-
Items
91 -
Registratiedatum
-
Laatst bezocht
Inhoudstype
Profielen
Forums
Store
Berichten die geplaatst zijn door zannata
-
-
handelingen allemaal gedaan,toestellen laden alleen op,maar worden niet herkend
-
Vindt toestel niet
Als ik in USB poort bv ant stick steek gaat deze poort wel
-
garmin express zonder problemen kunnen installeren
toestellen niet te zien in de verkenner
overbrengen van gegevens van horloge en garmin edge 820 naar laptob
-
Fenix 5x
Edge 820
Krijg geen verbinding tussen toestel en laptop
-
nee het lukt niet,de usb poorten gaan wel geprobeerd met ant stick
denk dat het met de plugs in te maken heeft,deze krijg ik ook niet gedownload,weet dat je nu met windows 10 internet exployer moet hebben als standaard
-
usb drivers garmin installeren gaat niet,alleen opladen van toestel gaat ,maar gegevens overbrengen niet.
-
dit is gelukt
als ik de plugin van garmin wil installeren zegt hij dat dit niet gaat met EDGE
-
kan de plugsin niet installeren van garmin op laptop(windows 10)
je moet de internet exployer hebben,heb ik maar zegt nog altijd dat de edge actief is?
-
lukt niet
-
-
# AdwCleaner v5.029 - Logbestand aangemaakt 13/01/2016 op 21:34:58# Laatste update 11/01/2016 door Xplode# Database : 2016-01-12.1 [server]# Besturingssysteem : Windows 10 Home (x64)# Gebruikersnaam : David - DAVID-HP# Gestart vanuit : C:\Users\David\Downloads\adwcleaner_5.029.exe# Optie : Verwijderen# Ondersteuning : http://toolslib.net/forum***** [ Services ] ********** [ Mappen ] ********** [ Bestanden ] ********** [ DLLs ] ********** [ Snelkoppelingen ] ********** [ geplande taken ] ********** [ Register ] ********** [ Internetbrowsers ] ******************************:: "Tracing" sleutels verwijderd:: Winsock instellingen gereset########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [716 bytes] ##########
-
Zoek.exe v5.0.0.1 Updated 05-December-2015Tool run by David on zo 06-12-2015 at 14:06:53,62.Microsoft Windows 10 Home 10.0.10240 x64Running in: Normal Mode Internet Access DetectedLaunched: C:\Users\David\Downloads\zoek.exe [scan all users] [Checkboxes used]==== System Restore Info ======================6-12-2015 14:09:18 Zoek.exe System Restore Point Created Successfully.==== Empty Folders Check ======================C:\PROGRA~3\Comms deleted successfullyC:\PROGRA~3\SoftwareDistribution deleted successfullyC:\Users\DefaultAppPool\AppData\LocalLow deleted successfullyC:\Users\David\AppData\Local\NetworkTiles deleted successfullyC:\Users\David\AppData\Local\VirtualStore deleted successfullyC:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully==== Deleting CLSID Registry Keys ========================== Deleting CLSID Registry Values ========================== Installed Programs ======================AllShare Framework DMSAMD Catalyst Control CenterAMD FuelANT Drivers Installer x64Catalyst Control Center - BrandingCatalyst Control Center InstallProxyCatalyst Control Center Localization Allccc-utility64CCC Help Chinese StandardCCC Help Chinese TraditionalCCC Help CzechCCC Help DanishCCC Help DutchCCC Help EnglishCCC Help FinnishCCC Help FrenchCCC Help GermanCCC Help GreekCCC Help HungarianCCC Help ItalianCCC Help JapaneseCCC Help KoreanCCC Help NorwegianCCC Help PolishCCC Help PortugueseCCC Help RussianCCC Help SpanishCCC Help SwedishCCC Help ThaiCCC Help TurkishCCleanerElevated InstallerGarmin ExpressGarmin Express TrayGoogle ChromeGoogle Update HelperHD Tune 2.55Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727Samsung Link 2.0.0.1503181422SpeccyStuurprogrammapakket voor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201)Stuurprogrammapakket voor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1)Synaptics TouchPad Driver==== Running Processes ======================C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeC:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exeC:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Users\David\Downloads\zoek.exeC:\WINDOWS\SysWOW64\cmd.exeC:\WINDOWS\SysWOW64\cmd.exeC:\WINDOWS\SysWOW64\cmd.exe==== Deleting Services ========================== Deleting Files \ Folders ======================C:\Users\David\.android deletedC:\PROGRA~3\Package Cache deletedC:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deletedC:\Users\David\AppData\LocalLow\Unity deletedC:\WINDOWS\Syswow64\SET7AF2.tmp deletedC:\WINDOWS\Syswow64\SETCA39.tmp deletedC:\WINDOWS\Syswow64\SETF77.tmp deleted==== System Specs ======================Windows: Windows Version 6.2 (Build 9200)Memory (RAM): 4044 MBCPU Info: Intel® Core i7-2630QM CPU @ 2.00GHzCPU Speed: 1997,5 MHzSound Card: Luidsprekers en koptelefoons (I |Communicatie koptelefoons (IDT |Display Adapters: Intel® HD Graphics 3000 | Intel® HD Graphics 3000Monitors: 1x; Generic PnP Monitor |Screen Resolution: 1600 X 900 - 32 bitNetwork: Network PresentNetwork Adapters: Broadcom 4313GN 802.11b/g/n 1x1 Wi-Fi-adapter | Realtek PCIe GBE Family ControllerCD / DVD Drives: 1x (E: | ) E: hp CDDVDW TS-L633RPorts: COM Ports NOT Present. LPT Port NOT Present.Mouse: 5 Button Wheel Mouse PresentHard Disks: C: 446,5GB | D: 19,0GBHard Disks - Free: C: 412,0GB | D: 2,3GBManufacturer *: Hewlett-PackardBIOS Info: AT/AT COMPATIBLE | 10/05/11 | InsydeH2O Version 03.60.48F.1BTime Zone: Romance (standaardtijd)Motherboard *: Hewlett-Packard 1659Country: NederlandLanguage: NLD==== System Specs (Software) ======================Internet Explorer Version: 11.0.10240.16384Google Chrome version: 46.0.2490.86==== Files Recently Created / Modified ============================ C:\WINDOWS ====2015-11-29 16:33:37 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\WINDOWS\ativpsrm.bin2015-11-29 16:25:13 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\WINDOWS\sttray64.exe2015-11-29 16:19:50 B8EB404442177A5DEEE7A37FE6CC49AA 67584 --s-a-w- C:\WINDOWS\bootstat.dat2015-11-29 16:01:31 286A9EDB379DC3423A528B0864A0F111 219 ----a-w- C:\WINDOWS\system.ini2015-11-29 16:01:31 23CF8138F49416231807E6DE371FB9E6 92 ----a-w- C:\WINDOWS\win.ini====== C:\Users\David\AppData\Local\Temp ========== Java Cache =========== C:\WINDOWS\SysWOW64 =====2015-12-02 20:24:23 B49C1F14F41A448091A2241F691A401C 96752 ----a-w- C:\WINDOWS\SysWOW64\mantleaxl32.dll2015-12-02 20:24:22 E2360B4A26DE496C86F5A6962A390945 12784 ----a-w- C:\WINDOWS\SysWOW64\detoured.dll2015-12-02 20:24:22 8E277D344EA7926D6AC54E26E3EC4109 111088 ----a-w- C:\WINDOWS\SysWOW64\hsa-thunk.dll2015-12-02 20:24:22 627E0E79F5EBC933D12F9EF1CE68B85B 122352 ----a-w- C:\WINDOWS\SysWOW64\mantle32.dll2015-12-02 20:24:17 B7E4C07934F85379D6932B1DD66F4A7C 143048 ----a-w- C:\WINDOWS\SysWOW64\atiuxpag.dll2015-12-02 20:24:17 A98DA23A524803615B083CFCED1CE362 3471376 ----a-w- C:\WINDOWS\SysWOW64\atiumdva.cap2015-12-02 20:24:17 602243BB86E7EFDE16C19774A47DC1E6 8009360 ----a-w- C:\WINDOWS\SysWOW64\atiumdva.dll2015-12-02 20:24:16 F58CCDDA161577280061992EA0A2935C 152560 ----a-w- C:\WINDOWS\SysWOW64\atieah32.exe2015-12-02 20:24:16 DF9F60D343EAF2B507CC08AA2978ADB0 25320432 ----a-w- C:\WINDOWS\SysWOW64\atioglxx.dll2015-12-02 20:24:16 ADFDFF842548DE3EA0AD392F62ACA894 150512 ----a-w- C:\WINDOWS\SysWOW64\atigktxx.dll2015-12-02 20:24:16 29E0535B05F06C07CB6FC388BE6D96CA 81160 ----a-w- C:\WINDOWS\SysWOW64\atimpc32.dll2015-12-02 20:24:16 05CF830A126F522FD103AF23C893C0F6 78320 ----a-w- C:\WINDOWS\SysWOW64\atiglpxx.dll2015-12-02 20:24:15 BB21328957BD5C5D5595DDDE06F060BC 57840 ----a-w- C:\WINDOWS\SysWOW64\aticalcl.dll2015-12-02 20:24:15 B0BA9800BF9532CF0AA20853F506530F 10211008 ----a-w- C:\WINDOWS\SysWOW64\atidxx32.dll2015-12-02 20:24:15 53650482B8E621276DC55E50C9FB2FEE 662392 ----a-w- C:\WINDOWS\SysWOW64\atiapfxx.blb2015-12-02 20:24:15 4DA7C563005ED02E185AAA5950BFF914 935408 ----a-w- C:\WINDOWS\SysWOW64\atiadlxy.dll2015-12-02 20:24:15 4DA7C563005ED02E185AAA5950BFF914 935408 ----a-w- C:\WINDOWS\SysWOW64\atiadlxx.dll2015-12-02 20:24:15 43A6369EB6449A3D20C69A59ED5D9EC6 14310896 ----a-w- C:\WINDOWS\SysWOW64\aticaldd.dll2015-12-02 20:24:15 3EF0A076452C4B7859EB783276BE5EB2 60912 ----a-w- C:\WINDOWS\SysWOW64\aticalrt.dll2015-12-02 20:24:14 AB6BCBC31F0E3CC404482B83A08BFA91 68080 ----a-w- C:\WINDOWS\SysWOW64\OpenCL.dll2015-12-02 20:24:14 7C956D1E8E1BCE711BF3B9661AC29D2C 7683096 ----a-w- C:\WINDOWS\SysWOW64\amdxc32.dll2015-12-02 20:24:13 3CA834F1341AAAB23C6684F4B86BB0B4 81168 ----a-w- C:\WINDOWS\SysWOW64\amdpcom32.dll2015-12-02 20:24:12 50A1F30C906F8DA69FE0F3B95B324936 807424 ----a-w- C:\WINDOWS\SysWOW64\amdocl_ld32.exe2015-12-02 20:24:10 D1872F9ED1204EDA52BB057FCDDB7FD2 22327280 ----a-w- C:\WINDOWS\SysWOW64\amdocl12cl.dll2015-12-02 20:24:10 A8AFEC11C457D037602921C6645D8679 1004032 ----a-w- C:\WINDOWS\SysWOW64\amdocl_as32.exe2015-12-02 20:24:09 F364E165D4355EC6F583F56337E8E66D 48112 ----a-w- C:\WINDOWS\SysWOW64\amdmmcl.dll2015-12-02 20:24:09 EE7839510F62BD05C4EE3255A5E44608 5216240 ----a-w- C:\WINDOWS\SysWOW64\amdmantle32.dll2015-12-02 20:24:09 ABB0C97F50A9E1B18E59E8CF0FF633E7 524272 ----a-w- C:\WINDOWS\SysWOW64\amdlvr32.dll2015-12-02 20:24:09 2848874238853882765CCBE3CBD24856 39712768 ----a-w- C:\WINDOWS\SysWOW64\amdocl.dll2015-12-02 20:24:09 0C888D3732569435E7C9F057762C80C1 132080 ----a-w- C:\WINDOWS\SysWOW64\amdhdl32.dll2015-12-02 20:24:08 B085FA7C4F775B992A1AA7FCA6ABF81B 198640 ----a-w- C:\WINDOWS\SysWOW64\amdgfxinfo32.dll2015-11-29 16:21:47 035ACC4DDD5DFEE7924583984DF7081D 2718208 ----a-w- C:\WINDOWS\SysWOW64\PrintConfig.dll2015-11-29 16:16:26 770F79110F07FBA0D1B188EF1EB374B3 44147 ----a-w- C:\WINDOWS\SysWOW64\license.rtf2015-11-29 16:03:03 F03B817637577A6A5520BE78A89E6265 810488 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe2015-11-29 16:03:03 626553ACEDB88D6896CCE4A2DB02F51F 176632 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl2015-11-29 16:01:51 6D21D0A95286DCD09E354B612F592EB7 1988 ----a-w- C:\WINDOWS\SysWOW64\ticrf.rat2015-11-29 16:01:50 ECD81B99477AB4A93D7838EB40B870D0 8798 ----a-w- C:\WINDOWS\SysWOW64\icrav03.rat2015-11-29 16:01:50 DE78E0C57BC478D47CC2F470B68E1A45 741 ----a-w- C:\WINDOWS\SysWOW64\NOISE.DAT2015-11-29 16:01:50 8C6F56F4CDDE6A1FD01F4FCF2773298E 215943 ----a-w- C:\WINDOWS\SysWOW64\dssec.dat2015-11-29 16:01:50 59FB61584259F6F62EEC0FCCAFFB3CA2 208384 ----a-w- C:\WINDOWS\SysWOW64\msclmd.dll====== C:\WINDOWS\SysWOW64\drivers =========== C:\WINDOWS\Sysnative =====2015-12-06 12:56:20 30BE4B9CC65768834D835727E50A298E 16148 ----a-w- C:\WINDOWS\Sysnative\DAVID-HP_David_HistoryPrediction.bin2015-12-02 20:24:23 B322FAF7EA5B7C9CB3087A67CF38B5F5 103408 ----a-w- C:\WINDOWS\Sysnative\mantleaxl64.dll2015-12-02 20:24:22 E0223FC2E25F8FD20BA98C43A3EB3875 136176 ----a-w- C:\WINDOWS\Sysnative\mantle64.dll2015-12-02 20:24:22 C29C4A27E4342E0BA20A44110BD0A4A9 12784 ----a-w- C:\WINDOWS\Sysnative\detoured.dll2015-12-02 20:24:22 A7406B7710720E7E3EBC8DCE5C5FB084 243696 ----a-w- C:\WINDOWS\Sysnative\clinfo.exe2015-12-02 20:24:22 2C1A1C89C457BE0FBBF08B354525B5E8 111600 ----a-w- C:\WINDOWS\Sysnative\hsa-thunk64.dll2015-12-02 20:24:17 EFA5E3D55F1CC185BC690B7D79D015A9 100816 ----a-w- C:\WINDOWS\Sysnative\ativce02.dat2015-12-02 20:24:17 B974290EEE645249EE212FF62DD0824A 177344 ----a-w- C:\WINDOWS\Sysnative\ativce03.dat2015-12-02 20:24:16 E75356D0EB4FDA69E6B8BE2CE4472F48 341488 ----a-w- C:\WINDOWS\Sysnative\ATIODE.exe2015-12-02 20:24:16 D00A534AB1C76C39C90CF638BC835513 168944 ----a-w- C:\WINDOWS\Sysnative\atieah64.exe2015-12-02 20:24:16 B92E2A90479F26851F3A667F737202CA 59888 ----a-w- C:\WINDOWS\Sysnative\ATIODCLI.exe2015-12-02 20:24:16 B55C390C176B5CA015CB32ADD30C0EEA 165360 ----a-w- C:\WINDOWS\Sysnative\atig6txx.dll2015-12-02 20:24:16 91EFA02EE006B2450A8811CBE6B9067D 8982440 ----a-w- C:\WINDOWS\Sysnative\atiumd6a.dll2015-12-02 20:24:16 8860AB9D866558AD6C9199D00AB47302 83952 ----a-w- C:\WINDOWS\Sysnative\atig6pxx.dll2015-12-02 20:24:16 5C66F7C236E4D9D8BCCF30539D2622EE 199664 ----a-w- C:\WINDOWS\Sysnative\atitmm64.dll2015-12-02 20:24:16 486D6985E7B7826DBBEAE12755851027 3437632 ----a-w- C:\WINDOWS\Sysnative\atiumd6a.cap2015-12-02 20:24:16 18A356C6918227118C7FAAD3A783E657 87992 ----a-w- C:\WINDOWS\Sysnative\atimpc64.dll2015-12-02 20:24:16 0D1F2A3DEAC5A365455BA7B6908C31F8 38384 ----a-w- C:\WINDOWS\Sysnative\atimuixx.dll2015-12-02 20:24:16 079A314DF0EEFF8FE4C9B6C3A2B2DA53 30776304 ----a-w- C:\WINDOWS\Sysnative\atio6axx.dll2015-12-02 20:24:16 05CF830A126F522FD103AF23C893C0F6 78320 ----a-w- C:\WINDOWS\Sysnative\atiglpxx.dll2015-12-02 20:24:15 FCF6247DD8E81AE0BB3F998C02467193 15725552 ----a-w- C:\WINDOWS\Sysnative\aticaldd64.dll2015-12-02 20:24:15 C7E982EAA979D18DEB226A248720139C 71152 ----a-w- C:\WINDOWS\Sysnative\aticalrt64.dll2015-12-02 20:24:15 ABFE805A2E487E3F97C1EB854D91C537 375792 ----a-w- C:\WINDOWS\Sysnative\atiapfxx.exe2015-12-02 20:24:15 6D7B0581A79E974ED1EAE580FF56F918 64496 ----a-w- C:\WINDOWS\Sysnative\aticalcl64.dll2015-12-02 20:24:15 53650482B8E621276DC55E50C9FB2FEE 662392 ----a-w- C:\WINDOWS\Sysnative\atiapfxx.blb2015-12-02 20:24:14 A869265CB33F2D187D8535B431EB33A7 9355016 ----a-w- C:\WINDOWS\Sysnative\amdxc64.dll2015-12-02 20:24:14 62C4D5F0ACE4402FDB326C0061B15E37 73712 ----a-w- C:\WINDOWS\Sysnative\OpenCL.dll2015-12-02 20:24:13 F79159D9C59C04B1B1835663A8BEB687 88000 ----a-w- C:\WINDOWS\Sysnative\amdpcom64.dll2015-12-02 20:24:13 B844EBA6ED1666309C9D74345647057F 1070592 ----a-w- C:\WINDOWS\Sysnative\amdocl_ld64.exe2015-12-02 20:24:12 3B40AFF6A70B690D6B0C79DEADBFCD32 1196032 ----a-w- C:\WINDOWS\Sysnative\amdocl_as64.exe2015-12-02 20:24:10 697EAF53EA488B19D8245CB1497D7C27 47794160 ----a-w- C:\WINDOWS\Sysnative\amdocl64.dll2015-12-02 20:24:10 0C0FF26B1EB94AEC34419160E1414AF9 27544560 ----a-w- C:\WINDOWS\Sysnative\amdocl12cl64.dll2015-12-02 20:24:09 EFEAD78305EFC47DC166C50C9173D5D9 6686192 ----a-w- C:\WINDOWS\Sysnative\amdmantle64.dll2015-12-02 20:24:09 DDEB20626133878B0CE79CCE29B031B9 833800 ----a-w- C:\WINDOWS\Sysnative\amdicdxx.dat2015-12-02 20:24:09 C6660406048233BD239D39536B2731BE 631280 ----a-w- C:\WINDOWS\Sysnative\amdlvr64.dll2015-12-02 20:24:09 77DEB6EC97F9C0AF9F66975DD7719839 471312 ----a-w- C:\WINDOWS\Sysnative\amdmiracast.dll2015-12-02 20:24:09 6FB849D1149A39E3FE9E4B840212A7A7 143344 ----a-w- C:\WINDOWS\Sysnative\amdhdl64.dll2015-12-02 20:24:09 098AA68FB1C99B6868304B90340A1149 59376 ----a-w- C:\WINDOWS\Sysnative\amdmmcl6.dll2015-12-02 20:24:08 9C17107270BBD4E51F5B5EBA8F9F60BB 213488 ----a-w- C:\WINDOWS\Sysnative\amdgfxinfo64.dll2015-12-02 20:24:08 4B10D8998C824DD84AD597F9E058F6F0 175648 ----a-w- C:\WINDOWS\Sysnative\amde31a.dat2015-12-02 20:19:51 00C683A7378D3612F69B6832F56FA438 145617392 ----a-w- C:\WINDOWS\Sysnative\MRT.exe2015-12-01 19:22:58 DF7C79C1FFFBBE3D4BEC2BA7FF8A8AB1 300704 ------w- C:\WINDOWS\Sysnative\MpSigStub.exe2015-11-29 16:35:55 2464FE50FC00A2BAA54C7339966435CC 1838560 ----a-w- C:\WINDOWS\Sysnative\PerfStringBackup.INI2015-11-29 16:25:14 F6A2CFBFE19DECACDCFCFA2A7709E3A9 3069952 ----a-w- C:\WINDOWS\Sysnative\IDTNHP.dll2015-11-29 16:25:14 E571EABD1753F1A1474C1EA8C2AD0B36 442368 ----a-w- C:\WINDOWS\Sysnative\AESTEC64.dll2015-11-29 16:25:14 E3F76DF0119A00413579025C0CB319B6 69462 ----a-w- C:\WINDOWS\Sysnative\hpbeats.ico2015-11-29 16:25:14 C469893743E18BA547DB3C7ED98B32F5 68608 ----a-w- C:\WINDOWS\Sysnative\AESTAR64.dll2015-11-29 16:25:14 AA1F7233BF9F1B048148260BC934181A 438784 ----a-w- C:\WINDOWS\Sysnative\IDTNC64.cpl2015-11-29 16:25:14 937CF6954D64AF5811EC1BE4ECBF60E8 13942 ----a-w- C:\WINDOWS\Sysnative\nbspkrsbeats.ico2015-11-29 16:25:14 6DCF307C20D9023B7E5622DD1DEB8231 221184 ----a-w- C:\WINDOWS\Sysnative\HPToneCtrls64.dll2015-11-29 16:25:14 5F9479B2BD3575E789F06F4DEB86C9E0 90624 ----a-w- C:\WINDOWS\Sysnative\AESTCo64.dll2015-11-29 16:25:14 5E65E90DA3A478C377F7332A9386B023 162304 ----a-w- C:\WINDOWS\Sysnative\AESTAC64.dll2015-11-29 16:25:14 4DB832701EA2D47F325ED11F012F7338 3774 ----a-w- C:\WINDOWS\Sysnative\bltinmic.ico2015-11-29 16:25:14 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\WINDOWS\Sysnative\IDTNGUI.exe2015-11-29 16:25:14 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\WINDOWS\Sysnative\IDTNJ.exe2015-11-29 16:25:14 2B250C2D2AD8EB984BA8EC149DA604A6 968192 ----a-w- C:\WINDOWS\Sysnative\IDTNX.dll2015-11-29 16:25:13 06CEEC87EA7A1DA1368BEE4FFADAD981 4594176 ----a-w- C:\WINDOWS\Sysnative\stlang64.dll2015-11-29 16:24:12 3C48FBD8010EE06E6D2628E219141BCE 1092090 ----a-w- C:\WINDOWS\Sysnative\oem81.inf2015-11-29 16:18:09 B6DF04E21E2D0718CCC09897A3BD579B 192776 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT2015-11-29 16:16:25 770F79110F07FBA0D1B188EF1EB374B3 44147 ----a-w- C:\WINDOWS\Sysnative\license.rtf2015-11-29 16:06:56 069E69DEE7EE5C0E235AB2C35B272D3D 347470 ----a-w- C:\WINDOWS\Sysnative\perfi013.dat2015-11-29 16:06:55 88361FF7E914089E7D55A16669A0050D 45378 ----a-w- C:\WINDOWS\Sysnative\perfd013.dat2015-11-29 16:06:55 5ED507331E9A0310368EB604663E41DC 814440 ----a-w- C:\WINDOWS\Sysnative\perfh013.dat2015-11-29 16:06:55 35CBF0626A2AF236C4C52DFB03E58C18 158190 ----a-w- C:\WINDOWS\Sysnative\perfc013.dat2015-11-29 16:03:13 B21FAAEFB3B4DADA853B00CFC43594F6 138162 ----a-w- C:\WINDOWS\Sysnative\perfc009.dat2015-11-29 16:03:13 6B98E5694DEDC80E39DE706A22E46E53 296742 ----a-w- C:\WINDOWS\Sysnative\perfi009.dat2015-11-29 16:03:13 32BC2E0CC95E2DCEE25B15BFB82D07B8 33362 ----a-w- C:\WINDOWS\Sysnative\perfd009.dat2015-11-29 16:03:13 208164283C370EA5DA8FC548AAA34185 731332 ----a-w- C:\WINDOWS\Sysnative\perfh009.dat2015-11-29 16:01:40 FF69267A88A54A223B4357C41930449C 15462 ----a-w- C:\WINDOWS\Sysnative\OEMDefaultAssociations.xml2015-11-29 16:01:40 FE6BCA2E6AF33E18AEA0615B9A824516 229888 ----a-w- C:\WINDOWS\Sysnative\msclmd.dll2015-11-29 16:01:40 ECD81B99477AB4A93D7838EB40B870D0 8798 ----a-w- C:\WINDOWS\Sysnative\icrav03.rat2015-11-29 16:01:40 DE78E0C57BC478D47CC2F470B68E1A45 741 ----a-w- C:\WINDOWS\Sysnative\NOISE.DAT2015-11-29 16:01:40 8C6F56F4CDDE6A1FD01F4FCF2773298E 215943 ----a-w- C:\WINDOWS\Sysnative\dssec.dat2015-11-29 16:01:40 6D21D0A95286DCD09E354B612F592EB7 1988 ----a-w- C:\WINDOWS\Sysnative\ticrf.rat2015-11-29 16:01:39 D638E3AD81E149A75EEF59E9C743E27C 389 ----a-w- C:\WINDOWS\Sysnative\AutoWorkplace.exe.config2015-11-29 16:01:39 664AA698FC0106A2B075A641E8DC6302 858 ----a-w- C:\WINDOWS\Sysnative\DefaultQuestions.json====== C:\WINDOWS\Sysnative\drivers =====2015-12-02 20:24:15 AC64440ED4AC767EBF140F9793619E3F 52208 ----a-w- C:\WINDOWS\Sysnative\drivers\ati2erec.dll2015-11-29 17:04:49 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_WpdFs_01_11_00.Wdf2015-11-29 16:24:09 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_SynTP_01011.Wdf2015-11-29 16:23:37 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf====== C:\WINDOWS\Tasks ======2015-11-29 17:03:20 875AD6B7375D4318A810325A8AADFDF1 3624 ----a-w- C:\WINDOWS\Sysnative\Tasks\GarminUpdaterTask2015-11-29 16:49:24 A42E9DB7F7995DB86578498EBEC63A5A 4130 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA2015-11-29 16:49:23 8CC2AFE525E8CD33F5180077984B6150 1068 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job2015-11-29 16:49:23 68D59C90B0669F5581437ED8F1FA0987 1072 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job2015-11-29 16:49:23 138B68D7D3C3342C1BC5F632CD223FD5 3898 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\Microsoft====== C:\WINDOWS\Temp ============= C:\Program Files =====2015-12-03 20:19:14 -------- d-----w- C:\Program Files\Samsung2015-12-03 18:36:12 -------- d-----w- C:\Program Files\trend micro2015-12-02 20:27:41 -------- d-----w- C:\Program Files\ATI Technologies2015-11-30 19:55:46 -------- d-----w- C:\Program Files\Speccy2015-11-29 17:03:41 -------- d-----w- C:\Program Files\DIFX2015-11-29 16:25:14 -------- d-----w- C:\Program Files\IDT2015-11-29 16:24:58 -------- d-----w- C:\Program Files\Common Files\ATI Technologies2015-11-29 16:24:44 -------- d-----w- C:\Program Files\AMD2015-11-29 16:24:02 -------- d--h--w- C:\Program Files\Uninstall Information2015-11-29 16:11:59 -------- d-----w- C:\Program Files\Synaptics2015-11-29 16:07:52 -------- d-----w- C:\Program Files\Reference Assemblies2015-11-29 16:07:52 -------- d-----w- C:\Program Files\MSBuild2015-11-29 16:01:30 174 --sha-w- C:\Program Files\desktop.ini2015-11-29 16:01:28 -------- d-sh--w- C:\Program Files\Windows Sidebar2015-11-29 16:01:28 -------- d-s---w- C:\Program Files\WindowsPowerShell2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Portable Devices2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Photo Viewer2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows NT2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Multimedia Platform2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Media Player2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Mail2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Windows Journal2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Internet Explorer2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\System2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\Services2015-11-29 16:01:28 -------- d-----w- C:\Program Files\Common Files\microsoft shared2015-11-29 15:46:54 -------- d-----w- C:\Program Files\Common Files======= C:\PROGRA~2 =====2015-12-02 20:27:30 -------- d-----w- C:\PROGRA~2\ATI Technologies2015-12-02 18:11:27 -------- d-----w- C:\PROGRA~2\HD Tune2015-11-29 17:03:21 -------- d-----w- C:\PROGRA~2\Garmin2015-11-29 16:49:21 -------- d-----w- C:\PROGRA~2\Google2015-11-29 16:07:52 -------- d-----w- C:\PROGRA~2\Reference Assemblies2015-11-29 16:07:52 -------- d-----w- C:\PROGRA~2\MSBuild2015-11-29 16:01:31 174 --sha-w- C:\PROGRA~2\desktop.ini2015-11-29 16:01:28 -------- d-sh--w- C:\PROGRA~2\Windows Sidebar2015-11-29 16:01:28 -------- d-s---w- C:\PROGRA~2\WindowsPowerShell2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Portable Devices2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Photo Viewer2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows NT2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Multimedia Platform2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Media Player2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Windows Mail2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Microsoft.NET2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\Internet Explorer2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\System2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Services2015-11-29 16:01:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Microsoft Shared2015-11-29 15:46:54 -------- d-----w- C:\PROGRA~2\Common Files======= C: =========== C:\Users\David\AppData\Roaming ======2015-12-02 20:26:43 -------- d-----w- C:\Users\Default\AppData\Local\ATI2015-12-02 20:26:43 -------- d-----w- C:\Users\Default User\AppData\Local\ATI2015-12-02 20:26:29 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\ATI2015-11-30 19:32:22 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\DataSharing2015-11-29 17:59:08 -------- d-s---w- C:\WINDOWS\serviceprofiles\Localservice\AppData\LocalLow2015-11-29 17:03:41 -------- d-----w- C:\Users\David\AppData\Local\Garmin_Ltd._or_its_subsid2015-11-29 17:03:25 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Garmin_Ltd._or_its_subsid2015-11-29 16:56:49 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Packages2015-11-29 16:51:05 -------- d-----w- C:\Users\David\AppData\Local\Comms2015-11-29 16:51:01 -------- d-----w- C:\Users\David\AppData\Local\Publishers2015-11-29 16:49:24 -------- d-s---w- C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow2015-11-29 16:49:17 -------- d-----w- C:\Users\David\AppData\Local\Google2015-11-29 16:43:10 -------- d-----w- C:\Users\David\AppData\Local\MicrosoftEdge2015-11-29 16:41:54 -------- d-----w- C:\Users\David\AppData\Local\ATI2015-11-29 16:40:13 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup2015-11-29 16:40:13 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools2015-11-29 16:40:04 -------- d-----w- C:\Users\David\AppData\Local\Packages2015-11-29 16:40:03 -------- d-----w- C:\Users\David\AppData\Local\TileDataLayer2015-11-29 16:31:34 -------- d-s---r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Roaming2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local\Temp2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local\Microsoft2015-11-29 16:31:34 -------- d-----w- C:\Users\David\AppData\Local2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility2015-11-29 16:31:34 -------- d-----r- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs2015-11-29 16:31:31 -------- d-s---r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Temp2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Microsoft2015-11-29 16:31:31 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-29 16:31:31 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility2015-11-29 16:25:05 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft2015-11-29 16:19:12 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Microsoft2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Roaming2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Microsoft2015-11-29 16:18:38 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local2015-11-29 16:14:30 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\LocalLow2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local2015-11-29 16:01:28 -------- d-s---r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell2015-11-29 16:01:28 -------- d-s---r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\LocalLow2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Roaming2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local\Temp2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\AppData\Local2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Roaming2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local\Temp2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft2015-11-29 16:01:28 -------- d-----w- C:\Users\Default User\AppData\Local2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-29 16:01:28 -------- d-----r- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility====== C:\Users\David ======2015-12-03 20:19:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung2015-12-03 20:19:36 -------- d-----w- C:\Users\David\.swt2015-12-03 20:19:35 -------- d-----w- C:\ProgramData\SAMSUNG2015-12-03 20:14:46 77228033C9950835BE25F3F2093FB806 92385632 ----a-w- C:\Users\David\Downloads\SamsungLink_Installer64.exe2015-12-03 19:12:10 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (3).exe2015-12-03 18:47:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (2).exe2015-12-03 18:36:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (1).exe2015-12-03 18:35:15 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-12-03 18:27:58 -------- d-----w- C:\ProgramData\ATI2015-12-02 20:27:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center2015-12-02 18:11:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune2015-12-02 18:10:36 088812A121E0A9CEB40CE9C808C8A90C 642632 ----a-w- C:\Users\David\Downloads\hdtune_255.exe2015-11-30 19:55:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy2015-11-30 19:53:31 678AB0E8665345E72D11149A36F965BE 5127432 ----a-w- C:\Users\David\Downloads\spsetup128.exe2015-11-29 17:09:30 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512 (1).exe2015-11-29 17:09:13 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512.exe2015-11-29 17:03:26 -------- d-----w- C:\ProgramData\Garmin2015-11-29 17:03:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin2015-11-29 17:01:07 2266B0188BFDE4A42B39D54799E31C7B 43705424 ----a-w- C:\Users\David\Downloads\GarminExpressInstaller (2).exe2015-11-29 16:51:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome2015-11-29 16:49:03 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Users\David\Downloads\ChromeSetup (1).exe2015-11-29 16:41:49 -------- d-----w- C:\ProgramData\Microsoft OneDrive2015-11-29 16:40:13 -------- d-----r- C:\Users\David\Searches2015-11-29 16:40:03 -------- d-----w- C:\ProgramData\Synaptics2015-11-29 16:39:57 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\David\ntuser.ini2015-11-29 16:31:34 -------- d--h--w- C:\Users\David\AppData2015-11-29 16:31:31 -------- d--h--w- C:\Users\DefaultAppPool\AppData2015-11-29 16:24:00 -------- d-----w- C:\ProgramData\USOShared2015-11-29 16:19:16 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp2015-11-29 16:19:14 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\debug2015-11-29 16:18:41 -------- d--h--w- C:\WINDOWS\serviceprofiles\Localservice\AppData2015-11-29 16:18:41 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\Saved Games2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Videos2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Pictures2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Music2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Links2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Favorites2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Downloads2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Documents2015-11-29 16:18:41 -------- d-----r- C:\WINDOWS\serviceprofiles\Localservice\Desktop2015-11-29 16:18:39 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\Saved Games2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Videos2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Pictures2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Music2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Links2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Favorites2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Downloads2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Documents2015-11-29 16:18:39 -------- d-----r- C:\WINDOWS\serviceprofiles\networkservice\Desktop2015-11-29 16:18:38 -------- d--h--w- C:\WINDOWS\serviceprofiles\networkservice\AppData2015-11-29 16:01:31 7220FAD57A4B3D9D9755C51198CC0386 174 --sha-w- C:\Users\Public\desktop.ini2015-11-29 16:01:29 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData2015-11-29 16:01:28 -------- d-s---w- C:\ProgramData\Microsoft2015-11-29 16:01:28 -------- d--h--w- C:\Users\Default\AppData2015-11-29 16:01:28 -------- d--h--r- C:\Users\Public\Libraries2015-11-29 16:01:28 -------- d--h--r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC2015-11-29 16:01:28 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData2015-11-29 16:01:28 -------- d-----w- C:\Users\Default\Saved Games2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\USOPrivate2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft2015-11-29 16:01:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Videos2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Pictures2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Music2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Links2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Favorites2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Downloads2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Documents2015-11-29 16:01:28 -------- d-----r- C:\Users\Default\Desktop2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-29 16:01:28 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility2015-11-29 12:28:57 6B3A5FC73A0F9CB75F9269766C507FD3 9552328 ----a-w- C:\Users\David\Downloads\sm8-setup.exe====== C: exe-files ==2015-12-06 12:57:16 8930D704DC34BB6A8122D1330525FD5E 7904968 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe2015-12-06 12:57:16 8930D704DC34BB6A8122D1330525FD5E 7904968 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\OneDriveSetup.exe2015-12-06 12:57:11 984BDA28B013EC426501CA40D365FDF0 160960 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncConfig.exe2015-12-06 12:57:11 96F76F943DF1974E4F08B5B3DE0C028F 175296 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe2015-12-03 20:19:40 DE395ADB369470A953A11B8C300697E2 35680 ----a-w- C:\Users\David\AppData\Local\Temp\i4jdel0.exe2015-12-03 20:19:27 DE395ADB369470A953A11B8C300697E2 35680 ----a-w- C:\Program Files\Samsung\Samsung Link\.install4j\i4jdel.exe2015-12-03 20:19:27 6E5DBE0D641BD6304873EEE83A635533 389984 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\setup.exe2015-12-03 20:19:26 FF91BD7A836556EC8244D0340009A765 1562976 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\SocketTranscoder.exe2015-12-03 20:19:26 F72DB23288C49092E31272E4CAF281C8 23392 ----a-w- C:\Program Files\Samsung\Samsung Link\utils\VideoSnapper.exe2015-12-03 20:19:22 F51C6B5377271E6F317D84FD0230F7CD 607584 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe2015-12-03 20:19:22 6A1B6A55BFECBD7D5FE8E38DB1C6A1EE 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Stop.exe2015-12-03 20:19:22 141EA95ED6EB402C86B977840AEAAD94 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Menu Start.exe2015-12-03 20:19:22 0BA134F4C582D5C7FEE19599813FE7B6 616288 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link.exe2015-12-03 20:19:22 0177BAF8A5CEB4120449C4AF47755D4C 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\Samsung Link Start.exe2015-12-03 20:19:21 CD927996F9D87C857C629A627A0E5151 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\InstallerLauncher.exe2015-12-03 20:19:21 485BC4134AE50051D15AA45A2ACB2B8E 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\uninstall.exe2015-12-03 20:19:21 2E832495A84677535054C66620D05902 607072 ----a-w- C:\Program Files\Samsung\Samsung Link\ChangeProperty.exe2015-12-03 20:19:16 D1614AA7874CB14383EA1DB8124675D9 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\rmid.exe2015-12-03 20:19:16 B4A414B4C86BA5E5950CC103747B9B56 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\rmiregistry.exe2015-12-03 20:19:16 9A7E21996CF66118D04B0ED7C24D59F5 62368 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\ssvagent.exe2015-12-03 20:19:16 98C4468DFCFBD1C854F1D4E7EC355D25 180640 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\unpack200.exe2015-12-03 20:19:16 48BB802EFD54C5ECA350076F3A536534 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\servertool.exe2015-12-03 20:19:16 08FA9C0C2015EAF2AB4533FB8F155E20 15776 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\tnameserv.exe2015-12-03 20:19:15 FCB6CB913BA8211683174A826AEC56DA 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\pack200.exe2015-12-03 20:19:15 FB151FBCC72D501C12FDF6CED4E05517 15776 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\orbd.exe2015-12-03 20:19:15 C34AD1325562A8F5A0F95B1DF871453C 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\ktab.exe2015-12-03 20:19:15 B20CBFCA8D4C124CFBA6D1C0B79A764D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\kinit.exe2015-12-03 20:19:15 8EA903122BBD73BD46FB77AB07F13D4D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\policytool.exe2015-12-03 20:19:15 892144B9731AAE58473FEC536CBE0971 51616 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\jp2launcher.exe2015-12-03 20:19:15 582DC0D24A9742F5E08FA371CBD443C9 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\klist.exe2015-12-03 20:19:15 3808FF3BC46F148ADE33FFECDC3348E8 188320 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\java.exe2015-12-03 20:19:15 27C6C5EA645BF58DFD026CFC3DAF409E 188832 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\javaw.exe2015-12-03 20:19:15 0DA657C5EA37517667DEC9BF28ACF855 73120 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\javacpl.exe2015-12-03 20:19:15 0D825584D6F2B5918B1E9788839DD513 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\keytool.exe2015-12-03 20:19:14 B2C9760EA81871BCA806963C0A625E0D 15264 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\java-rmi.exe2015-12-03 20:19:14 5F9C8C3CAB61EE7FE55077B2DF13FDD1 55200 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\bin\jabswitch.exe2015-12-03 20:14:46 77228033C9950835BE25F3F2093FB806 92385632 ----a-w- C:\Users\David\Downloads\SamsungLink_Installer64.exe2015-12-03 19:12:10 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (3).exe2015-12-03 18:47:14 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (2).exe2015-12-03 18:36:14 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\David.exe2015-12-03 18:36:00 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64 (1).exe2015-12-03 18:35:15 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-12-02 20:26:01 28F4F5BAC73505F71B8AEC95B7FBE1DD 798734 ----a-w- C:\Windows\LastGood\SysWOW64\amdocl_ld32.exe2015-12-02 20:26:00 56B986D13C74903FE27B71BA85C76037 995342 ----a-w- C:\Windows\LastGood\SysWOW64\amdocl_as32.exe2015-12-02 20:25:55 DD3E0FE46F9AB3F9A339F4DD3B2B2E4C 1061902 ----a-w- C:\Windows\LastGood\system32\amdocl_ld64.exe2015-12-02 20:25:55 64916F7C27F921964ABA161E8A0BD9F6 235008 ----a-w- C:\Windows\LastGood\system32\clinfo.exe2015-12-02 20:25:54 ECC9D68F5BEF5CD67BE2D2F758661980 1187342 ----a-w- C:\Windows\LastGood\system32\amdocl_as64.exe2015-12-02 20:25:30 A6BAAA6608A9B00220E9D5C023FC53D1 51200 ----a-w- C:\Windows\LastGood\system32\ATIODCLI.exe2015-12-02 20:25:30 463FFBD3350E3EB57F7D5746EBD233CA 332800 ----a-w- C:\Windows\LastGood\system32\ATIODE.exe2015-12-02 20:25:27 C2CD8C18832980C42B88B72C46BDF77C 143872 ----a-w- C:\Windows\LastGood\SysWOW64\atieah32.exe2015-12-02 20:25:10 63409958254B94D24CA239356FF28395 160256 ----a-w- C:\Windows\LastGood\system32\atieah64.exe2015-12-02 20:25:01 B7CC6DB515E9347EEC2FC19D4C09A962 672768 ----a-w- C:\Windows\LastGood\system32\atieclxx.exe2015-12-02 20:25:01 A6CCB465C24BD9FE55DE79FC8A3D6798 367104 ----a-w- C:\Windows\LastGood\system32\atiapfxx.exe2015-12-02 20:25:01 6BF0147A7A924E5A3AE049A95ECC9B34 246784 ----a-w- C:\Windows\LastGood\system32\atiesrxx.exe2015-12-02 20:24:22 A7406B7710720E7E3EBC8DCE5C5FB084 243696 ----a-w- C:\Windows\System32\clinfo.exe2015-12-02 20:24:17 412EF1F21D4DB473A8DECCE2B29006AB 96749536 ----a-w- C:\Program Files\AMD\CCC2\Install\ccc2_install.exe2015-12-02 20:24:16 F58CCDDA161577280061992EA0A2935C 152560 ----a-w- C:\Windows\syswow64\atieah32.exe2015-12-02 20:24:16 E75356D0EB4FDA69E6B8BE2CE4472F48 341488 ----a-w- C:\Windows\System32\ATIODE.exe2015-12-02 20:24:16 D00A534AB1C76C39C90CF638BC835513 168944 ----a-w- C:\Windows\System32\atieah64.exe2015-12-02 20:24:16 B92E2A90479F26851F3A667F737202CA 59888 ----a-w- C:\Windows\System32\ATIODCLI.exe2015-12-02 20:24:15 ABFE805A2E487E3F97C1EB854D91C537 375792 ----a-w- C:\Windows\System32\atiapfxx.exe2015-12-02 20:24:13 B844EBA6ED1666309C9D74345647057F 1070592 ----a-w- C:\Windows\System32\amdocl_ld64.exe2015-12-02 20:24:12 50A1F30C906F8DA69FE0F3B95B324936 807424 ----a-w- C:\Windows\syswow64\amdocl_ld32.exe2015-12-02 20:24:12 3B40AFF6A70B690D6B0C79DEADBFCD32 1196032 ----a-w- C:\Windows\System32\amdocl_as64.exe2015-12-02 20:24:10 A8AFEC11C457D037602921C6645D8679 1004032 ----a-w- C:\Windows\syswow64\amdocl_as32.exe2015-12-02 20:19:51 00C683A7378D3612F69B6832F56FA438 145617392 ----a-w- C:\Windows\System32\MRT.exe2015-12-02 18:11:28 F8FC2D14DF813CC920A39B3CB7E59CBC 401408 ----a-w- C:\Program Files (x86)\HD Tune\HDTune.exe2015-12-02 18:11:27 CEFC20D14D9940D53505E9B9769139E7 682266 ----a-w- C:\Program Files (x86)\HD Tune\unins000.exe2015-12-02 18:10:36 088812A121E0A9CEB40CE9C808C8A90C 642632 ----a-w- C:\Users\David\Downloads\hdtune_255.exe2015-12-01 19:22:58 DF7C79C1FFFBBE3D4BEC2BA7FF8A8AB1 300704 ------w- C:\Windows\System32\MpSigStub.exe2015-11-30 19:53:31 678AB0E8665345E72D11149A36F965BE 5127432 ----a-w- C:\Users\David\Downloads\spsetup128.exe2015-11-30 14:06:13 02E4E4F6DE447F55C80E5A0E6A311B7A 25512 ----a-w- C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe2015-11-29 17:09:30 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512 (1).exe2015-11-29 17:09:13 C83944D3394F892C26717DE725880D5E 6801752 ----a-w- C:\Users\David\Downloads\ccsetup512.exe2015-11-29 17:01:07 2266B0188BFDE4A42B39D54799E31C7B 43705424 ----a-w- C:\Users\David\Downloads\GarminExpressInstaller (2).exe2015-11-29 16:51:09 EAC3CFF15F7C04FBECCFCFF666302B35 43334736 ----a-w- C:\Program Files (x86)\Google\Update\Install\{C44F42E8-0DC4-4421-9AA6-6BEF6C515C9D}\46.0.2490.86_chrome_installer.exe2015-11-29 16:51:08 EAC3CFF15F7C04FBECCFCFF666302B35 43334736 ----a-w- C:\Program Files (x86)\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\46.0.2490.86\46.0.2490.86_chrome_installer.exe2015-11-29 16:49:23 FAC17E42199598C0352B9F5DC2EFFC85 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateOnDemand.exe2015-11-29 16:49:23 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateSetup.exe2015-11-29 16:49:23 77352A5A0833B1CA3B771148DA535CB6 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateWebPlugin.exe2015-11-29 16:49:23 61A77DDEF5E8D85E8B0955C4E5127B39 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateBroker.exe2015-11-29 16:49:23 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe2015-11-29 16:49:22 E337785DA1958E9AB02DDB2369EF46E8 307016 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe2015-11-29 16:49:22 BFDCC0375C492C524E78647CEED3F77D 130888 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateComRegisterShell64.exe2015-11-29 16:49:22 A72BB48D9014A7D7C05F02F595F52D60 245576 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe2015-11-29 16:49:21 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdate.exe2015-11-29 16:49:03 AB3984875AA4AAEA57754BE482FFA8B5 929872 ----a-w- C:\Users\David\Downloads\ChromeSetup (1).exe2015-11-29 16:42:19 9F2ECA252720B25E8FEC1CAB2984B98D 548552 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe2015-11-29 16:25:15 A6FB9DB8F1A86861D955FD6975977AE0 89600 ----a-w- C:\Program Files\IDT\WDM\AESTSr64.exe2015-11-29 16:25:15 7C49A5E1943AFDA4672D80726AF3BAE4 275968 ----a-w- C:\Program Files\IDT\WDM\stacsv64.exe2015-11-29 16:25:15 6F52EF2EBE8701D3EFBF4300B379CBB9 88576 ----a-w- C:\Program Files\IDT\WDM\IDTPMA64.exe2015-11-29 16:25:15 6CE9319932479C10647280E6E85DEE46 564224 ----a-w- C:\Program Files\IDT\WDM\idt64mp1.exe2015-11-29 16:25:15 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\Program Files\IDT\WDM\IDTNGUI.exe2015-11-29 16:25:15 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\Program Files\IDT\WDM\IDTNJ.exe2015-11-29 16:25:15 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\Program Files\IDT\WDM\sttray64.exe2015-11-29 16:25:15 0278A28BD8F92263B5A1FC7F392273A7 38400 ----a-w- C:\Program Files\IDT\WDM\suhlp64.exe2015-11-29 16:25:14 49471C808E2ADB5672EE12329BCDDA0E 5900288 ----a-w- C:\Windows\System32\IDTNGUI.exe2015-11-29 16:25:14 30CF3E56750FF729F1523E85425B809C 211968 ----a-w- C:\Windows\System32\IDTNJ.exe2015-11-29 16:25:13 287F22918F320D9409C60D6DC85D0DFE 524800 ----a-w- C:\Windows\sttray64.exe2015-11-29 16:03:03 F03B817637577A6A5520BE78A89E6265 810488 ----a-w- C:\Windows\syswow64\FlashPlayerApp.exe=== C: other files ==2015-12-06 12:57:11 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\CollectOneDriveLogs.bat2015-12-03 20:19:23 E7B2B0424B7BB5F11C32AF9B11C16C85 130 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\moveASPInfo.bat2015-12-03 20:19:23 B7DBE89A7736ECEA573A0360388CAB9A 65 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\configService.bat2015-12-03 20:19:23 425ABD81784F3909B41B24453FF655AA 1866 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\logLevelChange.bat2015-12-03 20:19:23 3F1FFE0343472138D63274B287DF7589 43 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\filePlay.bat2015-12-03 20:19:23 3C75DF47479CFB8D43302034B7F93BD7 114 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\UnRegistWebPlugin.bat2015-12-03 20:19:23 0FE2616A8A0A33552C2006EA7B48EDFE 358 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\RegistHLS.bat2015-12-03 20:19:23 0F9E59586D9962D6D0A872EC09BF61F0 374 ----a-w- C:\Program Files\Samsung\Samsung Link\bin\UnRegistHLS.bat2015-12-03 20:19:16 1654D4D60CD2C29A5A7818F17D5A927D 18633 ----a-w- C:\Program Files\Samsung\Samsung Link\jre\lib\deploy\ffjcext.zip2015-12-02 20:25:31 50228D17A34A1E5CF93084A6AE70870B 665088 ----a-w- C:\Windows\LastGood\system32\DRIVERS\atikmpag.sys2015-12-02 20:24:58 207BEEDFC2E357A4A27E99DEA0FBEDF3 21622272 ----a-w- C:\Windows\LastGood\system32\DRIVERS\atikmdag.sys2015-11-29 16:25:15 0AAD250A31A7EE96E0945AB9E1F3BAA7 520192 ----a-w- C:\Program Files\IDT\WDM\stwrt64.sys2015-11-29 16:24:09 158A62561751F396DDA43EC653963DDC 42696 ----a-w- C:\Program Files\Synaptics\SynTP\Smb_driver_Intel.sys2015-11-29 16:24:09 146B688C9AA8DF2437127768109706B4 42184 ----a-w- C:\Program Files\Synaptics\SynTP\Smb_driver_AMDASF.sys2015-11-29 16:01:31 67B75600DB73F63671AD9D0D7C97990C 3968 ----a-w- C:\ProgramData\Microsoft\Windows\RetailDemo\Office\InstallOfficeJapanese.bat2015-11-29 16:01:31 074296BB60BA1342A6DA8A6086A0885E 3968 ----a-w- C:\ProgramData\Microsoft\Windows\RetailDemo\Office\InstallOffice.bat==== Startup Registry Enabled ======================[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"[HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"OneDrive"="C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background""GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe""CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"[HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]"Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64""Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun"[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]"OneDrive"="C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background""GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe""CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]"Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64""Uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"==== Startup Registry Enabled x64 ======================[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe""HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe""Persistence"="C:\WINDOWS\system32\igfxpers.exe""Samsung Link"="C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe""SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe ""SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe"==== Task Scheduler Jobs ======================C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29-11-2015 17:49]C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [29-11-2015 17:49]==== Other Scheduled Tasks ======================"C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]"C:\WINDOWS\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe]"C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]"C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]==== Chromium Look ======================Google Slides - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoekGoogle Docs - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokakeGoogle Drive - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalfEmbed WMPlayer inline - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlliHootsuite Hootlet - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifnYouTube - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeoGoogle Search - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpfGoogle Calendar - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfnGoogle Sheets - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejapGoogle Docs Offline - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhiGoogle Maps - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbhChrome Web Store Payments - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmiedaGmail - David\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia==== Set IE to Default ======================Old Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]No DefaultScope Set For HKCUNew Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"==== All HKLM and HKCU SearchScopes ======================HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRCHKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRCHKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC==== HijackThis Entries ======================F2 - REG:system.ini: UserInit=O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRunO4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /backgroundO4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-windowO4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITORO4 - HKCU\..\RunOnce: [uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"O4 - HKCU\..\RunOnce: [uninstall C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dllO23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exeO23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exeO23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeO23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exeO23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exeO23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)==== Empty IE Cache ======================C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfullyC:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully==== Empty FireFox Cache ======================No FireFox Profiles found==== Empty Chrome Cache ======================C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot==== Empty All Flash Cache ======================No Flash Cache Found==== Empty All Java Cache ======================Java Cache cleared successfully==== C:\zoek_backup content ======================C:\zoek_backup (files=50 folders=37 161560689 bytes)==== Empty Temp Folders ======================C:\WINDOWS\Temp will be emptied at reboot==== After Reboot ========================== Empty Temp Folders ======================C:\WINDOWS\Temp successfully emptiedC:\Users\David\AppData\Local\Temp successfully emptied==== Empty Recycle Bin ======================C:\$RECYCLE.BIN successfully emptied==== Deleting Files / Folders ======================"C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted"C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted"C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted"C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted==== EOF on zo 06-12-2015 at 14:33:29,51 ======================
-
Logfile of random's system information tool 1.10 (written by random/random)Run by David at 2015-12-03 20:12:27Microsoft Windows 10 HomeSystem drive C: has 423 GB (92%) free of 457 GBTotal RAM: 4044 MB (53% free)Logfile of Trend Micro HijackThis v2.0.4Scan saved at 20:12:28, on 3-12-2015Platform: Unknown Windows (WinNT 6.02.1008)MSIE: Internet Explorer v11.0 (11.00.10240.16384)Boot mode: NormalRunning processes:C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exeC:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files\trend micro\David.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htmR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htmR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =F2 - REG:system.ini: UserInit=O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRunO4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /backgroundO4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-windowO4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITORO4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dllO23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exeO23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeO23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exeO23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)--End of file - 7282 bytes======Listing Processes======C:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exe -k DcomLaunchC:\WINDOWS\system32\svchost.exe -k RPCSSC:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1b242bdb-6ef5-4189-af61-a3f676bc2f1d -SystemEventPortName:HostProcess-9b0c1415-ff4f-42d0-929e-ece5d383622d -IoCancelEventPortName:HostProcess-7b254eff-65e2-4fbd-ad8c-fd7c597008cc -NonStateChangingEventPortName:HostProcess-473aec0d-428d-4f89-9da9-c899b5b0eef0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fad1f0f0-f7ed-4e7d-8e4c-8d81b0a7c4c4 -DeviceGroupId:C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\WINDOWS\system32\svchost.exe -k netsvcsC:\WINDOWS\system32\svchost.exe -k LocalService"C:\Program Files\IDT\WDM\STacSV64.exe"C:\WINDOWS\system32\Hpservice.exeC:\WINDOWS\system32\svchost.exe -k NetworkServiceC:\WINDOWS\System32\spoolsv.exeC:\WINDOWS\system32\WLANExt.exe 1038749552704\??\C:\WINDOWS\system32\conhost.exe 0x4C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork"C:\Program Files\IDT\WDM\AESTSr64.exe"C:\WINDOWS\System32\svchost.exe -k utcsvc"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"C:\WINDOWS\system32\svchost.exe -k appmodelC:\WINDOWS\system32\SearchIndexer.exe /Embedding"C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe"C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNetC:\WINDOWS\system32\atiesrxx.exeC:\WINDOWS\System32\WinLogon.exe -SpecialSession"dwm.exe"atieclxx"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"sihost.exetaskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServerC:\WINDOWS\Explorer.EXEC:\Windows\System32\RuntimeBroker.exe -Embedding"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE""C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://go.microsoft.com/fwlink/?LinkID=219472&clcid=0x409""C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4572.0.888356693\2133527705" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,8,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x0000 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1151.0 --ignored=" --type=renderer " /prefetch:822062411"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.2.2081098326\748553359" --font-cache-shared-handle=2500 /prefetch:673131151"C:\Windows\System32\igfxtray.exe""C:\Windows\System32\hkcmd.exe""C:\Windows\System32\igfxpers.exe""C:\Program Files\IDT\WDM\sttray64.exe""C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe""C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uacC:\WINDOWS\system32\svchost.exe -k UnistackSvcGroupC:\Windows\System32\InstallAgent.exe -EmbeddingC:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey B0A5C050-CE5A-B957-C1B1-951CE2E94FC2 -Reinvoke"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mcaC:\WINDOWS\system32\browser_broker.exe -Embedding"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:4440 CREDAT:140545 EDGEHOST /prefetch:6"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.55.495743026\989032746" --font-cache-shared-handle=9324 /prefetch:673131151"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe58_ Global\UsGthrCtrlFltPipeMssGthrPipe58 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon""C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 620 628 8192 624C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}"C:\Users\David\Downloads\RSITx64 (3).exe"C:\WINDOWS\system32\wbem\wmiprvse.exe======Scheduled tasks folder======C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /cC:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler======Registry dump======[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-12-02 524800][HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]"OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-11-29 382144]"GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-11-07 811848]"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-11-17 1403304]"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272][HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-21 767176][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]"DSCAutomationHostEnabled"=2[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list][HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]"midimapper"=midimap.dll"msacm.imaadpcm"=imaadp32.acm"msacm.l3acm"=C:\Windows\System32\l3codeca.acm"msacm.msadpcm"=msadp32.acm"msacm.msg711"=msg711.acm"msacm.msgsm610"=msgsm32.acm"vidc.i420"=iyuv_32.dll"vidc.iyuv"=iyuv_32.dll"vidc.mrle"=msrle32.dll"vidc.msvc"=msvidc32.dll"vidc.uyvy"=msyuv.dll"vidc.yuy2"=msyuv.dll"vidc.yvu9"=tsbyuv.dll"vidc.yvyu"=msyuv.dll"wavemapper"=msacm32.drv"wave"=wdmaud.drv"midi"=wdmaud.drv"mixer"=wdmaud.drv"aux"=wdmaud.drv"wave1"=wdmaud.drv"midi1"=wdmaud.drv"mixer1"=wdmaud.drv"MSVideo8"=VfWWDM32.dll======File associations======.js - edit - C:\Windows\System32\Notepad.exe %1.js - open - C:\Windows\System32\WScript.exe "%1" %*======List of files/folders created in the last 1 month======2015-12-03 19:36:12 ----D---- C:\rsit2015-12-03 19:36:12 ----D---- C:\Program Files\trend micro2015-12-03 19:27:58 ----D---- C:\ProgramData\ATI2015-12-02 21:27:41 ----D---- C:\Program Files\ATI Technologies2015-12-02 21:27:30 ----D---- C:\Program Files (x86)\ATI Technologies2015-12-02 21:26:49 ----SHD---- C:\Config.Msi2015-12-02 21:24:58 ----D---- C:\WINDOWS\LastGood2015-12-02 21:24:23 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll2015-12-02 21:24:23 ----A---- C:\WINDOWS\system32\mantleaxl64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\mantle64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\detoured.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\clinfo.exe2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce03.dat2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce02.dat2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atitmm64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODE.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atio6axx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimuixx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimpc64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiglpxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6txx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6pxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieah64.exe2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalrt64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticaldd64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalcl64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiapfxx.exe2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\OpenCL.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\amdxc64.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdpcom64.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe2015-12-02 21:24:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe2015-12-02 21:24:12 ----A---- C:\WINDOWS\system32\amdocl_as64.exe2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl64.dll2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmmcl6.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmiracast.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmantle64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdlvr64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdicdxx.dat2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdhdl64.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amde31a.dat2015-12-02 21:19:56 ----D---- C:\WINDOWS\system32\MRT2015-12-02 21:19:51 ----A---- C:\WINDOWS\system32\MRT.exe2015-12-02 19:11:27 ----D---- C:\Program Files (x86)\HD Tune2015-12-01 20:22:58 ----N---- C:\WINDOWS\system32\MpSigStub.exe2015-11-30 21:05:59 ----D---- C:\Users\David\AppData\Roaming\Macromedia2015-11-30 20:55:46 ----D---- C:\Program Files\Speccy2015-11-29 18:21:46 ----D---- C:\Program Files\CCleaner2015-11-29 18:03:41 ----D---- C:\Program Files\DIFX2015-11-29 18:03:39 ----D---- C:\Users\David\AppData\Roaming\Garmin2015-11-29 18:03:26 ----D---- C:\ProgramData\Garmin2015-11-29 18:03:21 ----D---- C:\Program Files (x86)\Garmin2015-11-29 17:49:21 ----D---- C:\Program Files (x86)\Google2015-11-29 17:41:54 ----D---- C:\Users\David\AppData\Roaming\ATI2015-11-29 17:41:49 ----D---- C:\ProgramData\Microsoft OneDrive2015-11-29 17:40:04 ----D---- C:\Users\David\AppData\Roaming\Adobe2015-11-29 17:40:03 ----D---- C:\ProgramData\Synaptics2015-11-29 17:40:02 ----D---- C:\Users\David\AppData\Roaming\Synaptics2015-11-29 17:35:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI2015-11-29 17:35:44 ----D---- C:\WINDOWS\SoftwareDistribution2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Sjablonen2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Menu Start2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Favorieten2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Documenten2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Bureaublad2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Application Data2015-11-29 17:31:34 ----SD---- C:\Users\David\AppData\Roaming\Microsoft2015-11-29 17:29:16 ----ASH---- C:\hiberfil.sys2015-11-29 17:25:29 ----D---- C:\ProgramData\Package Cache2015-11-29 17:25:14 ----D---- C:\Program Files\IDT2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNX.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNJ.exe2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNHP.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNGUI.exe2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTEC64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTCo64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAR64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAC64.dll2015-11-29 17:25:13 ----D---- C:\WINDOWS\system32\SRSLabs2015-11-29 17:25:13 ----A---- C:\WINDOWS\system32\stlang64.dll2015-11-29 17:25:13 ----A---- C:\WINDOWS\sttray64.exe2015-11-29 17:24:58 ----D---- C:\Program Files\Common Files\ATI Technologies2015-11-29 17:24:44 ----D---- C:\Program Files\AMD2015-11-29 17:24:28 ----D---- C:\WINDOWS\SYSWOW64\sda2015-11-29 17:24:02 ----HD---- C:\Program Files\Uninstall Information2015-11-29 17:24:00 ----D---- C:\ProgramData\USOShared2015-11-29 17:21:47 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll2015-11-29 17:19:50 ----AS---- C:\WINDOWS\bootstat.dat2015-11-29 17:18:38 ----D---- C:\WINDOWS\ServiceProfiles2015-11-29 17:18:09 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT2015-11-29 17:15:57 ----DC---- C:\WINDOWS\Panther2015-11-29 17:15:29 ----D---- C:\Windows.old2015-11-29 17:14:56 ----D---- C:\WINDOWS\InfusedApps2015-11-29 17:14:30 ----D---- C:\WINDOWS\system32\Microsoft2015-11-29 17:11:59 ----D---- C:\Program Files\Synaptics2015-11-29 17:10:29 ----D---- C:\WINDOWS\Setup2015-11-29 17:07:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer2015-11-29 17:07:53 ----D---- C:\WINDOWS\OCR2015-11-29 17:07:52 ----D---- C:\Program Files\Reference Assemblies2015-11-29 17:07:52 ----D---- C:\Program Files\MSBuild2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\Reference Assemblies2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\MSBuild2015-11-29 17:06:56 ----A---- C:\WINDOWS\system32\perfi013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfh013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfd013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfc013.dat2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\winrm2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\WCN2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\slmgr2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\nl2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\en2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\nl-NL2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\04092015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\winrm2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\WCN2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\slmgr2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\nl2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\en2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\nl-NL2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\en-US2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\04092015-11-29 17:06:37 ----D---- C:\WINDOWS\nl-NL2015-11-29 17:06:37 ----D---- C:\WINDOWS\en-US2015-11-29 17:06:37 ----D---- C:\WINDOWS\DigitalLocker2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfi009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfh009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfd009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfc009.dat2015-11-29 17:03:03 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\NOISE.DAT2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\msclmd.dll2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\dssec.dat2015-11-29 17:01:32 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat2015-11-29 17:01:32 ----A---- C:\WINDOWS\fonts\desktop.ini2015-11-29 17:01:31 ----ASH---- C:\Program Files (x86)\desktop.ini2015-11-29 17:01:31 ----A---- C:\WINDOWS\win.ini2015-11-29 17:01:31 ----A---- C:\WINDOWS\system.ini2015-11-29 17:01:30 ----ASH---- C:\Program Files\desktop.ini2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Nui2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\F122015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Configuration2015-11-29 17:01:29 ----D---- C:\WINDOWS\Web2015-11-29 17:01:29 ----D---- C:\WINDOWS\Vss2015-11-29 17:01:29 ----D---- C:\WINDOWS\twain_322015-11-29 17:01:29 ----D---- C:\WINDOWS\tracing2015-11-29 17:01:29 ----D---- C:\WINDOWS\Temp2015-11-29 17:01:29 ----D---- C:\WINDOWS\Tasks2015-11-29 17:01:29 ----D---- C:\WINDOWS\TAPI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-TW2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-HK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-CN2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\wbem2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\uk-UA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\tr-TR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\th-TH2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Tasks2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sv-SE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sru2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sppui2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\spp2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\SMI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sl-SI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sk-SK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\setup2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ru-RU2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ro-RO2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\restore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Recovery2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\RasToast2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ras2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-PT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-BR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pl-PL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\oobe2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nl-NL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\networklist2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\NDF2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nb-NO2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MUI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MsDtc2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MSDRM2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migration2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Macromed2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lv-LV2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lt-LT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Licenses2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ko-KR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ja-JP2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\it-IT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Ipmi2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InstallShield2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InputMethod2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\inetsrv2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\IME2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\icsxml2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hu-HU2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hr-HR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\he-IL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-FR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-CA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fi-FI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\et-EE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-MX2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-ES2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-US2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-GB2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\el-GR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\DriverStore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\drivers2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\downlevel2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Dism2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\de-DE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\da-DK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\config2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Com2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\catroot2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Bthprops2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\bg-BG2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ar-SA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AppLocker2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers2015-11-29 17:01:29 ----D---- C:\WINDOWS\syswow642015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemResources2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemApps2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-TW2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-HK2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-CN2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\WinMetadata2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\winevt2015-11-29 17:01:28 ----SHD---- C:\WINDOWS\Installer2015-11-29 17:01:28 ----SHD---- C:\Program Files\Windows Sidebar2015-11-29 17:01:28 ----SHD---- C:\Program Files (x86)\Windows Sidebar2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Nui2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\F122015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\dsc2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\DiagSvcs2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Configuration2015-11-29 17:01:28 ----SD---- C:\WINDOWS\Downloaded Program Files2015-11-29 17:01:28 ----SD---- C:\ProgramData\Microsoft2015-11-29 17:01:28 ----SD---- C:\Program Files\WindowsPowerShell2015-11-29 17:01:28 ----SD---- C:\Program Files (x86)\WindowsPowerShell2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Media2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Fonts2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\assembly2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PurchaseDialog2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PrintDialog2015-11-29 17:01:28 ----RD---- C:\WINDOWS\Offline Web Pages2015-11-29 17:01:28 ----RD---- C:\WINDOWS\MiracastView2015-11-29 17:01:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DevicesFlow2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DesktopTileResources2015-11-29 17:01:28 ----HD---- C:\WINDOWS\ELAMBKUP2015-11-29 17:01:28 ----HD---- C:\ProgramData2015-11-29 17:01:28 ----HD---- C:\Program Files\WindowsApps2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WindowsPowerShell2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioPlugIns2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioDatabase2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wfp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WDI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wbem2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\uk-UA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\tr-TR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\th-TH2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Tasks2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SystemResetPlatform2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Sysprep2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sv-SE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sru2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-RS2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-CS2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sppui2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spool2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech_OneCore2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sl-SI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sk-SK2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\setup2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SecureBootUpdates2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ru-RU2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ro-RO2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\restore2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Recovery2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\RasToast2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ras2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-PT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-BR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ProximityToast2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\PointOfService2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pl-PL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\oobe2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nl-NL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\networklist2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\NDF2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nb-NO2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MUI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MsDtc2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MSDRM2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migwiz2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migration2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Macromed2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lv-LV2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lt-LT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\LogFiles2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Licenses2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ko-KR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ja-JP2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\it-IT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Ipmi2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\InputMethod2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\inetsrv2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\IME2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\icsxml2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ias2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hu-HU2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hr-HR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\he-IL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicyUsers2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicy2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\FxsTmp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-FR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-CA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fi-FI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\et-EE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-MX2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-ES2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-US2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-GB2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\el-GR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\drivers\etc2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\downlevel2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Dism2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\de-DE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\da-DK2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\cs-CZ2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Com2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\CodeIntegrity2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\catroot22015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Bthprops2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Boot2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\bg-BG2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ar-SA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\appraiser2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AppLocker2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AdvancedInstallers2015-11-29 