Zoek.exe v5.0.0.1 Updated 27-December-2015 Tool run by Philip on di 29-12-2015 at 18:15:01,75. Microsoft Windows 10 Pro 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Philip\Downloads\zoek (2).exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 29-12-2015 18:23:26 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Program Files\log deleted successfully C:\PROGRA~3\Comms deleted successfully C:\PROGRA~3\SoftwareDistribution deleted successfully C:\Users\Philip\AppData\Local\ActiveSync deleted successfully C:\Users\Philip\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Philip\AppData\Local\EmieSiteList deleted successfully C:\Users\Philip\AppData\Local\EmieUserList deleted successfully C:\Users\Philip\AppData\Local\PeerDistRepub deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Users\Philip\AppData\Roaming\DriverCure deleted C:\Users\Philip\AppData\Roaming\ParetoLogic deleted C:\ProgramData\ParetoLogic deleted C:\found.000 deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Philip\AppData\Roaming\Mozilla\Firefox\Profiles\zjTd0dDQ.default\extensions\abs@avira.com deleted "C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-12-28 10:25:15 913A0B236720BB331E3067BBB0CD3D59 67584 --s-a-w- C:\WINDOWS\bootstat.dat 2015-12-21 12:40:02 DF24330C1C47EFDEE8FFBC0D5F7041CE 462775761 ----a-w- C:\WINDOWS\MEMORY.DMP ====== C:\Users\Philip\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-12-28 10:27:10 42DE22BB4E675AE8DADD9038B26F8EFE 2718208 ----a-w- C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-12-28 10:23:03 1008D525DBD436AB171CE6EF432F92D1 44147 ----a-w- C:\WINDOWS\SysWOW64\license.rtf 2015-12-28 10:19:57 FD6EE242ACD2E05AFE920139D12C3053 670928 ----a-w- C:\WINDOWS\SysWOW64\mfds.dll 2015-12-28 10:19:57 EF22B84131DB17D40D523F649CAD31D2 366224 ----a-w- C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2015-12-28 10:19:57 D8E958F0E5929BFEC15238E0E1F94C64 983464 ----a-w- C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2015-12-28 10:19:57 D262A3DA660F5312D059DADB9034392B 2796032 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-12-28 10:19:57 D0693220928997E1DD513B261AF86308 454056 ----a-w- C:\WINDOWS\SysWOW64\AudioEng.dll 2015-12-28 10:19:57 C85501FE7EFD33E06A877B8786F396B6 462760 ----a-w- C:\WINDOWS\SysWOW64\mfreadwrite.dll 2015-12-28 10:19:57 B934E18B1A20A26768F57EDBD6882A38 884256 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-12-28 10:19:57 B13BE7A31C732B5773FDF51FB140B614 334336 ----a-w- C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-12-28 10:19:57 AD2E3CC2771EADB0605CC0FAE73EAA45 405048 ----a-w- C:\WINDOWS\SysWOW64\AudioSes.dll 2015-12-28 10:19:57 A9B375A65A92C45D9723B1BAD8F87D1E 1105920 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2015-12-28 10:19:57 A4CC1E8330E839AA619978E61AEEEAC4 73360 ----a-w- C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-12-28 10:19:57 9ACCC0C1786391EF1FD1FAF12AE22801 340480 ----a-w- C:\WINDOWS\SysWOW64\PlayToDevice.dll 2015-12-28 10:19:57 8310F69B59EFA4EC47B6B3F535BFC3CB 898184 ----a-w- C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-12-28 10:19:57 7E0CB4ADF324AD6552C36181EB0CBC4D 1118208 ----a-w- C:\WINDOWS\SysWOW64\mfnetsrc.dll 2015-12-28 10:19:57 775C32A6DE7E9702CB04B10C69D80457 450904 ----a-w- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-12-28 10:19:57 75F7D82383D8CF10D5999874993A2EF5 27136 ----a-w- C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll 2015-12-28 10:19:57 6D151B11358362786C45F1A4A21576FA 925064 ----a-w- C:\WINDOWS\SysWOW64\mfplat.dll 2015-12-28 10:19:57 600A12A37D8F0B98E3497C59505338D1 716928 ----a-w- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-12-28 10:19:57 5E8F545EA2A3BE324D800FD926E5010A 2180136 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2015-12-28 10:19:57 4CE9BF384DAAE2BF9E49C5B7E2F106F0 270848 ----a-w- C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2015-12-28 10:19:57 4237413A7EDD61589081B9450D657036 116720 ----a-w- C:\WINDOWS\SysWOW64\mfps.dll 2015-12-28 10:19:57 337E7D5B768ABDBEA9F17823F76D5F1B 381952 ----a-w- C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-12-28 10:19:57 32BF0F999279961833888317C3FE45D9 2061824 ----a-w- C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-12-28 10:19:57 2EECE39CDFFF244B2489FD8ACDC14D7A 517632 ----a-w- C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-12-28 10:19:57 2AF0E5217FE677C29669E0243F28D64F 70656 ----a-w- C:\WINDOWS\SysWOW64\AppCapture.dll 2015-12-28 10:19:57 2029AAF923CE131E5157F6175DE66881 2919320 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2015-12-28 10:19:57 1F48933EFAB68EDD3B456C78E17B89CE 871936 ----a-w- C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL 2015-12-28 10:19:57 184F89725539803B64E718BD0F779DC9 569856 ----a-w- C:\WINDOWS\SysWOW64\qdvd.dll 2015-12-28 10:19:56 F8C66D9D6AEC233715C8B32DB203EF6D 502112 ----a-w- C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2015-12-28 10:19:56 EBB01B0223DBB9660E4FFB35854D69BF 400896 ----a-w- C:\WINDOWS\SysWOW64\winspool.drv 2015-12-28 10:19:56 110A45F765495043CB8ED918FEFD8D90 572928 ----a-w- C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2015-12-28 10:19:55 F2061A1835E8844637168800292309BF 84832 ----a-w- C:\WINDOWS\SysWOW64\NetSetupApi.dll 2015-12-28 10:19:53 EDC75B4FF6A66B0AC1A360476D9CBCC9 12125184 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2015-12-28 10:19:53 86A2DFAAE917E8852363BD716BD8D5CF 334848 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-12-28 10:19:53 819363A483BB829C443D94CC77119DC9 18678272 ----a-w- C:\WINDOWS\SysWOW64\edgehtml.dll 2015-12-28 10:19:53 4F04FB02D215667B505A060EEE02B5DF 686592 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2015-12-28 10:19:53 2DA46210CBE5B92C4E79FDD70A6C0ADE 2049024 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-12-28 10:19:53 192B579E14C116D2B742FEBE85A4D3C1 2756096 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb 2015-12-28 10:19:53 0FA8D61A4D4F56063113F9DA4E18848B 289248 ----a-w- C:\WINDOWS\SysWOW64\MFPlay.dll 2015-12-28 10:19:53 083A4C6C21371B011771A350942DEB8F 19339264 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2015-12-28 10:19:52 EB6BAC2C67F848F2C0EFE82AEAC5C67A 1540768 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2015-12-28 10:19:49 F7F009E10E52C760EF48D2AD7E4D892E 29696 ----a-w- C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2015-12-28 10:19:49 F2D9AB28744983980E6BCE08DA077528 21125408 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2015-12-28 10:19:49 D80737E0C4AFE5D4714D14F27A9E6CFB 1706496 ----a-w- C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2015-12-28 10:19:49 D6DF0F68136C6148989E927572319F21 431232 ----a-w- C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-12-28 10:19:49 D213E29D66D7182AF58CB525EFC2F409 421888 ----a-w- C:\WINDOWS\SysWOW64\LogonController.dll 2015-12-28 10:19:49 AA220069ABA44FEB2FEA92FF463E89BC 166912 ----a-w- C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-12-28 10:19:49 9E57FF10D37B672B8781BAF92DB00A8B 9918976 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2015-12-28 10:19:49 76B00BE575C4D8CF3D7334240C8DAF90 683008 ----a-w- C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2015-12-28 