windows\SysWOW64\WMVDECOD.DLL + 2009-07-14 00:41 . 2009-07-14 01:16 2504192 c:\windows\SysWOW64\WMVCORE.DLL + 2009-07-14 00:08 . 2009-07-14 01:16 1325056 c:\windows\SysWOW64\WMSPDMOE.DLL + 2009-07-14 00:09 . 2009-07-14 01:16 1624064 c:\windows\SysWOW64\WMPEncEn.dll + 2009-07-14 00:09 . 2009-07-14 01:16 1003008 c:\windows\SysWOW64\WMNetMgr.dll + 2009-07-13 23:56 . 2009-07-14 01:16 1326592 c:\windows\SysWOW64\wlanpref.dll + 2011-03-25 21:06 . 2011-03-25 21:06 1126912 c:\windows\SysWOW64\wininet.dll + 2009-07-13 23:29 . 2009-07-14 01:16 1011200 c:\windows\SysWOW64\WindowsCodecs.dll + 2010-04-04 05:46 . 2009-07-14 01:14 1397248 c:\windows\SysWOW64\win_utilman.exe + 2009-07-13 23:20 . 2009-07-14 01:16 1227776 c:\windows\SysWOW64\wdc.dll + 2009-07-13 23:24 . 2009-07-14 01:16 1123328 c:\windows\SysWOW64\vssapi.dll + 2009-07-14 00:13 . 2009-07-14 01:14 1397248 c:\windows\SysWOW64\Utilman.exe + 2011-06-16 00:57 . 2011-04-22 23:30 1102336 c:\windows\SysWOW64\urlmon.dll + 2010-11-25 18:22 . 2010-08-11 04:35 1164800 c:\windows\SysWOW64\UIRibbonRes.dll + 2010-11-25 18:22 . 2010-08-11 04:44 2983424 c:\windows\SysWOW64\UIRibbon.dll + 2009-07-14 00:17 . 2009-07-14 01:16 1553408 c:\windows\SysWOW64\tquery.dll + 2009-07-13 23:39 . 2009-07-14 01:16 2755072 c:\windows\SysWOW64\themeui.dll + 2009-07-13 23:40 . 2009-07-14 01:16 2157056 c:\windows\SysWOW64\themecpl.dll + 2009-07-13 23:40 . 2009-07-14 01:16 2146304 c:\windows\SysWOW64\SyncCenter.dll + 2009-07-13 23:17 . 2009-07-14 01:10 8338432 c:\windows\SysWOW64\spwizimg.dll + 2009-07-13 23:36 . 2009-07-14 01:16 1111552 c:\windows\SysWOW64\sppcext.dll + 2009-07-14 00:14 . 2009-07-14 01:16 1202176 c:\windows\SysWOW64\Speech\Common\sapi.dll + 2009-07-13 23:16 . 2009-07-14 01:16 1668608 c:\windows\SysWOW64\setupapi.dll + 2009-07-13 23:45 . 2009-07-14 01:16 2202624 c:\windows\SysWOW64\SensorsCpl.dll + 2009-07-13 23:23 . 2009-07-14 01:16 1116160 c:\windows\SysWOW64\RacEngn.dll + 2009-07-14 00:12 . 2009-07-14 01:16 1363456 c:\windows\SysWOW64\Query.dll + 2010-03-06 09:44 . 2009-12-19 09:02 1328640 c:\windows\SysWOW64\quartz.dll + 2009-07-13 23:52 . 2009-07-14 01:16 1750528 c:\windows\SysWOW64\pnidui.dll + 2009-07-13 23:20 . 2009-07-14 01:16 1508864 c:\windows\SysWOW64\pla.dll + 2009-07-14 00:41 . 2009-07-14 01:16 1234944 c:\windows\SysWOW64\pidgenx.dll + 2009-07-14 00:21 . 2009-07-14 01:16 1160192 c:\windows\SysWOW64\OpcServices.dll + 2009-07-13 23:51 . 2009-07-14 01:16 1111552 c:\windows\SysWOW64\onexui.dll + 2010-10-15 04:55 . 2010-06-29 05:02 1413632 c:\windows\SysWOW64\ole32.dll + 2009-07-13 23:28 . 2009-07-14 01:16 1106944 c:\windows\SysWOW64\ogldrv.dll + 2009-10-03 18:02 . 2009-10-03 18:02 3214952 c:\windows\SysWOW64\nvwgf2um.dll + 2010-01-15 00:28 . 2009-10-03 09:36 4239976 c:\windows\SysWOW64\NVStWiz.exe + 2009-10-03 18:02 . 2009-10-03 18:02 1530472 c:\windows\SysWOW64\nvencodemft.dll + 2009-10-03 18:02 . 2009-10-03 18:02 7716456 c:\windows\SysWOW64\nvd3dum.dll + 2009-10-03 18:02 . 2009-10-03 18:02 1317480 c:\windows\SysWOW64\nvcuvenc.dll + 2009-10-03 18:02 . 2009-10-03 18:02 1748584 c:\windows\SysWOW64\nvcuda.dll + 2009-10-03 18:02 . 2009-10-03 18:02 1063016 c:\windows\SysWOW64\nvapi.dll + 2011-02-09 12:00 . 2010-10-27 04:40 1293120 c:\windows\SysWOW64\ntdll.dll + 2009-07-14 00:13 . 2009-07-14 01:09 5071872 c:\windows\SysWOW64\NlsModels0011.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6917120 c:\windows\SysWOW64\NlsLexicons0c1a.dll + 2009-07-14 00:13 . 2009-07-14 01:08 7042560 c:\windows\SysWOW64\NlsLexicons081a.dll + 2009-07-14 00:13 . 2009-07-14 01:08 5031936 c:\windows\SysWOW64\NlsLexicons0816.dll + 2009-07-14 00:13 . 2009-07-14 01:08 5090816 c:\windows\SysWOW64\NlsLexicons0416.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4616192 c:\windows\SysWOW64\NlsLexicons0414.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1972736 c:\windows\SysWOW64\NlsLexicons004e.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4093440 c:\windows\SysWOW64\NlsLexicons004c.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1702912 c:\windows\SysWOW64\NlsLexicons004b.dll + 2009-07-14 00:13 . 2009-07-14 01:08 3419136 c:\windows\SysWOW64\NlsLexicons004a.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1558016 c:\windows\SysWOW64\NlsLexicons0049.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1411072 c:\windows\SysWOW64\NlsLexicons0047.