Zoek.exe v5.0.0.0 Updated 24-08-2014 Tool run by Lauren on ma 25/08/2014 at 17:03:06,33. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Lauren\Desktop\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 25/08/2014 17:04:19 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\Program Files\log deleted successfully C:\Program Files\trend micro deleted successfully C:\Program Files\Windows Media Player deleted successfully C:\PROGRA~3\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} deleted successfully C:\Users\Lauren\AppData\Local\PackageStaging deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully HKEY_USERS\S-1-5-21-1967905107-964103120-587826904-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Lauren\AppData\Roaming\Mozilla\Firefox\Profiles\v493dept.default-1400350832356 user.js not found ---- Lines belgiumeid@eid.belgium.be modified from prefs.js ---- user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"fmdownloader@gmail.com\":{\"descriptor\":\"C:\\\\Program Files (x ---- FireFox user.js and prefs.js backups ---- prefs_20142508_1715_.backup ==== Deleting Files \ Folders ====================== C:\PROGRA~3\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} not found C:\PROGRA~3\ProductData deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Lauren\Downloads\avg_free_stb_all_2014_4259_cnet.exe deleted C:\Users\Lauren\Downloads\avg_free_stb_all_2014_4335_cnet.exe deleted C:\Users\Lauren\Downloads\SoftonicDownloader_voor_driver-cleaner.exe deleted C:\Users\Lauren\Downloads\SoftonicDownloader_voor_sweet-home-3d.exe deleted C:\Users\Lauren\AppData\LocalLow\ADSRemoval deleted C:\WINDOWS\Syswow64\SET76E4.tmp deleted C:\WINDOWS\Syswow64\SET8273.tmp deleted C:\WINDOWS\Syswow64\SET97BF.tmp deleted C:\WINDOWS\SysWow64\AI_RecycleBin deleted C:\Users\Lauren\AppData\Roaming\Mozilla\Firefox\Profiles\v493dept.default-1400350832356\extensions\belgiumeid@eid.belgium.be.xpi deleted C:\PROGRA~2\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-08-15 11:56:58 0EEA2B4A91FB3108B60A6CA116BC9430 2374816 ----a-w- C:\WINDOWS\explorer.exe ====== C:\Users\Lauren\AppData\Local\Temp ==== 2014-08-25 14:36:23 C76B8E74F900E083712ADC5B597A05C3 339264 ----a-w- C:\Users\Lauren\AppData\Local\Temp\8215\taskmgr.dll 2014-08-25 14:36:23 5C74AD321FDD45D4562F6F67D9A75C84 1145120 ----a-w- C:\Users\Lauren\AppData\Local\Temp\8215\ProjectOnUninstall.exe 2014-08-25 08:30:11 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4j98CB.tmp_dir1408955411\i4jdel.exe 2014-08-25 08:17:41 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4jD410.tmp_dir1408954661\i4jdel.exe 2014-08-20 18:02:07 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4j3D02.tmp_dir1408557727\i4jdel.exe ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-08-15 11:57:15 FEC1F6C1F496944BC40D995957D971CF 1404416 ----a-w- C:\WINDOWS\SysWOW64\storagewmi.dll 2014-08-15 11:57:15 D9ABDEC0BDCD1FE7391EF756A2A9107B 180208 ----a-w- C:\WINDOWS\SysWOW64\SndVol.exe 2014-08-15 11:57:15 704AA3D6466B2070D321C63C99368448 95232 ----a-w- C:\WINDOWS\SysWOW64\AppxSip.dll 2014-08-15 11:57:15 3362D78214C5B0A5CAE9E5C1692FA12B 474112 ----a-w- C:\WINDOWS\SysWOW64\AppxPackaging.dll 2014-08-15 11:57:14 D39BD0DB9D91A4376F759282B2C276AE 1057792 ----a-w- C:\WINDOWS\SysWOW64\printui.dll 2014-08-15 11:57:14 ACB131E8AB530C71841FEA38AE6E6707 328704 ----a-w- C:\WINDOWS\SysWOW64\puiobj.dll 2014-08-15 11:57:14 A0E20B50D66FDF786BC2324499F7C482 195584 ----a-w- C:\WINDOWS\SysWOW64\prnntfy.dll 2014-08-15 11:57:14 9D75171689317D82FBF8B155FCF34AE8 371712 ----a-w- C:\WINDOWS\SysWOW64\winspool.drv 2014-08-15 11:57:14 710A55B8443155F1FF09E07C2E44D79D 200192 ----a-w- C:\WINDOWS\SysWOW64\DafPrintProvider.dll 2014-08-15 11:57:14 558838A9A51259F3E76030E3E997A72A 162816 ----a-w- C:\WINDOWS\SysWOW64\puiapi.dll 2014-08-15 11:57:13 F7A00AA3EA30F2F923C1F8A0DE76A113 180720 ----a-w- C:\WINDOWS\SysWOW64\mftranscode.dll 2014-08-15 11:57:13 E5FB6044A36E74484DA958AC17FA9504 1290752 ----a-w- C:\WINDOWS\SysWOW64\XpsPrint.dll 2014-08-15 11:57:13 E011C6CA6921FAC88F8B163C68E554BF 2410976 ----a-w- C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2014-08-15 11:57:13 B393F30C63DCD1A0D6977A8E27A42A57 707536 ----a-w- C:\WINDOWS\SysWOW64\mfplat.dll 2014-08-15 11:57:13 69567319D077611FFF5A07BDCDF2A400 889344 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-08-15 11:57:13 5EE87C7E41A2BFF787FD5B8C5BA91EAF 674512 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-08-15 11:57:13 495B4CA2AF924CE5C08BBC9D5E7E1103 2145472 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2014-08-15 11:57:13 3EAE3411A4A492C253A88534209E3045 355800 ----a-w- C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-08-15 11:57:11 EBA5466233255ADAF7D5501F0CC2B9CF 189016 ----a-w- C:\WINDOWS\SysWOW64\rsaenh.dll 2014-08-15 11:57:11 B51145AD5D1A7F91987FF230BF4BAD43 11794944 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2014-08-15 11:57:11 95719EC346E3A9FDD87662BE886EB200 1817088 ----a-w- C:\WINDOWS\SysWOW64\Display.dll 2014-08-15 11:57:11 14D03A4F5F0AFCDB93CAFB68B77ACDB6 288768 ----a-w- C:\WINDOWS\SysWOW64\stobject.dll 2014-08-15 11:57:11 0A6ABB521CDCE96D3A50939CF7964E24 206336 ----a-w- C:\WINDOWS\SysWOW64\powercfg.cpl 2014-08-15 11:57:11 0032BD1E2DB20E1730C78895E942C194 2088648 ----a-w- C:\WINDOWS\SysWOW64\explorer.exe 2014-08-15 11:57:10 F1FCD3780D71FD21EAA2A42D3A924B1F 832512 ----a-w- C:\WINDOWS\SysWOW64\ActionCenter.dll 2014-08-15 11:57:10 B1D05869BF218949BDC5F695D3A8A7EB 5833216 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-08-15 11:57:10 190228E527C47A96D9B865F07BF2EC19 889856 ----a-w- C:\WINDOWS\SysWOW64\aclui.dll 2014-08-15 11:57:09 FC36740153F03C81ADA5B5EEF22C8064 1048064 ----a-w- C:\WINDOWS\SysWOW64\gpedit.dll 2014-08-15 11:57:09 FB970EC73EAB710FE1F529C139E258A0 477200 ----a-w- C:\WINDOWS\SysWOW64\SHCore.dll 2014-08-15 11:57:09 F6570EFB5DD5CFC33A0C9D3B4C05069E 2318336 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2014-08-15 