17:01:28 ----D---- C:\WINDOWS\System2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech_OneCore2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech2015-11-29 17:01:28 ----D---- C:\WINDOWS\SKB2015-11-29 17:01:28 ----D---- C:\WINDOWS\ShellNew2015-11-29 17:01:28 ----D---- C:\WINDOWS\security2015-11-29 17:01:28 ----D---- C:\WINDOWS\schemas2015-11-29 17:01:28 ----D---- C:\WINDOWS\SchCache2015-11-29 17:01:28 ----D---- C:\WINDOWS\Resources2015-11-29 17:01:28 ----D---- C:\WINDOWS\rescache2015-11-29 17:01:28 ----D---- C:\WINDOWS\Registration2015-11-29 17:01:28 ----D---- C:\WINDOWS\Provisioning2015-11-29 17:01:28 ----D---- C:\WINDOWS\prefetch2015-11-29 17:01:28 ----D---- C:\WINDOWS\PolicyDefinitions2015-11-29 17:01:28 ----D---- C:\WINDOWS\PLA2015-11-29 17:01:28 ----D---- C:\WINDOWS\Performance2015-11-29 17:01:28 ----D---- C:\WINDOWS\ModemLogs2015-11-29 17:01:28 ----D---- C:\WINDOWS\Migration2015-11-29 17:01:28 ----D---- C:\WINDOWS\Microsoft.NET2015-11-29 17:01:28 ----D---- C:\WINDOWS\Logs2015-11-29 17:01:28 ----D---- C:\WINDOWS\LiveKernelReports2015-11-29 17:01:28 ----D---- C:\WINDOWS\L2Schemas2015-11-29 17:01:28 ----D---- C:\WINDOWS\InputMethod2015-11-29 17:01:28 ----D---- C:\WINDOWS\IME2015-11-29 17:01:28 ----D---- C:\WINDOWS\Help2015-11-29 17:01:28 ----D---- C:\WINDOWS\Globalization2015-11-29 17:01:28 ----D---- C:\WINDOWS\diagnostics2015-11-29 17:01:28 ----D---- C:\WINDOWS\debug2015-11-29 17:01:28 ----D---- C:\WINDOWS\Cursors2015-11-29 17:01:28 ----D---- C:\WINDOWS\Branding2015-11-29 17:01:28 ----D---- C:\WINDOWS\Boot2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppReadiness2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppPatch2015-11-29 17:01:28 ----D---- C:\WINDOWS\appcompat2015-11-29 17:01:28 ----D---- C:\WINDOWS\addins2015-11-29 17:01:28 ----D---- C:\ProgramData\USOPrivate2015-11-29 17:01:28 ----D---- C:\ProgramData\SoftwareDistribution2015-11-29 17:01:28 ----D---- C:\ProgramData\regid.1991-06.com.microsoft2015-11-29 17:01:28 ----D---- C:\ProgramData\Comms2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Portable Devices2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Photo Viewer2015-11-29 17:01:28 ----D---- C:\Program Files\Windows NT2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Multimedia Platform2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Media Player2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Mail2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Journal2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Defender2015-11-29 17:01:28 ----D---- C:\Program Files\Internet Explorer2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\System2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\Services2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\microsoft shared2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Portable Devices2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Photo Viewer2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows NT2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Multimedia Platform2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Media Player2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Mail2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Defender2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Microsoft.NET2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Internet Explorer2015-11-29 17:01:28 ----D---- C:\PerfLogs2015-11-29 17:01:10 ----D---- C:\WINDOWS\system32\drivers\UMDF2015-11-29 17:01:09 ----D---- C:\WINDOWS\system32\drivers2015-11-29 16:59:55 ----D---- C:\WINDOWS\INF2015-11-29 16:53:15 ----D---- C:\WINDOWS\CbsTemp2015-11-29 16:46:54 ----RD---- C:\Users2015-11-29 16:46:54 ----RD---- C:\Program Files (x86)2015-11-29 16:46:54 ----RD---- C:\Program Files2015-11-29 16:46:54 ----D---- C:\WINDOWS\WinSxS2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\SMI2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\DriverStore2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\config2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\CatRoot2015-11-29 16:46:54 ----D---- C:\WINDOWS\System322015-11-29 16:46:54 ----D---- C:\WINDOWS\servicing2015-11-29 16:46:54 ----D---- C:\Windows2015-11-29 16:46:54 ----D---- C:\Program Files\Common Files2015-11-29 16:46:54 ----D---- C:\Program Files (x86)\Common Files2015-11-29 13:59:42 ----HD---- C:\$SysReset======List of files/folders modified in the last 1 month======2015-12-02 21:26:08 ----D---- C:\AMD2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\coinst_15.20.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\atiuxp64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiu9p64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiesrxx.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieclxx.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atidxx64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atidemgy.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticfx64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiadlxx.dll2015-12-02 21:19:37 ----SHD---- C:\System Volume Information2015-11-29 17:15:59 ----SHD---- C:\Recovery2015-11-29 16:58:33 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll2015-11-29 16:58:31 ----A---- C:\WINDOWS\system32\dlnashext.dll2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\internetmail.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\mdmregistration.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\hevcdecoder.dll2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\PlayToManager.dll2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll2015-11-29 16:58:26 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\WWanAPI.dll2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\ngccredprov.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\wpnapps.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\msctfuimanager.dll2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wlansvc.dll2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wfdprov.dll2015-11-29 16:58:19 ----A---- C:\WINDOWS\system32\schedsvc.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\WcnNetsh.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\ncryptprov.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe2015-11-29 16:58:15 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\ngckeyenum.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\fveapi.dll2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\NetSetupShim.dll2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\netcenter.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WUDFx02000.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\wpx.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WcnApi.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\msxml3.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\fdWCN.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\dafWCN.dll2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe2015-11-29 16:58:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\TokenBroker.dll2015-11-29 16:58:05 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\SettingSync.dll2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\rdbui.dll2015-11-29 16:58:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll2015-11-29 16:58:00 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll2015-11-29 16:57:58 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\jscript.dll2015-11-29 16:57:48 ----A---- C:\WINDOWS\system32\rpcrt4.dll2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\usermgr.dll2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\MFPlay.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanmm.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanconn.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWiFiAdapter.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWebproxy.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeWiFi.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPermissions.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeIP.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeCell.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationGeofences.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFramework.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationCrowdsource.dll2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\wlidsvc.dll2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\sysmain.dll2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\MPSSVC.dll2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll2015-11-29 16:57:41 ----A---- C:\WINDOWS\system32\wwancfg.dll2015-11-29 16:57:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\vbscript.dll2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\ActionCenter.dll2015-11-29 16:57:35 ----A---- C:\WINDOWS\system32\accountaccessor.dll2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\browserbroker.dll2015-11-29 16:57:27 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\vaultsvc.dll2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\msxml6.dll2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\mf.dll2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll2015-11-29 16:57:23 ----A---- C:\WINDOWS\system32\ngcsvc.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\kerberos.dll2015-11-29 16:57:20 ----A---- C:\WINDOWS\notepad.exe2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\appraiser.dll2015-11-29 16:57:17 ----A---- C:\WINDOWS\system32\syncutil.dll2015-11-29 16:57:16 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\notepad.exe2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll2015-11-29 16:57:14 ----A---- C:\WINDOWS\system32\pnidui.dll2015-11-29 16:57:12 ----A---- C:\WINDOWS\system32\dssvc.dll2015-11-29 16:57:11 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\shacct.dll2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\NetworkStatus.dll2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\mfds.dll2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======R0 amdkmpfd;@oem104.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]R0 hpdskflt;@oem117.inf,%service_desc%;HP Filter; C:\WINDOWS\System32\drivers\hpdskflt.sys [2011-05-13 30008]R0 iaStor;@oem93.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-05-20 557848]R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]R3 Accelerometer;@oem117.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\System32\drivers\Accelerometer.sys [2011-05-13 43320]R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-02 21648880]R3 AMDKMDAP;AMDKMDAP; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-02 674288]R3 BCM43XX;@oem81.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor de Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-06-29 4749008]R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]R3 IntcDAud;@oem27.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]R3 MEIx64;@oem118.inf,%HECI_SvcDesc%;Intel® Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]R3 RSPCIESTOR;@oem61.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2015-06-03 374016]R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]R3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-07-17 42696]R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10305; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2010-12-02 520192]R3 SynTP;@oem95.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\System32\drivers\SynTP.sys [2015-07-17 614088]S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]S0 storufs;@storufs.inf,sServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]S3 a016bus;@oem43.inf,%seda016.Service.Desc%;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\System32\drivers\a016bus.sys [2008-01-18 109096]S3 a016mgmt;@oem72.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\a016mgmt.sys [2008-01-18 130600]S3 a016obex;@oem119.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\a016obex.sys [2008-01-18 125480]S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]S3 dg_ssudbus;@oem21.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2015-05-21 110720]S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]S3 ggflt;@oem50.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-09-26 16088]S3 ggsomc;@oem50.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-09-26 30424]S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]S3 nusb3hub;@oem110.inf,%NUSB3HUB.SvcDesc%;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\System32\drivers\nusb3hub.sys [2013-10-19 91648]S3 nusb3xhc;@oem25.inf,%NUSB3XHC.SvcDesc%;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\System32\drivers\nusb3xhc.sys [2013-10-19 208896]S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-10 934752]S3 s0016bus;@oem36.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 driver (WDM); C:\WINDOWS\System32\drivers\s0016bus.sys [2008-05-16 115240]S3 s0016mgmt;@oem28.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0016mgmt.sys [2008-05-16 137256]S3 s0016obex;@oem113.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0016obex.sys [2008-05-16 136744]S3 s0016unic;@oem62.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\WINDOWS\System32\drivers\s0016unic.sys [2008-05-16 151592]S3 s0017bus;@oem45.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 driver (WDM); C:\WINDOWS\System32\drivers\s0017bus.sys [2008-10-21 113704]S3 s0017mgmt;@oem60.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0017mgmt.sys [2008-10-21 133160]S3 s0017obex;@oem51.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0017obex.sys [2008-10-21 128552]S3 s0017unic;@oem91.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM); C:\WINDOWS\System32\drivers\s0017unic.sys [2008-10-21 145960]S3 s1018bus;@oem40.inf,%sed1018.Service.Desc%;Sony Ericsson Device 1018 driver (WDM); C:\WINDOWS\System32\drivers\s1018bus.sys [2009-03-25 113704]S3 s1018mgmt;@oem17.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1018mgmt.sys [2009-03-25 133160]S3 s1018obex;@oem24.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1018obex.sys [2009-03-25 128552]S3 s1018unic;@oem57.inf,%s1018.Service.Desc%;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1018unic.sys [2009-03-25 146472]S3 s1029bus;@oem96.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 driver (WDM); C:\WINDOWS\System32\drivers\s1029bus.sys [2009-05-25 116264]S3 s1029mgmt;@oem33.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1029mgmt.sys [2009-05-25 139304]S3 s1029obex;@oem107.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1029obex.sys [2009-05-25 135208]S3 s1029unic;@oem9.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1029unic.sys [2009-05-25 151592]S3 s1039bus;@oem85.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 driver (WDM); C:\WINDOWS\System32\drivers\s1039bus.sys [2010-03-15 127600]S3 s1039mgmt;@oem116.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1039mgmt.sys [2010-03-15 141424]S3 s1039obex;@oem73.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1039obex.sys [2010-03-15 137328]S3 s1039unic;@oem80.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1039unic.sys [2010-03-15 158320]S3 s916bus;@oem2.inf,%sed916.Service.Desc%;Sony Ericsson Device 916 driver (WDM); C:\WINDOWS\System32\drivers\s916bus.sys [2007-11-02 108072]S3 s916mgmt;@oem114.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s916mgmt.sys [2007-11-02 130088]S3 s916obex;@oem3.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s916obex.sys [2007-11-02 124968]S3 se3ebus;@oem87.inf,%sed62.Service.Desc%;Sony Ericsson Device 062 (WDM); C:\WINDOWS\System32\drivers\se3ebus.sys [2007-04-10 107784]S3 se3emgmt;@oem97.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\se3emgmt.sys [2007-04-10 126216]S3 se3eobex;@oem18.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\se3eobex.sys [2007-04-10 123144]S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2015-07-17 42184]S3 ss_conn_usb_driver;@oem84.inf,%ssud.SvcDesc%;SAMSUNG Mobile USB Connectivity Device Driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [2015-05-21 26368]S3 ssudqcfilter;@oem21.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2015-05-21 48896]S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]S3 UcmUcsi;@UcmUcsi.inf,mUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-10 45056]S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]S3 UfxChipidea;@ufxchipidea.inf,xChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]S3 ufxsynopsys;@ufxsynopsys.inf,xsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-02 255472]R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-11-17 780304]R2 hpsrv;@oem117.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2011-05-13 30520]R2 OneSyncSvc_Session6;Host synchroniseren_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-12-02 275968]R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 PimIndexMaintenanceSvc_Session6;Contact Data_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 UnistoreSvc_Session6;User Data Storage_Session6; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 cphs;Intel® Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-10 1031680]S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]-----------------EOF-----------------kan de instructie video niet vinden
-
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htmR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htmR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =F2 - REG:system.ini: UserInit=O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRunO4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /backgroundO4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-windowO4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITORO4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dllO23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exeO23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeO23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: @oem117.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exeO23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)--End of file - 7282 bytes======Listing Processes======C:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exe -k DcomLaunchC:\WINDOWS\system32\svchost.exe -k RPCSSC:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1b242bdb-6ef5-4189-af61-a3f676bc2f1d -SystemEventPortName:HostProcess-9b0c1415-ff4f-42d0-929e-ece5d383622d -IoCancelEventPortName:HostProcess-7b254eff-65e2-4fbd-ad8c-fd7c597008cc -NonStateChangingEventPortName:HostProcess-473aec0d-428d-4f89-9da9-c899b5b0eef0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fad1f0f0-f7ed-4e7d-8e4c-8d81b0a7c4c4 -DeviceGroupId:C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\WINDOWS\system32\svchost.exe -k netsvcsC:\WINDOWS\system32\svchost.exe -k LocalService"C:\Program Files\IDT\WDM\STacSV64.exe"C:\WINDOWS\system32\Hpservice.exeC:\WINDOWS\system32\svchost.exe -k NetworkServiceC:\WINDOWS\System32\spoolsv.exeC:\WINDOWS\system32\WLANExt.exe 1038749552704\??\C:\WINDOWS\system32\conhost.exe 0x4C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork"C:\Program Files\IDT\WDM\AESTSr64.exe"C:\WINDOWS\System32\svchost.exe -k utcsvc"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"C:\WINDOWS\system32\svchost.exe -k appmodelC:\WINDOWS\system32\SearchIndexer.exe /Embedding"C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe"C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNetC:\WINDOWS\system32\atiesrxx.exeC:\WINDOWS\System32\WinLogon.exe -SpecialSession"dwm.exe"atieclxx"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"sihost.exetaskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServerC:\WINDOWS\Explorer.EXEC:\Windows\System32\RuntimeBroker.exe -Embedding"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE""C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://go.microsoft.com/fwlink/?LinkID=219472&clcid=0x409""C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4572.0.888356693\2133527705" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,8,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x0000 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1151.0 --ignored=" --type=renderer " /prefetch:822062411"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.2.2081098326\748553359" --font-cache-shared-handle=2500 /prefetch:673131151"C:\Windows\System32\igfxtray.exe""C:\Windows\System32\hkcmd.exe""C:\Windows\System32\igfxpers.exe""C:\Program Files\IDT\WDM\sttray64.exe""C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe""C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uacC:\WINDOWS\system32\svchost.exe -k UnistackSvcGroupC:\Windows\System32\InstallAgent.exe -EmbeddingC:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=nl --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A5/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4572.16.1228664718\1296674128" --font-cache-shared-handle=7028 /prefetch:673131151"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe55_ Global\UsGthrCtrlFltPipeMssGthrPipe55 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon""C:\WINDOWS\system32\SearchFilterHost.exe" 0 616 620 628 8192 624"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey B0A5C050-CE5A-B957-C1B1-951CE2E94FC2 -ReinvokeC:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}"C:\Users\David\Downloads\RSITx64 (2).exe"C:\WINDOWS\system32\wbem\wmiprvse.exe======Scheduled tasks folder======C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /cC:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler======Registry dump======[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-12-02 524800][HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]"OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-11-29 382144]"GoogleChromeAutoLaunch_9A83AADA066CCEA6F8C613E0AB5C7E19"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-11-07 811848]"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-11-17 1403304]"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272][HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-21 767176][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]"DSCAutomationHostEnabled"=2[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list][HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]"midimapper"=midimap.dll"msacm.imaadpcm"=imaadp32.acm"msacm.l3acm"=C:\Windows\System32\l3codeca.acm"msacm.msadpcm"=msadp32.acm"msacm.msg711"=msg711.acm"msacm.msgsm610"=msgsm32.acm"vidc.i420"=iyuv_32.dll"vidc.iyuv"=iyuv_32.dll"vidc.mrle"=msrle32.dll"vidc.msvc"=msvidc32.dll"vidc.uyvy"=msyuv.dll"vidc.yuy2"=msyuv.dll"vidc.yvu9"=tsbyuv.dll"vidc.yvyu"=msyuv.dll"wavemapper"=msacm32.drv"wave"=wdmaud.drv"midi"=wdmaud.drv"mixer"=wdmaud.drv"aux"=wdmaud.drv"wave1"=wdmaud.drv"midi1"=wdmaud.drv"mixer1"=wdmaud.drv"MSVideo8"=VfWWDM32.dll======File associations======.js - edit - C:\Windows\System32\Notepad.exe %1.js - open - C:\Windows\System32\WScript.exe "%1" %*======List of files/folders created in the last 1 month======2015-12-03 19:36:12 ----D---- C:\rsit2015-12-03 19:36:12 ----D---- C:\Program Files\trend micro2015-12-03 19:27:58 ----D---- C:\ProgramData\ATI2015-12-02 21:27:41 ----D---- C:\Program Files\ATI Technologies2015-12-02 21:27:30 ----D---- C:\Program Files (x86)\ATI Technologies2015-12-02 21:26:49 ----SHD---- C:\Config.Msi2015-12-02 21:24:58 ----D---- C:\WINDOWS\LastGood2015-12-02 21:24:23 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll2015-12-02 21:24:23 ----A---- C:\WINDOWS\system32\mantleaxl64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\mantle64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\detoured.dll2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\clinfo.exe2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce03.dat2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\ativce02.dat2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd6a.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atitmm64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODE.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\ATIODCLI.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atio6axx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimuixx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atimpc64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiglpxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6txx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atig6pxx.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieah64.exe2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalrt64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticaldd64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticalcl64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiapfxx.exe2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\OpenCL.dll2015-12-02 21:24:14 ----A---- C:\WINDOWS\system32\amdxc64.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdpcom64.dll2015-12-02 21:24:13 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe2015-12-02 21:24:12 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe2015-12-02 21:24:12 ----A---- C:\WINDOWS\system32\amdocl_as64.exe2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll2015-12-02 21:24:10 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl64.dll2015-12-02 21:24:10 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmmcl6.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmiracast.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdmantle64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdlvr64.dll2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdicdxx.dat2015-12-02 21:24:09 ----A---- C:\WINDOWS\system32\amdhdl64.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll2015-12-02 21:24:08 ----A---- C:\WINDOWS\system32\amde31a.dat2015-12-02 21:19:56 ----D---- C:\WINDOWS\system32\MRT2015-12-02 21:19:51 ----A---- C:\WINDOWS\system32\MRT.exe2015-12-02 19:11:27 ----D---- C:\Program Files (x86)\HD Tune2015-12-01 20:22:58 ----N---- C:\WINDOWS\system32\MpSigStub.exe2015-11-30 21:05:59 ----D---- C:\Users\David\AppData\Roaming\Macromedia2015-11-30 20:55:46 ----D---- C:\Program Files\Speccy2015-11-29 18:21:46 ----D---- C:\Program Files\CCleaner2015-11-29 18:03:41 ----D---- C:\Program Files\DIFX2015-11-29 18:03:39 ----D---- C:\Users\David\AppData\Roaming\Garmin2015-11-29 18:03:26 ----D---- C:\ProgramData\Garmin2015-11-29 18:03:21 ----D---- C:\Program Files (x86)\Garmin2015-11-29 17:49:21 ----D---- C:\Program Files (x86)\Google2015-11-29 17:41:54 ----D---- C:\Users\David\AppData\Roaming\ATI2015-11-29 17:41:49 ----D---- C:\ProgramData\Microsoft OneDrive2015-11-29 17:40:04 ----D---- C:\Users\David\AppData\Roaming\Adobe2015-11-29 17:40:03 ----D---- C:\ProgramData\Synaptics2015-11-29 17:40:02 ----D---- C:\Users\David\AppData\Roaming\Synaptics2015-11-29 17:35:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI2015-11-29 17:35:44 ----D---- C:\WINDOWS\SoftwareDistribution2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Sjablonen2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Menu Start2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Favorieten2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Documenten2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Bureaublad2015-11-29 17:33:04 ----SHD---- C:\ProgramData\Application Data2015-11-29 17:31:34 ----SD---- C:\Users\David\AppData\Roaming\Microsoft2015-11-29 17:29:16 ----ASH---- C:\hiberfil.sys2015-11-29 17:25:29 ----D---- C:\ProgramData\Package Cache2015-11-29 17:25:14 ----D---- C:\Program Files\IDT2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNX.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNJ.exe2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNHP.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\IDTNGUI.exe2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTEC64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTCo64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAR64.dll2015-11-29 17:25:14 ----A---- C:\WINDOWS\system32\AESTAC64.dll2015-11-29 17:25:13 ----D---- C:\WINDOWS\system32\SRSLabs2015-11-29 17:25:13 ----A---- C:\WINDOWS\system32\stlang64.dll2015-11-29 17:25:13 ----A---- C:\WINDOWS\sttray64.exe2015-11-29 17:24:58 ----D---- C:\Program Files\Common Files\ATI Technologies2015-11-29 17:24:44 ----D---- C:\Program Files\AMD2015-11-29 17:24:28 ----D---- C:\WINDOWS\SYSWOW64\sda2015-11-29 17:24:02 ----HD---- C:\Program Files\Uninstall Information2015-11-29 17:24:00 ----D---- C:\ProgramData\USOShared2015-11-29 17:21:47 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll2015-11-29 17:19:50 ----AS---- C:\WINDOWS\bootstat.dat2015-11-29 17:18:38 ----D---- C:\WINDOWS\ServiceProfiles2015-11-29 17:18:09 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT2015-11-29 17:15:57 ----DC---- C:\WINDOWS\Panther2015-11-29 17:15:29 ----D---- C:\Windows.old2015-11-29 17:14:56 ----D---- C:\WINDOWS\InfusedApps2015-11-29 17:14:30 ----D---- C:\WINDOWS\system32\Microsoft2015-11-29 17:11:59 ----D---- C:\Program Files\Synaptics2015-11-29 17:10:29 ----D---- C:\WINDOWS\Setup2015-11-29 17:07:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer2015-11-29 17:07:53 ----D---- C:\WINDOWS\OCR2015-11-29 17:07:52 ----D---- C:\Program Files\Reference Assemblies2015-11-29 17:07:52 ----D---- C:\Program Files\MSBuild2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\Reference Assemblies2015-11-29 17:07:52 ----D---- C:\Program Files (x86)\MSBuild2015-11-29 17:06:56 ----A---- C:\WINDOWS\system32\perfi013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfh013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfd013.dat2015-11-29 17:06:55 ----A---- C:\WINDOWS\system32\perfc013.dat2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\winrm2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\WCN2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\slmgr2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\nl2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\en2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\nl-NL2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US2015-11-29 17:06:39 ----D---- C:\WINDOWS\SYSWOW64\04092015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\winrm2015-11-29 17:06:39 ----D---- C:\WINDOWS\system32\WCN2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\slmgr2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\nl2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\en2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\nl-NL2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\drivers\en-US2015-11-29 17:06:38 ----D---- C:\WINDOWS\system32\04092015-11-29 17:06:37 ----D---- C:\WINDOWS\nl-NL2015-11-29 17:06:37 ----D---- C:\WINDOWS\en-US2015-11-29 17:06:37 ----D---- C:\WINDOWS\DigitalLocker2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfi009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfh009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfd009.dat2015-11-29 17:03:13 ----A---- C:\WINDOWS\system32\perfc009.dat2015-11-29 17:03:03 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll2015-11-29 17:01:50 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\NOISE.DAT2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\msclmd.dll2015-11-29 17:01:40 ----A---- C:\WINDOWS\system32\dssec.dat2015-11-29 17:01:32 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat2015-11-29 17:01:32 ----A---- C:\WINDOWS\fonts\desktop.ini2015-11-29 17:01:31 ----ASH---- C:\Program Files (x86)\desktop.ini2015-11-29 17:01:31 ----A---- C:\WINDOWS\win.ini2015-11-29 17:01:31 ----A---- C:\WINDOWS\system.ini2015-11-29 17:01:30 ----ASH---- C:\Program Files\desktop.ini2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Nui2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\F122015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs2015-11-29 17:01:29 ----SD---- C:\WINDOWS\SYSWOW64\Configuration2015-11-29 17:01:29 ----D---- C:\WINDOWS\Web2015-11-29 17:01:29 ----D---- C:\WINDOWS\Vss2015-11-29 17:01:29 ----D---- C:\WINDOWS\twain_322015-11-29 17:01:29 ----D---- C:\WINDOWS\tracing2015-11-29 17:01:29 ----D---- C:\WINDOWS\Temp2015-11-29 17:01:29 ----D---- C:\WINDOWS\Tasks2015-11-29 17:01:29 ----D---- C:\WINDOWS\TAPI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-TW2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-HK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\zh-CN2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\wbem2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\uk-UA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\tr-TR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\th-TH2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Tasks2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sv-SE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sru2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sppui2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\spp2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Speech2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\SMI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sl-SI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\sk-SK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\setup2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ru-RU2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ro-RO2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\restore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Recovery2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\RasToast2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ras2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-PT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pt-BR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\pl-PL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\oobe2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nl-NL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\networklist2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\NDF2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\nb-NO2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MUI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MsDtc2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\MSDRM2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\migration2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Macromed2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lv-LV2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\lt-LT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Licenses2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ko-KR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ja-JP2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\it-IT2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Ipmi2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InstallShield2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\InputMethod2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\inetsrv2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\IME2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\icsxml2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hu-HU2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\hr-HR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\he-IL2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-FR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fr-CA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\fi-FI2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\et-EE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-MX2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\es-ES2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-US2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\en-GB2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\el-GR2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\DriverStore2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\drivers2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\downlevel2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Dism2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\de-DE2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\da-DK2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\config2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Com2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\catroot2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\Bthprops2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\bg-BG2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\ar-SA2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AppLocker2015-11-29 