Ga naar inhoud

beaba

Lid
  • Items

    55
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door beaba

  1. Dat vertelde je zelf toch in een eerder bericht?;-)
  2. Gedaan. Hoe zet ik nu de firewall en Avira uit? Comodo weer tijdelijk uitgeschakeld maar moest delfix.exe constant toestaan.
  3. Avira kreeg ik niet uit met de rechtermuisklik, ook niet op een andere manier. Ik heb de meldingen steeds toegestaan. Comodo stond uit maar hierdoor werd de Windows firewall weer geactiveerd. Daarna heb ik beiden uitgezet. Comodo bleef echter meldingen geven. Toen zoek.exe eindelijk klaar was, pc opnieuw opgestart en duurde erg lang. Daarna een foutmelding en zwart scherm. Tweede keer opstarten lukte wel maar ik kreeg geen rapport te zien nu. Via zoek.exe op de c schijf heb ik dit rapport gevonden. Zoek.exe v5.0.0.0 Updated 29-January-2014 Tool run by Marcel on do 30-01-2014 at 23:21:17,35. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Marcel\Downloads\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 30-1-2014 23:25:13 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\Users\Marcel\AppData\Local\MigWiz deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\ProgramData\Package Cache deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-01-28 22:32:01 163A95975E1D8819E653AA3E961371CA 51200 ----a-w- C:\Windows\twain_32.dll 2014-01-28 22:28:38 40D777B7A95E00593EB1568C68514493 2616320 ----a-w- C:\Windows\explorer.exe 2014-01-28 22:27:16 DBD14D0DB0382DFE96D7B5007DDD5ABE 65024 ----a-w- C:\Windows\bfsvc.exe 2014-01-27 21:10:21 2701448229AEE43D266C00042EA3CB52 2154 ----a-w- C:\Windows\epplauncher.mif 2014-01-27 19:06:18 D1E75542EC8D1B4851765A57AC63618E 1908 ----a-w- C:\Windows\diagerr.xml 2014-01-27 19:06:18 BDE1B3012D05255DE264741F9182EE5E 2562 ----a-w- C:\Windows\diagwrn.xml ====== C:\Users\Marcel\AppData\Local\Temp ==== 2014-01-30 21:57:09 F306FFBBEBE130C9ACF024D2C96D79B2 119352 ----a-w- C:\Users\Marcel\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.dll 2014-01-30 21:57:09 F1EE85AFD2B910A7EAE73B31F029398F 12344 ----a-w- C:\Users\Marcel\AppData\Local\Temp\avgnt.exe\Avira.OE.Communicator.Interface.dll 2014-01-30 21:57:09 E7D4EF90664CBA0DBC1E6364E3F97426 39480 ----a-w- C:\Users\Marcel\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-01-30 21:57:09 E1A0AD05CC93D81D707B44F555EB0F96 285240 ----a-w- C:\Users\Marcel\AppData\Local\Temp\avgnt.exe\Avira.OE.NativeCore.dll 2014-01-30 21:57:09 1F3356AF50E4C37641ED4E5DC5E213BA 42040 ----a-w- C:\Users\Marcel\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.Interface.dll 2014-01-30 08:33:56 45BF0C1D004B807BA0A1978562A7D9C4 666856 ----a-w- C:\Users\Marcel\AppData\Local\Temp\ICReinstall_ICReinstall_ZipSetup.exe 2014-01-29 18:26:32 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\Users\Marcel\AppData\Local\Temp\Setup00000834\ose00000.exe 2014-01-29 18:25:39 F70642E520795EB845308E4DA803355A 229496 ----a-w- C:\Users\Marcel\AppData\Local\Temp\Setup00000834\OSETUPUI.DLL 2014-01-29 18:25:39 