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1808896 c:\windows\SysWOW64\NlsLexicons0046.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1793536 c:\windows\SysWOW64\NlsLexicons0045.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4045824 c:\windows\SysWOW64\NlsLexicons003e.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1782272 c:\windows\SysWOW64\NlsLexicons0039.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6224896 c:\windows\SysWOW64\NlsLexicons0027.dll + 2009-07-14 00:13 . 2009-07-14 01:08 5791232 c:\windows\SysWOW64\NlsLexicons0026.dll + 2009-07-14 00:13 . 2009-07-14 01:08 7964672 c:\windows\SysWOW64\NlsLexicons0024.dll + 2009-07-14 00:13 . 2009-07-14 01:08 5499904 c:\windows\SysWOW64\NlsLexicons0022.dll + 2009-07-14 00:13 . 2009-07-14 01:08 2136064 c:\windows\SysWOW64\NlsLexicons0021.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1236992 c:\windows\SysWOW64\NlsLexicons0020.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6346240 c:\windows\SysWOW64\NlsLexicons001d.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6585856 c:\windows\SysWOW64\NlsLexicons001b.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6014976 c:\windows\SysWOW64\NlsLexicons001a.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6781440 c:\windows\SysWOW64\NlsLexicons0019.dll + 2009-07-14 00:13 . 2009-07-14 01:08 3331072 c:\windows\SysWOW64\NlsLexicons0018.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4981248 c:\windows\SysWOW64\NlsLexicons0013.dll + 2009-07-14 00:13 . 2009-07-14 01:08 2466816 c:\windows\SysWOW64\NlsLexicons0011.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4175872 c:\windows\SysWOW64\NlsLexicons0010.dll + 2009-07-14 00:13 . 2009-07-14 01:08 5654528 c:\windows\SysWOW64\NlsLexicons000f.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1722368 c:\windows\SysWOW64\NlsLexicons000d.dll + 2009-07-14 00:13 . 2009-07-14 01:08 6237696 c:\windows\SysWOW64\NlsLexicons000c.dll + 2009-07-14 00:13 . 2009-07-14 01:08 9892864 c:\windows\SysWOW64\NlsLexicons000a.dll + 2009-07-14 00:13 . 2009-07-14 01:08 2628608 c:\windows\SysWOW64\NlsLexicons0009.dll + 2009-07-14 00:13 . 2009-07-14 01:08 1452544 c:\windows\SysWOW64\NlsLexicons0003.dll + 2009-07-14 00:13 . 2009-07-14 01:08 4164096 c:\windows\SysWOW64\NlsLexicons0002.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0c1a.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData081a.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4507648 c:\windows\SysWOW64\NlsData0816.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4507648 c:\windows\SysWOW64\NlsData0416.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4507648 c:\windows\SysWOW64\NlsData0414.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData004e.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData004c.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData004b.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData004a.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0049.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0047.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0046.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0045.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1811968 c:\windows\SysWOW64\NlsData003e.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0039.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1811968 c:\windows\SysWOW64\NlsData002a.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1979392 c:\windows\SysWOW64\NlsData0027.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0026.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0024.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1811968 c:\windows\SysWOW64\NlsData0022.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1811968 c:\windows\SysWOW64\NlsData0021.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3116544 c:\windows\SysWOW64\NlsData0020.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4507648 c:\windows\SysWOW64\NlsData001d.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData001b.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData001a.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4509696 c:\windows\SysWOW64\NlsData0019.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0018.dll + 2009-07-14 00:13 . 