10:19:49 5B64BFE61393D22D908BB5E2A17B6147 1328128 ----a-w- C:\WINDOWS\SysWOW64\comsvcs.dll 2015-12-28 10:19:49 5467DAD0BDB397D84052FCCF8686FB9C 60928 ----a-w- C:\WINDOWS\SysWOW64\mssign32.dll 2015-12-28 10:19:49 532AC1D121972B17BE523A9988A3A0E5 2155008 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2015-12-28 10:19:49 4C421E34FF4A836590401A3E9A5B5DE8 415744 ----a-w- C:\WINDOWS\SysWOW64\catsrvut.dll 2015-12-28 10:19:49 31DE6A034E8BBA043CB2F4612033C12A 296488 ----a-w- C:\WINDOWS\SysWOW64\policymanager.dll 2015-12-28 10:19:49 1E7B13CDBA9D57D2BF54A7501FB17376 586080 ----a-w- C:\WINDOWS\SysWOW64\wimgapi.dll 2015-12-28 10:19:49 102F3BB5D63225A25817C8E44B85533F 63528 ----a-w- C:\WINDOWS\SysWOW64\wwapi.dll 2015-12-28 10:19:48 3B1D8CE3E56BA82EF02C126226B7C357 948224 ----a-w- C:\WINDOWS\SysWOW64\Unistore.dll 2015-12-28 10:19:46 FDEEA5397A0D079E1EF8F1B765BC7D04 6297088 ----a-w- C:\WINDOWS\SysWOW64\mos.dll 2015-12-28 10:19:46 FAE7DA27029FDDA27375722B4DC387D7 138240 ----a-w- C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll 2015-12-28 10:19:46 F60E1993D8D8FD2E23516C1278B209C1 34304 ----a-w- C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe 2015-12-28 10:19:46 F32770E19F1CB817274BC85824730E48 470528 ----a-w- C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-12-28 10:19:46 F2D2E8091D0929884E6A86AFD9981E2F 2001408 ----a-w- C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-12-28 10:19:46 F0ED21F9D39229B305C363B6ED023170 11776 ----a-w- C:\WINDOWS\SysWOW64\dciman32.dll 2015-12-28 10:19:46 EBD19D0E20C113468631504BFE56FB3F 2185840 ----a-w- C:\WINDOWS\SysWOW64\d3d11.dll 2015-12-28 10:19:46 D9EF9F5DA78CD085FD23C8EBB6108662 409088 ----a-w- C:\WINDOWS\SysWOW64\StoreAgent.dll 2015-12-28 10:19:46 D707B12965D5E8DFBD7C5BF7FB12AF02 24064 ----a-w- C:\WINDOWS\SysWOW64\WordBreakers.dll 2015-12-28 10:19:46 D51618B0CB2B51F7D9B8DEB38A454126 36352 ----a-w- C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll 2015-12-28 10:19:46 CA260C1A4CFC95D49DBE4DAEDCD65585 58368 ----a-w- C:\WINDOWS\SysWOW64\MosStorage.dll 2015-12-28 10:19:46 C4C80541BDE649F44EA1F81F7D4C510A 503296 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2015-12-28 10:19:46 C132402FABE387126B5CB0D2D3426671 133632 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-12-28 10:19:46 C11AFEBFFDD62BA366D2F146212B415E 110592 ----a-w- C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2015-12-28 10:19:46 BEFAC095C4E511243E91B1F916C243A7 704352 ----a-w- C:\WINDOWS\SysWOW64\WWAHost.exe 2015-12-28 10:19:46 BEDE63EB0B3B100A1FBD2996FE3AF0EF 1505280 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2015-12-28 10:19:46 BC6B60847CDEFFB3DE3AA394366881DF 490496 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-12-28 10:19:46 B8C4EFAA6AAED98E6B5AB57CAFA489B9 1337240 ----a-w- C:\WINDOWS\SysWOW64\user32.dll 2015-12-28 10:19:46 B0DB58B85CF68C61AFBEFC107807FECF 784896 ----a-w- C:\WINDOWS\SysWOW64\NMAA.dll 2015-12-28 10:19:46 ADAF3873B0A29C4AFC0D8B89C3485A94 227840 ----a-w- C:\WINDOWS\SysWOW64\deviceaccess.dll 2015-12-28 10:19:46 AC742BB0B79CD4C535E6A317FD4A18A8 315904 ----a-w- C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-12-28 10:19:46 AA0644D24DD488B1E1517189DD3DC00B 48640 ----a-w- C:\WINDOWS\SysWOW64\MosHostClient.dll 2015-12-28 10:19:46 A971D150CD168A1F7BD775674896F02C 711680 ----a-w- C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-12-28 10:19:46 A95DDF60D6EC95625C4987750619C5DB 93696 ----a-w- C:\WINDOWS\SysWOW64\fontsub.dll 2015-12-28 10:19:46 A820BD54E6B4A68C6E4490EA23FA5650 1860096 ----a-w- C:\WINDOWS\SysWOW64\cdp.dll 2015-12-28 10:19:46 9FE071ED2AAE48A691D234E757297CF3 49152 ----a-w- C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2015-12-28 10:19:46 9FA5093D91ED3CB6B4CE67A040C5E40A 65536 ----a-w- C:\WINDOWS\SysWOW64\wininetlui.dll 2015-12-28 10:19:46 9D97A95801784A94F3DC76E0E49B885C 13017600 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-12-28 10:19:46 97097223B24F49F5934188FA24D74B46 1944576 ----a-w- C:\WINDOWS\SysWOW64\InputService.dll 2015-12-28 10:19:46 93050CE746C09F2F6F49A4893FB060ED 647168 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2015-12-28 10:19:46 92F331E360CB8DC73FA1158934CA9491 86528 ----a-w- C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2015-12-28 10:19:46 92551AFCC476CBEBBB66B6420C60AB20 5202944 ----a-w- C:\WINDOWS\SysWOW64\BingMaps.dll 2015-12-28 10:19:46 90F7CF0E4FFD720EBAC601CABE25D880 2121216 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2015-12-28 10:19:46 8E93F5481D1A608D90104F24DD610B76 540752 ----a-w- C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-12-28 10:19:46 8E2CB7E297C2631CB063319377ED7AD0 303104 ----a-w- C:\WINDOWS\SysWOW64\atmfd.dll 2015-12-28 10:19:46 8BAD6657817E0960C7CB6026323828A1 511320 ----a-w- C:\WINDOWS\SysWOW64\mf.dll 2015-12-28 10:19:46 89F3F69C9996D5BCC879C664BF74A4E2 675064 ----a-w- C:\WINDOWS\SysWOW64\dcomp.dll 2015-12-28 10:19:46 847B31F89A3009D5D851479224B7579A 2680320 ----a-w- C:\WINDOWS\SysWOW64\msftedit.dll 2015-12-28 10:19:46 7F64C196D3FA41C0F437A158FDEF7F50 800768 ----a-w- C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-12-28 10:19:46 7CDF1630DCF7C9167E551874D18C3CE0 709120 ----a-w- C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2015-12-28 10:19:46 761E6E736B47DA42D74227A26F658108 100864 ----a-w- C:\WINDOWS\SysWOW64\offlinelsa.dll 2015-12-28 10:19:46 6BBB4172DDF348821C3C4B7FE844077B 1443328 ----a-w- C:\WINDOWS\SysWOW64\SRHInproc.dll 2015-12-28 10:19:46 6AE2C3CFEA73E2D01CB1E00DBD1EC4A5 205824 ----a-w- C:\WINDOWS\SysWOW64\NmaDirect.dll 2015-12-28 10:19:46 674333934AEF201C56419742CD86782B 973664 ----a-w- C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-12-28 10:19:46 65E98344070A6C0B66ED476F735B14D3 59904 ----a-w- C:\WINDOWS\SysWOW64\EditBufferTestHook.dll 2015-12-28 10:19:46 588E4109C8A78BC211AC1D5756652A67 1139200 ----a-w- C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-12-28 10:19:46 57A2AAE6BD896F54767284BAB7C2D183 1859448 ----a-w- C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-12-28 10:19:46 54F47C0CD2DE99A7B8C7583CF6C22D92 3072 ----a-w- C:\WINDOWS\SysWOW64\lpk.dll 2015-12-28 10:19:46 53E2029302DA056DE856D4C662663B2B 10240 ----a-w- C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2015-12-28 10:19:46 52838DDB3B20C7330A30D89509A93B55 1268736 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2015-12-28 10:19:46 4C85D9A9FD26D3F00BBF5D3F469F1800 241664 ----a-w- C:\WINDOWS\SysWOW64\cryptngc.dll 2015-12-28 10:19:46 451356B814B46BB6582F307E24AA0863 9728 ----a-w- C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2015-12-28 10:19:46 3FCEAC0D175851962F9CF797A370A14F 3072 ----a-w- C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2015-12-28 10:19:46 3B7DA8EC6FC4F16F85934D944A2149CD 791552 ----a-w- C:\WINDOWS\SysWOW64\kerberos.dll 2015-12-28 10:19:46 3A24E199AA5A30D6E7C30D01E2BF4C7E 161280 ----a-w- C:\WINDOWS\SysWOW64\InstallAgent.exe 2015-12-28 10:19:46 382AA3E205808FBF0458A143B0F4ACFF 45568 ----a-w- C:\WINDOWS\SysWOW64\jsproxy.dll 2015-12-28 10:19:46 35383CA7169E12D885B9B553F59E3154 41984 ----a-w- C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2015-12-28 10:19:46 302A0BE9FA2874A3E99C0E25C992E7C7 1467392 ----a-w- C:\WINDOWS\SysWOW64\GdiPlus.dll 