892000AD8462EF84C4677F71C8F4BFCC 5799080 ----a-w- C:\Users\Marcel\AppData\Local\Temp\Setup00000834\OSETUP.DLL 2014-01-29 09:28:59 45BF0C1D004B807BA0A1978562A7D9C4 666856 ----a-w- C:\Users\Marcel\AppData\Local\Temp\ICReinstall_ZipSetup.exe ====== C:\Windows\system32 ===== 2014-01-30 19:16:24 C611C6ED5ECFE4608BA79472DFE3D49C 646144 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2014-01-30 19:16:24 C1A6E565B2782C09BC40AD749B46D9ED 71680 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe 2014-01-30 19:16:24 B5EB5BD3066959611E1F7A80FD6CC172 1818112 ----a-w- C:\Windows\System32\wininet.dll 2014-01-30 19:16:24 AD27563BC16AB1EAACAE3033E99C2F78 194048 ----a-w- C:\Windows\System32\elshyph.dll 2014-01-30 19:16:24 9B8701A380CEE1B05D651B4ED4048C8F 645120 ----a-w- C:\Windows\System32\jsIntl.dll 2014-01-30 19:16:24 4A7956EE34BE56D20C54CF6A47693C25 43008 ----a-w- C:\Windows\System32\jsproxy.dll 2014-01-30 19:16:24 298FDE634538B62CEEEC266D8773B21A 182272 ----a-w- C:\Windows\System32\msls31.dll 2014-01-30 19:16:23 FB0D1CC2911A0645DDA6C0608473EB55 34816 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll 2014-01-30 19:16:23 F862CD08F1AD4EE39BD506853F3C6103 16284 ----a-w- C:\Windows\System32\ieuinit.inf 2014-01-30 19:16:23 D9F12F54E3B5A092F1D5F191F5286E53 337408 ----a-w- C:\Windows\System32\html.iec 2014-01-30 19:16:23 D6BC25D55501DE093757675B3B120867 208896 ----a-w- C:\Windows\System32\ie4uinit.exe 2014-01-30 19:16:23 CFCE4EFF1D6D909EE2EA3AFCB8F1E677 233472 ----a-w- C:\Windows\System32\url.dll 2014-01-30 19:16:23 C3B0DBD04CC18574B0706CA119902474 367104 ----a-w- C:\Windows\System32\dxtmsft.dll 2014-01-30 19:16:23 C17139EAF939964142C7A1AEEE02DC81 616104 ----a-w- C:\Windows\System32\ieapfltr.dat 2014-01-30 19:16:23 BE8B10D84DDD8F43A32EE013B54F5287 61952 ----a-w- C:\Windows\System32\iesetup.dll 2014-01-30 19:16:23 B68750104FBA545C633B7E9AEA660208 2166272 ----a-w- C:\Windows\System32\iertutil.dll 2014-01-30 19:16:23 9E170B0AF156B478BD2B1FD6A2250C9E 62464 ----a-w- C:\Windows\System32\tdc.ocx 2014-01-30 19:16:23 81A605B0F3A29A117AB83A08D40F772F 1926656 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-01-30 19:16:23 6922D7ED84AE102504174922D5D42F49 238288 ----a-w- C:\Windows\System32\iedkcs32.dll 2014-01-30 19:16:23 5DFE55E0221F0C5FA4D6CECFA72B1D78 32768 ----a-w- C:\Windows\System32\iernonce.dll 2014-01-30 19:16:23 4F032F1FDEFEA5EC8EEA3562643B5EE8 69120 ----a-w- C:\Windows\System32\icardie.dll 2014-01-30 19:16:23 44D5C650C971910827EA65B4D989ED94 164864 ----a-w- C:\Windows\System32\msrating.dll 2014-01-30 19:16:23 433161597584186EF806EFC8EA530433 703488 ----a-w- C:\Windows\System32\ieapfltr.dll 2014-01-30 19:16:23 2EE1E467D73642AFDDB03019F58C252B 1156608 ----a-w- C:\Windows\System32\urlmon.dll 2014-01-30 19:16:23 2AF48780D879AFC43733159CB29CD8BD 1051136 ----a-w- C:\Windows\System32\mshtmlmedia.dll 2014-01-30 19:16:23 08B56CF57B7CE44315034247CC76D0F1 244736 ----a-w- C:\Windows\System32\dxtrans.dll 2014-01-30 19:16:22 F9F114B2A6F876C92D317A755494F233 17142784 ----a-w- C:\Windows\System32\mshtml.dll 2014-01-30 19:16:22 EC7038154490E50ACD405A022F51B204 83456 ----a-w- C:\Windows\System32\inseng.dll 2014-01-30 19:16:22 AB3B2CA52AFB695AFCDD2620A21E5B21 24576 ----a-w- C:\Windows\System32\licmgr10.dll 2014-01-30 19:16:22 9A33FDDD687A836A1FD478B43C5A95FD 151552 ----a-w- C:\Windows\System32\iexpress.exe 2014-01-30 19:16:22 71144A47CD02FDDC77DDF5EB5315767F 523776 ----a-w- C:\Windows\System32\msfeeds.dll 2014-01-30 19:16:22 6A92CEC8532056791C6832B2725D170D 139264 ----a-w- C:\Windows\System32\wextract.exe 2014-01-30 19:16:22 6A794439B6612E43FEDE0217C919B652 454656 ----a-w- C:\Windows\System32\vbscript.dll 2014-01-30 19:16:22 64831CAD496A073398853A34A5813675 69632 ----a-w- C:\Windows\System32\mshtmled.dll 2014-01-30 19:16:22 03B3541AE6986602CF9CB5B3AD169C33 208384 ----a-w- C:\Windows\System32\webcheck.dll 2014-01-30 19:16:21 F8DE2F74CD4323BABBDACAADD9A39254 112128 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-01-30 19:16:21 C629D814E48CAA81E0D806BD7ECA98B8 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2014-01-30 19:16:21 BC2C13A3B664B686DA52D558FE5502FC 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2014-01-30 19:16:21 ABDFC692D9FE43E2BA8FE6CB5A8CB95A 13312 ----a-w- C:\Windows\System32\mshta.exe 2014-01-30 19:16:21 779E142FE2159935E78C0FA2E190FF1E 610304 ----a-w- C:\Windows\System32\jscript.dll 2014-01-30 19:16:21 6EB0B7301E00F717BD68A742D1391FAF 36352 ----a-w- C:\Windows\System32\imgutil.dll 2014-01-30 19:16:21 5EC13202430A3EB68DFF44CF1FEEA2BE 61952 ----a-w- C:\Windows\System32\MshtmlDac.dll 2014-01-30 19:16:21 4D4726D1AD5ED1590A62685F92900594 51200 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2014-01-30 19:16:21 4BCC7EB5F20840DA67943BD86AE95735 56832 ----a-w- C:\Windows\System32\pngfilt.dll 2014-01-30 19:16:21 1AFBAA54BDF637F69B8E02A5578286B0 116736 ----a-w- C:\Windows\System32\iepeers.dll 2014-01-30 19:16:21 14E18520903F925D296C8E29BDE6BD43 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe 2014-01-30 19:16:21 1200D9C7DB0ADC1B8143A0A9921BF7DA 127488 ----a-w- C:\Windows\System32\occache.dll 2014-01-30 19:16:20 F7B6E341F4B1947BEC0E14EEBE3C627E 111616 ----a-w- C:\Windows\System32\IEAdvpack.dll 2014-01-30 19:16:20 F705F52FC41577641E82B9934728B02C 440832 ----a-w- C:\Windows\System32\ieui.dll 2014-01-30 19:16:20 AE6A2C5ECD3E96556E22F12816842F60 48640 ----a-w- C:\Windows\System32\mshtmler.dll 2014-01-30 19:16:20 AE254DBF16E3E3D7C35ED017B4B55EC6 4240384 ----a-w- C:\Windows\System32\jscript9.dll 2014-01-30 19:16:20 887055A3C8DD6C87D200D11EAFDBD45B 74240 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe 2014-01-30 19:16:20 83F49FD1BC0A999B006D564C540C7258 86016 ----a-w- C:\Windows\System32\iesysprep.dll 2014-01-30 19:16:20 809804D8AED97AEA96B3D4B66A4C5C70 553472 ----a-w- C:\Windows\System32\jscript9diag.dll 2014-01-30 19:16:20 55969AADF0210A614700F89B48976F68 43008 ----a-w- C:\Windows\System32\msfeedsbs.dll 2014-01-30 19:16:20 53FC62C51CB18C9100A7DFAF2D2A6C47 12800 ----a-w- C:\Windows\System32\msfeedssync.exe 