Ga naar inhoud

Welkom op PC Helpforum!
PC Helpforum helpt GRATIS computergebruikers sinds 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!

zannata

Lid
  • Aantal items

    75
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door zannata


  1. info.txt logfile of random's system information tool 1.10 2018-01-06 21:21:21

    ======MBR======

    0x33C08ED0BC007C8EC08ED8BE007CBF0006B90002FCF3A450681C06CBFBB90400BDBE07807E00007C0B0F850E0183C510E2F1CD1888560055C6461105C6461000B441BBAA55CD135D720F81FB55AA7509F7C101007403FE46106660807E1000742666680000000066FF760868000068007C680100681000B4428A56008BF4CD139F83C4109EEB14B80102BB007C8A56008A76018A4E028A6E03CD136661731CFE4E11750C807E00800F848A00B280EB845532E48A5600CD135DEB9E813EFE7D55AA756EFF7600E88D007517FAB0D1E664E88300B0DFE660E87C00B0FFE664E87500FBB800BBCD1A6623C0753B6681FB54435041753281F90201722C666807BB00006668000200006668080000006653665366556668000000006668007C0000666168000007CD1A5A32F6EA007C0000CD18A0B707EB08A0B607EB03A0B50732E40500078BF0AC3C007409BB0700B40ECD10EBF2F4EBFD2BC9E464EB002402E0F82402C3496E76616C696420706172746974696F6E207461626C65004572726F72206C6F6164696E67206F7065726174696E672073797374656D004D697373696E67206F7065726174696E672073797374656D000000637B9AE6B9D8AD000080202100077E25190008000000380600007E261907FEFFFF0040060000B8CE3700FEFFFF07FEFFFF00F8D4370028600200FEFFFF0CFEFFFF0020353A3038030055AA

    ======Uninstall list======

    AMD Catalyst Control Center-->"C:\AMD\WU-CCC2\ccc2_install\WULaunchApp.exe" -uninstall
    ANT Drivers Installer x64-->MsiExec.exe /I{130CD69F-B47C-45A0-9FFF-783A6E4FB0ED}
    Belgium e-ID middleware 4.2.8 (build 3252)-->MsiExec.exe /I{DB942AEA-93D6-4FE4-8862-180D35A73252}
    Catalyst Control Center - Branding-->MsiExec.exe /I{11087D24-567D-7D88-69C6-D7A08B5F4C47}
    CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
    Elevated Installer-->MsiExec.exe /I{FDE98D7C-19CB-4167-A237-BB221E47A829}
    Garmin Communicator Plugin x64-->MsiExec.exe /X{70A381F1-C161-4D61-A20C-BE12FC6777DF}
    Garmin Communicator Plugin-->MsiExec.exe /X{71DBFBF2-F7EB-4268-8485-9471D83C4E66}
    Garmin Express Tray-->MsiExec.exe /I{2DC91B57-3CB6-4FCB-9565-F671A313E980}
    Garmin Express-->"C:\ProgramData\Package Cache\{6600fdd5-352f-4aee-8499-72e01c616240}\GarminExpressInstaller.exe"  /uninstall
    Garmin Express-->MsiExec.exe /I{98793CB2-0177-4086-A95A-F26B805889B0}
    Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\Installer\setup.exe" --uninstall --system-level --verbose-logging
    Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
    HD Tune 2.55-->"C:\Program Files (x86)\HD Tune\unins000.exe"
    Java 8 Update 151-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F32180151F0}
    KB4023057-->MsiExec.exe /X{27C6D60B-CAD4-4C70-A1F2-299C731EA8F7}
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727-->"C:\ProgramData\Package Cache\{15134cb0-b767-4960-a911-f2d16ae54797}\vcredist_x64.exe"  /uninstall
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727-->"C:\ProgramData\Package Cache\{22154f09-719a-4619-bb71-5b3356999fbf}\vcredist_x86.exe"  /uninstall
    Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
    Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
    Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727-->MsiExec.exe /X{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}
    Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
    National Instruments Software-->"C:\Program Files (x86)\National Instruments\Shared\NIUninstaller\uninst.exe"
    Stuurprogrammapakket voor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201)-->rundll32.exe C:\Program Files\DIFX\4CBAA6~1\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\Windows\System32\DriverStore\FileRepository\ant_libusb.inf_amd64_54173307afc55815\ant_libusb.inf
    Stuurprogrammapakket voor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1)-->rundll32.exe C:\Program Files\DIFX\4CBAA6~1\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\Windows\System32\DriverStore\FileRepository\usb_ant_siusbxp_3_1.inf_amd64_a786cf555bc1afd4\usb_ant_siusbxp_3_1.inf
    Synaptics TouchPad Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
    VISA Shared Components 64-Bit-->C:\Windows\SysWOW64\VISA_Shared_CleanupUtility.exe /fromARP
    VISA Shared Components 64-Bit-->MsiExec.exe /I{0F16C926-DC95-46B1-93B2-8FE816486813}

    ======System event log======

    Computer Name: David-hp
    Event Code: 27
    Message: Het opstarttype was 0x0.
    Record Number: 5
    Source Name: Microsoft-Windows-Kernel-Boot
    Time Written: 20180105192353.671681-000
    Event Type: Informatie
    User: NT AUTHORITY\SYSTEM

    Computer Name: David-hp
    Event Code: 153
    Message: Beveiliging op basis van virtualisatie (beleid: 0) is disabled.
    Record Number: 4
    Source Name: Microsoft-Windows-Kernel-Boot
    Time Written: 20180105192353.671511-000
    Event Type: Informatie
    User: NT AUTHORITY\SYSTEM

    Computer Name: David-hp
    Event Code: 12
    Message: Het besturingssysteem is gestart op systeemtijd ‎2018‎-‎01‎-‎05T19:23:53.499769600Z.
    Record Number: 3
    Source Name: Microsoft-Windows-Kernel-General
    Time Written: 20180105192353.671436-000
    Event Type: Informatie
    User: NT AUTHORITY\SYSTEM

    Computer Name: David-hp
    Event Code: 6005
    Message: De Event Log-service is gestart.
    Record Number: 2
    Source Name: EventLog
    Time Written: 20180105192534.631356-000
    Event Type: Informatie
    User: 

    Computer Name: David-hp
    Event Code: 6009
    Message: Microsoft (R) Windows (R) 10.00. 16299  Multiprocessor Free.
    Record Number: 1
    Source Name: EventLog
    Time Written: 20180105192534.631356-000
    Event Type: Informatie
    User: 

    =====Application event log=====

    Computer Name: David-hp
    Event Code: 916
    Message: svchost (2368,G,0) De bètafunctie EseDiskFlushConsistency is ingeschakeld in ESENT als gevolg van de instellingen 0x800000 in de bètasitemodus.
    Record Number: 5
    Source Name: ESENT
    Time Written: 20180105192543.178710-000
    Event Type: Informatie
    User: 

    Computer Name: David-hp
    Event Code: 1531
    Message: De User Profile-service is gestart.  


    Record Number: 4
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20180105192535.684400-000
    Event Type: Informatie
    User: NT AUTHORITY\SYSTEM

    Computer Name: David-hp
    Event Code: 4097
    Message: De automatische update van het basiscertificaat (onderwerp: <CN=VeriSign Class 3 Public Primary Certification Authority - G5, OU="(c) 2006 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US>) is voltooid. Sha1-vingerafdruk: <4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5>.
    Record Number: 3
    Source Name: Microsoft-Windows-CAPI2
    Time Written: 20180105192532.716486-000
    Event Type: Informatie
    User: 

    Computer Name: David-hp
    Event Code: 4097
    Message: De automatische update van het basiscertificaat (onderwerp: <CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE>) is voltooid. Sha1-vingerafdruk: <B1BC968BD4F49D622AA89A81F2150152A41D829C>.
    Record Number: 2
    Source Name: Microsoft-Windows-CAPI2
    Time Written: 20180105192529.075668-000
    Event Type: Informatie
    User: 

    Computer Name: DAVID-HP
    Event Code: 4625
    Message: Het EventSystem-subsysteem onderdrukt gedurende 86400 seconden dubbele vermeldingen in het gebeurtenislogboek. De time-out voor onderdrukking kan worden ingesteld met de REG_DWORD-waarde SuppressDuplicateDuration in de volgende registersleutel: HKLM\Software\Microsoft\EventSystem\EventLog.
    Record Number: 1
    Source Name: Microsoft-Windows-EventSystem
    Time Written: 20180105192535.131381-000
    Event Type: Informatie
    User: 

    =====Security event log=====

    Computer Name: David-hp
    Event Code: 4688
    Message: Er is een nieuw proces gemaakt.

    Onderwerp maker:
        Beveiligings-id:        S-1-5-18
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x3E7

    Doelonderwerp:
        Beveiligings-id:        S-1-0-0
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x0

    Procesgegevens:
        Id van nieuw proces:        0x1ec
        Naam van nieuw proces:    C:\Windows\System32\smss.exe
        Type tokenverhoging:    %%1936
        Verplicht label:        S-1-16-16384
        Proces-id van maker:    0x18c
        Procesnaam van maker:    C:\Windows\System32\smss.exe
        Opdrachtregel proces:    

    Type tokenverhoging geeft aan welk type token aan het nieuwe proces is toegewezen overeenkomstig het beleid van Gebruikersaccountbeheer.

    Type 1 is een volledig token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een volledig token wordt alleen gebruikt als Gebruikersaccountbeheer is uitgeschakeld of als de gebruiker is aangemeld met de ingebouwde administratoraccount of een serviceaccount.

    Type 2 is een verhoogd token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een verhoogd token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld en de gebruiker ervoor kiest het programma te starten met: Als administrator uitvoeren. Een verhoogd token wordt ook gebruikt wanneer een toepassing alleen met administratorbevoegdheid of maximale bevoegdheid kan worden uitgevoerd en de gebruiker lid is van de groep Administrators.

    Type 3 is een beperkt token waarvoor administratorbevoegdheden zijn verwijderd en administratorgroepen zijn uitgeschakeld. Het beperkte token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld, de toepassing geen administratorbevoegdheid vereist en de gebruiker het programma niet start met: Als administrator uitvoeren.
    Record Number: 5
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20180105192431.333654-000
    Event Type: Controle geslaagd
    User: 

    Computer Name: David-hp
    Event Code: 4688
    Message: Er is een nieuw proces gemaakt.

    Onderwerp maker:
        Beveiligings-id:        S-1-5-18
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x3E7

    Doelonderwerp:
        Beveiligings-id:        S-1-0-0
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x0

    Procesgegevens:
        Id van nieuw proces:        0x1dc
        Naam van nieuw proces:    C:\Windows\System32\setupcl.exe
        Type tokenverhoging:    %%1936
        Verplicht label:        S-1-16-16384
        Proces-id van maker:    0x18c
        Procesnaam van maker:    C:\Windows\System32\smss.exe
        Opdrachtregel proces:    

    Type tokenverhoging geeft aan welk type token aan het nieuwe proces is toegewezen overeenkomstig het beleid van Gebruikersaccountbeheer.

    Type 1 is een volledig token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een volledig token wordt alleen gebruikt als Gebruikersaccountbeheer is uitgeschakeld of als de gebruiker is aangemeld met de ingebouwde administratoraccount of een serviceaccount.

    Type 2 is een verhoogd token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een verhoogd token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld en de gebruiker ervoor kiest het programma te starten met: Als administrator uitvoeren. Een verhoogd token wordt ook gebruikt wanneer een toepassing alleen met administratorbevoegdheid of maximale bevoegdheid kan worden uitgevoerd en de gebruiker lid is van de groep Administrators.

    Type 3 is een beperkt token waarvoor administratorbevoegdheden zijn verwijderd en administratorgroepen zijn uitgeschakeld. Het beperkte token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld, de toepassing geen administratorbevoegdheid vereist en de gebruiker het programma niet start met: Als administrator uitvoeren.
    Record Number: 4
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20180105192428.826146-000
    Event Type: Controle geslaagd
    User: 

    Computer Name: David-hp
    Event Code: 4688
    Message: Er is een nieuw proces gemaakt.

    Onderwerp maker:
        Beveiligings-id:        S-1-5-18
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x3E7

    Doelonderwerp:
        Beveiligings-id:        S-1-0-0
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x0

    Procesgegevens:
        Id van nieuw proces:        0x198
        Naam van nieuw proces:    C:\Windows\System32\autochk.exe
        Type tokenverhoging:    %%1936
        Verplicht label:        S-1-16-16384
        Proces-id van maker:    0x18c
        Procesnaam van maker:    C:\Windows\System32\smss.exe
        Opdrachtregel proces:    

    Type tokenverhoging geeft aan welk type token aan het nieuwe proces is toegewezen overeenkomstig het beleid van Gebruikersaccountbeheer.

    Type 1 is een volledig token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een volledig token wordt alleen gebruikt als Gebruikersaccountbeheer is uitgeschakeld of als de gebruiker is aangemeld met de ingebouwde administratoraccount of een serviceaccount.

    Type 2 is een verhoogd token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een verhoogd token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld en de gebruiker ervoor kiest het programma te starten met: Als administrator uitvoeren. Een verhoogd token wordt ook gebruikt wanneer een toepassing alleen met administratorbevoegdheid of maximale bevoegdheid kan worden uitgevoerd en de gebruiker lid is van de groep Administrators.

    Type 3 is een beperkt token waarvoor administratorbevoegdheden zijn verwijderd en administratorgroepen zijn uitgeschakeld. Het beperkte token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld, de toepassing geen administratorbevoegdheid vereist en de gebruiker het programma niet start met: Als administrator uitvoeren.
    Record Number: 3
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20180105192425.668446-000
    Event Type: Controle geslaagd
    User: 

    Computer Name: David-hp
    Event Code: 4688
    Message: Er is een nieuw proces gemaakt.

    Onderwerp maker:
        Beveiligings-id:        S-1-5-18
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x3E7

    Doelonderwerp:
        Beveiligings-id:        S-1-0-0
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x0

    Procesgegevens:
        Id van nieuw proces:        0x18c
        Naam van nieuw proces:    C:\Windows\System32\smss.exe
        Type tokenverhoging:    %%1936
        Verplicht label:        S-1-16-16384
        Proces-id van maker:    0x4
        Procesnaam van maker:    
        Opdrachtregel proces:    

    Type tokenverhoging geeft aan welk type token aan het nieuwe proces is toegewezen overeenkomstig het beleid van Gebruikersaccountbeheer.

    Type 1 is een volledig token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een volledig token wordt alleen gebruikt als Gebruikersaccountbeheer is uitgeschakeld of als de gebruiker is aangemeld met de ingebouwde administratoraccount of een serviceaccount.

    Type 2 is een verhoogd token waarvoor geen bevoegdheden zijn verwijderd of groepen zijn uitgeschakeld. Een verhoogd token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld en de gebruiker ervoor kiest het programma te starten met: Als administrator uitvoeren. Een verhoogd token wordt ook gebruikt wanneer een toepassing alleen met administratorbevoegdheid of maximale bevoegdheid kan worden uitgevoerd en de gebruiker lid is van de groep Administrators.

    Type 3 is een beperkt token waarvoor administratorbevoegdheden zijn verwijderd en administratorgroepen zijn uitgeschakeld. Het beperkte token wordt gebruikt wanneer Gebruikersaccountbeheer is ingeschakeld, de toepassing geen administratorbevoegdheid vereist en de gebruiker het programma niet start met: Als administrator uitvoeren.
    Record Number: 2
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20180105192422.126323-000
    Event Type: Controle geslaagd
    User: 

    Computer Name: David-hp
    Event Code: 4826
    Message: Boot Configuration Data geladen.