17:01:29 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers2015-11-29 17:01:29 ----D---- C:\WINDOWS\syswow642015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemResources2015-11-29 17:01:29 ----D---- C:\WINDOWS\SystemApps2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-TW2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-HK2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\zh-CN2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\WinMetadata2015-11-29 17:01:29 ----D---- C:\WINDOWS\system32\winevt2015-11-29 17:01:28 ----SHD---- C:\WINDOWS\Installer2015-11-29 17:01:28 ----SHD---- C:\Program Files\Windows Sidebar2015-11-29 17:01:28 ----SHD---- C:\Program Files (x86)\Windows Sidebar2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Nui2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\F122015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\dsc2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\DiagSvcs2015-11-29 17:01:28 ----SD---- C:\WINDOWS\system32\Configuration2015-11-29 17:01:28 ----SD---- C:\WINDOWS\Downloaded Program Files2015-11-29 17:01:28 ----SD---- C:\ProgramData\Microsoft2015-11-29 17:01:28 ----SD---- C:\Program Files\WindowsPowerShell2015-11-29 17:01:28 ----SD---- C:\Program Files (x86)\WindowsPowerShell2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Media2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\Fonts2015-11-29 17:01:28 ----RSD---- C:\WINDOWS\assembly2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PurchaseDialog2015-11-29 17:01:28 ----RD---- C:\WINDOWS\PrintDialog2015-11-29 17:01:28 ----RD---- C:\WINDOWS\Offline Web Pages2015-11-29 17:01:28 ----RD---- C:\WINDOWS\MiracastView2015-11-29 17:01:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DevicesFlow2015-11-29 17:01:28 ----RD---- C:\WINDOWS\DesktopTileResources2015-11-29 17:01:28 ----HD---- C:\WINDOWS\ELAMBKUP2015-11-29 17:01:28 ----HD---- C:\ProgramData2015-11-29 17:01:28 ----HD---- C:\Program Files\WindowsApps2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WindowsPowerShell2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioPlugIns2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WinBioDatabase2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wfp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\WDI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\wbem2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\uk-UA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\tr-TR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\th-TH2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Tasks2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SystemResetPlatform2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Sysprep2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sv-SE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sru2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-RS2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sr-Latn-CS2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sppui2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\spool2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech_OneCore2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Speech2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sl-SI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\sk-SK2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\setup2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\SecureBootUpdates2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ru-RU2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ro-RO2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\restore2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Recovery2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\RasToast2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ras2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-PT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pt-BR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ProximityToast2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\PointOfService2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\pl-PL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\oobe2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nl-NL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\networklist2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\NDF2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\nb-NO2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MUI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MsDtc2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MSDRM2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migwiz2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\migration2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Macromed2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lv-LV2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\lt-LT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\LogFiles2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Licenses2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ko-KR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ja-JP2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\it-IT2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Ipmi2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\InputMethod2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\inetsrv2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\IME2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\icsxml2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ias2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hu-HU2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\hr-HR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\he-IL2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicyUsers2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\GroupPolicy2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\FxsTmp2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-FR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fr-CA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\fi-FI2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\et-EE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-MX2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\es-ES2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-US2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\en-GB2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\el-GR2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\drivers\etc2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\downlevel2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Dism2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\de-DE2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\da-DK2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\cs-CZ2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Com2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\CodeIntegrity2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\catroot22015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Bthprops2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\Boot2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\bg-BG2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\ar-SA2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\appraiser2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AppLocker2015-11-29 17:01:28 ----D---- C:\WINDOWS\system32\AdvancedInstallers2015-11-29 17:01:28 ----D---- C:\WINDOWS\System2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech_OneCore2015-11-29 17:01:28 ----D---- C:\WINDOWS\Speech2015-11-29 17:01:28 ----D---- C:\WINDOWS\SKB2015-11-29 17:01:28 ----D---- C:\WINDOWS\ShellNew2015-11-29 17:01:28 ----D---- C:\WINDOWS\security2015-11-29 17:01:28 ----D---- C:\WINDOWS\schemas2015-11-29 17:01:28 ----D---- C:\WINDOWS\SchCache2015-11-29 17:01:28 ----D---- C:\WINDOWS\Resources2015-11-29 17:01:28 ----D---- C:\WINDOWS\rescache2015-11-29 17:01:28 ----D---- C:\WINDOWS\Registration2015-11-29 17:01:28 ----D---- C:\WINDOWS\Provisioning2015-11-29 17:01:28 ----D---- C:\WINDOWS\prefetch2015-11-29 17:01:28 ----D---- C:\WINDOWS\PolicyDefinitions2015-11-29 17:01:28 ----D---- C:\WINDOWS\PLA2015-11-29 17:01:28 ----D---- C:\WINDOWS\Performance2015-11-29 17:01:28 ----D---- C:\WINDOWS\ModemLogs2015-11-29 17:01:28 ----D---- C:\WINDOWS\Migration2015-11-29 17:01:28 ----D---- C:\WINDOWS\Microsoft.NET2015-11-29 17:01:28 ----D---- C:\WINDOWS\Logs2015-11-29 17:01:28 ----D---- C:\WINDOWS\LiveKernelReports2015-11-29 17:01:28 ----D---- C:\WINDOWS\L2Schemas2015-11-29 17:01:28 ----D---- C:\WINDOWS\InputMethod2015-11-29 17:01:28 ----D---- C:\WINDOWS\IME2015-11-29 17:01:28 ----D---- C:\WINDOWS\Help2015-11-29 17:01:28 ----D---- C:\WINDOWS\Globalization2015-11-29 17:01:28 ----D---- C:\WINDOWS\diagnostics2015-11-29 17:01:28 ----D---- C:\WINDOWS\debug2015-11-29 17:01:28 ----D---- C:\WINDOWS\Cursors2015-11-29 17:01:28 ----D---- C:\WINDOWS\Branding2015-11-29 17:01:28 ----D---- C:\WINDOWS\Boot2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppReadiness2015-11-29 17:01:28 ----D---- C:\WINDOWS\AppPatch2015-11-29 17:01:28 ----D---- C:\WINDOWS\appcompat2015-11-29 17:01:28 ----D---- C:\WINDOWS\addins2015-11-29 17:01:28 ----D---- C:\ProgramData\USOPrivate2015-11-29 17:01:28 ----D---- C:\ProgramData\SoftwareDistribution2015-11-29 17:01:28 ----D---- C:\ProgramData\regid.1991-06.com.microsoft2015-11-29 17:01:28 ----D---- C:\ProgramData\Comms2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Portable Devices2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Photo Viewer2015-11-29 17:01:28 ----D---- C:\Program Files\Windows NT2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Multimedia Platform2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Media Player2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Mail2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Journal2015-11-29 17:01:28 ----D---- C:\Program Files\Windows Defender2015-11-29 17:01:28 ----D---- C:\Program Files\Internet Explorer2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\System2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\Services2015-11-29 17:01:28 ----D---- C:\Program Files\Common Files\microsoft shared2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Portable Devices2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Photo Viewer2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows NT2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Multimedia Platform2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Media Player2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Mail2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Windows Defender2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Microsoft.NET2015-11-29 17:01:28 ----D---- C:\Program Files (x86)\Internet Explorer2015-11-29 17:01:28 ----D---- C:\PerfLogs2015-11-29 17:01:10 ----D---- C:\WINDOWS\system32\drivers\UMDF2015-11-29 17:01:09 ----D---- C:\WINDOWS\system32\drivers2015-11-29 16:59:55 ----D---- C:\WINDOWS\INF2015-11-29 16:53:15 ----D---- C:\WINDOWS\CbsTemp2015-11-29 16:46:54 ----RD---- C:\Users2015-11-29 16:46:54 ----RD---- C:\Program Files (x86)2015-11-29 16:46:54 ----RD---- C:\Program Files2015-11-29 16:46:54 ----D---- C:\WINDOWS\WinSxS2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\SMI2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\DriverStore2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\config2015-11-29 16:46:54 ----D---- C:\WINDOWS\system32\CatRoot2015-11-29 16:46:54 ----D---- C:\WINDOWS\System322015-11-29 16:46:54 ----D---- C:\WINDOWS\servicing2015-11-29 16:46:54 ----D---- C:\Windows2015-11-29 16:46:54 ----D---- C:\Program Files\Common Files2015-11-29 16:46:54 ----D---- C:\Program Files (x86)\Common Files2015-11-29 13:59:42 ----HD---- C:\$SysReset======List of files/folders modified in the last 1 month======2015-12-02 21:26:08 ----D---- C:\AMD2015-12-02 21:24:22 ----A---- C:\WINDOWS\system32\coinst_15.20.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll2015-12-02 21:24:17 ----A---- C:\WINDOWS\system32\atiuxp64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiumd64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiu9p64.dll2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atiesrxx.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atieclxx.exe2015-12-02 21:24:16 ----A---- C:\WINDOWS\system32\atidxx64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atidemgy.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\aticfx64.dll2015-12-02 21:24:15 ----A---- C:\WINDOWS\system32\atiadlxx.dll2015-12-02 21:19:37 ----SHD---- C:\System Volume Information2015-11-29 17:15:59 ----SHD---- C:\Recovery2015-11-29 16:58:33 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll2015-11-29 16:58:31 ----A---- C:\WINDOWS\system32\dlnashext.dll2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll2015-11-29 16:58:30 ----A---- C:\WINDOWS\system32\internetmail.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\mdmregistration.dll2015-11-29 16:58:28 ----A---- C:\WINDOWS\system32\hevcdecoder.dll2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\PlayToManager.dll2015-11-29 16:58:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll2015-11-29 16:58:26 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\WWanAPI.dll2015-11-29 16:58:22 ----A---- C:\WINDOWS\system32\ngccredprov.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\wpnapps.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll2015-11-29 16:58:21 ----A---- C:\WINDOWS\system32\msctfuimanager.dll2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wlansvc.dll2015-11-29 16:58:20 ----A---- C:\WINDOWS\system32\wfdprov.dll2015-11-29 16:58:19 ----A---- C:\WINDOWS\system32\schedsvc.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\WcnNetsh.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\ncryptprov.dll2015-11-29 16:58:16 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe2015-11-29 16:58:15 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\ngckeyenum.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll2015-11-29 16:58:12 ----A---- C:\WINDOWS\system32\fveapi.dll2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\NetSetupShim.dll2015-11-29 16:58:11 ----A---- C:\WINDOWS\system32\netcenter.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WUDFx02000.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\wpx.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\WcnApi.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\msxml3.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\fdWCN.dll2015-11-29 16:58:10 ----A---- C:\WINDOWS\system32\dafWCN.dll2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll2015-11-29 16:58:08 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe2015-11-29 16:58:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll2015-11-29 16:58:06 ----A---- C:\WINDOWS\system32\TokenBroker.dll2015-11-29 16:58:05 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\SettingSync.dll2015-11-29 16:58:03 ----A---- C:\WINDOWS\system32\rdbui.dll2015-11-29 16:58:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll2015-11-29 16:58:00 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll2015-11-29 16:57:58 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll2015-11-29 16:57:53 ----A---- C:\WINDOWS\system32\jscript.dll2015-11-29 16:57:48 ----A---- C:\WINDOWS\system32\rpcrt4.dll2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\usermgr.dll2015-11-29 16:57:46 ----A---- C:\WINDOWS\system32\MFPlay.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanmm.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\wwanconn.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWiFiAdapter.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationWebproxy.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeWiFi.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPermissions.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeIP.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationPeCell.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationGeofences.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationFramework.dll2015-11-29 16:57:45 ----A---- C:\WINDOWS\system32\LocationCrowdsource.dll2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\wlidsvc.dll2015-11-29 16:57:44 ----A---- C:\WINDOWS\system32\sysmain.dll2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\MPSSVC.dll2015-11-29 16:57:42 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll2015-11-29 16:57:41 ----A---- C:\WINDOWS\system32\wwancfg.dll2015-11-29 16:57:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\vbscript.dll2015-11-29 16:57:38 ----A---- C:\WINDOWS\system32\ActionCenter.dll2015-11-29 16:57:35 ----A---- C:\WINDOWS\system32\accountaccessor.dll2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll2015-11-29 16:57:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll2015-11-29 16:57:30 ----A---- C:\WINDOWS\system32\browserbroker.dll2015-11-29 16:57:27 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\vaultsvc.dll2015-11-29 16:57:26 ----A---- C:\WINDOWS\system32\msxml6.dll2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll2015-11-29 16:57:25 ----A---- C:\WINDOWS\system32\mf.dll2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll2015-11-29 16:57:24 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll2015-11-29 16:57:23 ----A---- C:\WINDOWS\system32\ngcsvc.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll2015-11-29 16:57:22 ----A---- C:\WINDOWS\system32\kerberos.dll2015-11-29 16:57:20 ----A---- C:\WINDOWS\notepad.exe2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe2015-11-29 16:57:18 ----A---- C:\WINDOWS\system32\appraiser.dll2015-11-29 16:57:17 ----A---- C:\WINDOWS\system32\syncutil.dll2015-11-29 16:57:16 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\notepad.exe2015-11-29 16:57:15 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll2015-11-29 16:57:14 ----A---- C:\WINDOWS\system32\pnidui.dll2015-11-29 16:57:12 ----A---- C:\WINDOWS\system32\dssvc.dll2015-11-29 16:57:11 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\shacct.dll2015-11-29 16:57:08 ----A---- C:\WINDOWS\system32\NetworkStatus.dll2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\mfds.dll2015-11-29 16:57:07 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======R0 amdkmpfd;@oem104.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]R0 hpdskflt;@oem117.inf,%service_desc%;HP Filter; C:\WINDOWS\System32\drivers\hpdskflt.sys [2011-05-13 30008]R0 iaStor;@oem93.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-05-20 557848]R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]R3 Accelerometer;@oem117.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\System32\drivers\Accelerometer.sys [2011-05-13 43320]R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-02 21648880]R3 AMDKMDAP;AMDKMDAP; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-02 674288]R3 BCM43XX;@oem81.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor de Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-06-29 4749008]R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]R3 IntcDAud;@oem27.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]R3 MEIx64;@oem118.inf,%HECI_SvcDesc%;Intel® Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]R3 RSPCIESTOR;@oem61.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2015-06-03 374016]R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]R3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2015-07-17 42696]R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10305; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2010-12-02 520192]R3 SynTP;@oem95.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\System32\drivers\SynTP.sys [2015-07-17 614088]S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]S0 storufs;@storufs.inf,sServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]S3 a016bus;@oem43.inf,%seda016.Service.Desc%;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\System32\drivers\a016bus.sys [2008-01-18 109096]S3 a016mgmt;@oem72.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\a016mgmt.sys [2008-01-18 130600]S3 a016obex;@oem119.inf,%seda016.Service.Name%;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\a016obex.sys [2008-01-18 125480]S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]S3 dg_ssudbus;@oem21.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2015-05-21 110720]S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]S3 ggflt;@oem50.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-09-26 16088]S3 ggsomc;@oem50.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-09-26 30424]S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]S3 nusb3hub;@oem110.inf,%NUSB3HUB.SvcDesc%;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\System32\drivers\nusb3hub.sys [2013-10-19 91648]S3 nusb3xhc;@oem25.inf,%NUSB3XHC.SvcDesc%;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\System32\drivers\nusb3xhc.sys [2013-10-19 208896]S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-10 934752]S3 s0016bus;@oem36.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 driver (WDM); C:\WINDOWS\System32\drivers\s0016bus.sys [2008-05-16 115240]S3 s0016mgmt;@oem28.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0016mgmt.sys [2008-05-16 137256]S3 s0016obex;@oem113.inf,%sed0016.Service.Name%;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0016obex.sys [2008-05-16 136744]S3 s0016unic;@oem62.inf,%sed0016.Service.Desc%;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\WINDOWS\System32\drivers\s0016unic.sys [2008-05-16 151592]S3 s0017bus;@oem45.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 driver (WDM); C:\WINDOWS\System32\drivers\s0017bus.sys [2008-10-21 113704]S3 s0017mgmt;@oem60.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s0017mgmt.sys [2008-10-21 133160]S3 s0017obex;@oem51.inf,%sed0017.Service.Name%;Sony Ericsson Device 0017 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s0017obex.sys [2008-10-21 128552]S3 s0017unic;@oem91.inf,%sed0017.Service.Desc%;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM); C:\WINDOWS\System32\drivers\s0017unic.sys [2008-10-21 145960]S3 s1018bus;@oem40.inf,%sed1018.Service.Desc%;Sony Ericsson Device 1018 driver (WDM); C:\WINDOWS\System32\drivers\s1018bus.sys [2009-03-25 113704]S3 s1018mgmt;@oem17.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1018mgmt.sys [2009-03-25 133160]S3 s1018obex;@oem24.inf,%sed1018.Service.Name%;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1018obex.sys [2009-03-25 128552]S3 s1018unic;@oem57.inf,%s1018.Service.Desc%;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1018unic.sys [2009-03-25 146472]S3 s1029bus;@oem96.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 driver (WDM); C:\WINDOWS\System32\drivers\s1029bus.sys [2009-05-25 116264]S3 s1029mgmt;@oem33.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1029mgmt.sys [2009-05-25 139304]S3 s1029obex;@oem107.inf,%sed1029.Service.Name%;Sony Ericsson Device 1029 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1029obex.sys [2009-05-25 135208]S3 s1029unic;@oem9.inf,%sed1029.Service.Desc%;Sony Ericsson Device 1029 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1029unic.sys [2009-05-25 151592]S3 s1039bus;@oem85.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 driver (WDM); C:\WINDOWS\System32\drivers\s1039bus.sys [2010-03-15 127600]S3 s1039mgmt;@oem116.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s1039mgmt.sys [2010-03-15 141424]S3 s1039obex;@oem73.inf,%sed1039.Service.Name%;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s1039obex.sys [2010-03-15 137328]S3 s1039unic;@oem80.inf,%sed1039.Service.Desc%;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\WINDOWS\System32\drivers\s1039unic.sys [2010-03-15 158320]S3 s916bus;@oem2.inf,%sed916.Service.Desc%;Sony Ericsson Device 916 driver (WDM); C:\WINDOWS\System32\drivers\s916bus.sys [2007-11-02 108072]S3 s916mgmt;@oem114.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\s916mgmt.sys [2007-11-02 130088]S3 s916obex;@oem3.inf,%sed916.Service.Name%;Sony Ericsson Device 916 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\s916obex.sys [2007-11-02 124968]S3 se3ebus;@oem87.inf,%sed62.Service.Desc%;Sony Ericsson Device 062 (WDM); C:\WINDOWS\System32\drivers\se3ebus.sys [2007-04-10 107784]S3 se3emgmt;@oem97.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\drivers\se3emgmt.sys [2007-04-10 126216]S3 se3eobex;@oem18.inf,%sed62.Service.Name%;Sony Ericsson Device 062 USB WMC OBEX Interface; C:\WINDOWS\System32\drivers\se3eobex.sys [2007-04-10 123144]S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2015-07-17 42184]S3 ss_conn_usb_driver;@oem84.inf,%ssud.SvcDesc%;SAMSUNG Mobile USB Connectivity Device Driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [2015-05-21 26368]S3 ssudqcfilter;@oem21.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2015-05-21 48896]S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]S3 UcmUcsi;@UcmUcsi.inf,mUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-10 45056]S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]S3 UfxChipidea;@ufxchipidea.inf,xChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]S3 ufxsynopsys;@ufxsynopsys.inf,xsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-07-10 28512]S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-07-10 57696]S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-07-10 27488]======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-02 255472]R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-11-17 780304]R2 hpsrv;@oem117.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2011-05-13 30520]R2 OneSyncSvc_Session6;Host synchroniseren_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-12-02 275968]R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-17 246472]R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]R3 PimIndexMaintenanceSvc_Session6;Contact Data_Session6; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]R3 UnistoreSvc_Session6;User Data Storage_Session6; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 cphs;Intel® Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-29 144200]S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-10 1031680]S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]-----------------EOF-----------------
-
-
start zeer traag op
-
-
start heel traag op en helderheid scherm is niet meer instelbaar
-
thanx probleem opgelost
-
opstart is al veel beter bedankt hiervoor,alleen kan nog geen afbeeldingen openen,komt op dat er geen programma voor is
-
AdwCleaner v4.206 - Logbestand aangemaakt 19/06/2015 op 14:47:23
# Laatste update 01/06/2015 door Xplode
# Database : 2015-06-17.1 [server]
# Besturingssysteem : Windows 7 Home Premium Service Pack 1 (x64)
# Gebruikersnaam : David - DAVID-HP
# Gestart vanuit : C:\Users\David\Downloads\adwcleaner_4.206.exe
# Optie : Verwijderen
***** [ Services ] *****
***** [ Bestanden / Mappen ] *****
Map Verwijderd : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doctor pc
Map Verwijderd : C:\Users\David\AppData\Roaming\doctor pc
Map Verwijderd : C:\Users\David\AppData\Roaming\K9AMW
Map Verwijderd : C:\Users\David\AppData\Roaming\K9Tools
***** [ Geplande taken ] *****
Taak Verwijderd : DoctorPC_Popup
Taak Verwijderd : DoctorPC_Start
***** [ Snelkoppelingen ] *****
***** [ Register ] *****
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\SDP
Sleutel Verwijderd : HKLM\SOFTWARE\1168cb14-dea2-4c20-a69d-dcbf7d10fb53
Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Sleutel Verwijderd : HKCU\Software\Cores
Sleutel Verwijderd : HKCU\Software\K9Tools
Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\SpeedChecker
Sleutel Verwijderd : HKLM\SOFTWARE\GlobalUpdate
Sleutel Verwijderd : HKLM\SOFTWARE\K9Tools
Sleutel Verwijderd : HKU\.DEFAULT\Software\SafetyNut
***** [ Webbrowsers ] *****
-\\ Internet Explorer v11.0.9600.17840
-\\ Google Chrome v43.0.2357.124
*************************
AdwCleaner[R0].txt - [23138 bytes] - [24/11/2014 20:00:12]
AdwCleaner[R1].txt - [2178 bytes] - [19/06/2015 14:39:55]
AdwCleaner[R2].txt - [2237 bytes] - [19/06/2015 14:43:34]
AdwCleaner[s0].txt - [18929 bytes] - [24/11/2014 20:01:52]
AdwCleaner[s1].txt - [2104 bytes] - [19/06/2015 14:47:23]
########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [2163 bytes] ##########
-
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by David on do 18/06/2015 at 15:07:04,08.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\David\Downloads\zoek.exe [scan all users] [script inserted] [Checkboxes used]
==== Older Logs ======================
C:\zoek-results2015-01-17-185440.log 130748 bytes
C:\zoek-results2015-06-15-134153.log 77038 bytes
C:\zoek-results2015-06-16-135242.log 70044 bytes
==== Empty Folders Check ======================
C:\PROGRA~3\ProductData deleted successfully
C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfully
C:\Users\David\AppData\Roaming\hpqLog deleted successfully
C:\Users\David\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\David\AppData\Local\EmieSiteList deleted successfully
C:\Users\David\AppData\Local\EmieUserList deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Installed Programs ======================
Adobe Flash Player 10 ActiveX
Adobe Reader 9.5.5 MUI
Adobe Shockwave Player 11.5
Advanced SystemCare 8
ANT Drivers Installer x64
ATI Catalyst Install Manager
Broadcom 802.11 Wireless LAN Adapter
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
Catalyst Control Center Profiles Mobile
ccc-core-static
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCleaner
Col du Glandon 2014 (Marmotte 1) - FR
Contr“le ActiveX Windows Live Mesh pour connexions … distance
CyberLink DVD Suite
CyberLink YouCam
CycloAgent
Elevated Installer
Energy Star Digital Logo
ESU for Microsoft Windows 7
Facebook Video Calling 3.1.0.521
ffdshow [rev 3154] [2009-12-09]
Free YouTube to MP3 Converter version 3.12.50.1111
Galerie de photos Windows Live
Garmin Express
Garmin Express Tray
Google Chrome
Google Earth
Google Update Helper
Hewlett-Packard ACLM.NET v1.2.2.3
HP 3D DriveGuard
HP Auto
HP Client Services
HP CloudDrive
HP Customer Experience Enhancements
HP Documentation
HP On Screen Display
HP Power Manager
HP Quick Launch
HP Setup
HP Setup Manager
HP SimplePass 2011
HP Software Framework
HP Support Assistant
HP Wireless Assistant
IDT Audio
Intel® Control Center
Intel® Display Audio Driver
Intel® Management Engine Components
Intel® Rapid Storage Technology
IQO2
Java 8 Update 45
Java Auto Updater
LabelPrint
LightScribe System Software
Microsoft .NET Framework 1.1
Microsoft .NET Framework 4.5.1
Microsoft .NET Framework 4.5.1 (Nederlands)
Microsoft .NET Framework 4.5.1 (NLD)
Microsoft Application Error Reporting
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
Microsoft XNA Framework Redistributable 3.0
Microsoft XNA Framework Redistributable 3.1
Mio Share
MP3jam 1.1.1.2
National Instruments Software
NavDesk 7.50
NI-DIM 1.13.0f0
NI-DIM 1.13.0f0 for 64 Bit Windows
NI-ORB 1.10.0f0
NI-ORB 1.10.0f0 for 64 Bit Windows
NI-PAL 2.9.1 64-Bit Error Files
NI-PAL 2.9.1 Error Files
NI-PAL 2.9.1f0
NI-PAL 2.9.1f0 for 64 Bit Windows
NI-RPC 4.3.0f0
NI-RPC 4.3.0f0 for 64 Bit Windows
NI-VISA Runtime 5.4.0
NI-VISA x64 support 5.4.0
NI Certificates Deployment Support
NI EulaDepot
NI LabVIEW Run-Time Engine 2010
NI LabVIEW Run-Time Engine Interop 2010
NI LabVIEW Web Server for Run-Time Engine
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Original)
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Updated)
NI Logos 5.2.0
NI Logos XT Support
NI Logos64 5.2.0
NI Logos64 XT Support
NI Math Kernel Libraries
NI Math Kernel Libraries (64-bit)
NI MDF Support
NI mDNS Responder 2.2 for Windows 64-bit
NI mDNS Responder 2.2.0
NI Security Update (KB 67L8LCQW)
NI Security Update (KB 67L8LCQW) (64-bit)
NI Security Update (KB5Q5FJ4QW) - LabVIEW Run-Time Engine 2010
NI Security Update (KB67L8L0QW)
NI Service Locator 13.0
NI System State Publisher
NI System State Publisher (64-bit)
NI Trace Engine
NI Trace Engine (64-bit)
NI Uninstaller
NI VC2008MSMs x64
NI VC2008MSMs x86
NI Xerces Delay Load 2.7.3
NI Xerces Delay Load 2.7.3 64-bit
OpenOffice.org 3.4.1
PictureMover
Polar FlowSync versie 2.3.8
PX Profile Update
RadioSure
Realtek Ethernet Controller Driver
Realtek PCIE Card Reader
Recovery Manager
Renesas Electronics USB 3.0 Host Controller Driver
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972107)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft .NET Framework 4.5.1 (KB2978128)
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB3023224)
Security Update for Microsoft .NET Framework 4.5.1 (KB3035490)
Security Update for Microsoft .NET Framework 4.5.1 (KB3037581)
SkypeT 7.0
Speccy
Stuurprogrammapakket voor Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201)
Stuurprogrammapakket voor Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1)
Surfing Protection
Synaptics TouchPad Driver
Tacx System Requirements Tester
Tacx Trainer software 4
Tacx Video Installation Support
TrainingPeaks Device Agent
TTS Launcher
Unity Web Player
Validity WBF DDK
Virtual COM Port Driver
VISA Shared Components 64-Bit
Visual Studio 2012 x64 Redistributables
Visual Studio 2012 x86 Redistributables
Windows Driver Package - Silicon Laboratories (silabenm) Ports (12/10/2012 6.6.1.0)
Windows Live Fotogalerie
Windows Live Mail
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen
Windows Live Mesh
Windows Live Mesh ActiveX control for remote connections
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live Remote Client Resources
Windows Live Remote Service Resources
Windows Live Writer
Windows Live Writer Resources
Zwift version 1.0.3
==== Running Processes ======================
C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
C:\Windows\SysWOW64\ezSharedSvcHost.exe
C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Windows\SysWOW64\lkcitdl.exe
C:\Windows\SysWOW64\lkads.exe
C:\Windows\SysWOW64\lktsrv.exe
C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe
C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\David\Downloads\zoek.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} not found
C:\Users\David\AppData\Local\Popcorn-Time deleted
C:\Users\David\AppData\Local\Popcorn Time deleted
C:\Users\David\AppData\Roaming\ProductData deleted
==== System Specs ======================
Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601)
Memory (RAM): 4044 MB
CPU Info: Intel® Core i7-2630QM CPU @ 2.00GHz
CPU Speed: 1969,3 MHz
Sound Card: Luidsprekers en koptelefoons (I |
Communicatie koptelefoons (IDT |
Display Adapters: Mobile Intel® HD Graphics | Mobile Intel® HD Graphics | Radeon HD 6490M | Radeon HD 6490M | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver
Monitors: 1x; Algemeen PnP-beeldscherm |
Screen Resolution: 1600 X 900 - 32 bit
Network: Network Present
Network Adapters: Broadcom 4313 (802.11b/g/n) | Realtek PCIe GBE Family Controller
CD / DVD Drives: 1x (E: | ) E: hp CDDVDW TS-L633R
Ports: COM Ports NOT Present. LPT Port NOT Present.