2014-01-30 19:16:20 22868FAAF9C851BFA924B8D7EDB6CBC1 11220992 ----a-w- C:\Windows\System32\ieframe.dll 2014-01-30 19:14:47 FB3F036EF6A467F7AF46C821FF5D198D 220160 ----a-w- C:\Windows\System32\d3d10core.dll 2014-01-30 19:14:47 E12C4928B32ACE04610259647F072635 906240 ----a-w- C:\Windows\System32\FntCache.dll 2014-01-30 19:14:47 D4F264FE23F8953D840904418220C15E 293376 ----a-w- C:\Windows\System32\dxgi.dll 2014-01-30 19:14:47 D4212AB475A3B25EC4DF574536C3EDC5 249856 ----a-w- C:\Windows\System32\d3d10_1core.dll 2014-01-30 19:14:47 C7A730AFB80B11F93EFC81B1D6F920D7 364544 ----a-w- C:\Windows\System32\XpsGdiConverter.dll 2014-01-30 19:14:47 B3170CCC779B682C3341873EA60CF084 1988096 ----a-w- C:\Windows\System32\d3d10warp.dll 2014-01-30 19:14:47 9FF8F684BACF326082E5562F7C104A79 3419136 ----a-w- C:\Windows\System32\d2d1.dll 2014-01-30 19:14:47 8B285BDAB7735FDFB18E6F7122923B77 187392 ----a-w- C:\Windows\System32\UIAnimation.dll 2014-01-30 19:14:47 8504944851DF6175CC489A8F3328459E 1080832 ----a-w- C:\Windows\System32\d3d10.dll 2014-01-30 19:14:47 6A7B5A3EFCCDB53DA41CF6838056990F 1158144 ----a-w- C:\Windows\System32\XpsPrint.dll 2014-01-30 19:14:47 6A13B4F3B3F575F1E24B877B9359AABA 10752 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-30 19:14:47 6951562DC4625EEFC6EACD52AD165866 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-30 19:14:47 62A6EB5771580CAE445804389F3F7432 207872 ----a-w- C:\Windows\System32\WindowsCodecsExt.dll 2014-01-30 19:14:47 60F4AEFA103D421EA4A40E31409B4756 3072 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-30 19:14:47 600A65F922CCDCBB2D11467914241556 2284544 ----a-w- C:\Windows\System32\msmpeg2vdec.dll 2014-01-30 19:14:47 589CBC4989F750E1DA35625AB481CF43 4096 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-30 19:14:47 545F1BAAADD0BF1F4FE4586293FCA07D 417792 ----a-w- C:\Windows\System32\WMPhoto.dll 2014-01-30 19:14:47 4FF3EC04CD47DD62181894B71B004E40 604160 ----a-w- C:\Windows\System32\d3d10level9.dll 2014-01-30 19:14:47 49ACA548B2423F1C67898E6AC719A9A6 3584 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-30 19:14:47 4277F5164DE9B7C665BB928B9145BEE0 1247744 ----a-w- C:\Windows\System32\DWrite.dll 2014-01-30 19:14:47 3C1936A12C62254F914A01BBC6A8DC69 161792 ----a-w- C:\Windows\System32\d3d10_1.dll 2014-01-30 19:14:47 3BE0D923AA45A4DBE091C2D84F0B4FE7 3072 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-30 19:14:47 3BCECD87AB4E6743BFB45B352AD1A529 1230336 ----a-w- C:\Windows\System32\WindowsCodecs.dll 2014-01-30 19:14:47 2E33DFD10F28F86C3FC40EE123CC3904 2560 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-30 19:14:47 1C60E09CA1C3A045BC4D367F67C915B7 5632 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-30 19:14:47 007863E45F25AA47A4C30D0930BBFD85 5632 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-30 13:08:47 8A4CEBF34370D689E198E6673C1F2C40 74072 ----a-w- C:\Windows\System32\XAPOFX1_5.dll 2014-01-30 13:08:47 81DFDDFB401D663BA7E6AD1C80364216 527192 ----a-w- C:\Windows\System32\XAudio2_7.dll 