2015-12-28 10:19:46 2DE2DAF437341AECB280DBFE88CBB581 346112 ----a-w- C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-12-28 10:19:46 2C5A8D334EFB14914B1618247CD0DAAF 37376 ----a-w- C:\WINDOWS\SysWOW64\atmlib.dll 2015-12-28 10:19:46 262D880248233D3A96C15F7C7E1BAD21 58368 ----a-w- C:\WINDOWS\SysWOW64\MosResource.dll 2015-12-28 10:19:46 23A968565D51FEC30EADFBC70BE35117 793600 ----a-w- C:\WINDOWS\SysWOW64\SRH.dll 2015-12-28 10:19:46 1973BD62F29F443E9BC467FAA9F27159 83456 ----a-w- C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2015-12-28 10:19:46 123BD3D4504BB548A823152EAC57DE00 32040 ----a-w- C:\WINDOWS\SysWOW64\mfpmp.exe 2015-12-28 10:17:23 6F2CA3BDD1C78C465BC0C1E5DDA15B28 2629632 ----a-w- C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-12-28 10:17:23 14129011499850E46153AB0E6C325F87 4847616 ----a-w- C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-12-28 10:14:48 F432E0E5B0958F4982D40EB622FBD7FC 35480 ----a-w- C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-12-28 10:14:48 BF9CAA33ADD4C21C118148B5CFC5494B 778936 ----a-w- C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-12-28 10:14:48 6F391E9286733CC6B34FC0FAB23B8DF3 103120 ----a-w- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-12-28 10:23:57 DD9F859C7570237BF54E7D28E29E31C7 231920 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT 2015-12-28 10:23:03 1008D525DBD436AB171CE6EF432F92D1 44147 ----a-w- C:\WINDOWS\Sysnative\license.rtf 2015-12-28 10:19:57 FAD9326ED152667E57B5B2EDBD9973F8 2544256 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2015-12-28 10:19:57 FAC1E762CB49992381691B00D2069B3E 1063424 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2015-12-28 10:19:57 F5DC166DC9D533651B83B83CD70FD14C 88392 ----a-w- C:\WINDOWS\Sysnative\remoteaudioendpoint.dll 2015-12-28 10:19:57 F3B1BFB19C6A47DE7706A9CF1A177028 526856 ----a-w- C:\WINDOWS\Sysnative\mfreadwrite.dll 2015-12-28 10:19:57 EF94C4BB5DDCEB9F0A092122582CF4E5 516544 ----a-w- C:\WINDOWS\Sysnative\AudioEng.dll 2015-12-28 10:19:57 CCB125BB7072FEAFC68A56749FD2DFD7 1020096 ----a-w- C:\WINDOWS\Sysnative\mfsrcsnk.dll 2015-12-28 10:19:57 C8AEE94042CFDF6383C153AFD284AEF1 497152 ----a-w- C:\WINDOWS\Sysnative\mfmkvsrcsnk.dll 2015-12-28 10:19:57 C08AA0383BCEE881C319F23A5189AB8D 794888 ----a-w- C:\WINDOWS\Sysnative\mfds.dll 2015-12-28 10:19:57 B9A74283BD46350F2A32962C1B16225A 369912 ----a-w- C:\WINDOWS\Sysnative\audiodg.exe 2015-12-28 10:19:57 A2A0FD3DA492A903E6AEC6C2B946F26F 245848 ----a-w- C:\WINDOWS\Sysnative\mfps.dll 2015-12-28 10:19:57 9DA2D5EB73F6F61BB32B63B59DF2BB0C 1299504 ----a-w- C:\WINDOWS\Sysnative\mfnetsrc.dll 2015-12-28 10:19:57 9D9A25E3E658EAC6FA9BC1BC23168516 1092456 ----a-w- C:\WINDOWS\Sysnative\mfplat.dll 2015-12-28 10:19:57 95F53D812EF80A2819E9C1539A629B5F 823264 ----a-w- C:\WINDOWS\Sysnative\mfmpeg2srcsnk.dll 2015-12-28 10:19:57 95B9A9F4D41A54FD421CF6F7323B87FF 126464 ----a-w- C:\WINDOWS\Sysnative\dialserver.dll 2015-12-28 10:19:57 93D891995D253D4B6BCFABEE5C73454B 3428864 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.dll 2015-12-28 10:19:57 8F6118120D9A11A1CFD8822850826064 1155944 ----a-w- C:\WINDOWS\Sysnative\mfasfsrcsnk.dll 2015-12-28 10:19:57 8F53FEB251B01D2582931B8AC642C28A 387072 ----a-w- C:\WINDOWS\Sysnative\qdvd.dll 2015-12-28 10:19:57 89E74EC4422905377D45D58FD2832D02 408128 ----a-w- C:\WINDOWS\Sysnative\AUDIOKSE.dll 2015-12-28 10:19:57 890BF20BDF500E4E84720EA84448EDDF 275456 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2015-12-28 10:19:57 81785D31BEB7C741BB23BE0CB98E691F 536768 ----a-w- C:\WINDOWS\Sysnative\AudioSes.dll 2015-12-28 10:19:57 6100515B0A4A9DE9EB83E632F873D1F7 323072 ----a-w- C:\WINDOWS\Sysnative\MSFlacDecoder.dll 2015-12-28 10:19:57 4588022BF3C34392C0C2AFDC3634C0CF 1065080 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2015-12-28 10:19:57 36208F250EE9B93B87AD6384237373A9 110032 ----a-w- C:\WINDOWS\Sysnative\EncDump.dll 2015-12-28 10:19:57 2AE2C153D33AB0D2B89E0920EC2ACF69 498448 ----a-w- C:\WINDOWS\Sysnative\MFCaptureEngine.dll 2015-12-28 10:19:57 184F5C80753CD7F6400AAA4087288B97 2582016 ----a-w- C:\WINDOWS\Sysnative\MFMediaEngine.dll 2015-12-28 10:19:57 14CE7BCE9C6A442BD4B93AB3CB8765BF 375296 ----a-w- C:\WINDOWS\Sysnative\MDEServer.exe 2015-12-28 10:19:57 0F09B99EF80BB0D914538FC17A305A4F 1131520 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.Audio.dll 2015-12-28 10:19:56 549A1696E594E6939C210972B4AD9747 824320 ----a-w- C:\WINDOWS\Sysnative\WpcWebFilter.dll 2015-12-28 10:19:56 4EB351CB5A23E0F7AB2B7137374EFB85 870400 ----a-w- C:\WINDOWS\Sysnative\wpncore.dll 2015-12-28 10:19:55 C4DF460B84DB6A0D4C18375DE1117DD0 696160 ----a-w- C:\WINDOWS\Sysnative\NetSetupEngine.dll 2015-12-28 10:19:55 38F068BA3D5CE3C53A025E1F9381CC54 115040 ----a-w- C:\WINDOWS\Sysnative\NetSetupApi.dll 2015-12-28 10:19:55 01C759FD50DFD46E30CC56B2B672B1A7 203776 ----a-w- C:\WINDOWS\Sysnative\NetSetupSvc.dll 2015-12-28 10:19:53 EE5BD4F67199E1C5142F3C731035D18C 13381120 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2015-12-28 10:19:53 E761095ADFC48739CA54A3B58242AF0D 24601600 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2015-12-28 10:19:53 D6B9D1A83BDDF6912309A9C7C4024E10 133120 ----a-w- C:\WINDOWS\Sysnative\flvprophandler.dll 2015-12-28 10:19:53 C6F9333F6C5F326B075CBC062E33793D 7680 ----a-w- C:\WINDOWS\Sysnative\readingviewresources.dll 2015-12-28 10:19:53 BBEC134DA91F61E6D91CDB47D8724E86 382464 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2015-12-28 10:19:53 BB2DD53E90A958FDB1254839F30329D5 803840 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2015-12-28 10:19:53 B83CCF1BEECF4BCDE71FC431BAB9A790 34304 ----a-w- C:\WINDOWS\Sysnative\iernonce.dll 2015-12-28 10:19:53 7950D23F5542F6F8A9D41F046C01067F 2756096 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2015-12-28 10:19:53 78CF1420E5E88B1664F92F07386D19A8 22393856 ----a-w- C:\WINDOWS\Sysnative\edgehtml.dll 2015-12-28 10:19:53 7014B74B0F62698EC891A19A781689D5 337840 ----a-w- C:\WINDOWS\Sysnative\MFPlay.dll 2015-12-28 10:19:53 5F8178A9C45D9C69819C63AFC5988C33 66560 ----a-w- C:\WINDOWS\Sysnative\iesetup.dll 2015-12-28 10:19:53 4A657E5F9D4BE53028B643889E786296 2126848 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2015-12-28 10:19:53 2D1682BEC4615A154079383E25BB0DF2 220672 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2015-12-28 10:19:53 18CE63A5B5EB84FF7F9F575C8FE53F44 931328 ----a-w- C:\WINDOWS\Sysnative\MSMPEG2ENC.DLL 2015-12-28 10:19:53 04EDF539ED97A3BFBD7464CED7ADBB7A 783360 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2015-12-28 10:19:52 E81DF157F4F225928EAE2B1E82863BF6 1817160 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2015-12-28 10:19:49 FE808DE33D79F2ACB8757EE544615626 414720 ----a-w- C:\WINDOWS\Sysnative\bcastdvr.exe 2015-12-28 10:19:49 FDB262D0B2C0790385B894AA4B2C0A6C 182784 ----a-w- C:\WINDOWS\Sysnative\shutdownux.dll 2015-12-28 10:19:49 FCB7D0215CA010400777A2144432FBDC 630632 ----a-w- C:\WINDOWS\Sysnative\fontdrvhost.exe 2015-12-28 10:19:49 F40D409308162E071561049ACADF753C 80600 ----a-w- C:\WINDOWS\Sysnative\wwapi.dll 2015-12-28 10:19:49 EFA47480BEB0968E3A18479593B2E60C 18944 ----a-w- C:\WINDOWS\Sysnative\wshrm.dll 2015-12-28 10:19:49 E104F46B2E0C4F760382CF95E248E0AD 