2009-07-14 01:16 3476480 c:\windows\SysWOW64\NlsData0013.dll + 2009-07-14 00:13 . 2009-07-14 01:16 2670592 c:\windows\SysWOW64\NlsData0011.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4507648 c:\windows\SysWOW64\NlsData0010.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData000f.dll + 2009-07-14 00:13 . 2009-07-14 01:16 2353152 c:\windows\SysWOW64\NlsData000d.dll + 2009-07-14 00:13 . 2009-07-14 01:16 2654208 c:\windows\SysWOW64\NlsData000c.dll + 2009-07-14 00:13 . 2009-07-14 01:16 4888576 c:\windows\SysWOW64\NlsData0009.dll + 2009-07-14 00:13 . 2009-07-14 01:16 2255360 c:\windows\SysWOW64\NlsData0007.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0003.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1977856 c:\windows\SysWOW64\NlsData0002.dll + 2009-07-14 00:13 . 2009-07-14 01:16 2609664 c:\windows\SysWOW64\NlsData0001.dll + 2009-07-14 00:13 . 2009-07-14 01:16 1537536 c:\windows\SysWOW64\NlsData0000.dll + 2009-12-12 01:04 . 2009-12-12 01:04 1622016 c:\windows\SysWOW64\nl\AuthFWSnapIn.Resources.dll + 2009-07-13 23:53 . 2009-07-14 01:16 2130944 c:\windows\SysWOW64\networkmap.dll + 2009-07-13 23:53 . 2009-07-14 01:16 1661440 c:\windows\SysWOW64\networkexplorer.dll + 2009-07-13 23:53 . 2009-07-14 01:16 2494464 c:\windows\SysWOW64\netshell.dll + 2009-07-13 23:56 . 2009-07-14 01:16 1644032 c:\windows\SysWOW64\netcenter.dll + 2011-02-09 12:00 . 2010-12-21 05:36 1389568 c:\windows\SysWOW64\msxml6.dll + 2009-07-20 23:05 . 2009-07-20 23:05 1348432 c:\windows\SysWOW64\msxml4.dll + 2011-02-09 12:00 . 2010-12-21 05:36 1236992 c:\windows\SysWOW64\msxml3.dll + 2009-07-14 00:08 . 2009-07-14 01:15 2291712 c:\windows\SysWOW64\MSVidCtl.dll + 2009-06-10 21:38 . 2009-07-14 01:15 1386496 c:\windows\SysWOW64\msvbvm60.dll + 2011-03-09 10:08 . 2010-12-18 05:30 2690560 c:\windows\SysWOW64\mstscax.dll + 2011-03-09 10:08 . 2010-12-18 05:26 1034240 c:\windows\SysWOW64\mstsc.exe + 2009-07-14 00:13 . 2009-07-14 01:15 1401856 c:\windows\SysWOW64\mssrch.dll + 2009-07-13 23:43 . 2009-07-14 01:14 6376960 c:\windows\SysWOW64\mspaint.exe + 2009-06-10 21:41 . 2009-07-14 01:15 2134016 c:\windows\SysWOW64\msmpeg2vdec.dll + 2009-07-13 21:03 . 2009-07-14 01:15 1589248 c:\windows\SysWOW64\msjet40.dll + 2009-07-13 23:32 . 2009-07-14 01:15 2340864 c:\windows\SysWOW64\msi.dll + 2009-07-14 00:04 . 2009-07-14 01:06 9053696 c:\windows\SysWOW64\mmres.dll + 2009-07-13 23:31 . 2009-07-14 01:15 2151936 c:\windows\SysWOW64\mmcndmgr.dll + 2009-07-13 23:32 . 2009-07-14 01:14 1401344 c:\windows\SysWOW64\mmc.exe + 2009-07-13 23:18 . 2009-07-14 01:15 8826880 c:\windows\SysWOW64\migwiz\wet.dll + 2009-07-13 23:17 . 2009-06-10 21:44 1445052 c:\windows\SysWOW64\migwiz\SFLISTXP.dat + 2009-06-10 21:44 . 2009-06-10 21:44 2119152 c:\windows\SysWOW64\migwiz\SFLISTW7.dat + 2009-07-13 23:17 . 2009-06-10 21:44 3225610 c:\windows\SysWOW64\migwiz\SFLISTLH.dat + 2009-07-13 23:19 . 2009-07-14 01:15 5755392 c:\windows\SysWOW64\migwiz\migcore.dll + 2009-10-16 19:47 . 2009-10-16 19:47 1047552 c:\windows\SysWOW64\MFC71u.dll + 2009-10-16 19:47 . 2009-10-16 19:47 1060864 c:\windows\SysWOW64\MFC71.dll + 2011-04-13 06:44 . 2011-03-11 05:40 1164288 c:\windows\SysWOW64\mfc42u.dll + 2011-04-13 06:44 . 2011-03-11 05:40 1137664 c:\windows\SysWOW64\mfc42.dll + 2010-11-25 18:21 . 2010-05-23 10:11 3181568 c:\windows\SysWOW64\mf.dll + 2009-07-21 11:29 . 2009-07-21 11:29 1490944 c:\windows\SysWOW64\Macromed\Shockwave 10\dirapiX.dll + 2011-01-29 08:14 . 2011-05-13 05:16 6271136 c:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll + 2009-07-13 23:47 . 2009-07-14 01:07 7392768 c:\windows\SysWOW64\IME\IMETC10\applets\MSHWCHTRIME.dll + 2009-07-13 23:47 . 2009-07-14 01:07 7390208 c:\windows\SysWOW64\IME\imekr8\applets\mshwkorrIME.dll + 2009-07-13 23:26 . 2009-07-14 01:15 1013760 c:\windows\SysWOW64\IME\IMEJP10\IMJPTIP.DLL + 2009-07-13 23:26 . 2009-07-14 01:15 1300480 c:\windows\SysWOW64\IME\IMEJP10\imjpcus.dll + 2009-07-13 23:47 . 2009-07-14 01:07 7378432 c:\windows\SysWOW64\IME\IMEJP10\APPLETS\mshwjpnrIME.dll + 2009-07-13 21:59 . 2009-06-10 20:37 1498564 c:\windows\SysWOW64\igkrng400.bin + 2009-07-13 21:59 . 2009-07-14 01:41 3805184 c:\windows\SysWOW64\igdumd32.dll + 2009-07-13 21:59 . 2009-07-14 01:41 2531328 c:\windows\SysWOW64\igd10umd32.dll + 2011-06-16 00:58 . 