Logfile of random's system information tool 1.10 (written by random/random) Run by christophe at 2014-12-09 11:51:26 Microsoft Windows 7 Ultimate Service Pack 1 System drive C: has 160 GB (66%) free of 244 GB Total RAM: 16365 MB (76% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 11:51:38, on 9/12/2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17420) Boot mode: Normal Running processes: C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe C:\Program Files (x86)\Extensis\Suitcase Fusion 6\FMCore.exe F:\Program Files (x86)\PowerISO\PWRISOVM.EXE F:\Program Files (x86)\Datacolor\Spyder4Pro\Utility\SpyderUtility.exe f:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe f:\Program Files\AVAST Software\Avast\avastUi.exe C:\Program Files (x86)\Spotnet\Spotnet.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe f:\Program Files (x86)\SABnzbd\SABnzbd.exe C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe F:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe F:\Program Files (x86)\McAfee\Common Framework\McTray.exe E:\coolermax\Desktop\adwcleaner_4.105.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe C:\Program Files\trend micro\christophe.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = www.google.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (disabled by BHODemon) O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - f:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\MICROS~1\Office15\URLREDIR.DLL (disabled by BHODemon) O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\MICROS~2\Office15\GROOVEEX.DLL O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE O4 - HKLM\..\Run: [PWRISOVM.EXE] f:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup O4 - HKLM\..\Run: [AvastUI.exe] "f:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKCU\..\Run: [FMCore.exe] "C:\Program Files (x86)\Extensis\Suitcase Fusion 6\FMCore.exe" -standalone O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - .DEFAULT User Startup: RUN.CMD (User 'Default user') O4 - Global Startup: disable.bat O4 - Global Startup: SpyderUtility.lnk = F:\Program Files (x86)\Datacolor\Spyder4Pro\Utility\SpyderUtility.exe O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll__BHODemonDisabled (file missing) O9 - Extra 'Tools' menuitem: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll__BHODemonDisabled (file missing) O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.10\ViProtocol.dll (file missing) O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - f:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe O23 - Service: Sound Blaster Service (CtHdaSvc) - Creative Technology Ltd - C:\Windows\sysWow64\CtHdaSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: GenericMount Helper Service - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\GenericMountHelper.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - F:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe O23 - Service: McAfee Task Manager (McTaskManager) - Unknown owner - F:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (file missing) O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files (x86)\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: SymSnapService - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - Unknown owner - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe -- End of file - 12363 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe winlogon.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch "C:\Windows\system32\nvvsvc.exe" "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs "C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe" "C:\Program Files\Tablet\Wacom\WTabletServicePro.exe" C:\Windows\system32\svchost.exe -k NetworkService "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" C:\Windows\system32\nvvsvc.exe -session -first C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "taskhost.exe" "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files (x86)\Bonjour\mDNSResponder.exe" taskeng.exe {5B6E35B5-D095-4D37-ADBD-F5F011D0F587} C:\Windows\sysWow64\CtHdaSvc.exe "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe" "C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe" /s "C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe" "F:\Program Files\Classic Shell\ClassicStartMenu.exe" "C:\Program Files (x86)\Extensis\Suitcase Fusion 6\FMCore.exe" -standalone "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" "F:\Program Files (x86)\PowerISO\PWRISOVM.EXE" -startup "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" "F:\Program Files (x86)\Datacolor\Spyder4Pro\Utility\SpyderUtility.exe" "f:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe" "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss ddf2cd9c-5e4c-44ef-80f2-56d32f073a2e 1 \??\C:\Windows\system32\conhost.exe "-1278212483-1913045002130296010-1634604857-735177635865323871358627723-941610656 "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp \??\C:\Windows\system32\conhost.exe "550883522-1674431701-1448415647-16430009351514970587-9454876206841638958516674 "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe" "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1 "C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe" "C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au "C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe" "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9594050a-b965-47ba-acc0-f5632f1f6667 -SystemEventPortName:HostProcess-6d285e22-79dc-49f2-8c07-dc33558082b5 -IoCancelEventPortName:HostProcess-aed08cd0-6dd9-4467-910b-c4f2e99d4f45 -NonStateChangingEventPortName:HostProcess-adf5ea4e-531a-4f38-95fe-e80c47a776a7 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2188e4d4-8eb9-4526-bc2c-b2ff4e6bf4ad -DeviceGroupId:WpdFsGroup "C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe" "C:\Program Files (x86)\Nero\Update\NASvc.exe" C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation taskeng.exe {0A643AD0-D53F-4EEE-A68F-2260C6DC6F21} "F:\Program Files\Q-Dir\Q-Dir.exe" "f:\Program Files\AVAST Software\Avast\AvastSvc.exe" C:\Windows\system32\wbem\wmiprvse.exe "f:\Program Files\AVAST Software\Avast\avastUi.exe" C:\Windows\system32\wbem\unsecapp.exe -Embedding "C:\Program Files (x86)\Spotnet\Spotnet.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe" "C:\Windows\system32\wuauclt.exe" "f:\Program Files (x86)\SABnzbd\SABnzbd.exe" "C:\Users\christophe\AppData\Local\Temp\McAfee VirusScan Enterprise + Antispyware 88 patch 3.nzb" "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" -Embedding "F:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe" /ServiceStart "F:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe" -Embedding "F:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe" /EventName=UPDATER_UI_EVENT1d257a /load "F:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe" C:\Windows\System32\svchost.exe -k secsvcs C:\Windows\system32\svchost.exe -k SDRSVC "C:\Program Files\CCleaner\CCleaner64.exe" /monitor "E:\coolermax\Desktop\adwcleaner_4.105.exe" "C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe" "C:\Program Files\Internet Explorer\iexplore.exe" http://www.mystartsearch.com/?type=sc&ts=1418038549&from=smt&uid=SamsungXSSDX840XPROXSeries_S12RNEAD115208M "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:9552 CREDAT:275457 /prefetch:2 "C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe" /medium "C:\Windows\System32\MsSpellCheckingFacility.exe" -Embedding "E:\coolermax\Desktop\RSITx64.exe" C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF} ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-10-22 218776] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - f:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-09 705448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-12-09 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\Program Files\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files\MICROS~1\Office15\GROOVEEX.DLL [2014-10-14 2334928] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-10-22 218776] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! Online Security - f:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-09 586968] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-12-09 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}] Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05 339872] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] Office Document Cache Handler - C:\Program Files\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft SkyDrive Pro Browser Helper - C:\Program Files (x86)\MICROS~2\Office15\GROOVEEX.DLL [2014-10-14 1729752] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}] SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05 339872] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-12-09 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05 339872] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-12-09 194504] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Classic Start Menu"=F:\Program Files\Classic Shell\ClassicStartMenu.exe [2012-12-29 160256] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "FMCore.exe"=C:\Program Files (x86)\Extensis\Suitcase Fusion 6\FMCore.exe [2014-10-16 10760192] "swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2014-12-09 39408] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-11-21 7063832] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112] "PWRISOVM.EXE"=f:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2012-02-09 312376] "AvastUI.exe"=f:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-09 5225064] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup disable.bat SpyderUtility.lnk - F:\Program Files (x86)\Datacolor\Spyder4Pro\Utility\SpyderUtility.exe [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=0 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "SoftwareSASGeneration"=1 "DisableTaskMgr"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoResolveTrack"=1 "NoResolveSearch"=1 "NoDrives"=0 "NoRun"=0 "NoFolderOptions"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 "NoRun"=0 "NoFolderOptions"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater" "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "wave5"=wdmaud.drv "midi5"=wdmaud.drv "mixer5"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "wave6"=wdmaud.drv "midi6"=wdmaud.drv "mixer6"=wdmaud.drv "VIDC.LAGS"=lagarith.dll "VIDC.FFDS"=ff_vfw.dll "msacm.l3codecp"=l3codecp.acm ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2014-12-09 11:35:20 ----D---- C:\Program Files (x86)\Trend Micro 2014-12-09 11:28:55 ----D---- C:\Program Files\CCleaner 2014-12-09 11:27:39 ----D---- C:\AdwCleaner 2014-12-09 11:07:09 ----D---- C:\zoek_backup 2014-12-09 11:04:50 ----D---- C:\rsit 2014-12-09 11:04:50 ----D---- C:\Program Files\trend micro 2014-12-09 10:52:02 ----D---- C:\Users\christophe\AppData\Roaming\McAfee 2014-12-09 09:21:57 ----A---- C:\Windows\SYSWOW64\MfeOtlkAddin.dll 2014-12-09 09:21:57 ----A---- C:\Windows\SYSWOW64\MFEOtlk.dll 2014-12-09 09:21:57 ----A---- C:\Windows\system32\MfeOtlkAddin.dll 2014-12-09 09:21:51 ----D---- C:\Program Files\Common Files\McAfee 2014-12-09 09:21:29 ----D---- C:\ProgramData\McAfee 2014-12-09 09:08:00 ----D---- C:\Users\christophe\AppData\Roaming\Google 2014-12-09 09:07:57 ----D---- C:\Users\christophe\AppData\Roaming\AVAST Software 2014-12-09 09:07:47 ----D---- C:\Program Files\Google 2014-12-09 09:07:46 ----D---- C:\ProgramData\Google 2014-12-09 09:07:33 ----D---- C:\Program Files (x86)\Google 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswVmm.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswStm.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswSP.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswsnx.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswRvrt.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswRdr2.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\drivers\aswHwid.sys 2014-12-09 09:07:30 ----A---- C:\Windows\system32\aswBoot.exe 2014-12-09 09:07:29 ----A---- C:\Windows\avastSS.scr 2014-12-09 09:06:19 ----D---- C:\ProgramData\AVAST Software 2014-12-08 19:24:57 ----SHD---- C:\$RECYCLE.BIN 2014-12-08 19:24:54 ----A---- C:\ComboFix.txt 2014-12-08 18:30:55 ----D---- C:\sh4ldr 2014-12-08 14:55:22 ----D---- C:\Users\christophe\AppData\Roaming\ColorSchemer 2014-12-08 14:55:07 ----A---- C:\Windows\SYSWOW64\lcms.dll 2014-12-08 14:55:07 ----A---- C:\Windows\SYSWOW64\gdiplus.dll 2014-12-08 14:54:36 ----D---- C:\Program Files (x86)\Aurora3D 2014-12-08 14:52:54 ----D---- C:\Users\christophe\AppData\Roaming\DeepBurner Pro 2014-12-08 14:50:55 ----D---- C:\Users\christophe\AppData\Roaming\Nero 2014-12-08 14:47:53 ----D---- C:\Program Files (x86)\Nero 2014-12-08 14:47:49 ----D---- C:\ProgramData\Nero 2014-12-08 14:47:05 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll 2014-12-08 14:47:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll 2014-12-08 14:20:35 ----D---- C:\ProgramData\VS Revo Group 2014-12-08 14:20:34 ----A---- C:\Windows\system32\drivers\revoflt.sys 2014-12-08 12:40:15 ----A---- C:\Windows\system32\drivers\rsdrvx64.sys 2014-12-08 12:37:47 ----A---- C:\Windows\system32\drivers\scdemu.sys 2014-12-08 12:34:31 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys 2014-12-08 12:19:28 ----N---- C:\Windows\system32\MpSigStub.exe 2014-12-08 10:04:18 ----D---- C:\Windows\system32\appmgmt 2014-12-08 10:04:07 ----D---- C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP 2014-12-08 08:12:25 ----A---- C:\Windows\unvise32.exe 2014-12-08 08:07:44 ----D---- C:\Users\christophe\AppData\Roaming\NVIDIA 2014-12-08 08:07:43 ----A---- C:\Windows\GPU-Z.INI 2014-12-07 18:29:56 ----A---- C:\Windows\SYSWOW64\esent.dll 2014-12-07 18:29:56 ----A---- C:\Windows\system32\fsutil.exe 2014-12-07 18:29:56 ----A---- C:\Windows\system32\esent.dll 2014-12-07 18:29:56 ----A---- C:\Windows\system32\drivers\nvraid.sys 2014-12-07 18:29:56 ----A---- C:\Windows\system32\drivers\iaStorV.sys 2014-12-07 18:29:56 ----A---- C:\Windows\system32\drivers\amdxata.sys 2014-12-07 18:29:56 ----A---- C:\Windows\system32\drivers\amdsata.sys 2014-12-07 18:29:55 ----A---- C:\Windows\SYSWOW64\fsutil.exe 2014-12-07 18:29:55 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS 2014-12-07 18:29:55 ----A---- C:\Windows\system32\drivers\nvstor.sys 2014-12-07 18:29:51 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\system32\spoolsv.exe 2014-12-07 18:29:51 ----A---- C:\Windows\system32\KBDYAK.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\system32\KBDTAT.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\system32\KBDRU1.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\system32\KBDRU.