43520 ----a-w- C:\WINDOWS\Sysnative\bcastdvr.proxy.dll 2015-12-28 10:19:49 DD723E3E44BBD7A1B94D8914B7E72549 623616 ----a-w- C:\WINDOWS\Sysnative\PhoneProviders.dll 2015-12-28 10:19:49 DA81241A3493CD3B7EEF3AFD6BBE38B6 92352 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll 2015-12-28 10:19:49 D7ED1ADDC1D19A9D6A1C583A938F4AF4 465920 ----a-w- C:\WINDOWS\Sysnative\wwanconn.dll 2015-12-28 10:19:49 D33E93BE685C6B9C72E063EA41F9BAEF 538632 ----a-w- C:\WINDOWS\Sysnative\WWanAPI.dll 2015-12-28 10:19:49 D1BB4122E41E04E2D8D57702396AE031 412512 ----a-w- C:\WINDOWS\Sysnative\wifitask.exe 2015-12-28 10:19:49 D0E812616609B1E6E3317FF46B9177C8 44032 ----a-w- C:\WINDOWS\Sysnative\wsplib.dll 2015-12-28 10:19:49 B8F17AB618578B9024D949DE8308B95A 14336 ----a-w- C:\WINDOWS\Sysnative\dciman32.dll 2015-12-28 10:19:49 B46D8BBF27B186B0AE7C57C88A1A6D93 6572032 ----a-w- C:\WINDOWS\Sysnative\wwanmm.dll 2015-12-28 10:19:49 A6E666BC673DD38C3ECDB53FD83138E7 3993600 ----a-w- C:\WINDOWS\Sysnative\SettingsHandlers_nt.dll 2015-12-28 10:19:49 A44FB85192EE0DD3F7D6518B63044F4E 2598400 ----a-w- C:\WINDOWS\Sysnative\NetworkMobileSettings.dll 2015-12-28 10:19:49 9BF34692BC6933BAB7627EC173EB1E8A 45568 ----a-w- C:\WINDOWS\Sysnative\atmlib.dll 2015-12-28 10:19:49 9AEEB769F72EF13134BC21BA1465CCE3 134656 ----a-w- C:\WINDOWS\Sysnative\wificonnapi.dll 2015-12-28 10:19:49 95AF774B7D20C3006DC0AC9AEDF48655 674816 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.dll 2015-12-28 10:19:49 8C86CB7C7725B196773451DE66602199 75776 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.XboxLive.ProxyStub.dll 2015-12-28 10:19:49 8A0BAD6F9EEFB0FCD1629F6366394380 1814528 ----a-w- C:\WINDOWS\Sysnative\pnidui.dll 2015-12-28 10:19:49 8938F957903BBA18ED242AE4DBF419FD 73728 ----a-w- C:\WINDOWS\Sysnative\wwancfg.dll 2015-12-28 10:19:49 877512145CB9B3F6EBD5424DE15C14F8 365568 ----a-w- C:\WINDOWS\Sysnative\atmfd.dll 2015-12-28 10:19:49 7CDB2034A13C7009CFF479C170E21C90 55808 ----a-w- C:\WINDOWS\Sysnative\rilproxy.dll 2015-12-28 10:19:49 7B106C453D6EF1A32F8669AD503E21BB 517632 ----a-w- C:\WINDOWS\Sysnative\winspool.drv 2015-12-28 10:19:49 71B94A84934AA3DA61378C4121523FEA 86528 ----a-w- C:\WINDOWS\Sysnative\AppCapture.dll 2015-12-28 10:19:49 716E299C1058C9F2030F31BC7270A210 52224 ----a-w- C:\WINDOWS\Sysnative\Wwanpref.dll 2015-12-28 10:19:49 6D7BC576DEC9750D5F8AED361E687384 704000 ----a-w- C:\WINDOWS\Sysnative\CellularAPI.dll 2015-12-28 10:19:49 6D64E74EF63AD36912C89EA80449A299 118272 ----a-w- C:\WINDOWS\Sysnative\fontsub.dll 2015-12-28 10:19:49 6ABAC83AD594B0390C470F9C1C017382 3072 ----a-w- C:\WINDOWS\Sysnative\lpk.dll 2015-12-28 10:19:49 69E727F94BEA64E66C284F3C482F33E6 1035776 ----a-w- C:\WINDOWS\Sysnative\XboxNetApiSvc.dll 2015-12-28 10:19:49 69B4974176206D7276B733B30BCE442E 1717248 ----a-w- C:\WINDOWS\Sysnative\GdiPlus.dll 2015-12-28 10:19:49 686E73A0F24F56A25A78D8EFE8E4B937 1318912 ----a-w- C:\WINDOWS\Sysnative\wifinetworkmanager.dll 2015-12-28 10:19:49 57C2033773055CEE5963EBCB999337F8 210432 ----a-w- C:\WINDOWS\Sysnative\wcmcsp.dll 2015-12-28 10:19:49 486C22DD70BE538B1C164AE38E130009 2352128 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2015-12-28 10:19:49 46BF56CC45F3EBE9DCF04EA702F79FF7 64000 ----a-w- C:\WINDOWS\Sysnative\ihvrilproxy.dll 2015-12-28 10:19:49 447413C46C687CF730051DD8B4EA12F6 75264 ----a-w- C:\WINDOWS\Sysnative\wwanprotdim.dll 2015-12-28 10:19:49 44699ED0B4D39D109D1BAEEF0DB66A9E 22572632 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2015-12-28 10:19:49 445E792DB399A2DA611B1F3C9DC6070D 11545088 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2015-12-28 10:19:49 39E07EE74F50C39C1EB315152F03199C 607232 ----a-w- C:\WINDOWS\Sysnative\wcmsvc.dll 2015-12-28 10:19:49 334A9D347CC52E7581DC21FA7CDBB261 515584 ----a-w- C:\WINDOWS\Sysnative\LogonController.dll 2015-12-28 10:19:49 2D7E3C2913AAE063774795E6790BCC48 1212928 ----a-w- C:\WINDOWS\Sysnative\wwansvc.dll 2015-12-28 10:19:49 2AB2C72D88CE2BC73E6F708D0B1A9657 440160 ----a-w- C:\WINDOWS\Sysnative\services.exe 2015-12-28 10:19:49 233BA5B1A277D0A42E432E9A9F43EF7A 37376 ----a-w- C:\WINDOWS\Sysnative\LaunchWinApp.exe 2015-12-28 10:19:49 0A9C90159378EAF0F45AF2275156EF0D 264544 ----a-w- C:\WINDOWS\Sysnative\ContentDeliveryManager.Utilities.dll 2015-12-28 10:19:49 01AE64981A7C7AE4F84799931D8DAAD1 900608 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.BackgroundTransfer.dll 2015-12-28 10:19:48 FBEFDA259F6254B6590956753421D387 89600 ----a-w- C:\WINDOWS\Sysnative\NFCProvisioningPlugin.dll 2015-12-28 10:19:48 F7AE2EB8D2FA095AD9DED30CCE10BC13 957440 ----a-w- C:\WINDOWS\Sysnative\SRH.dll 2015-12-28 10:19:48 EACD8F5C17AC39E43E1FCD85674F4B0D 1713664 ----a-w- C:\WINDOWS\Sysnative\SRHInproc.dll 2015-12-28 10:19:48 E8C7F673B75210D3F35142361923C945 157184 ----a-w- C:\WINDOWS\Sysnative\dmcertinst.exe 2015-12-28 10:19:48 CD2CC65DDF46F065BCC975C2BC89DD11 1648640 ----a-w- C:\WINDOWS\Sysnative\comsvcs.dll 2015-12-28 10:19:48 CA902510DAF327CCFA59BCBFC00B3BAE 912384 ----a-w- C:\WINDOWS\Sysnative\usermgr.dll 2015-12-28 10:19:48 BA45A9F29AB13A0E66BAABF9D7C30B70 523616 ----a-w- C:\WINDOWS\Sysnative\wimserv.exe 2015-12-28 10:19:48 B1305CDD98D5FC49863279D4B51DB510 618496 ----a-w- C:\WINDOWS\Sysnative\StorSvc.dll 2015-12-28 10:19:48 AB4C1A9F37C0B8467AC923ED4AD727D6 2647552 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2015-12-28 10:19:48 A2469A19FC330A400E2BED8003331BB8 604672 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2015-12-28 10:19:48 A0C330AAF06A36A13171A28FE4B582A2 92160 ----a-w- C:\WINDOWS\Sysnative\policymanagerprecheck.dll 2015-12-28 10:19:48 9FCC3D4817CCA5BCEF1FB4B14E523EBC 78336 ----a-w- C:\WINDOWS\Sysnative\BarcodeProvisioningPlugin.dll 2015-12-28 10:19:48 9E55D606C3CE9A37FB2FE5A419AE9CE6 30208 ----a-w- C:\WINDOWS\Sysnative\StorageUsage.dll 2015-12-28 10:19:48 9976E10E1FC313755C9F8632F96072F7 52224 ----a-w- C:\WINDOWS\Sysnative\jsproxy.dll 2015-12-28 10:19:48 87A8DD15B7DEAC51916358250E5BC7C5 122368 ----a-w- C:\WINDOWS\Sysnative\KnobsCsp.dll 2015-12-28 10:19:48 83365A5A2632275C7B005B7A4995DCE1 416768 ----a-w- C:\WINDOWS\Sysnative\dmenrollengine.dll 2015-12-28 10:19:48 7DD3B4B77A787E06A6B3DC9AE7B451E0 292352 ----a-w- C:\WINDOWS\Sysnative\provengine.dll 2015-12-28 10:19:48 781EFD88C2BD9A95CA6961E16AFF7332 168960 ----a-w- C:\WINDOWS\Sysnative\mdmmigrator.dll 2015-12-28 10:19:48 6F5EB489BC3368DC11CF3AA605D943BB 638464 ----a-w- C:\WINDOWS\Sysnative\enterprisecsps.dll 2015-12-28 10:19:48 6D04648D2E3F42A295B6D080A948E9BA 163328 ----a-w- C:\WINDOWS\Sysnative\provops.dll 2015-12-28 10:19:48 67C1D042FA62E2294973FD0CD1F1BC36 192000 ----a-w- C:\WINDOWS\Sysnative\provisioningcsp.dll 2015-12-28 10:19:48 66312F4AFEFB1AE0B80051F8A5E5B26B 698208 ----a-w- C:\WINDOWS\Sysnative\wimgapi.dll 2015-12-28 10:19:48 65267BF5DDCC86AB6DE29AFF488497AA 248832 ----a-w- C:\WINDOWS\Sysnative\UserMgrProxy.dll 2015-12-28 10:19:48 63A71E0B8BEF5FC3A5C9669B5C771A1C 286208 ----a-w- C:\WINDOWS\Sysnative\provhandlers.dll 2015-12-28 10:19:48 63976F057A5A9FD426DC84FB97CF3446 3671888 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2015-12-28 10:19:48 623DAEC255FDCF586F161CF6BF788627 795840 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2015-12-28 10:19:48 