    Onderwerp:
        Beveiligings-id:        S-1-5-18
        Accountnaam:        -
        Accountdomein:        -
        Aanmeldings-id:        0x3E7

    Algemene instellingen:
        Laadopties:        -
        Geavanceerde opties:        Nee
        Configuratietoegangsbeleid:    Standaard
        Systeemgebeurtenislogboek:    Nee
        Kernel-foutopsporing:    Nee
        VSM-starttype:    Uit

    Instellingen voor handtekening:
        Testondertekening:        Nee
        Flight-ondertekening:        Nee
        Integriteitscontroles uitschakelen:    Nee

    HyperVisor-instellingen:
        HyperVisor-laadopties:    -
        HyperVisor-starttype:    Uit
        HyperVisor-foutopsporing:    Nee
    Record Number: 1
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20180105192422.072549-000
    Event Type: Controle geslaagd
    User: 

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "OS"=Windows_NT
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    "PROCESSOR_ARCHITECTURE"=AMD64
    "PSModulePath"=%ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "USERNAME"=SYSTEM
    "windir"=%SystemRoot%
    "Path"=C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\IVI Foundation\VISA\WinNT\Bin;C:\Program Files\IVI Foundation\VISA\Win64\Bin\;C:\Program Files (x86)\IVI Foundation\VISA\WinNT\Bin\
    "ProgramData"=C:\ProgramData
    "VXIPNPPATH"=C:\Program Files (x86)\IVI Foundation\VISA\
    "VXIPNPPATH64"=C:\Program Files\IVI Foundation\VISA\
    "NUMBER_OF_PROCESSORS"=8
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
    "PROCESSOR_REVISION"=2a07

    -----------------EOF-----------------
     


  2. ----------------------------------------------------------------------------
    CrystalDiskInfo 6.7.5 (C) 2008-2016 hiyohiyo
                                    Crystal Dew World : http://crystalmark.info/
    ----------------------------------------------------------------------------

        OS : Windows 10  [10.0 Build 14393] (x64)
      Date : 2017/07/24 20:17:00

    -- Controller Map ----------------------------------------------------------
     + Standaard AHCI 1.0 Serial ATA-controller [ATA]
       - ST9500420AS
       - hp CDDVDW TS-L633R
     - Controlefunctie voor opslagruimten van Microsoft [SCSI]

    -- Disk List ---------------------------------------------------------------
     (1) ST9500420AS : 500,1 GB [0/0/0, pd1] - st

    ----------------------------------------------------------------------------
     (1) ST9500420AS
    ----------------------------------------------------------------------------
               Model : ST9500420AS
            Firmware : 0006HPM1
       Serial Number : 5VJBXH88
           Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
         Buffer Size : 16384 KB
         Queue Depth : 32
        # of Sectors : 976773168
       Rotation Rate : 7200 RPM
           Interface : Serial ATA
       Major Version : ATA8-ACS
       Minor Version : ATA8-ACS version 4
       Transfer Mode : ---- | SATA/300
      Power On Hours : 3873 hours
      Power On Count : 4632 count
         Temperature : 35 C (95 F)
       Health Status : Good
            Features : S.M.A.R.T., APM, 48bit LBA, NCQ
           APM Level : 8080h [ON]
           AAM Level : ----

    -- S.M.A.R.T. --------------------------------------------------------------
    ID Cur Wor Thr RawValues(6) Attribute Name
    01 114 _99 __6 000003ED60A4 Read Error Rate
    03 _99 _97 _85 000000000000 Spin-Up Time
    04 _96 _96 _20 0000000012B1 Start/Stop Count
    05 100 100 _36 000000000000 Reallocated Sectors Count
    07 _67 _60 _30 00250A6AFA0B Seek Error Rate
    09 _96 _96 __0 000000000F21 Power-On Hours
    0A 100 100 _97 000000000000 Spin Retry Count
    0C _96 _37 _20 000000001218 Power Cycle Count
    B7 100 253 __0 000000000000 Vendor Specific
    B8 100 100 _99 000000000000 End-to-End Error
    BB _99 _99 __0 000000000001 Reported Uncorrectable Errors
    BC 100 _99 __0 000200020009 Command Timeout
    BD 100 100 __0 000000000000 High Fly Writes
    BE _65 _45 _45 000023170023 Airflow Temperature
    BF 100 100 __0 00000000006E G-Sense Error Rate
    C0 100 100 __0 00000000002E Power-off Retract Count
    C1 _83 _83 __0 0000000087C0 Load/Unload Cycle Count
    C2 _35 _55 __0 000500000023 Temperature
    C3 _48 _37 __0 000003ED60A4 Hardware ECC recovered
    C4 100 100 __0 000000000000 Reallocation Event Count
    C5 100 100 __0 000000000000 Current Pending Sector Count
    C6 100 100 __0 000000000000 Uncorrectable Sector Count
    C7 200 200 __0 000000000000 UltraDMA CRC Error Count
    FE 100 100 __0 000000000000 Free Fall Protection

    -- IDENTIFY_DEVICE ---------------------------------------------------------
            0    1    2    3    4    5    6    7    8    9
    000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
    010: 2020 2020 2020 2020 2020 2020 3556 4A42 5848 3838
    020: 0000 8000 0004 3030 3036 4850 4D31 5354 3935 3030
    030: 3432 3041 5320 2020 2020 2020 2020 2020 2020 2020
    040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
    050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
    060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
    070: 0000 0000 0000 0000 0000 001F 0706 0000 0048 0040
    080: 01F0 0029 746B 7D09 61E3 7469 BC09 61E3 407F 0035
    090: 0035 8080 FFFE 0000 D000 0000 0000 0000 0000 0000
    100: 6030 3A38 0000 0000 0000 0000 0000 0000 5000 C500
    110: 3879 F7B9 0000 0000 0000 0000 0000 0000 0000 401C
    120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6030
    130: 3A38 6030 3A38 2020 0002 0140 0108 5000 3C06 3C0A
    140: 0000 0078 0000 0008 0000 0000 001F 0280 0000 0000
    150: 0008 0000 0000 0000 0000 0000 0000 0000 3E00 8000
    160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
    170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
    180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
    190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
    200: 0000 0000 0000 0000 0000 0000 103F 0000 0000 0000
    210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
    220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
    230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
    240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
    250: 0000 0000 0000 0000 0000 54A5

    -- SMART_READ_DATA ---------------------------------------------------------
         +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
    000: 0A 00 01 0F 00 72 63 A4 60 ED 03 00 00 00 03 03
    010: 00 63 61 00 00 00 00 00 00 00 04 32 00 60 60 B1
    020: 12 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
    030: 00 00 07 0F 00 43 3C 0B FA 6A 0A 25 00 00 09 32
    040: 00 60 60 21 0F 00 00 00 00 00 0A 13 00 64 64 00
    050: 00 00 00 00 00 00 0C 32 00 60 25 18 12 00 00 00
    060: 00 00 B7 00 00 64 FD 00 00 00 00 00 00 00 B8 32
    070: 00 64 64 00 00 00 00 00 00 00 BB 32 00 63 63 01
    080: 00 00 00 00 00 00 BC 32 00 64 63 09 00 02 00 02
    090: 00 00 BD 3A 00 64 64 00 00 00 00 00 00 00 BE 22
    0A0: 00 41 2D 23 00 17 23 00 00 00 BF 32 00 64 64 6E
    0B0: 00 00 00 00 00 00 C0 32 00 64 64 2E 00 00 00 00
    0C0: 00 00 C1 32 00 53 53 C0 87 00 00 00 00 00 C2 22
    0D0: 00 23 37 23 00 00 00 05 00 00 C3 1A 00 30 25 A4
    0E0: 60 ED 03 00 00 00 C4 00 00 64 64 00 00 00 00 00
    0F0: 00 00 C5 12 00 64 64 00 00 00 00 00 00 00 C6 10
    100: 00 64 64 00 00 00 00 00 00 00 C7 3E 00 C8 C8 00
    110: 00 00 00 00 00 00 FE 32 00 64 64 00 00 00 00 00
    120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53
    170: 03 00 01 00 02 6F 00 00 00 00 00 00 00 00 00 00
    180: 00 00 00 00 00 00 00 00 04 00 03 00 03 00 03 00
    190: 03 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
    1A0: 00 00 00 00 6E 00 00 00 62 98 16 A4 BB 0C 00 00
    1B0: 00 00 00 00 01 00 EE 83 DB 52 8F BB A7 A9 02 00
    1C0: 96 37 96 31 05 38 18 00 00 00 00 00 3B F5 47 00
    1D0: 01 00 00 00 00 00 00 00 F8 19 00 00 98 00 0F 00
    1E0: 00 00 00 00 FB 03 00 00 00 00 00 00 00 00 00 2D
    1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 AE

    -- SMART_READ_THRESHOLD ----------------------------------------------------
         +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
    000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 55
    010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
    020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
    030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
    040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
    050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
    060: 00 00 B7 00 00 00 00 00 00 00 00 00 00 00 B8 63
    070: 00 00 00 00 00 00 00 00 00 00 BB 00 00 00 00 00
    080: 00 00 00 00 00 00 BC 00 00 00 00 00 00 00 00 00
    090: 00 00 BD 00 00 00 00 00 00 00 00 00 00 00 BE 2D
    0A0: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
    0B0: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
    0C0: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
    0D0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00
    0E0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00
    0F0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
    100: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
    110: 00 00 00 00 00 00 FE 00 00 00 00 00 00 00 00 00
    120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
    1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 D3

     

    gps is niet geregisteerd


  3. nee het lukt niet,de usb poorten gaan wel geprobeerd met ant stick

    denk dat het met de plugs in te maken heeft,deze krijg ik ook niet gedownload,weet dat je nu met windows 10 internet exployer moet hebben als standaard


  4. # AdwCleaner v5.029 - Logbestand aangemaakt 13/01/2016 op 21:34:58

    # Laatste update 11/01/2016 door Xplode

    # Database : 2016-01-12.1 [server]

    # Besturingssysteem : Windows 10 Home  (x64)

    # Gebruikersnaam : David - DAVID-HP

    # Gestart vanuit : C:\Users\David\Downloads\adwcleaner_5.029.exe

    # Optie : Verwijderen

    # Ondersteuning : http://toolslib.net/forum

     

    ***** [ Services ] *****

     

     

    ***** [ Mappen ] *****

     

     

    ***** [ Bestanden ] *****

     

     

    ***** [ DLLs ] *****

     

     

    ***** [ Snelkoppelingen ] *****

     

     

    ***** [ geplande taken ] *****

     

     

    ***** [ Register ] *****

     

     

    ***** [ Internetbrowsers ] *****

     

     

    *************************

     

    :: "Tracing" sleutels verwijderd

    :: Winsock instellingen gereset

     

    ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [716 bytes] ##########

  5.  

    Zoek.exe v5.0.0.1 Updated 05-December-2015

    Tool run by David on zo 06-12-2015 at 14:06:53,62.

    Microsoft Windows 10 Home 10.0.10240  x64

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\David\Downloads\zoek.exe [scan all users]  [Checkboxes used]

     

    ==== System Restore Info ======================

     

    6-12-2015 14:09:18 Zoek.exe System Restore Point Created Successfully.

     

    ==== Empty Folders Check ======================

     

    C:\PROGRA~3\Comms deleted successfully

    C:\PROGRA~3\SoftwareDistribution deleted successfully

    C:\Users\DefaultAppPool\AppData\LocalLow deleted successfully

    C:\Users\David\AppData\Local\NetworkTiles deleted successfully

    C:\Users\David\AppData\Local\VirtualStore deleted successfully

    C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully

     

    ==== Deleting CLSID Registry Keys ======================

     

     

    ==== Deleting CLSID Registry Values ======================

     

     

    ==== Installed Programs ======================

     

    AllShare Framework DMS  

    AMD Catalyst Control Center  

    AMD Fuel  

    ANT Drivers Installer x64  

    Catalyst Control Center - Branding  

    Catalyst Control Center InstallProxy  

    Catalyst Control Center Localization All  

    ccc-utility64  

    CCC Help Chinese Standard  

    CCC Help Chinese Traditional  

    CCC Help Czech  

    CCC Help Danish  

    CCC Help Dutch  

    CCC Help English  

    CCC Help Finnish  

    CCC Help French  

    CCC Help German  

    CCC Help Greek  

    CCC Help Hungarian  

    CCC Help Italian  

    CCC Help Japanese  

    CCC Help Korean  

    CCC Help Norwegian  

    CCC Help Polish  

    CCC Help Portuguese  

    CCC Help Russian  

    CCC Help Spanish  

    CCC Help Swedish  

    CCC Help Thai  

    CCC Help Turkish  

    CCleaner  

    Elevated Installer  

    Garmin Express  

    Garmin Express Tray  

    Google Chrome  

    Google Update Helper  

    HD Tune 2.55  

    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727  

    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727  

    Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727  

    Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727  

    Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727  

    Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727  

    Samsung Link 2.0.0.1503181422  

    Speccy  

    Stuurprogrammapakket voor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201)  

    Stuurprogrammapakket voor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1)  

    Synaptics TouchPad Driver  

     

    ==== Running Processes ======================

     

    C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe

    C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe

    C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Users\David\Downloads\zoek.exe

    C:\WINDOWS\SysWOW64\cmd.exe

    C:\WINDOWS\SysWOW64\cmd.exe

    C:\WINDOWS\SysWOW64\cmd.exe

     

    ==== Deleting Services ======================

     

     

    ==== Deleting Files \ Folders ======================

     

    C:\Users\David\.android deleted

    C:\PROGRA~3\Package Cache deleted

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted

    C:\Users\David\AppData\LocalLow\Unity deleted

    C:\WINDOWS\Syswow64\SET7AF2.tmp deleted

    C:\WINDOWS\Syswow64\SETCA39.tmp deleted

    C:\WINDOWS\Syswow64\SETF77.tmp deleted

     

    ==== System Specs ======================

     

    Windows: Windows Version 6.2 (Build 9200)

    Memory (RAM): 4044 MB

    CPU Info: Intel® Core i7-2630QM CPU @ 2.00GHz

    CPU Speed: 1997,5 MHz

    Sound Card: Luidsprekers en koptelefoons (I | 

    Communicatie koptelefoons (IDT  | 

    Display Adapters: Intel® HD Graphics 3000 | Intel® HD Graphics 3000

    Monitors: 1x; Generic PnP Monitor | 

    Screen Resolution: 1600 X 900 - 32 bit

    Network: Network Present

    Network Adapters: Broadcom 4313GN 802.11b/g/n 1x1 Wi-Fi-adapter | Realtek PCIe GBE Family Controller

    CD / DVD Drives: 1x (E: | ) E: hp      CDDVDW TS-L633R

    Ports: COM Ports NOT Present. LPT Port NOT Present. 

    Mouse: 5 Button Wheel Mouse Present

    Hard Disks: C:  446,5GB | D:  19,0GB

    Hard Disks - Free: C:  412,0GB | D:  2,3GB

    Manufacturer *: Hewlett-Packard

    BIOS Info: AT/AT COMPATIBLE | 10/05/11 | InsydeH2O Version 03.60.48F.1B

    Time Zone: Romance (standaardtijd)

    Motherboard *: Hewlett-Packard 1659

    Country: Nederland 

    Language: NLD 

     

    ==== System Specs (Software) ======================

     

    Internet Explorer Version: 11.0.10240.16384 

    Google Chrome version: 46.0.2490.86

     

    ==== Files Recently Created / Modified ======================

     

    ====== C:\WINDOWS ====

    2015-11-29 16:33:37 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\WINDOWS\ativpsrm.bin

    2015-11-29 16:25:13 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\WINDOWS\sttray64.exe

    2015-11-29 16:19:50 B8EB404442177A5DEEE7A37FE6CC49AA 67584 --s-a-w- C:\WINDOWS\bootstat.dat

    2015-11-29 16:01:31 286A9EDB379DC3423A528B0864A0F111 219 ----a-w- C:\WINDOWS\system.ini

    2015-11-29 16:01:31 23CF8138F49416231807E6DE371FB9E6 92 ----a-w- C:\WINDOWS\win.ini

    ====== C:\Users\David\AppData\Local\Temp ====

    ====== Java Cache =====

    ====== C:\WINDOWS\SysWOW64 =====

    2015-12-02 20:24:23 B49C1F14F41A448091A2241F691A401C 96752 ----a-w- C:\WINDOWS\SysWOW64\mantleaxl32.dll

    2015-12-02 20:24:22 E2360B4A26DE496C86F5A6962A390945 12784 ----a-w- C:\WINDOWS\SysWOW64\detoured.dll

    2015-12-02 20:24:22 8E277D344EA7926D6AC54E26E3EC4109 111088 ----a-w- C:\WINDOWS\SysWOW64\hsa-thunk.dll

    2015-12-02 20:24:22 627E0E79F5EBC933D12F9EF1CE68B85B 122352 ----a-w- C:\WINDOWS\SysWOW64\mantle32.dll

    2015-12-02 20:24:17 B7E4C07934F85379D6932B1DD66F4A7C 143048 ----a-w- C:\WINDOWS\SysWOW64\atiuxpag.dll

    2015-12-02 20:24:17 A98DA23A524803615B083CFCED1CE362 3471376 ----a-w- C:\WINDOWS\SysWOW64\atiumdva.cap

    2015-12-02 20:24:17 602243BB86E7EFDE16C19774A47DC1E6 8009360 ----a-w- C:\WINDOWS\SysWOW64\atiumdva.dll

    2015-12-02 20:24:16 F58CCDDA161577280061992EA0A2935C 152560 ----a-w- C:\WINDOWS\SysWOW64\atieah32.exe

    2015-12-02 20:24:16 DF9F60D343EAF2B507CC08AA2978ADB0 25320432 ----a-w- C:\WINDOWS\SysWOW64\atioglxx.dll

    2015-12-02 20:24:16 ADFDFF842548DE3EA0AD392F62ACA894 150512 ----a-w- C:\WINDOWS\SysWOW64\atigktxx.dll

    2015-12-02 20:24:16 29E0535B05F06C07CB6FC388BE6D96CA 81160 ----a-w- C:\WINDOWS\SysWOW64\atimpc32.dll

    2015-12-02 20:24:16 05CF830A126F522FD103AF23C893C0F6 78320 ----a-w- C:\WINDOWS\SysWOW64\atiglpxx.dll

    2015-12-02 20:24:15 BB21328957BD5C5D5595DDDE06F060BC 57840 ----a-w- C:\WINDOWS\SysWOW64\aticalcl.dll

    2015-12-02 20:24:15 B0BA9800BF9532CF0AA20853F506530F 10211008 ----a-w- C:\WINDOWS\SysWOW64\atidxx32.dll