Mouse: 5 Button Wheel Mouse Present
Hard Disks: C: 446,5GB | D: 19,0GB
Hard Disks - Free: C: 360,9GB | D: 2,3GB
Manufacturer *: Hewlett-Packard
BIOS Info: AT/AT COMPATIBLE | 10/05/11 | HPQOEM - 1
Time Zone: Romance (standaardtijd)
Motherboard *: Hewlett-Packard 1659
Country: Belgi‰
Language: NLB
==== System Specs (Software) ======================
Anti-Spyware: Windows Defender disabled (Outdated)
Default Browser: Google Chrome 43.0.2357.124
Internet Explorer Version: 11.0.9600.17843
Google Chrome version: 43.0.2357.124
Adobe Reader version: 9.5.5.316
Sun Java version: 1.8.0_45 (32-bit)
Sun Java version: 1.8.0_45 (64-bit)
Shockwave Player version: 11.5.8r612
==== Files Recently Created / Modified ======================
====== C:\Windows ====
====== C:\Users\David\AppData\Local\Temp ====
2015-06-18 12:34:57 7F5AB14271F9813AAB9D431F1C836C12 126264 ----a-w- C:\Users\David\AppData\Local\Temp\TUUUninstallHelper.exe
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
2015-06-18 12:52:48 C4ECB9E46DD3B7B3E1E8FEBDBBD00B6C 98811 ----a-w- C:\Windows\SysWOW64\_m.dmp
2015-06-12 17:11:18 2CA16814DA3C5B2D8C7E70DC47A45ED1 551424 ----a-w- C:\Windows\SysWOW64\kerberos.dll
2015-06-12 17:11:15 9E68E1BDEBD85FC8803707370BE0FC6E 641536 ----a-w- C:\Windows\SysWOW64\advapi32.dll
2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe
2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe
2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe
2015-06-12 17:11:09 EA141596564AE0C670EDD0F2636EC29C 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll
2015-06-12 17:11:09 BBABC6702529CFADAC0EC2B28168A288 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll
2015-06-12 17:11:09 8C7635292CFF4901F058269454A1D64E 1310744 ----a-w- C:\Windows\SysWOW64\ntdll.dll
2015-06-12 17:11:08 A9E8F961F7FE1EDEEF8F46EEB800F2D8 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll
2015-06-12 17:11:08 9A50B2567918BF7DDD600ECE5DB5ED76 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll
2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe
2015-06-12 17:11:08 65A5E27C2217D606E212B6088CCD6104 92160 ----a-w- C:\Windows\SysWOW64\sechost.dll
2015-06-12 17:11:08 5643A88C6DA8AAEC9CE2845431942650 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll
2015-06-12 17:11:08 4238391DE3E3FDCD2C731C1E4E0F402C 635392 ----a-w- C:\Windows\SysWOW64\tdh.dll
2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe
2015-06-12 17:11:07 FCA6EFFEE6D7D42E794F0E538297026C 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll
2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe
2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe
2015-06-12 17:11:07 D877133532CE090502B1166B360E9516 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll
2015-06-12 17:11:07 7A9F94E0F53C8F6E09405351AC104A3C 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll
2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe
2015-06-12 17:11:07 558227F567E977D71B9182013EF03E9C 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll
2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe
2015-06-12 17:11:07 2D23A10FBFA09DC1B61799128BBA91A2 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll
2015-06-12 17:11:06 F72A9953199EF5807D595AE3694B5D01 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll
2015-06-12 17:11:05 F81920ADB15012CF4E9FF8238C85686A 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll
2015-06-12 17:11:05 6C730482615C97B923B88C648FF554A3 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll
2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe
2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe
2015-06-12 17:11:03 52C869A640B8169D7C8460FB1646ABF5 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll
2015-06-12 17:11:02 2E65BF3D85BB2C831669FBCBDE6C9879 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll
2015-06-12 17:11:01 7E7933E63BBE2BE71CC908EF140458EF 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll
2015-06-12 17:11:01 619D5101114C71E1A4A585C5E68301B7 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll
2015-06-12 16:44:29 FB5C9234E4BF6BDAF4A954763A4582BA 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll
2015-06-12 16:44:29 F26680AF396F89F7ABFDA1D1D6B62011 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll
2015-06-12 16:44:29 EF853EA2A6A7BD891CCF31B0C2915352 341504 ----a-w- C:\Windows\SysWOW64\html.iec
2015-06-12 16:44:29 E4EB138060BAE0DBAB1A3B71A3141FE7 1950720 ----a-w- C:\Windows\SysWOW64\wininet.dll
2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe
2015-06-12 16:44:29 DB254D50B4527C2821C537E0587B44E8 12829696 ----a-w- C:\Windows\SysWOW64\ieframe.dll
2015-06-12 16:44:29 C93AE4D14AEF5169791B35D97AE7C9FC 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll
2015-06-12 16:44:29 C27C8CACEBC712BE2AD791715E9734EC 664064 ----a-w- C:\Windows\SysWOW64\jscript.dll
2015-06-12 16:44:29 B6D8148C1C697A7BF04EE0FE82408B6A 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll
2015-06-12 16:44:29 9F6066005D8B8620598085C7499E9B70 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll
2015-06-12 16:44:29 975421AC32F9F6E27A58F75DAB4B5871 19607040 ----a-w- C:\Windows\SysWOW64\mshtml.dll
2015-06-12 16:44:29 96837E5864777688477AF6DE2332C06D 503808 ----a-w- C:\Windows\SysWOW64\vbscript.dll
2015-06-12 16:44:29 927E38A35E4DFC4E294BD130BAA6F759 2278912 ----a-w- C:\Windows\SysWOW64\iertutil.dll
2015-06-12 16:44:29 8C8B8C78C0CCD5D36ABCB115B0B581E1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb
2015-06-12 16:44:29 8C3A03295F56D1FFB51D9D05DA42B12D 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll
2015-06-12 16:44:29 85E21CCF38166E0D6DE2E42D9D3823BD 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll
2015-06-12 16:44:29 81C1182A9EE7AC4D21187811DE66A7D0 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll
2015-06-12 16:44:29 7DBCBB1647B7CD71E2039C1B50A12717 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll
2015-06-12 16:44:29 7C9F8DB66A56306C5BBE97F9FC0F01EF 342736 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll
2015-06-12 16:44:29 6B7210618D7E2CE0404ECF748701253A 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll
2015-06-12 16:44:29 5C06EE62F06E990E9521EA80B8D4D4B8 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll
2015-06-12 16:44:29 53E9614ADFA6A40A452BA014CEF6F261 1309696 ----a-w- C:\Windows\SysWOW64\urlmon.dll
2015-06-12 16:44:29 4ABEEF30EA5B9F4718312DCB60B6C9BC 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl
2015-06-12 16:44:29 3FD7E6DB5D81FE400DB4D81D278596E6 4305920 ----a-w- C:\Windows\SysWOW64\jscript9.dll
2015-06-12 16:44:29 2DED8A99E45053C42DD21D6937D3960C 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll
2015-06-12 16:44:29 1A628C1F5470F0AF21E37E425026F27A 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll
2015-06-12 16:44:29 185490A6C3BEDAC5EF547314F68AB07B 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-06-12 16:44:29 17B0852D8202A872C3E6D01B518B6A4E 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll
2015-06-12 16:42:44 58788565442368B0615DDAF1D452B843 530432 ----a-w- C:\Windows\SysWOW64\comctl32.dll
2015-06-12 16:41:37 DA27A4EA7B7C77FAFDB3F94D83E310C1 12625408 ----a-w- C:\Windows\SysWOW64\wmploc.DLL
2015-06-12 16:41:37 A98E8F79C738CAF23C152DBCABD978FE 11411456 ----a-w- C:\Windows\SysWOW64\wmp.dll
2015-06-12 16:41:37 605E9B2CFA3445ED7716D0B345EE21EC 8192 ----a-w- C:\Windows\SysWOW64\spwmp.dll
2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\msdxm.ocx
2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\dxmasf.dll
2015-06-12 16:39:01 C1D7451054FEDC3F96F2903B6F84A4EE 173056 ----a-w- C:\Windows\SysWOW64\wuwebv.dll
2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe
2015-06-12 16:39:01 81AE5637F2D2DE4DAF67F540F5A076AA 30208 ----a-w- C:\Windows\SysWOW64\wups.dll
2015-06-12 16:39:01 61302CE8DDB8513A4FF03CEE2A14471F 92672 ----a-w- C:\Windows\SysWOW64\wudriver.dll
2015-06-12 16:39:01 4A99665068B907CCB0EE4A5D3F2584D7 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll
2015-06-05 17:16:45 6C1EEE6FBCDD2B07398495CE7C9ECC0A 9888360 ----a-w- C:\Windows\SysWOW64\RtsPStorIcon.dll
====== C:\Windows\SysWOW64\drivers =====
====== C:\Windows\Sysnative =====
2015-06-15 12:48:26 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\Sysnative\RENDEAB.tmp
2015-06-12 17:11:21 AA5319FA8602676B5D3A2B4A1355896D 1255424 ----a-w- C:\Windows\Sysnative\diagtrack.dll
2015-06-12 17:11:20 6ECD6D92F43C2DC55099F892978D5BE7 728576 ----a-w- C:\Windows\Sysnative\kerberos.dll
2015-06-12 17:11:19 8DCA1C70AF170C3FBCE47A4F49BFC887 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll
2015-06-12 17:11:16 93A05407F8E53BC731C42AAD56163F80 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll
2015-06-12 17:11:16 6FDF03A3B110C5264F52F979335AE301 1162752 ----a-w- C:\Windows\Sysnative\kernel32.dll
2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe
2015-06-12 17:11:15 4FFD08A01047EF6B58F6EB4E6D001A8D 879104 ----a-w- C:\Windows\Sysnative\advapi32.dll
2015-06-12 17:11:11 53042708C242959B3924242FBBE297B1 1728960 ----a-w- C:\Windows\Sysnative\ntdll.dll
2015-06-12 17:11:10 FF9BBFAE899091C1FF0D1A3F2C587911 243712 ----a-w- C:\Windows\Sysnative\wow64.dll
2015-06-12 17:11:10 CCB352B939B77B38983DD878C547451F 503808 ----a-w- C:\Windows\Sysnative\srcore.dll
2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\Sysnative\tracerpt.exe
2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\Sysnative\conhost.exe
2015-06-12 17:11:10 2313AF8D5A9CEB4A55400A01DD311A95 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll
2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe
2015-06-12 17:11:09 996EE6571ADB880A60846DD02C8D5869 314880 ----a-w- C:\Windows\Sysnative\msv1_0.dll
2015-06-12 17:11:09 37DFCC91E419952772E02F2B3BBB2E2B 342016 ----a-w- C:\Windows\Sysnative\schannel.dll
2015-06-12 17:11:08 AD54856A16B635720B0BE5FAF44526FC 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll
2015-06-12 17:11:08 A929B9ABA1083AF35ECE7BD63AF3E42F 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll
2015-06-12 17:11:08 A5F57F4866C2DC7F8215058D7D56BD21 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll
2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\Sysnative\smss.exe
2015-06-12 17:11:08 7C5E375F20F639607376351A8BCC0647 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll
2015-06-12 17:11:08 66DF73B202105406602941778792FE3D 879104 ----a-w- C:\Windows\Sysnative\tdh.dll
2015-06-12 17:11:08 4F90A7A0FCBC0ED18E573917860062FF 113664 ----a-w- C:\Windows\Sysnative\sechost.dll
2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\Sysnative\logman.exe
2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\Sysnative\lsass.exe
2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\Sysnative\typeperf.exe
2015-06-12 17:11:07 D68690450978D127E030FB14E9B2023B 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll
2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\Sysnative\relog.exe
2015-06-12 17:11:07 6ACD3C75BE449F039E1A4E43424D5B6F 28160 ----a-w- C:\Windows\Sysnative\secur32.dll
2015-06-12 17:11:07 5EC57AC6DC16CB8A058CA019AA2C188D 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll
2015-06-12 17:11:07 5A17FF38EDE95B2313E428BF444126D7 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll
2015-06-12 17:11:07 289D99B0879C6ED5C6D1B3A856CA6DA3 22016 ----a-w- C:\Windows\Sysnative\credssp.dll
2015-06-12 17:11:07 20BD408AC3F8576997D6A47F48A1C5B2 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll
2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\Sysnative\diskperf.exe
2015-06-12 17:11:07 13DE715D959DD502CFD52DC920408B33 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll
2015-06-12 17:11:07 11D5815F0DC571CE3C72213B375860B1 50176 ----a-w- C:\Windows\Sysnative\srclient.dll
2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe
2015-06-12 17:11:03 AF557D115972A73964FC8F209300948A 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll
2015-06-12 17:11:02 6ACFCC28E4D60B5A931D8749332A14E2 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll
2015-06-12 17:11:01 8A4EB32C7C948F70EAC6F85063596A39 36864 ----a-w- C:\Windows\Sysnative\UtcResources.dll
2015-06-12 17:11:01 837BBE4170D5A75F293BD6F294A8FE34 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll
2015-06-12 17:11:01 6E882D7CA34073890107559B5A515A24 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll
2015-06-12 16:44:29 FF84182188CA8F0DC28CFED06C9B7816 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl
2015-06-12 16:44:29 D202078FBA3A77B85D39669EE4110DE2 389840 ----a-w- C:\Windows\Sysnative\iedkcs32.dll
2015-06-12 16:44:29 CFA52E2FE8E623042A1EEF96EB1B9481 6026240 ----a-w- C:\Windows\Sysnative\jscript9.dll
2015-06-12 16:44:29 AFF5C12099B87FA645F8867701729894 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll
2015-06-12 16:44:29 AE5A2843B4A2E1E558B9EE13EF62CCE5 14404096 ----a-w- C:\Windows\Sysnative\ieframe.dll
2015-06-12 16:44:29 ACD6FE6C82B93813F023FC01A51CB940 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll
2015-06-12 16:44:29 A29BAFC1543F9D2234AFFFEA9BCE76C8 24917504 ----a-w- C:\Windows\Sysnative\mshtml.dll
2015-06-12 16:44:29 9E2B8C0601E3D460F78F0233B509CE4F 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll
2015-06-12 16:44:29 9DB8E01D5A546FAFCACE95489E351186 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll
2015-06-12 16:44:29 8909A24DA8B5C426CF6595BA843B6CC5 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll
2015-06-12 16:44:29 86FDFEA67833DB261EC01A777594EDCF 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll
2015-06-12 16:44:29 83781DF625A4448B39410D7FA2BDC48D 816640 ----a-w- C:\Windows\Sysnative\jscript.dll
2015-06-12 16:44:29 7F8F9AE03D1BA4354671E05F07A40F1A 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll
2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe
2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe
2015-06-12 16:44:29 6E295C7364DAEB151CC0E98434B6AC92 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll
2015-06-12 16:44:29 6ABFC5736EC920C4436F32111F5CBCEE 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll
2015-06-12 16:44:29 5F8EE9311ECF078CD9426874FFAD660C 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll
2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe
2015-06-12 16:44:29 4BD747AAF01C480901B3E777EC48826B 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll
2015-06-12 16:44:29 4A5A84B457C72E79A64AE4036EC6BB0E 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll
2015-06-12 16:44:29 417F80E4AFBA1AA9EBBD618F1C6D9165 2426880 ----a-w- C:\Windows\Sysnative\wininet.dll
2015-06-12 16:44:29 3C3E159F284F51D55DB59C3D0B843979 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb
2015-06-12 16:44:29 3854BFE1C0F14872C94501421CC40813 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll
2015-06-12 16:44:29 36F3718E67F442F54AB4A39DCDD8FD19 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll
2015-06-12 16:44:29 35622F5A652C4E16774234DCA0026E74 633856 ----a-w- C:\Windows\Sysnative\ieui.dll
2015-06-12 16:44:29 33B5F1A727FACDEA7CDA0E35FFAADDCF 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll
2015-06-12 16:44:29 2BC2D3A41BB755487FD55C09938F00BC 417792 ----a-w- C:\Windows\Sysnative\html.iec
2015-06-12 16:44:29 16091938F6CDBCCCBA1CBE24600121BC 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll
2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe
2015-06-12 16:44:29 083BCA14FCE290D682D8DAC9372CBF23 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll
2015-06-12 16:44:29 06A8CE6C3AE6B7916F026B0EFDDCAAA5 199680 ----a-w- C:\Windows\Sysnative\msrating.dll
2015-06-12 16:42:44 51F89CE2D0FEC66070354504E6C4C3E4 633856 ----a-w- C:\Windows\Sysnative\comctl32.dll
2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\Sysnative\win32k.sys
2015-06-12 16:41:37 9D80A82B0BB77AC3EF6A87FA0C534E20 14635008 ----a-w- C:\Windows\Sysnative\wmp.dll
2015-06-12 16:41:37 834FD7C31EA16D59CC3B2DC60F2F2620 9728 ----a-w- C:\Windows\Sysnative\spwmp.dll
2015-06-12 16:41:37 51ECEE70F33601310DDEF3EEE39550D3 12625920 ----a-w- C:\Windows\Sysnative\wmploc.DLL
2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\msdxm.ocx
2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\dxmasf.dll
2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\Sysnative\wuauclt.exe
2015-06-12 16:39:01 D7897C17117286A237A639209F53C51C 98304 ----a-w- C:\Windows\Sysnative\wudriver.dll
2015-06-12 16:39:01 C8C3839305F2C4D9A4B33DE6AB83334E 191488 ----a-w- C:\Windows\Sysnative\wuwebv.dll
2015-06-12 16:39:01 A76DAC2E9CBB9595D2F806CBFB5C0BC4 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll
2015-06-12 16:39:01 803E9B4DF2E931FDB3210F342B89BE9F 36864 ----a-w- C:\Windows\Sysnative\wups.dll
2015-06-12 16:39:01 4D9BE5567F9DDC54D41907C9A95F61BF 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll
2015-06-12 16:39:01 478007800DAF83A33CECCD776E7FA734 37888 ----a-w- C:\Windows\Sysnative\wups2.dll
2015-06-12 16:39:01 4152B8E73C7198DBFBB1FD8A5FFD41F9 3147776 ----a-w- C:\Windows\Sysnative\wucltux.dll
2015-06-12 16:39:01 29F4030F3A449AAF68778C1C67603569 87040 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll
2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\Sysnative\wuapp.exe
2015-06-12 16:39:01 14882A15F5CE7B8EADC8E7F54FD5B53B 2589184 ----a-w- C:\Windows\Sysnative\wuaueng.dll
2015-06-05 17:19:52 92C704590FCEDDA971B7A77945DCCDA4 74272 ----a-w- C:\Windows\Sysnative\RtNicProp64.dll
2015-06-05 11:54:52 E87D4371B24BC9E5BAE95AEA60FFD959 193536 ----a-w- C:\Windows\Sysnative\aepic.dll
2015-06-05 11:54:52 CFF429F2234C1D1A5993E80F46C37CFB 1119232 ----a-w- C:\Windows\Sysnative\aeinv.dll
2015-06-05 11:54:52 B23AB4C401E2DE02C47B7497D41E2318 757248 ----a-w- C:\Windows\Sysnative\invagent.dll
2015-06-05 11:54:52 6F07FC190DBCB42C8A5319235F72F906 423424 ----a-w- C:\Windows\Sysnative\devinv.dll
2015-06-05 11:54:52 6E2EB5A36C3CCD917F7FF9BED7C1390E 45568 ----a-w- C:\Windows\Sysnative\acmigration.dll
2015-06-05 11:54:52 587BBA3B3959144334700EC48232712F 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll
2015-06-05 11:54:52 52DEF4C743C2EABD6BD3EDC790A0E778 1021440 ----a-w- C:\Windows\Sysnative\appraiser.dll
2015-06-05 11:54:52 2DCA988113A02EB9BCB98A5DC2D34E57 700416 ----a-w- C:\Windows\Sysnative\generaltel.dll
====== C:\Windows\Sysnative\drivers =====
2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys
2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys
2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\Sysnative\drivers\stream.sys
2015-06-05 17:19:52 ED5873F7DFB2F96D37F13322211B6BDC 428136 ----a-w- C:\Windows\Sysnative\drivers\Rt64win7.sys
2015-06-05 17:16:45 1F5E7AF59B390261A85F5BEDB1BB88B3 338536 ----a-w- C:\Windows\Sysnative\drivers\RtsPStor.sys
====== C:\Windows\Tasks ======
2015-06-01 17:22:32 5C28953A094C30D8BF5C8EE837DEDC0E 3554 ----a-w- C:\Windows\Sysnative\Tasks\GarminUpdaterTask
2015-05-20 10:34:49 E042D370278A4892FFE77E1288A0485F 3186 ----a-w- C:\Windows\Sysnative\Tasks\HPCeeScheduleForDavid
2015-05-20 10:34:49 D832AE985D8E87F1F7EA4EB141936169 332 ----a-w- C:\Windows\Tasks\HPCeeScheduleForDavid.job
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C:\PROGRA~2 =====
2015-06-10 14:57:48 -------- d-----w- C:\PROGRA~2\GameforgeLive
2015-06-01 17:22:35 -------- d-----w- C:\PROGRA~2\Garmin
======= C: =====
2015-06-12 17:28:02 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\asc_rdflag
====== C:\Users\David\AppData\Roaming ======
2015-06-18 13:33:35 -------- d-----w- C:\Users\David\AppData\Roaming\ProductData
2015-06-16 13:49:49 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp
2015-06-16 13:49:49 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp
2015-06-16 13:49:49 -------- d-----w- C:\Users\Default\AppData\Local\Temp
2015-06-16 13:49:48 -------- d-----w- C:\Users\David\AppData\Local\Temp
2015-06-13 18:07:18 -------- d-----w- C:\Users\David\AppData\Local\CycloAgent
2015-06-10 14:58:06 -------- d-----w- C:\Users\David\AppData\Local\Gameforge4d
2015-06-02 19:02:09 -------- d-----w- C:\Users\David\AppData\Local\GWX
2015-06-01 17:23:55 -------- d-----w- C:\Users\David\AppData\Local\Garmin_Ltd._or_its_subsid
2015-06-01 17:23:53 -------- d-----w- C:\Users\David\AppData\Roaming\Garmin
2015-06-01 17:22:58 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Garmin_Ltd._or_its_subsid
2015-06-01 11:04:29 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\CrashDumps
====== C:\Users\David ======
2015-06-18 13:33:35 -------- d-----w- C:\ProgramData\ProductData
2015-06-18 13:04:51 F0EE0FE6CC055FCEBE2B417D6ACAEF57 5239920 ----a-w- C:\Users\David\Downloads\ParetoLogic PC Health Advisor_nl.exe
2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe
2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe
2015-06-10 14:57:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2015-06-01 17:22:58 -------- d-----w- C:\ProgramData\Garmin
2015-06-01 17:22:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
====== C: exe-files ==
2015-06-18 13:04:51 F0EE0FE6CC055FCEBE2B417D6ACAEF57 5239920 ----a-w- C:\Users\David\Downloads\ParetoLogic PC Health Advisor_nl.exe
2015-06-18 12:34:57 7F5AB14271F9813AAB9D431F1C836C12 126264 ----a-w- C:\Users\David\AppData\Local\Temp\TUUUninstallHelper.exe
2015-06-16 14:13:27 56597D4709034A024A6645B49358E10B 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$IYYSFYD.exe
2015-06-16 14:13:09 E9E7E64C58FAF86AE04CF669E876534A 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$IHC8OB5.exe
2015-06-16 14:13:09 BFC3054057E1B8861EB91C9632DE42AE 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$IH1BT6T.exe
2015-06-16 14:13:09 9A7B6CAB127C70DCBA0D41C460858B98 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$I0HT5UX.exe
2015-06-16 14:13:09 85F7B42F170C71BF67145DE2963E3BED 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$I96A66O.exe
2015-06-16 14:13:09 4BEA70B7A1FBB1972B4CBD588BBEED31 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$IKU1O0J.exe
2015-06-16 14:13:09 2CBCD44EDEC03AEB3932A8328D04AE54 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$I6TNGX1.exe
2015-06-15 12:53:27 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$R0HT5UX.exe
2015-06-15 12:53:09 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$R96A66O.exe
2015-06-15 12:52:52 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$RKU1O0J.exe
2015-06-15 12:52:36 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$RH1BT6T.exe
2015-06-15 12:52:30 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$R6TNGX1.exe
2015-06-15 12:52:27 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$RHC8OB5.exe
2015-06-15 12:46:32 FF589C55E0CB6A0A1BD9570217BB1A42 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\tnameserv.exe
2015-06-15 12:46:32 FD8978875A992C876AF430B35DF9CFA7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\pack200.exe
2015-06-15 12:46:32 F16868F20E4701142FAEF8C9FA847D27 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jabswitch.exe
2015-06-15 12:46:32 EF66D96BC42BCE52686A7635AB11D8DD 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe
2015-06-15 12:46:32 EED888394AC81A663F12C6EC43AB2838 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaw.exe
2015-06-15 12:46:32 D3DA34876B7F6D06D26D29CA77BD25A2 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ktab.exe
2015-06-15 12:46:32 CF683290B3369A1491A5B8B4D19F79B3 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jjs.exe
2015-06-15 12:46:32 C57CA849D13177E1F43CFEF51374F1EE 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\unpack200.exe
2015-06-15 12:46:32 B66ED84383EA6C6218CA47BC49C15615 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssvagent.exe
2015-06-15 12:46:32 A1A1BC927541346D840BBB511F557848 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\policytool.exe
2015-06-15 12:46:32 98903A3C01AA820E7FCC19A0A60126C0 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\klist.exe
2015-06-15 12:46:32 88FFC43B0E3BB3E30F70CB7B08D499B4 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java-rmi.exe
2015-06-15 12:46:32 5DF39BE82C777B7EDAD34E3A7A7EADB7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmid.exe
2015-06-15 12:46:32 4EA6A4DD2EB584C4C2BF39A9A7D0D580 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\keytool.exe
2015-06-15 12:46:32 4586CD8F1C929EF184098A22FE31A857 271968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaws.exe
2015-06-15 12:46:32 3C0A1F0D13A8998E9A1825A853FF3B39 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\kinit.exe
2015-06-15 12:46:32 2682BB5D60C30DCB5A2BC414D01D6764 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmiregistry.exe
2015-06-15 12:46:32 1F29E31C6B9A487FF32006C4E223BA4F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\orbd.exe
2015-06-15 12:46:32 1E2E159D0621A466CFA7CE06E4DA9CAE 190560 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java.exe
2015-06-15 12:46:32 1CCD26E1E9FC582ABAA5D5FD1FA47A6B 76384 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2launcher.exe
2015-06-15 12:46:32 134D4B0A753808F8F8645DCF3FA00173 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\servertool.exe
2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe
2015-06-13 18:06:05 4DD98CF2C593C29DEED54834818ED160 70167842 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.exe
2015-06-13 17:54:06 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Install\{0CD806F6-8695-45CA-89CF-878B0B60C12D}\43.0.2357.124_chrome_installer.exe
2015-06-13 17:54:05 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_chrome_installer.exe
2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe
2015-06-12 17:40:51 D171A87BC9906EFB81FEBCB929FFF806 95017400 ----a-w- C:\Users\David\Documents\Downloads\TTS41302_0.exe
2015-06-12 17:40:49 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Documents\Downloads\Silverlight_x64.exe
2015-06-12 17:40:48 74E3ACC64B1AD1E52BE9A5760B9610BA 41182032 ----a-w- C:\Users\David\Documents\Downloads\GarminExpressInstaller.exe
2015-06-12 17:40:47 664C1BC487D25D153235E0061208DE1B 48076576 ----a-w- C:\Users\David\Documents\Downloads\advanced-systemcare-setup.exe
2015-06-12 17:37:29 28CA7D1BB9FBFCA2B529D885E61491D8 933664 ----a-w- C:\Users\David\AppData\Roaming\IObit\IObit Uninstaller\PPUninstallertemp.exe
2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\System32\ntoskrnl.exe
2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe
2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\System32\tracerpt.exe
2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe
2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\System32\conhost.exe
2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe
2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\System32\rstrui.exe
2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\System32\smss.exe
2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe
2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe
2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\System32\logman.exe
2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\System32\lsass.exe
2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe
2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe
2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\System32\typeperf.exe
2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\System32\relog.exe
2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe
2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe
2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\System32\diskperf.exe
2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\System32\auditpol.exe
2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe
2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe
2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Install\{1CE6E837-D028-4816-BFFC-F04383FB2D50}\43.0.2357.124_43.0.2357.81_chrome_updater.exe
2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_43.0.2357.81_chrome_updater.exe
2015-06-12 16:44:29 FF9877ABCA06D539264275321C97BB07 814288 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe
2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe
2015-06-12 16:44:29 9F45DA24EBAE4180F70D03503580E8CA 815312 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe
2015-06-12 16:44:29 8D4E75DEAA0FFBEFB5F366A4770D9644 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe
2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe
2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\System32\ie4uinit.exe
2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2015-06-12 16:44:29 52956B4DD1899CB09BB50FB939F6E99D 490496 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe
2015-06-12 16:44:29 2B3CF8F7903266E2AA5C9D9850FAA8F6 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe
2015-06-12 16:44:29 29874C10D7D0088CD8743EC8F5DABBE4 473600 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe
2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\System32\ieUnatt.exe
2015-06-12 16:41:37 E39D7E7FCC5D4B77B8CBA52FEF8753DE 102912 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe
2015-06-12 16:41:37 8D3316795ACCC0EC0DD6A844E046DA68 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2015-06-12 16:41:37 6F139F39295000E6301C0D08F7493CC6 101888 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpconfig.exe
2015-06-12 16:41:37 5F7B628B5F10531E8DE3E711ED73AAD7 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2015-06-12 16:41:37 44854DDB738BF2C507FC2162245361D6 102400 ----a-w- C:\Program Files\Windows Media Player\wmpconfig.exe
2015-06-12 16:41:37 3505E5A7664FD84AC8AE51FE3B545AE1 102400 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpshare.exe
2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\System32\wuauclt.exe
2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe
2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\System32\wuapp.exe
2015-06-12 14:18:37 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-244821173-3068459867-560851451-1000\$RYYSFYD.exe
=== C: other files ==
2015-06-15 12:46:32 5DDC15149346900F16B38C65502BACA9 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\lib\deploy\ffjcext.zip
2015-06-13 17:59:05 C27D6272D8716360A24BE1FE4B09EAE9 53755757 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.zip
2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\System32\win32k.sys
2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\System32\drivers\stream.sys
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"
"Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"
"Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe"
"Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto"
"GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"
"StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"
"NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"HPOSD"="C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden"
"Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"
"Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe"
"Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto"
"GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
==== Startup Registry Enabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"HPWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden"
"SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe"
"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"
==== Startup Registry Disabled ======================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]
"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files (x86)\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""
==== Startup Folders ======================
2013-07-20 13:42:34 1235 ----a-w- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
2011-05-18 09:27:37 2029 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snapfish PictureMover.lnk
==== Task Scheduler Jobs ======================
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/07/2013 19:05]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/07/2013 19:05]
C:\Windows\tasks\HPCeeScheduleForDavid.job --a------ [undetermined Task]
==== Other Scheduled Tasks ======================
"C:\Windows\SysNative\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\ASC8_PerformanceMonitor" [C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe]
"C:\Windows\SysNative\tasks\ASC8_SkipUac_David" ["C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe" /SkipUac]
"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\HPCeeScheduleForDavid" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe]
"C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe]
"C:\Windows\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe]
"C:\Windows\SysNative\tasks\ServicePlan" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"]
"C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]
"C:\Windows\SysNative\tasks\Uninstaller_SkipUac_David" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe]
"C:\Windows\SysNative\tasks\{5D9A4FC7-5D07-47C1-ABC6-A925C461B5B3}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]
"C:\Windows\SysNative\tasks\{5DFE2574-4F57-40F0-882C-742CE9B3A706}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]
"C:\Windows\SysNative\tasks\{7B0FEDE2-B25D-4EA2-814C-09A75A383359}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]