2011-04-22 23:26 1785344 c:\windows\SysWOW64\iertutil.dll + 2011-06-16 00:57 . 2011-04-22 23:32 9703936 c:\windows\SysWOW64\ieframe.dll + 2011-03-25 21:06 . 2011-03-25 21:06 3695416 c:\windows\SysWOW64\ieapfltr.dat + 2009-07-13 23:42 . 2009-07-14 01:05 4240384 c:\windows\SysWOW64\GameUXLegacyGDFs.dll + 2009-07-13 23:41 . 2009-07-14 01:15 2576384 c:\windows\SysWOW64\gameux.dll + 2009-08-17 21:33 . 2009-08-17 21:33 1193832 c:\windows\SysWOW64\FM20.DLL + 2009-09-02 11:00 . 2009-09-02 11:00 1406512 c:\windows\SysWOW64\ezBook7.dll + 2011-01-12 07:48 . 2010-06-26 05:14 1495040 c:\windows\SysWOW64\ExplorerFrame.dll + 2011-05-12 18:59 . 2011-02-26 05:33 2614784 c:\windows\SysWOW64\explorer.exe + 2011-05-12 18:57 . 2011-03-11 05:39 1686016 c:\windows\SysWOW64\esent.dll + 2009-07-14 00:07 . 2009-07-14 01:15 1400320 c:\windows\SysWOW64\DxpTaskSync.dll + 2011-03-09 10:08 . 2011-02-19 05:32 1074176 c:\windows\SysWOW64\DWrite.dll + 2009-07-13 23:25 . 2009-07-14 01:15 1370624 c:\windows\SysWOW64\dwmcore.dll + 2009-07-13 23:40 . 2009-07-14 01:15 1040384 c:\windows\SysWOW64\Display.dll + 2009-07-13 23:39 . 2009-07-14 01:15 1502720 c:\windows\SysWOW64\diskcopy.dll + 2010-07-07 07:21 . 2009-11-25 10:47 1130824 c:\windows\SysWOW64\dfshim.dll + 2009-07-13 23:23 . 2009-07-14 01:15 6278656 c:\windows\SysWOW64\DDORes.dll + 2009-07-13 23:58 . 2009-07-14 01:15 2515968 c:\windows\SysWOW64\dbgeng.dll + 2010-04-09 13:34 . 2008-05-30 12:11 3850760 c:\windows\SysWOW64\D3DX9_38.dll + 2010-01-15 00:52 . 2007-10-12 14:14 3734536 c:\windows\SysWOW64\d3dx9_36.dll + 2010-01-15 00:52 . 2007-07-19 17:14 3727720 c:\windows\SysWOW64\d3dx9_35.dll + 2010-01-15 00:52 . 2007-05-16 15:45 3497832 c:\windows\SysWOW64\d3dx9_34.dll + 2010-01-15 00:52 . 2007-03-12 15:42 3495784 c:\windows\SysWOW64\d3dx9_33.dll + 2010-01-15 00:52 . 2006-11-29 12:06 3426072 c:\windows\SysWOW64\d3dx9_32.dll + 2010-01-15 00:52 . 2006-09-28 15:05 2414360 c:\windows\SysWOW64\d3dx9_31.dll + 2010-01-15 00:51 . 2006-03-31 11:40 2388176 c:\windows\SysWOW64\d3dx9_30.dll + 2010-01-15 00:51 . 2006-02-03 07:43 2332368 c:\windows\SysWOW64\d3dx9_29.dll + 2010-01-15 00:51 . 2005-12-05 17:09 2323664 c:\windows\SysWOW64\d3dx9_28.dll + 2010-01-15 00:51 . 2005-07-22 18:59 2319568 c:\windows\SysWOW64\d3dx9_27.dll + 2010-01-15 00:51 . 2005-05-26 14:34 2297552 c:\windows\SysWOW64\d3dx9_26.dll + 2010-01-15 00:51 . 2005-03-18 16:19 2337488 c:\windows\SysWOW64\d3dx9_25.dll + 2010-01-15 00:51 . 2005-02-05 18:45 2222800 c:\windows\SysWOW64\d3dx9_24.dll + 2010-07-11 14:47 . 2010-07-11 14:47 1846632 c:\windows\SysWOW64\D3DCompiler_41.dll + 2010-01-15 00:52 . 2007-10-12 14:14 1374232 c:\windows\SysWOW64\D3DCompiler_36.dll + 2010-01-15 00:52 . 2007-07-19 17:14 1358192 c:\windows\SysWOW64\D3DCompiler_35.dll + 2010-01-15 00:52 . 2007-05-16 15:45 1124720 c:\windows\SysWOW64\D3DCompiler_34.dll + 2010-01-15 00:52 . 2007-03-12 15:42 1123696 c:\windows\SysWOW64\D3DCompiler_33.dll + 2009-07-13 23:29 . 2009-07-14 01:15 1826816 c:\windows\SysWOW64\d3d9.dll + 2009-07-13 23:28 . 2009-07-14 01:15 1036800 c:\windows\SysWOW64\d3d8.dll + 2011-01-12 07:48 . 2010-11-02 04:35 1170944 c:\windows\SysWOW64\d3d10warp.dll + 2009-07-13 23:28 . 2009-07-14 01:15 1030144 c:\windows\SysWOW64\d3d10.dll + 2009-07-13 23:33 . 2009-07-14 01:15 1003520 c:\windows\SysWOW64\cryptui.dll + 2009-07-13 23:34 . 2009-07-14 01:15 1151488 c:\windows\SysWOW64\crypt32.dll + 2009-07-13 23:52 . 2009-07-14 01:15 1344512 c:\windows\SysWOW64\connect.dll + 2009-07-13 23:45 . 2009-07-14 01:15 1242112 c:\windows\SysWOW64\comsvcs.dll + 2009-07-13 23:44 . 2009-07-14 01:04 1297408 c:\windows\SysWOW64\comres.dll + 2009-07-14 00:11 . 2009-07-14 01:15 6103040 c:\windows\SysWOW64\chtbrkr.dll + 2009-07-14 00:11 . 2009-07-14 01:15 1672192 c:\windows\SysWOW64\chsbrkr.dll + 2009-07-13 23:29 . 2009-07-14 01:15 1555456 c:\windows\SysWOW64\certmgr.dll + 2010-03-06 09:45 . 2009-09-03 07:04 1320960 c:\windows\SysWOW64\CertEnroll.dll + 2009-12-11 16:25 . 2008-09-08 13:31 1885488 c:\windows\SysWOW64\BttnCmns.dll + 2009-12-11 16:25 . 2008-09-08 13:31 1885488 c:\windows\SysWOW64\BttnCmn.dll + 2009-07-13 23:42 . 2009-07-14 01:14 1792000 c:\windows\SysWOW64\authui.dll + 2009-07-13 22:11 . 2009-07-14 01:23 5070848 c:\windows\SysWOW64\AuthFWSnapin.dll + 2009-07-14 00:12 . 