    2015-12-02 20:24:15 53650482B8E621276DC55E50C9FB2FEE 662392 ----a-w- C:\WINDOWS\SysWOW64\atiapfxx.blb

    2015-12-02 20:24:15 4DA7C563005ED02E185AAA5950BFF914 935408 ----a-w- C:\WINDOWS\SysWOW64\atiadlxy.dll

    2015-12-02 20:24:15 4DA7C563005ED02E185AAA5950BFF914 935408 ----a-w- C:\WINDOWS\SysWOW64\atiadlxx.dll

    2015-12-02 20:24:15 43A6369EB6449A3D20C69A59ED5D9EC6 14310896 ----a-w- C:\WINDOWS\SysWOW64\aticaldd.dll

    2015-12-02 20:24:15 3EF0A076452C4B7859EB783276BE5EB2 60912 ----a-w- C:\WINDOWS\SysWOW64\aticalrt.dll

    2015-12-02 20:24:14 AB6BCBC31F0E3CC404482B83A08BFA91 68080 ----a-w- C:\WINDOWS\SysWOW64\OpenCL.dll

    2015-12-02 20:24:14 7C956D1E8E1BCE711BF3B9661AC29D2C 7683096 ----a-w- C:\WINDOWS\SysWOW64\amdxc32.dll

    2015-12-02 20:24:13 3CA834F1341AAAB23C6684F4B86BB0B4 81168 ----a-w- C:\WINDOWS\SysWOW64\amdpcom32.dll

    2015-12-02 20:24:12 50A1F30C906F8DA69FE0F3B95B324936 807424 ----a-w- C:\WINDOWS\SysWOW64\amdocl_ld32.exe

    2015-12-02 20:24:10 D1872F9ED1204EDA52BB057FCDDB7FD2 22327280 ----a-w- C:\WINDOWS\SysWOW64\amdocl12cl.dll

    2015-12-02 20:24:10 A8AFEC11C457D037602921C6645D8679 1004032 ----a-w- C:\WINDOWS\SysWOW64\amdocl_as32.exe

    2015-12-02 20:24:09 F364E165D4355EC6F583F56337E8E66D 48112 ----a-w- C:\WINDOWS\SysWOW64\amdmmcl.dll

    2015-12-02 20:24:09 EE7839510F62BD05C4EE3255A5E44608 5216240 ----a-w- C:\WINDOWS\SysWOW64\amdmantle32.dll

    2015-12-02 20:24:09 ABB0C97F50A9E1B18E59E8CF0FF633E7 524272 ----a-w- C:\WINDOWS\SysWOW64\amdlvr32.dll

    2015-12-02 20:24:09 2848874238853882765CCBE3CBD24856 39712768 ----a-w- C:\WINDOWS\SysWOW64\amdocl.dll

    2015-12-02 20:24:09 0C888D3732569435E7C9F057762C80C1 132080 ----a-w- C:\WINDOWS\SysWOW64\amdhdl32.dll

    2015-12-02 20:24:08 B085FA7C4F775B992A1AA7FCA6ABF81B 198640 ----a-w- C:\WINDOWS\SysWOW64\amdgfxinfo32.dll

    2015-11-29 16:21:47 035ACC4DDD5DFEE7924583984DF7081D 2718208 ----a-w- C:\WINDOWS\SysWOW64\PrintConfig.dll

    2015-11-29 16:16:26 770F79110F07FBA0D1B188EF1EB374B3 44147 ----a-w- C:\WINDOWS\SysWOW64\license.rtf

    2015-11-29 16:03:03 F03B817637577A6A5520BE78A89E6265 810488 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe

    2015-11-29 16:03:03 626553ACEDB88D6896CCE4A2DB02F51F 176632 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

    2015-11-29 16:01:51 6D21D0A95286DCD09E354B612F592EB7 1988 ----a-w- C:\WINDOWS\SysWOW64\ticrf.rat

    2015-11-29 16:01:50 ECD81B99477AB4A93D7838EB40B870D0 8798 ----a-w- C:\WINDOWS\SysWOW64\icrav03.rat

    2015-11-29 16:01:50 DE78E0C57BC478D47CC2F470B68E1A45 741 ----a-w- C:\WINDOWS\SysWOW64\NOISE.DAT

    2015-11-29 16:01:50 8C6F56F4CDDE6A1FD01F4FCF2773298E 215943 ----a-w- C:\WINDOWS\SysWOW64\dssec.dat

    2015-11-29 16:01:50 59FB61584259F6F62EEC0FCCAFFB3CA2 208384 ----a-w- C:\WINDOWS\SysWOW64\msclmd.dll

    ====== C:\WINDOWS\SysWOW64\drivers =====

    ====== C:\WINDOWS\Sysnative =====

    2015-12-06 12:56:20 30BE4B9CC65768834D835727E50A298E 16148 ----a-w- C:\WINDOWS\Sysnative\DAVID-HP_David_HistoryPrediction.bin

    2015-12-02 20:24:23 B322FAF7EA5B7C9CB3087A67CF38B5F5 103408 ----a-w- C:\WINDOWS\Sysnative\mantleaxl64.dll

    2015-12-02 20:24:22 E0223FC2E25F8FD20BA98C43A3EB3875 136176 ----a-w- C:\WINDOWS\Sysnative\mantle64.dll

    2015-12-02 20:24:22 C29C4A27E4342E0BA20A44110BD0A4A9 12784 ----a-w- C:\WINDOWS\Sysnative\detoured.dll

    2015-12-02 20:24:22 A7406B7710720E7E3EBC8DCE5C5FB084 243696 ----a-w- C:\WINDOWS\Sysnative\clinfo.exe

    2015-12-02 20:24:22 2C1A1C89C457BE0FBBF08B354525B5E8 111600 ----a-w- C:\WINDOWS\Sysnative\hsa-thunk64.dll

    2015-12-02 20:24:17 EFA5E3D55F1CC185BC690B7D79D015A9 100816 ----a-w- C:\WINDOWS\Sysnative\ativce02.dat

    2015-12-02 20:24:17 B974290EEE645249EE212FF62DD0824A 177344 ----a-w- C:\WINDOWS\Sysnative\ativce03.dat

    2015-12-02 20:24:16 E75356D0EB4FDA69E6B8BE2CE4472F48 341488 ----a-w- C:\WINDOWS\Sysnative\ATIODE.exe

    2015-12-02 20:24:16 D00A534AB1C76C39C90CF638BC835513 168944 ----a-w- C:\WINDOWS\Sysnative\atieah64.exe

    2015-12-02 20:24:16 B92E2A90479F26851F3A667F737202CA 59888 ----a-w- C:\WINDOWS\Sysnative\ATIODCLI.exe

    2015-12-02 20:24:16 B55C390C176B5CA015CB32ADD30C0EEA 165360 ----a-w- C:\WINDOWS\Sysnative\atig6txx.dll

    2015-12-02 20:24:16 91EFA02EE006B2450A8811CBE6B9067D 8982440 ----a-w- C:\WINDOWS\Sysnative\atiumd6a.dll

    2015-12-02 20:24:16 8860AB9D866558AD6C9199D00AB47302 83952 ----a-w- C:\WINDOWS\Sysnative\atig6pxx.dll

    2015-12-02 20:24:16 5C66F7C236E4D9D8BCCF30539D2622EE 199664 ----a-w- C:\WINDOWS\Sysnative\atitmm64.dll

    2015-12-02 20:24:16 486D6985E7B7826DBBEAE12755851027 3437632 ----a-w- C:\WINDOWS\Sysnative\atiumd6a.cap

    2015-12-02 20:24:16 18A356C6918227118C7FAAD3A783E657 87992 ----a-w- C:\WINDOWS\Sysnative\atimpc64.dll

    2015-12-02 20:24:16 0D1F2A3DEAC5A365455BA7B6908C31F8 38384 ----a-w- C:\WINDOWS\Sysnative\atimuixx.dll

    2015-12-02 20:24:16 079A314DF0EEFF8FE4C9B6C3A2B2DA53 30776304 ----a-w- C:\WINDOWS\Sysnative\atio6axx.dll

    2015-12-02 20:24:16 05CF830A126F522FD103AF23C893C0F6 78320 ----a-w- C:\WINDOWS\Sysnative\atiglpxx.dll

    2015-12-02 20:24:15 FCF6247DD8E81AE0BB3F998C02467193 15725552 ----a-w- C:\WINDOWS\Sysnative\aticaldd64.dll

    2015-12-02 20:24:15 C7E982EAA979D18DEB226A248720139C 71152 ----a-w- C:\WINDOWS\Sysnative\aticalrt64.dll

    2015-12-02 20:24:15 ABFE805A2E487E3F97C1EB854D91C537 375792 ----a-w- C:\WINDOWS\Sysnative\atiapfxx.exe

    2015-12-02 20:24:15 6D7B0581A79E974ED1EAE580FF56F918 64496 ----a-w- C:\WINDOWS\Sysnative\aticalcl64.dll

    2015-12-02 20:24:15 53650482B8E621276DC55E50C9FB2FEE 662392 ----a-w- C:\WINDOWS\Sysnative\atiapfxx.blb

    2015-12-02 20:24:14 A869265CB33F2D187D8535B431EB33A7 9355016 ----a-w- C:\WINDOWS\Sysnative\amdxc64.dll

    2015-12-02 20:24:14 62C4D5F0ACE4402FDB326C0061B15E37 73712 ----a-w- C:\WINDOWS\Sysnative\OpenCL.dll

    2015-12-02 20:24:13 F79159D9C59C04B1B1835663A8BEB687 88000 ----a-w- C:\WINDOWS\Sysnative\amdpcom64.dll

    2015-12-02 20:24:13 B844EBA6ED1666309C9D74345647057F 1070592 ----a-w- C:\WINDOWS\Sysnative\amdocl_ld64.exe

    2015-12-02 20:24:12 3B40AFF6A70B690D6B0C79DEADBFCD32 1196032 ----a-w- C:\WINDOWS\Sysnative\amdocl_as64.exe

    2015-12-02 20:24:10 697EAF53EA488B19D8245CB1497D7C27 47794160 ----a-w- C:\WINDOWS\Sysnative\amdocl64.dll

    2015-12-02 20:24:10 0C0FF26B1EB94AEC34419160E1414AF9 27544560 ----a-w- C:\WINDOWS\Sysnative\amdocl12cl64.dll

    2015-12-02 20:24:09 EFEAD78305EFC47DC166C50C9173D5D9 6686192 ----a-w- C:\WINDOWS\Sysnative\amdmantle64.dll

    2015-12-02 20:24:09 DDEB20626133878B0CE79CCE29B031B9 833800 ----a-w- C:\WINDOWS\Sysnative\amdicdxx.dat

    2015-12-02 20:24:09 C6660406048233BD239D39536B2731BE 631280 ----a-w- C:\WINDOWS\Sysnative\amdlvr64.dll

    2015-12-02 20:24:09 77DEB6EC97F9C0AF9F66975DD7719839 471312 ----a-w- C:\WINDOWS\Sysnative\amdmiracast.dll

    2015-12-02 20:24:09 6FB849D1149A39E3FE9E4B840212A7A7 143344 ----a-w- C:\WINDOWS\Sysnative\amdhdl64.dll

    2015-12-02 20:24:09 098AA68FB1C99B6868304B90340A1149 59376 ----a-w- C:\WINDOWS\Sysnative\amdmmcl6.dll

    2015-12-02 20:24:08 9C17107270BBD4E51F5B5EBA8F9F60BB 213488 ----a-w- C:\WINDOWS\Sysnative\amdgfxinfo64.dll

    2015-12-02 20:24:08 4B10D8998C824DD84AD597F9E058F6F0 175648 ----a-w- C:\WINDOWS\Sysnative\amde31a.dat

    2015-12-02 20:19:51 00C683A7378D3612F69B6832F56FA438 145617392 ----a-w- C:\WINDOWS\Sysnative\MRT.exe

    2015-12-01 19:22:58 DF7C79C1FFFBBE3D4BEC2BA7FF8A8AB1 300704 ------w- C:\WINDOWS\Sysnative\MpSigStub.exe

    2015-11-29 16:35:55 2464FE50FC00A2BAA54C7339966435CC 1838560 ----a-w- C:\WINDOWS\Sysnative\PerfStringBackup.INI

    2015-11-29 16:25:14 F6A2CFBFE19DECACDCFCFA2A7709E3A9 3069952 ----a-w- C:\WINDOWS\Sysnative\IDTNHP.dll

    2015-11-29 16:25:14 E571EABD1753F1A1474C1EA8C2AD0B36 442368 ----a-w- C:\WINDOWS\Sysnative\AESTEC64.dll

    2015-11-29 16:25:14 E3F76DF0119A00413579025C0CB319B6 69462 ----a-w- C:\WINDOWS\Sysnative\hpbeats.ico

    2015-11-29 16:25:14 C469893743E18BA547DB3C7ED98B32F5 68608 ----a-w- C:\WINDOWS\Sysnative\AESTAR64.dll

    2015-11-29 16:25:14 AA1F7233BF9F1B048148260BC934181A 438784 ----a-w- C:\WINDOWS\Sysnative\IDTNC64.cpl

    2015-11-29 16:25:14 937CF6954D64AF5811EC1BE4ECBF60E8 13942 ----a-w- C:\WINDOWS\Sysnative\nbspkrsbeats.ico

    2015-11-29 16:25:14 6DCF307C20D9023B7E5622DD1DEB8231 221184 ----a-w- C:\WINDOWS\Sysnative\HPToneCtrls64.dll

    2015-11-29 16:25:14 5F9479B2BD3575E789F06F4DEB86C9E0 90624 ----a-w- C:\WINDOWS\Sysnative\AESTCo64.dll

    2015-11-29 16:25:14 5E65E90DA3A478C377F7332A9386B023 162304 ----a-w- C:\WINDOWS\Sysnative\AESTAC64.dll

    2015-11-29 16:25:14 4DB832701EA2D47F325ED11F012F7338 3774 ----a-w- C:\WINDOWS\Sysnative\bltinmic.ico

    2015-11-29 16:25:14 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\WINDOWS\Sysnative\IDTNGUI.exe

    2015-11-29 16:25:14 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\WINDOWS\Sysnative\IDTNJ.exe

    2015-11-29 16:25:14 2B250C2D2AD8EB984BA8EC149DA604A6 968192 ----a-w- C:\WINDOWS\Sysnative\IDTNX.dll

    2015-11-29 16:25:13 06CEEC87EA7A1DA1368BEE4FFADAD981 4594176 ----a-w- C:\WINDOWS\Sysnative\stlang64.dll

    2015-11-29 16:24:12 3C48FBD8010EE06E6D2628E219141BCE 1092090 ----a-w- C:\WINDOWS\Sysnative\oem81.inf

    2015-11-29 16:18:09 B6DF04E21E2D0718CCC09897A3BD579B 192776 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT

    2015-11-29 16:16:25 770F79110F07FBA0D1B188EF1EB374B3 44147 ----a-w- C:\WINDOWS\Sysnative\license.rtf

    2015-11-29 16:06:56 069E69DEE7EE5C0E235AB2C35B272D3D 347470 ----a-w- C:\WINDOWS\Sysnative\perfi013.dat

    2015-11-29 16:06:55 88361FF7E914089E7D55A16669A0050D 45378 ----a-w- C:\WINDOWS\Sysnative\perfd013.dat

    2015-11-29 16:06:55 5ED507331E9A0310368EB604663E41DC 814440 ----a-w- C:\WINDOWS\Sysnative\perfh013.dat

    2015-11-29 16:06:55 35CBF0626A2AF236C4C52DFB03E58C18 158190 ----a-w- C:\WINDOWS\Sysnative\perfc013.dat

    2015-11-29 16:03:13 B21FAAEFB3B4DADA853B00CFC43594F6 138162 ----a-w- C:\WINDOWS\Sysnative\perfc009.dat

    2015-11-29 16:03:13 6B98E5694DEDC80E39DE706A22E46E53 296742 ----a-w- C:\WINDOWS\Sysnative\perfi009.dat

    2015-11-29 16:03:13 32BC2E0CC95E2DCEE25B15BFB82D07B8 33362 ----a-w- C:\WINDOWS\Sysnative\perfd009.dat

    2015-11-29 16:03:13 208164283C370EA5DA8FC548AAA34185 731332 ----a-w- C:\WINDOWS\Sysnative\perfh009.dat

    2015-11-29 16:01:40 FF69267A88A54A223B4357C41930449C 15462 ----a-w- C:\WINDOWS\Sysnative\OEMDefaultAssociations.xml

    2015-11-29 16:01:40 FE6BCA2E6AF33E18AEA0615B9A824516 229888 ----a-w- C:\WINDOWS\Sysnative\msclmd.dll

    2015-11-29 16:01:40 ECD81B99477AB4A93D7838EB40B870D0 8798 ----a-w- C:\WINDOWS\Sysnative\icrav03.rat

    2015-11-29 16:01:40 DE78E0C57BC478D47CC2F470B68E1A45 741 ----a-w- C:\WINDOWS\Sysnative\NOISE.DAT

    2015-11-29 16:01:40 8C6F56F4CDDE6A1FD01F4FCF2773298E 215943 ----a-w- C:\WINDOWS\Sysnative\dssec.dat