"C:\Windows\SysNative\tasks\{960A14E6-D2B9-414D-98D6-2E961A70DE5B}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]
"C:\Windows\SysNative\tasks\{FC6A3016-9CF0-49C8-9034-598422B18E97}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]
"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]
==== Firefox Extensions Registry ======================
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{B64D9B05-48E1-4CEB-BF58-E0643994E900}"="C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff" [16/11/2014 15:17]
==== Chromium Look ======================
Google Chrome Version: 43.0.2357.124
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
nhfpefkeidlhbjljfdojcnngjbddgein - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx[17/11/2010 07:36]
Google Slides - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Google Docs - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf
Embed WMPlayer inline - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bamkbfdmckphehgiafpenehgebjgdlli
Hootsuite Hootlet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifn
YouTube - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Calendar - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn
Google Sheets - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Google Maps - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh
Website Logon - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nhfpefkeidlhbjljfdojcnngjbddgein
Facebook Notifications - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmameahlembdcigphohgiodcgjomcgeo
Google Wallet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
==== Chromium Startpages ======================
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences
om:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":559635},"supports_spdy":true},"tpc.googlesyndication.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":81270}},"translate.google.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"translate.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":72893},"supports_spdy":true},"video-ams2-1.xx.fbcdn.net:443":{"supports_spdy":true},"video-fra3-1.xx.fbcdn.net:443":{"supports_spdy":true},"www.bt.emsecure.net:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.facebook.com:443":{"supports_spdy":true},"www.google-analytics.com:443":{"supports_spdy":true},"www.google-analytics.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.google.be:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":95844},"supports_spdy":true},"www.google.be:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.google.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":124649},"supports_spdy":true},"www.google.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.googleadservices.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":114046},"supports_spdy":true},"www.googleadservices.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":94362}},"www.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":48813},"supports_spdy":true},"www.googletagmanager.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"www.googletagmanager.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.googletagservices.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":474060}},"www.gstatic.com:443":{"supports_spdy":true},"www.youtube-nocookie.com:443":{"supports_spdy":true},"www.youtube-nocookie.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.youtube.com:443":{"supports_spdy":true},"www.youtube.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"yt3.ggpht.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true}},"supports_quic":{"address":"10.0.31.102","used_quic":true},"version":3}},"ntp":{"app_page_names":["Apps"]},"password_bubble":{"nopes":0},"plugins":{"migrated_to_pepper_flash":true,"plugins_list":[],"removed_old_component_pepper_flash_settings":true},"profile":{"avatar_index":0,"content_settings":{"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"fullscreen":1}},"pref_version":1},"exit_type":"Crashed","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"david","per_host_zoom_levels":{}},"protection":{"macs":{}},"selectfile":{"last_directory":"C:\\Users\\David\\Downloads"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13078608218934858"},"translate_accepted_count":{"en":1},"translate_blocked_languages":["nl"],"translate_denied_count":{"en":0},"translate_last_denied_time":1434196906108.058,"translate_too_often_denied":true,"translate_whitelists":{}}
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Reset Google Chrome ======================
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences.bad was reset successfully
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences was reset successfully
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data-journal was reset successfully
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data.ReadOnly was reset successfully
==== HijackThis Entries ======================
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Polar FlowSync] C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe
O4 - HKCU\..\Run: [Mio Share] C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio\Mio Share.appref-ms
O4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Snapfish PictureMover.lnk = C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\national instruments\shared\mdns responder\nimdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\Windows\SysWOW64\lkcitdl.exe
O23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments Corporation - C:\Windows\SysWOW64\lkads.exe
O23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\Windows\SysWOW64\lktsrv.exe
O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
O23 - Service: NI LXI Discovery Service (niLXIDiscovery) - National Instruments Corporation - C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
O23 - Service: NI mDNS Responder Service (nimDNSResponder) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
O23 - Service: NI Service Locator (NiSvcLoc) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1848 folders=652 124459995 bytes)
==== Empty Temp Folders ======================
C:\Users\David\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\David\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on do 18/06/2015 at 18:54:58,94 ======================
-
Zoek.exe v5.0.0.0 Updated 04-May-2015Tool run by David on di 16/06/2015 at 15:11:03,60.Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64Running in: Normal Mode Internet Access DetectedLaunched: C:\Users\David\Downloads\zoek (4).exe [scan all users] [Deep Scan] [Auto Clean]==== Older Logs ======================C:\zoek-results2015-01-17-185440.log 130748 bytesC:\zoek-results2015-06-15-134153.log 77038 bytes==== Empty Folders Check ======================C:\PROGRA~3\ProductData deleted successfullyC:\Users\David\AppData\Roaming\hpqLog deleted successfullyC:\Users\David\AppData\Local\EmieBrowserModeList deleted successfullyC:\Users\David\AppData\Local\EmieSiteList deleted successfullyC:\Users\David\AppData\Local\EmieUserList deleted successfully==== Deleting CLSID Registry Keys ========================== Deleting CLSID Registry Values ========================== Running Processes ======================C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Windows\SysWOW64\ezSharedSvcHost.exeC:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeC:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exeC:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exeC:\Windows\SysWOW64\lkcitdl.exeC:\Windows\SysWOW64\lkads.exeC:\Windows\SysWOW64\lktsrv.exeC:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exeC:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exeC:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exeC:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exeC:\Program Files (x86)\HP SimplePass 2011\TouchControl.exeC:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exeC:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exeC:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exeC:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exeC:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exeC:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exeC:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exeC:\Program Files (x86)\PictureMover\Bin\PictureMover.exeC:\Program Files (x86)\OpenOffice.org 3\program\soffice.exeC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exeC:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exeC:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exeC:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exeC:\Program Files (x86)\OpenOffice.org 3\program\soffice.binC:\Program Files (x86)\Common Files\Java\Java Update\jusched.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exeC:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exeC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeC:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exeC:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exeC:\Users\David\Downloads\zoek (4).exeC:\Windows\SysWOW64\cmd.exeC:\Windows\SysWOW64\cmd.exeC:\Windows\SysWOW64\cmd.exe==== Deleting Services ========================== Deleting Files \ Folders ======================C:\Users\David\AppData\Roaming\ProductData deleted==== System Specs ======================Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601)Memory (RAM): 4044 MBCPU Info: Intel® Core i7-2630QM CPU @ 2.00GHzCPU Speed: 1967,4 MHzSound Card: Luidsprekers en koptelefoons (I |Communicatie koptelefoons (IDT |Display Adapters: Mobile Intel® HD Graphics | Mobile Intel® HD Graphics | Radeon HD 6490M | Radeon HD 6490M | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display DriverMonitors: 1x; Algemeen PnP-beeldscherm |Screen Resolution: 1600 X 900 - 32 bitNetwork: Network PresentNetwork Adapters: Broadcom 4313 (802.11b/g/n) | Realtek PCIe GBE Family ControllerCD / DVD Drives: 1x (E: | ) E: hp CDDVDW TS-L633RPorts: COM Ports NOT Present. LPT Port NOT Present.Mouse: 5 Button Wheel Mouse PresentHard Disks: C: 446,5GB | D: 19,0GBHard Disks - Free: C: 359,2GB | D: 2,3GBManufacturer *: Hewlett-PackardBIOS Info: AT/AT COMPATIBLE | 10/05/11 | HPQOEM - 1Time Zone: Romance (standaardtijd)Motherboard *: Hewlett-Packard 1659Country: Belgi‰Language: NLB==== System Specs (Software) ======================Anti-Spyware: Windows Defender disabled (Outdated)Default Browser: Google Chrome 43.0.2357.124Internet Explorer Version: 11.0.9600.17843Google Chrome version: 43.0.2357.124Adobe Reader version: 9.5.5.316Sun Java version: 1.8.0_45 (32-bit)Sun Java version: 1.8.0_45 (64-bit)Shockwave Player version: 11.5.8r612==== Files Recently Created / Modified ============================ C:\Windows ========== C:\Users\David\AppData\Local\Temp ========== Java Cache =========== C:\Windows\SysWOW64 =====2015-06-12 17:11:18 2CA16814DA3C5B2D8C7E70DC47A45ED1 551424 ----a-w- C:\Windows\SysWOW64\kerberos.dll2015-06-12 17:11:15 9E68E1BDEBD85FC8803707370BE0FC6E 641536 ----a-w- C:\Windows\SysWOW64\advapi32.dll2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe2015-06-12 17:11:09 EA141596564AE0C670EDD0F2636EC29C 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll2015-06-12 17:11:09 BBABC6702529CFADAC0EC2B28168A288 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll2015-06-12 17:11:09 8C7635292CFF4901F058269454A1D64E 1310744 ----a-w- C:\Windows\SysWOW64\ntdll.dll2015-06-12 17:11:08 A9E8F961F7FE1EDEEF8F46EEB800F2D8 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll2015-06-12 17:11:08 9A50B2567918BF7DDD600ECE5DB5ED76 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe2015-06-12 17:11:08 65A5E27C2217D606E212B6088CCD6104 92160 ----a-w- C:\Windows\SysWOW64\sechost.dll2015-06-12 17:11:08 5643A88C6DA8AAEC9CE2845431942650 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll2015-06-12 17:11:08 4238391DE3E3FDCD2C731C1E4E0F402C 635392 ----a-w- C:\Windows\SysWOW64\tdh.dll2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe2015-06-12 17:11:07 FCA6EFFEE6D7D42E794F0E538297026C 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe2015-06-12 17:11:07 D877133532CE090502B1166B360E9516 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll2015-06-12 17:11:07 7A9F94E0F53C8F6E09405351AC104A3C 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe2015-06-12 17:11:07 558227F567E977D71B9182013EF03E9C 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe2015-06-12 17:11:07 2D23A10FBFA09DC1B61799128BBA91A2 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll2015-06-12 17:11:06 F72A9953199EF5807D595AE3694B5D01 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll2015-06-12 17:11:05 F81920ADB15012CF4E9FF8238C85686A 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll2015-06-12 17:11:05 6C730482615C97B923B88C648FF554A3 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe2015-06-12 17:11:03 52C869A640B8169D7C8460FB1646ABF5 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll2015-06-12 17:11:02 2E65BF3D85BB2C831669FBCBDE6C9879 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll2015-06-12 17:11:01 7E7933E63BBE2BE71CC908EF140458EF 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll2015-06-12 17:11:01 619D5101114C71E1A4A585C5E68301B7 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll2015-06-12 16:44:29 FB5C9234E4BF6BDAF4A954763A4582BA 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll2015-06-12 16:44:29 F26680AF396F89F7ABFDA1D1D6B62011 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll2015-06-12 16:44:29 EF853EA2A6A7BD891CCF31B0C2915352 341504 ----a-w- C:\Windows\SysWOW64\html.iec2015-06-12 16:44:29 E4EB138060BAE0DBAB1A3B71A3141FE7 1950720 ----a-w- C:\Windows\SysWOW64\wininet.dll2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe2015-06-12 16:44:29 DB254D50B4527C2821C537E0587B44E8 12829696 ----a-w- C:\Windows\SysWOW64\ieframe.dll2015-06-12 16:44:29 C93AE4D14AEF5169791B35D97AE7C9FC 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll2015-06-12 16:44:29 C27C8CACEBC712BE2AD791715E9734EC 664064 ----a-w- C:\Windows\SysWOW64\jscript.dll2015-06-12 16:44:29 B6D8148C1C697A7BF04EE0FE82408B6A 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll2015-06-12 16:44:29 9F6066005D8B8620598085C7499E9B70 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll2015-06-12 16:44:29 975421AC32F9F6E27A58F75DAB4B5871 19607040 ----a-w- C:\Windows\SysWOW64\mshtml.dll2015-06-12 16:44:29 96837E5864777688477AF6DE2332C06D 503808 ----a-w- C:\Windows\SysWOW64\vbscript.dll2015-06-12 16:44:29 927E38A35E4DFC4E294BD130BAA6F759 2278912 ----a-w- C:\Windows\SysWOW64\iertutil.dll2015-06-12 16:44:29 8C8B8C78C0CCD5D36ABCB115B0B581E1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb2015-06-12 16:44:29 8C3A03295F56D1FFB51D9D05DA42B12D 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll2015-06-12 16:44:29 85E21CCF38166E0D6DE2E42D9D3823BD 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll2015-06-12 16:44:29 81C1182A9EE7AC4D21187811DE66A7D0 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll2015-06-12 16:44:29 7DBCBB1647B7CD71E2039C1B50A12717 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll2015-06-12 16:44:29 7C9F8DB66A56306C5BBE97F9FC0F01EF 342736 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll2015-06-12 16:44:29 6B7210618D7E2CE0404ECF748701253A 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll2015-06-12 16:44:29 5C06EE62F06E990E9521EA80B8D4D4B8 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll2015-06-12 16:44:29 53E9614ADFA6A40A452BA014CEF6F261 1309696 ----a-w- C:\Windows\SysWOW64\urlmon.dll2015-06-12 16:44:29 4ABEEF30EA5B9F4718312DCB60B6C9BC 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl2015-06-12 16:44:29 3FD7E6DB5D81FE400DB4D81D278596E6 4305920 ----a-w- C:\Windows\SysWOW64\jscript9.dll2015-06-12 16:44:29 2DED8A99E45053C42DD21D6937D3960C 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll2015-06-12 16:44:29 1A628C1F5470F0AF21E37E425026F27A 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll2015-06-12 16:44:29 185490A6C3BEDAC5EF547314F68AB07B 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll2015-06-12 16:44:29 17B0852D8202A872C3E6D01B518B6A4E 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll2015-06-12 16:42:44 58788565442368B0615DDAF1D452B843 530432 ----a-w- C:\Windows\SysWOW64\comctl32.dll2015-06-12 16:41:37 DA27A4EA7B7C77FAFDB3F94D83E310C1 12625408 ----a-w- C:\Windows\SysWOW64\wmploc.DLL2015-06-12 16:41:37 A98E8F79C738CAF23C152DBCABD978FE 11411456 ----a-w- C:\Windows\SysWOW64\wmp.dll2015-06-12 16:41:37 605E9B2CFA3445ED7716D0B345EE21EC 8192 ----a-w- C:\Windows\SysWOW64\spwmp.dll2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\msdxm.ocx2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\dxmasf.dll2015-06-12 16:39:01 C1D7451054FEDC3F96F2903B6F84A4EE 173056 ----a-w- C:\Windows\SysWOW64\wuwebv.dll2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe2015-06-12 16:39:01 81AE5637F2D2DE4DAF67F540F5A076AA 30208 ----a-w- C:\Windows\SysWOW64\wups.dll2015-06-12 16:39:01 61302CE8DDB8513A4FF03CEE2A14471F 92672 ----a-w- C:\Windows\SysWOW64\wudriver.dll2015-06-12 16:39:01 4A99665068B907CCB0EE4A5D3F2584D7 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll2015-06-05 17:16:45 6C1EEE6FBCDD2B07398495CE7C9ECC0A 9888360 ----a-w- C:\Windows\SysWOW64\RtsPStorIcon.dll====== C:\Windows\SysWOW64\drivers =========== C:\Windows\Sysnative =====2015-06-15 12:48:26 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\Sysnative\RENDEAB.tmp2015-06-12 17:11:21 AA5319FA8602676B5D3A2B4A1355896D 1255424 ----a-w- C:\Windows\Sysnative\diagtrack.dll2015-06-12 17:11:20 6ECD6D92F43C2DC55099F892978D5BE7 728576 ----a-w- C:\Windows\Sysnative\kerberos.dll2015-06-12 17:11:19 8DCA1C70AF170C3FBCE47A4F49BFC887 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll2015-06-12 17:11:16 93A05407F8E53BC731C42AAD56163F80 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll2015-06-12 17:11:16 6FDF03A3B110C5264F52F979335AE301 1162752 ----a-w- C:\Windows\Sysnative\kernel32.dll2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe2015-06-12 17:11:15 4FFD08A01047EF6B58F6EB4E6D001A8D 879104 ----a-w- C:\Windows\Sysnative\advapi32.dll2015-06-12 17:11:11 53042708C242959B3924242FBBE297B1 1728960 ----a-w- C:\Windows\Sysnative\ntdll.dll2015-06-12 17:11:10 FF9BBFAE899091C1FF0D1A3F2C587911 243712 ----a-w- C:\Windows\Sysnative\wow64.dll2015-06-12 17:11:10 CCB352B939B77B38983DD878C547451F 503808 ----a-w- C:\Windows\Sysnative\srcore.dll2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\Sysnative\tracerpt.exe2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\Sysnative\conhost.exe2015-06-12 17:11:10 2313AF8D5A9CEB4A55400A01DD311A95 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe2015-06-12 17:11:09 996EE6571ADB880A60846DD02C8D5869 314880 ----a-w- C:\Windows\Sysnative\msv1_0.dll2015-06-12 17:11:09 37DFCC91E419952772E02F2B3BBB2E2B 342016 ----a-w- C:\Windows\Sysnative\schannel.dll2015-06-12 17:11:08 AD54856A16B635720B0BE5FAF44526FC 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll2015-06-12 17:11:08 A929B9ABA1083AF35ECE7BD63AF3E42F 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll2015-06-12 17:11:08 A5F57F4866C2DC7F8215058D7D56BD21 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\Sysnative\smss.exe2015-06-12 17:11:08 7C5E375F20F639607376351A8BCC0647 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll2015-06-12 17:11:08 66DF73B202105406602941778792FE3D 879104 ----a-w- C:\Windows\Sysnative\tdh.dll2015-06-12 17:11:08 4F90A7A0FCBC0ED18E573917860062FF 113664 ----a-w- C:\Windows\Sysnative\sechost.dll2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\Sysnative\logman.exe2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\Sysnative\lsass.exe2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\Sysnative\typeperf.exe2015-06-12 17:11:07 D68690450978D127E030FB14E9B2023B 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\Sysnative\relog.exe2015-06-12 17:11:07 6ACD3C75BE449F039E1A4E43424D5B6F 28160 ----a-w- C:\Windows\Sysnative\secur32.dll2015-06-12 17:11:07 5EC57AC6DC16CB8A058CA019AA2C188D 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll2015-06-12 17:11:07 5A17FF38EDE95B2313E428BF444126D7 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll2015-06-12 17:11:07 289D99B0879C6ED5C6D1B3A856CA6DA3 22016 ----a-w- C:\Windows\Sysnative\credssp.dll2015-06-12 17:11:07 20BD408AC3F8576997D6A47F48A1C5B2 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\Sysnative\diskperf.exe2015-06-12 17:11:07 13DE715D959DD502CFD52DC920408B33 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll2015-06-12 17:11:07 11D5815F0DC571CE3C72213B375860B1 50176 ----a-w- C:\Windows\Sysnative\srclient.dll2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe2015-06-12 17:11:03 AF557D115972A73964FC8F209300948A 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll2015-06-12 17:11:02 6ACFCC28E4D60B5A931D8749332A14E2 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll2015-06-12 17:11:01 8A4EB32C7C948F70EAC6F85063596A39 36864 ----a-w- C:\Windows\Sysnative\UtcResources.dll2015-06-12 17:11:01 837BBE4170D5A75F293BD6F294A8FE34 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll2015-06-12 17:11:01 6E882D7CA34073890107559B5A515A24 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll2015-06-12 16:44:29 FF84182188CA8F0DC28CFED06C9B7816 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl2015-06-12 16:44:29 D202078FBA3A77B85D39669EE4110DE2 389840 ----a-w- C:\Windows\Sysnative\iedkcs32.dll2015-06-12 16:44:29 CFA52E2FE8E623042A1EEF96EB1B9481 6026240 ----a-w- C:\Windows\Sysnative\jscript9.dll2015-06-12 16:44:29 AFF5C12099B87FA645F8867701729894 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll2015-06-12 16:44:29 AE5A2843B4A2E1E558B9EE13EF62CCE5 14404096 ----a-w- C:\Windows\Sysnative\ieframe.dll2015-06-12 16:44:29 ACD6FE6C82B93813F023FC01A51CB940 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll2015-06-12 16:44:29 A29BAFC1543F9D2234AFFFEA9BCE76C8 24917504 ----a-w- C:\Windows\Sysnative\mshtml.dll2015-06-12 16:44:29 9E2B8C0601E3D460F78F0233B509CE4F 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll2015-06-12 16:44:29 9DB8E01D5A546FAFCACE95489E351186 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll2015-06-12 16:44:29 8909A24DA8B5C426CF6595BA843B6CC5 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll2015-06-12 16:44:29 86FDFEA67833DB261EC01A777594EDCF 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll2015-06-12 16:44:29 83781DF625A4448B39410D7FA2BDC48D 816640 ----a-w- C:\Windows\Sysnative\jscript.dll2015-06-12 16:44:29 7F8F9AE03D1BA4354671E05F07A40F1A 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe2015-06-12 16:44:29 6E295C7364DAEB151CC0E98434B6AC92 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll2015-06-12 16:44:29 6ABFC5736EC920C4436F32111F5CBCEE 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll2015-06-12 16:44:29 5F8EE9311ECF078CD9426874FFAD660C 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe2015-06-12 16:44:29 4BD747AAF01C480901B3E777EC48826B 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll2015-06-12 16:44:29 4A5A84B457C72E79A64AE4036EC6BB0E 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll2015-06-12 16:44:29 417F80E4AFBA1AA9EBBD618F1C6D9165 2426880 ----a-w- C:\Windows\Sysnative\wininet.dll2015-06-12 16:44:29 3C3E159F284F51D55DB59C3D0B843979 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb2015-06-12 16:44:29 3854BFE1C0F14872C94501421CC40813 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll2015-06-12 16:44:29 36F3718E67F442F54AB4A39DCDD8FD19 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll2015-06-12 16:44:29 35622F5A652C4E16774234DCA0026E74 633856 ----a-w- C:\Windows\Sysnative\ieui.dll2015-06-12 16:44:29 33B5F1A727FACDEA7CDA0E35FFAADDCF 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll2015-06-12 16:44:29 2BC2D3A41BB755487FD55C09938F00BC 417792 ----a-w- C:\Windows\Sysnative\html.iec2015-06-12 16:44:29 16091938F6CDBCCCBA1CBE24600121BC 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe2015-06-12 16:44:29 083BCA14FCE290D682D8DAC9372CBF23 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll2015-06-12 16:44:29 06A8CE6C3AE6B7916F026B0EFDDCAAA5 199680 ----a-w- C:\Windows\Sysnative\msrating.dll2015-06-12 16:42:44 51F89CE2D0FEC66070354504E6C4C3E4 633856 ----a-w- C:\Windows\Sysnative\comctl32.dll2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\Sysnative\win32k.sys2015-06-12 16:41:37 9D80A82B0BB77AC3EF6A87FA0C534E20 14635008 ----a-w- C:\Windows\Sysnative\wmp.dll2015-06-12 16:41:37 834FD7C31EA16D59CC3B2DC60F2F2620 9728 ----a-w- C:\Windows\Sysnative\spwmp.dll2015-06-12 16:41:37 51ECEE70F33601310DDEF3EEE39550D3 12625920 ----a-w- C:\Windows\Sysnative\wmploc.DLL2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\msdxm.ocx2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\dxmasf.dll2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\Sysnative\wuauclt.exe2015-06-12 16:39:01 D7897C17117286A237A639209F53C51C 98304 ----a-w- C:\Windows\Sysnative\wudriver.dll2015-06-12 16:39:01 C8C3839305F2C4D9A4B33DE6AB83334E 191488 ----a-w- C:\Windows\Sysnative\wuwebv.dll2015-06-12 16:39:01 A76DAC2E9CBB9595D2F806CBFB5C0BC4 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll2015-06-12 16:39:01 803E9B4DF2E931FDB3210F342B89BE9F 36864 ----a-w- C:\Windows\Sysnative\wups.dll2015-06-12 16:39:01 4D9BE5567F9DDC54D41907C9A95F61BF 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll2015-06-12 16:39:01 478007800DAF83A33CECCD776E7FA734 37888 ----a-w- C:\Windows\Sysnative\wups2.dll2015-06-12 16:39:01 4152B8E73C7198DBFBB1FD8A5FFD41F9 3147776 ----a-w- C:\Windows\Sysnative\wucltux.dll2015-06-12 16:39:01 29F4030F3A449AAF68778C1C67603569 87040 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\Sysnative\wuapp.exe2015-06-12 16:39:01 14882A15F5CE7B8EADC8E7F54FD5B53B 2589184 ----a-w- C:\Windows\Sysnative\wuaueng.dll2015-06-05 17:19:52 92C704590FCEDDA971B7A77945DCCDA4 74272 ----a-w- C:\Windows\Sysnative\RtNicProp64.dll2015-06-05 11:54:52 E87D4371B24BC9E5BAE95AEA60FFD959 193536 ----a-w- C:\Windows\Sysnative\aepic.dll2015-06-05 11:54:52 CFF429F2234C1D1A5993E80F46C37CFB 1119232 ----a-w- C:\Windows\Sysnative\aeinv.dll2015-06-05 11:54:52 B23AB4C401E2DE02C47B7497D41E2318 757248 ----a-w- C:\Windows\Sysnative\invagent.dll2015-06-05 11:54:52 6F07FC190DBCB42C8A5319235F72F906 423424 ----a-w- C:\Windows\Sysnative\devinv.dll2015-06-05 11:54:52 6E2EB5A36C3CCD917F7FF9BED7C1390E 45568 ----a-w- C:\Windows\Sysnative\acmigration.dll2015-06-05 11:54:52 587BBA3B3959144334700EC48232712F 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll2015-06-05 11:54:52 52DEF4C743C2EABD6BD3EDC790A0E778 1021440 ----a-w- C:\Windows\Sysnative\appraiser.dll2015-06-05 11:54:52 2DCA988113A02EB9BCB98A5DC2D34E57 700416 ----a-w- C:\Windows\Sysnative\generaltel.dll====== C:\Windows\Sysnative\drivers =====2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\Sysnative\drivers\stream.sys2015-06-05 17:19:52 ED5873F7DFB2F96D37F13322211B6BDC 428136 ----a-w- C:\Windows\Sysnative\drivers\Rt64win7.sys2015-06-05 17:16:45 1F5E7AF59B390261A85F5BEDB1BB88B3 338536 ----a-w- C:\Windows\Sysnative\drivers\RtsPStor.sys====== C:\Windows\Tasks ======2015-06-01 17:22:32 5C28953A094C30D8BF5C8EE837DEDC0E 3554 ----a-w- C:\Windows\Sysnative\Tasks\GarminUpdaterTask2015-05-20 10:34:49 9A0A09DBD8ABAC972A9957AADDC5FD38 3186 ----a-w- C:\Windows\Sysnative\Tasks\HPCeeScheduleForDavid2015-05-20 10:34:49 30A479732E31C88094F53925C3EB0CA5 332 ----a-w- C:\Windows\Tasks\HPCeeScheduleForDavid.job====== C:\Windows\Temp ============= C:\Program Files ============ C:\PROGRA~2 =====2015-06-10 14:57:48 -------- d-----w- C:\PROGRA~2\GameforgeLive2015-06-01 17:22:35 -------- d-----w- C:\PROGRA~2\Garmin2015-05-19 12:38:11 -------- d-----w- C:\PROGRA~2\Zwift======= C: =====2015-06-12 17:28:02 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\asc_rdflag====== C:\Users\David\AppData\Roaming ======2015-06-15 13:32:58 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp2015-06-15 13:32:58 -------- d-----w- C:\Users\Default\AppData\Local\Temp2015-06-15 13:32:57 -------- d-----w- C:\Users\David\AppData\Local\Temp2015-06-13 18:07:18 -------- d-----w- C:\Users\David\AppData\Local\CycloAgent2015-06-11 17:22:44 -------- d-----w- C:\Users\David\AppData\Local\Popcorn-Time2015-06-11 17:20:34 -------- d-----w- C:\Users\David\AppData\Local\Popcorn Time2015-06-10 14:58:06 -------- d-----w- C:\Users\David\AppData\Local\Gameforge4d2015-06-02 19:02:09 -------- d-----w- C:\Users\David\AppData\Local\GWX2015-06-01 17:23:55 -------- d-----w- C:\Users\David\AppData\Local\Garmin_Ltd._or_its_subsid2015-06-01 17:23:53 -------- d-----w- C:\Users\David\AppData\Roaming\Garmin2015-06-01 17:22:58 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Garmin_Ltd._or_its_subsid2015-06-01 11:04:29 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\CrashDumps====== C:\Users\David ======2015-06-16 13:36:22 -------- d-----w- C:\ProgramData\ProductData2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-06-12 14:18:37 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Downloads\Silverlight_x64.exe2015-06-10 14:57:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live2015-06-01 17:22:58 -------- d-----w- C:\ProgramData\Garmin2015-06-01 17:22:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin2015-05-19 12:38:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zwift====== C: exe-files ==2015-06-15 12:46:32 FF589C55E0CB6A0A1BD9570217BB1A42 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\tnameserv.exe2015-06-15 12:46:32 FD8978875A992C876AF430B35DF9CFA7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\pack200.exe2015-06-15 12:46:32 F16868F20E4701142FAEF8C9FA847D27 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jabswitch.exe2015-06-15 12:46:32 EF66D96BC42BCE52686A7635AB11D8DD 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe2015-06-15 12:46:32 EED888394AC81A663F12C6EC43AB2838 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaw.exe2015-06-15 12:46:32 D3DA34876B7F6D06D26D29CA77BD25A2 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ktab.exe2015-06-15 12:46:32 CF683290B3369A1491A5B8B4D19F79B3 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jjs.exe2015-06-15 12:46:32 C57CA849D13177E1F43CFEF51374F1EE 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\unpack200.exe2015-06-15 12:46:32 B66ED84383EA6C6218CA47BC49C15615 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssvagent.exe2015-06-15 12:46:32 A1A1BC927541346D840BBB511F557848 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\policytool.exe2015-06-15 12:46:32 98903A3C01AA820E7FCC19A0A60126C0 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\klist.exe2015-06-15 12:46:32 88FFC43B0E3BB3E30F70CB7B08D499B4 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java-rmi.exe2015-06-15 12:46:32 5DF39BE82C777B7EDAD34E3A7A7EADB7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmid.exe2015-06-15 12:46:32 4EA6A4DD2EB584C4C2BF39A9A7D0D580 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\keytool.exe2015-06-15 12:46:32 4586CD8F1C929EF184098A22FE31A857 271968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaws.exe2015-06-15 12:46:32 3C0A1F0D13A8998E9A1825A853FF3B39 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\kinit.exe2015-06-15 12:46:32 2682BB5D60C30DCB5A2BC414D01D6764 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmiregistry.exe2015-06-15 12:46:32 1F29E31C6B9A487FF32006C4E223BA4F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\orbd.exe2015-06-15 12:46:32 1E2E159D0621A466CFA7CE06E4DA9CAE 190560 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java.exe2015-06-15 12:46:32 1CCD26E1E9FC582ABAA5D5FD1FA47A6B 76384 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2launcher.exe2015-06-15 12:46:32 134D4B0A753808F8F8645DCF3FA00173 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\servertool.exe2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe2015-06-13 18:06:05 4DD98CF2C593C29DEED54834818ED160 70167842 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.exe2015-06-13 17:54:06 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Install\{0CD806F6-8695-45CA-89CF-878B0B60C12D}\43.0.2357.124_chrome_installer.exe2015-06-13 17:54:05 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_chrome_installer.exe2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-06-12 17:40:51 D171A87BC9906EFB81FEBCB929FFF806 95017400 ----a-w- C:\Users\David\Documents\Downloads\TTS41302_0.exe2015-06-12 17:40:49 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Documents\Downloads\Silverlight_x64.exe2015-06-12 17:40:48 74E3ACC64B1AD1E52BE9A5760B9610BA 41182032 ----a-w- C:\Users\David\Documents\Downloads\GarminExpressInstaller.exe2015-06-12 17:40:47 664C1BC487D25D153235E0061208DE1B 48076576 ----a-w- C:\Users\David\Documents\Downloads\advanced-systemcare-setup.exe2015-06-12 17:37:29 28CA7D1BB9FBFCA2B529D885E61491D8 933664 ----a-w- C:\Users\David\AppData\Roaming\IObit\IObit