2009-07-14 01:14 1739776 c:\windows\SysWOW64\apds.dll + 2009-07-13 23:17 . 2009-07-14 01:15 2041344 c:\windows\SysWOW64\AdvancedInstallers\cmiv2.dll + 2011-04-26 06:44 . 2011-04-26 06:44 1019904 c:\windows\SysWOW64\Adobe\Shockwave 11\iml32.dll + 2011-04-26 06:07 . 2011-04-26 06:07 2314416 c:\windows\SysWOW64\Adobe\Shockwave 11\gt.exe + 2011-04-26 06:46 . 2011-04-26 06:46 1802240 c:\windows\SysWOW64\Adobe\Shockwave 11\dirapi.dll + 2009-07-14 00:14 . 2009-07-14 01:14 3727360 c:\windows\SysWOW64\accessibilitycpl.dll - 2010-02-27 16:07 . 2011-06-24 07:19 1040352 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat + 2010-02-27 16:07 . 2011-06-27 07:14 1040352 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat + 2010-10-15 04:54 . 2010-09-01 04:23 12625408 c:\windows\SysWOW64\wmploc.DLL + 2010-10-15 04:54 . 2010-09-01 04:29 11406848 c:\windows\SysWOW64\wmp.dll + 2010-08-03 07:59 . 2010-07-27 14:03 12867584 c:\windows\SysWOW64\shell32.dll + 2009-10-03 18:02 . 2009-10-03 18:02 10668648 c:\windows\SysWOW64\nvoglv32.dll + 2009-07-14 00:13 . 2009-07-14 01:08 12038656 c:\windows\SysWOW64\NlsLexicons0007.dll + 2009-07-14 00:13 . 2009-07-14 01:08 11722752 c:\windows\SysWOW64\NlsLexicons0001.dll + 2009-07-14 00:13 . 2009-07-14 01:16 10240512 c:\windows\SysWOW64\NlsData000a.dll + 2011-06-16 00:57 . 2011-04-22 23:36 12269056 c:\windows\SysWOW64\mshtml.dll + 2009-07-13 23:42 . 2009-07-14 01:06 20268032 c:\windows\SysWOW64\imageres.dll + 2009-07-14 02:34 . 2011-06-27 07:47 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat - 2009-07-14 02:34 . 2011-06-24 15:36 11010048 c:\windows\system32\SMI\Store\Machine\schema.dat + 2010-02-27 16:07 . 2011-06-27 16:39 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat - 2010-02-27 16:07 . 2011-06-24 15:51 10090044 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2696175809-2240157295-830168338-1000-8192.dat . -- Snapshot teruggezet naar huidige datum -- . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-27 19:44:05 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-27 17:44 ComboFix2.txt 2011-06-27 07:47 ComboFix3.txt 2011-06-26 07:45 ComboFix4.txt 2011-06-25 08:10 ComboFix5.txt 2011-06-27 17:11 . Pre-Run: 361.808.166.912 bytes beschikbaar Post-Run: 361.660.248.064 bytes beschikbaar . - - End Of File - - E70425BD5C2D409A2E65BA326E5B5993 ---------- Post toegevoegd om 19:56 ---------- Vorige post was om 19:51 ---------- Hallo Kweezi Ik wil nog een vraag meegeven. Volgens ik mij herinner in vroegere berichten heb ik toch verschillende zaken moeten verwijderen zoals bandoo, coduite, en nog andere zaken, maar deze zie ik nog onder program files vernoemd worden?
  14. Dit is log na opstart in veilige modus Kreeg dan wel de melding dat Microsoft Essentials nog aktief was en opstart cobofix opeigen risico was. Het was een rood scherm :niet beveiligd De rest is met normale opstart gebeurd. ComboFix 11-06-25.05 - Eigenaar 27/06/2011 9:24.8.4 - x64 MINIMAL Microsoft Windows 7 Home Premium 6.1.7600.0.1252.32.1043.18.4023.3149 [GMT 2:00] Gestart vanuit: c:\users\Eigenaar\Desktop\ComboFix.exe AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} * Nieuw herstelpunt werd aangemaakt . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-27 to 2011-06-27 )))))))))))))))))))))))))))))) . . 2011-06-27 07:32 . 2011-06-27 07:32 -------- d-----w- c:\users\Gast\AppData\Local\temp 2011-06-27 07:32 . 2011-06-27 07:32 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-27 07:13 . 2011-06-27 07:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{68CF0F54-7924-43AD-8494-0813EDC3DC0E} 2011-06-26 19:21 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{28890DB3-074C-4BBD-A9A0-7D2C4AA34E89}\mpengine.dll 2011-06-26 19:11 . 2011-06-26 19:12 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DE25DD5D-4B45-4D77-9493-7387871FB6A5} 2011-06-26 07:04 . 2011-06-26 07:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4D46885E-4A9B-4147-8116-648A2FFD1999} 2011-06-25 19:04 . 2011-06-25 19:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CB94869A-D736-4C56-BA81-D15C7DF44195} 2011-06-25 16:50 . 2011-06-25 16:50 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2011-06-25 07:03 . 2011-06-25 07:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{70C080E4-DAAA-4857-8F5A-4B693EECD0D4} 2011-06-24 19:03 . 