    2015-11-29 16:01:40 6D21D0A95286DCD09E354B612F592EB7 1988 ----a-w- C:\WINDOWS\Sysnative\ticrf.rat

    2015-11-29 16:01:39 D638E3AD81E149A75EEF59E9C743E27C 389 ----a-w- C:\WINDOWS\Sysnative\AutoWorkplace.exe.config

    2015-11-29 16:01:39 664AA698FC0106A2B075A641E8DC6302 858 ----a-w- C:\WINDOWS\Sysnative\DefaultQuestions.json

    ====== C:\WINDOWS\Sysnative\drivers =====

    2015-12-02 20:24:15 AC64440ED4AC767EBF140F9793619E3F 52208 ----a-w- C:\WINDOWS\Sysnative\drivers\ati2erec.dll

    2015-11-29 17:04:49 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_WpdFs_01_11_00.Wdf

    2015-11-29 16:24:09 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_SynTP_01011.Wdf

    2015-11-29 16:23:37 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf

    ====== C:\WINDOWS\Tasks ======

    2015-11-29 17:03:20 875AD6B7375D4318A810325A8AADFDF1 3624 ----a-w- C:\WINDOWS\Sysnative\Tasks\GarminUpdaterTask

    2015-11-29 16:49:24 A42E9DB7F7995DB86578498EBEC63A5A 4130 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA

    2015-11-29 16:49:23 8CC2AFE525E8CD33F5180077984B6150 1068 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job

    2015-11-29 16:49:23 68D59C90B0669F5581437ED8F1FA0987 1072 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

    2015-11-29 16:49:23 138B68D7D3C3342C1BC5F632CD223FD5 3898 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore

    2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\Microsoft

    ====== C:\WINDOWS\Temp ======

    ======= C:\Program Files =====

    2015-12-03 20:19:14 -------- d-----w- C:\Program Files\Samsung

    2015-12-03 18:36:12 -------- d-----w- C:\Program Files\trend micro

    2015-12-02 20:27:41 -------- d-----w- C:\Program Files\ATI Technologies

    2015-11-30 19:55:46 -------- d-----w- C:\Program Files\Speccy

    2015-11-29 17:03:41 -------- d-----w- C:\Program Files\DIFX

    2015-11-29 16:25:14 -------- d-----w- C:\Program Files\IDT

    2015-11-29 16:24:58 -------- d-----w- C:\Program Files\Common Files\ATI Technologies

    2015-11-29 16:24:44 -------- d-----w- C:\Program Files\AMD

    2015-11-29 16:24:02 -------- d--h--w- C:\Program Files\Uninstall Information

    2015-11-29 16:11:59 -------- d-----w- C:\Program Files\Synaptics

    2015-11-29 16:07:52 -------- d-----w- C:\Program Files\Reference Assemblies

    2015-11-29 16:07:52 -------- d-----w- C:\Program Files\MSBuild

    2015-11-29 16:01:30 174 --sha-w- C:\Program Files\desktop.ini

    2015-11-29 16:01:28 -------- d-sh--w- C:\Program Files\Windows Sidebar

    2015-11-29 16:01:28 -------- d-s---w- C:\Program Files\WindowsPowerShell

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Portable Devices

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Photo Viewer

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows NT

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Multimedia Platform

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Media Player

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Mail

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Journal

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Internet Explorer

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\System

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\Services

    2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\microsoft shared

    2015-11-29 15:46:54 -------- d-----w- C:\Program Files\Common Files

    ======= C:\PROGRA~2 =====

    2015-12-02 20:27:30 -------- d-----w- C:\PROGRA~2\ATI Technologies

    2015-12-02 18:11:27 -------- d-----w- C:\PROGRA~2\HD Tune

    2015-11-29 17:03:21 -------- d-----w- C:\PROGRA~2\Garmin

    2015-11-29 16:49:21 -------- d-----w- C:\PROGRA~2\Google

    2015-11-29 16:07:52 -------- d-----w- C:\PROGRA~2\Reference Assemblies

    2015-11-29 16:07:52 -------- d-----w- C:\PROGRA~2\MSBuild

    2015-11-29 16:01:31 174 --sha-w- C:\PROGRA~2\desktop.ini

    2015-11-29 16:01:28 -------- d-sh--w- C:\PROGRA~2\Windows Sidebar

    2015-11-29 16:01:28 -------- d-s---w- C:\PROGRA~2\WindowsPowerShell

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Portable Devices

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Photo Viewer

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows NT

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Multimedia Platform

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Media Player

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Mail

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Microsoft.NET

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Internet Explorer

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\System

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Services

    2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Microsoft Shared

    2015-11-29 15:46:54 -------- d-----w- C:\PROGRA~2\Common Files

    ======= C: =====

    ====== C:\Users\David\AppData\Roaming ======

    2015-12-02 20:26:43 -------- d-----w- C:\Users\Default\AppData\Local\ATI

    2015-12-02 20:26:43 -------- d-----w- C:\Users\Default User\AppData\Local\ATI

    2015-12-02 20:26:29 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\ATI

    2015-11-30 19:32:22 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\DataSharing

    2015-11-29 17:59:08 -------- d-s---w- C:\WINDOWS\serviceprofiles\Localservice\AppData\LocalLow

    2015-11-29 17:03:41 -------- d-----w- C:\Users\David\AppData\Local\Garmin_Ltd._or_its_subsid

    2015-11-29 17:03:25 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Garmin_Ltd._or_its_subsid

    2015-11-29 16:56:49 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Packages

    2015-11-29 16:51:05 -------- d-----w- C:\Users\David\AppData\Local\Comms

    2015-11-29 16:51:01 -------- d-----w- C:\Users\David\AppData\Local\Publishers

    2015-11-29 16:49:24 -------- d-s---w- C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow

    2015-11-29 16:49:17 -------- d-----w- C:\Users\David\AppData\Local\Google

    2015-11-29 16:43:10 -------- d-----w- C:\Users\David\AppData\Local\MicrosoftEdge

    2015-11-29 16:41:54 -------- d-----w- C:\Users\David\AppData\Local\ATI

    2015-11-29 16:40:13 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

    2015-11-29 16:40:13 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

    2015-11-29 16:40:04 -------- d-----w- C:\Users\David\AppData\Local\Packages

    2015-11-29 16:40:03 -------- d-----w- C:\Users\David\AppData\Local\TileDataLayer

    2015-11-29 16:31:34 -------- d-s---r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell

    2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

    2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Roaming

    2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local\Temp

    2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local\Microsoft

    2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local

    2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

    2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

    2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility

    2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

    2015-11-29 16:31:31 -------- d-s---r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Temp

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Microsoft

    2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local

    2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

    2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

    2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility

    2015-11-29 16:25:05 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft

    2015-11-29 16:19:12 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache

    2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming

    2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp

    2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Microsoft

    2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local

    2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Roaming

    2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp

    2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Microsoft

    2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local

    2015-11-29 16:14:30 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft

    2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming

    2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\LocalLow

    2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local

    2015-11-29 16:01:28 -------- d-s---r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell

    2015-11-29 16:01:28 -------- d-s---r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell

    2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming

    2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\LocalLow

    2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local\Temp

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local\Temp

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility

    ====== C:\Users\David ======

    2015-12-03 20:19:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung

    2015-12-03 20:19:36 -------- d-----w- C:\Users\David\.swt

    2015-12-03 20:19:35 -------- d-----w- C:\ProgramData\SAMSUNG

    2015-12-03 20:14:46 77228033C9950835BE25F3F2093FB806 92385632 ----a-w- C:\Users\David\Downloads\SamsungLink_Installer64.exe

    2015-12-03 19:12:10 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (3).exe

    2015-12-03 18:47:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (2).exe

    2015-12-03 18:36:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (1).exe

    2015-12-03 18:35:15 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe

    2015-12-03 18:27:58 -------- d-----w- C:\ProgramData\ATI

    2015-12-02 20:27:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center

    2015-12-02 18:11:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune

    2015-12-02 18:10:36 088812A121E0A9CEB40CE9C808C8A90C 642632 ----a-w- C:\Users\David\Downloads\hdtune_255.exe

    2015-11-30 19:55:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy

    2015-11-30 19:53:31 678AB0E8665345E72D11149A36F965BE 5127432 ----a-w- C:\Users\David\Downloads\spsetup128.exe

    2015-11-29 17:09:30 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512 (1).exe

    2015-11-29 17:09:13 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512.exe

    2015-11-29 17:03:26 -------- d-----w- C:\ProgramData\Garmin

    2015-11-29 17:03:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin

    2015-11-29 17:01:07 2266B0188BFDE4A42B39D54799E31C7B 43705424 ----a-w- C:\Users\David\Downloads\GarminExpressInstaller (2).exe

    2015-11-29 16:51:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome

    2015-11-29 16:49:03 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Users\David\Downloads\ChromeSetup (1).exe

    2015-11-29 16:41:49 -------- d-----w- C:\ProgramData\Microsoft OneDrive

    2015-11-29 16:40:13 -------- d-----r- C:\Users\David\Searches

    2015-11-29 16:40:03 -------- d-----w- C:\ProgramData\Synaptics

    2015-11-29 16:39:57 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\David\ntuser.ini

    2015-11-29 16:31:34 -------- d--h--w- C:\Users\David\AppData

    2015-11-29 16:31:31 -------- d--h--w- C:\Users\DefaultAppPool\AppData

    2015-11-29 16:24:00 -------- d-----w- C:\ProgramData\USOShared

    2015-11-29 16:19:16 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp

    2015-11-29 16:19:14 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\debug

    2015-11-29 16:18:41 -------- d--h--w- C:\WINDOWS\serviceprofiles\Localservice\AppData

    2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\Saved Games

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Videos

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Pictures

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Music

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Links

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Favorites

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Downloads

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Documents

    2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Desktop

    2015-11-29 16:18:39 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\Saved Games

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Videos

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Pictures

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Music

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Links

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Favorites

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Downloads

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Documents

    2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Desktop

    2015-11-29 16:18:38 -------- d--h--w- C:\WINDOWS\serviceprofiles\networkservice\AppData

    2015-11-29 16:01:31 7220FAD57A4B3D9D9755C51198CC0386 174 --sha-w- C:\Users\Public\desktop.ini

    2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData

    2015-11-29 16:01:28 -------- d-s---w- C:\ProgramData\Microsoft

    2015-11-29 16:01:28 -------- d--h--w- C:\Users\Default\AppData

    2015-11-29 16:01:28 -------- d--h--r- C:\Users\Public\Libraries

    2015-11-29 16:01:28 -------- d--h--r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC

    2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData

    2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\Saved Games

    2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\USOPrivate

    2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft

    2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Videos

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Pictures

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Music

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Links

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Favorites

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Downloads

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Documents

    2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Desktop

    2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools

    2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp

    2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools

    2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories

    2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility

    2015-11-29 12:28:57 6B3A5FC73A0F9CB75F9269766C507FD3 9552328 ----a-w- C:\Users\David\Downloads\sm8-setup.exe

     

    ====== C: exe-files ==

    2015-12-06 12:57:16 8930D704DC34BB6A8122D1330525FD5E 7904968 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe

    2015-12-06 12:57:16 8930D704DC34BB6A8122D1330525FD5E 7904968 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\OneDriveSetup.exe

    2015-12-06 12:57:11 984BDA28B013EC426501CA40D365FDF0 160960 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncConfig.exe

    2015-12-06 12:57:11 96F76F943DF1974E4F08B5B3DE0C028F 175296 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe

    2015-12-03 20:19:40 DE395ADB369470A953A11B8C300697E2 35680 ----a-w- C:\Users\David\AppData\Local\Temp\i4jdel0.exe

    2015-12-03 20:19:27 DE395ADB369470A953A11B8C300697E2 35680 ----a-w- C:\Program Files\Samsung\Samsung Link\.install4j\i4jdel.exe

    2015-12-03 20:19:27 6E5DBE0D641BD6304873EEE83A635533 389984 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\setup.exe

    2015-12-03 20:19:26 FF91BD7A836556EC8244D0340009A765 1562976 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\SocketTranscoder.exe

    2015-12-03 20:19:26 F72DB23288C49092E31272E4CAF281C8 23392 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\VideoSnapper.exe

    2015-12-03 20:19:22 F51C6B5377271E6F317D84FD0230F7CD 607584 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe

    2015-12-03 20:19:22 6A1B6A55BFECBD7D5FE8E38DB1C6A1EE 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Stop.exe

    2015-12-03 20:19:22 141EA95ED6EB402C86B977840AEAAD94 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Menu Start.exe

    2015-12-03 20:19:22 0BA134F4C582D5C7FEE19599813FE7B6 616288 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link.exe

    2015-12-03 20:19:22 0177BAF8A5CEB4120449C4AF47755D4C 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Start.exe

    2015-12-03 20:19:21 CD927996F9D87C857C629A627A0E5151 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\InstallerLauncher.exe

    2015-12-03 20:19:21 485BC4134AE50051D15AA45A2ACB2B8E 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\uninstall.exe

    2015-12-03 20:19:21 2E832495A84677535054C66620D05902 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\ChangeProperty.exe

    2015-12-03 20:19:16 D1614AA7874CB14383EA1DB8124675D9 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\rmid.exe

    2015-12-03 20:19:16 B4A414B4C86BA5E5950CC103747B9B56 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\rmiregistry.exe

    2015-12-03 20:19:16 9A7E21996CF66118D04B0ED7C24D59F5 62368 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\ssvagent.exe

    2015-12-03 20:19:16 98C4468DFCFBD1C854F1D4E7EC355D25 180640 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\unpack200.exe

    2015-12-03 20:19:16 48BB802EFD54C5ECA350076F3A536534 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\servertool.exe

    2015-12-03 20:19:16 08FA9C0C2015EAF2AB4533FB8F155E20 15776 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\tnameserv.exe

    2015-12-03 20:19:15 FCB6CB913BA8211683174A826AEC56DA 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\pack200.exe

    2015-12-03 20:19:15 FB151FBCC72D501C12FDF6CED4E05517 15776 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\orbd.exe

    2015-12-03 20:19:15 C34AD1325562A8F5A0F95B1DF871453C 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\ktab.exe

    2015-12-03 20:19:15 B20CBFCA8D4C124CFBA6D1C0B79A764D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\kinit.exe

    2015-12-03 20:19:15 8EA903122BBD73BD46FB77AB07F13D4D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\policytool.exe

    2015-12-03 20:19:15 892144B9731AAE58473FEC536CBE0971 51616 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\jp2launcher.exe

    2015-12-03 20:19:15 582DC0D24A9742F5E08FA371CBD443C9 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\klist.exe

    2015-12-03 20:19:15 3808FF3BC46F148ADE33FFECDC3348E8 188320 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\java.exe

    2015-12-03 20:19:15 27C6C5EA645BF58DFD026CFC3DAF409E 188832 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\javaw.exe

    2015-12-03 20:19:15 0DA657C5EA37517667DEC9BF28ACF855 73120 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\javacpl.exe

    2015-12-03 20:19:15 0D825584D6F2B5918B1E9788839DD513 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\keytool.exe

    2015-12-03 20:19:14 B2C9760EA81871BCA806963C0A625E0D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\java-rmi.exe

    2015-12-03 20:19:14 5F9C8C3CAB61EE7FE55077B2DF13FDD1 55200 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\jabswitch.exe

    2015-12-03 20:14:46 77228033C9950835BE25F3F2093FB806 92385632 ----a-w- C:\Users\David\Downloads\SamsungLink_Installer64.exe

    2015-12-03 19:12:10 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (3).exe

    2015-12-03 18:47:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (2).exe

    2015-12-03 18:36:14 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\David.exe

    2015-12-03 18:36:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (1).exe

    2015-12-03 18:35:15 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe

    2015-12-02 20:26:01 28F4F5BAC73505F71B8AEC95B7FBE1DD 798734 ----a-w- C:\Windows\LastGood\SysWOW64\amdocl_ld32.exe

    2015-12-02 20:26:00 56B986D13C74903FE27B71BA85C76037 995342 ----a-w- C:\Windows\LastGood\SysWOW64\amdocl_as32.exe

    2015-12-02 20:25:55 DD3E0FE46F9AB3F9A339F4DD3B2B2E4C 1061902 ----a-w- C:\Windows\LastGood\system32\amdocl_ld64.exe

    2015-12-02 20:25:55 64916F7C27F921964ABA161E8A0BD9F6 235008 ----a-w- C:\Windows\LastGood\system32\clinfo.exe

    2015-12-02 20:25:54 ECC9D68F5BEF5CD67BE2D2F758661980 1187342 ----a-w- C:\Windows\LastGood\system32\amdocl_as64.exe

    2015-12-02 20:25:30 A6BAAA6608A9B00220E9D5C023FC53D1 51200 ----a-w- C:\Windows\LastGood\system32\ATIODCLI.exe

    2015-12-02 20:25:30 463FFBD3350E3EB57F7D5746EBD233CA 332800 ----a-w- C:\Windows\LastGood\system32\ATIODE.exe