11:57:09 E1F38BF986C7285AB13FB369243A41E0 448000 ----a-w- C:\WINDOWS\SysWOW64\VAN.dll 2014-08-15 11:57:09 DA5AD8EA1331015BCC2FCFB1B7EE4EBC 168960 ----a-w- C:\WINDOWS\SysWOW64\iasnap.dll 2014-08-15 11:57:09 CB587DCB837D0367B43584855BD22F25 432128 ----a-w- C:\WINDOWS\SysWOW64\Windows.Networking.dll 2014-08-15 11:57:09 C5D013B0C8F019F950B7E7451A57034E 318976 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2014-08-15 11:57:09 86A8EEFADBDDA52474456818D76DFAAA 302080 ----a-w- C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-08-15 11:57:09 7E4A478662336EE2AF81C97345A407B6 18760328 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2014-08-15 11:57:09 7BB5166433C5319CED9E8D05A0C5F7E8 230400 ----a-w- C:\WINDOWS\SysWOW64\wlanapi.dll 2014-08-15 11:57:09 6ADEF3CCE9788849FA7F8D28A85B2833 540672 ----a-w- C:\WINDOWS\SysWOW64\comdlg32.dll 2014-08-15 11:57:09 5232DEDED1A958814344D564F6C9C632 344576 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2014-08-15 11:57:09 0C666352A0F9C61AB07019D3928463ED 391000 ----a-w- C:\WINDOWS\SysWOW64\netcfgx.dll 2014-08-15 11:57:09 0836AC3FEF8E7380D1973E6DB14E31A7 459264 ----a-w- C:\WINDOWS\SysWOW64\SettingSync.dll 2014-08-15 11:57:08 D32E7F10D61EFF5A26FB806934FB1088 1029632 ----a-w- C:\WINDOWS\SysWOW64\mispace.dll 2014-08-15 11:57:08 8FC068ACF45786301D04CED5B58A13E3 1319936 ----a-w- C:\WINDOWS\SysWOW64\wsecedit.dll 2014-08-15 11:57:08 42A350B81E0E9A427D7366E1E8BFBADC 198656 ----a-w- C:\WINDOWS\SysWOW64\WebClnt.dll 2014-08-15 11:57:08 05B976CBCB4ADE4D3F4E75DAD196EECD 313856 ----a-w- C:\WINDOWS\SysWOW64\clusapi.dll 2014-08-15 11:56:49 19C5844B56BCA187625D2CFA9A7C1144 127544 ----a-w- C:\WINDOWS\SysWOW64\winmmbase.dll 2014-08-15 11:56:48 FD1461E0E57342F058344D9DCC0CFA71 1038336 ----a-w- C:\WINDOWS\SysWOW64\actxprxy.dll 2014-08-15 11:56:48 21A13082B44A898B8DCC54972B2B5C31 128568 ----a-w- C:\WINDOWS\SysWOW64\winmm.dll 2014-08-15 11:56:47 FE166ADB02C1E146005789C17E065143 8192 ----a-w- C:\WINDOWS\SysWOW64\KBDRUM.DLL 2014-08-15 11:56:47 FB38126A24BDC4912C175C4C430E911C 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDRU1.DLL 2014-08-15 11:56:47 DB46A1A84AEC3A7F0FBA4E20320F3159 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDTT102.DLL 2014-08-15 11:56:47 AA3E2CEECFCD89D49FF902ECAD197946 2071552 ----a-w- C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-08-15 11:56:47 A40516F4443996DC92350D6890546E4A 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDYAK.DLL 2014-08-15 11:56:47 A39251FAE3189E1AE1F0DF0884D37E2A 1361408 ----a-w- C:\WINDOWS\SysWOW64\user32.dll 2014-08-15 11:56:47 8A073508726DE4A69ED702A7A6082808 1351168 ----a-w- C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-08-15 11:56:47 594CEF2E9CD8A5BB8310B3844614C127 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDTAT.DLL 2014-08-15 11:56:47 44AABDB92C816F112E054FC3523B51E8 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDBASH.DLL 2014-08-15 11:56:47 35D1AA379B4C2873F1DD62EDCA740C19 6656 ----a-w- C:\WINDOWS\SysWOW64\KBDRU.DLL 2014-08-15 11:56:47 2F6410A7641BE1196DC423025F208285 98048 ----a-w- C:\WINDOWS\SysWOW64\dwmapi.dll 2014-08-15 11:56:47 02E324E880F6E54187A2B3C9F53DD70E 12730880 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-08-15 11:56:46 F7CA5639A235A1E2071500B4D1FCC6F8 51200 ----a-w- C:\WINDOWS\SysWOW64\wshbth.dll 2014-08-15 11:56:46 DA84B73474C3D02B453E6FAC0F38DBFB 26112 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2014-08-15 11:56:46 CA16D3794D44C57CBFBE0CE5530FFED8 80896 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2014-08-15 11:56:46 BEE3C4EC1F92C62E4CF018EAEB8074E1 756224 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2014-08-15 11:56:46 8A5A7AB46513F9FA75E7223471084645 667136 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2014-08-15 11:56:46 7D6731C5BA01769612A3EDC42A7C931B 79872 ----a-w- C:\WINDOWS\SysWOW64\BluetoothApis.dll 2014-08-15 11:56:46 427A26A303BBF3736B054244EAFFAA4D 439296 ----a-w- C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2014-08-15 11:56:46 2CDBF4B60E89CD711476FAB1EB9A4999 5777408 ----a-w- C:\WINDOWS\SysWOW64\mstscax.dll 2014-08-15 11:56:46 1FA2D34A17E366C269FBE94DE06B177F 855552 ----a-w- C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-08-15 11:56:46 1CD80290AEB1DA851B6AA9B9822F25F2 779264 ----a-w- C:\WINDOWS\SysWOW64\osk.exe 2014-08-15 11:56:46 0F3DF44347B0051D30B23EED12973D8C 210944 ----a-w- C:\WINDOWS\SysWOW64\wisp.dll 2014-08-15 11:56:46 0120A5300040B9A1E459A03B364A74D5 1741824 ----a-w- C:\WINDOWS\SysWOW64\SRH.dll 2014-08-15 11:56:45 3C120DEE84D42246A17A917B2B934A36 513544 ----a-w- C:\WINDOWS\SysWOW64\locale.nls 2014-08-15 11:56:44 F19F4DF5361132D5E19FBE1A0DCDC80B 335680 ----a-w- C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2014-08-14 08:02:34 8E58E88BE96C53ED639D4F779CCDD06B 704480 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-08-14 08:02:34 217139672F2EF8EF3D1AD3E330779AF4 105440 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-08-14 06:13:00 444EB30B1610A35FC99D62A91B2BCAA7 69632 ----a-w- C:\WINDOWS\SysWOW64\mshtmled.dll 2014-08-14 06:12:59 24FA5F74D3B4BA62539DF87285BA934E 597504 ----a-w- C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-08-14 06:12:58 E9B28B60C0272E2E1E462E6FB38E6B55 367104 ----a-w- C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-08-14 06:12:58 8453DDF167CE2986AA4AB04BC6824925 17524224 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-08-14 06:12:58 6D017C0E499443ACDE3D9B5DCD753F32 1169920 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2014-08-14 06:12:58 1A05CFA45B6AEBFCCC835DCF68CBD1D0 526336 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2014-08-14 06:12:58 030041C8800A1781134B6EC3E3EF3F9C 291840 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2014-08-14 06:12:55 E70C00791A18866BB23B3A652E3390A0 2001920 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-08-14 06:12:54 FF4A917DD7C387BD2715A5F67307FED1 