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\system32\KBDBASH.DLL 2014-12-07 18:29:51 ----A---- C:\Windows\splwow64.exe 2014-12-07 18:29:50 ----A---- C:\Windows\SYSWOW64\explorer.exe 2014-12-07 18:29:50 ----A---- C:\Windows\explorer.exe 2014-12-07 17:44:19 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys 2014-12-07 17:44:06 ----D---- C:\ProgramData\Malwarebytes 2014-12-07 17:44:06 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-12-07 17:44:06 ----A---- C:\Windows\system32\drivers\mwac.sys 2014-12-07 17:44:06 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys 2014-12-07 17:44:06 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-12-07 14:23:06 ----A---- C:\Windows\SYSWOW64\PARTIZAN.TXT 2014-12-07 14:21:21 ----D---- C:\ProgramData\Norton 2014-12-07 14:21:19 ----D---- C:\ProgramData\NortonInstaller 2014-12-07 10:52:17 ----D---- C:\Program Files (x86)\Enigma Software Group 2014-12-07 10:44:44 ----A---- C:\Windows\system32\Partizan.exe 2014-12-07 09:55:51 ----A---- C:\Windows\system32\sdnclean64.exe 2014-12-07 09:55:50 ----D---- C:\ProgramData\Spybot - Search & Destroy 2014-12-07 09:55:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-12-07 09:42:35 ----A---- C:\autoexec.bat 2014-12-07 09:36:00 ----RASHOT---- C:\Windows\winstart.bat 2014-12-07 09:00:49 ----D---- C:\ProgramData\DAEMON Tools Pro 2014-12-07 07:34:48 ----A---- C:\Windows\system32\drivers\avgtpx64.sys 2014-12-07 07:33:14 ----D---- C:\ProgramData\Spotnet 2014-12-07 07:33:14 ----D---- C:\Program Files (x86)\Spotnet 2014-12-07 07:28:37 ----D---- C:\Users\christophe\AppData\Roaming\TuneUp Software 2014-12-07 07:27:28 ----D---- C:\ProgramData\MFAData 2014-12-07 07:23:06 ----D---- C:\Users\christophe\AppData\Roaming\DAEMON Tools Pro 2014-12-07 06:48:41 ----A---- C:\Windows\SYSWOW64\uxtuneup.dll 2014-12-07 06:48:41 ----A---- C:\Windows\system32\uxtuneup.dll 2014-12-07 06:47:53 ----A---- C:\Windows\SYSWOW64\authuitu.dll 2014-12-07 06:47:53 ----A---- C:\Windows\system32\TURegOpt.exe 2014-12-07 06:47:53 ----A---- C:\Windows\system32\authuitu.dll 2014-12-07 06:47:50 ----D---- C:\Users\christophe\AppData\Roaming\AVG 2014-12-07 06:47:48 ----D---- C:\Program Files (x86)\AVG 2014-12-07 06:47:30 ----HD---- C:\ProgramData\Common Files 2014-12-07 06:47:29 ----D---- C:\ProgramData\AVG 2014-12-06 15:55:54 ----A---- C:\Windows\system32\wmploc.DLL 2014-12-06 15:55:53 ----A---- C:\Windows\SYSWOW64\wmploc.DLL 2014-12-06 15:55:53 ----A---- C:\Windows\SYSWOW64\wmp.dll 2014-12-06 15:55:52 ----A---- C:\Windows\system32\wmp.dll 2014-12-06 15:51:08 ----D---- C:\Windows\Migration 2014-12-06 15:11:18 ----A---- C:\Windows\system32\WUDFx.dll 2014-12-06 15:11:18 ----A---- C:\Windows\system32\WUDFSvc.dll 2014-12-06 15:11:18 ----A---- C:\Windows\system32\WUDFPlatform.dll 2014-12-06 15:11:18 ----A---- C:\Windows\system32\WUDFHost.exe 2014-12-06 15:11:18 ----A---- C:\Windows\system32\WUDFCoinstaller.dll 2014-12-06 15:11:18 ----A---- C:\Windows\system32\drivers\WUDFRd.sys 2014-12-06 15:11:18 ----A---- C:\Windows\system32\drivers\WUDFPf.sys 2014-12-06 15:06:22 ----A---- C:\Windows\SYSWOW64\wmi.dll 2014-12-06 15:06:22 ----A---- C:\Windows\system32\wmi.dll 2014-12-06 15:06:22 ----A---- C:\Windows\system32\drivers\fs_rec.sys 2014-12-06 15:05:00 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll 2014-12-06 15:05:00 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2014-12-06 15:04:14 ----A---- C:\Windows\SYSWOW64\infocardapi.dll 2014-12-06 15:04:14 ----A---- C:\Windows\SYSWOW64\icardres.dll 2014-12-06 15:04:14 ----A---- C:\Windows\SYSWOW64\icardagt.exe 2014-12-06 15:04:14 ----A---- C:\Windows\system32\infocardapi.dll 2014-12-06 15:04:14 ----A---- C:\Windows\system32\icardres.dll 2014-12-06 15:04:14 ----A---- C:\Windows\system32\icardagt.exe 2014-12-06 15:04:12 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe 2014-12-06 15:04:12 ----A---- C:\Windows\system32\TsWpfWrp.exe 2014-12-06 15:03:36 ----A---- C:\Windows\SYSWOW64\msxml3r.dll 2014-12-06 15:03:36 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2014-12-06 15:03:36 ----A---- C:\Windows\system32\msxml3r.dll 2014-12-06 15:03:36 ----A---- C:\Windows\system32\msxml3.dll 2014-12-06 15:03:27 ----A---- C:\Windows\SYSWOW64\msaudite.dll 2014-12-06 15:03:27 ----A---- C:\Windows\SYSWOW64\adtschema.dll 2014-12-06 15:03:27 ----A---- C:\Windows\system32\termsrv.dll 2014-12-06 15:03:27 ----A---- C:\Windows\system32\msaudite.dll 2014-12-06 15:03:27 ----A---- C:\Windows\system32\adtschema.dll 2014-12-06 15:03:25 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll 2014-12-06 15:03:25 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll 2014-12-06 15:03:25 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2014-12-06 15:03:25 ----A---- C:\Windows\system32\dhcpcore6.dll 2014-12-06 15:03:23 ----A---- C:\Windows\SYSWOW64\ntshrui.dll 2014-12-06 15:03:23 ----A---- C:\Windows\system32\ntshrui.dll 2014-12-06 15:03:22 ----A---- C:\Windows\SYSWOW64\msieftp.dll 2014-12-06 15:03:22 ----A---- C:\Windows\system32\wwansvc.dll 2014-12-06 15:03:22 ----A---- C:\Windows\system32\wwanprotdim.dll 2014-12-06 15:03:22 ----A---- C:\Windows\system32\msieftp.dll 2014-12-06 15:03:21 ----A---- C:\Windows\SYSWOW64\wintrust.dll 2014-12-06 15:03:21 ----A---- C:\Windows\system32\wintrust.dll 2014-12-06 15:03:20 ----A---- C:\Windows\SYSWOW64\xmllite.dll 2014-12-06 15:03:20 ----A---- C:\Windows\SYSWOW64\sbe.dll 2014-12-06 15:03:20 ----A---- C:\Windows\SYSWOW64\CPFilters.dll 2014-12-06 15:03:20 ----A---- C:\Windows\system32\xmllite.dll 2014-12-06 15:03:20 ----A---- C:\Windows\system32\sbe.dll 2014-12-06 15:03:20 ----A---- C:\Windows\system32\CPFilters.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\odbctrac.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\odbccu32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\odbccr32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\odbccp32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\SYSWOW64\comctl32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\TSWorkspace.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\odbctrac.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\odbccu32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\odbccr32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\odbccp32.dll 2014-12-06 15:03:19 ----A---- C:\Windows\system32\comctl32.dll 2014-12-06 15:03:18 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll 2014-12-06 15:03:18 ----A---- C:\Windows\SYSWOW64\cryptnet.dll 2014-12-06 15:03:18 ----A---- C:\Windows\SYSWOW64\crypt32.dll 2014-12-06 15:03:18 ----A---- C:\Windows\system32\cryptsvc.dll 2014-12-06 15:03:18 ----A---- C:\Windows\system32\cryptnet.dll 2014-12-06 15:03:18 ----A---- C:\Windows\system32\crypt32.dll 2014-12-06 15:03:17 ----A---- C:\Windows\SYSWOW64\quartz.dll 2014-12-06 15:03:17 ----A---- C:\Windows\system32\quartz.dll 2014-12-06 15:03:16 ----A---- C:\Windows\SYSWOW64\tquery.dll 2014-12-06 15:03:16 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe 2014-12-06 15:03:16 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe 2014-12-06 15:03:16 ----A---- C:\Windows\SYSWOW64\mssrch.dll 2014-12-06 15:03:16 ----A---- C:\Windows\SYSWOW64\mssph.dll 2014-12-06 15:03:16 ----A---- C:\Windows\system32\tquery.dll 2014-12-06 15:03:16 ----A---- C:\Windows\system32\SearchProtocolHost.exe 2014-12-06 15:03:16 ----A---- C:\Windows\system32\SearchIndexer.exe 2014-12-06 15:03:16 ----A---- C:\Windows\system32\mssrch.dll 2014-12-06 15:03:16 ----A---- C:\Windows\system32\mssph.dll 2014-12-06 15:03:15 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe 2014-12-06 15:03:15 ----A---- C:\Windows\SYSWOW64\mssvp.dll 2014-12-06 15:03:15 ----A---- C:\Windows\SYSWOW64\mssphtb.dll 2014-12-06 15:03:15 ----A---- C:\Windows\SYSWOW64\msscntrs.dll 2014-12-06 15:03:15 ----A---- C:\Windows\system32\SearchFilterHost.exe 2014-12-06 15:03:15 ----A---- C:\Windows\system32\mssvp.dll 2014-12-06 15:03:15 ----A---- C:\Windows\system32\mssphtb.dll 2014-12-06 15:03:15 ----A---- C:\Windows\system32\msscntrs.dll 2014-12-06 15:03:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2014-12-06 15:03:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2014-12-06 15:03:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2014-12-06 15:03:13 ----A---- C:\Windows\SYSWOW64\mscories.dll 2014-12-06 15:03:13 ----A---- C:\Windows\SYSWOW64\mscorier.dll 2014-12-06 15:03:13 ----A---- C:\Windows\SYSWOW64\dfshim.dll 2014-12-06 15:03:13 ----A---- C:\Windows\system32\mscories.dll 2014-12-06 15:03:13 ----A---- C:\Windows\system32\mscorier.dll 2014-12-06 15:03:13 ----A---- C:\Windows\system32\dfshim.dll 2014-12-06 15:03:12 ----A---- C:\Windows\SYSWOW64\webio.dll 2014-12-06 15:03:12 ----A---- C:\Windows\SYSWOW64\osk.exe 2014-12-06 15:03:12 ----A---- C:\Windows\system32\webio.dll 2014-12-06 15:03:12 ----A---- C:\Windows\system32\osk.exe 2014-12-06 15:03:10 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll 2014-12-06 15:03:10 ----A---- C:\Windows\SYSWOW64\usp10.dll 2014-12-06 15:03:10 ----A---- C:\Windows\SYSWOW64\msxml6.dll 2014-12-06 15:03:10 ----A---- C:\Windows\system32\WMPhoto.dll 2014-12-06 15:03:10 ----A---- C:\Windows\system32\usp10.dll 2014-12-06 15:03:10 ----A---- C:\Windows\system32\msxml6.dll 2014-12-06 15:03:10 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-12-06 15:03:10 ----A---- C:\Windows\system32\drivers\netio.sys 2014-12-06 15:03:10 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2014-12-06 15:03:09 ----A---- C:\Windows\SYSWOW64\wer.dll 2014-12-06 15:03:09 ----A---- C:\Windows\SYSWOW64\msxml6r.dll 2014-12-06 15:03:09 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2014-12-06 15:03:09 ----A---- C:\Windows\system32\wer.dll 2014-12-06 15:03:09 ----A---- C:\Windows\system32\msxml6r.dll 2014-12-06 15:03:09 ----A---- C:\Windows\system32\d3d10warp.dll 2014-12-06 15:03:08 ----A---- C:\Windows\SYSWOW64\imagehlp.dll 2014-12-06 15:03:08 ----A---- C:\Windows\system32\imagehlp.dll 2014-12-06 15:03:08 ----A---- C:\Windows\system32\drivers\portcls.sys 2014-12-06 15:03:08 ----A---- C:\Windows\system32\drivers\drmk.sys 2014-12-06 15:03:07 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2014-12-06 15:03:07 ----A---- C:\Windows\system32\drivers\ataport.sys 2014-12-06 15:03:06 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll 2014-12-06 15:03:06 ----A---- C:\Windows\SYSWOW64\credui.dll 2014-12-06 15:03:06 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll 2014-12-06 15:03:06 ----A---- C:\Windows\system32\credui.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\mfc42u.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\mfc42.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\lpk.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\fontsub.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\dciman32.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\atmlib.dll 2014-12-06 15:03:05 ----A---- C:\Windows\SYSWOW64\atmfd.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\mfc42u.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\mfc42.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\lpk.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\fontsub.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\dciman32.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\atmlib.dll 2014-12-06 15:03:05 ----A---- C:\Windows\system32\atmfd.dll 2014-12-06 15:03:01 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe 2014-12-06 15:03:01 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe 2014-12-06 15:03:01 ----A---- C:\Windows\SYSWOW64\RMActivate.exe 2014-12-06 15:03:01 ----A---- C:\Windows\system32\RMActivate_isv.exe 2014-12-06 15:03:01 ----A---- C:\Windows\system32\RMActivate.exe 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\secproc.dll 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe 2014-12-06 15:03:00 ----A---- C:\Windows\SYSWOW64\msdrm.dll 2014-12-06 15:03:00 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2014-12-06 15:03:00 ----A---- C:\Windows\system32\secproc_ssp.dll 2014-12-06 15:03:00 ----A---- C:\Windows\system32\secproc_isv.dll 2014-12-06 15:03:00 ----A---- C:\Windows\system32\secproc.dll 2014-12-06 15:03:00 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2014-12-06 15:03:00 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2014-12-06 15:03:00 ----A---- C:\Windows\system32\msdrm.dll 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbohci.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-12-06 15:02:59 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\objsel.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\KernelBase.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\dimsroam.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\cngprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\capiprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\apisetschema.dll 2014-12-06 15:02:55 ----A---- C:\Windows\SYSWOW64\adprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\wincredprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\smss.exe 2014-12-06 15:02:55 ----A---- C:\Windows\system32\objsel.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-12-06 15:02:55 ----A---- C:\Windows\system32\KernelBase.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\dpapiprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\dimsroam.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\csrsrv.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\cngprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\capiprovider.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\apisetschema.dll 2014-12-06 15:02:55 ----A---- C:\Windows\system32\adprovider.dll 2014-12-06 15:02:53 ----A---- C:\Windows\SYSWOW64\Wpc.dll 2014-12-06 15:02:53 ----A---- C:\Windows\SYSWOW64\gameux.dll 2014-12-06 15:02:53 ----A---- C:\Windows\system32\Wpc.dll 2014-12-06 15:02:53 ----A---- C:\Windows\system32\gameux.dll 2014-12-06 14:59:50 ----A---- C:\Windows\SYSWOW64\d2d1.dll 2014-12-06 14:59:50 ----A---- C:\Windows\system32\d2d1.dll 2014-12-06 14:59:49 ----A---- C:\Windows\SYSWOW64\winsta.dll 2014-12-06 14:59:49 ----A---- C:\Windows\SYSWOW64\tsgqec.dll 2014-12-06 14:59:49 ----A---- C:\Windows\SYSWOW64\mstscax.dll 2014-12-06 14:59:49 ----A---- C:\Windows\SYSWOW64\mstsc.exe 2014-12-06 14:59:49 ----A---- C:\Windows\SYSWOW64\aaclient.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\winsta.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\winlogon.exe 2014-12-06 14:59:49 ----A---- C:\Windows\system32\tsgqec.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\rdrmemptylst.exe 2014-12-06 14:59:49 ----A---- C:\Windows\system32\rdpwsx.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\rdpcorets.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\rdpcorekmts.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\mstscax.dll 2014-12-06 14:59:49 ----A---- C:\Windows\system32\mstsc.exe 2014-12-06 14:59:49 ----A---- C:\Windows\system32\drivers\tssecsrv.sys 2014-12-06 14:59:49 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2014-12-06 14:59:49 ----A---- C:\Windows\system32\aaclient.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\wdigest.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\schannel.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\ncrypt.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\msv1_0.dll 2014-12-06 14:59:46 ----A---- C:\Windows\SYSWOW64\credssp.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\wdigest.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\TSpkg.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\schannel.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\ncrypt.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\msv1_0.dll 2014-12-06 14:59:46 ----A---- C:\Windows\system32\credssp.dll 2014-12-06 14:59:39 ----A---- C:\Windows\SYSWOW64\nlaapi.dll 2014-12-06 14:59:39 ----A---- C:\Windows\SYSWOW64\netevent.dll 2014-12-06 14:59:39 ----A---- C:\Windows\SYSWOW64\netcorehc.dll 2014-12-06 14:59:39 ----A---- C:\Windows\SYSWOW64\ncsi.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\nlasvc.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\nlaapi.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\netevent.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\netcorehc.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\ncsi.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\iphlpsvc.dll 2014-12-06 14:59:39 ----A---- C:\Windows\system32\drivers\tcpipreg.sys 2014-12-06 14:59:38 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL 2014-12-06 14:59:38 ----A---- C:\Windows\system32\WMVDECOD.DLL 2014-12-06 14:59:38 ----A---- C:\Windows\system32\drivers\RNDISMP.sys 2014-12-06 14:59:38 ----A---- C:\Windows\system32\drivers\ndis.sys 2014-12-06 14:59:37 ----A---- C:\Windows\SYSWOW64\sspicli.dll 2014-12-06 14:59:37 ----A---- C:\Windows\SYSWOW64\secur32.dll 2014-12-06 14:59:37 ----A---- C:\Windows\SYSWOW64\pku2u.dll 2014-12-06 14:59:37 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\sspisrv.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\sspicli.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\secur32.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\pku2u.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\lsass.exe 2014-12-06 14:59:37 ----A---- C:\Windows\system32\lsasrv.