    2015-12-02 20:25:27 C2CD8C18832980C42B88B72C46BDF77C 143872 ----a-w- C:\Windows\LastGood\SysWOW64\atieah32.exe

    2015-12-02 20:25:10 63409958254B94D24CA239356FF28395 160256 ----a-w- C:\Windows\LastGood\system32\atieah64.exe

    2015-12-02 20:25:01 B7CC6DB515E9347EEC2FC19D4C09A962 672768 ----a-w- C:\Windows\LastGood\system32\atieclxx.exe

    2015-12-02 20:25:01 A6CCB465C24BD9FE55DE79FC8A3D6798 367104 ----a-w- C:\Windows\LastGood\system32\atiapfxx.exe

    2015-12-02 20:25:01 6BF0147A7A924E5A3AE049A95ECC9B34 246784 ----a-w- C:\Windows\LastGood\system32\atiesrxx.exe

    2015-12-02 20:24:22 A7406B7710720E7E3EBC8DCE5C5FB084 243696 ----a-w- C:\Windows\System32\clinfo.exe

    2015-12-02 20:24:17 412EF1F21D4DB473A8DECCE2B29006AB 96749536 ----a-w- C:\Program Files\AMD\CCC2\Install\ccc2_install.exe

    2015-12-02 20:24:16 F58CCDDA161577280061992EA0A2935C 152560 ----a-w- C:\Windows\syswow64\atieah32.exe

    2015-12-02 20:24:16 E75356D0EB4FDA69E6B8BE2CE4472F48 341488 ----a-w- C:\Windows\System32\ATIODE.exe

    2015-12-02 20:24:16 D00A534AB1C76C39C90CF638BC835513 168944 ----a-w- C:\Windows\System32\atieah64.exe

    2015-12-02 20:24:16 B92E2A90479F26851F3A667F737202CA 59888 ----a-w- C:\Windows\System32\ATIODCLI.exe

    2015-12-02 20:24:15 ABFE805A2E487E3F97C1EB854D91C537 375792 ----a-w- C:\Windows\System32\atiapfxx.exe

    2015-12-02 20:24:13 B844EBA6ED1666309C9D74345647057F 1070592 ----a-w- C:\Windows\System32\amdocl_ld64.exe

    2015-12-02 20:24:12 50A1F30C906F8DA69FE0F3B95B324936 807424 ----a-w- C:\Windows\syswow64\amdocl_ld32.exe

    2015-12-02 20:24:12 3B40AFF6A70B690D6B0C79DEADBFCD32 1196032 ----a-w- C:\Windows\System32\amdocl_as64.exe

    2015-12-02 20:24:10 A8AFEC11C457D037602921C6645D8679 1004032 ----a-w- C:\Windows\syswow64\amdocl_as32.exe

    2015-12-02 20:19:51 00C683A7378D3612F69B6832F56FA438 145617392 ----a-w- C:\Windows\System32\MRT.exe

    2015-12-02 18:11:28 F8FC2D14DF813CC920A39B3CB7E59CBC 401408 ----a-w- C:\Program Files (x86)\HD Tune\HDTune.exe

    2015-12-02 18:11:27 CEFC20D14D9940D53505E9B9769139E7 682266 ----a-w- C:\Program Files (x86)\HD Tune\unins000.exe

    2015-12-02 18:10:36 088812A121E0A9CEB40CE9C808C8A90C 642632 ----a-w- C:\Users\David\Downloads\hdtune_255.exe

    2015-12-01 19:22:58 DF7C79C1FFFBBE3D4BEC2BA7FF8A8AB1 300704 ------w- C:\Windows\System32\MpSigStub.exe

    2015-11-30 19:53:31 678AB0E8665345E72D11149A36F965BE 5127432 ----a-w- C:\Users\David\Downloads\spsetup128.exe

    2015-11-30 14:06:13 02E4E4F6DE447F55C80E5A0E6A311B7A 25512 ----a-w- C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe

    2015-11-29 17:09:30 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512 (1).exe

    2015-11-29 17:09:13 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512.exe

    2015-11-29 17:01:07 2266B0188BFDE4A42B39D54799E31C7B 43705424 ----a-w- C:\Users\David\Downloads\GarminExpressInstaller (2).exe

    2015-11-29 16:51:09 EAC3CFF15F7C04FBECCFCFF666302B35 43334736 ----a-w- C:\Program Files (x86)\Google\Update\Install\{C44F42E8-0DC4-4421-9AA6-6BEF6C515C9D}\46.0.2490.86_chrome_installer.exe

    2015-11-29 16:51:08 EAC3CFF15F7C04FBECCFCFF666302B35 43334736 ----a-w- C:\Program Files (x86)\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\46.0.2490.86\46.0.2490.86_chrome_installer.exe

    2015-11-29 16:49:23 FAC17E42199598C0352B9F5DC2EFFC85 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateOnDemand.exe

    2015-11-29 16:49:23 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateSetup.exe

    2015-11-29 16:49:23 77352A5A0833B1CA3B771148DA535CB6 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateWebPlugin.exe

    2015-11-29 16:49:23 61A77DDEF5E8D85E8B0955C4E5127B39 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateBroker.exe

    2015-11-29 16:49:23 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    2015-11-29 16:49:22 E337785DA1958E9AB02DDB2369EF46E8 307016 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe

    2015-11-29 16:49:22 BFDCC0375C492C524E78647CEED3F77D 130888 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateComRegisterShell64.exe

    2015-11-29 16:49:22 A72BB48D9014A7D7C05F02F595F52D60 245576 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe

    2015-11-29 16:49:21 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdate.exe

    2015-11-29 16:49:03 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Users\David\Downloads\ChromeSetup (1).exe

    2015-11-29 16:42:19 9F2ECA252720B25E8FEC1CAB2984B98D 548552 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe

    2015-11-29 16:25:15 A6FB9DB8F1A86861D955FD6975977AE0 89600 ----a-w- C:\Program Files\IDT\WDM\AESTSr64.exe

    2015-11-29 16:25:15 7C49A5E1943AFDA4672D80726AF3BAE4 275968 ----a-w- C:\Program Files\IDT\WDM\stacsv64.exe

    2015-11-29 16:25:15 6F52EF2EBE8701D3EFBF4300B379CBB9 88576 ----a-w- C:\Program Files\IDT\WDM\IDTPMA64.exe

    2015-11-29 16:25:15 6CE9319932479C10647280E6E85DEE46 564224 ----a-w- C:\Program Files\IDT\WDM\idt64mp1.exe

    2015-11-29 16:25:15 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\Program Files\IDT\WDM\IDTNGUI.exe

    2015-11-29 16:25:15 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\Program Files\IDT\WDM\IDTNJ.exe

    2015-11-29 16:25:15 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\Program Files\IDT\WDM\sttray64.exe

    2015-11-29 16:25:15 0278A28BD8F92263B5A1FC7F392273A7 38400 ----a-w- C:\Program Files\IDT\WDM\suhlp64.exe

    2015-11-29 16:25:14 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\Windows\System32\IDTNGUI.exe

    2015-11-29 16:25:14 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\Windows\System32\IDTNJ.exe

    2015-11-29 16:25:13 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\Windows\sttray64.exe

    2015-11-29 16:03:03 F03B817637577A6A5520BE78A89E6265 810488 ----a-w- C:\Windows\syswow64\FlashPlayerApp.exe

    === C: other files ==

    2015-12-06 12:57:11 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\CollectOneDriveLogs.bat

    2015-12-03 20:19:23 E7B2B0424B7BB5F11C32AF9B11C16C85 130 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\moveASPInfo.bat

    2015-12-03 20:19:23 B7DBE89A7736ECEA573A0360388CAB9A 65 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\configService.bat

    2015-12-03 20:19:23 425ABD81784F3909B41B24453FF655AA 1866 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\logLevelChange.bat

    2015-12-03 20:19:23 3F1FFE0343472138D63274B287DF7589 43 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\filePlay.bat

    2015-12-03 20:19:23 3C75DF47479CFB8D43302034B7F93BD7 114 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\UnRegistWebPlugin.bat

    2015-12-03 20:19:23 0FE2616A8A0A33552C2006EA7B48EDFE 358 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\RegistHLS.bat

    2015-12-03 20:19:23 0F9E59586D9962D6D0A872EC09BF61F0 374 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\UnRegistHLS.bat

    2015-12-03 20:19:16 1654D4D60CD2C29A5A7818F17D5A927D 18633 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\lib\deploy\ffjcext.zip

    2015-12-02 20:25:31 50228D17A34A1E5CF93084A6AE70870B 665088 ----a-w- C:\Windows\LastGood\system32\DRIVERS\atikmpag.sys

    2015-12-02 20:24:58 207BEEDFC2E357A4A27E99DEA0FBEDF3 21622272 ----a-w- C:\Windows\LastGood\system32\DRIVERS\atikmdag.sys

    2015-11-29 16:25:15 0AAD250A31A7EE96E0945AB9E1F3BAA7 520192 ----a-w- C:\Program Files\IDT\WDM\stwrt64.sys

    2015-11-29 16:24:09 158A62561751F396DDA43EC653963DDC 42696 ----a-w- C:\Program Files\Synaptics\SynTP\Smb_driver_Intel.sys

    2015-11-29 16:24:09 146B688C9AA8DF2437127768109706B4 42184 ----a-w- C:\Program Files\Synaptics\SynTP\Smb_driver_AMDASF.sys

    2015-11-29 16:01:31 67B75600DB73F63671AD9D0D7C97990C 3968 ----a-w- C:\ProgramData\Microsoft\Windows\RetailDemo\Office\InstallOfficeJapanese.bat

    2015-11-29 16:01:31 074296BB60BA1342A6DA8A6086A0885E 3968 ----a-w- C:\ProgramData\Microsoft\Windows\RetailDemo\Office\InstallOffice.bat

     

    ==== Startup Registry Enabled ======================

     

    [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"

     

    [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"

     

    [HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "OneDrive"="C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"

    "GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"

    "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"

     

    [HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

    "Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

    "Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun"

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "OneDrive"="C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"

    "GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"

    "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

    "Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"

     

    ==== Startup Registry Enabled x64 ======================

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe"

    "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe"

    "Persistence"="C:\WINDOWS\system32\igfxpers.exe"

    "Samsung Link"="C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe"

    "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "

    "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe"

     

    ==== Task Scheduler Jobs ======================

     

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29-11-2015 17:49]

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29-11-2015 17:49]

     

    ==== Other Scheduled Tasks ======================

     

    "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]

    "C:\WINDOWS\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe]

    "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

    "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]

     

    ==== Chromium Look ======================

     

    Google Slides - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek

    Google Docs - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake

    Google Drive - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf

    Embed WMPlayer inline - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli

    Hootsuite Hootlet - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifn

    YouTube - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo

    Google Search - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf

    Google Calendar - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn

    Google Sheets - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap

    Google Docs Offline - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi

    Google Maps - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh

    Chrome Web Store Payments - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

    Gmail - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

     

    ==== Set IE to Default ======================

     

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]


    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

    No DefaultScope Set For HKCU

     

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]


    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]

    "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

     

    ==== All HKLM and HKCU SearchScopes ======================

     

    HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

    HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

    HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

    HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

    HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

    HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}

    HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC

     

    ==== HijackThis Entries ======================

     

    F2 - REG:system.ini: UserInit=

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun

    O4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background

    O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window

    O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR

    O4 - HKCU\..\RunOnce: [uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

    O4 - HKCU\..\RunOnce: [uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"

    O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll

    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)

    O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe

    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)

    O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe

    O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)

    O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exe

    O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

    O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

     

    ==== Empty IE Cache ======================

     

    C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\David\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully

    C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully

    C:\Users\David\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

    C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

     

    ==== Empty FireFox Cache ======================

     

    No FireFox Profiles found

     

    ==== Empty Chrome Cache ======================

     

    C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot

     

    ==== Empty All Flash Cache ======================

     

    No Flash Cache Found

     

    ==== Empty All Java Cache ======================

     

    Java Cache cleared successfully

     

    ==== C:\zoek_backup content ======================

     

    C:\zoek_backup (files=50 folders=37 161560689 bytes)

     

    ==== Empty Temp Folders ======================

     

    C:\WINDOWS\Temp will be emptied at reboot

     

    ==== After Reboot ======================

     

    ==== Empty Temp Folders ======================

     

    C:\WINDOWS\Temp successfully emptied

    C:\Users\David\AppData\Local\Temp successfully emptied

     

    ==== Empty Recycle Bin ======================

     

    C:\$RECYCLE.BIN successfully emptied

     

    ==== Deleting Files / Folders ======================

     

    "C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted

    "C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted

    "C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted

    "C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted

     

    ==== EOF on zo 06-12-2015 at 14:33:29,51 ======================

  6. Logfile of random's system information tool 1.10 (written by random/random)

    Run by David at 2015-12-03 20:12:27

    Microsoft Windows 10 Home 

    System drive C: has 423 GB (92%) free of 457 GB

    Total RAM: 4044 MB (53% free)

     

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 20:12:28, on 3-12-2015

    Platform: Unknown Windows (WinNT 6.02.1008)

    MSIE: Internet Explorer v11.0 (11.00.10240.16384)

    Boot mode: Normal

     

    Running processes:

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe

    C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe

    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

    C:\Program Files\trend micro\David.exe

     

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 

    F2 - REG:system.ini: UserInit=

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun

    O4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background

    O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window

    O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR

    O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll

    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)

    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)

    O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe

    O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)

    O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

    O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

     

    --

    End of file - 7282 bytes

     

    ======Listing Processes======

     

     

     

     

     

     

     

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe -k DcomLaunch

    C:\WINDOWS\system32\svchost.exe -k RPCSS

    C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted

    "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1b242bdb-6ef5-4189-af61-a3f676bc2f1d -SystemEventPortName:HostProcess-9b0c1415-ff4f-42d0-929e-ece5d383622d -IoCancelEventPortName:HostProcess-7b254eff-65e2-4fbd-ad8c-fd7c597008cc -NonStateChangingEventPortName:HostProcess-473aec0d-428d-4f89-9da9-c899b5b0eef0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fad1f0f0-f7ed-4e7d-8e4c-8d81b0a7c4c4 -DeviceGroupId:

    C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\WINDOWS\system32\svchost.exe -k netsvcs

    C:\WINDOWS\system32\svchost.exe -k LocalService

    "C:\Program Files\IDT\WDM\STacSV64.exe"

    C:\WINDOWS\system32\Hpservice.exe

    C:\WINDOWS\system32\svchost.exe -k NetworkService

    C:\WINDOWS\System32\spoolsv.exe

    C:\WINDOWS\system32\WLANExt.exe 1038749552704

    \??\C:\WINDOWS\system32\conhost.exe 0x4

    C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork

    "C:\Program Files\IDT\WDM\AESTSr64.exe"

    C:\WINDOWS\System32\svchost.exe -k utcsvc

    "C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"

    C:\WINDOWS\system32\svchost.exe -k appmodel

     

     

    C:\WINDOWS\system32\SearchIndexer.exe /Embedding

     

    "C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe"

    C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet

    C:\WINDOWS\system32\atiesrxx.exe

     

    C:\WINDOWS\System32\WinLogon.exe -SpecialSession

    "dwm.exe"

    atieclxx

    "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"

    sihost.exe

    taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}

    "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer

    C:\WINDOWS\Explorer.EXE

    C:\Windows\System32\RuntimeBroker.exe -Embedding

    "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" 

    "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca

    "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://go.microsoft.com/fwlink/?LinkID=219472&clcid=0x409"

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4572.0.888356693\2133527705" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,8,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x0000 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1151.0 --ignored=" --type=renderer " /prefetch:822062411

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.2.2081098326\748553359" --font-cache-shared-handle=2500 /prefetch:673131151

    "C:\Windows\System32\igfxtray.exe" 

    "C:\Windows\System32\hkcmd.exe" 

    "C:\Windows\System32\igfxpers.exe" 

    "C:\Program Files\IDT\WDM\sttray64.exe" 

    "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background

    "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" 

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0

    "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac

    C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup

    C:\Windows\System32\InstallAgent.exe -Embedding

    C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding

    "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey B0A5C050-CE5A-B957-C1B1-951CE2E94FC2 -Reinvoke

    "C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca

    C:\WINDOWS\system32\browser_broker.exe -Embedding

    "C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:4440 CREDAT:140545 EDGEHOST  /prefetch:6

     

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.55.495743026\989032746" --font-cache-shared-handle=9324 /prefetch:673131151

    "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe58_ Global\UsGthrCtrlFltPipeMssGthrPipe58 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 

    "C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 620 628 8192 624 

    C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

    C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

    "C:\Users\David\Downloads\RSITx64 (3).exe" 

    C:\WINDOWS\system32\wbem\wmiprvse.exe

     

    ======Scheduled tasks folder======

     

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c 

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 

     

    ======Registry dump======

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]

    "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]

    "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]

    "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]

    "SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-12-02 524800]

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-11-29 382144]

    "GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-11-07 811848]

    "GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-11-17 1403304]

    "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

     

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

    "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-21 767176]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

    C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "DSCAutomationHostEnabled"=2

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    "midimapper"=midimap.dll