559E4E19F481FBB9AF622E23772533CC 52736 ----a-w- C:\WINDOWS\Sysnative\RemovableMediaProvisioningPlugin.dll 2015-12-28 10:19:48 54051585F9E1A644C3ED024B639C0E32 231936 ----a-w- C:\WINDOWS\Sysnative\KnobsCore.dll 2015-12-28 10:19:48 4C1138686002741A423AF26AC247490D 7476576 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2015-12-28 10:19:48 43091BCAB6446E01AEB9DFFB2538B2F9 1995776 ----a-w- C:\WINDOWS\Sysnative\ActiveSyncProvider.dll 2015-12-28 10:19:48 3690FAA19C6D3C68C033D0E5CB3BDB03 28160 ----a-w- C:\WINDOWS\Sysnative\Windows.Management.Provisioning.ProxyStub.dll 2015-12-28 10:19:48 301A917544D10E9F28A946BA0E84C407 160768 ----a-w- C:\WINDOWS\Sysnative\enrollmentapi.dll 2015-12-28 10:19:48 2DA8708EB1FCB83375A450D401A1ED09 74240 ----a-w- C:\WINDOWS\Sysnative\mssign32.dll 2015-12-28 10:19:48 2B91178DE30EF92DD383486485B0C97D 523776 ----a-w- C:\WINDOWS\Sysnative\catsrvut.dll 2015-12-28 10:19:48 28B52034DB907EA14BF8DFB399BC1A94 1734656 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2015-12-28 10:19:48 25DA92A03FFF1A620A950ED6209CDC8F 77312 ----a-w- C:\WINDOWS\Sysnative\ProvPluginEng.dll 2015-12-28 10:19:48 24206CBE7165E296D598FF98590C4D59 69632 ----a-w- C:\WINDOWS\Sysnative\wininetlui.dll 2015-12-28 10:19:48 1C671129864880F66678D3B80316074E 56320 ----a-w- C:\WINDOWS\Sysnative\provtool.exe 2015-12-28 10:19:48 156963089DF9C18AF330E08BFE41884D 165376 ----a-w- C:\WINDOWS\Sysnative\provdatastore.dll 2015-12-28 10:19:48 121C4B3ED671715017C8A37A8F816F06 809312 ----a-w- C:\WINDOWS\Sysnative\WWAHost.exe 2015-12-28 10:19:48 1083375C70D529AA1C8224E13D9E6F40 334736 ----a-w- C:\WINDOWS\Sysnative\policymanager.dll 2015-12-28 10:19:46 F5AF729AD65041D74FED75E02DA4A4DC 138240 ----a-w- C:\WINDOWS\Sysnative\ETWCoreUIComponentsResources.dll 2015-12-28 10:19:46 F0B772D90082371CE0DDE4286EF0AE16 7199232 ----a-w- C:\WINDOWS\Sysnative\BingMaps.dll 2015-12-28 10:19:46 EBDDBFCAA0E8BF346F5DC13BC364B39E 110592 ----a-w- C:\WINDOWS\Sysnative\Microsoft-Windows-MapControls.dll 2015-12-28 10:19:46 E853D5823793FE6E5FB0351F256DC1F2 223232 ----a-w- C:\WINDOWS\Sysnative\fveapibase.dll 2015-12-28 10:19:46 E0FBBE85A7DC215F97F7B81236CE2674 60928 ----a-w- C:\WINDOWS\Sysnative\XblAuthTokenBrokerExt.dll 2015-12-28 10:19:46 DD97EF0AE9224B8C1161736E033C03F1 1399224 ----a-w- C:\WINDOWS\Sysnative\user32.dll 2015-12-28 10:19:46 DC59D9253F50A2D329945CBDBE3B8B7A 32256 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2015-12-28 10:19:46 D0C4A5B386F585B2BE7620D3CEFD7CE8 119808 ----a-w- C:\WINDOWS\Sysnative\MapsBtSvc.dll 2015-12-28 10:19:46 C46FC25D2742C6426F6581A4C59331D9 35656 ----a-w- C:\WINDOWS\Sysnative\mfpmp.exe 2015-12-28 10:19:46 C2D78B6667E0341802C4F38E9C02F93D 2280448 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2015-12-28 10:19:46 BFFC187B1FFA022F59D652A6A4CA130F 199168 ----a-w- C:\WINDOWS\Sysnative\InstallAgent.exe 2015-12-28 10:19:46 BF1A001A4EBD005CB412E322F20DB0D7 75264 ----a-w- C:\WINDOWS\Sysnative\EditBufferTestHook.dll 2015-12-28 10:19:46 B7D367ABFC188C1AC27C6C961694B5B4 1056256 ----a-w- C:\WINDOWS\Sysnative\JpMapControl.dll 2015-12-28 10:19:46 AD37B56D53795944240011FF4EEBBD30 911648 ----a-w- C:\WINDOWS\Sysnative\dcomp.dll 2015-12-28 10:19:46 ABC346A1CD915DEE6231BB4A7F0B96EC 204800 ----a-w- C:\WINDOWS\Sysnative\Microsoft-Windows-AppModelExecEvents.dll 2015-12-28 10:19:46 A74C62AE99A015CD6275F0D8D8843886 342016 ----a-w- C:\WINDOWS\Sysnative\SensorService.dll 2015-12-28 10:19:46 9F171CF4EDEB38DB4CA906ABD535DC44 13312 ----a-w- C:\WINDOWS\Sysnative\MapsBtSvcProxy.dll 2015-12-28 10:19:46 9C6D0A1464410A25389C9D004DE48D36 175616 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Core.TextInput.dll 2015-12-28 10:19:46 9920C9AD4528A4396D19BC03AA2D0882 58408 ----a-w- C:\WINDOWS\Sysnative\SensorsNativeApi.dll 2015-12-28 10:19:46 960E3DB158FC9D262EE33D928AEDA3F5 320000 ----a-w- C:\WINDOWS\Sysnative\cryptngc.dll 2015-12-28 10:19:46 8C8161E40F42E437161972E8866025D5 3355136 ----a-w- C:\WINDOWS\Sysnative\msftedit.dll 2015-12-28 10:19:46 8BACF65C95DA69173FA80F644502F9BC 26408 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2015-12-28 10:19:46 8AA095B5A4826840B348D0A94969CE1A 1268736 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.Resources.dll 2015-12-28 10:19:46 88B38A7435DFA9B7E8F94F5D5FE999D2 66560 ----a-w- C:\WINDOWS\Sysnative\moshost.dll 2015-12-28 10:19:46 87E291D9CC3ECE9AA56ABFD8063C4050 1223168 ----a-w- C:\WINDOWS\Sysnative\Unistore.dll 2015-12-28 10:19:46 85031015C1F1B9A7DAA002DAAEE341AA 2444288 ----a-w- C:\WINDOWS\Sysnative\twinui.appcore.dll 2015-12-28 10:19:46 849275D7BF36660743973B8E28542E45 51680 ----a-w- C:\WINDOWS\Sysnative\SensorsUtilsV2.dll 2015-12-28 10:19:46 8456D2DBEAC8F06712FE8AC2AB5A1AE2 969728 ----a-w- C:\WINDOWS\Sysnative\kerberos.dll 2015-12-28 10:19:46 839F7EC52C8E6888C4E9120E68652438 589312 ----a-w- C:\WINDOWS\Sysnative\MbaeApi.dll 2015-12-28 10:19:46 836DC2848B800FC890E8FCF96F5E639B 458752 ----a-w- C:\WINDOWS\Sysnative\PlayToDevice.dll 2015-12-28 10:19:46 82EDCF9C603F3FA09AAAACA82D34E74E 450560 ----a-w- C:\WINDOWS\Sysnative\Windows.Internal.Bluetooth.dll 2015-12-28 10:19:46 8109C3D1CFDC7AE78605D8F3EA4EAA20 586208 ----a-w- C:\WINDOWS\Sysnative\mf.dll 2015-12-28 10:19:46 80EEB2E91EE933EFB1384D9866BD997F 64000 ----a-w- C:\WINDOWS\Sysnative\MosHostClient.dll 2015-12-28 10:19:46 80BF2990E01E774D64F6E13F30661942 162304 ----a-w- C:\WINDOWS\Sysnative\tetheringservice.dll 2015-12-28 10:19:46 7DC5115A32BA087DCED8CF76352A79DC 108544 ----a-w- C:\WINDOWS\Sysnative\InputLocaleManager.dll 2015-12-28 10:19:46 7A9FF15EF71DAC09420C4997D3FA7E48 850432 ----a-w- C:\WINDOWS\Sysnative\MapsStore.dll 2015-12-28 10:19:46 79EE5C9F9DF073C315D035A1785B502F 3072 ----a-w- C:\WINDOWS\Sysnative\MapControlStringsRes.dll 2015-12-28 10:19:46 79BD0E63A9E54ED8AFFD19F43B5B83F2 264192 ----a-w- C:\WINDOWS\Sysnative\NmaDirect.dll 2015-12-28 10:19:46 78065D08A6D5886ACF9B6BA7E34A554C 3593216 ----a-w- C:\WINDOWS\Sysnative\win32kfull.sys 2015-12-28 10:19:46 7538F05A7C07DB69F6E82B67CAA67286 92160 ----a-w- C:\WINDOWS\Sysnative\SensorsNativeApi.V2.dll 2015-12-28 10:19:46 7443938BC4B8DCE1D8E6C51BC3F9DBFE 948224 ----a-w- C:\WINDOWS\Sysnative\XblAuthManager.dll 2015-12-28 10:19:46 735C408ADE2017B8D2F6A8D2C2DB7016 7979008 ----a-w- C:\WINDOWS\Sysnative\mos.dll 2015-12-28 10:19:46 6D7B4647F5FB25CE88E2555A9DFF1D2E 70656 ----a-w- C:\WINDOWS\Sysnative\XblAuthManagerProxy.dll 2015-12-28 10:19:46 6D0F04544716C90220B58008B4422B97 459776 ----a-w- C:\WINDOWS\Sysnative\MapConfiguration.dll 2015-12-28 10:19:46 5E7C875662B05B28E899F0C59B549645 286720 ----a-w- C:\WINDOWS\Sysnative\deviceaccess.dll 2015-12-28 10:19:46 5B7B6AF7E94E972DCE4BF892ABD466B6 115200 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2015-12-28 10:19:46 589A33EE394273A4F1338EBF705A1CEF 1387008 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2015-12-28 10:19:46 55A629331D5EB924A1926C18E5028243 764928 ----a-w- C:\WINDOWS\Sysnative\fveapi.dll 2015-12-28 10:19:46 5358F9A3A5C55ED1395BBFFCFA65F551 28672 ----a-w- C:\WINDOWS\Sysnative\mapsupdatetask.dll 2015-12-28 10:19:46 4E5B496EBD95AEE005F54EA49EECAAC6 72704 ----a-w- C:\WINDOWS\Sysnative\MosStorage.dll 2015-12-28 10:19:46 4B4970CB5FF1D25B444F95A18ED8AF22 114688 ----a-w- C:\WINDOWS\Sysnative\offlinelsa.dll 