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\kerberos.dll 2014-12-06 14:59:37 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2014-12-06 14:59:37 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2014-12-06 14:59:35 ----A---- C:\Windows\SYSWOW64\qedit.dll 2014-12-06 14:59:35 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe 2014-12-06 14:59:35 ----A---- C:\Windows\SYSWOW64\dnsapi.dll 2014-12-06 14:59:35 ----A---- C:\Windows\system32\Wdfres.dll 2014-12-06 14:59:35 ----A---- C:\Windows\system32\qedit.dll 2014-12-06 14:59:35 ----A---- C:\Windows\system32\drivers\WdfLdr.sys 2014-12-06 14:59:35 ----A---- C:\Windows\system32\drivers\Wdf01000.sys 2014-12-06 14:59:35 ----A---- C:\Windows\system32\drivers\afd.sys 2014-12-06 14:59:35 ----A---- C:\Windows\system32\dnsrslvr.dll 2014-12-06 14:59:35 ----A---- C:\Windows\system32\dnscacheugc.exe 2014-12-06 14:59:35 ----A---- C:\Windows\system32\dnsapi.dll 2014-12-06 14:59:33 ----A---- C:\Windows\system32\drivers\usb8023.sys 2014-12-06 14:59:33 ----A---- C:\Windows\system32\drivers\hidparse.sys 2014-12-06 14:59:33 ----A---- C:\Windows\system32\drivers\hidclass.sys 2014-12-06 14:59:32 ----A---- C:\Windows\SYSWOW64\WebClnt.dll 2014-12-06 14:59:32 ----A---- C:\Windows\SYSWOW64\davclnt.dll 2014-12-06 14:59:32 ----A---- C:\Windows\system32\WebClnt.dll 2014-12-06 14:59:32 ----A---- C:\Windows\system32\profsvc.dll 2014-12-06 14:59:32 ----A---- C:\Windows\system32\OxpsConverter.exe 2014-12-06 14:59:32 ----A---- C:\Windows\system32\drivers\mrxdav.sys 2014-12-06 14:59:32 ----A---- C:\Windows\system32\davclnt.dll 2014-12-06 14:59:31 ----A---- C:\Windows\system32\drivers\usbcir.sys 2014-12-06 14:59:31 ----A---- C:\Windows\system32\drivers\srvnet.sys 2014-12-06 14:59:31 ----A---- C:\Windows\system32\drivers\srv2.sys 2014-12-06 14:59:31 ----A---- C:\Windows\system32\drivers\srv.sys 2014-12-06 14:59:30 ----A---- C:\Windows\SYSWOW64\shdocvw.dll 2014-12-06 14:59:30 ----A---- C:\Windows\system32\shdocvw.dll 2014-12-06 14:59:29 ----A---- C:\Windows\SYSWOW64\qdvd.dll 2014-12-06 14:59:29 ----A---- C:\Windows\SYSWOW64\dpnet.dll 2014-12-06 14:59:29 ----A---- C:\Windows\system32\qdvd.dll 2014-12-06 14:59:29 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2014-12-06 14:59:29 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2014-12-06 14:59:29 ----A---- C:\Windows\system32\dpnet.dll 2014-12-06 14:59:29 ----A---- C:\Windows\system32\cdd.dll 2014-12-06 14:59:28 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll 2014-12-06 14:59:28 ----A---- C:\Windows\system32\cryptdlg.dll 2014-12-06 14:59:27 ----A---- C:\Windows\SYSWOW64\psisdecd.dll 2014-12-06 14:59:27 ----A---- C:\Windows\system32\shell32.dll 2014-12-06 14:59:27 ----A---- C:\Windows\system32\psisdecd.dll 2014-12-06 14:59:26 ----A---- C:\Windows\SYSWOW64\shell32.dll 2014-12-06 14:59:26 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL 2014-12-06 14:59:26 ----A---- C:\Windows\system32\IMJP10K.DLL 2014-12-06 14:59:25 ----A---- C:\Windows\SYSWOW64\iologmsg.dll 2014-12-06 14:59:25 ----A---- C:\Windows\system32\iologmsg.dll 2014-12-06 14:59:25 ----A---- C:\Windows\system32\drivers\storport.sys 2014-12-06 14:59:25 ----A---- C:\Windows\system32\drivers\partmgr.sys 2014-12-06 14:59:25 ----A---- C:\Windows\system32\drivers\msiscsi.sys 2014-12-06 14:59:25 ----A---- C:\Windows\system32\drivers\Diskdump.sys 2014-12-06 14:59:24 ----A---- C:\Windows\SYSWOW64\tzres.dll 2014-12-06 14:59:24 ----A---- C:\Windows\system32\tzres.dll 2014-12-06 14:59:23 ----A---- C:\Windows\SYSWOW64\rdpcore.dll 2014-12-06 14:59:23 ----A---- C:\Windows\system32\rdpcore.dll 2014-12-06 14:59:23 ----A---- C:\Windows\system32\drivers\tdtcp.sys 2014-12-06 14:59:22 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2014-12-06 14:59:22 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll 2014-12-06 14:59:22 ----A---- C:\Windows\SYSWOW64\AudioEng.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\winresume.exe 2014-12-06 14:59:22 ----A---- C:\Windows\system32\winload.exe 2014-12-06 14:59:22 ----A---- C:\Windows\system32\kdusb.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\kdcom.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\kd1394.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\EncDump.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\audiosrv.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\AudioSes.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\AUDIOKSE.dll 2014-12-06 14:59:22 ----A---- C:\Windows\system32\AudioEng.dll 2014-12-06 14:59:21 ----A---- C:\Windows\SYSWOW64\synceng.dll 2014-12-06 14:59:21 ----A---- C:\Windows\system32\synceng.dll 2014-12-06 14:59:21 ----A---- C:\Windows\system32\drivers\cng.sys 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\rastls.dll 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\kernel32.dll 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\drvinst.exe 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\devrtl.dll 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\devobj.dll 2014-12-06 14:59:19 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll 2014-12-06 14:59:19 ----A---- C:\Windows\system32\wow64win.dll 2014-12-06 14:59:19 ----A---- C:\Windows\system32\umpnpmgr.dll 2014-12-06 14:59:19 ----A---- C:\Windows\system32\rastls.dll 2014-12-06 14:59:19 ----A---- C:\Windows\system32\kernel32.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-12-06 14:59:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\wow32.dll 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\win32spl.dll 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\user.exe 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\setup16.exe 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll 2014-12-06 14:59:18 ----A---- C:\Windows\SYSWOW64\instnm.exe 2014-12-06 14:59:18 ----A---- C:\Windows\system32\wow64cpu.dll 2014-12-06 14:59:18 ----A---- C:\Windows\system32\wow64.dll 2014-12-06 14:59:18 ----A---- C:\Windows\system32\winsrv.dll 2014-12-06 14:59:18 ----A---- C:\Windows\system32\win32spl.dll 2014-12-06 14:59:18 ----A---- C:\Windows\system32\ntvdm64.dll 2014-12-06 14:59:18 ----A---- C:\Windows\system32\conhost.exe 2014-12-06 14:59:17 ----A---- C:\Windows\SYSWOW64\certutil.exe 2014-12-06 14:59:17 ----A---- C:\Windows\SYSWOW64\certenc.dll 2014-12-06 14:59:17 ----A---- C:\Windows\system32\certutil.exe 2014-12-06 14:59:17 ----A---- C:\Windows\system32\certenc.dll 2014-12-06 14:59:15 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-12-06 14:59:15 ----A---- C:\Windows\SYSWOW64\netapi32.dll 2014-12-06 14:59:15 ----A---- C:\Windows\SYSWOW64\browcli.dll 2014-12-06 14:59:15 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-12-06 14:59:15 ----A---- C:\Windows\system32\netapi32.dll 2014-12-06 14:59:15 ----A---- C:\Windows\system32\browser.dll 2014-12-06 14:59:15 ----A---- C:\Windows\system32\browcli.dll 2014-12-06 14:59:14 ----A---- C:\Windows\SYSWOW64\packager.dll 2014-12-06 14:59:14 ----A---- C:\Windows\SYSWOW64\inetcomm.dll 2014-12-06 14:59:14 ----A---- C:\Windows\system32\win32k.sys 2014-12-06 14:59:14 ----A---- C:\Windows\system32\packager.dll 2014-12-06 14:59:14 ----A---- C:\Windows\system32\inetcomm.dll 2014-12-06 14:59:13 ----A---- C:\Windows\SYSWOW64\msihnd.dll 2014-12-06 14:59:13 ----A---- C:\Windows\SYSWOW64\msi.dll 2014-12-06 14:59:13 ----A---- C:\Windows\SYSWOW64\authui.dll 2014-12-06 14:59:13 ----A---- C:\Windows\system32\msihnd.dll 2014-12-06 14:59:13 ----A---- C:\Windows\system32\msi.dll 2014-12-06 14:59:13 ----A---- C:\Windows\system32\consent.exe 2014-12-06 14:59:13 ----A---- C:\Windows\system32\authui.dll 2014-12-06 14:59:13 ----A---- C:\Windows\system32\appinfo.dll 2014-12-06 14:59:12 ----A---- C:\Windows\SYSWOW64\prevhost.exe 2014-12-06 14:59:12 ----A---- C:\Windows\system32\prevhost.exe 2014-12-06 14:59:11 ----A---- C:\Windows\SYSWOW64\EncDec.dll 2014-12-06 14:59:11 ----A---- C:\Windows\system32\EncDec.dll 2014-12-06 14:59:10 ----A---- C:\Windows\SYSWOW64\msvcrt.dll 2014-12-06 14:59:10 ----A---- C:\Windows\SYSWOW64\gdi32.dll 2014-12-06 14:59:10 ----A---- C:\Windows\system32\msvcrt.dll 2014-12-06 14:59:10 ----A---- C:\Windows\system32\gdi32.dll 2014-12-06 14:59:10 ----A---- C:\Windows\system32\drivers\ntfs.sys 2014-12-06 14:59:10 ----A---- C:\Windows\system32\drivers\fvevol.sys 2014-12-06 14:59:09 ----A---- C:\Windows\SYSWOW64\srclient.dll 2014-12-06 14:59:09 ----A---- C:\Windows\SYSWOW64\DWrite.dll 2014-12-06 14:59:09 ----A---- C:\Windows\system32\srcore.dll 2014-12-06 14:59:09 ----A---- C:\Windows\system32\FXSCOVER.exe 2014-12-06 14:59:09 ----A---- C:\Windows\system32\DWrite.dll 2014-12-06 14:59:08 ----A---- C:\Windows\SYSWOW64\wscript.exe 2014-12-06 14:59:08 ----A---- C:\Windows\SYSWOW64\scrrun.dll 2014-12-06 14:59:08 ----A---- C:\Windows\SYSWOW64\oleacc.dll 2014-12-06 14:59:08 ----A---- C:\Windows\SYSWOW64\cscript.exe 2014-12-06 14:59:08 ----A---- C:\Windows\system32\wscript.exe 2014-12-06 14:59:08 ----A---- C:\Windows\system32\scrrun.dll 2014-12-06 14:59:08 ----A---- C:\Windows\system32\oleacc.dll 2014-12-06 14:59:08 ----A---- C:\Windows\system32\localspl.dll 2014-12-06 14:59:08 ----A---- C:\Windows\system32\cscript.exe 2014-12-06 14:59:07 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll 2014-12-06 14:59:07 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-12-06 14:59:07 ----A---- C:\Windows\system32\scavengeui.dll 2014-12-06 14:59:07 ----A---- C:\Windows\system32\drivers\bowser.sys 2014-12-06 14:59:06 ----A---- C:\Windows\SYSWOW64\cdosys.dll 2014-12-06 14:59:06 ----A---- C:\Windows\system32\cdosys.dll 2014-12-06 14:59:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll 2014-12-06 14:59:05 ----A---- C:\Windows\SYSWOW64\oleaut32.dll 2014-12-06 14:59:05 ----A---- C:\Windows\system32\rpcrt4.dll 2014-12-06 14:59:05 ----A---- C:\Windows\system32\oleaut32.dll 2014-12-06 14:58:52 ----A---- C:\Windows\SYSWOW64\nshwfp.dll 2014-12-06 14:58:52 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL 2014-12-06 14:58:52 ----A---- C:\Windows\system32\nshwfp.dll 2014-12-06 14:58:52 ----A---- C:\Windows\system32\IKEEXT.DLL 2014-12-06 14:58:52 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2014-12-06 14:42:47 ----A---- C:\Windows\system32\IEUDINIT.EXE 2014-12-06 14:06:37 ----A---- C:\Windows\SYSWOW64\elshyph.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\wininet.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\wextract.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\webcheck.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\url.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\pngfilt.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\occache.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\msrating.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\msls31.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\mshtmler.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\mshta.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\licmgr10.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\jsIntl.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\jscript.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\inseng.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\imgutil.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iexpress.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieui.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iepeers.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\icardie.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2014-12-06 14:06:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2014-12-06 14:06:36 ----A---- C:\Windows\system32\elshyph.dll 2014-12-06 14:06:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2014-12-06 14:06:35 ----A---- C:\Windows\SYSWOW64\iesysprep.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\wininet.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\wextract.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\webcheck.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\vbscript.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\urlmon.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\url.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\pngfilt.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\occache.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\msrating.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\msls31.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\mshtmlmedia.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\mshtmler.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\mshtmled.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\MshtmlDac.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\mshtml.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\mshta.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\msfeedssync.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\msfeeds.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\licmgr10.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\jsproxy.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\jsIntl.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\jscript9diag.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\jscript9.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\jscript.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\inseng.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\imgutil.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iexpress.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieUnatt.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieui.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iesysprep.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iesetup.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iertutil.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iernonce.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iepeers.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieframe.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\iedkcs32.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieapfltr.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ieapfltr.dat 2014-12-06 14:06:35 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\ie4uinit.exe 2014-12-06 14:06:35 ----A---- C:\Windows\system32\icardie.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\dxtrans.dll 2014-12-06 14:06:35 ----A---- C:\Windows\system32\dxtmsft.dll 2014-12-06 14:06:20 ----A---- C:\Windows\SYSWOW64\tdh.dll 2014-12-06 14:06:20 ----A---- C:\Windows\SYSWOW64\ntdll.dll 2014-12-06 14:06:20 ----A---- C:\Windows\SYSWOW64\advapi32.dll 2014-12-06 14:06:20 ----A---- C:\Windows\system32\tdh.dll 2014-12-06 14:06:20 ----A---- C:\Windows\system32\ntdll.dll 2014-12-06 14:06:20 ----A---- C:\Windows\system32\advapi32.dll 2014-12-06 14:06:11 ----A---- C:\Windows\SYSWOW64\mswsock.dll 2014-12-06 14:06:11 ----A---- C:\Windows\system32\mswsock.dll 2014-12-06 14:06:04 ----A---- C:\Windows\system32\taskhost.exe 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-12-06 14:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\dxgi.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\d3d10core.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll 2014-12-06 14:05:17 ----A---- C:\Windows\SYSWOW64\d3d10.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\XpsPrint.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\UIAnimation.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\FntCache.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\dxgi.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\d3d10level9.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\d3d10core.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\d3d10_1core.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\d3d10_1.dll 2014-12-06 14:05:17 ----A---- C:\Windows\system32\d3d10.dll 2014-12-06 14:04:59 ----A---- C:\Windows\SYSWOW64\d3d11.dll 2014-12-06 14:04:59 ----A---- C:\Windows\system32\d3d11.dll 2014-12-06 13:17:06 ----A---- C:\Windows\zip.exe 2014-12-06 13:17:06 ----A---- C:\Windows\SWSC.exe 2014-12-06 13:17:06 ----A---- C:\Windows\SWREG.exe 2014-12-06 13:17:06 ----A---- C:\Windows\sed.exe 2014-12-06 13:17:06 ----A---- C:\Windows\PEV.exe 2014-12-06 13:17:06 ----A---- C:\Windows\NIRCMD.exe 2014-12-06 13:17:06 ----A---- C:\Windows\MBR.exe 2014-12-06 13:17:06 ----A---- C:\Windows\grep.exe 2014-12-06 13:17:03 ----D---- C:\Qoobox 2014-12-06 13:16:57 ----D---- C:\Windows\erdnt 2014-12-06 11:34:03 ----A---- C:\Windows\system32\browserchoice.exe 2014-12-06 11:29:26 ----A---- C:\Windows\system32\wups2.dll 2014-12-06 11:29:26 ----A---- C:\Windows\system32\wucltux.dll 2014-12-06 11:29:26 ----A---- C:\Windows\system32\wuaueng.dll 2014-12-06 11:29:26 ----A---- C:\Windows\system32\wuauclt.exe 2014-12-06 11:29:25 ----A---- C:\Windows\SYSWOW64\wups.dll 2014-12-06 11:29:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll 2014-12-06 11:29:25 ----A---- C:\Windows\SYSWOW64\wuapi.dll 2014-12-06 11:29:25 ----A---- C:\Windows\system32\wups.dll 2014-12-06 11:29:25 ----A---- C:\Windows\system32\wudriver.dll 2014-12-06 11:29:25 ----A---- C:\Windows\system32\wuapi.dll 2014-12-06 11:29:24 ----A---- C:\Windows\SYSWOW64\wuwebv.dll 2014-12-06 11:29:24 ----A---- C:\Windows\SYSWOW64\wuapp.exe 2014-12-06 11:29:24 ----A---- C:\Windows\system32\wuwebv.dll 2014-12-06 11:29:24 ----A---- C:\Windows\system32\wuapp.exe 2014-12-06 10:59:19 ----D---- C:\Program Files\Microsoft.NET 2014-12-06 10:49:22 ----D---- C:\Windows\system32\SPReview 2014-12-06 10:49:17 ----D---- C:\Windows\system32\EventProviders 2014-12-06 10:45:15 ----A---- C:\Windows\system32\netfxperf.dll 2014-12-06 10:45:11 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-12-06 10:45:11 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys 2014-12-06 10:45:09 ----A---- C:\Windows\SYSWOW64\mfc40u.dll 2014-12-06 10:45:09 ----A---- C:\Windows\SYSWOW64\mfc40.dll 2014-12-06 10:45:09 ----A---- C:\Windows\system32\tssrvlic.dll 2014-12-06 10:45:09 ----A---- C:\Windows\system32\sysmain.dll 2014-12-06 10:45:09 ----A---- C:\Windows\system32\RDVGHelper.exe 2014-12-06 10:45:08 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll 2014-12-06 10:45:08 ----A---- C:\Windows\system32\MSVidCtl.dll 2014-12-06 10:45:07 ----A---- C:\Windows\system32\xpsservices.dll 2014-12-06 10:45:07 ----A---- C:\Windows\system32\mscoree.dll 2014-12-06 10:45:07 ----A---- C:\Windows\system32\mmcndmgr.dll 2014-12-06 10:45:07 ----A---- C:\Windows\system32\mf.dll 2014-12-06 10:45:06 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe 2014-12-06 10:45:06 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll 2014-12-06 10:45:06 ----A---- C:\Windows\SYSWOW64\mscoree.dll 2014-12-06 10:45:06 ----A---- C:\Windows\system32\taskschd.dll 2014-12-06 10:45:06 ----A---- C:\Windows\system32\spwizui.dll 2014-12-06 10:45:06 ----A---- C:\Windows\system32\schedsvc.dll 2014-12-06 10:45:06 ----A---- C:\Windows\system32\ole32.dll 2014-12-06 10:45:05 ----A---- C:\Windows\SYSWOW64\mf.dll 2014-12-06 10:45:05 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\wevtsvc.