    "msacm.imaadpcm"=imaadp32.acm

    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm

    "msacm.msadpcm"=msadp32.acm

    "msacm.msg711"=msg711.acm

    "msacm.msgsm610"=msgsm32.acm

    "vidc.i420"=iyuv_32.dll

    "vidc.iyuv"=iyuv_32.dll

    "vidc.mrle"=msrle32.dll

    "vidc.msvc"=msvidc32.dll

    "vidc.uyvy"=msyuv.dll

    "vidc.yuy2"=msyuv.dll

    "vidc.yvu9"=tsbyuv.dll

    "vidc.yvyu"=msyuv.dll

    "wavemapper"=msacm32.drv

    "wave"=wdmaud.drv

    "midi"=wdmaud.drv

    "mixer"=wdmaud.drv

    "aux"=wdmaud.drv

    "wave1"=wdmaud.drv

    "midi1"=wdmaud.drv

    "mixer1"=wdmaud.drv

    "MSVideo8"=VfWWDM32.dll

     

    ======File associations======

     

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe "%1" %*

     

    ======List of files/folders created in the last 1 month======

     

    2015-12-03 19:36:12 ----D---- C:\rsit

    2015-12-03 19:36:12 ----D---- C:\Program Files\trend micro

    2015-12-03 19:27:58 ----D---- C:\ProgramData\ATI

    2015-12-02 21:27:41 ----D---- C:\Program Files\ATI Technologies

    2015-12-02 21:27:30 ----D---- C:\Program Files (x86)\ATI Technologies

    2015-12-02 21:26:49 ----SHD---- C:\Config.Msi

    2015-12-02 21:24:58 ----D---- C:\WINDOWS\LastGood

    2015-12-02 21:24:23 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll

    2015-12-02 21:24:23 ----A---- C:\WINDOWS\system32\mantleaxl64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\mantle64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\detoured.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\clinfo.exe

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce03.dat

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce02.dat

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atitmm64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODE.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atio6axx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimuixx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimpc64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiglpxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6txx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6pxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieah64.exe

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalrt64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticaldd64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalcl64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiapfxx.exe

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\OpenCL.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\amdxc64.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdpcom64.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe

    2015-12-02 21:24:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe

    2015-12-02 21:24:12 ----A---- C:\WINDOWS\system32\amdocl_as64.exe

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl64.dll

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmmcl6.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmiracast.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmantle64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdlvr64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdicdxx.dat

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdhdl64.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amde31a.dat

    2015-12-02 21:19:56 ----D---- C:\WINDOWS\system32\MRT

    2015-12-02 21:19:51 ----A---- C:\WINDOWS\system32\MRT.exe

    2015-12-02 19:11:27 ----D---- C:\Program Files (x86)\HD Tune

    2015-12-01 20:22:58 ----N---- C:\WINDOWS\system32\MpSigStub.exe

    2015-11-30 21:05:59 ----D---- C:\Users\David\AppData\Roaming\Macromedia

    2015-11-30 20:55:46 ----D---- C:\Program Files\Speccy

    2015-11-29 18:21:46 ----D---- C:\Program Files\CCleaner

    2015-11-29 18:03:41 ----D---- C:\Program Files\DIFX

    2015-11-29 18:03:39 ----D---- C:\Users\David\AppData\Roaming\Garmin

    2015-11-29 18:03:26 ----D---- C:\ProgramData\Garmin

    2015-11-29 18:03:21 ----D---- C:\Program Files (x86)\Garmin

    2015-11-29 17:49:21 ----D---- C:\Program Files (x86)\Google

    2015-11-29 17:41:54 ----D---- C:\Users\David\AppData\Roaming\ATI

    2015-11-29 17:41:49 ----D---- C:\ProgramData\Microsoft OneDrive

    2015-11-29 17:40:04 ----D---- C:\Users\David\AppData\Roaming\Adobe

    2015-11-29 17:40:03 ----D---- C:\ProgramData\Synaptics

    2015-11-29 17:40:02 ----D---- C:\Users\David\AppData\Roaming\Synaptics

    2015-11-29 17:35:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

    2015-11-29 17:35:44 ----D---- C:\WINDOWS\SoftwareDistribution

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Sjablonen

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Menu Start

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Favorieten

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Documenten

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Bureaublad

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Application Data

    2015-11-29 17:31:34 ----SD---- C:\Users\David\AppData\Roaming\Microsoft

    2015-11-29 17:29:16 ----ASH---- C:\hiberfil.sys

    2015-11-29 17:25:29 ----D---- C:\ProgramData\Package Cache

    2015-11-29 17:25:14 ----D---- C:\Program Files\IDT

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNX.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNJ.exe

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNHP.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNGUI.exe

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTEC64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTCo64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAR64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAC64.dll

    2015-11-29 17:25:13 ----D---- C:\WINDOWS\system32\SRSLabs

    2015-11-29 17:25:13 ----A---- C:\WINDOWS\system32\stlang64.dll

    2015-11-29 17:25:13 ----A---- C:\WINDOWS\sttray64.exe

    2015-11-29 17:24:58 ----D---- C:\Program Files\Common Files\ATI Technologies

    2015-11-29 17:24:44 ----D---- C:\Program Files\AMD

    2015-11-29 17:24:28 ----D---- C:\WINDOWS\SYSWOW64\sda

    2015-11-29 17:24:02 ----HD---- C:\Program Files\Uninstall Information

    2015-11-29 17:24:00 ----D---- C:\ProgramData\USOShared

    2015-11-29 17:21:47 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll

    2015-11-29 17:19:50 ----AS---- C:\WINDOWS\bootstat.dat

    2015-11-29 17:18:38 ----D---- C:\WINDOWS\ServiceProfiles

    2015-11-29 17:18:09 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT

    2015-11-29 17:15:57 ----DC---- C:\WINDOWS\Panther

    2015-11-29 17:15:29 ----D---- C:\Windows.old

    2015-11-29 17:14:56 ----D---- C:\WINDOWS\InfusedApps

    2015-11-29 17:14:30 ----D---- C:\WINDOWS\system32\Microsoft

    2015-11-29 17:11:59 ----D---- C:\Program Files\Synaptics

    2015-11-29 17:10:29 ----D---- C:\WINDOWS\Setup

    2015-11-29 17:07:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer

    2015-11-29 17:07:53 ----D---- C:\WINDOWS\OCR

    2015-11-29 17:07:52 ----D---- C:\Program Files\Reference Assemblies

    2015-11-29 17:07:52 ----D---- C:\Program Files\MSBuild

    2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\Reference Assemblies

    2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\MSBuild

    2015-11-29 17:06:56 ----A---- C:\WINDOWS\system32\perfi013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfh013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfd013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfc013.dat

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\winrm

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\WCN

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\slmgr

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\nl

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\en

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\nl-NL

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\0409

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\winrm

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\WCN

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\slmgr

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\nl

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\en

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\nl-NL

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\en-US

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\0409

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\nl-NL

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\en-US

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\DigitalLocker

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfi009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfh009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfd009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfc009.dat

    2015-11-29 17:03:03 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\NOISE.DAT

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\msclmd.dll

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\dssec.dat

    2015-11-29 17:01:32 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat

    2015-11-29 17:01:32 ----A---- C:\WINDOWS\fonts\desktop.ini

    2015-11-29 17:01:31 ----ASH---- C:\Program Files (x86)\desktop.ini

    2015-11-29 17:01:31 ----A---- C:\WINDOWS\win.ini

    2015-11-29 17:01:31 ----A---- C:\WINDOWS\system.ini

    2015-11-29 17:01:30 ----ASH---- C:\Program Files\desktop.ini

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Nui

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\F12

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Configuration

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Web

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Vss

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\twain_32

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\tracing

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Temp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Tasks

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\TAPI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-TW

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-HK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-CN

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\wbem

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\uk-UA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\tr-TR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\th-TH

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Tasks

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sv-SE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sru

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sppui

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\spp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\SMI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sl-SI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sk-SK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\setup

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ru-RU

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ro-RO

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\restore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Recovery

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\RasToast

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ras

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-PT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-BR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pl-PL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\oobe

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nl-NL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\networklist

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\NDF

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nb-NO

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MUI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MsDtc

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MSDRM

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migration

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Macromed

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lv-LV

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lt-LT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Licenses

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ko-KR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ja-JP

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\it-IT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Ipmi

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InstallShield

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InputMethod

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\inetsrv

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\IME

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\icsxml

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hu-HU

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hr-HR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\he-IL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-FR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-CA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fi-FI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\et-EE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-MX

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-ES

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-US

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-GB

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\el-GR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\DriverStore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\drivers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\downlevel

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Dism

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\de-DE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\da-DK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\config

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Com

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\catroot

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Bthprops

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\bg-BG

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ar-SA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AppLocker

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\syswow64

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemResources

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemApps

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-TW

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-HK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-CN

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\WinMetadata

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\winevt

    2015-11-29 17:01:28 ----SHD---- C:\WINDOWS\Installer

    2015-11-29 17:01:28 ----SHD---- C:\Program Files\Windows Sidebar

    2015-11-29 17:01:28 ----SHD---- C:\Program Files (x86)\Windows Sidebar

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Nui

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\F12

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\dsc

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\DiagSvcs

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Configuration

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\Downloaded Program Files

    2015-11-29 17:01:28 ----SD---- C:\ProgramData\Microsoft

    2015-11-29 17:01:28 ----SD---- C:\Program Files\WindowsPowerShell

    2015-11-29 17:01:28 ----SD---- C:\Program Files (x86)\WindowsPowerShell

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Media

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Fonts

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\assembly

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PurchaseDialog

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PrintDialog

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\Offline Web Pages

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\MiracastView

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DevicesFlow

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DesktopTileResources

    2015-11-29 17:01:28 ----HD---- C:\WINDOWS\ELAMBKUP

    2015-11-29 17:01:28 ----HD---- C:\ProgramData

    2015-11-29 17:01:28 ----HD---- C:\Program Files\WindowsApps

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WindowsPowerShell

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioPlugIns

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioDatabase

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wfp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WDI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wbem

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\uk-UA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\tr-TR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\th-TH

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Tasks

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SystemResetPlatform

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Sysprep

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sv-SE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sru

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-RS

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-CS

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sppui

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spool

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech_OneCore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sl-SI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sk-SK

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\setup

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SecureBootUpdates

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ru-RU

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ro-RO

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\restore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Recovery

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\RasToast

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ras

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-PT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-BR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ProximityToast

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\PointOfService

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pl-PL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\oobe

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nl-NL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\networklist

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\NDF

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nb-NO

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MUI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MsDtc

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MSDRM

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migwiz

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Macromed

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lv-LV

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lt-LT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\LogFiles

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Licenses

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ko-KR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ja-JP

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\it-IT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Ipmi

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\InputMethod

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\inetsrv

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\IME

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\icsxml

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ias

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hu-HU

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hr-HR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\he-IL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicyUsers

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicy

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\FxsTmp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-FR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-CA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fi-FI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\et-EE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-MX

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-ES

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-US

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-GB

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\el-GR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\drivers\etc

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\downlevel

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Dism

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\de-DE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\da-DK

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\cs-CZ

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Com

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\CodeIntegrity

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\catroot2

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Bthprops

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Boot

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\bg-BG

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ar-SA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\appraiser

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AppLocker

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AdvancedInstallers

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\System

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech_OneCore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\SKB

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\ShellNew

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\security

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\schemas

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\SchCache

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Resources

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\rescache

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Registration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Provisioning

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\prefetch

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\PolicyDefinitions

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\PLA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Performance

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\ModemLogs

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Migration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Microsoft.NET

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Logs

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\LiveKernelReports

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\L2Schemas

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\InputMethod

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\IME

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Help

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Globalization

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\diagnostics

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\debug

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Cursors

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Branding

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Boot

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppReadiness

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppPatch

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\appcompat

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\addins

    2015-11-29 17:01:28 ----D---- C:\ProgramData\USOPrivate

    2015-11-29 17:01:28 ----D---- C:\ProgramData\SoftwareDistribution

    2015-11-29 17:01:28 ----D---- C:\ProgramData\regid.1991-06.com.microsoft

    2015-11-29 17:01:28 ----D---- C:\ProgramData\Comms

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Portable Devices

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Photo Viewer

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows NT

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Multimedia Platform

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Media Player

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Mail

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Journal

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Defender

    2015-11-29 17:01:28 ----D---- C:\Program Files\Internet Explorer

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\System

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\Services

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\microsoft shared

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Portable Devices

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Photo Viewer

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows NT

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Multimedia Platform

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Media Player

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Mail

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Defender

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Microsoft.NET

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Internet Explorer

    2015-11-29 17:01:28 ----D---- C:\PerfLogs

    2015-11-29 17:01:10 ----D---- C:\WINDOWS\system32\drivers\UMDF

    2015-11-29 17:01:09 ----D---- C:\WINDOWS\system32\drivers

    2015-11-29 16:59:55 ----D---- C:\WINDOWS\INF

    2015-11-29 16:53:15 ----D---- C:\WINDOWS\CbsTemp

    2015-11-29 16:46:54 ----RD---- C:\Users

    2015-11-29 16:46:54 ----RD---- C:\Program Files (x86)

    2015-11-29 16:46:54 ----RD---- C:\Program Files

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\WinSxS

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\SMI

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\DriverStore

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\config

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\CatRoot

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\System32

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\servicing

    2015-11-29 16:46:54 ----D---- C:\Windows

    2015-11-29 16:46:54 ----D---- C:\Program Files\Common Files

    2015-11-29 16:46:54 ----D---- C:\Program Files (x86)\Common Files

    2015-11-29 13:59:42 ----HD---- C:\$SysReset

     

    ======List of files/folders modified in the last 1 month======

     

    2015-12-02 21:26:08 ----D---- C:\AMD

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\coinst_15.20.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\atiuxp64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiu9p64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiesrxx.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieclxx.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atidxx64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atidemgy.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticfx64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiadlxx.dll

    2015-12-02 21:19:37 ----SHD---- C:\System Volume Information

    2015-11-29 17:15:59 ----SHD---- C:\Recovery

    2015-11-29 16:58:33 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll

    2015-11-29 16:58:31 ----A---- C:\WINDOWS\system32\dlnashext.dll

    2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll

    2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\internetmail.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\mdmregistration.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\hevcdecoder.dll

    2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\PlayToManager.dll

    2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll

    2015-11-29 16:58:26 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe

    2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\WWanAPI.dll

    2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\ngccredprov.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\wpnapps.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\msctfuimanager.dll

    2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wlansvc.dll

    2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wfdprov.dll

    2015-11-29 16:58:19 ----A---- C:\WINDOWS\system32\schedsvc.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\WcnNetsh.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\ncryptprov.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe

    2015-11-29 16:58:15 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\ngckeyenum.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\fveapi.dll

    2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\NetSetupShim.dll

    2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\netcenter.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WUDFx02000.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\wpx.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WcnApi.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\msxml3.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\fdWCN.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\dafWCN.dll

    2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll

    2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe

    2015-11-29 16:58:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll

    2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll

    2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\TokenBroker.dll

    2015-11-29 16:58:05 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe

    2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\SettingSync.dll

    2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\rdbui.dll

    2015-11-29 16:58:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll

    2015-11-29 16:58:00 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll

    2015-11-29 16:57:58 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll

    2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll

    2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\jscript.dll

    2015-11-29 16:57:48 ----A---- C:\WINDOWS\system32\rpcrt4.dll

    2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\usermgr.dll

    2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\MFPlay.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanmm.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanconn.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWiFiAdapter.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWebproxy.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeWiFi.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPermissions.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeIP.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeCell.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationGeofences.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFramework.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationCrowdsource.dll

    2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\wlidsvc.dll

    2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\sysmain.dll

    2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\MPSSVC.dll

    2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll

    2015-11-29 16:57:41 ----A---- C:\WINDOWS\system32\wwancfg.dll

    2015-11-29 16:57:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll

    2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\vbscript.dll

    2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\ActionCenter.dll

    2015-11-29 16:57:35 ----A---- C:\WINDOWS\system32\accountaccessor.dll

    2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll

    2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll

    2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll

    2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\browserbroker.dll

    2015-11-29 16:57:27 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll

    2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\vaultsvc.dll

    2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\msxml6.dll

    2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll

    2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\mf.dll

    2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll

    2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll

    2015-11-29 16:57:23 ----A---- C:\WINDOWS\system32\ngcsvc.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\kerberos.dll

    2015-11-29 16:57:20 ----A---- C:\WINDOWS\notepad.exe

    2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe

    2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\appraiser.dll

    2015-11-29 16:57:17 ----A---- C:\WINDOWS\system32\syncutil.dll

    2015-11-29 16:57:16 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll

    2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\notepad.exe

    2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll

    2015-11-29 16:57:14 ----A---- C:\WINDOWS\system32\pnidui.dll

    2015-11-29 16:57:12 ----A---- C:\WINDOWS\system32\dssvc.dll

    2015-11-29 16:57:11 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll

    2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\shacct.dll

    2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\NetworkStatus.dll

    2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\mfds.dll

    2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe

     