2011-06-24 19:03 -------- d-----w- c:\users\Eigenaar\AppData\Local\{9917CE4B-4910-4D22-8F58-8EAEC564C7CE} 2011-06-24 07:01 . 2011-06-24 07:02 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E0A66694-EF23-4FD7-908B-B9E785B4D890} 2011-06-23 10:01 . 2011-06-23 10:01 -------- d-----w- c:\program files (x86)\Common Files\Java 2011-06-23 09:43 . 2011-06-23 09:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5B0A638F-741C-47BD-8852-4668B8C07FA4} 2011-06-22 21:43 . 2011-06-22 21:43 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BCB00099-C6AE-4C2A-A4AA-05BEEDD1D3F2} 2011-06-22 21:37 . 2011-06-22 21:37 -------- d-----w- c:\users\Eigenaar\AppData\Local\{BC485C62-5B90-4AF4-8022-A869F5BBA0D9} 2011-06-22 07:45 . 2011-06-22 07:45 -------- d-----w- c:\users\Eigenaar\AppData\Local\{90A83CF9-6867-44D9-ADDD-ED69092EFF25} 2011-06-21 19:44 . 2011-06-21 19:44 -------- d-----w- c:\users\Eigenaar\AppData\Local\{295024DE-282A-4397-A49E-8511D2CC3E84} 2011-06-21 10:48 . 2011-06-21 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{242CC70E-AE49-43AA-9533-69C1A8B0CDD3} 2011-06-20 22:52 . 2011-06-20 22:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{96525F85-8084-46D7-AFDD-63218454AFBD} 2011-06-20 22:48 . 2011-06-20 22:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{C21C4CF0-A5AC-4F5C-B0D1-D3720D1816EA} 2011-06-20 20:02 . 2011-06-22 13:49 -------- d-----w- C:\backups 2011-06-20 18:34 . 2011-06-20 16:08 388608 ----a-w- C:\HijackThis.exe 2011-06-20 15:18 . 2011-06-20 15:18 -------- d-----w- c:\program files\CCleaner 2011-06-20 10:48 . 2011-06-20 10:48 -------- d-----w- c:\users\Eigenaar\AppData\Local\{DB6D856F-74CF-4C13-BCAF-A2E11EA51340} 2011-06-19 22:47 . 2011-06-19 22:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{514555E4-EF1A-4825-A7BA-1C04F3F369E7} 2011-06-19 14:49 . 2009-10-10 03:17 14336 ----a-w- c:\windows\system32\drivers\sffp_sd.sys 2011-06-19 14:49 . 2009-10-10 02:41 109056 ----a-w- c:\windows\system32\drivers\sdbus.sys 2011-06-19 10:46 . 2011-06-19 10:47 -------- d-----w- c:\users\Eigenaar\AppData\Local\{AA448307-6D7E-4537-8AAF-669985540453} 2011-06-18 17:50 . 2011-06-18 17:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{4512965C-6F16-43E3-962F-E2EFE4613904} 2011-06-18 11:53 . 2011-06-18 11:53 -------- d-----w- c:\windows\system32\SPReview 2011-06-18 11:04 . 2011-06-18 11:04 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\Malwarebytes 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 11:03 . 2010-12-20 16:09 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 11:03 . 2011-06-18 11:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 11:03 . 2010-12-20 16:08 24152 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 05:48 . 2011-06-18 05:49 -------- d-----w- c:\users\Eigenaar\AppData\Local\{CFCB4094-B2A3-4930-B7FB-DE1AFAE4286C} 2011-06-17 02:10 . 2011-06-17 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3D5EE115-D78C-4B8F-B388-16DFC6BC213D} 2011-06-16 14:29 . 2011-06-16 14:29 -------- d-----w- c:\windows\CheckSur 2011-06-16 14:10 . 2011-06-16 14:10 -------- d-----w- c:\users\Eigenaar\AppData\Local\{878106AD-0210-4036-B1D3-F1F99B927DEB} 2011-06-16 09:52 . 2011-06-16 09:52 -------- d-----w- c:\windows\system32\EventProviders 2011-06-16 00:58 . 2011-04-23 01:19 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2011-06-16 00:58 . 2011-04-22 23:25 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb 2011-06-16 00:58 . 2011-04-25 16:41 174384 ----a-w- c:\program files\Internet Explorer\sqmapi.dll 2011-06-16 00:58 . 2011-04-25 15:29 141104 ----a-w- c:\program files (x86)\Internet Explorer\sqmapi.dll 2011-06-16 00:57 . 2011-04-23 01:29 2303488 ----a-w- c:\windows\system32\jscript9.dll 2011-06-16 00:57 . 2011-04-22 23:35 1797632 ----a-w- c:\windows\SysWow64\jscript9.dll 2011-06-16 00:11 . 2011-06-16 00:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{F20B115B-6EAE-4252-88B8-953A78EB94CB} 2011-06-15 23:08 . 2010-11-30 09:43 601424 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C169E9FE-987B-432C-8451-F4192D6AC6AD}\gapaengine.dll 2011-06-15 22:52 . 2011-06-27 07:34 -------- d-----w- c:\windows\system32\wbem\repository 2011-06-14 16:04 . 2011-06-14 16:04 -------- d-----w- c:\users\Eigenaar\AppData\Local\{83E662ED-690E-45B5-87A8-A22ADD58DCFD} 2011-06-13 07:57 . 