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\vssapi.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\UIRibbon.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\RacEngn.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\ExplorerFrame.dll 2014-12-06 10:45:05 ----A---- C:\Windows\system32\diagperf.dll 2014-12-06 10:45:04 ----A---- C:\Windows\SYSWOW64\RacEngn.dll 2014-12-06 10:45:04 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll 2014-12-06 10:45:04 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe 2014-12-06 10:45:04 ----A---- C:\Windows\system32\WsmSvc.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\WMVCORE.DLL 2014-12-06 10:45:04 ----A---- C:\Windows\system32\WinSAT.exe 2014-12-06 10:45:04 ----A---- C:\Windows\system32\spreview.exe 2014-12-06 10:45:04 ----A---- C:\Windows\system32\spinstall.exe 2014-12-06 10:45:04 ----A---- C:\Windows\system32\rdpudd.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\rdpdd.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\PresentationHost.exe 2014-12-06 10:45:04 ----A---- C:\Windows\system32\MPSSVC.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\d3d9.dll 2014-12-06 10:45:04 ----A---- C:\Windows\system32\CertEnroll.dll 2014-12-06 10:45:03 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll 2014-12-06 10:45:03 ----A---- C:\Windows\SYSWOW64\ole32.dll 2014-12-06 10:45:03 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll 2014-12-06 10:45:03 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\VSSVC.exe 2014-12-06 10:45:03 ----A---- C:\Windows\system32\SearchFolder.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\gpsvc.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\dwmcore.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\drivers\http.sys 2014-12-06 10:45:03 ----A---- C:\Windows\system32\dbgeng.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\AuthFWSnapin.dll 2014-12-06 10:45:03 ----A---- C:\Windows\system32\actxprxy.dll 2014-12-06 10:45:02 ----A---- C:\Windows\SYSWOW64\vssapi.dll 2014-12-06 10:45:02 ----A---- C:\Windows\SYSWOW64\taskschd.dll 2014-12-06 10:45:02 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll 2014-12-06 10:45:02 ----A---- C:\Windows\SYSWOW64\d3d9.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\winhttp.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\wbengine.exe 2014-12-06 10:45:02 ----A---- C:\Windows\system32\sqmapi.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\setupapi.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\rpcss.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\qmgr.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\QAGENTRT.DLL 2014-12-06 10:45:02 ----A---- C:\Windows\system32\PushPrinterConnections.exe 2014-12-06 10:45:02 ----A---- C:\Windows\system32\propsys.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\netlogon.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\imapi2fs.dll 2014-12-06 10:45:02 ----A---- C:\Windows\system32\gpprefcl.dll 2014-12-06 10:45:01 ----A---- C:\Windows\SYSWOW64\odbc32.dll 2014-12-06 10:45:01 ----A---- C:\Windows\SYSWOW64\dwmcore.dll 2014-12-06 10:45:01 ----A---- C:\Windows\SYSWOW64\certcli.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\WSDApi.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\ws2_32.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\wmicmiplugin.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\werconcpl.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\user32.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\umrdp.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\tsmf.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\taskeng.exe 2014-12-06 10:45:01 ----A---- C:\Windows\system32\shlwapi.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\rdpshell.exe 2014-12-06 10:45:01 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\odbc32.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\netshell.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\netcfgx.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\msdtctm.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\lsm.exe 2014-12-06 10:45:01 ----A---- C:\Windows\system32\LSCSHostPolicy.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\framedynos.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\drivers\tdx.sys 2014-12-06 10:45:01 ----A---- C:\Windows\system32\drivers\netbt.sys 2014-12-06 10:45:01 ----A---- C:\Windows\system32\dhcpcore.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\comdlg32.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\certmgr.dll 2014-12-06 10:45:01 ----A---- C:\Windows\system32\appmgr.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\winhttp.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\tsmf.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\setupapi.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\netlogon.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\netcfgx.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\dot3api.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\dbgeng.dll 2014-12-06 10:45:00 ----A---- C:\Windows\SYSWOW64\apphelp.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\wpdshext.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\wmpps.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\Vault.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\samsrv.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\rdpclip.exe 2014-12-06 10:45:00 ----A---- C:\Windows\system32\Query.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\QAGENT.DLL 2014-12-06 10:45:00 ----A---- C:\Windows\system32\lpksetup.exe 2014-12-06 10:45:00 ----A---- C:\Windows\system32\DShowRdpFilter.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\drvstore.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\drivers\csc.sys 2014-12-06 10:45:00 ----A---- C:\Windows\system32\cscsvc.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\cmd.exe 2014-12-06 10:45:00 ----A---- C:\Windows\system32\BFE.DLL 2014-12-06 10:45:00 ----A---- C:\Windows\system32\azroles.dll 2014-12-06 10:45:00 ----A---- C:\Windows\system32\apphelp.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\xpsservices.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\userenv.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\upnp.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\shlwapi.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\SessEnv.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\Query.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\netfxperf.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\drvstore.dll 2014-12-06 10:44:59 ----A---- C:\Windows\SYSWOW64\certmgr.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\WMNetMgr.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\Wldap32.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\wlanpref.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\webservices.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\vpnike.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\userenv.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\tspubwmi.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\taskcomp.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\sxs.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\sqlsrv32.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\SessEnv.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\schtasks.exe 2014-12-06 10:44:59 ----A---- C:\Windows\system32\rdpendp.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\prncache.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\pnidui.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\mfds.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\mcmde.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\mcbuilder.exe 2014-12-06 10:44:59 ----A---- C:\Windows\system32\ipsmsnap.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\hgprint.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\fveapi.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\drivers\volsnap.sys 2014-12-06 10:44:59 ----A---- C:\Windows\system32\drivers\vhdmp.sys 2014-12-06 10:44:59 ----A---- C:\Windows\system32\drivers\rdbss.sys 2014-12-06 10:44:59 ----A---- C:\Windows\system32\drivers\msrpc.sys 2014-12-06 10:44:59 ----A---- C:\Windows\system32\dot3api.dll 2014-12-06 10:44:59 ----A---- C:\Windows\system32\cscobj.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\Wldap32.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\user32.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\rdpendp.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\propsys.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\mfds.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\framedynos.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\comdlg32.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\cmd.exe 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\azroles.dll 2014-12-06 10:44:58 ----A---- C:\Windows\SYSWOW64\appmgr.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\wmpmde.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\WMPEncEn.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\wmpeffects.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\WinSATAPI.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\vmicsvc.exe 2014-12-06 10:44:58 ----A---- C:\Windows\system32\tscfgwmi.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\tcpipcfg.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\SyncCenter.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\stobject.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\srvsvc.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\sppobjs.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\spp.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\shsvcs.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\rdpinit.exe 2014-12-06 10:44:58 ----A---- C:\Windows\system32\QSHVHOST.DLL 2014-12-06 10:44:58 ----A---- C:\Windows\system32\photowiz.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\netid.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\netdiagfx.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\mfreadwrite.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\localsec.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\IPSECSVC.DLL 2014-12-06 10:44:58 ----A---- C:\Windows\system32\inetpp.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\imapi2.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\FXSSVC.exe 2014-12-06 10:44:58 ----A---- C:\Windows\system32\framedyn.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\fde.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\evr.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\drivers\vmbus.sys 2014-12-06 10:44:58 ----A---- C:\Windows\system32\drivers\udfs.sys 2014-12-06 10:44:58 ----A---- C:\Windows\system32\drivers\fltMgr.sys 2014-12-06 10:44:58 ----A---- C:\Windows\system32\drivers\1394ohci.sys 2014-12-06 10:44:58 ----A---- C:\Windows\system32\cscui.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\biocpl.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\bcryptprimitives.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\aepdu.dll 2014-12-06 10:44:58 ----A---- C:\Windows\system32\aeinv.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\themeui.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\taskeng.exe 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\taskcomp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\spp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\evr.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\dbghelp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\calc.exe 2014-12-06 10:44:57 ----A---- C:\Windows\SYSWOW64\basecsp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\XpsRasterService.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\wusa.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\wpdbusenum.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\wisptis.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\wiaservc.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\wcncsvc.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\vds.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\upnp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\t2embed.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\sppwinob.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\scansetting.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\rpchttp.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\Robocopy.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\printui.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\pla.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\PkgMgr.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\PhotoScreensaver.scr 2014-12-06 10:44:57 ----A---- C:\Windows\system32\ocsetup.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\ocsetapi.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\mspbda.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\msinfo32.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\msdri.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\mscms.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\mprapi.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\IPHLPAPI.DLL 2014-12-06 10:44:57 ----A---- C:\Windows\system32\FirewallControlPanel.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\eapphost.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\eapp3hst.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\DXP.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\drivers\volmgr.sys 2014-12-06 10:44:57 ----A---- C:\Windows\system32\drivers\rasl2tp.sys 2014-12-06 10:44:57 ----A---- C:\Windows\system32\drivers\pci.sys 2014-12-06 10:44:57 ----A---- C:\Windows\system32\drivers\msdsm.sys 2014-12-06 10:44:57 ----A---- C:\Windows\system32\drivers\HpSAMD.sys 2014-12-06 10:44:57 ----A---- C:\Windows\system32\ci.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\cfgmgr32.dll 2014-12-06 10:44:57 ----A---- C:\Windows\system32\aitagent.exe 2014-12-06 10:44:57 ----A---- C:\Windows\system32\AdmTmpl.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\WSDApi.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\ws2_32.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\wlangpui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\sxs.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\stobject.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\scansetting.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\rpchttp.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\prncache.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\printui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\netshell.dll 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\net1.exe 2014-12-06 10:44:56 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\wscapi.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\wlangpui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\wiadefui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\wdc.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\VAN.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\thumbcache.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\themeui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\StructuredQuery.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\SndVol.exe 2014-12-06 10:44:56 ----A---- C:\Windows\system32\sdengin2.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\scrptadm.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\scesrv.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\scecli.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\samcli.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\regapi.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\rasmans.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\puiobj.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\PerfCenterCPL.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\onex.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\netcenter.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL 2014-12-06 10:44:56 ----A---- C:\Windows\system32\msftedit.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\msasn1.