2184704 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2014-08-14 06:12:54 239575F9EA0D227516843EEE8B7342CA 239616 ----a-w- C:\WINDOWS\SysWOW64\dxtrans.dll 2014-08-14 06:12:52 90FF511B751A0327D07C4073760F1578 11772928 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2014-08-14 06:12:50 7C1BFC2ABE297BCA1A7BA77A8292C088 4204032 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2014-08-14 06:12:50 18A3154606E3F8945956948A4E708007 704512 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-08-14 06:12:40 B945BAA81B4805AD6BDDF4D026DCFB47 1792512 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2014-08-14 06:12:34 FEE3E022B00A5165ED645E38C1E6C776 60416 ----a-w- C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-14 06:12:33 272420427EB96EA052C719AA796C09F2 61952 ----a-w- C:\WINDOWS\SysWOW64\MshtmlDac.dll 2014-08-14 06:12:31 9D16B568E318F49535AD72539C9997C2 455168 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2014-08-14 06:04:45 2C01D8EA2B0FA834597FCD96AAAE4F52 406400 ----a-w- C:\WINDOWS\SysWOW64\dxgi.dll 2014-08-14 06:04:45 128EC9879D462F89829E663417FE5DBD 710144 ----a-w- C:\WINDOWS\SysWOW64\rpcrt4.dll 2014-08-14 06:03:13 38045850ACB96313A1983A8803302906 35480 ----a-w- C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-08-14 06:03:01 F8D0951A75826AD557CFAC323A936AA6 281088 ----a-w- C:\WINDOWS\SysWOW64\msihnd.dll 2014-08-14 06:03:01 86DB4BA87BAF3D467D04821602E586A9 3304448 ----a-w- C:\WINDOWS\SysWOW64\msi.dll 2014-08-14 06:02:58 DBC4D46A7DDC14D1D1ED4B613F9E41A4 1064448 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2014-08-14 06:02:58 DB3ED0BA26D7C598481A23E7D06A370E 2344448 ----a-w- C:\WINDOWS\SysWOW64\Wpc.dll 2014-08-14 05:59:39 B9BFD6CE08BA3F9AB7BA3D19622824D6 164864 ----a-w- C:\WINDOWS\SysWOW64\msrating.dll 2014-08-14 05:59:38 BAC704E260557DD80157594C3F5F3F5C 43008 ----a-w- C:\WINDOWS\SysWOW64\jsproxy.dll 2014-08-14 05:59:31 BF576E866F0C70F0A6C7CA5BF28EC89A 2724864 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb 2014-08-14 05:59:12 7A2D384A9B072FE4E86341A01880AD08 51200 ----a-w- C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-08-14 05:59:07 D4589A3246497F13CF3A901D9B117974 112128 ----a-w- C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-08-14 05:59:04 BF816BA40B8B0BD2661D03DBDC2A6531 32768 ----a-w- C:\WINDOWS\SysWOW64\iernonce.dll 2014-08-14 05:59:04 4F5623797E2230C18FB78531919B4C59 61952 ----a-w- C:\WINDOWS\SysWOW64\iesetup.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-08-15 11:57:15 7740658736BD07FC121EACB3CA7C9194 2397184 ----a-w- C:\WINDOWS\Sysnative\storagewmi.dll 2014-08-15 11:57:15 4EC7601168D40E26EE094593124C87E3 2860032 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2014-08-15 11:57:14 D069B88549B986C15731AE79F8D6C258 3360768 ----a-w- C:\WINDOWS\Sysnative\rdpcorets.dll 2014-08-15 11:57:14 A9CE2C192B4C7E7151011A56DB2C7B40 132608 ----a-w- C:\WINDOWS\Sysnative\rdpudd.dll 2014-08-15 11:57:13 FF1CB6C5D9288DAAA0DADAD6B1E35085 205512 ----a-w- C:\WINDOWS\Sysnative\mftranscode.dll 2014-08-15 11:57:13 C40DE04CE3A8905EB8048B5CE0951DF0 882136 ----a-w- C:\WINDOWS\Sysnative\mfplat.dll 2014-08-15 11:57:13 AD3137A754F60D369C176EF4DD5084A0 2141920 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2014-08-15 11:57:13 8DC2979BC54C585BA5A4C9E6FABCD1B4 360480 ----a-w- C:\WINDOWS\Sysnative\mfreadwrite.dll 2014-08-15 11:57:13 83E7C4DA3BF4A21C3F809A506245CAEF 233888 ----a-w- C:\WINDOWS\Sysnative\mfps.dll 2014-08-15 11:57:13 8200B4C323229AA1F47C87EB37207E36 2574208 ----a-w- C:\WINDOWS\Sysnative\WMVDECOD.DLL 2014-08-15 11:57:13 7A136EFAB2E4DF9A897E0333C51B54B8 818624 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2014-08-15 11:57:13 618A19EB31ECA7B7F2AA0207BAF598A5 84480 ----a-w- C:\WINDOWS\Sysnative\wpdbusenum.dll 2014-08-15 11:57:13 11FA35E24D76F62BD3E64D43B12656EF 1231872 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.dll 2014-08-15 11:57:12 B2C26168E74EA51BF65518A309B08C19 770048 ----a-w- C:\WINDOWS\Sysnative\WorkfoldersControl.dll 2014-08-15 11:57:12 97F24AEACAD9C9038BEC5B2BA1ADA94C 187392 ----a-w- C:\WINDOWS\Sysnative\WorkFoldersShell.dll 2014-08-15 11:57:12 61BF52E9FFAB27A0B6D621BE26088373 1600000 ----a-w- C:\WINDOWS\Sysnative\workfolderssvc.dll 2014-08-15 11:57:12 2C38FF9DE23A3BB335A95099622AB603 65536 ----a-w- C:\WINDOWS\Sysnative\WorkFoldersGPExt.dll 2014-08-15 11:57:11 6ECFFE49AA43A74DC15701EFE6355621 92160 ----a-w- C:\WINDOWS\Sysnative\dab.dll 2014-08-15 11:57:08 EA10272605422080EE2FAB142A75120D 356864 ----a-w- C:\WINDOWS\Sysnative\conhost.exe 2014-08-15 11:57:08 49EEC8569BF200C95A38D00766AFB830 16874496 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2014-08-15 11:57:08 30F9F0CDEBE694F54073254BC6F7A94E 792064 ----a-w- C:\WINDOWS\Sysnative\uDWM.dll 2014-08-15 11:57:08 1A5835F2E6B49A83F0AEAD17B4537AF7 1656832 ----a-w- C:\WINDOWS\Sysnative\GdiPlus.dll 2014-08-15 11:57:07 A6CB3CBF88DF671AC85FA9AABC33137F 125472 ----a-w- C:\WINDOWS\Sysnative\dwmapi.dll 2014-08-15 11:56:59 6A9650BDC13F1A770F20E7B99D29EE3D 6656 ----a-w- C:\WINDOWS\Sysnative\KBDRU.DLL 2014-08-15 11:56:58 F8A869262251B011A21DEC79AC1F3F5D 1844224 ----a-w- C:\WINDOWS\Sysnative\Display.dll 2014-08-15 11:56:58 CC59B18DEC31120F9957ABA55EC49FAC 2389504 ----a-w- C:\WINDOWS\Sysnative\d3d10warp.dll 2014-08-15 11:56:58 CB9CEAB473897BE1E8C827D4F4EB1311 207360 ----a-w- C:\WINDOWS\Sysnative\powercfg.cpl 2014-08-15 11:56:58 A055D7D686F1CB5CBEDCFBB4C6DC9E2E 1519488 ----a-w- C:\WINDOWS\Sysnative\user32.dll 2014-08-15 11:56:58 997E5E28492F02036E5C7BA6DB66ABDC 7168 ----a-w- C:\WINDOWS\Sysnative\KBDTAT.DLL 2014-08-15 11:56:58 7832D9F9F97E536DE374585BE4EA2CD8 6649344 ----a-w- C:\WINDOWS\Sysnative\mstscax.dll 2014-08-15 11:56:58 68270DE9415C8F8139242D38417B49BE 7168 ----a-w- C:\WINDOWS\Sysnative\KBDTT102.DLL 2014-08-15 11:56:58 53F4FC66B94804BBF2016922CD826891 878592 ----a-w- C:\WINDOWS\Sysnative\ActionCenter.dll 2014-08-15 11:56:58 454A0735E836FBC31C064FED6C120B46 7168 ----a-w- C:\WINDOWS\Sysnative\KBDRU1.DLL 2014-08-15 11:56:58 3429360674DA1E70F638924A6D5985CC 7168 ----a-w- C:\WINDOWS\Sysnative\KBDYAK.DLL 2014-08-15 11:56:58 28E8D340402C130427F2901004B7FA99 321536 ----a-w- C:\WINDOWS\Sysnative\stobject.dll 2014-08-15 11:56:58 2067AF0531ACD5D28BD49DB30DF109CE 8192 ----a-w- C:\WINDOWS\Sysnative\KBDRUM.DLL 2014-08-15 11:56:58 0B1A9F6F9D2891C0F8783C0444D27DD0 1057280 ----a-w- C:\WINDOWS\Sysnative\rdvidcrl.dll 2014-08-15 11:56:58 0AC5A816A01D0115588D4B997842780E 7168 ----a-w- C:\WINDOWS\Sysnative\KBDBASH.DLL 2014-08-15 11:56:58 057CE99444311A71F71188A89C4C3EDE 8652800 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Search.dll 2014-08-15 11:56:57 B3FD9578C9025A0037BCB4613A46A469 13292544 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2014-08-15 11:56:57 B279922BCFD0E178068B159D85C5CDBE 2100736 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlowUI.dll 2014-08-15 11:56:57 A4CF0D2FF18BF8D128389AF26410FD8B 1018368 ----a-w- C:\WINDOWS\Sysnative\aclui.dll 2014-08-15 11:56:57 8AE5205957F635FCB7A7760D266F3493 2642944 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2014-08-15 11:56:57 809B36AF48D7BC9B37E1522889F6160F 1126912 ----a-w- C:\WINDOWS\Sysnative\SearchFolder.dll 2014-08-15 11:56:57 74637F054A1DA40DA7C0A939094AFED7 2696704 ----a-w- C:\WINDOWS\Sysnative\SettingsHandlers.dll 2014-08-15 11:56:57 0AB5085FE30F8F6942A2126BCFC1A606 263400 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlows.exe 2014-08-15 11:56:56 D0AD65EE089F735BF546ABFE28D192C0 621056 ----a-w- C:\WINDOWS\Sysnative\comdlg32.dll 2014-08-15 11:56:56 79EFAEE6FBD8ABC066B944E1A7A605BB 645592 ----a-w- C:\WINDOWS\Sysnative\SHCore.dll 2014-08-15 11:56:56 1922AAE64BCD761A0377F6981FC67736 721408 ----a-w- C:\WINDOWS\Sysnative\twinapi.dll 2014-08-15 11:56:55 4190C13A849F5D35F0B0CA445E05045D 21266336 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2014-08-15 11:56:54 D01BA613D268DAD03DD32A0DC5FD24DF 287232 ----a-w- C:\WINDOWS\Sysnative\usbmon.dll 2014-08-15 11:56:54 CD8CA57C36E596875865F451393C7C66 576512 ----a-w- C:\WINDOWS\Sysnative\SettingSync.dll 2014-08-15 11:56:54 793DE7C6B82804D5973C43484F527849 117248 ----a-w- C:\WINDOWS\Sysnative\AppxSip.dll 2014-08-15 11:56:54 6317C9DB4282CEAA3BAB131BC3839B2A 308736 ----a-w- C:\WINDOWS\Sysnative\compstui.dll 2014-08-15 11:56:54 5B6B32E83E371739B13AA67E260DC5C4 487936 ----a-w- C:\WINDOWS\Sysnative\winspool.drv 2014-08-15 11:56:54 42FEA9E0BA9761D9E65A4F167D91515B 795136 ----a-w- C:\WINDOWS\Sysnative\spoolsv.exe 2014-08-15 11:56:54 17E700D2F6671196D0512BF806BB6435 1182208 ----a-w- C:\WINDOWS\Sysnative\printui.dll 2014-08-15 11:56:54 0A7F97DE49DB63E01CBCA067F4DA7AB8 544768 ----a-w- C:\WINDOWS\Sysnative\AppxPackaging.dll 2014-08-15 11:56:53 CCC106273D4265A9091AA7B619DCC5DA 595456 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.dll 2014-08-15 11:56:53 BF6897E960C08E9FDD41B80726C61C2F 371200 ----a-w- C:\WINDOWS\Sysnative\wlanmsm.dll 2014-08-15 11:56:53 AEDF08DDF4EA929FEDBC0A1CCF01F287 296960 ----a-w- C:\WINDOWS\Sysnative\wlanapi.dll 2014-08-15 11:56:53 AE27E63B6A4AFCF4EBCCE8AC4A96C0EF 806400 ----a-w- C:\WINDOWS\Sysnative\win32spl.dll 2014-08-15 11:56:53 A8732AFE4DB47114355ABB285ED776D2 187392 ----a-w- C:\WINDOWS\Sysnative\puiapi.dll 2014-08-15 11:56:53 A5141DD172927F04732F5B6BFBE49C15 443904 ----a-w- C:\WINDOWS\Sysnative\wlansec.dll 2014-08-15 11:56:53 693CC2794DEFB8493ABFF68D509DACC4 127488 ----a-w- C:\WINDOWS\Sysnative\WiFiDisplay.dll 2014-08-15 11:56:53 64E9373A695D9BDFA105E63BF2B569F5 299520 ----a-w- C:\WINDOWS\Sysnative\WSDMon.dll 2014-08-15 11:56:53 4301A4D673F1ACB195C4F30B306B70B9 1992192 ----a-w- C:\WINDOWS\Sysnative\XpsPrint.dll 2014-08-15 11:56:53 3F5EF31C6AA204B099EE76497DF80A26 1532416 ----a-w- C:\WINDOWS\Sysnative\wlansvc.dll 2014-08-15 11:56:53 3EB052F70F739728F89E2AEE2652E8CA 1029632 ----a-w- C:\WINDOWS\Sysnative\localspl.dll 2014-08-15 11:56:53 3A80675FF8524B09817000B6A2E35B7A 18432 ----a-w- C:\WINDOWS\Sysnative\wlansvcpal.dll 2014-08-15 11:56:53 1C683FB45C6CE0BB8A74BB0B1392599D 505344 ----a-w- C:\WINDOWS\Sysnative\VAN.dll 2014-08-15 11:56:53 12C0733F955E15C3C37DD24C9C7D796A 263680 ----a-w- C:\WINDOWS\Sysnative\DafPrintProvider.dll 2014-08-15 11:56:53 118A11C89FAD244A2B85DA7EDC3E9683 215552 ----a-w- C:\WINDOWS\Sysnative\prnntfy.dll 2014-08-15 11:56:53 01409F85BB9DB87E102B415EC91DD6C1 438272 ----a-w- C:\WINDOWS\Sysnative\puiobj.dll 2014-08-15 11:56:52 FA86C3F979EF9CCCCED109B05DEBDD46 432640 ----a-w- C:\WINDOWS\Sysnative\wwanconn.dll 2014-08-15 11:56:52 A9C015F01499761908DE61F172FAF65D 486744 ----a-w- C:\WINDOWS\Sysnative\netcfgx.dll 2014-08-15 11:56:52 9D43D7E80DBC2B733BB652CABD6BAC9C 116736 ----a-w- C:\WINDOWS\Sysnative\httpprxm.dll 2014-08-15 11:56:52 933C63C9003379F56BA4AF4149440FC8 226304 ----a-w- C:\WINDOWS\Sysnative\SndVolSSO.dll 2014-08-15 11:56:52 85ED08FAD9D17EC76A02B5C4AEEDBB00 75776 ----a-w- C:\WINDOWS\Sysnative\adhsvc.dll 2014-08-15 11:56:52 575CB39AD4DC2F4C92341F2D377DCAE0 387391 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2014-08-15 11:56:52 572EBBCDBBA56736F4C0B5487AE7BFA5 220160 ----a-w- C:\WINDOWS\Sysnative\iasnap.dll 2014-08-15 11:56:52 4F6203CBBEFB9FBFA859246682849A24 1144320 ----a-w- C:\WINDOWS\Sysnative\wwanmm.dll 2014-08-15 11:56:52 2B1C2CB5C97962C521CD806F0C86D2FE 102912 ----a-w- C:\WINDOWS\Sysnative\wcmcsp.dll 2014-08-15 11:56:52 1670A274ED1A815311BA33CD27B0D0E8 907776 ----a-w- C:\WINDOWS\Sysnative\iphlpsvc.dll 2014-08-15 11:56:52 02FE7859AD2DEAD7E9E3C7BF5F484204 211216 ----a-w- C:\WINDOWS\Sysnative\SndVol.exe 2014-08-15 11:56:51 D8683834163E00E252CAC57BB6025036 93696 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2014-08-15 11:56:51 D62B6C0A254EADB94C138600E6DB6048 388608 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2014-08-15 11:56:51 CCD0DF268D9C9F5287B66565B4258FD6 59392 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2014-08-15 11:56:51 C80D4D7AF450F7CAD615FF1D7B40D7AD 1488008 ----a-w- C:\WINDOWS\Sysnative\winresume.efi 2014-08-15 11:56:51 AEAD37FA03D6E90638D8A4DC30E50408 2050560 ----a-w- C:\WINDOWS\Sysnative\SRH.dll 2014-08-15 11:56:51 9A3AF816758D144B097AE477D99F7D79 834560 ----a-w- C:\WINDOWS\Sysnative\osk.exe 2014-08-15 11:56:51 70696A95F26778CFCB106ECEAA40F4D9 1519560 ----a-w- C:\WINDOWS\Sysnative\winload.exe 2014-08-15 11:56:51 40CC457FB140B509B50F96DAD9D8F80B 1660048 ----a-w- C:\WINDOWS\Sysnative\winload.efi 2014-08-15 11:56:51 3663F0BB881A16A689F33A21C1A3C76B 1356840 ----a-w- C:\WINDOWS\Sysnative\winresume.exe 2014-08-15 11:56:51 20657ACF2AE5B2E25EEFC597A34AFDED 1705472 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2014-08-15 11:56:51 0FA02FD5BEF2B8FBA63B40746360E9C6 828416 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2014-08-15 11:56:51 0C9F6C826973FF777951FFB15F7A52B5 923136 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2014-08-15 11:56:50 FD807B56AECFD89E4A46960C261D78BF 1089024 ----a-w- C:\WINDOWS\Sysnative\gpedit.dll 2014-08-15 11:56:50 D24002EB2F4A8A04897703067E81CC5D 3465216 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2014-08-15 11:56:50 835261C17478103B73F4FFB8454AF849 268288 ----a-w- C:\WINDOWS\Sysnative\wisp.dll 2014-08-15 11:56:50 69DB09F0263C637DA8568D404842466A 1261056 ----a-w- C:\WINDOWS\Sysnative\gpsvc.dll 2014-08-15 11:56:50 69AF7212845FFCD0AA1F0FC5D51FB809 63488 ----a-w- C:\WINDOWS\Sysnative\wshbth.dll 2014-08-15 11:56:50 3AB9868E0E78AD9CD501B83D7C293125 54752 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2014-08-15 11:56:50 2E80E960F1D376A502E9811B20621F2A 427520 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2014-08-15 11:56:50 1E01725D557B5325E8C99F712E7D4A7E 50688 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2014-08-15 11:56:50 1A2486F88B4F68FCCE7E01DF34869929 436224 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2014-08-15 11:56:49 EB2BB6EC7AEBBDD04FAB8E8D6FCEDAA6 183808 ----a-w- C:\WINDOWS\Sysnative\Defrag.exe 2014-08-15 11:56:49 D249C3A58A4FCF755EF4C94F7047E015 449536 ----a-w- C:\WINDOWS\Sysnative\defragsvc.dll 2014-08-15 11:56:49 A7762A36F92E57E41B0356EF5C672473 659968 ----a-w- C:\WINDOWS\Sysnative\Windows.Devices.Bluetooth.dll 2014-08-15 11:56:49 A4DE7868879498A4E4CBB12788FAA3E8 105472 ----a-w- C:\WINDOWS\Sysnative\BluetoothApis.dll 2014-08-15 11:56:49 8EE8CA953542A8E70A841C453BC15196 427008 ----a-w- C:\WINDOWS\Sysnative\clusapi.dll 2014-08-15 11:56:49 0A3E1B697F6ACB7BC1C898DC14A96EC7 1287680 ----a-w- C:\WINDOWS\Sysnative\mispace.dll 2014-08-15 11:56:48 FE7E47BE6E0D9EF4F24D81381A829CEC 1463808 ----a-w- C:\WINDOWS\Sysnative\wsecedit.dll 2014-08-15 11:56:48 9D50C0B29FB20DF0A8FD197B332894B7 160600 ----a-w- C:\WINDOWS\Sysnative\winmmbase.dll 2014-08-15 11:56:48 91B18D7A1702ED589E67C6C81052B955 226816 ----a-w- C:\WINDOWS\Sysnative\WebClnt.dll 2014-08-15 11:56:48 7DEAD28D8FB9BCAE4A153A57338315E7 123920 ----a-w- C:\WINDOWS\Sysnative\winmm.dll 2014-08-15 11:56:48 31C2E53FE0C039C1BF0F15154D8596E7 53248 ----a-w- C:\WINDOWS\Sysnative\AppxSysprep.dll 2014-08-15 11:56:48 041A999E4FF9A7CDBE67357751881FB8 134144 ----a-w- C:\WINDOWS\Sysnative\browser.dll 2014-08-15 11:56:45 EF1F8B57323E5D3FC6A0A25F98F90DBC 220160 ----a-w- C:\WINDOWS\Sysnative\profsvc.dll 2014-08-15 11:56:45 BB832E06EE4F5585C15C441FE953DFF5 7424320 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2014-08-15 11:56:45 B540693968BCA57F595A7B08DB4B46C3 216368 ----a-w- C:\WINDOWS\Sysnative\rsaenh.dll 2014-08-15 11:56:45 793EACA6BAE9F481C2059BCB3743EB4A 324096 ----a-w- C:\WINDOWS\Sysnative\srvsvc.dll 2014-08-15 11:56:45 504DDEF8526CECAAD886D5AC5656DF1A 387896 ----a-w- C:\WINDOWS\Sysnative\bcryptprimitives.dll 2014-08-15 11:56:45 3C120DEE84D42246A17A917B2B934A36 513544 ----a-w- C:\WINDOWS\Sysnative\locale.nls 2014-08-15 11:56:45 23F0DE75890E604B9DED5625EFA907FD 1417216 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2014-08-14 06:12:59 52D2151908C2A6388B6561A373488F6F 692736 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2014-08-14 06:12:56 38D14F3D0A289050CA9BF8E98F37313F 333312 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2014-08-14 06:12:55 FE7D99399F7761AA2695A7B1AD30DAAF 1431040 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2014-08-14 06:12:54 F00D0AE7648CA45C6434E2885485BE0B 452096 ----a-w- C:\WINDOWS\Sysnative\dxtmsft.dll 2014-08-14 06:12:53 1FD1F16C35946BA28FDEB40F18B7729D 631808 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2014-08-14 06:12:51 39A85C005BCDEEF4092646EBBC2526AA 2087936 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2014-08-14 06:12:50 DB382D89D8004F40BD2C55BAE6A15B30 2774528 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2014-08-14 06:12:48 1DE8B71A1C7D8943034188556AF50B07 292864 ----a-w- C:\WINDOWS\Sysnative\dxtrans.dll 2014-08-14 06:12:48 1B26610C1659EF54ED000233FB96F20C 13547008 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2014-08-14 06:12:47 920F690FC7424DE71888AA2E46E917EA 758272 ----a-w- C:\WINDOWS\Sysnative\jscript9diag.dll 2014-08-14 06:12:47 2639E152D246F2A651F09764807CA153 85504 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2014-08-14 06:12:46 BAC44396088ECC1C9021ED3E3345337C 846336 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2014-08-14 06:12:46 472C409F9B0FF67C1015F511C73E1889 5824512 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2014-08-14 06:12:43 ECA387DCD57F683C52171C766CF400F0 23645696 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-08-14 06:12:38 8E71A5CB5312B8392D4DA4CA37BB5868 2266624 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2014-08-14 06:12:34 19FA60D3AE1804A559306DE931A5B415 72704 ----a-w- C:\WINDOWS\Sysnative\JavaScriptCollectionAgent.dll 2014-08-14 06:12:33 C02C78DE9BB4E68F6C78B1588ADD6ADC 83968 ----a-w- C:\WINDOWS\Sysnative\MshtmlDac.dll 2014-08-14 06:12:32 6ED6DA2A04F8F0C9BDAD647284BAEFB6 548352 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2014-08-14 06:04:45 59EAFAE3A34B4925990A2E679CA91C5B 