2011-06-13 08:11 -------- d-----w- c:\users\Eigenaar\AppData\Local\{535700F7-39E4-4A7A-A47D-A56255190172} 2011-06-12 12:11 . 2011-06-12 12:21 -------- d-----w- c:\users\Eigenaar\AppData\Local\{3B14A23A-45FC-4D8C-9385-CBE5CE07C661} 2011-06-12 09:01 . 2011-06-12 09:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D393EE50-2B6A-45A3-8AD8-177382FE84D7} 2011-06-11 11:32 . 2011-06-11 11:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{FC34AD28-525E-4E39-AFFD-63285F49CBAD} 2011-06-10 19:04 . 2011-06-10 19:09 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2177E62F-C202-44C4-88F7-FCCCA3F381F6} 2011-06-10 07:00 . 2011-06-10 07:01 -------- d-----w- c:\users\Eigenaar\AppData\Local\{466ECE7F-7AC7-419F-AD31-9C4B1222CC4E} 2011-06-09 15:40 . 2011-06-09 15:40 -------- d-----w- c:\users\Eigenaar\AppData\Local\{EB8E160A-D526-4EE7-9274-79C78C61BBB2} 2011-06-08 10:51 . 2011-06-08 10:52 -------- d-----w- c:\users\Eigenaar\AppData\Local\{E837E523-918D-4A7D-A080-FEF289FC1F33} 2011-06-07 15:17 . 2011-06-07 15:17 -------- d-----w- c:\users\Eigenaar\AppData\Local\{42F4808E-245E-43A5-BADB-D0054A4977B5} 2011-06-06 14:31 . 2011-06-06 14:32 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2EC24D65-12B9-4FA2-BA40-58E7D1121530} 2011-06-05 10:19 . 2011-06-05 10:20 -------- d-----w- c:\users\Eigenaar\AppData\Local\{D3A4B2CF-4EFD-47E4-BE0F-3B03DBFDB686} 2011-06-04 18:48 . 2011-06-04 18:50 -------- d-----w- c:\users\Eigenaar\AppData\Local\{839BED9D-1302-49FA-A26C-857A3D2485EC} 2011-06-01 05:36 . 2011-06-01 05:36 -------- d-----w- c:\users\Eigenaar\AppData\Local\{2A88517A-4744-4687-93C7-90C759C34213} 2011-05-31 15:14 . 2011-05-31 15:16 -------- d-----w- c:\users\Eigenaar\AppData\Local\{5DFB41B8-41FF-4DB6-BF46-D8682B065C74} 2011-05-29 20:35 . 2011-05-30 15:13 -------- d-----w- c:\users\Eigenaar\AppData\Local\{221651DD-9948-474A-9364-CF312D23F0C0} 2011-05-29 08:34 . 2011-05-29 08:34 -------- d-----w- c:\users\Eigenaar\AppData\Local\{274324B1-E1D5-471A-B7E3-D1F83EBCDC84} 2011-05-28 22:06 . 2011-06-11 14:09 -------- d-----w- c:\users\Eigenaar\AppData\Roaming\go 2011-05-28 22:05 . 2011-06-15 22:47 -------- d-----w- c:\programdata\Easybits GO 2011-05-28 20:33 . 2011-05-28 20:34 -------- d-----w- c:\users\Eigenaar\AppData\Local\{6D9A1DC0-E3D4-43CA-B9EB-4C9426A1EBAF} . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-18 13:06 . 2009-07-14 02:36 152064 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-18 13:06 . 2009-07-14 02:36 175104 ----a-w- c:\windows\system32\msclmd.dll 2011-06-07 17:10 . 2010-10-12 06:55 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-05-13 16:58 . 2011-05-13 16:58 17720 ----a-w- c:\windows\system32\HPMDPCoInst12.dll 2011-05-13 16:58 . 2009-07-08 12:49 30008 ----a-w- c:\windows\system32\drivers\hpdskflt.sys 2011-05-13 16:58 . 2011-05-13 16:58 30520 ----a-w- c:\windows\system32\hpservice.exe 2011-05-13 16:58 . 2011-05-13 16:58 20792 ----a-w- c:\windows\system32\accelerometerdll.DLL 2011-05-13 16:57 . 2011-05-13 16:57 43320 ----a-w- c:\windows\system32\drivers\Accelerometer.sys 2011-05-13 05:16 . 2011-05-13 05:16 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-05-12 20:00 . 2010-10-03 10:39 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-05-12 18:57 . 2010-10-03 10:39 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-05-04 02:52 . 2010-04-25 07:22 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll 2011-04-22 20:18 . 2011-05-25 11:27 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-04-13 22:40 . 2011-04-13 22:40 4284416 ----a-w- c:\windows\SysWow64\GPhotos.scr 2011-04-09 06:58 . 2011-05-13 15:49 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-04-09 06:45 . 2011-05-12 18:58 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-04-09 06:13 . 2011-05-12 18:58 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2011-04-09 06:13 . 2011-05-12 18:58 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2011-04-09 05:56 . 2011-05-13 15:49 123904 ----a-w- c:\windows\SysWow64\poqexec.exe . . ((((((((((((((((((((((((((((( SnapShot_2011-06-24_15.58.11 ))))))))))))))))))))))))))))))))))))))))) . + 2011-06-26 21:17 . 2011-06-26 21:17 9560 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_48.bin + 2011-06-26 21:17 . 2011-06-26 21:17 4280 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_32.bin + 2011-06-26 21:17 . 