2015-12-28 10:19:46 4AAD96366A51B26F50113A6393CB5587 42496 ----a-w- C:\WINDOWS\Sysnative\mapstoasttask.dll 2015-12-28 10:19:46 48A7AEF3554919C0CBDFECBB25DF1B09 162304 ----a-w- C:\WINDOWS\Sysnative\DeviceCensus.exe 2015-12-28 10:19:46 46668562A5BDD2D2F383CAD6D35DCB15 89088 ----a-w- C:\WINDOWS\Sysnative\MapsCSP.dll 2015-12-28 10:19:46 45B88D0BBAB3EAA10883097C14C33678 1281376 ----a-w- C:\WINDOWS\Sysnative\LicenseManager.dll 2015-12-28 10:19:46 43B6BF7F95CF7D60599740EF2BF0DDD8 938496 ----a-w- C:\WINDOWS\Sysnative\MapControlCore.dll 2015-12-28 10:19:46 42B6285314851A693F68F7A7B79FD1B9 1393664 ----a-w- C:\WINDOWS\Sysnative\win32kbase.sys 2015-12-28 10:19:46 3DF7BD7E0E0CFCF8D8856B639FD46C3C 30720 ----a-w- C:\WINDOWS\Sysnative\tetheringconfigsp.dll 2015-12-28 10:19:46 3C9066503DE3E45CB98C8584DE19C186 28160 ----a-w- C:\WINDOWS\Sysnative\nativemap.dll 2015-12-28 10:19:46 3B36AFC1B127B13A82752A3F02CE9D8C 543232 ----a-w- C:\WINDOWS\Sysnative\StoreAgent.dll 2015-12-28 10:19:46 3A1FCBE9103770CF17F81EBD9809FE1B 697856 ----a-w- C:\WINDOWS\Sysnative\PlayToManager.dll 2015-12-28 10:19:46 35F9920E5B9757E2047C024063C9A279 988160 ----a-w- C:\WINDOWS\Sysnative\NMAA.dll 2015-12-28 10:19:46 35A6E2624696F77A8660529E9C5B7B9A 16984064 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2015-12-28 10:19:46 340B841A05087B581B3F321853996960 2624512 ----a-w- C:\WINDOWS\Sysnative\InputService.dll 2015-12-28 10:19:46 33F4AE1E913D7F865D0CFA716BDC9032 10240 ----a-w- C:\WINDOWS\Sysnative\Microsoft-Windows-MosTrace.dll 2015-12-28 10:19:46 32D57C79EA65D0D6A923BF1C26A0EC0A 558080 ----a-w- C:\WINDOWS\Sysnative\MBMediaManager.dll 2015-12-28 10:19:46 294BD6D65CE93F7B709DBB38F96759DA 2653816 ----a-w- C:\WINDOWS\Sysnative\CoreUIComponents.dll 2015-12-28 10:19:46 25C9F417FA6FE9073392BD34630A89B4 17408 ----a-w- C:\WINDOWS\Sysnative\IcsEntitlementHost.exe 2015-12-28 10:19:46 25086E02B6C3F34BC4646C134C3E1769 1042432 ----a-w- C:\WINDOWS\Sysnative\BingOnlineServices.dll 2015-12-28 10:19:46 23B32FD7B58007D0407B8A4191AB76BB 28672 ----a-w- C:\WINDOWS\Sysnative\WordBreakers.dll 2015-12-28 10:19:46 2031A1DA09AFF8A8BADFFF73511AF306 58368 ----a-w- C:\WINDOWS\Sysnative\MosResource.dll 2015-12-28 10:19:46 1CC123FE215B7FFBA4B7889FD13B32D5 36864 ----a-w- C:\WINDOWS\Sysnative\BackgroundTransferHost.exe 2015-12-28 10:19:46 1A9A77ACDAC29C39F50D2A492FD0DB16 87040 ----a-w- C:\WINDOWS\Sysnative\tzautoupdate.dll 2015-12-28 10:19:46 183B210A411E23AC9C5374AEE5645312 36352 ----a-w- C:\WINDOWS\Sysnative\UIAutomationCoreRes.dll 2015-12-28 10:19:46 10B6962619F3965030395019E352B7B4 870400 ----a-w- C:\WINDOWS\Sysnative\modernexecserver.dll 2015-12-28 10:19:46 10020730E0E51555A58C20D361F233A9 2772584 ----a-w- C:\WINDOWS\Sysnative\d3d11.dll 2015-12-28 10:19:46 0DC4BEB16161362B4E46D117204D8566 2843136 ----a-w- C:\WINDOWS\Sysnative\cdp.dll 2015-12-28 10:19:46 08F0E6B466F44EA24CA1601F3196E43E 9728 ----a-w- C:\WINDOWS\Sysnative\Microsoft-Windows-MosHost.dll 2015-12-28 10:19:46 03EB1EBAB72BB8322C30D070C346EA33 1395200 ----a-w- C:\WINDOWS\Sysnative\UIAutomationCore.dll 2015-12-28 10:19:46 0161DABC5CDB2BE6D0B91BEB5386B47D 52736 ----a-w- C:\WINDOWS\Sysnative\tetheringclient.dll 2015-12-28 10:19:46 0053C878CDBA8F8D55339547EC2E99E8 269824 ----a-w- C:\WINDOWS\Sysnative\moshostcore.dll 2015-12-28 10:17:23 F44AA79DF45B1CAE6E6C64372D846AA5 6359040 ----a-w- C:\WINDOWS\Sysnative\NlsData0009.dll 2015-12-28 10:17:23 E52612EA0C1C1ACD3ABFD09534F6AAE6 5739520 ----a-w- C:\WINDOWS\Sysnative\prm0009.dll 2015-12-28 10:17:23 8F1CD3FABC7F24FE329FE39A3EB58C58 2629632 ----a-w- C:\WINDOWS\Sysnative\NlsLexicons0009.dll 2015-12-28 10:14:45 E91942A0D00C6AA014B2EA33EE0ED0A3 35480 ----a-w- C:\WINDOWS\Sysnative\TsWpfWrp.exe 2015-12-28 10:14:45 E2296A6174894682DF8F0FF29FDDCC82 1166520 ----a-w- C:\WINDOWS\Sysnative\PresentationNative_v0300.dll 2015-12-28 10:14:45 C5FEF4B4A7FB961ECDB0AB07DBCF379E 124624 ----a-w- C:\WINDOWS\Sysnative\PresentationCFFRasterizerNative_v0300.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2015-12-28 10:19:55 91D3F2A6253EF83EFBD7903028F58C4D 118624 ----a-w- C:\WINDOWS\Sysnative\drivers\tdx.sys 2015-12-28 10:19:52 EFEFC245B884B1BE0401931398DCD707 2152800 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2015-12-28 10:19:52 70148EFA9A562E7185B75BBE7D376BF7 578912 ----a-w- C:\WINDOWS\Sysnative\drivers\afd.sys 2015-12-28 10:19:49 DBBACE77DDE8CCFD85B37B114965C385 147968 ----a-w- C:\WINDOWS\Sysnative\drivers\rmcast.sys 2015-12-28 10:19:48 EF536C54AB9281FDC4E83B07279FCFC4 35680 ----a-w- C:\WINDOWS\Sysnative\drivers\wimmount.sys 2015-12-28 10:19:46 DE6D7DC78D956928F59F7415A0F41E13 95072 ----a-w- C:\WINDOWS\Sysnative\drivers\sdstor.sys 2015-12-28 10:19:46 C24C27FDF93B85A4EFCF25F830253AA2 117248 ----a-w- C:\WINDOWS\Sysnative\drivers\capimg.sys 2015-12-28 10:19:46 80977779A19947939D680A4899E829EC 604928 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2015-12-28 10:19:46 7D8B9214692C4D0F1646215D9984E19A 161632 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-12-28 18:21:21 -------- d-----w- C:\Program Files\trend micro 2015-12-28 10:31:21 -------- d-----w- C:\Program Files\Common Files\SpeechEngines 2015-12-28 10:27:13 -------- d-----w- C:\Program Files\Realtek 2015-12-28 10:15:17 -------- d-----w- C:\Program Files\Reference Assemblies 2015-12-28 10:15:17 -------- d-----w- C:\Program Files\MSBuild ======= C:\PROGRA~2 ===== 2015-12-28 10:31:23 -------- d-----w- C:\PROGRA~2\COMMON~1\SpeechEngines 2015-12-28 10:15:17 -------- d-----w- C:\PROGRA~2\Reference Assemblies 2015-12-28 10:15:17 -------- d-----w- C:\PROGRA~2\MSBuild 2015-11-29 18:29:25 -------- d-----w- C:\PROGRA~2\OpenOffice 4 ======= C: ===== ====== C:\Users\Philip\AppData\Roaming ====== 2015-12-29 17:14:08 -------- d-s---w- C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow 2015-12-29 10:57:33 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\DataSharing 2015-12-28 10:41:41 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Packages 2015-12-28 10:39:41 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft 2015-12-28 10:34:20 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 2015-12-28 10:34:20 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility 2015-12-28 10:34:20 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 2015-12-28 10:34:20 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility 2015-12-28 10:29:55 -------- d-s---r- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-12-28 10:29:55 -------- d-----w- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-12-28 10:29:55 -------- d-----w- C:\Users\Philip\AppData\Roaming 2015-12-28 10:29:55 -------- d-----w- C:\Users\Philip\AppData\Local\Temp 2015-12-28 10:29:55 -------- d-----w- C:\Users\Philip\AppData\Local\Microsoft 2015-12-28 10:29:55 -------- d-----w- C:\Users\Philip\AppData\Local 2015-12-28 10:29:55 -------- d-----r- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-12-28 10:29:55 -------- d-----r- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-12-28 10:29:55 -------- d-----r- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-12-28 10:29:55 -------- d-----r- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs 2015-12-28 10:24:35 