Uninstaller\PPUninstallertemp.exe2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\System32\ntoskrnl.exe2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\System32\tracerpt.exe2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\System32\conhost.exe2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\System32\rstrui.exe2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\System32\smss.exe2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\System32\logman.exe2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\System32\lsass.exe2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\System32\typeperf.exe2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\System32\relog.exe2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\System32\diskperf.exe2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\System32\auditpol.exe2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Install\{1CE6E837-D028-4816-BFFC-F04383FB2D50}\43.0.2357.124_43.0.2357.81_chrome_updater.exe2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_43.0.2357.81_chrome_updater.exe2015-06-12 16:44:29 FF9877ABCA06D539264275321C97BB07 814288 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe2015-06-12 16:44:29 9F45DA24EBAE4180F70D03503580E8CA 815312 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe2015-06-12 16:44:29 8D4E75DEAA0FFBEFB5F366A4770D9644 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\System32\ie4uinit.exe2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe2015-06-12 16:44:29 52956B4DD1899CB09BB50FB939F6E99D 490496 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe2015-06-12 16:44:29 2B3CF8F7903266E2AA5C9D9850FAA8F6 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe2015-06-12 16:44:29 29874C10D7D0088CD8743EC8F5DABBE4 473600 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\System32\ieUnatt.exe2015-06-12 16:41:37 E39D7E7FCC5D4B77B8CBA52FEF8753DE 102912 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe2015-06-12 16:41:37 8D3316795ACCC0EC0DD6A844E046DA68 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe2015-06-12 16:41:37 6F139F39295000E6301C0D08F7493CC6 101888 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpconfig.exe2015-06-12 16:41:37 5F7B628B5F10531E8DE3E711ED73AAD7 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe2015-06-12 16:41:37 44854DDB738BF2C507FC2162245361D6 102400 ----a-w- C:\Program Files\Windows Media Player\wmpconfig.exe2015-06-12 16:41:37 3505E5A7664FD84AC8AE51FE3B545AE1 102400 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpshare.exe2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\System32\wuauclt.exe2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\System32\wuapp.exe2015-06-12 14:18:37 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Downloads\Silverlight_x64.exe=== C: other files ==2015-06-15 12:46:32 5DDC15149346900F16B38C65502BACA9 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\lib\deploy\ffjcext.zip2015-06-13 17:59:05 C27D6272D8716360A24BE1FE4B09EAE9 53755757 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.zip2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\System32\win32k.sys2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\System32\drivers\stream.sys==== Startup Registry Enabled ======================[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"[HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Run]"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden""Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver""Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe""Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]"mctadmin"="C:\Windows\System32\mctadmin.exe"[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]"mctadmin"="C:\Windows\System32\mctadmin.exe"[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe""StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun""NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe""HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe""HPOSD"="C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe""SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden""Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver""Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe""Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"==== Startup Registry Enabled x64 ======================[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"IgfxTray"="C:\Windows\system32\igfxtray.exe""HotKeysCmds"="C:\Windows\system32\hkcmd.exe""Persistence"="C:\Windows\system32\igfxpers.exe""HPWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden""SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe""SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"==== Startup Registry Disabled ======================[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"""Adobe Reader Speed Launcher"="\"C:\\Program Files (x86)\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\"""SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""==== Startup Folders ======================2013-07-20 13:42:34 1235 ----a-w- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk2011-05-18 09:27:37 2029 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snapfish PictureMover.lnk==== Task Scheduler Jobs ======================C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:.6C:\ProgramC:FilesC:x86\Google\Update\GoogleUpdate.exe []C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/07/2013 19:05]C:\Windows\tasks\HPCeeScheduleForDavid.job --a------ [undetermined Task]==== Other Scheduled Tasks ======================"C:\Windows\SysNative\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]"C:\Windows\SysNative\tasks\ASC8_PerformanceMonitor" [C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe]"C:\Windows\SysNative\tasks\ASC8_SkipUac_David" ["C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe" /SkipUac]"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]"C:\Windows\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe]"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]"C:\Windows\SysNative\tasks\HPCeeScheduleForDavid" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe]"C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe]"C:\Windows\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe]"C:\Windows\SysNative\tasks\ServicePlan" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"]"C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]"C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe]"C:\Windows\SysNative\tasks\Uninstaller_SkipUac_David" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe]"C:\Windows\SysNative\tasks\{5D9A4FC7-5D07-47C1-ABC6-A925C461B5B3}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{5DFE2574-4F57-40F0-882C-742CE9B3A706}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{7B0FEDE2-B25D-4EA2-814C-09A75A383359}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{960A14E6-D2B9-414D-98D6-2E961A70DE5B}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{FC6A3016-9CF0-49C8-9034-598422B18E97}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]==== Firefox Extensions Registry ======================[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]"{B64D9B05-48E1-4CEB-BF58-E0643994E900}"="C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff" [16/11/2014 15:17]==== Chromium Look ======================Google Chrome Version: 43.0.2357.124HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensionsnhfpefkeidlhbjljfdojcnngjbddgein - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx[17/11/2010 07:36]Google Slides - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoekGoogle Docs - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokakeGoogle Drive - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalfEmbed WMPlayer inline - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bamkbfdmckphehgiafpenehgebjgdlliHootsuite Hootlet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifnYouTube - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeoGoogle Search - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpfGoogle Calendar - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejjicmeblgpmajnghnpcppodonldlgfnGoogle Sheets - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejapGoogle Maps - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lneaknkopdijkpnocmklfnjbeapigfbhWebsite Logon - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nhfpefkeidlhbjljfdojcnngjbddgeinFacebook Notifications - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmameahlembdcigphohgiodcgjomcgeoGoogle Wallet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmiedaGmail - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia==== Chromium Startpages ======================C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Preferencesve_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.google.com:443":{"supports_spdy":true},"www.google.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.googleadservices.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":73298},"supports_spdy":true},"www.googleadservices.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":90895}},"www.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":48813},"supports_spdy":true},"www.googletagmanager.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true},"www.googletagmanager.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.googletagservices.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":196772}},"www.gstatic.com:443":{"supports_spdy":true},"www.youtube-nocookie.com:443":{"supports_spdy":true},"www.youtube-nocookie.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.youtube.com:443":{"supports_spdy":true},"www.youtube.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"yt3.ggpht.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true}},"supports_quic":{"address":"10.0.31.49","used_quic":true},"version":3}},"ntp":{"app_page_names":["Apps"]},"plugins":{"migrated_to_pepper_flash":true,"plugins_list":[],"removed_old_component_pepper_flash_settings":true},"profile":{"avatar_index":0,"content_settings":{"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"fullscreen":1}},"pref_version":1},"exit_type":"Crashed","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"david","per_host_zoom_levels":{}},"protection":{"macs":{}},"selectfile":{"last_directory":"C:\\Users\\David\\Downloads"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13078608218934858"},"translate_accepted_count":{"en":1},"translate_blocked_languages":["nl"],"translate_denied_count":{"en":0},"translate_last_denied_time":1434196906108.058,"translate_too_often_denied":true,"translate_whitelists":{}}
==== Set IE to Default ======================Old Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://www.google.com"New Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://www.google.com"==== All HKCU SearchScopes ======================HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"==== HijackThis Entries ======================O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dllO2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLLO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dllO2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dllO4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exeO4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunO4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exeO4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hiddenO4 - HKCU\..\Run: [Facebook Update] "C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserverO4 - HKCU\..\Run: [Polar FlowSync] C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exeO4 - HKCU\..\Run: [Mio Share] C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio\Mio Share.appref-msO4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /AutoO4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exeO4 - Global Startup: Snapfish PictureMover.lnk = C:\Program Files (x86)\PictureMover\Bin\PictureMover.exeO8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htmO9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exeO9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exeO10 - Unknown file in Winsock LSP: c:\program files (x86)\national instruments\shared\mdns responder\nimdnsnsp.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exeO23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exeO23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeO23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeO23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exeO23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exeO23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exeO23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exeO23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exeO23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeO23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exeO23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exeO23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exeO23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\Windows\SysWOW64\lkcitdl.exeO23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments Corporation - C:\Windows\SysWOW64\lkads.exeO23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\Windows\SysWOW64\lktsrv.exeO23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exeO23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exeO23 - Service: NI LXI Discovery Service (niLXIDiscovery) - National Instruments Corporation - C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exeO23 - Service: NI mDNS Responder Service (nimDNSResponder) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exeO23 - Service: NI Service Locator (NiSvcLoc) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exeO23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exeO23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exeO23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exeO23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)==== Empty IE Cache ======================C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfullyC:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully==== Empty FireFox Cache ======================No FireFox Profiles found==== Empty Chrome Cache ======================C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully==== Empty All Flash Cache ======================Flash Cache Emptied Successfully==== Empty All Java Cache ======================Java Cache cleared successfully==== C:\zoek_backup content ======================C:\zoek_backup (files=158 folders=53 98536581 bytes)==== Empty Temp Folders ======================C:\Users\David\AppData\Local\Temp will be emptied at rebootC:\Users\Default\AppData\Local\Temp emptied successfullyC:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfullyC:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfullyC:\Windows\Temp will be emptied at reboot==== After Reboot ========================== Empty Temp Folders ======================C:\Windows\Temp successfully emptiedC:\Users\David\AppData\Local\Temp successfully emptied==== Empty Recycle Bin ======================C:\$RECYCLE.BIN successfully emptied==== EOF on di 16/06/2015 at 15:52:42,12 ====================== -
Zoek.exe v5.0.0.0 Updated 04-May-2015Tool run by David on ma 15/06/2015 at 14:53:46,96.Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64Running in: Normal Mode Internet Access DetectedLaunched: C:\Users\David\Downloads\zoek (5).exe [scan all users] [Deep Scan] [Auto Clean]==== Older Logs ======================C:\zoek-results2015-01-17-185440.log 130748 bytes==== Empty Folders Check ======================C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfullyC:\Users\David\AppData\Roaming\hpqLog deleted successfullyC:\Users\David\AppData\Roaming\Mozilla deleted successfullyC:\Users\David\AppData\Local\EmieBrowserModeList deleted successfullyC:\Users\David\AppData\Local\EmieSiteList deleted successfullyC:\Users\David\AppData\Local\EmieUserList deleted successfully==== Deleting CLSID Registry Keys ======================HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B} deleted successfullyHKEY_CLASSES_ROOT\CLSID\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B} deleted successfullyHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B} deleted successfully==== Deleting CLSID Registry Values ======================HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{338A754C-B46E-4BF2-8AC8-23DE36862AD3} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411411168} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{2A836234-186C-41A0-9863-40BECDEDED9F} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110611491169} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110611331113} deleted successfullyHKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully==== Running Processes ======================C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Windows\SysWOW64\ezSharedSvcHost.exeC:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeC:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exeC:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exeC:\Windows\SysWOW64\lkcitdl.exeC:\Windows\SysWOW64\lkads.exeC:\Windows\SysWOW64\lktsrv.exeC:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exeC:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exeC:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exeC:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exeC:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exeC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeC:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exeC:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exeC:\Program Files (x86)\HP SimplePass 2011\TouchControl.exeC:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exeC:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exeC:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exeC:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exeC:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exeC:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exeC:\Program Files (x86)\PictureMover\Bin\PictureMover.exeC:\Program Files (x86)\OpenOffice.org 3\program\soffice.exeC:\Program Files (x86)\OpenOffice.org 3\program\soffice.binC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exeC:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exeC:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exeC:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exeC:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exeC:\Users\David\Downloads\zoek (5).exeC:\Windows\SysWOW64\cmd.exeC:\Windows\SysWOW64\cmd.exeC:\Windows\SysWOW64\cmd.exe==== Deleting Services ========================== Deleting Files \ Folders ======================C:\PROGRA~3\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} not foundC:\PROGRA~2\Doctor PC deletedC:\Users\David\AppData\Roaming\ProductData deletedC:\PROGRA~3\ProductData deletedC:\PROGRA~3\Package Cache deletedC:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony deletedC:\Windows\SysNative\roboot64.exe deletedC:\Windows\SysNative\config\systemprofile\Searches deleted==== System Specs ======================Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601)Memory (RAM): 4044 MBCPU Info: Intel® Core i7-2630QM CPU @ 2.00GHzCPU Speed: 1969,8 MHzSound Card: Luidsprekers en koptelefoons (I |Communicatie koptelefoons (IDT |Display Adapters: Mobile Intel® HD Graphics | Mobile Intel® HD Graphics | Radeon HD 6490M | Radeon HD 6490M | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display DriverMonitors: 1x; Algemeen PnP-beeldscherm |Screen Resolution: 1600 X 900 - 32 bitNetwork: Network PresentNetwork Adapters: Broadcom 4313 (802.11b/g/n) | Realtek PCIe GBE Family ControllerCD / DVD Drives: 1x (E: | ) E: hp CDDVDW TS-L633RPorts: COM Ports NOT Present. LPT Port NOT Present.Mouse: 5 Button Wheel Mouse PresentHard Disks: C: 446,5GB | D: 19,0GBHard Disks - Free: C: 359,4GB | D: 2,3GBManufacturer *: Hewlett-PackardBIOS Info: AT/AT COMPATIBLE | 10/05/11 | HPQOEM - 1Time Zone: Romance (standaardtijd)Motherboard *: Hewlett-Packard 1659Country: Belgi‰Language: NLB==== System Specs (Software) ======================Anti-Spyware: Windows Defender disabled (Outdated)Default Browser: Google Chrome 43.0.2357.124Internet Explorer Version: 11.0.9600.17843Google Chrome version: 43.0.2357.124Adobe Reader version: 9.5.5.316Sun Java version: 1.8.0_45 (32-bit)Sun Java version: 1.8.0_45 (64-bit)Shockwave Player version: 11.5.8r612==== Files Recently Created / Modified ============================ C:\Windows ========== C:\Users\David\AppData\Local\Temp ========== Java Cache =========== C:\Windows\SysWOW64 =====2015-06-12 17:11:18 2CA16814DA3C5B2D8C7E70DC47A45ED1 551424 ----a-w- C:\Windows\SysWOW64\kerberos.dll2015-06-12 17:11:15 9E68E1BDEBD85FC8803707370BE0FC6E 641536 ----a-w- C:\Windows\SysWOW64\advapi32.dll2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe2015-06-12 17:11:09 EA141596564AE0C670EDD0F2636EC29C 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll2015-06-12 17:11:09 BBABC6702529CFADAC0EC2B28168A288 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll2015-06-12 17:11:09 8C7635292CFF4901F058269454A1D64E 1310744 ----a-w- C:\Windows\SysWOW64\ntdll.dll2015-06-12 17:11:08 A9E8F961F7FE1EDEEF8F46EEB800F2D8 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll2015-06-12 17:11:08 9A50B2567918BF7DDD600ECE5DB5ED76 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe2015-06-12 17:11:08 65A5E27C2217D606E212B6088CCD6104 92160 ----a-w- C:\Windows\SysWOW64\sechost.dll2015-06-12 17:11:08 5643A88C6DA8AAEC9CE2845431942650 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll2015-06-12 17:11:08 4238391DE3E3FDCD2C731C1E4E0F402C 635392 ----a-w- C:\Windows\SysWOW64\tdh.dll2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe2015-06-12 17:11:07 FCA6EFFEE6D7D42E794F0E538297026C 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe2015-06-12 17:11:07 D877133532CE090502B1166B360E9516 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll2015-06-12 17:11:07 7A9F94E0F53C8F6E09405351AC104A3C 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe2015-06-12 17:11:07 558227F567E977D71B9182013EF03E9C 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe2015-06-12 17:11:07 2D23A10FBFA09DC1B61799128BBA91A2 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll2015-06-12 17:11:06 F72A9953199EF5807D595AE3694B5D01 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll2015-06-12 17:11:05 F81920ADB15012CF4E9FF8238C85686A 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll2015-06-12 17:11:05 6C730482615C97B923B88C648FF554A3 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe2015-06-12 17:11:03 52C869A640B8169D7C8460FB1646ABF5 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll2015-06-12 17:11:02 2E65BF3D85BB2C831669FBCBDE6C9879 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll2015-06-12 17:11:01 7E7933E63BBE2BE71CC908EF140458EF 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll2015-06-12 17:11:01 619D5101114C71E1A4A585C5E68301B7 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll2015-06-12 16:44:29 FB5C9234E4BF6BDAF4A954763A4582BA 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll2015-06-12 16:44:29 F26680AF396F89F7ABFDA1D1D6B62011 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll2015-06-12 16:44:29 EF853EA2A6A7BD891CCF31B0C2915352 341504 ----a-w- C:\Windows\SysWOW64\html.iec2015-06-12 16:44:29 E4EB138060BAE0DBAB1A3B71A3141FE7 1950720 ----a-w- C:\Windows\SysWOW64\wininet.dll2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe2015-06-12 16:44:29 DB254D50B4527C2821C537E0587B44E8 12829696 ----a-w- C:\Windows\SysWOW64\ieframe.dll2015-06-12 16:44:29 C93AE4D14AEF5169791B35D97AE7C9FC 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll2015-06-12 16:44:29 C27C8CACEBC712BE2AD791715E9734EC 664064 ----a-w- C:\Windows\SysWOW64\jscript.dll2015-06-12 16:44:29 B6D8148C1C697A7BF04EE0FE82408B6A 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll2015-06-12 16:44:29 9F6066005D8B8620598085C7499E9B70 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll2015-06-12 16:44:29 975421AC32F9F6E27A58F75DAB4B5871 19607040 ----a-w- C:\Windows\SysWOW64\mshtml.dll2015-06-12 16:44:29 96837E5864777688477AF6DE2332C06D 503808 ----a-w- C:\Windows\SysWOW64\vbscript.dll2015-06-12 16:44:29 927E38A35E4DFC4E294BD130BAA6F759 2278912 ----a-w- C:\Windows\SysWOW64\iertutil.dll2015-06-12 16:44:29 8C8B8C78C0CCD5D36ABCB115B0B581E1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb2015-06-12 16:44:29 8C3A03295F56D1FFB51D9D05DA42B12D 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll2015-06-12 16:44:29 85E21CCF38166E0D6DE2E42D9D3823BD 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll2015-06-12 16:44:29 81C1182A9EE7AC4D21187811DE66A7D0 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll2015-06-12 16:44:29 7DBCBB1647B7CD71E2039C1B50A12717 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll2015-06-12 16:44:29 7C9F8DB66A56306C5BBE97F9FC0F01EF 342736 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll2015-06-12 16:44:29 6B7210618D7E2CE0404ECF748701253A 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll2015-06-12 16:44:29 5C06EE62F06E990E9521EA80B8D4D4B8 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll2015-06-12 16:44:29 53E9614ADFA6A40A452BA014CEF6F261 1309696 ----a-w- C:\Windows\SysWOW64\urlmon.dll2015-06-12 16:44:29 4ABEEF30EA5B9F4718312DCB60B6C9BC 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl2015-06-12 16:44:29 3FD7E6DB5D81FE400DB4D81D278596E6 4305920 ----a-w- C:\Windows\SysWOW64\jscript9.dll2015-06-12 16:44:29 2DED8A99E45053C42DD21D6937D3960C 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll2015-06-12 16:44:29 1A628C1F5470F0AF21E37E425026F27A 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll2015-06-12 16:44:29 185490A6C3BEDAC5EF547314F68AB07B 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll2015-06-12 16:44:29 17B0852D8202A872C3E6D01B518B6A4E 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll2015-06-12 16:42:44 58788565442368B0615DDAF1D452B843 530432 ----a-w- C:\Windows\SysWOW64\comctl32.dll2015-06-12 16:41:37 DA27A4EA7B7C77FAFDB3F94D83E310C1 12625408 ----a-w- C:\Windows\SysWOW64\wmploc.DLL2015-06-12 16:41:37 A98E8F79C738CAF23C152DBCABD978FE 11411456 ----a-w- C:\Windows\SysWOW64\wmp.dll2015-06-12 16:41:37 605E9B2CFA3445ED7716D0B345EE21EC 8192 ----a-w- C:\Windows\SysWOW64\spwmp.dll2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\msdxm.ocx2015-06-12 16:41:37 2401379E0610D15FAB78A4B1646F5B8D 4096 ----a-w- C:\Windows\SysWOW64\dxmasf.dll2015-06-12 16:39:01 C1D7451054FEDC3F96F2903B6F84A4EE 173056 ----a-w- C:\Windows\SysWOW64\wuwebv.dll2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe2015-06-12 16:39:01 81AE5637F2D2DE4DAF67F540F5A076AA 30208 ----a-w- C:\Windows\SysWOW64\wups.dll2015-06-12 16:39:01 61302CE8DDB8513A4FF03CEE2A14471F 92672 ----a-w- C:\Windows\SysWOW64\wudriver.dll2015-06-12 16:39:01 4A99665068B907CCB0EE4A5D3F2584D7 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll2015-06-05 17:16:45 6C1EEE6FBCDD2B07398495CE7C9ECC0A 9888360 ----a-w- C:\Windows\SysWOW64\RtsPStorIcon.dll====== C:\Windows\SysWOW64\drivers =========== C:\Windows\Sysnative =====2015-06-15 12:48:26 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\Sysnative\RENDEAB.tmp2015-06-12 17:11:21 AA5319FA8602676B5D3A2B4A1355896D 1255424 ----a-w- C:\Windows\Sysnative\diagtrack.dll2015-06-12 17:11:20 6ECD6D92F43C2DC55099F892978D5BE7 728576 ----a-w- C:\Windows\Sysnative\kerberos.dll2015-06-12 17:11:19 8DCA1C70AF170C3FBCE47A4F49BFC887 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll2015-06-12 17:11:16 93A05407F8E53BC731C42AAD56163F80 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll2015-06-12 17:11:16 6FDF03A3B110C5264F52F979335AE301 1162752 ----a-w- C:\Windows\Sysnative\kernel32.dll2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe2015-06-12 17:11:15 4FFD08A01047EF6B58F6EB4E6D001A8D 879104 ----a-w- C:\Windows\Sysnative\advapi32.dll2015-06-12 17:11:11 53042708C242959B3924242FBBE297B1 1728960 ----a-w- C:\Windows\Sysnative\ntdll.dll2015-06-12 17:11:10 FF9BBFAE899091C1FF0D1A3F2C587911 243712 ----a-w- C:\Windows\Sysnative\wow64.dll2015-06-12 17:11:10 CCB352B939B77B38983DD878C547451F 503808 ----a-w- C:\Windows\Sysnative\srcore.dll2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\Sysnative\tracerpt.exe2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\Sysnative\conhost.exe2015-06-12 17:11:10 2313AF8D5A9CEB4A55400A01DD311A95 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe2015-06-12 17:11:09 996EE6571ADB880A60846DD02C8D5869 314880 ----a-w- C:\Windows\Sysnative\msv1_0.dll2015-06-12 17:11:09 37DFCC91E419952772E02F2B3BBB2E2B 342016 ----a-w- C:\Windows\Sysnative\schannel.dll2015-06-12 17:11:08 AD54856A16B635720B0BE5FAF44526FC 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll2015-06-12 17:11:08 A929B9ABA1083AF35ECE7BD63AF3E42F 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll2015-06-12 17:11:08 A5F57F4866C2DC7F8215058D7D56BD21 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\Sysnative\smss.exe2015-06-12 17:11:08 7C5E375F20F639607376351A8BCC0647 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll2015-06-12 17:11:08 66DF73B202105406602941778792FE3D 879104 ----a-w- C:\Windows\Sysnative\tdh.dll2015-06-12 17:11:08 4F90A7A0FCBC0ED18E573917860062FF 113664 ----a-w- C:\Windows\Sysnative\sechost.dll2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\Sysnative\logman.exe2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\Sysnative\lsass.exe2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\Sysnative\typeperf.exe2015-06-12 17:11:07 D68690450978D127E030FB14E9B2023B 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\Sysnative\relog.exe2015-06-12 17:11:07 6ACD3C75BE449F039E1A4E43424D5B6F 28160 ----a-w- C:\Windows\Sysnative\secur32.dll2015-06-12 17:11:07 5EC57AC6DC16CB8A058CA019AA2C188D 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll2015-06-12 17:11:07 5A17FF38EDE95B2313E428BF444126D7 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll2015-06-12 17:11:07 289D99B0879C6ED5C6D1B3A856CA6DA3 22016 ----a-w- C:\Windows\Sysnative\credssp.dll2015-06-12 17:11:07 20BD408AC3F8576997D6A47F48A1C5B2 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\Sysnative\diskperf.exe2015-06-12 17:11:07 13DE715D959DD502CFD52DC920408B33 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll2015-06-12 17:11:07 11D5815F0DC571CE3C72213B375860B1 50176 ----a-w- C:\Windows\Sysnative\srclient.dll2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe2015-06-12 17:11:03 AF557D115972A73964FC8F209300948A 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll2015-06-12 17:11:02 6ACFCC28E4D60B5A931D8749332A14E2 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll2015-06-12 17:11:01 8A4EB32C7C948F70EAC6F85063596A39 36864 ----a-w- C:\Windows\Sysnative\UtcResources.dll2015-06-12 17:11:01 837BBE4170D5A75F293BD6F294A8FE34 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll2015-06-12 17:11:01 6E882D7CA34073890107559B5A515A24 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll2015-06-12 16:44:29 FF84182188CA8F0DC28CFED06C9B7816 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl2015-06-12 16:44:29 D202078FBA3A77B85D39669EE4110DE2 389840 ----a-w- C:\Windows\Sysnative\iedkcs32.dll2015-06-12 16:44:29 CFA52E2FE8E623042A1EEF96EB1B9481 6026240 ----a-w- C:\Windows\Sysnative\jscript9.dll2015-06-12 16:44:29 AFF5C12099B87FA645F8867701729894 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll2015-06-12 16:44:29 AE5A2843B4A2E1E558B9EE13EF62CCE5 14404096 ----a-w- C:\Windows\Sysnative\ieframe.dll2015-06-12 16:44:29 ACD6FE6C82B93813F023FC01A51CB940 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll2015-06-12 16:44:29 A29BAFC1543F9D2234AFFFEA9BCE76C8 24917504 ----a-w- C:\Windows\Sysnative\mshtml.dll2015-06-12 16:44:29 9E2B8C0601E3D460F78F0233B509CE4F 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll2015-06-12 16:44:29 9DB8E01D5A546FAFCACE95489E351186 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll2015-06-12 16:44:29 8909A24DA8B5C426CF6595BA843B6CC5 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll2015-06-12 16:44:29 86FDFEA67833DB261EC01A777594EDCF 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll2015-06-12 16:44:29 83781DF625A4448B39410D7FA2BDC48D 816640 ----a-w- C:\Windows\Sysnative\jscript.dll2015-06-12 16:44:29 7F8F9AE03D1BA4354671E05F07A40F1A 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe2015-06-12 16:44:29 6E295C7364DAEB151CC0E98434B6AC92 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll2015-06-12 16:44:29 6ABFC5736EC920C4436F32111F5CBCEE 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll2015-06-12 16:44:29 5F8EE9311ECF078CD9426874FFAD660C 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe2015-06-12 16:44:29 4BD747AAF01C480901B3E777EC48826B 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll2015-06-12 16:44:29 4A5A84B457C72E79A64AE4036EC6BB0E 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll2015-06-12 16:44:29 417F80E4AFBA1AA9EBBD618F1C6D9165 2426880 ----a-w- C:\Windows\Sysnative\wininet.dll2015-06-12 16:44:29 3C3E159F284F51D55DB59C3D0B843979 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb2015-06-12 16:44:29 3854BFE1C0F14872C94501421CC40813 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll2015-06-12 16:44:29 36F3718E67F442F54AB4A39DCDD8FD19 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll2015-06-12 16:44:29 35622F5A652C4E16774234DCA0026E74 633856 ----a-w- C:\Windows\Sysnative\ieui.dll2015-06-12 16:44:29 33B5F1A727FACDEA7CDA0E35FFAADDCF 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll2015-06-12 16:44:29 2BC2D3A41BB755487FD55C09938F00BC 417792 ----a-w- C:\Windows\Sysnative\html.iec2015-06-12 16:44:29 16091938F6CDBCCCBA1CBE24600121BC 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe2015-06-12 16:44:29 083BCA14FCE290D682D8DAC9372CBF23 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll2015-06-12 16:44:29 06A8CE6C3AE6B7916F026B0EFDDCAAA5 199680 ----a-w- C:\Windows\Sysnative\msrating.dll2015-06-12 16:42:44 51F89CE2D0FEC66070354504E6C4C3E4 633856 ----a-w- C:\Windows\Sysnative\comctl32.dll2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\Sysnative\win32k.sys2015-06-12 16:41:37 9D80A82B0BB77AC3EF6A87FA0C534E20 14635008 ----a-w- C:\Windows\Sysnative\wmp.dll2015-06-12 16:41:37 834FD7C31EA16D59CC3B2DC60F2F2620 9728 ----a-w- C:\Windows\Sysnative\spwmp.dll2015-06-12 16:41:37 51ECEE70F33601310DDEF3EEE39550D3 12625920 ----a-w- C:\Windows\Sysnative\wmploc.DLL2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\msdxm.ocx2015-06-12 16:41:37 1A8C5D4BE449E4A9D8667A341E535E22 5120 ----a-w- C:\Windows\Sysnative\dxmasf.dll2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\Sysnative\wuauclt.exe2015-06-12 16:39:01 D7897C17117286A237A639209F53C51C 98304 ----a-w- C:\Windows\Sysnative\wudriver.dll2015-06-12 16:39:01 C8C3839305F2C4D9A4B33DE6AB83334E 191488 ----a-w- C:\Windows\Sysnative\wuwebv.dll2015-06-12 16:39:01 A76DAC2E9CBB9595D2F806CBFB5C0BC4 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll2015-06-12 16:39:01 803E9B4DF2E931FDB3210F342B89BE9F 36864 ----a-w- C:\Windows\Sysnative\wups.dll2015-06-12 16:39:01 4D9BE5567F9DDC54D41907C9A95F61BF 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll2015-06-12 16:39:01 478007800DAF83A33CECCD776E7FA734 37888 ----a-w- C:\Windows\Sysnative\wups2.dll2015-06-12 16:39:01 4152B8E73C7198DBFBB1FD8A5FFD41F9 3147776 ----a-w- C:\Windows\Sysnative\wucltux.dll2015-06-12 16:39:01 29F4030F3A449AAF68778C1C67603569 87040 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\Sysnative\wuapp.exe2015-06-12 16:39:01 14882A15F5CE7B8EADC8E7F54FD5B53B 2589184 ----a-w- C:\Windows\Sysnative\wuaueng.dll2015-06-05 17:19:52 92C704590FCEDDA971B7A77945DCCDA4 74272 ----a-w- C:\Windows\Sysnative\RtNicProp64.dll2015-06-05 11:54:52 E87D4371B24BC9E5BAE95AEA60FFD959 193536 ----a-w- C:\Windows\Sysnative\aepic.dll2015-06-05 11:54:52 CFF429F2234C1D1A5993E80F46C37CFB 1119232 ----a-w- C:\Windows\Sysnative\aeinv.dll2015-06-05 11:54:52 B23AB4C401E2DE02C47B7497D41E2318 757248 ----a-w- C:\Windows\Sysnative\invagent.dll2015-06-05 11:54:52 6F07FC190DBCB42C8A5319235F72F906 423424 ----a-w- C:\Windows\Sysnative\devinv.dll2015-06-05 11:54:52 6E2EB5A36C3CCD917F7FF9BED7C1390E 45568 ----a-w- C:\Windows\Sysnative\acmigration.dll2015-06-05 11:54:52 587BBA3B3959144334700EC48232712F 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll2015-06-05 11:54:52 52DEF4C743C2EABD6BD3EDC790A0E778 1021440 ----a-w- C:\Windows\Sysnative\appraiser.dll2015-06-05 11:54:52 2DCA988113A02EB9BCB98A5DC2D34E57 700416 ----a-w- C:\Windows\Sysnative\generaltel.dll====== C:\Windows\Sysnative\drivers =====2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\Sysnative\drivers\stream.sys2015-06-05 17:19:52 ED5873F7DFB2F96D37F13322211B6BDC 428136 ----a-w- C:\Windows\Sysnative\drivers\Rt64win7.sys2015-06-05 17:16:45 1F5E7AF59B390261A85F5BEDB1BB88B3 338536 ----a-w- C:\Windows\Sysnative\drivers\RtsPStor.sys====== C:\Windows\Tasks ======2015-06-01 17:22:32 5C28953A094C30D8BF5C8EE837DEDC0E 3554 ----a-w- C:\Windows\Sysnative\Tasks\GarminUpdaterTask2015-05-20 10:34:49 D3965FCBB9FF3C7104FF9F101D6E1EE1 3186 ----a-w- C:\Windows\Sysnative\Tasks\HPCeeScheduleForDavid2015-05-20 10:34:49 7A13713DB45D33837E454B0CDEFD3EF5 332 ----a-w- C:\Windows\Tasks\HPCeeScheduleForDavid.job====== C:\Windows\Temp ============= C:\Program Files ============ C:\PROGRA~2 =====2015-06-10 14:57:48 -------- d-----w- C:\PROGRA~2\GameforgeLive2015-06-01 17:22:35 -------- d-----w- C:\PROGRA~2\Garmin2015-05-19 12:38:11 -------- d-----w- C:\PROGRA~2\Zwift======= C: =====2015-06-12 17:28:02 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\asc_rdflag====== C:\Users\David\AppData\Roaming ======2015-06-15 13:05:07 -------- d-sh--w- C:\Users\David\AppData\Local\EmieUserList2015-06-15 13:05:07 -------- d-sh--w- C:\Users\David\AppData\Local\EmieSiteList2015-06-15 13:05:07 -------- d-sh--w- C:\Users\David\AppData\Local\EmieBrowserModeList2015-06-13 18:07:18 -------- d-----w- C:\Users\David\AppData\Local\CycloAgent2015-06-11 17:22:44 -------- d-----w- C:\Users\David\AppData\Local\Popcorn-Time2015-06-11 17:20:34 -------- d-----w- C:\Users\David\AppData\Local\Popcorn Time2015-06-10 14:58:06 -------- d-----w- C:\Users\David\AppData\Local\Gameforge4d2015-06-02 19:02:09 -------- d-----w- C:\Users\David\AppData\Local\GWX2015-06-01 17:23:55 -------- d-----w- C:\Users\David\AppData\Local\Garmin_Ltd._or_its_subsid2015-06-01 17:23:53 -------- d-----w- C:\Users\David\AppData\Roaming\Garmin2015-06-01 17:22:58 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Garmin_Ltd._or_its_subsid2015-06-01 11:04:29 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\CrashDumps====== C:\Users\David ======2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-06-12 14:18:37 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Downloads\Silverlight_x64.exe2015-06-10 14:57:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live2015-06-01 17:22:58 -------- d-----w- C:\ProgramData\Garmin2015-06-01 17:22:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin2015-06-01 17:18:44 74E3ACC64B1AD1E52BE9A5760B9610BA 41182032 ----a-w- C:\Users\David\Downloads\GarminExpressInstaller.exe2015-05-19 12:38:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zwift====== C: exe-files ==2015-06-15 12:46:32 FF589C55E0CB6A0A1BD9570217BB1A42 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\tnameserv.exe2015-06-15 12:46:32 FD8978875A992C876AF430B35DF9CFA7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\pack200.exe2015-06-15 12:46:32 F16868F20E4701142FAEF8C9FA847D27 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jabswitch.exe2015-06-15 12:46:32 EF66D96BC42BCE52686A7635AB11D8DD 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe2015-06-15 12:46:32 EED888394AC81A663F12C6EC43AB2838 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaw.exe2015-06-15 12:46:32 D3DA34876B7F6D06D26D29CA77BD25A2 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ktab.exe2015-06-15 12:46:32 CF683290B3369A1491A5B8B4D19F79B3 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jjs.exe2015-06-15 12:46:32 C57CA849D13177E1F43CFEF51374F1EE 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\unpack200.exe2015-06-15 12:46:32 B66ED84383EA6C6218CA47BC49C15615 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssvagent.exe2015-06-15 12:46:32 A1A1BC927541346D840BBB511F557848 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\policytool.exe2015-06-15 12:46:32 98903A3C01AA820E7FCC19A0A60126C0 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\klist.exe2015-06-15 12:46:32 88FFC43B0E3BB3E30F70CB7B08D499B4 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java-rmi.exe2015-06-15 12:46:32 5DF39BE82C777B7EDAD34E3A7A7EADB7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmid.exe2015-06-15 12:46:32 4EA6A4DD2EB584C4C2BF39A9A7D0D580 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\keytool.exe2015-06-15 12:46:32 4586CD8F1C929EF184098A22FE31A857 271968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\javaws.exe2015-06-15 12:46:32 3C0A1F0D13A8998E9A1825A853FF3B39 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\kinit.exe2015-06-15 12:46:32 2682BB5D60C30DCB5A2BC414D01D6764 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\rmiregistry.exe2015-06-15 12:46:32 1F29E31C6B9A487FF32006C4E223BA4F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\orbd.exe2015-06-15 12:46:32 1E2E159D0621A466CFA7CE06E4DA9CAE 190560 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\java.exe2015-06-15 12:46:32 1CCD26E1E9FC582ABAA5D5FD1FA47A6B 76384 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2launcher.exe2015-06-15 12:46:32 134D4B0A753808F8F8645DCF3FA00173 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\bin\servertool.exe2015-06-15 12:45:15 EE001F0D8A06518EB2A133741F265BEC 562272 ----a-w- C:\Users\David\Downloads\chromeinstall-8u45.exe2015-06-13 18:06:05 4DD98CF2C593C29DEED54834818ED160 70167842 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.exe2015-06-13 17:54:06 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Install\{0CD806F6-8695-45CA-89CF-878B0B60C12D}\43.0.2357.124_chrome_installer.exe2015-06-13 17:54:05 E9E39FDA16E98FFB4722A24D572E0250 42089552 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_chrome_installer.exe2015-06-13 11:58:56 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\David\Downloads\RSITx64.exe2015-06-12 17:40:51 D171A87BC9906EFB81FEBCB929FFF806 95017400 ----a-w- C:\Users\David\Documents\Downloads\TTS41302_0.exe2015-06-12 17:40:49 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Documents\Downloads\Silverlight_x64.exe2015-06-12 17:40:48 74E3ACC64B1AD1E52BE9A5760B9610BA 41182032 ----a-w- C:\Users\David\Documents\Downloads\GarminExpressInstaller.exe2015-06-12 17:40:47 664C1BC487D25D153235E0061208DE1B 48076576 ----a-w- C:\Users\David\Documents\Downloads\advanced-systemcare-setup.exe2015-06-12 17:37:29 28CA7D1BB9FBFCA2B529D885E61491D8 933664 ----a-w- C:\Users\David\AppData\Roaming\IObit\IObit Uninstaller\PPUninstallertemp.exe2015-06-12 17:11:15 9E2A2028228645DD57EF45A02CAC0CCE 5569984 ----a-w- C:\Windows\System32\ntoskrnl.exe2015-06-12 17:11:15 641A14E6AC492ED45BC68815E2E2F566 3989440 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe2015-06-12 17:11:10 6703266C1E56157B5965F9AC868A20AC 404992 ----a-w- C:\Windows\System32\tracerpt.exe2015-06-12 17:11:10 583FFF12D2F0D6E1A8746462C433895F 3934144 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe2015-06-12 17:11:10 48C30C54194142910FB6B86D308220ED 338432 ----a-w- C:\Windows\System32\conhost.exe2015-06-12 17:11:10 3C1BE79C3CE6EB378108B11D94CA1072 364544 ----a-w- C:\Windows\SysWOW64\tracerpt.exe2015-06-12 17:11:10 16154A6682B1552DEAB953BFA4B8E955 296960 ----a-w- C:\Windows\System32\rstrui.exe2015-06-12 17:11:08 9BBEA639884C0338DD78654277BD188A 112640 ----a-w- C:\Windows\System32\smss.exe2015-06-12 17:11:08 6C06D2B1CF88AB83F1CFB24928F63107 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe2015-06-12 17:11:08 3B5DA649BF7B7D07510C06DE0AEEB4EB 82944 ----a-w- C:\Windows\SysWOW64\logman.exe2015-06-12 17:11:08 210E7D1EA34369194BE09493784E27BE 104448 ----a-w- C:\Windows\System32\logman.exe2015-06-12 17:11:08 17A6A9AAD04CCC6EE53290585BFC43AF 31232 ----a-w- C:\Windows\System32\lsass.exe2015-06-12 17:11:07 FB224B0A63B8F58E91FE8A314AD295AD 17408 ----a-w- C:\Windows\SysWOW64\diskperf.exe2015-06-12 17:11:07 F85FA29340A536C8E0A16151B9B03923 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe2015-06-12 17:11:07 E20BF3FA89DE67B00ED713B5254C0BF0 47104 ----a-w- C:\Windows\System32\typeperf.exe2015-06-12 17:11:07 858F04B3C39239972959E9EE97CACAE4 43008 ----a-w- C:\Windows\System32\relog.exe2015-06-12 17:11:07 629AD3FDA168D82D459164044A29F9BB 40448 ----a-w- C:\Windows\SysWOW64\typeperf.exe2015-06-12 17:11:07 3E6731BF36A7D6C62D09671B427B6B67 37888 ----a-w- C:\Windows\SysWOW64\relog.exe2015-06-12 17:11:07 1B93381366141875D8EE7EC1085236B9 19456 ----a-w- C:\Windows\System32\diskperf.exe2015-06-12 17:11:07 03BA5D20751137F3A705B389C52DB8D6 64000 ----a-w- C:\Windows\System32\auditpol.exe2015-06-12 17:11:03 EEA17E843EE2EE50D623BEACF50BD815 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe2015-06-12 17:11:03 EC6E5AE2ECFE7A335B370865A1158EF8 2048 ----a-w- C:\Windows\SysWOW64\user.exe2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Install\{1CE6E837-D028-4816-BFFC-F04383FB2D50}\43.0.2357.124_43.0.2357.81_chrome_updater.exe2015-06-12 16:50:41 74D7DFE507EA48737061EA8E990157E8 2212944 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\43.0.2357.124\43.0.2357.124_43.0.2357.81_chrome_updater.exe2015-06-12 16:44:29 FF9877ABCA06D539264275321C97BB07 814288 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe2015-06-12 16:44:29 E21AE910DF0C5CB7D46D8FA17A4567DE 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe2015-06-12 16:44:29 9F45DA24EBAE4180F70D03503580E8CA 815312 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe2015-06-12 16:44:29 8D4E75DEAA0FFBEFB5F366A4770D9644 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe2015-06-12 16:44:29 73509D13542A90E260F45D1D6D4100A8 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe2015-06-12 16:44:29 70D24021ED327CE7FFA9DEE327BB4C6B 720384 ----a-w- C:\Windows\System32\ie4uinit.exe2015-06-12 16:44:29 57DFACB53ED16190EF732E2430B39741 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe2015-06-12 16:44:29 52956B4DD1899CB09BB50FB939F6E99D 490496 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe2015-06-12 16:44:29 2B3CF8F7903266E2AA5C9D9850FAA8F6 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe2015-06-12 16:44:29 29874C10D7D0088CD8743EC8F5DABBE4 473600 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe2015-06-12 16:44:29 0EDA3219FA027A486AA11269355AB279 144384 ----a-w- C:\Windows\System32\ieUnatt.exe2015-06-12 16:41:37 E39D7E7FCC5D4B77B8CBA52FEF8753DE 102912 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe2015-06-12 16:41:37 8D3316795ACCC0EC0DD6A844E046DA68 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe2015-06-12 16:41:37 6F139F39295000E6301C0D08F7493CC6 101888 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpconfig.exe2015-06-12 16:41:37 5F7B628B5F10531E8DE3E711ED73AAD7 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe2015-06-12 16:41:37 44854DDB738BF2C507FC2162245361D6 102400 ----a-w- C:\Program Files\Windows Media Player\wmpconfig.exe2015-06-12 16:41:37 3505E5A7664FD84AC8AE51FE3B545AE1 102400 ----a-w- C:\Program Files (x86)\Windows Media Player\wmpshare.exe2015-06-12 16:39:01 E89F94AED85BF3611F61608C26B64177 135168 ----a-w- C:\Windows\System32\wuauclt.exe2015-06-12 16:39:01 B4667963F9711C644F5E43D9A46D8680 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe2015-06-12 16:39:01 19165E301A50829D28C27A832AD16FB0 36864 ----a-w- C:\Windows\System32\wuapp.exe2015-06-12 14:18:37 054DD4C30B92E21AA06487112BE34B93 13095136 ----a-w- C:\Users\David\Downloads\Silverlight_x64.exe=== C: other files ==2015-06-15 12:46:32 5DDC15149346900F16B38C65502BACA9 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_45\lib\deploy\ffjcext.zip2015-06-13 17:59:05 C27D6272D8716360A24BE1FE4B09EAE9 53755757 ----a-w- C:\Program Files (x86)\CycloAgent\temp\mio_setup_1.0.132.1.zip2015-06-12 17:11:10 272C27711C8AA6E7815EE33F8ACA9C66 155584 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys2015-06-12 17:11:09 BF69D973523D539A35807946C6DA7E16 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys2015-06-12 16:41:59 1EE2DBA5AD2E5EB618C7FB187C2CFDF4 3206144 ----a-w- C:\Windows\System32\win32k.sys2015-06-12 16:37:25 36E0DDD19038C92B7C7709BFA03F813F 69888 ----a-w- C:\Windows\System32\drivers\stream.sys==== Startup Registry Enabled ======================[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"[HKEY_USERS\S-1-5-21-244821173-3068459867-560851451-1000\Software\Microsoft\Windows\CurrentVersion\Run]"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden""Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver""Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe""Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]"mctadmin"="C:\Windows\System32\mctadmin.exe"[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]"mctadmin"="C:\Windows\System32\mctadmin.exe"[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"IAStorIcon"="C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe""StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun""NUSB3MON"="C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe""HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe""HPOSD"="C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe""SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden""Facebook Update"="C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver""Polar FlowSync"="C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exe""Advanced SystemCare 8"="C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe /Auto""GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"==== Startup Registry Enabled x64 ======================[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"IgfxTray"="C:\Windows\system32\igfxtray.exe""HotKeysCmds"="C:\Windows\system32\hkcmd.exe""Persistence"="C:\Windows\system32\igfxpers.exe""HPWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden""SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe""SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe "[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]"NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update"==== Startup Registry Disabled ======================[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"""Adobe Reader Speed Launcher"="\"C:\\Program Files (x86)\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\"""SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""==== Startup Folders ======================2013-07-20 13:42:34 1235 ----a-w- C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk2011-05-18 09:27:37 2029 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snapfish PictureMover.lnk==== Task Scheduler Jobs ======================C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA.job --a------ C:@C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe []C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/07/2013 19:05]C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/07/2013 19:05]C:\Windows\tasks\HPCeeScheduleForDavid.job --a------ [undetermined Task]==== Other Scheduled Tasks ======================"C:\Windows\SysNative\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]"C:\Windows\SysNative\tasks\ASC8_PerformanceMonitor" [C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe]"C:\Windows\SysNative\tasks\ASC8_SkipUac_David" ["C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe" /SkipUac]"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000Core" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-244821173-3068459867-560851451-1000UA" [C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe]"C:\Windows\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe]"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]"C:\Windows\SysNative\tasks\HPCeeScheduleForDavid" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe]"C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe]"C:\Windows\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe]"C:\Windows\SysNative\tasks\ServicePlan" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"]"C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]"C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe]"C:\Windows\SysNative\tasks\Uninstaller_SkipUac_David" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe]"C:\Windows\SysNative\tasks\{5D9A4FC7-5D07-47C1-ABC6-A925C461B5B3}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{5DFE2574-4F57-40F0-882C-742CE9B3A706}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{7B0FEDE2-B25D-4EA2-814C-09A75A383359}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{960A14E6-D2B9-414D-98D6-2E961A70DE5B}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\{FC6A3016-9CF0-49C8-9034-598422B18E97}" ["c:\program files (x86)\google\chrome\application\chrome.exe"]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask" [C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]"C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe]==== Firefox Extensions Registry ======================[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]"{B64D9B05-48E1-4CEB-BF58-E0643994E900}"="C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff" [16/11/2014 15:17]==== Chromium Look ======================Google Chrome Version: 43.0.2357.124HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensionsnhfpefkeidlhbjljfdojcnngjbddgein - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx[17/11/2010 07:36]Google Slides - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoekGoogle Docs - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokakeGoogle Drive - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalfEmbed WMPlayer inline - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bamkbfdmckphehgiafpenehgebjgdlliHootsuite Hootlet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifnYouTube - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeoGoogle Search - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpfGoogle Calendar - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejjicmeblgpmajnghnpcppodonldlgfnGoogle Sheets - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejapGoogle Maps - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lneaknkopdijkpnocmklfnjbeapigfbhWebsite Logon - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nhfpefkeidlhbjljfdojcnngjbddgeinFacebook Notifications - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmameahlembdcigphohgiodcgjomcgeoGoogle Wallet - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmiedaGmail - David\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia==== Chromium Startpages ======================C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Preferencesdn-photos-g-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbcdn-profile-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbcdn-sphotos-e-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbcdn-sphotos-f-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbcdn-vthumb-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbexternal-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fbstatic-a.akamaihd.net:443":{"settings":{"4":20,"7":65536},"supports_spdy":true},"fonts.googleapis.com:443":{"network_stats":{"srtt":64660},"supports_spdy":true},"fonts.gstatic.com:443":{"supports_spdy":true},"fonts.gstatic.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"gcdn.2mdn.net:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"gg.google.com:443":{"supports_spdy":true},"google-maps-utility-library-v3.googlecode.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"googleads.g.doubleclick.net:443":{"network_stats":{"srtt":136223},"supports_spdy":true},"googleads.g.doubleclick.net:80":{"network_stats":{"srtt":2334578}},"googleads4.g.doubleclick.net:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":2256394}},"graph.facebook.com:443":{"supports_spdy":true},"i.ytimg.com:443":{"supports_spdy":true},"imasdk.googleapis.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"lh3.googleusercontent.com:443":{"network_stats":{"srtt":278891},"supports_spdy":true},"lh5.googleusercontent.com:443":{"network_stats":{"srtt":54400},"supports_spdy":true},"mail-attachment.googleusercontent.com:443":{"network_stats":{"srtt":54400},"supports_spdy":true},"mail.google.com:443":{"network_stats":{"srtt":721016},"supports_spdy":true},"manifest.googlevideo.com:443":{"supports_spdy":true},"maps.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":255015},"supports_spdy":true},"maps.googleapis.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"maps.gstatic.com:443":{"supports_spdy":true},"maps.gstatic.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"mt0.googleapis.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"mt1.googleapis.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"mts0.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":207784},"supports_spdy":true},"mts1.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":177456},"supports_spdy":true},"oauth.googleusercontent.com:443":{"network_stats":{"srtt":372510},"supports_spdy":true},"pagead2.googlesyndication.com:80":{"network_stats":{"srtt":2334578}},"partner.googleadservices.com:80":{"network_stats":{"srtt":325207}},"pixel.facebook.com:443":{"supports_spdy":true},"plus.google.com:443":{"supports_spdy":true},"pubads.g.doubleclick.net:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":2334578}},"r1---sn-cxab5jvh-cg0l.googlevideo.com:443":{"alternative_service":[{"port":443,"probability":0.01,"protocol_str":"quic"}]},"r4---sn-cxab5jvh-cg0s.c.2mdn.net:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"s.youtube.com:443":{"supports_spdy":true},"s.ytimg.com:443":{"supports_spdy":true},"s0.2mdn.net:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"scontent-ams2-1.xx.fbcdn.net:443":{"supports_spdy":true},"scontent-fra3-1.xx.fbcdn.net:443":{"supports_spdy":true},"securepubads.g.doubleclick.net:443":{"network_stats":{"srtt":136223},"supports_spdy":true},"ssl.google-analytics.com:443":{"supports_spdy":true},"ssl.gstatic.com:443":{"supports_spdy":true},"stats.g.doubleclick.net:443":{"network_stats":{"srtt":304894},"supports_spdy":true},"support.google.com:443":{"supports_spdy":true},"sync.liverail.com:443":{"supports_spdy":true},"syndication.twitter.com:443":{"supports_spdy":true},"t0.gstatic.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"talkgadget.google.com:443":{"supports_spdy":true},"tpc.googlesyndication.com:443":{"network_stats":{"srtt":2548286},"supports_spdy":true},"tpc.googlesyndication.com:80":{"alternative_service":[{"port":80,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":1212216}},"translate.google.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"translate.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":72893},"supports_spdy":true},"video-ams2-1.xx.fbcdn.net:443":{"supports_spdy":true},"www.bt.emsecure.net:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.facebook.com:443":{"supports_spdy":true},"www.google.be:443":{"supports_spdy":true},"www.google.com:443":{"supports_spdy":true},"www.googleapis.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"network_stats":{"srtt":48813},"supports_spdy":true},"www.googletagmanager.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"www.googletagservices.com:80":{"network_stats":{"srtt":2334578}},"www.gstatic.com:443":{"supports_spdy":true},"www.youtube.com:443":{"supports_spdy":true},"www.youtube.com:80":{"alternative_service":[{"port":80,"probability":0.0,"protocol_str":"quic"}]},"yt3.ggpht.com:443":{"alternative_service":[{"port":443,"probability":1.0,"protocol_str":"quic"}],"supports_spdy":true}},"supports_quic":{"address":"10.0.31.49","used_quic":true},"version":3}},"plugins":{"migrated_to_pepper_flash":true,"plugins_list":[],"removed_old_component_pepper_flash_settings":true},"profile":{"avatar_index":0,"content_settings":{"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"http://www.nieuwsblad.be:80,http://www.nieuwsblad.be:80":{"fullscreen":1}},"pref_version":1},"exit_type":"Normal","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"david","per_host_zoom_levels":{}},"protection":{"macs":{}},"selectfile":{"last_directory":"C:\\Users\\David\\Downloads"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13078608218934858"},"translate_accepted_count":{"en":1},"translate_blocked_languages":["nl"],"translate_denied_count":{"en":0},"translate_last_denied_time":1434196906108.058,"translate_too_often_denied":true,"translate_whitelists":{}}
==== Set IE to Default ======================Old Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://www.google.com"New Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://www.google.com"==== All HKCU SearchScopes ======================HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"==== HijackThis Entries ======================O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dllO2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLLO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dllO2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dllO4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exeO4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunO4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exeO4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exeO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hiddenO4 - HKCU\..\Run: [Facebook Update] "C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserverO4 - HKCU\..\Run: [Polar FlowSync] C:\Program Files (x86)\Polar\Polar FlowSync\flowsync.exeO4 - HKCU\..\Run: [Mio Share] C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio\Mio Share.appref-msO4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /AutoO4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')O4 - Startup: OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exeO4 - Global Startup: Snapfish PictureMover.lnk = C:\Program Files (x86)\PictureMover\Bin\PictureMover.exeO8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htmO9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exeO9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exeO10 - Unknown file in Winsock LSP: c:\program files (x86)\national instruments\shared\mdns responder\nimdnsnsp.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exeO23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exeO23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exeO23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeO23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exeO23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exeO23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exeO23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exeO23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exeO23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exeO23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeO23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exeO23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exeO23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exeO23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\Windows\SysWOW64\lkcitdl.exeO23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments Corporation - C:\Windows\SysWOW64\lkads.exeO23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\Windows\SysWOW64\lktsrv.exeO23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exeO23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exeO23 - Service: NI LXI Discovery Service (niLXIDiscovery) - National Instruments Corporation - C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exeO23 - Service: NI mDNS Responder Service (nimDNSResponder) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exeO23 - Service: NI Service Locator (NiSvcLoc) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exeO23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exeO23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exeO23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exeO23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exeO23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)==== Empty IE Cache ======================C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfullyC:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TY35VO3Z will be deleted at reboot==== Empty FireFox Cache ======================No FireFox Profiles found==== Empty Chrome Cache ======================C:\Users\David\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully==== Empty All Flash Cache ======================Flash Cache Emptied Successfully==== Empty All Java Cache ======================Java Cache cleared successfully==== C:\zoek_backup content ======================C:\zoek_backup (files=158 folders=53 98536486 bytes)==== Empty Temp Folders ======================C:\Users\David\AppData\Local\Temp will be emptied at rebootC:\Users\Default\AppData\Local\Temp emptied successfullyC:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at rebootC:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfullyC:\Windows\Temp will be emptied at reboot==== After Reboot ========================== Empty Temp Folders ======================C:\Windows\Temp successfully emptiedC:\Users\David\AppData\Local\Temp successfully emptied==== Empty Recycle Bin ======================C:\$RECYCLE.BIN successfully emptied==== Deleting Files / Folders ======================"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found"C:\Users\David\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TY35VO3Z" not found==== EOF on ma 15/06/2015 at 15:41:53,49 ======================
windows 10
in Archief Windows 10
Geplaatst:
ja het heeft vroeger altijd gewerkt?
Garmin USB Data Card Programmer drivers bieden geen ondersteuning voor 64-bit besturingssystemen op dit moment