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\iasrad.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\iasacct.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\hal.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\DxpTaskSync.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\DXPTaskRingtone.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\dwmredir.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\dskquoui.dll 2014-12-06 10:44:56 ----A---- C:\Windows\system32\drivers\termdd.sys 2014-12-06 10:44:56 ----A---- C:\Windows\system32\drivers\ndiswan.sys 2014-12-06 10:44:56 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys 2014-12-06 10:44:56 ----A---- C:\Windows\system32\drivers\Classpnp.sys 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\wscapi.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\wpdshext.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\WinSCard.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\webservices.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\t2embed.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\scrptadm.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\pnidui.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\pla.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\onex.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\msasn1.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\imapi2.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\fde.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll 2014-12-06 10:44:55 ----A---- C:\Windows\SYSWOW64\cscobj.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\wksprt.exe 2014-12-06 10:44:55 ----A---- C:\Windows\system32\WFS.exe 2014-12-06 10:44:55 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\tapisrv.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\TabSvc.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\srchadmin.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\sharemediacpl.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\setupcl.exe 2014-12-06 10:44:55 ----A---- C:\Windows\system32\RpcRtRemote.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\riched20.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\QUTIL.DLL 2014-12-06 10:44:55 ----A---- C:\Windows\system32\powercpl.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\netiohlp.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\mtxclu.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\msconfig.exe 2014-12-06 10:44:55 ----A---- C:\Windows\system32\mimefilt.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\lsmproxy.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\logoncli.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\ListSvc.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\hgcpl.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\fdeploy.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\drivers\sbp2port.sys 2014-12-06 10:44:55 ----A---- C:\Windows\system32\drivers\raspptp.sys 2014-12-06 10:44:55 ----A---- C:\Windows\system32\drivers\msahci.sys 2014-12-06 10:44:55 ----A---- C:\Windows\system32\drivers\ks.sys 2014-12-06 10:44:55 ----A---- C:\Windows\system32\drivers\acpi.sys 2014-12-06 10:44:55 ----A---- C:\Windows\system32\dnscmmc.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\clusapi.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\basecsp.dll 2014-12-06 10:44:55 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\wlanpref.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\winmm.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\wdc.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\Vault.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\untfs.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\thumbcache.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\srchadmin.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\shsvcs.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\schtasks.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\scesrv.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\samcli.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\regapi.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\proquota.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\powercpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\netiohlp.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\netid.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\nci.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\msutb.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\msinfo32.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\mimefilt.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\hbaapi.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\framedyn.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\eapphost.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\autofmt.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\autoconv.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\autochk.exe 2014-12-06 10:44:54 ----A---- C:\Windows\SYSWOW64\actxprxy.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\wwanconn.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\wpd_ci.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\wmpsrcwp.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\wlanui.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\wkssvc.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\vpnikeapi.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\themecpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\sppcomapi.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\SmiEngine.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\shsetup.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\SensorsCpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\sdclt.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\rdpsign.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\prntvpt.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\nshipsec.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\netjoin.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\nci.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\Narrator.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\mprddm.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\mblctr.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\fontext.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\fms.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\Faultrep.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\eudcedit.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\drivers\wanarp.sys 2014-12-06 10:44:54 ----A---- C:\Windows\system32\drivers\volmgrx.sys 2014-12-06 10:44:54 ----A---- C:\Windows\system32\drivers\scsiport.sys 2014-12-06 10:44:54 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys 2014-12-06 10:44:54 ----A---- C:\Windows\system32\dps.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\Display.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\DiagCpl.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\cabview.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\bcdsrv.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\batmeter.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\AxInstSv.dll 2014-12-06 10:44:54 ----A---- C:\Windows\system32\autofmt.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\autoconv.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\autochk.exe 2014-12-06 10:44:54 ----A---- C:\Windows\system32\audiodg.exe 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\wiadefui.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\userinit.exe 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\themecpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\termmgr.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\taskmgr.exe 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\tapisrv.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\shsetup.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\scecli.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\Robocopy.exe 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\rasppp.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\puiobj.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\mtxclu.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\mscms.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\mprddm.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\logoncli.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\localsec.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\hgcpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\fontext.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\eudcedit.exe 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\Display.dll 2014-12-06 10:44:53 ----A---- C:\Windows\SYSWOW64\cabview.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\zipfldr.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\wpccpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\userinit.exe 2014-12-06 10:44:53 ----A---- C:\Windows\system32\usercpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\untfs.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\taskmgr.exe 2014-12-06 10:44:53 ----A---- C:\Windows\system32\sud.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\sppsvc.exe 2014-12-06 10:44:53 ----A---- C:\Windows\system32\SndVolSSO.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\slui.exe 2014-12-06 10:44:53 ----A---- C:\Windows\system32\rtutils.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\rasppp.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\provsvc.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\proquota.exe 2014-12-06 10:44:53 ----A---- C:\Windows\system32\prnfldr.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\pdh.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\MSAC3ENC.DLL 2014-12-06 10:44:53 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\hbaapi.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\dxdiagn.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\drivers\winhv.sys 2014-12-06 10:44:53 ----A---- C:\Windows\system32\drivers\storvsc.sys 2014-12-06 10:44:53 ----A---- C:\Windows\system32\drivers\rdyboost.sys 2014-12-06 10:44:53 ----A---- C:\Windows\system32\drivers\mountmgr.sys 2014-12-06 10:44:53 ----A---- C:\Windows\system32\dot3svc.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\dot3cfg.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\DeviceCenter.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\defaultlocationcpl.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\bootres.dll 2014-12-06 10:44:53 ----A---- C:\Windows\system32\accessibilitycpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\zipfldr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\wusa.exe 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\wlanui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\w32tm.exe 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\VAN.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\usercpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\sud.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\spwizeng.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\SndVol.exe 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\sisbkup.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\prntvpt.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\prnfldr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\photowiz.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\networkmap.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\netjoin.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\netcenter.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\ifsutil.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\iasrad.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\iasacct.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\ftp.exe 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\fdeploy.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\Faultrep.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\efscore.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\cryptui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\batmeter.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\azroleui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\adsldp.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll 2014-12-06 10:44:52 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\wlanmsm.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\vdsutil.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\uxlib.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\UserAccountControlSettings.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\tzutil.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\twext.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\termmgr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\taskbarcpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\systemcpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sysclass.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\syncui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sqlcese30.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\spwizeng.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sisbkup.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\shwebsvc.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sethc.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sdrsvc.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\sdcpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\rstrui.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\recovery.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\recdisc.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\ReAgent.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\rdpd3d.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\OobeFldr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\OnLineIDCpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\ntlanman.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\networkmap.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\netplwiz.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\ncryptui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\msvidc32.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\msscp.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\MFPlay.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\isoburn.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\iprtrmgr.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\httpapi.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\fvecpl.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\efscore.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\dsuiext.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\drivers\rdpdr.sys 2014-12-06 10:44:52 ----A---- C:\Windows\system32\drivers\ndproxy.sys 2014-12-06 10:44:52 ----A---- C:\Windows\system32\drivers\mpio.sys 2014-12-06 10:44:52 ----A---- C:\Windows\system32\drivers\hwpolicy.sys 2014-12-06 10:44:52 ----A---- C:\Windows\system32\cryptui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\certcli.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\cca.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\bcdedit.exe 2014-12-06 10:44:52 ----A---- C:\Windows\system32\azroleui.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\autoplay.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\asycfilt.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\ActionCenterCPL.dll 2014-12-06 10:44:52 ----A---- C:\Windows\system32\ActionCenter.dll 2014-12-06 10:44:51 ----A---- C:\Windows\twain_32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wvc.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wmpmde.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wimgapi.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\wavemsp.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\uxlib.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\tzutil.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\twext.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\systemcpl.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\syncui.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ssText3d.scr 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\slwga.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\setupugc.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\sethc.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\rtutils.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\riched20.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ReAgent.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\qcap.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\qasf.