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache 2015-12-28 10:24:13 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming 2015-12-28 10:24:13 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp 2015-12-28 10:24:07 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Roaming 2015-12-28 10:24:07 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp 2015-12-28 10:24:07 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Microsoft 2015-12-28 10:24:07 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local 2015-12-28 10:16:46 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft 2015-12-21 12:55:27 -------- d-----w- C:\Users\Philip\AppData\Local\ElevatedDiagnostics 2015-12-08 14:11:49 407AAB8C27CF7081EECE071C90A65B83 17 ----a-w- C:\Users\Philip\AppData\Local\resmon.resmoncfg 2015-12-07 17:31:27 -------- d-----w- C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome ====== C:\Users\Philip ====== 2015-12-28 18:23:38 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Philip\Downloads\RSITx64 (1).exe 2015-12-28 18:20:24 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Philip\Downloads\RSITx64.exe 2015-12-28 10:46:38 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Philip\ntuser.ini 2015-12-28 10:29:55 -------- d--h--w- C:\Users\Philip\AppData 2015-12-28 10:24:39 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp 2015-12-28 10:24:13 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\Saved Games 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Videos 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Pictures 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Music 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Links 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Favorites 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Downloads 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Documents 2015-12-28 10:24:13 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Desktop 2015-12-28 10:24:08 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\Saved Games 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Videos 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Pictures 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Music 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Links 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Favorites 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Downloads 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Documents 2015-12-28 10:24:08 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Desktop 2015-12-28 10:24:07 -------- d--h--w- C:\WINDOWS\serviceprofiles\networkservice\AppData 2015-12-28 09:40:51 73D6CB17CCDF3E6422E52D4B24040599 18446336 ----a-w- C:\Users\Philip\Downloads\MediaCreationTool.exe 2015-11-29 18:30:00 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2 ====== C: exe-files == 2015-12-29 05:56:13 4E95AB8BEB2C8FD53B348EF4AD5121C5 149184 ----a-w- C:\Windows\Temp\7CC770BC-BF8B-41B1-A1FB-321F5F330EE1\DismHost.exe 2015-12-28 18:23:38 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Philip\Downloads\RSITx64 (1).exe 2015-12-28 18:21:22 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Philip.exe 2015-12-28 18:20:24 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Philip\Downloads\RSITx64.exe 2015-12-28 10:56:16 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\Philip\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\OneDriveSetup.exe 2015-12-28 10:56:16 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\Philip\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\OneDriveSetup.exe 2015-12-28 10:55:58 EB0965F7AE1394C0A3165A5E9A32C44D 164040 ----a-w- C:\Users\Philip\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncConfig.exe 2015-12-28 10:55:56 2DB7D5B28812523AAF17F71A8EB4832E 171712 ----a-w- C:\Users\Philip\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileCoAuth.exe 2015-12-28 10:19:57 B9A74283BD46350F2A32962C1B16225A 369912 ----a-w- C:\Windows\System32\audiodg.exe 2015-12-28 10:19:57 B13BE7A31C732B5773FDF51FB140B614 334336 ----a-w- C:\Windows\SysWOW64\bcastdvr.exe 2015-12-28 10:19:57 A311E40B856ACCE11AD177AD40574385 356864 ----a-w- C:\Windows\SystemApps\Microsoft.XboxGameCallableUI_cw5n1h2txyewy\XBox.TCUI.exe 2015-12-28 10:19:57 791B8A108F9A7CC72E5DF83A9992557D 2095968 ----a-w- C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe 2015-12-28 10:19:57 14CE7BCE9C6A442BD4B93AB3CB8765BF 375296 ----a-w- C:\Windows\System32\MDEServer.exe 2015-12-28 10:19:56 6ADEBB28E5AB802CC671523936CA51DA 264032 ----a-w- C:\Windows\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe 2015-12-28 10:19:53 E7CD04555F47651B79A50DBA6148019C 820416 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2015-12-28 10:19:53 D0C33795F36FDA5E6ABA96534AE40682 7319408 ----a-w- C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe 2015-12-28 10:19:53 2D1682BEC4615A154079383E25BB0DF2 220672 ----a-w- C:\Windows\System32\ie4uinit.exe 2015-12-28 10:19:53 05CB7AA244D84ED3BB43FDA10413E2F8 815808 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-12-28 10:19:52 0BD0029D4DB1AE29640692C2DDFA5C49 315760 ----a-w- C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe 2015-12-28 10:19:49 FE808DE33D79F2ACB8757EE544615626 414720 ----a-w- C:\Windows\System32\bcastdvr.exe 2015-12-28 10:19:49 FCB7D0215CA010400777A2144432FBDC 630632 ----a-w- C:\Windows\System32\fontdrvhost.exe 2015-12-28 10:19:49 F7F009E10E52C760EF48D2AD7E4D892E 29696 ----a-w- C:\Windows\SysWOW64\LaunchWinApp.exe 2015-12-28 10:19:49 D1BB4122E41E04E2D8D57702396AE031 412512 ----a-w- C:\Windows\System32\wifitask.exe 2015-12-28 10:19:49 A91A579274B3EF5DF8547CC643354CE7 167936 ----a-w- C:\Windows\System32\oobe\msoobe.exe 2015-12-28 10:19:49 9F4602D70BAAE3BC8F352428280EED1A 9371480 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe 2015-12-28 10:19:49 8F26CB57B225F046E49A4D8003DAE920 83704 ----a-w- C:\Windows\ImmersiveControlPanel\SystemSettings.exe 2015-12-28 10:19:49 687A06910237E430194D677BDAA47E96 219136 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe 2015-12-28 10:19:49 583C928C02CD7A283AFB7A9007ECB444 578048 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\PlacesServer.exe 2015-12-28 10:19:49 2E75E8FC1E833E2BB55D4272E3674B8D 104448 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe 2015-12-28 10:19:49 2AB2C72D88CE2BC73E6F708D0B1A9657 440160 ----a-w- C:\Windows\System32\services.exe 2015-12-28 10:19:49 233BA5B1A277D0A42E432E9A9F43EF7A 37376 ----a-w- C:\Windows\System32\LaunchWinApp.exe 2015-12-28 10:19:48 E8C7F673B75210D3F35142361923C945 157184 ----a-w- C:\Windows\System32\dmcertinst.exe 2015-12-28 10:19:48 C79AC2800B53AE4848A4B1390623D0E7 12288 ----a-w- C:\Windows\System32\SystemResetPlatform\SystemResetPlatform.exe 2015-12-28 10:19:48 BA45A9F29AB13A0E66BAABF9D7C30B70 523616 ----a-w- C:\Windows\System32\wimserv.exe 2015-12-28 10:19:48 6CE6E37999F7595697A764C52417F4E1 56320 ----a-w- C:\Windows\System32\SystemResetPlatform\SystemResetOSUpdates.exe 2015-12-28 10:19:48 4C1138686002741A423AF26AC247490D 7476576 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-12-28 10:19:48 1C671129864880F66678D3B80316074E 56320 ----a-w- C:\Windows\System32\provtool.exe 2015-12-28 10:19:48 