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R0 amdkmpfd;@oem104.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]

    R0 hpdskflt;@oem117.inf,%service_desc%;HP Filter; C:\WINDOWS\System32\drivers\hpdskflt.sys [2011-05-13 30008]

    R0 iaStor;@oem93.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-05-20 557848]

    R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]

    R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]

    R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]

    R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]

    R3 Accelerometer;@oem117.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\System32\drivers\Accelerometer.sys [2011-05-13 43320]

    R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-02 21648880]

    R3 AMDKMDAP;AMDKMDAP; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-02 674288]

    R3 BCM43XX;@oem81.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor de Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-06-29 4749008]

    R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]

    R3 IntcDAud;@oem27.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]

    R3 MEIx64;@oem118.inf,%HECI_SvcDesc%;Intel® Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]

    R3 RSPCIESTOR;@oem61.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2015-06-03 374016]

    R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]

    R3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-07-17 42696]

    R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10305; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2010-12-02 520192]

    R3 SynTP;@oem95.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\System32\drivers\SynTP.sys [2015-07-17 614088]

    S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]

    S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]

    S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]

    S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]

    S0 storufs;@storufs.inf,sServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]

    S3 a016bus;@oem43.inf,%seda016.Service.Desc%;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\System32\drivers\a016bus.sys [2008-01-18 109096]

    S3 a016mgmt;@oem72.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\a016mgmt.sys [2008-01-18 130600]

    S3 a016obex;@oem119.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\a016obex.sys [2008-01-18 125480]

    S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]

    S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]

    S3 dg_ssudbus;@oem21.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2015-05-21 110720]

    S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]

    S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]

    S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]

    S3 ggflt;@oem50.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-09-26 16088]

    S3 ggsomc;@oem50.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-09-26 30424]

    S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]

    S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]

    S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]

    S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]

    S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]

    S3 nusb3hub;@oem110.inf,%NUSB3HUB.SvcDesc%;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\System32\drivers\nusb3hub.sys [2013-10-19 91648]

    S3 nusb3xhc;@oem25.inf,%NUSB3XHC.SvcDesc%;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\System32\drivers\nusb3xhc.sys [2013-10-19 208896]

    S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-10 934752]

    S3 s0016bus;@oem36.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 driver (WDM); C:\WINDOWS\System32\drivers\s0016bus.sys [2008-05-16 115240]

    S3 s0016mgmt;@oem28.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0016mgmt.sys [2008-05-16 137256]

    S3 s0016obex;@oem113.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0016obex.sys [2008-05-16 136744]

    S3 s0016unic;@oem62.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\WINDOWS\System32\drivers\s0016unic.sys [2008-05-16 151592]

    S3 s0017bus;@oem45.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 driver (WDM); C:\WINDOWS\System32\drivers\s0017bus.sys [2008-10-21 113704]

    S3 s0017mgmt;@oem60.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0017mgmt.sys [2008-10-21 133160]

    S3 s0017obex;@oem51.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0017obex.sys [2008-10-21 128552]

    S3 s0017unic;@oem91.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM); C:\WINDOWS\System32\drivers\s0017unic.sys [2008-10-21 145960]

    S3 s1018bus;@oem40.inf,%sed1018.Service.Desc%;Sony Ericsson Device 1018 driver (WDM); C:\WINDOWS\System32\drivers\s1018bus.sys [2009-03-25 113704]

    S3 s1018mgmt;@oem17.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1018mgmt.sys [2009-03-25 133160]

    S3 s1018obex;@oem24.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1018obex.sys [2009-03-25 128552]

    S3 s1018unic;@oem57.inf,%s1018.Service.Desc%;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1018unic.sys [2009-03-25 146472]

    S3 s1029bus;@oem96.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 driver (WDM); C:\WINDOWS\System32\drivers\s1029bus.sys [2009-05-25 116264]

    S3 s1029mgmt;@oem33.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1029mgmt.sys [2009-05-25 139304]

    S3 s1029obex;@oem107.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1029obex.sys [2009-05-25 135208]

    S3 s1029unic;@oem9.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1029unic.sys [2009-05-25 151592]

    S3 s1039bus;@oem85.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 driver (WDM); C:\WINDOWS\System32\drivers\s1039bus.sys [2010-03-15 127600]

    S3 s1039mgmt;@oem116.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1039mgmt.sys [2010-03-15 141424]

    S3 s1039obex;@oem73.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1039obex.sys [2010-03-15 137328]

    S3 s1039unic;@oem80.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1039unic.sys [2010-03-15 158320]

    S3 s916bus;@oem2.inf,%sed916.Service.Desc%;Sony Ericsson Device 916 driver (WDM); C:\WINDOWS\System32\drivers\s916bus.sys [2007-11-02 108072]

    S3 s916mgmt;@oem114.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s916mgmt.sys [2007-11-02 130088]

    S3 s916obex;@oem3.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s916obex.sys [2007-11-02 124968]

    S3 se3ebus;@oem87.inf,%sed62.Service.Desc%;Sony Ericsson Device 062 (WDM); C:\WINDOWS\System32\drivers\se3ebus.sys [2007-04-10 107784]

    S3 se3emgmt;@oem97.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\se3emgmt.sys [2007-04-10 126216]

    S3 se3eobex;@oem18.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\se3eobex.sys [2007-04-10 123144]

    S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2015-07-17 42184]

    S3 ss_conn_usb_driver;@oem84.inf,%ssud.SvcDesc%;SAMSUNG Mobile USB Connectivity Device Driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [2015-05-21 26368]

    S3 ssudqcfilter;@oem21.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2015-05-21 48896]

    S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]

    S3 UcmUcsi;@UcmUcsi.inf,mUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-10 45056]

    S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]

    S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]

    S3 UfxChipidea;@ufxchipidea.inf,xChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]

    S3 ufxsynopsys;@ufxsynopsys.inf,xsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

    S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]

    S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]

    S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]

     

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]

    R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-02 255472]

    R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-11-17 780304]

    R2 hpsrv;@oem117.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2011-05-13 30520]

    R2 OneSyncSvc_Session6;Host synchroniseren_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-12-02 275968]

    R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]

    R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 PimIndexMaintenanceSvc_Session6;Contact Data_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 UnistoreSvc_Session6;User Data Storage_Session6; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]

    S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 cphs;Intel® Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]

    S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]

    S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]

    S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]

    S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-10 1031680]

    S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

     

    -----------------EOF-----------------

    kan de instructie video niet vinden


  7. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 

    F2 - REG:system.ini: UserInit=

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun

    O4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background

    O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window

    O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"

    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR

    O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll

    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)

    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)

    O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe

    O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)

    O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe

    O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe

    O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)

    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

     

    --

    End of file - 7282 bytes

     

    ======Listing Processes======

     

     

     

     

     

     

     

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe -k DcomLaunch

    C:\WINDOWS\system32\svchost.exe -k RPCSS

    C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted

    "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1b242bdb-6ef5-4189-af61-a3f676bc2f1d -SystemEventPortName:HostProcess-9b0c1415-ff4f-42d0-929e-ece5d383622d -IoCancelEventPortName:HostProcess-7b254eff-65e2-4fbd-ad8c-fd7c597008cc -NonStateChangingEventPortName:HostProcess-473aec0d-428d-4f89-9da9-c899b5b0eef0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fad1f0f0-f7ed-4e7d-8e4c-8d81b0a7c4c4 -DeviceGroupId:

    C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\WINDOWS\system32\svchost.exe -k netsvcs

    C:\WINDOWS\system32\svchost.exe -k LocalService

    "C:\Program Files\IDT\WDM\STacSV64.exe"

    C:\WINDOWS\system32\Hpservice.exe

    C:\WINDOWS\system32\svchost.exe -k NetworkService

    C:\WINDOWS\System32\spoolsv.exe

    C:\WINDOWS\system32\WLANExt.exe 1038749552704

    \??\C:\WINDOWS\system32\conhost.exe 0x4

    C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork

    "C:\Program Files\IDT\WDM\AESTSr64.exe"

    C:\WINDOWS\System32\svchost.exe -k utcsvc

    "C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"

    C:\WINDOWS\system32\svchost.exe -k appmodel

     

     

    C:\WINDOWS\system32\SearchIndexer.exe /Embedding

     

    "C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe"

    C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet

    C:\WINDOWS\system32\atiesrxx.exe

     

    C:\WINDOWS\System32\WinLogon.exe -SpecialSession

    "dwm.exe"

    atieclxx

    "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"

    sihost.exe

    taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}

    "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer

    C:\WINDOWS\Explorer.EXE

    C:\Windows\System32\RuntimeBroker.exe -Embedding

    "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" 

    "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca

    "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://go.microsoft.com/fwlink/?LinkID=219472&clcid=0x409"

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4572.0.888356693\2133527705" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,8,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x0000 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1151.0 --ignored=" --type=renderer " /prefetch:822062411

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.2.2081098326\748553359" --font-cache-shared-handle=2500 /prefetch:673131151

    "C:\Windows\System32\igfxtray.exe" 

    "C:\Windows\System32\hkcmd.exe" 

    "C:\Windows\System32\igfxpers.exe" 

    "C:\Program Files\IDT\WDM\sttray64.exe" 

    "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background

    "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" 

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow

    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0

    "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac

    C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup

    C:\Windows\System32\InstallAgent.exe -Embedding

    C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding

     

    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.16.1228664718\1296674128" --font-cache-shared-handle=7028 /prefetch:673131151

    "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe55_ Global\UsGthrCtrlFltPipeMssGthrPipe55 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 

    "C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 620 628 8192 624 

    "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey B0A5C050-CE5A-B957-C1B1-951CE2E94FC2 -Reinvoke

    C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

    C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

    "C:\Users\David\Downloads\RSITx64 (2).exe" 

    C:\WINDOWS\system32\wbem\wmiprvse.exe

     

    ======Scheduled tasks folder======

     

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c 

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 

     

    ======Registry dump======

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]

    "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]

    "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]

    "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]

    "SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-12-02 524800]

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-11-29 382144]

    "GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-11-07 811848]

    "GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-11-17 1403304]

    "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]

     

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]

    "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-21 767176]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

    C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "DSCAutomationHostEnabled"=2

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    "midimapper"=midimap.dll

    "msacm.imaadpcm"=imaadp32.acm

    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm

    "msacm.msadpcm"=msadp32.acm

    "msacm.msg711"=msg711.acm

    "msacm.msgsm610"=msgsm32.acm

    "vidc.i420"=iyuv_32.dll

    "vidc.iyuv"=iyuv_32.dll

    "vidc.mrle"=msrle32.dll

    "vidc.msvc"=msvidc32.dll

    "vidc.uyvy"=msyuv.dll

    "vidc.yuy2"=msyuv.dll

    "vidc.yvu9"=tsbyuv.dll

    "vidc.yvyu"=msyuv.dll

    "wavemapper"=msacm32.drv

    "wave"=wdmaud.drv

    "midi"=wdmaud.drv

    "mixer"=wdmaud.drv

    "aux"=wdmaud.drv

    "wave1"=wdmaud.drv

    "midi1"=wdmaud.drv

    "mixer1"=wdmaud.drv

    "MSVideo8"=VfWWDM32.dll

     

    ======File associations======

     

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe "%1" %*

     

    ======List of files/folders created in the last 1 month======

     

    2015-12-03 19:36:12 ----D---- C:\rsit

    2015-12-03 19:36:12 ----D---- C:\Program Files\trend micro

    2015-12-03 19:27:58 ----D---- C:\ProgramData\ATI

    2015-12-02 21:27:41 ----D---- C:\Program Files\ATI Technologies

    2015-12-02 21:27:30 ----D---- C:\Program Files (x86)\ATI Technologies

    2015-12-02 21:26:49 ----SHD---- C:\Config.Msi

    2015-12-02 21:24:58 ----D---- C:\WINDOWS\LastGood

    2015-12-02 21:24:23 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll

    2015-12-02 21:24:23 ----A---- C:\WINDOWS\system32\mantleaxl64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\mantle64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\detoured.dll

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\clinfo.exe

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce03.dat

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce02.dat

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atitmm64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODE.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atio6axx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimuixx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimpc64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiglpxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6txx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6pxx.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieah64.exe

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalrt64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticaldd64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalcl64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiapfxx.exe

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\OpenCL.dll

    2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\amdxc64.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdpcom64.dll

    2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe

    2015-12-02 21:24:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe

    2015-12-02 21:24:12 ----A---- C:\WINDOWS\system32\amdocl_as64.exe

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl64.dll

    2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmmcl6.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmiracast.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmantle64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdlvr64.dll

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdicdxx.dat

    2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdhdl64.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll

    2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amde31a.dat

    2015-12-02 21:19:56 ----D---- C:\WINDOWS\system32\MRT

    2015-12-02 21:19:51 ----A---- C:\WINDOWS\system32\MRT.exe

    2015-12-02 19:11:27 ----D---- C:\Program Files (x86)\HD Tune

    2015-12-01 20:22:58 ----N---- C:\WINDOWS\system32\MpSigStub.exe

    2015-11-30 21:05:59 ----D---- C:\Users\David\AppData\Roaming\Macromedia

    2015-11-30 20:55:46 ----D---- C:\Program Files\Speccy

    2015-11-29 18:21:46 ----D---- C:\Program Files\CCleaner

    2015-11-29 18:03:41 ----D---- C:\Program Files\DIFX

    2015-11-29 18:03:39 ----D---- C:\Users\David\AppData\Roaming\Garmin

    2015-11-29 18:03:26 ----D---- C:\ProgramData\Garmin

    2015-11-29 18:03:21 ----D---- C:\Program Files (x86)\Garmin

    2015-11-29 17:49:21 ----D---- C:\Program Files (x86)\Google

    2015-11-29 17:41:54 ----D---- C:\Users\David\AppData\Roaming\ATI

    2015-11-29 17:41:49 ----D---- C:\ProgramData\Microsoft OneDrive

    2015-11-29 17:40:04 ----D---- C:\Users\David\AppData\Roaming\Adobe

    2015-11-29 17:40:03 ----D---- C:\ProgramData\Synaptics

    2015-11-29 17:40:02 ----D---- C:\Users\David\AppData\Roaming\Synaptics

    2015-11-29 17:35:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

    2015-11-29 17:35:44 ----D---- C:\WINDOWS\SoftwareDistribution

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Sjablonen

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Menu Start

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Favorieten

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Documenten

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Bureaublad

    2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Application Data

    2015-11-29 17:31:34 ----SD---- C:\Users\David\AppData\Roaming\Microsoft

    2015-11-29 17:29:16 ----ASH---- C:\hiberfil.sys

    2015-11-29 17:25:29 ----D---- C:\ProgramData\Package Cache

    2015-11-29 17:25:14 ----D---- C:\Program Files\IDT

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNX.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNJ.exe

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNHP.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNGUI.exe

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTEC64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTCo64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAR64.dll

    2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAC64.dll

    2015-11-29 17:25:13 ----D---- C:\WINDOWS\system32\SRSLabs

    2015-11-29 17:25:13 ----A---- C:\WINDOWS\system32\stlang64.dll

    2015-11-29 17:25:13 ----A---- C:\WINDOWS\sttray64.exe

    2015-11-29 17:24:58 ----D---- C:\Program Files\Common Files\ATI Technologies

    2015-11-29 17:24:44 ----D---- C:\Program Files\AMD

    2015-11-29 17:24:28 ----D---- C:\WINDOWS\SYSWOW64\sda

    2015-11-29 17:24:02 ----HD---- C:\Program Files\Uninstall Information

    2015-11-29 17:24:00 ----D---- C:\ProgramData\USOShared

    2015-11-29 17:21:47 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll

    2015-11-29 17:19:50 ----AS---- C:\WINDOWS\bootstat.dat

    2015-11-29 17:18:38 ----D---- C:\WINDOWS\ServiceProfiles

    2015-11-29 17:18:09 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT

    2015-11-29 17:15:57 ----DC---- C:\WINDOWS\Panther

    2015-11-29 17:15:29 ----D---- C:\Windows.old

    2015-11-29 17:14:56 ----D---- C:\WINDOWS\InfusedApps

    2015-11-29 17:14:30 ----D---- C:\WINDOWS\system32\Microsoft

    2015-11-29 17:11:59 ----D---- C:\Program Files\Synaptics

    2015-11-29 17:10:29 ----D---- C:\WINDOWS\Setup

    2015-11-29 17:07:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer

    2015-11-29 17:07:53 ----D---- C:\WINDOWS\OCR

    2015-11-29 17:07:52 ----D---- C:\Program Files\Reference Assemblies

    2015-11-29 17:07:52 ----D---- C:\Program Files\MSBuild

    2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\Reference Assemblies

    2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\MSBuild

    2015-11-29 17:06:56 ----A---- C:\WINDOWS\system32\perfi013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfh013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfd013.dat

    2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfc013.dat

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\winrm

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\WCN

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\slmgr

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\nl

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\en

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\nl-NL

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\0409

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\winrm

    2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\WCN

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\slmgr

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\nl

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\en

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\nl-NL

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\en-US

    2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\0409

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\nl-NL

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\en-US

    2015-11-29 17:06:37 ----D---- C:\WINDOWS\DigitalLocker

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfi009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfh009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfd009.dat