517528 ----a-w- C:\WINDOWS\Sysnative\dxgi.dll 2014-08-14 06:04:45 454978FB3D24DE5C4199162D5F81FBEE 2133504 ----a-w- C:\WINDOWS\Sysnative\dwmcore.dll 2014-08-14 06:04:45 1BB9CC78C91536CBA7B04B61ED0F85C4 1273184 ----a-w- C:\WINDOWS\Sysnative\rpcrt4.dll 2014-08-14 06:03:13 6DBE73C09215E281F4283641144110A5 35480 ----a-w- C:\WINDOWS\Sysnative\TsWpfWrp.exe 2014-08-14 06:03:02 28E0C3AAA68579ABD9A27B92DFD5F119 2790912 ----a-w- C:\WINDOWS\Sysnative\msi.dll 2014-08-14 06:03:01 10D8859CF01C1284603582ABD9B0482C 114520 ----a-w- C:\WINDOWS\Sysnative\consent.exe 2014-08-14 06:03:01 08914C8989AB93F5EC3A452D014E2C8D 356352 ----a-w- C:\WINDOWS\Sysnative\msihnd.dll 2014-08-14 06:03:00 00AD15C6BA3C337CB68A476C0AD05338 918528 ----a-w- C:\WINDOWS\Sysnative\MrmCoreR.dll 2014-08-14 06:02:58 E7DE316FEEFC79327CFAD8F527979CC0 3118080 ----a-w- C:\WINDOWS\Sysnative\Wpc.dll 2014-08-14 06:02:58 E2F4125BFAC99244088324A1841C0B83 3048880 ----a-w- C:\WINDOWS\Sysnative\WpcMon.exe 2014-08-14 06:02:58 A39C4AB750E0AD4431C7B7F46AB0EBED 4148224 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2014-08-14 06:02:58 87CEF71F9D5951C9379D2F956C07C37D 1336624 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2014-08-14 06:02:58 6BC31FB4E24A962C98801D3687A984C0 2861056 ----a-w- C:\WINDOWS\Sysnative\WpcWebSync.dll 2014-08-14 06:02:57 F381B380B7B2704EA4C0F8D8C49C1C50 623616 ----a-w- C:\WINDOWS\Sysnative\MDMAgent.exe 2014-08-14 05:59:22 C56EF94A5E1C20BF4B8AA6698642886F 2724864 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2014-08-14 05:59:13 F48C144251B36850B67AB8E6D9E20E92 111616 ----a-w- C:\WINDOWS\Sysnative\ieetwcollector.exe 2014-08-14 05:59:13 E1593B9C098F079DCED37016DC9DF685 48640 ----a-w- C:\WINDOWS\Sysnative\ieetwproxystub.dll 2014-08-14 05:59:13 C2CB1454F0D6BFDF584395A41C223BDF 4096 ----a-w- C:\WINDOWS\Sysnative\ieetwcollectorres.dll 2014-08-14 05:59:10 4F51BFB5DF7249D1CFC37010895E609C 139264 ----a-w- C:\WINDOWS\Sysnative\ieUnatt.exe 2014-08-14 05:59:00 7871E35AC5640F4296B5C497CCAAA2AF 66048 ----a-w- C:\WINDOWS\Sysnative\iesetup.dll 2014-08-14 05:59:00 6BD4079F6EC3B875674C9E988AA24CDF 33792 ----a-w- C:\WINDOWS\Sysnative\iernonce.dll 2014-08-14 05:58:50 B2F436D19A6513345E9F556CE962B84D 195584 ----a-w- C:\WINDOWS\Sysnative\msrating.dll 2014-08-14 05:58:48 1FBE0C637032A64AB316F18EFED67E89 51200 ----a-w- C:\WINDOWS\Sysnative\jsproxy.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-08-15 11:56:53 E0927EFA25D473367C3341B9F5969779 115712 ----a-w- C:\WINDOWS\Sysnative\drivers\bridge.sys 2014-08-15 11:56:53 26ACA481FAFEC59FE311D719E3027BBA 446976 ----a-w- C:\WINDOWS\Sysnative\drivers\nwifi.sys 2014-08-15 11:56:52 B1AA3B19A2E596A59224F893E01A5A75 126464 ----a-w- C:\WINDOWS\Sysnative\drivers\NdisImPlatform.sys 2014-08-15 11:56:50 5B1EDAFD02AEA9345C24F0B6537CC8A0 149312 ----a-w- C:\WINDOWS\Sysnative\drivers\msgpioclx.sys 2014-08-15 11:56:50 1DD05F4857C2188744B9E864658949DD 295424 ----a-w- C:\WINDOWS\Sysnative\drivers\ks.sys 2014-08-15 11:56:46 D047CD668E6277FD80F0C613946F034C 246272 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2014-08-15 11:56:46 C910E5D18958914A66F0E45689D0B40A 206848 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2014-08-15 11:56:46 6416E79A58A8FCC33A447A4DDDD3BF04 412160 ----a-w- C:\WINDOWS\Sysnative\drivers\srv.sys 2014-08-15 11:56:45 FEBAA7D782E30882FFF1CBCBBE8AD467 2515264 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-08-15 11:56:45 E4B4BE2D7750849C07589DA0B0AABA01 1118040 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2014-08-15 11:56:45 77E1D08EF3BFB923F2EDC3FC8089E08E 475968 ----a-w- C:\WINDOWS\Sysnative\drivers\netio.sys 2014-08-15 11:56:45 5BED3AB69797C8786EF70AEA8C33748B 674816 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2014-08-15 11:56:45 038C77D577900EE39410662478BB0D50 2009920 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2014-08-15 11:56:43 D4B7ED39C7900384D9E5C1283F1E7926 76800 ----a-w- C:\WINDOWS\Sysnative\drivers\hdaudbus.sys 2014-08-15 11:56:42 FF78D053A05E5A394F4E3C1816CC65A8 143680 ----a-w- C:\WINDOWS\Sysnative\drivers\usbccgp.sys 2014-08-15 11:56:42 FEF0BC107812B36849741C3211BA6B60 419648 ----a-w- C:\WINDOWS\Sysnative\drivers\usbhub.sys 2014-08-15 11:56:42 9C096BF5E10CA8BFA56F32522A89FAF1 79872 ----a-w- C:\WINDOWS\Sysnative\drivers\IPMIDrv.sys 2014-08-15 11:56:42 91ED124E261EA8FAA1C0FFDF2A71B0C4 280384 ----a-w- C:\WINDOWS\Sysnative\drivers\pci.sys 2014-08-15 11:56:42 65392F3F3F65E4C6CC82A0F4F8A0B051 468288 ----a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2014-08-15 11:56:42 64CA2B4A49A8EAF495E435623ECCE7DB 310080 ----a-w- C:\WINDOWS\Sysnative\drivers\volsnap.sys 2014-08-15 11:56:42 240C5C3793206725AA05665851E8C214 412992 ----a-w- C:\WINDOWS\Sysnative\drivers\spaceport.sys 2014-08-14 06:04:45 313DCE665B57000B18CB26C6B6A10DFE 1557848 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys ====== C:\WINDOWS\Tasks ====== 2014-08-19 12:10:22 143E7B0F153FEEA55D0E4D603BAC8DFE 2860 ----a-w- C:\WINDOWS\Sysnative\Tasks\Driver Booster SkipUAC (SYSTEM) 2014-08-17 16:05:17 2E7F18398C84614D9375B79828CDFEB9 258 ----a-w- C:\WINDOWS\Tasks\ASC7_SkipUac_Lauren.job ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-08-18 11:06:39 -------- d-----w- C:\Program Files\Microsoft Silverlight ======= C:\PROGRA~2 ===== 2014-08-18 11:06:39 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight ======= C: ===== 2014-08-19 12:01:59 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\asc_rdflag ====== C:\Users\Lauren\AppData\Roaming ====== 2014-08-25 08:27:06 8AD099BA6554C570EE4D7D4DDDAD3C11 1831576 ----a-w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2014-08-18 11:06:22 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\ATI 2014-08-18 11:06:22 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\ATI 2014-08-14 09:53:09 -------- d-----w- C:\Users\Lauren\AppData\Local\MEDION 2014-08-14 09:53:09 -------- d-----w- C:\Users\Lauren\AppData\Local\IsolatedStorage ====== C:\Users\Lauren ====== 2014-08-25 09:52:16 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Lauren\Downloads\RSITx64.exe 2014-08-25 08:21:38 9DED4724D695CFB01960426DA011ABAE 1364531 ----a-w- C:\Users\Lauren\Downloads\adwcleaner_3.308.exe 2014-08-24 19:53:03 387C0A29C7491F1128578B8516622AB8 1058200 ----a-w- C:\Users\Lauren\Downloads\install_flashplayer14x32au_mssd_aaa_aih.exe 2014-08-19 12:08:12 -------- d-----w- C:\ProgramData\ATI 2014-08-18 11:11:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-08-18 11:08:07 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-08-14 10:02:58 90DB0DC7F88A778B4937A776DA737BA3 3441528 ----a-w- C:\Users\Lauren\Downloads\MEDION_GOPAL_E4440_Driver_Update_06-2014(1).exe 2014-08-14 10:02:24 90DB0DC7F88A778B4937A776DA737BA3 3441528 ----a-w- C:\Users\Lauren\Downloads\MEDION_GOPAL_E4440_Driver_Update_06-2014.exe 2014-08-14 09:32:03 BE5E35699D184F0D7566CCCBE9ADB658 106496416 ----a-w- C:\Users\Lauren\Downloads\MEDION_GoPal_Assistant_6.2.0.12196_full.exe 2014-08-13 10:14:15 3567D373E26599DAB6652E107FD3830E 15197736 ----a-w- C:\Users\Lauren\Downloads\MediaMonkey_4.1.3.1708.exe ====== C: exe-files == 2014-08-25 14:58:14 88B7F951A2DD14BFF31AD74B4E624E98 2130720 ----a-w- C:\Users\Lauren\AppData\Roaming\IObit\IObit Uninstaller\UninstallPromotetemp.exe 2014-08-25 14:58:14 5D4ACF36CF6B3E2453C2E39216BD173B 629568 ----a-w- C:\Users\Lauren\AppData\Roaming\IObit\IObit Uninstaller\UninstallDisplaytemp.exe 2014-08-25 14:58:13 C098B4EA64D8C957486ACD736031435C 588608 ----a-w- C:\Users\Lauren\AppData\Roaming\IObit\IObit Uninstaller\Install_PintoStartMenutemp.exe 2014-08-25 14:36:23 5C74AD321FDD45D4562F6F67D9A75C84 1145120 ----a-w- C:\Users\Lauren\AppData\Local\Temp\8215\ProjectOnUninstall.exe 2014-08-25 13:57:38 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_429ce1de-bbf8-4a31-8d64-2efd053391c9\PCGAppControlPluginLoader.exe 2014-08-25 13:57:36 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_99f8116e-5ae6-4f1a-a79d-ba7f8d5b6bc3\PCGAppControlPluginLoader.exe 2014-08-25 09:52:16 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Lauren\Downloads\RSITx64.exe 2014-08-25 08:30:11 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4j98CB.tmp_dir1408955411\i4jdel.exe 2014-08-25 08:21:38 9DED4724D695CFB01960426DA011ABAE 1364531 ----a-w- C:\Users\Lauren\Downloads\adwcleaner_3.308.exe 2014-08-25 08:17:41 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4jD410.tmp_dir1408954661\i4jdel.exe 2014-08-24 19:54:03 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_5bb11ebc-9561-4191-a5c2-580019b2fcb3\PCGAppControlPluginLoader.exe 2014-08-24 19:54:02 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_ee6b3518-1c01-47e1-9a02-cda866976981\PCGAppControlPluginLoader.exe 2014-08-24 19:53:03 387C0A29C7491F1128578B8516622AB8 1058200 ----a-w- C:\Users\Lauren\Downloads\install_flashplayer14x32au_mssd_aaa_aih.exe 2014-08-23 16:40:40 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_bec88fa5-f91b-4c44-8235-dd3cb5e72bf5\PCGAppControlPluginLoader.exe 2014-08-23 16:40:39 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_7680aa8b-b037-4b20-af85-e06f22971090\PCGAppControlPluginLoader.exe 2014-08-23 10:42:37 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_c26877f9-83dc-48cc-8265-b1fe1dfa48d0\PCGAppControlPluginLoader.exe 2014-08-23 10:42:36 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_6a15faf8-2eb3-4846-8a09-4fd871d7cbc9\PCGAppControlPluginLoader.exe 2014-08-23 04:44:31 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_2626298f-71e0-4b69-8b54-6574c566742a\PCGAppControlPluginLoader.exe 2014-08-23 04:44:29 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_5846f76f-0625-4cfe-875b-f3e08b6f0de5\PCGAppControlPluginLoader.exe 2014-08-22 08:10:26 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_bd5ff8ff-38ce-46f3-9f70-ca56b39e231e\PCGAppControlPluginLoader.exe 2014-08-22 08:10:25 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_18101f63-cb23-4eb5-ba95-cad633bde2c1\PCGAppControlPluginLoader.exe 2014-08-21 06:13:08 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_f729512a-aab4-427d-b670-96a2c6f432b9\PCGAppControlPluginLoader.exe 2014-08-21 06:13:06 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_b3dc4bc9-6287-43ea-bf93-40522a4fcebd\PCGAppControlPluginLoader.exe 2014-08-20 19:25:32 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_9bd610c0-6e20-4f21-bdae-820520cec1f8\PCGAppControlPluginLoader.exe 2014-08-20 19:25:31 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_b133a1bd-cf6d-462c-84fa-ebaedfb981fa\PCGAppControlPluginLoader.exe 2014-08-20 18:02:07 0E771375445E13429E68CAE720A48B72 35224 ----a-w- C:\Users\Lauren\AppData\Local\Temp\e4j3D02.tmp_dir1408557727\i4jdel.exe 2014-08-20 13:27:27 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_6a5bf07a-2985-4eec-b974-d4be8692b939\PCGAppControlPluginLoader.exe 2014-08-20 13:27:25 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_719e762a-06b5-4d71-beb2-a107aa844a4a\PCGAppControlPluginLoader.exe 2014-08-20 07:29:18 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_a98d004b-0be6-4cec-bc29-4dba68474178\PCGAppControlPluginLoader.exe 2014-08-20 07:29:17 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_75b3cd76-5db6-4f9f-8921-18d1e0adf481\PCGAppControlPluginLoader.exe 2014-08-19 16:04:12 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_4d41817d-3e14-47f2-9c43-41e2050361fe\PCGAppControlPluginLoader.exe 2014-08-19 16:04:10 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_74c99d0b-fab1-4a36-8f9b-2729a46f2b78\PCGAppControlPluginLoader.exe 2014-08-19 02:12:35 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_82e6194b-15ae-481e-92b7-ac70e519683e\PCGAppControlPluginLoader.exe 2014-08-19 02:12:34 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_00dff23c-a1a1-4036-b178-557c7403d768\PCGAppControlPluginLoader.exe 2014-08-18 20:14:32 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\SkypeAppControl_26e4c84f-5bed-4bdb-b97f-d5c35b22335a\PCGAppControlPluginLoader.exe 2014-08-18 20:14:31 04D9C05C9928A39BD907D067942D7D6D 52768 ----a-w- C:\ProgramData\Soluto\Temp\DropboxAppControl_1899a91e-1b24-48c3-b0c1-beb396cd0402\PCGAppControlPluginLoader.