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\provsvc.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ocsetup.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ntprint.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ntlanman.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\nslookup.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\nshipsec.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\netplwiz.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\msvfw32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\mstask.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\msftedit.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\migisol.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\mciavi32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\isoburn.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\httpapi.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\fms.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\dsuiext.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\dskquoui.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\dpx.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\dot3ui.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\dfrgui.exe 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\blackbox.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\autoplay.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\audiodev.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\asycfilt.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\activeds.dll 2014-12-06 10:44:51 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wvc.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wsqmcons.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wsnmp32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wmpdxm.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wmdrmsdk.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wmdrmdev.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wkscli.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\WinSCard.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\WerFaultSecure.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\wavemsp.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\unimdmat.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\tsbyuv.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\ssText3d.scr 2014-12-06 10:44:51 ----A---- C:\Windows\system32\srvcli.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\srrstr.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\sppnp.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\slwga.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\seclogon.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\Ribbons.scr 2014-12-06 10:44:51 ----A---- C:\Windows\system32\remotepg.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\PresentationSettings.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\OpcServices.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\ntprint.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\nslookup.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\networkexplorer.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\net1.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\NAPHLPR.DLL 2014-12-06 10:44:51 ----A---- C:\Windows\system32\Mystify.scr 2014-12-06 10:44:51 ----A---- C:\Windows\system32\muifontsetup.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\msyuv.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\msrle32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\msiexec.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\mfps.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\mapistub.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\mapi32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\iyuv_32.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\iTVData.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\iscsium.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\ifsutil.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\ftp.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\drmmgrtn.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\drivers\vmstorfl.sys 2014-12-06 10:44:51 ----A---- C:\Windows\system32\drivers\umbus.sys 2014-12-06 10:44:51 ----A---- C:\Windows\system32\diskraid.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\dfrgui.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\DevicePairingFolder.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\certprop.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\cabinet.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\Bubbles.scr 2014-12-06 10:44:51 ----A---- C:\Windows\system32\blackbox.dll 2014-12-06 10:44:51 ----A---- C:\Windows\system32\bcdboot.exe 2014-12-06 10:44:51 ----A---- C:\Windows\system32\acppage.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\WPDSp.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wmpshell.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wimserv.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\wiavideo.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\vdsbas.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\utildll.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\unimdmat.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\takeown.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\srvcli.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\sqmapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\shacct.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\runonce.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\Ribbons.scr 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\remotepg.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\rdpencom.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\raschap.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\qdv.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\perfmon.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\pdh.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\OpcServices.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\onexui.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\olethk32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\olepro32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\ncryptui.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\Mystify.scr 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\msvidc32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\msscp.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\msiexec.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\mprapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\MFPlay.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\mapistub.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\mapi32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\logman.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\logagent.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\iTVData.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\iscsium.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\input.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\fphc.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\dot3msm.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\diskraid.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\cscapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\clusapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\Bubbles.scr 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\avifil32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\SYSWOW64\acppage.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\wpdwcn.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\WPDSp.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\WMVSDECD.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\WMSPDMOD.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\wmpshell.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\wmdrmnet.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\WMADMOD.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\wiavideo.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\vss_ps.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\vmictimeprovider.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\vfwwdm32.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\vdsbas.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\umb.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\tlscsp.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\takeown.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\tabcal.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\syssetup.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\spbcd.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\shimgvw.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\shacct.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\setbcdlocale.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\runonce.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\rdpencom.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\raschap.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\QSVRMGMT.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\qdv.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\QCLIPROV.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\qcap.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\qasf.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\PrintIsolationProxy.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\PortableDeviceStatus.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\PnPUnattend.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\perfmon.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\nrpsrv.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\nltest.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\netutils.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\NAPCRYPT.DLL 2014-12-06 10:44:50 ----A---- C:\Windows\system32\mstask.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\msnetobj.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\MdSched.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\Mcx2Svc.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\logman.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\HotStartUserAgent.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\FXSAPI.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\fphc.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\EhStorAPI.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\drivers\rmcast.sys 2014-12-06 10:44:50 ----A---- C:\Windows\system32\drivers\ndisuio.sys 2014-12-06 10:44:50 ----A---- C:\Windows\system32\dot3ui.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\djoin.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\dbghelp.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\CscMig.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\cscapi.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\cmstp.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\CertPolEng.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\bitsadmin.exe 2014-12-06 10:44:50 ----A---- C:\Windows\system32\AzSqlExt.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\amstream.dll 2014-12-06 10:44:50 ----A---- C:\Windows\system32\ActionQueue.dll 2014-12-06 10:44:50 ----A---- C:\Windows\bfsvc.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\wshbth.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\wmpps.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\wkscli.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\unlodctr.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\TRAPI.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\tlscsp.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\syssetup.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\sscore.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\sppinst.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\sppc.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\spopk.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\spbcd.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\shimgvw.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\shgina.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\setupcln.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\schedcli.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\riched32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\resutils.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\relog.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\rastapi.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\perfts.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\pdhui.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\odbcconf.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\netutils.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\netiougc.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\netbtugc.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\napdsnap.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\mydocs.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\msyuv.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\msrle32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\msorcl32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\msnetobj.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\msdmo.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\mobsync.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\luainstall.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\itircl.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\iscsicli.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\inetmib1.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\imm32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\iccvid.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\iasrecst.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\findstr.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\elsTrans.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\eappgnui.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\dsauth.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\diskpart.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\cscdll.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\cmstp.exe 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\cca.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\cabinet.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\bitsperf.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll 2014-12-06 10:44:49 ----A---- C:\Windows\SYSWOW64\amstream.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\wshbth.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\wsdchngr.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\wdiasqmmodule.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\WavDest.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\vmstorfltres.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\vmicres.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\vmbusres.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\UIRibbonRes.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\tskill.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\tsdiscon.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\tscon.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\TRAPI.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\sscore.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\sppc.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\spopk.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\shgina.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\shadow.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\schedcli.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\rwinsta.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\reset.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\repair-bde.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\relog.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\rdprefdrvapi.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\RDPENCDD.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\query.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\qprocess.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\qappsrv.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\profprov.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\PJLMON.DLL 2014-12-06 10:44:49 ----A---- C:\Windows\system32\onexui.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\odbcconf.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\napdsnap.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\mydocs.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\MultiDigiMon.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\msdmo.