    2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfc009.dat

    2015-11-29 17:03:03 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll

    2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\NOISE.DAT

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\msclmd.dll

    2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\dssec.dat

    2015-11-29 17:01:32 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat

    2015-11-29 17:01:32 ----A---- C:\WINDOWS\fonts\desktop.ini

    2015-11-29 17:01:31 ----ASH---- C:\Program Files (x86)\desktop.ini

    2015-11-29 17:01:31 ----A---- C:\WINDOWS\win.ini

    2015-11-29 17:01:31 ----A---- C:\WINDOWS\system.ini

    2015-11-29 17:01:30 ----ASH---- C:\Program Files\desktop.ini

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Nui

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\F12

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs

    2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Configuration

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Web

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Vss

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\twain_32

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\tracing

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Temp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\Tasks

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\TAPI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-TW

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-HK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-CN

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\wbem

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\uk-UA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\tr-TR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\th-TH

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Tasks

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sv-SE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sru

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sppui

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\spp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\SMI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sl-SI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sk-SK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\setup

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ru-RU

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ro-RO

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\restore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Recovery

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\RasToast

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ras

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-PT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-BR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pl-PL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\oobe

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nl-NL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\networklist

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\NDF

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nb-NO

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MUI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MsDtc

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MSDRM

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migration

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Macromed

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lv-LV

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lt-LT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Licenses

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ko-KR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ja-JP

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\it-IT

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Ipmi

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InstallShield

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InputMethod

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\inetsrv

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\IME

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\icsxml

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hu-HU

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hr-HR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\he-IL

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-FR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-CA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fi-FI

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\et-EE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-MX

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-ES

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-US

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-GB

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\el-GR

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\DriverStore

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\drivers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\downlevel

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Dism

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\de-DE

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\da-DK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\config

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Com

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\catroot

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Bthprops

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\bg-BG

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ar-SA

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AppLocker

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\syswow64

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemResources

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemApps

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-TW

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-HK

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-CN

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\WinMetadata

    2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\winevt

    2015-11-29 17:01:28 ----SHD---- C:\WINDOWS\Installer

    2015-11-29 17:01:28 ----SHD---- C:\Program Files\Windows Sidebar

    2015-11-29 17:01:28 ----SHD---- C:\Program Files (x86)\Windows Sidebar

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Nui

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\F12

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\dsc

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\DiagSvcs

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Configuration

    2015-11-29 17:01:28 ----SD---- C:\WINDOWS\Downloaded Program Files

    2015-11-29 17:01:28 ----SD---- C:\ProgramData\Microsoft

    2015-11-29 17:01:28 ----SD---- C:\Program Files\WindowsPowerShell

    2015-11-29 17:01:28 ----SD---- C:\Program Files (x86)\WindowsPowerShell

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Media

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Fonts

    2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\assembly

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PurchaseDialog

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PrintDialog

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\Offline Web Pages

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\MiracastView

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DevicesFlow

    2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DesktopTileResources

    2015-11-29 17:01:28 ----HD---- C:\WINDOWS\ELAMBKUP

    2015-11-29 17:01:28 ----HD---- C:\ProgramData

    2015-11-29 17:01:28 ----HD---- C:\Program Files\WindowsApps

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WindowsPowerShell

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioPlugIns

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioDatabase

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wfp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WDI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wbem

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\uk-UA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\tr-TR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\th-TH

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Tasks

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SystemResetPlatform

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Sysprep

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sv-SE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sru

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-RS

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-CS

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sppui

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spool

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech_OneCore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sl-SI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sk-SK

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\setup

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SecureBootUpdates

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ru-RU

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ro-RO

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\restore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Recovery

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\RasToast

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ras

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-PT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-BR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ProximityToast

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\PointOfService

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pl-PL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\oobe

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nl-NL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\networklist

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\NDF

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nb-NO

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MUI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MsDtc

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MSDRM

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migwiz

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Macromed

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lv-LV

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lt-LT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\LogFiles

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Licenses

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ko-KR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ja-JP

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\it-IT

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Ipmi

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\InputMethod

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\inetsrv

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\IME

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\icsxml

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ias

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hu-HU

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hr-HR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\he-IL

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicyUsers

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicy

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\FxsTmp

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-FR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-CA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fi-FI

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\et-EE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-MX

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-ES

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-US

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-GB

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\el-GR

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\drivers\etc

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\downlevel

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Dism

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\de-DE

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\da-DK

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\cs-CZ

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Com

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\CodeIntegrity

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\catroot2

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Bthprops

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Boot

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\bg-BG

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ar-SA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\appraiser

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AppLocker

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AdvancedInstallers

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\System

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech_OneCore

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\SKB

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\ShellNew

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\security

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\schemas

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\SchCache

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Resources

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\rescache

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Registration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Provisioning

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\prefetch

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\PolicyDefinitions

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\PLA

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Performance

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\ModemLogs

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Migration

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Microsoft.NET

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Logs

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\LiveKernelReports

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\L2Schemas

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\InputMethod

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\IME

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Help

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Globalization

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\diagnostics

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\debug

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Cursors

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Branding

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\Boot

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppReadiness

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppPatch

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\appcompat

    2015-11-29 17:01:28 ----D---- C:\WINDOWS\addins

    2015-11-29 17:01:28 ----D---- C:\ProgramData\USOPrivate

    2015-11-29 17:01:28 ----D---- C:\ProgramData\SoftwareDistribution

    2015-11-29 17:01:28 ----D---- C:\ProgramData\regid.1991-06.com.microsoft

    2015-11-29 17:01:28 ----D---- C:\ProgramData\Comms

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Portable Devices

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Photo Viewer

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows NT

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Multimedia Platform

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Media Player

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Mail

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Journal

    2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Defender

    2015-11-29 17:01:28 ----D---- C:\Program Files\Internet Explorer

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\System

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\Services

    2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\microsoft shared

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Portable Devices

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Photo Viewer

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows NT

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Multimedia Platform

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Media Player

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Mail

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Defender

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Microsoft.NET

    2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Internet Explorer

    2015-11-29 17:01:28 ----D---- C:\PerfLogs

    2015-11-29 17:01:10 ----D---- C:\WINDOWS\system32\drivers\UMDF

    2015-11-29 17:01:09 ----D---- C:\WINDOWS\system32\drivers

    2015-11-29 16:59:55 ----D---- C:\WINDOWS\INF

    2015-11-29 16:53:15 ----D---- C:\WINDOWS\CbsTemp

    2015-11-29 16:46:54 ----RD---- C:\Users

    2015-11-29 16:46:54 ----RD---- C:\Program Files (x86)

    2015-11-29 16:46:54 ----RD---- C:\Program Files

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\WinSxS

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\SMI

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\DriverStore

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\config

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\CatRoot

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\System32

    2015-11-29 16:46:54 ----D---- C:\WINDOWS\servicing

    2015-11-29 16:46:54 ----D---- C:\Windows

    2015-11-29 16:46:54 ----D---- C:\Program Files\Common Files

    2015-11-29 16:46:54 ----D---- C:\Program Files (x86)\Common Files

    2015-11-29 13:59:42 ----HD---- C:\$SysReset

     

    ======List of files/folders modified in the last 1 month======

     

    2015-12-02 21:26:08 ----D---- C:\AMD

    2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\coinst_15.20.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll

    2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\atiuxp64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiu9p64.dll

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiesrxx.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieclxx.exe

    2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atidxx64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atidemgy.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticfx64.dll

    2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiadlxx.dll

    2015-12-02 21:19:37 ----SHD---- C:\System Volume Information

    2015-11-29 17:15:59 ----SHD---- C:\Recovery

    2015-11-29 16:58:33 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll

    2015-11-29 16:58:31 ----A---- C:\WINDOWS\system32\dlnashext.dll

    2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll

    2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\internetmail.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\mdmregistration.dll

    2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\hevcdecoder.dll

    2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\PlayToManager.dll

    2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll

    2015-11-29 16:58:26 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe

    2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\WWanAPI.dll

    2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\ngccredprov.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\wpnapps.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll

    2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\msctfuimanager.dll

    2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wlansvc.dll

    2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wfdprov.dll

    2015-11-29 16:58:19 ----A---- C:\WINDOWS\system32\schedsvc.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\WcnNetsh.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\ncryptprov.dll

    2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe

    2015-11-29 16:58:15 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\ngckeyenum.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll

    2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\fveapi.dll

    2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\NetSetupShim.dll

    2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\netcenter.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WUDFx02000.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\wpx.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WcnApi.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\msxml3.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\fdWCN.dll

    2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\dafWCN.dll

    2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll

    2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe

    2015-11-29 16:58:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll

    2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll

    2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\TokenBroker.dll

    2015-11-29 16:58:05 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe

    2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\SettingSync.dll

    2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\rdbui.dll

    2015-11-29 16:58:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll

    2015-11-29 16:58:00 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll

    2015-11-29 16:57:58 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll

    2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll

    2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\jscript.dll

    2015-11-29 16:57:48 ----A---- C:\WINDOWS\system32\rpcrt4.dll

    2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\usermgr.dll

    2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\MFPlay.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanmm.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanconn.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWiFiAdapter.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWebproxy.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeWiFi.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPermissions.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeIP.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeCell.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationGeofences.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFramework.dll

    2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationCrowdsource.dll

    2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\wlidsvc.dll

    2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\sysmain.dll

    2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\MPSSVC.dll

    2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll

    2015-11-29 16:57:41 ----A---- C:\WINDOWS\system32\wwancfg.dll

    2015-11-29 16:57:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll

    2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\vbscript.dll

    2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\ActionCenter.dll

    2015-11-29 16:57:35 ----A---- C:\WINDOWS\system32\accountaccessor.dll

    2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll

    2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll

    2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll

    2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\browserbroker.dll

    2015-11-29 16:57:27 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll

    2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\vaultsvc.dll

    2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\msxml6.dll

    2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll

    2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\mf.dll

    2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll

    2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll

    2015-11-29 16:57:23 ----A---- C:\WINDOWS\system32\ngcsvc.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll

    2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\kerberos.dll

    2015-11-29 16:57:20 ----A---- C:\WINDOWS\notepad.exe

    2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe

    2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\appraiser.dll

    2015-11-29 16:57:17 ----A---- C:\WINDOWS\system32\syncutil.dll

    2015-11-29 16:57:16 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll

    2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\notepad.exe

    2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll

    2015-11-29 16:57:14 ----A---- C:\WINDOWS\system32\pnidui.dll

    2015-11-29 16:57:12 ----A---- C:\WINDOWS\system32\dssvc.dll

    2015-11-29 16:57:11 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll

    2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\shacct.dll

    2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\NetworkStatus.dll

    2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\mfds.dll

    2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe

     

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R0 amdkmpfd;@oem104.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]

    R0 hpdskflt;@oem117.inf,%service_desc%;HP Filter; C:\WINDOWS\System32\drivers\hpdskflt.sys [2011-05-13 30008]

    R0 iaStor;@oem93.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-05-20 557848]

    R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]

    R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]

    R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]

    R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]

    R3 Accelerometer;@oem117.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\System32\drivers\Accelerometer.sys [2011-05-13 43320]

    R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-02 21648880]

    R3 AMDKMDAP;AMDKMDAP; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-02 674288]

    R3 BCM43XX;@oem81.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor de Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-06-29 4749008]

    R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]

    R3 IntcDAud;@oem27.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]

    R3 MEIx64;@oem118.inf,%HECI_SvcDesc%;Intel® Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]

    R3 RSPCIESTOR;@oem61.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2015-06-03 374016]

    R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]

    R3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-07-17 42696]

    R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10305; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2010-12-02 520192]

    R3 SynTP;@oem95.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\System32\drivers\SynTP.sys [2015-07-17 614088]

    S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]

    S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]

    S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]

    S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]

    S0 storufs;@storufs.inf,sServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]

    S3 a016bus;@oem43.inf,%seda016.Service.Desc%;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\System32\drivers\a016bus.sys [2008-01-18 109096]

    S3 a016mgmt;@oem72.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\a016mgmt.sys [2008-01-18 130600]

    S3 a016obex;@oem119.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\a016obex.sys [2008-01-18 125480]

    S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]

    S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]

    S3 dg_ssudbus;@oem21.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2015-05-21 110720]

    S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]

    S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]

    S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]

    S3 ggflt;@oem50.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-09-26 16088]

    S3 ggsomc;@oem50.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-09-26 30424]

    S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]

    S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]

    S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]

    S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]

    S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]

    S3 nusb3hub;@oem110.inf,%NUSB3HUB.SvcDesc%;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\System32\drivers\nusb3hub.sys [2013-10-19 91648]

    S3 nusb3xhc;@oem25.inf,%NUSB3XHC.SvcDesc%;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\System32\drivers\nusb3xhc.sys [2013-10-19 208896]

    S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-10 934752]

    S3 s0016bus;@oem36.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 driver (WDM); C:\WINDOWS\System32\drivers\s0016bus.sys [2008-05-16 115240]

    S3 s0016mgmt;@oem28.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0016mgmt.sys [2008-05-16 137256]

    S3 s0016obex;@oem113.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0016obex.sys [2008-05-16 136744]

    S3 s0016unic;@oem62.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\WINDOWS\System32\drivers\s0016unic.sys [2008-05-16 151592]

    S3 s0017bus;@oem45.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 driver (WDM); C:\WINDOWS\System32\drivers\s0017bus.sys [2008-10-21 113704]

    S3 s0017mgmt;@oem60.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0017mgmt.sys [2008-10-21 133160]

    S3 s0017obex;@oem51.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0017obex.sys [2008-10-21 128552]

    S3 s0017unic;@oem91.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM); C:\WINDOWS\System32\drivers\s0017unic.sys [2008-10-21 145960]

    S3 s1018bus;@oem40.inf,%sed1018.Service.Desc%;Sony Ericsson Device 1018 driver (WDM); C:\WINDOWS\System32\drivers\s1018bus.sys [2009-03-25 113704]

    S3 s1018mgmt;@oem17.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1018mgmt.sys [2009-03-25 133160]

    S3 s1018obex;@oem24.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1018obex.sys [2009-03-25 128552]

    S3 s1018unic;@oem57.inf,%s1018.Service.Desc%;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1018unic.sys [2009-03-25 146472]

    S3 s1029bus;@oem96.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 driver (WDM); C:\WINDOWS\System32\drivers\s1029bus.sys [2009-05-25 116264]

    S3 s1029mgmt;@oem33.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1029mgmt.sys [2009-05-25 139304]

    S3 s1029obex;@oem107.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1029obex.sys [2009-05-25 135208]

    S3 s1029unic;@oem9.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1029unic.sys [2009-05-25 151592]

    S3 s1039bus;@oem85.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 driver (WDM); C:\WINDOWS\System32\drivers\s1039bus.sys [2010-03-15 127600]

    S3 s1039mgmt;@oem116.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1039mgmt.sys [2010-03-15 141424]

    S3 s1039obex;@oem73.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1039obex.sys [2010-03-15 137328]

    S3 s1039unic;@oem80.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1039unic.sys [2010-03-15 158320]

    S3 s916bus;@oem2.inf,%sed916.Service.Desc%;Sony Ericsson Device 916 driver (WDM); C:\WINDOWS\System32\drivers\s916bus.sys [2007-11-02 108072]

    S3 s916mgmt;@oem114.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s916mgmt.sys [2007-11-02 130088]

    S3 s916obex;@oem3.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s916obex.sys [2007-11-02 124968]

    S3 se3ebus;@oem87.inf,%sed62.Service.Desc%;Sony Ericsson Device 062 (WDM); C:\WINDOWS\System32\drivers\se3ebus.sys [2007-04-10 107784]

    S3 se3emgmt;@oem97.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\se3emgmt.sys [2007-04-10 126216]

    S3 se3eobex;@oem18.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\se3eobex.sys [2007-04-10 123144]

    S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2015-07-17 42184]

    S3 ss_conn_usb_driver;@oem84.inf,%ssud.SvcDesc%;SAMSUNG Mobile USB Connectivity Device Driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [2015-05-21 26368]

    S3 ssudqcfilter;@oem21.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2015-05-21 48896]

    S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]

    S3 UcmUcsi;@UcmUcsi.inf,mUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-10 45056]

    S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]

    S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]

    S3 UfxChipidea;@ufxchipidea.inf,xChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]

    S3 ufxsynopsys;@ufxsynopsys.inf,xsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

    S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]

    S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]

    S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]

     

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]

    R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-02 255472]

    R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-11-17 780304]

    R2 hpsrv;@oem117.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2011-05-13 30520]

    R2 OneSyncSvc_Session6;Host synchroniseren_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-12-02 275968]

    R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]

    R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    R3 PimIndexMaintenanceSvc_Session6;Contact Data_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    R3 UnistoreSvc_Session6;User Data Storage_Session6; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]

    S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 cphs;Intel® Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]

    S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]

    S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]

    S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]

    S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

    S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-10 1031680]

    S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

    S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]

     

    -----------------EOF-----------------
Logo

OVER ONS

PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.