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-1967905107-964103120-587826904-1002\Software\Microsoft\Windows\CurrentVersion\Run] "hp photosmart 5520 series (net)"="C:\PROGRAM FILES\HP\HP PHOTOSMART 5520 SERIES\BIN\SCANTOPCACTIVATIONAPP.EXE -deviceID cn41k722s00602:nw -scfn hp photosmart 5520 series (net) -AutoStart 1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AccelerometerSysTrayApplet"="C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "HPMessageService"="C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" "HP CoolSense"="C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY" "HP Software Update"="C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "hp photosmart 5520 series (net)"="C:\PROGRAM FILES\HP\HP PHOTOSMART 5520 SERIES\BIN\SCANTOPCACTIVATIONAPP.EXE -deviceID cn41k722s00602:nw -scfn hp photosmart 5520 series (net) -AutoStart 1" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GoogleChromeAutoLaunch_5A7CED7E60360B541D5D45B04E2] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HP Photosmart 5520 series (NET)] "command"="\"c:\\program files\\hp\\hp photosmart 5520 series\\bin\\scantopcactivationapp.exe\" -deviceid \"cn41k722s00602:nw\" -scfn \"hp photosmart 5520 series (net)\" -autostart 1" "hkey"="HKCU" "item"="HP Photosmart 5520 series (NET)" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" ==== Startup Folders ====================== 2014-08-19 12:14:00 1746 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Kortingzoeker.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\ASC7_SkipUac_Lauren.job --a-------- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [] C:\WINDOWS\tasks\Driver Booster SkipUAC (Lauren).job --a-------- C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [06/02/2013 06:53] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\CLMLSvc_P2G8" [C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe] "C:\WINDOWS\SysNative\tasks\CLVDLauncher" [C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\Driver Booster SkipUAC (SYSTEM)" [C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe] "C:\WINDOWS\SysNative\tasks\HPCustParticipation HP Photosmart 5520 series" ["C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPCustPartic.exe"] "C:\WINDOWS\SysNative\tasks\HPGenoobeReminder" ["C:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HP GenOOBE\HPGenOOBE.exe"] "C:\WINDOWS\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN41K722S0" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Lauren\AppData\Roaming\Mozilla\Firefox\Profiles\v493dept.default-1400350832356 - Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com - Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com - Pin It Button - %ProfilePath%\extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi - Pin It button - %ProfilePath%\extensions\pinterest@robertnyman.com.xpi - Social Fixer - %ProfilePath%\extensions\socialfixer@mattkruse.com.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Lauren\AppData\Roaming\Mozilla\Firefox\Profiles\v493dept.default-1400350832356 4390CCD3790F8D9C427C0C29590C62D7 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll - Shockwave Flash ABE2E50533899C45DFA03E1D8767648F - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll - Shockwave Flash 95812430959AE88CDD0301AB3A71913B - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash D775FA6F1E88B3B99E69E8A0D6C3A819 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll - Shockwave Flash FD6ACD9D85177259D442A0C4AC15F7B8 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll - Shockwave Flash F13A0DF244CED22684AF1ECAAA5983BF - C:\ProgramData\Kortingzoeker\FFExtension20140814082844\plugins\npdf.dll - MoneyMillionaire plugin DAD55CEF682EAE6FA7B4C9487563A496 - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll - Shockwave for Director / Shockwave for Director ==== Chrome Look ====================== AddThis - Share & Bookmark (new) - Lauren\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbogdmdefihhljhfeiklfiedefalcde Add Facebook Events to Google Calendar™ - Lauren\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdcimpbhnilcgolicdnepifecokinjof Facebook Ads Hider - Lauren\AppData\Local\Google\Chrome\User Data\Default\Extensions\leeebdddeggoocipdjiokmjcpidnmoah Hover Zoom - Lauren\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl ==== Chromium Startpages ====================== C:\Users\Lauren\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.google.be/ig", "startup_urls": [ "http://www.google.be/ig" ] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=iehp" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=iehp" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Reset IE Proxy ====================== Value(s) before fix: "ProxyServer"="http=127.0.0.1:49966;https=127.0.0.1:49966" "ProxyOverride"="<-loopback>" "ProxyEnable"=dword:00000001 Value(s) after fix: "ProxyEnable"=dword:00000000 ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully HKEY_CURRENT_USER\Software\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_5A7CED7E60360B541D5D45B04E2 deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Lauren\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Lauren\AppData\Local\Mozilla\Firefox\Profiles\v493dept.default-1400350832356\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Lauren\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=42 folders=32 34512586 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Lauren\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Lauren\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 26/08/2014 at 6:53:31,54 ======================