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\mobsync.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\mciqtz32.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\manage-bde.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\luainstall.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\LogonUI.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\logoff.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\KMSVC.DLL 2014-12-06 10:44:49 ----A---- C:\Windows\system32\itircl.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\iscsicli.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\inetmib1.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\iasrecst.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\FXSUNATD.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\FXSTIFF.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\FXSMON.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\fixmapi.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\findstr.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\fdProxy.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\elsTrans.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\eappgnui.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\dsauth.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\usbrpm.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\tunnel.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\tdi.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\pacer.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\dfsc.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\drivers\acpipmi.sys 2014-12-06 10:44:49 ----A---- C:\Windows\system32\dot3msm.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\diskpart.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\cscdll.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\choice.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\chgusr.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\chgport.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\chglogon.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\change.exe 2014-12-06 10:44:49 ----A---- C:\Windows\system32\BWUnpairElevated.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\bitsperf.dll 2014-12-06 10:44:49 ----A---- C:\Windows\system32\BdeHdCfg.exe 2014-12-06 10:44:48 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\wshirda.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\spwmp.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\spwizres.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\shunimpl.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\pifmgr.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\nlsbres.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\dxmasf.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\SYSWOW64\browseui.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\wshirda.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\VmdCoinstall.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\vmbuspipe.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\VmbusCoinstaller.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\spwmp.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\spwizres.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\shunimpl.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\riched32.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\rdpcfgex.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\pifmgr.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\nlsbres.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDUS.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDUGHR1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDTURME.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDTUQ.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDTUF.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDTAJIK.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDSG.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDSF.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDPO.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDNEPR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDMON.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDMAORI.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDLT1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\kbdlk41a.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINTEL.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINTAM.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINORI.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINMAR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINKAN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINHIN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDINBEN.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDGR1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDGKL.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDGEO.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDCZ1.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDBULG.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\KBDBLR.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\IcCoinstall.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\dxmasf.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\vms3cap.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\VMBusHID.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\sffp_sd.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\scfilter.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\kbdhid.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\hidusb.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\HdAudio.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\hdaudbus.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\CompositeBus.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\cdrom.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\drivers\appid.sys 2014-12-06 10:44:48 ----A---- C:\Windows\system32\dpnaddr.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\C_ISCII.DLL 2014-12-06 10:44:48 ----A---- C:\Windows\system32\browseui.dll 2014-12-06 10:44:48 ----A---- C:\Windows\system32\BlbEvents.dll 2014-12-06 10:44:46 ----A---- C:\Windows\SYSWOW64\wdscore.dll 2014-12-06 10:44:46 ----A---- C:\Windows\system32\dpx.dll 2014-12-06 10:44:44 ----A---- C:\Windows\SYSWOW64\printmanagement.msc 2014-12-06 10:44:43 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll 2014-12-06 10:44:37 ----A---- C:\Windows\system32\wbemcomn.dll 2014-12-06 09:17:02 ----D---- C:\Users\christophe\AppData\Roaming\Symantec 2014-12-06 09:14:16 ----D---- C:\ProgramData\Extensis 2014-12-06 09:13:59 ----D---- C:\Program Files (x86)\Bonjour 2014-12-06 09:13:57 ----D---- C:\Program Files (x86)\Extensis 2014-12-06 09:12:41 ----D---- C:\ProgramData\Package Cache 2014-12-06 08:47:03 ----A---- C:\Windows\system32\drivers\WimFltr.sys 2014-12-06 08:46:57 ----A---- C:\Windows\system32\drivers\symsnap.sys 2014-12-06 08:46:48 ----A---- C:\Windows\system32\drivers\vproeventmonitor.sys 2014-12-06 08:46:45 ----DC---- C:\Windows\system32\DRVSTORE 2014-12-06 08:46:45 ----A---- C:\Windows\SYSWOW64\GEARAspi.dll 2014-12-06 08:46:45 ----A---- C:\Windows\system32\GEARAspi64.dll 2014-12-06 08:46:45 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys 2014-12-06 08:46:42 ----D---- C:\ProgramData\Symantec 2014-12-06 08:46:42 ----D---- C:\ProgramData\{1C6FDDD8-FC9E-4C12-9FA5-1AAD377097B3} 2014-12-06 08:46:42 ----D---- C:\Program Files (x86)\Norton Ghost 2014-12-06 07:47:31 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-12-06 07:19:22 ----D---- C:\Program Files\Microsoft Silverlight 2014-12-06 07:19:22 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2014-12-06 07:16:41 ----D---- C:\Program Files (x86)\ORPALIS 2014-12-06 06:58:47 ----D---- C:\Users\christophe\AppData\Roaming\WTablet 2014-12-06 06:58:44 ----D---- C:\Program Files (x86)\TabletPlugins 2014-12-06 06:58:43 ----D---- C:\Program Files\TabletPlugins 2014-12-06 06:58:30 ----N---- C:\Windows\SYSWOW64\Wacom_Touch_Tablet.dll 2014-12-06 06:58:30 ----N---- C:\Windows\system32\Wacom_Touch_Tablet.dll 2014-12-06 06:58:28 ----N---- C:\Windows\SYSWOW64\WacomMT.dll 2014-12-06 06:58:27 ----N---- C:\Windows\system32\WacomMT.dll 2014-12-06 06:58:26 ----N---- C:\Windows\SYSWOW64\Wintab32.dll 2014-12-06 06:58:26 ----N---- C:\Windows\system32\Wintab32.dll 2014-12-06 06:58:25 ----N---- C:\Windows\SYSWOW64\Wacom_Tablet.dll 2014-12-06 06:58:24 ----N---- C:\Windows\system32\Wacom_Tablet.dll 2014-12-06 06:58:16 ----D---- C:\Program Files\Tablet 2014-12-06 06:55:40 ----D---- C:\ProgramData\Samsung 2014-12-06 06:55:40 ----D---- C:\Program Files (x86)\Samsung SSD Magician 2014-12-06 06:53:53 ----D---- C:\Program Files (x86)\Datacolor 2014-12-05 11:25:19 ----HD---- C:\ProgramData\CanonBJ 2014-12-05 11:07:33 ----D---- C:\Windows\system32\Macromed 2014-12-05 11:07:32 ----D---- C:\ProgramData\ALM 2014-12-05 10:31:37 ----D---- C:\ProgramData\regid.1986-12.com.adobe 2014-12-05 10:01:06 ----D---- C:\Program Files (x86)\Adobe Media Player 2014-12-05 10:00:35 ----D---- C:\Program Files\Common Files\Adobe 2014-12-05 10:00:35 ----D---- C:\Program Files\Adobe 2014-12-05 10:00:17 ----D---- C:\Program Files (x86)\Adobe 2014-12-05 09:56:03 ----D---- C:\ProgramData\Adobe 2014-12-05 09:51:00 ----D---- C:\ProgramData\Logs 2014-12-05 09:50:13 ----D---- C:\ProgramData\Licenses 2014-12-05 09:50:12 ----AD---- C:\ProgramData\TEMP 2014-12-05 09:50:08 ----D---- C:\Program Files\Classic Menu for Office 2014-12-05 09:45:26 ----A---- C:\Windows\SYSWOW64\xvidvfw.dll 2014-12-05 09:45:26 ----A---- C:\Windows\SYSWOW64\xvidcore.dll 2014-12-05 09:45:26 ----A---- C:\Windows\SYSWOW64\x264vfw.dll 2014-12-05 09:45:26 ----A---- C:\Windows\SYSWOW64\unrar.dll 2014-12-05 09:45:26 ----A---- C:\Windows\SYSWOW64\lagarith.dll 2014-12-05 09:45:25 ----A---- C:\Windows\SYSWOW64\ff_vfw.dll 2014-12-05 09:45:23 ----D---- C:\Program Files (x86)\K-Lite Codec Pack 2014-12-05 09:37:48 ----A---- C:\Windows\system32\lagarith.dll 2014-12-05 09:37:47 ----A---- C:\Windows\system32\unrar64.dll 2014-12-05 09:37:47 ----A---- C:\Windows\system32\ff_vfw.dll 2014-12-05 09:37:46 ----D---- C:\Program Files\K-Lite Codec Pack x64 2014-12-05 09:23:20 ----D---- C:\Program Files\Common Files\DESIGNER 2014-12-05 09:23:16 ----D---- C:\Program Files (x86)\Microsoft SQL Server 2014-12-05 09:23:13 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2014-12-05 09:23:07 ----D---- C:\Windows\PCHEALTH 2014-12-05 09:23:07 ----D---- C:\Program Files\Microsoft SQL Server 2014-12-05 09:22:18 ----D---- C:\Program Files\Microsoft Analysis Services 2014-12-05 09:22:18 ----D---- C:\Program Files (x86)\Microsoft Analysis Services 2014-12-05 09:22:16 ----D---- C:\Program Files (x86)\Microsoft Office 2014-12-05 09:22:15 ----D---- C:\Program Files\Microsoft Office 2014-12-05 09:22:14 ----D---- C:\ProgramData\Microsoft Help 2014-12-05 09:22:12 ----RD---- C:\MSOCache 2014-12-05 09:20:37 ----D---- C:\Windows\Minidump 2014-12-05 09:03:46 ----D---- C:\Program Files\WinRAR 2014-12-05 08:46:08 ----D---- C:\Users\christophe\AppData\Roaming\WinRAR 2014-12-05 07:49:11 ----D---- C:\Users\christophe\AppData\Roaming\ImgBurn 2014-12-05 07:40:05 ----D---- C:\Program Files (x86)\AGEIA Technologies 2014-12-05 07:39:46 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvopencl.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvinit.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\NvIFR.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\NvFBC.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvcuda.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll 2014-12-05 07:38:50 ----A---- C:\Windows\SYSWOW64\nvapi.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvopencl.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvoglv64.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvoglshim64.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvinitx.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\NvIFR64.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvhdap64.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\NvFBC64.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvdispgenco6434475.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvdispco6434475.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvd3dumx.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvcuvid.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvcuda.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\nvcompiler.dll 2014-12-05 07:38:50 ----A---- C:\Windows\system32\drivers\nvvad64v.sys 2014-12-05 07:38:50 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys 2014-12-05 07:38:50 ----A---- C:\Windows\system32\drivers\nvhda64v.sys 2014-12-05 07:34:05 ----D---- C:\Users\christophe\AppData\Roaming\Mozilla 2014-12-05 07:33:58 ----D---- C:\ProgramData\Mozilla 2014-12-05 07:30:01 ----A---- C:\Windows\etdrv.sys 2014-12-05 07:10:57 ----D---- C:\Users\christophe\AppData\Roaming\Macromedia 2014-12-05 07:07:33 ----D---- C:\Users\christophe\AppData\Roaming\Adobe 2014-12-05 06:59:10 ----D---- C:\Users\christophe\AppData\Roaming\Q-Dir 2014-12-05 06:59:08 ----A---- C:\Windows\Q-Dir.ini 2014-12-04 22:02:51 ----D---- C:\ProgramData\Creative 2014-12-04 22:01:30 ----N---- C:\Windows\Updreg.EXE 2014-12-04 22:01:29 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll 2014-12-04 22:01:29 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll 2014-12-04 22:01:29 ----A---- C:\Windows\system32\wrap_oal.dll 2014-12-04 22:01:29 ----A---- C:\Windows\system32\OpenAL32.dll 2014-12-04 22:01:26 ----N---- C:\Windows\SYSWOW64\Sens_oal.dll 2014-12-04 22:01:26 ----N---- C:\Windows\system32\Sens_oal.dll 2014-12-04 22:01:21 ----N---- C:\Windows\Ctregrun.exe 2014-12-04 22:01:11 ----D---- C:\Program Files\Creative 2014-12-04 22:01:02 ----N---- C:\Windows\SYSWOW64\CTOPT399.dll 2014-12-04 22:01:02 ----N---- C:\Windows\SYSWOW64\CTChkAud.dll 2014-12-04 22:01:02 ----N---- C:\Windows\system32\CTOPT399.dll 2014-12-04 22:01:02 ----N---- C:\Windows\system32\CTChkAud.dll 2014-12-04 21:42:46 ----D---- C:\Program Files (x86)\Creative 2014-12-04 21:40:46 ----A---- C:\Windows\GVTDrv64.sys 2014-12-04 21:40:39 ----A---- C:\Windows\gdrv.sys 2014-12-04 21:27:15 ----D---- C:\Windows\system32\MRT 2014-12-04 21:22:23 ----A---- C:\Windows\SYSWOW64\poqexec.exe 2014-12-04 21:22:23 ----A---- C:\Windows\system32\poqexec.exe 2014-12-04 21:22:11 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll 2014-12-04 21:22:11 ----A---- C:\Windows\system32\drivers\VirtDiskBus64.sys 2014-12-04 21:21:15 ----D---- C:\Program Files (x86)\Intel 2014-12-04 21:21:15 ----D---- C:\Intel 2014-12-04 21:21:14 ----D---- C:\Program Files (x86)\AMD 2014-12-04 21:19:32 ----D---- C:\Program Files\GIGABYTE 2014-12-04 21:19:32 ----D---- C:\Program Files (x86)\GIGABYTE 2014-12-04 21:19:32 ----A---- C:\Windows\system32\drivers\AppleCharger.sys 2014-12-04 21:19:32 ----A---- C:\Windows\system32\AppleChargerSrv.exe 2014-12-04 21:19:22 ----D---- C:\Program Files (x86)\Etron Technology 2014-12-04 21:18:05 ----A---- C:\Windows\system32\RTNUninst64.dll 2014-12-04 21:18:05 ----A---- C:\Windows\system32\RtNicProp64.dll 2014-12-04 21:18:05 ----A---- C:\Windows\system32\drivers\Rt64win7.sys 2014-12-04 21:18:01 ----D---- C:\Program Files (x86)\Realtek 2014-12-04 21:16:46 ----A---- C:\Windows\GSetup.ini 2014-12-04 20:59:53 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2014-12-04 20:59:52 ----D---- C:\Program Files (x86)\ASUS 2014-12-04 20:59:50 ----D---- C:\Windows\Downloaded Installations 2014-12-04 20:58:07 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll 2014-12-04 20:58:07 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll 2014-12-04 20:58:07 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll 2014-12-04 20:58:07 ----A---- C:\Windows\system32\D3DX9_43.dll 2014-12-04 20:58:07 ----A---- C:\Windows\system32\d3dx11_43.dll 2014-12-04 20:58:07 ----A---- C:\Windows\system32\d3dx10_43.dll 2014-12-04 20:58:06 ----A---- C:\Windows\SYSWOW64\nvspcap.dll 2014-12-04 20:58:06 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll 2014-12-04 20:58:06 ----A---- C:\Windows\system32\nvspcap64.dll 2014-12-04 20:58:06 ----A---- C:\Windows\system32\nvspbridge64.dll 2014-12-04 20:58:03 ----A---- C:\Windows\system32\nvaudcap64v.dll 2014-12-04 20:57:56 ----D---- C:\ProgramData\NVIDIA 2014-12-04 20:57:42 ----A---- C:\Windows\system32\nvhdagenco6420103.dll 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvvsvc.exe 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvsvcr.dll 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvsvc64.dll 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvshext.dll 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvmctray.dll 2014-12-04 20:57:39 ----A---- C:\Windows\system32\nvcpl.dll 