2011-06-26 21:17 2456 c:\windows\system32\NetworkList\Icons\{345D11F0-5E03-484B-812A-ACD78715CFFF}_24.bin . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] 2010-06-13 17:10 2734688 ----a-w- c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{d1a1c8f1-e3d9-48df-802f-20201061ef61}"= "c:\program files (x86)\Messenger_Plus_Live_Belgium\tbMess.dll" [2010-06-13 2734688] . [HKEY_CLASSES_ROOT\clsid\{d1a1c8f1-e3d9-48df-802f-20201061ef61}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-09-29 1685048] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Corel File Shell Monitor"="c:\program files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe" [2009-08-25 15544] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504] "QuickTime Task"="c:\program files (x86)\QuickTime\qttask.exe" [2006-09-01 282624] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2009-09-02 60464] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 AGCoreService;AG Core Services;c:\program files (x86)\AGI\core\4.2.0.10753\AGCoreService.exe [2010-03-18 20480] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Updateservice (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 gupdatem;Google Update-service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-15 136176] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [2009-03-02 89600] S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136] S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 12:24 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 20:06] . 2011-06-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000Core.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2696175809-2240157295-830168338-1000UA.job - c:\users\Eigenaar\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-13 20:00] . 2011-06-26 c:\windows\Tasks\Norton Security Scan for Eigenaar.job - c:\program files (x86)\Norton Security Scan\Engine\2.7.6.13\Nss.exe [2011-05-18 00:27] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-10-03 16395880] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-11 171520] "fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2010-09-22 884584] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-07-27 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] "Logitech Download Assistant"="c:\windows\system32\rundll32.exe" [2009-07-14 45568] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-03-23 487424] . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm uDefault_Search_URL = hxxp://www.google.com/ie mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\Eigenaar\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 195.130.131.5 195.130.130.133 DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab FF - ProfilePath - c:\users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\77pds0yv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://plasmoo.com/index.htm?SearchMashine=true&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - Plasmoo FF - prefs.js: browser.startup.homepage - hxxp://plasmoo.com FF - prefs.js: keyword.URL - hxxp://plasmoo.com/index.htm?SearchMashine=true&q= FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS VERWIJDERD - - - - . URLSearchHooks-{0BC6E3FA-78EF-4886-842C-5A1258C4455A} - (no file) WebBrowser-{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{46735DEE-F862-49D1-876D-6382794DC625} - (no file) WebBrowser-{3AD798D0-4642-4C55-BC14-CFE7DD19E0D1} - (no file) WebBrowser-{D1FCE654-5FD1-48AD-B13C-5064736120B7} - (no file) WebBrowser-{7B13EC3E-999A-4B70-B9CB-2617B8323822} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe c:\program files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe c:\program files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe . ************************************************************************** . Voltooingstijd: 2011-06-27 09:47:04 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-27 07:47 ComboFix2.txt 2011-06-26 07:45 ComboFix3.txt 2011-06-25 08:10 ComboFix4.txt 2011-06-25 07:38 ComboFix5.txt 2011-06-27 07:23 . Pre-Run: 362.033.704.960 bytes beschikbaar Post-Run: 361.683.320.832 bytes beschikbaar . - - End Of File - - 31AFE4042BBC1260E8EC494188753651
  15. hallo Kweezie microsoft essentials vraagt al enkele dagen om scan uit te voeren maar dit mag ik nog niet doen zeker?
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.