121C4B3ED671715017C8A37A8F816F06 809312 ----a-w- C:\Windows\System32\WWAHost.exe 2015-12-28 10:19:46 F60E1993D8D8FD2E23516C1278B209C1 34304 ----a-w- C:\Windows\SysWOW64\BackgroundTransferHost.exe 2015-12-28 10:19:46 C46FC25D2742C6426F6581A4C59331D9 35656 ----a-w- C:\Windows\System32\mfpmp.exe 2015-12-28 10:19:46 BFFC187B1FFA022F59D652A6A4CA130F 199168 ----a-w- C:\Windows\System32\InstallAgent.exe 2015-12-28 10:19:46 BEFAC095C4E511243E91B1F916C243A7 704352 ----a-w- C:\Windows\SysWOW64\WWAHost.exe 2015-12-28 10:19:46 8E93F5481D1A608D90104F24DD610B76 540752 ----a-w- C:\Windows\SysWOW64\fontdrvhost.exe 2015-12-28 10:19:46 8BACF65C95DA69173FA80F644502F9BC 26408 ----a-w- C:\Windows\System32\wuauclt.exe 2015-12-28 10:19:46 48A7AEF3554919C0CBDFECBB25DF1B09 162304 ----a-w- C:\Windows\System32\DeviceCensus.exe 2015-12-28 10:19:46 3A24E199AA5A30D6E7C30D01E2BF4C7E 161280 ----a-w- C:\Windows\SysWOW64\InstallAgent.exe 2015-12-28 10:19:46 25C9F417FA6FE9073392BD34630A89B4 17408 ----a-w- C:\Windows\System32\IcsEntitlementHost.exe 2015-12-28 10:19:46 1CC123FE215B7FFBA4B7889FD13B32D5 36864 ----a-w- C:\Windows\System32\BackgroundTransferHost.exe 2015-12-28 10:19:46 123BD3D4504BB548A823152EAC57DE00 32040 ----a-w- C:\Windows\SysWOW64\mfpmp.exe 2015-12-28 10:14:48 F432E0E5B0958F4982D40EB622FBD7FC 35480 ----a-w- C:\Windows\SysWOW64\TsWpfWrp.exe 2015-12-28 10:14:45 E91942A0D00C6AA014B2EA33EE0ED0A3 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe 2015-12-28 09:50:08 FB2D29DDC97E5A936CD24D7EE027927F 10378432 ----a-w- C:\$WINDOWS.~BT\Sources\setupprep.exe 2015-12-28 09:50:08 EB4F769491FAE57AA057CDBE80C32632 271040 ----a-w- C:\$WINDOWS.~BT\Sources\setup.exe 2015-12-28 09:50:08 8D12AF03602E57C32E6655DD0CA2DB35 95424 ----a-w- C:\$WINDOWS.~BT\Sources\setuperror.exe 2015-12-28 09:50:07 0628856023487CD98E066D3DD1BE6317 127168 ----a-w- C:\$WINDOWS.~BT\Sources\rollback.exe 2015-12-28 09:50:00 3BB92CF41D6ABBA32674C8176C859BD0 279232 ----a-w- C:\$WINDOWS.~BT\Sources\mighost.exe 2015-12-28 09:49:57 86E7E2E5285F47D96A7237A0314DA893 494080 ----a-w- C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-iasserver-migplugin\iasmigreader.exe 2015-12-28 09:49:56 061462DE99D630A0A1264B2ADE68C4D1 310624 ----a-w- C:\$WINDOWS.~BT\Sources\dism.exe 2015-12-28 09:49:54 FEC74F125B7E2214322F776B8F5E562F 111968 ----a-w- C:\$WINDOWS.~BT\Boot\bootsect.exe 2015-12-28 09:49:54 A06997C01F8CBA4C3410BDEDB11FCFDC 797024 ----a-w- C:\$WINDOWS.~BT\Boot\memtest.exe 2015-12-28 09:49:50 F7D073EB7D3127C9BC762FC56FB1EF67 759488 ----a-w- C:\$WINDOWS.~BT\Sources\SetupHost.exe 2015-12-28 09:49:50 1BFB6914B4C94F025671CFAA3C70146B 173760 ----a-w- C:\$WINDOWS.~BT\Sources\setupplatform.exe 2015-12-28 09:49:49 86C095AF49B6EB83523F819ACA414823 88256 ----a-w- C:\$WINDOWS.~BT\Sources\diagtrackrunner.exe 2015-12-28 09:49:49 307B78B19E5DC4AD634F3F57E9F30E93 1025616 ----a-w- C:\$WINDOWS.~BT\Sources\gatherosstate.exe 2015-12-28 09:40:51 73D6CB17CCDF3E6422E52D4B24040599 18446336 ----a-w- C:\Users\Philip\Downloads\MediaCreationTool.exe 2015-12-26 14:33:25 1B16795D3CB7A9FAA3FC41C56EF2966D 149184 ----a-w- C:\Windows.old\Users\Philip\AppData\Local\Temp\7AC94CC2-5C65-4CE6-989B-410C77110204\DismHost.exe 2015-12-23 17:23:45 1B16795D3CB7A9FAA3FC41C56EF2966D 149184 ----a-w- C:\Windows.old\Users\Philip\AppData\Local\Temp\40CE08F4-4037-46AA-AC9E-BEBA0BCA8A36\DismHost.exe === C: other files == 2015-12-28 10:55:55 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\Philip\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\CollectOneDriveLogs.bat 2015-12-28 10:19:55 91D3F2A6253EF83EFBD7903028F58C4D 118624 ----a-w- C:\Windows\System32\drivers\tdx.sys 2015-12-28 10:19:52 EFEFC245B884B1BE0401931398DCD707 2152800 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2015-12-28 10:19:52 70148EFA9A562E7185B75BBE7D376BF7 578912 ----a-w- C:\Windows\System32\drivers\afd.sys 2015-12-28 10:19:49 DBBACE77DDE8CCFD85B37B114965C385 147968 ----a-w- C:\Windows\System32\drivers\rmcast.sys 2015-12-28 10:19:48 EF536C54AB9281FDC4E83B07279FCFC4 35680 ----a-w- C:\Windows\System32\drivers\wimmount.sys 2015-12-28 10:19:46 DE6D7DC78D956928F59F7415A0F41E13 95072 ----a-w- C:\Windows\System32\drivers\sdstor.sys 2015-12-28 10:19:46 C24C27FDF93B85A4EFCF25F830253AA2 117248 ----a-w- C:\Windows\System32\drivers\capimg.sys 2015-12-28 10:19:46 80977779A19947939D680A4899E829EC 604928 ----a-w- C:\Windows\System32\drivers\cng.sys 2015-12-28 10:19:46 7D8B9214692C4D0F1646215D9984E19A 161632 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-12-28 10:19:46 78065D08A6D5886ACF9B6BA7E34A554C 3593216 ----a-w- C:\Windows\System32\win32kfull.sys 2015-12-28 10:19:46 5B7B6AF7E94E972DCE4BF892ABD466B6 115200 ----a-w- C:\Windows\System32\win32k.sys 2015-12-28 10:19:46 42B6285314851A693F68F7A7B79FD1B9 1393664 ----a-w- C:\Windows\System32\win32kbase.sys 2015-12-28 09:50:01 1ED38834BD4EDFAE593B5D64EDED3355 22720 ----a-w- C:\$WINDOWS.~BT\Sources\nxquery.sys 2015-12-28 09:49:59 46E876C55F0B4A5EAC1DD6F36B10156D 6868 ----a-w- C:\$WINDOWS.~BT\Sources\etwproviders\etwproviderinstall.vbs 2015-12-28 09:49:54 D4BEFEBF3CEF129AC087422B9E912788 4096 ----a-w- C:\$WINDOWS.~BT\Boot\etfsboot.com ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-2105106434-2838126140-310294661-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\Philip\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "GoogleChromeAutoLaunch_79E03DDA57221DD184735CE95D8488A3"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Avira Systray"="C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe" "avgnt"="C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe /min" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\Philip\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "GoogleChromeAutoLaunch_79E03DDA57221DD184735CE95D8488A3"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31-08-2015 06:50] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31-08-2015 06:50] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{7EB1D0F0-72A4-49BC-BCE9-CDFC613BCB0A}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions flliilndjeohchalpbbcdekjklbdgfkk - No path found[] Google Slides - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Avira Browser Safety - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk Google Docs Offline - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Google Maps - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh Chrome Web Store Payments - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage-journal deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 HKCU\SearchScopes\{692EFFFC-9B1D-41EC-9F88-711362B6E7BD} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{692EFFFC-9B1D-41EC-9F88-711362B6E7BD}\Non-Matches - No_Url_Value ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Philip\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Philip\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Philip\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Philip\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=138 folders=37 7810589 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Philip\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 29-12-2015 at 18:49:16,08 ======================