2014-12-04 20:57:32 ----A---- C:\Windows\SYSWOW64\OpenCL.dll 2014-12-04 20:57:32 ----A---- C:\Windows\system32\OpenCL.dll 2014-12-04 20:57:30 ----D---- C:\ProgramData\NVIDIA Corporation 2014-12-04 20:57:28 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2014-12-04 20:57:24 ----A---- C:\Windows\system32\nvdispgenco6434052.dll 2014-12-04 20:57:24 ----A---- C:\Windows\system32\nvdispco6434052.dll 2014-12-04 20:56:47 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2014-12-04 20:53:53 ----D---- C:\Program Files (x86)\Microsoft.NET 2014-12-04 20:53:01 ----A---- C:\Windows\system32\nvwgf2umx.dll 2014-12-04 20:53:00 ----A---- C:\Windows\system32\nvumdshimx.dll 2014-12-04 20:52:40 ----A---- C:\Windows\system32\nvapi64.dll 2014-12-04 20:50:59 ----D---- C:\Program Files\NVIDIA Corporation 2014-12-04 20:49:03 ----D---- C:\Users\christophe\AppData\Roaming\Identities 2014-12-04 20:48:15 ----SD---- C:\Users\christophe\AppData\Roaming\Microsoft 2014-12-04 20:48:15 ----D---- C:\Users\christophe\AppData\Roaming\Media Center Programs 2014-12-04 20:47:42 ----A---- C:\Windows\system32\drivers\sptd.sys 2014-12-04 20:47:28 ----D---- C:\Windows\SYSWOW64\Adobe 2014-12-04 20:47:27 ----SHD---- C:\Windows\Installer 2014-12-04 20:47:27 ----D---- C:\Program Files\PlayReady 2014-12-04 20:47:26 ----D---- C:\Windows\SYSWOW64\Macromed 2014-12-04 20:47:25 ----D---- C:\Recovery 2014-12-04 20:47:24 ----SHD---- C:\ProgramData\Sjablonen 2014-12-04 20:47:24 ----SHD---- C:\ProgramData\Menu Start 2014-12-04 20:47:24 ----SHD---- C:\ProgramData\Favorieten 2014-12-04 20:47:24 ----SHD---- C:\ProgramData\Documenten 2014-12-04 20:47:24 ----SHD---- C:\ProgramData\Bureaublad 2014-12-04 20:29:20 ----D---- C:\Windows\Prefetch 2014-12-04 20:28:11 ----ASH---- C:\pagefile.sys 2014-12-04 20:28:10 ----SHD---- C:\System Volume Information 2014-12-04 20:28:10 ----ASH---- C:\hiberfil.sys 2014-12-04 20:27:17 ----D---- C:\Windows\Panther ======List of files/folders modified in the last 1 month====== 2014-12-09 11:51:29 ----D---- C:\Windows\Temp 2014-12-09 11:35:20 ----RD---- C:\Program Files (x86) 2014-12-09 11:35:16 ----D---- C:\Windows\inf 2014-12-09 11:31:01 ----D---- C:\Windows\SYSWOW64\LogFiles 2014-12-09 11:31:01 ----D---- C:\Windows\system32\LogFiles 2014-12-09 11:31:01 ----D---- C:\Windows\Logs 2014-12-09 11:31:01 ----D---- C:\Windows\debug 2014-12-09 11:31:01 ----D---- C:\Windows 2014-12-09 11:28:56 ----D---- C:\Windows\system32\Tasks 2014-12-09 11:28:55 ----RD---- C:\Program Files 2014-12-09 11:17:42 ----D---- C:\Windows\SysWOW64 2014-12-09 11:02:11 ----D---- C:\Windows\system32\drivers\etc 2014-12-09 10:52:38 ----D---- C:\Windows\system32\drivers 2014-12-09 10:52:38 ----D---- C:\Windows\System32 2014-12-09 09:23:00 ----D---- C:\Windows\system32\config 2014-12-09 09:21:51 ----D---- C:\Program Files\Common Files 2014-12-09 09:21:32 ----D---- C:\Windows\system32\catroot 2014-12-09 09:21:29 ----D---- C:\ProgramData 2014-12-09 09:21:27 ----D---- C:\Program Files (x86)\Common Files 2014-12-09 09:18:36 ----D---- C:\Windows\Tasks 2014-12-09 09:07:30 ----D---- C:\Windows\winsxs 2014-12-09 08:57:58 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-12-08 19:23:47 ----A---- C:\Windows\system.ini 2014-12-08 19:21:47 ----D---- C:\Windows\SYSWOW64\drivers 2014-12-08 19:21:47 ----D---- C:\Windows\AppPatch 2014-12-08 15:04:10 ----RSD---- C:\Windows\Fonts 2014-12-08 14:49:50 ----D---- C:\Windows\Cursors 2014-12-08 12:41:18 ----A---- C:\Windows\win.ini 2014-12-08 12:34:31 ----D---- C:\Windows\system32\DriverStore 2014-12-08 09:10:37 ----D---- C:\Windows\system32\NDF 2014-12-08 08:56:20 ----D---- C:\Windows\system32\catroot2 2014-12-07 19:40:54 ----D---- C:\Windows\rescache 2014-12-07 19:14:32 ----D---- C:\Windows\SYSWOW64\nl-NL 2014-12-07 19:14:32 ----D---- C:\Windows\system32\nl-NL 2014-12-07 18:46:04 ----D---- C:\Windows\Microsoft.NET 2014-12-07 16:18:22 ----D---- C:\Windows\Registration 2014-12-07 09:55:53 ----SD---- C:\ProgramData\Microsoft 2014-12-07 07:47:15 ----RSD---- C:\Windows\assembly 2014-12-06 15:57:23 ----D---- C:\Windows\ehome 2014-12-06 15:57:23 ----D---- C:\Program Files\Windows Media Player 2014-12-06 15:57:23 ----D---- C:\Program Files\Windows Journal 2014-12-06 15:57:23 ----D---- C:\Program Files\Common Files\System 2014-12-06 15:57:23 ----D---- C:\Program Files (x86)\Windows Media Player 2014-12-06 15:57:22 ----D---- C:\Windows\SYSWOW64\migration 2014-12-06 15:57:22 ----D---- C:\Windows\SYSWOW64\Dism 2014-12-06 15:57:22 ----D---- C:\Windows\system32\wbem 2014-12-06 15:57:22 ----D---- C:\Windows\system32\migration 2014-12-06 15:57:22 ----D---- C:\Windows\system32\drivers\nl-NL 2014-12-06 15:57:22 ----D---- C:\Windows\system32\Dism 2014-12-06 15:57:22 ----D---- C:\Windows\PolicyDefinitions 2014-12-06 15:57:22 ----D---- C:\Program Files\Windows Defender 2014-12-06 15:57:22 ----D---- C:\Program Files (x86)\Windows Defender 2014-12-06 15:57:21 ----D---- C:\Windows\system32\Boot 2014-12-06 15:51:12 ----D---- C:\Windows\SYSWOW64\en-US 2014-12-06 15:51:12 ----D---- C:\Windows\system32\en-US 2014-12-06 14:42:58 ----D---- C:\Program Files (x86)\Internet Explorer 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\zh-TW 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\zh-HK 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\zh-CN 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\wbem 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\tr-TR 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\sv-SE 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\ru-RU 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\pt-PT 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\pt-BR 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\pl-PL 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\nb-NO 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\ko-KR 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\ja-JP 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\it-IT 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\hu-HU 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\fr-FR 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\fi-FI 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\es-ES 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\el-GR 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\de-DE 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\da-DK 2014-12-06 14:42:57 ----D---- C:\Windows\SYSWOW64\cs-CZ 2014-12-06 14:42:57 ----D---- C:\Program Files\Internet Explorer 2014-12-06 14:42:56 ----D---- C:\Windows\system32\zh-TW 2014-12-06 14:42:56 ----D---- C:\Windows\system32\zh-HK 2014-12-06 14:42:56 ----D---- C:\Windows\system32\zh-CN 2014-12-06 14:42:56 ----D---- C:\Windows\system32\tr-TR 2014-12-06 14:42:56 ----D---- C:\Windows\system32\sv-SE 2014-12-06 14:42:56 ----D---- C:\Windows\system32\ru-RU 2014-12-06 14:42:56 ----D---- C:\Windows\system32\pt-PT 2014-12-06 14:42:56 ----D---- C:\Windows\system32\pt-BR 2014-12-06 14:42:56 ----D---- C:\Windows\system32\pl-PL 2014-12-06 14:42:56 ----D---- C:\Windows\system32\nb-NO 2014-12-06 14:42:56 ----D---- C:\Windows\system32\ko-KR 2014-12-06 14:42:56 ----D---- C:\Windows\system32\ja-JP 2014-12-06 14:42:56 ----D---- C:\Windows\system32\it-IT 2014-12-06 14:42:56 ----D---- C:\Windows\system32\hu-HU 2014-12-06 14:42:56 ----D---- C:\Windows\system32\fr-FR 2014-12-06 14:42:56 ----D---- C:\Windows\system32\fi-FI 2014-12-06 14:42:56 ----D---- C:\Windows\system32\es-ES 2014-12-06 14:42:56 ----D---- C:\Windows\system32\el-GR 2014-12-06 14:42:56 ----D---- C:\Windows\system32\de-DE 2014-12-06 14:42:56 ----D---- C:\Windows\system32\da-DK 2014-12-06 14:42:56 ----D---- C:\Windows\system32\cs-CZ 2014-12-06 11:15:54 ----D---- C:\Windows\servicing 2014-12-06 11:15:54 ----D---- C:\Program Files\Windows Sidebar 2014-12-06 11:15:54 ----D---- C:\Program Files\Windows Portable Devices 2014-12-06 11:15:54 ----D---- C:\Program Files\Windows Photo Viewer 2014-12-06 11:15:54 ----D---- C:\Program Files\Windows Mail 2014-12-06 11:15:54 ----D---- C:\Program Files\DVD Maker 2014-12-06 11:15:54 ----D---- C:\Program Files (x86)\Windows Sidebar 2014-12-06 11:15:54 ----D---- C:\Program Files (x86)\Windows Portable Devices 2014-12-06 11:15:54 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2014-12-06 11:15:54 ----D---- C:\Program Files (x86)\Windows Mail 2014-12-06 11:15:53 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\sppui 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\Setup 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\oobe 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\migwiz 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\manifeststore 2014-12-06 11:15:53 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers 2014-12-06 11:15:52 ----D---- C:\Windows\system32\sppui 2014-12-06 11:15:52 ----D---- C:\Windows\system32\Setup 2014-12-06 11:15:52 ----D---- C:\Windows\system32\oobe 2014-12-06 11:15:52 ----D---- C:\Windows\system32\manifeststore 2014-12-06 11:15:52 ----D---- C:\Windows\system32\AdvancedInstallers 2014-12-06 11:15:51 ----D---- C:\Windows\system32\migwiz 2014-12-06 11:15:51 ----D---- C:\Windows\system32\drivers\UMDF 2014-12-06 10:59:19 ----D---- C:\Program Files\Common Files\Microsoft Shared 2014-12-06 10:52:01 ----A---- C:\Windows\SYSWOW64\msclmd.dll 2014-12-06 10:52:01 ----A---- C:\Windows\system32\msclmd.dll 2014-12-06 08:21:22 ----D---- C:\Windows\system32\restore 2014-12-05 10:38:08 ----D---- C:\Windows\system32\GroupPolicy 2014-12-05 10:29:44 ----D---- C:\Windows\system32\wdi 2014-12-05 09:23:22 ----D---- C:\Windows\ShellNew 2014-12-05 09:19:44 ----D---- C:\Windows\LiveKernelReports 2014-12-04 21:29:35 ----D---- C:\Windows\SoftwareDistribution 2014-12-04 20:57:39 ----D---- C:\Windows\Help 2014-12-04 20:48:56 ----D---- C:\Windows\Setup 2014-12-04 20:48:15 ----RD---- C:\Users 2014-12-04 20:47:24 ----D---- C:\Program Files\Windows NT 2014-12-04 20:43:25 ----D---- C:\Windows\system32\CodeIntegrity 2014-12-04 20:31:06 ----D---- C:\Windows\system32\sysprep 2014-12-04 20:29:19 ----D---- C:\Windows\CSC ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-12-09 267632] R0 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [] R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [] R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [] R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-12-05 381440] R0 symsnap;Symantec Volume Snap Shot Driver; C:\Windows\system32\DRIVERS\symsnap.sys [2009-09-21 170032] R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552] R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616] R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-12-09 93568] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-12-09 1050432] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-12-09 436624] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-12-07 50976] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560] R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-12-08 283064] R1 ElRawDisk;ElRawDisk; \??\C:\Windows\system32\drivers\rsdrvx64.sys [2009-02-12 26024] R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2012-02-09 125376] R1 VirtDiskBus;3TB+ Unlock; C:\Windows\system32\DRIVERS\VirtDiskBus64.sys [2011-02-08 66160] R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-12-09 29208] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-12-09 83280] R3 cthda;Sound Blaster HDAudio; C:\Windows\system32\drivers\cthda.sys [2012-10-02 1053024] R3 cthdb;SB Recon3D PCIe Audio Bus Filter; C:\Windows\system32\DRIVERS\cthdb.sys [2012-10-02 26464] R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys [2011-07-29 56960] R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys [2011-07-29 79104] R3 GEARAspiWDM;GearAspiWDM; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 34152] R3 GenericMount;Generic Mount Driver; C:\Windows\system32\DRIVERS\GenericMount.sys [2009-09-21 54320] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-11-21 25816] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-12-09 129752] R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-11-21 63704] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-11-17 197408] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-11-17 20800] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-10-03 38216] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352] S0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-12-09 65776] S0 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [] S0 mferkdet;McAfee Inc. mferkdet; C:\Windows\system32\drivers\mferkdet.sys [] S0 Partizan;Partizan; C:\Windows\system32\drivers\Partizan.sys [] S1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [] S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-12-09 116728] S3 AODDriver;AODDriver; \??\C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver.sys [2010-03-12 52280] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232] S3 catchme;catchme; \??\C:\ComboFix\catchme.sys [] S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [2010-01-27 5248] S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2014-12-05 25640] S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2014-12-05 25640] S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2014-12-05 30528] S3 mfeavfk01;McAfee Inc.; C:\Windows\system32\drivers\mfeavfk01.sys [] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992] S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 31800] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656] S3 Spyder4;Datacolor Spyder4; C:\Windows\system32\DRIVERS\dccmtr.sys [2011-06-02 15360] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688] S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392] S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [] S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys [] S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760] S3 VProEventMonitor;Symantec Event Monitor Driver; C:\Windows\system32\DRIVERS\vproeventmonitor.sys [2009-09-21 20528] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 avast! Antivirus;avast! Antivirus; f:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-09 50344] R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2006-02-28 229376] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136] R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2011-10-19 423424] R2 CtHdaSvc;Sound Blaster Service; C:\Windows\sysWow64\CtHdaSvc.exe [2012-10-02 112128] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-11-21 1871160] R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-11-21 969016] R2 McAfeeFramework;McAfee Framework Service; F:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [2012-09-05 132712] R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2014-07-14 786256] R2 Norton Ghost;Norton Ghost; C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe [2009-10-01 4584288] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-11-17 1796928] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-11-17 19821376] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-11-12 934032] R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880] R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272] R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-11-12 409800] R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136] R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136] R3 SymSnapService;SymSnapService; C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe [2009-09-21 2963960] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-09 116648] S2 McTaskManager;McAfee Task Manager; F:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [] S2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [] S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files (x86)\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [2010-05-18 327064] S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09 267440] S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S3 GenericMount Helper Service;GenericMount Helper Service; C:\Program Files (x86)\Norton Ghost\Shared\Drivers\GenericMountHelper.exe [2009-09-21 1571336] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-09 116648] S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-12-09 194032] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-12-06 114688] S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136] S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096] S3 Symantec SymSnap VSS Provider;Symantec SymSnap VSS Provider; C:\Windows\system32\dllhost.exe [2009-07-14 9728] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136] S4 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296] S4 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-11-17 1149760] S4 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------