2014-01-30 13:08:47 1C9B45E87528B8BB8CFA884EA0099A85 2106216 ----a-w- C:\Windows\System32\D3DCompiler_43.dll 2014-01-30 13:08:46 8E0BB968FF41D80E5F2C747C04DB79AE 248672 ----a-w- C:\Windows\System32\d3dx11_43.dll 2014-01-30 13:07:19 501AC862517C5445742BEE8A2B88414E 453456 ----a-w- C:\Windows\System32\d3dx10_42.dll 2014-01-30 13:05:46 26AF232140C88B42D92A88F2198EDF6A 3426072 ----a-w- C:\Windows\System32\d3dx9_32.dll 2014-01-29 23:40:20 6C4B2E1A25841077084EB9F76FF6FFA7 11410432 ----a-w- C:\Windows\System32\wmp.dll 2014-01-29 23:40:19 02DF0628BE8B64B84D50FBE53549AA3B 12625408 ----a-w- C:\Windows\System32\wmploc.DLL 2014-01-29 20:20:40 E94C583CDE2348950155F2AF2876F34D 231424 ----a-w- C:\Windows\System32\mswsock.dll 2014-01-29 20:20:38 75F5E1FE8D55CF8E577E0EC5F2290D3F 530432 ----a-w- C:\Windows\System32\comctl32.dll 2014-01-29 20:20:37 5A043BDA3BFADD5B4C16F3BDE5EC4312 652800 ----a-w- C:\Windows\System32\rpcrt4.dll 2014-01-29 20:20:32 68EAAEDF0365168B804E8728368FA946 175104 ----a-w- C:\Windows\System32\wintrust.dll 2014-01-29 20:20:28 EE7CB55F77465CDAC4C80F587FF7C278 1796096 ----a-w- C:\Windows\System32\authui.dll 2014-01-29 20:20:27 E9BB0CD09DA17C71FD1B9954D75AEEF7 168960 ----a-w- C:\Windows\System32\credui.dll 2014-01-29 20:20:27 4BCC63ED1C3D15B2635A8AE2B854B3EB 152576 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll 2014-01-29 20:20:16 AFA53BD631FB0509A91A99391209BB70 301568 ----a-w- C:\Windows\System32\msieftp.dll 2014-01-29 20:19:58 EF6950D7B24AAF4E477065F5455DD4F8 1038848 ----a-w- C:\Windows\System32\lsasrv.dll 2014-01-29 20:19:58 AA6F6457116B559B76BC6A012CB4C293 247808 ----a-w- C:\Windows\System32\schannel.dll 2014-01-29 20:19:57 D89077E2E1C88A29C57F21FAD28DAC45 15872 ----a-w- C:\Windows\System32\sspisrv.dll 2014-01-29 20:19:57 BD6B9BC84D004C6BEE89CF7BDB95E1FC 99840 ----a-w- C:\Windows\System32\sspicli.dll 2014-01-29 20:19:57 AD7FB087A238883D1618F29F7BBBD584 220160 ----a-w- C:\Windows\System32\ncrypt.dll 2014-01-29 20:19:57 803B370865D907EA21DC0C2B6A8936B5 22016 ----a-w- C:\Windows\System32\lsass.exe 2014-01-29 20:19:57 372948BB5E41CE42341C4398DE572E56 22016 ----a-w- C:\Windows\System32\secur32.dll 2014-01-29 20:19:42 E7B9D5FF20FFDD4AAE2EF1D1B8C27A37 159232 ----a-w- C:\Windows\System32\imagehlp.dll 2014-01-29 20:19:42 979D74799EA6C8B8167869A68DF5204A 141824 ----a-w- C:\Windows\System32\wscript.exe 2014-01-29 20:19:42 09F65975C1C9793B923BB52A7FA83453 121856 ----a-w- C:\Windows\System32\wshom.ocx 2014-01-29 20:19:41 A3B1D1312602280839A4A2AFBDFD066E 163840 ----a-w- C:\Windows\System32\scrrun.dll 2014-01-29 20:19:41 A3A35EE79C64A640152B3113E6E254E2 126976 ----a-w- C:\Windows\System32\cscript.exe 2014-01-29 20:19:40 786B9C958A4F217322C24C736263C51F 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe 2014-01-29 20:19:35 DA8AAF7E56F698608A89542131F74818 40960 ----a-w- C:\Windows\System32\wwanprotdim.dll 2014-01-29 20:19:35 3C5E51C05BE9B56EAFF4E388C3AB25E4 186368 ----a-w- C:\Windows\System32\wwansvc.dll 2014-01-29 20:19:31 45FBAFFA68CBC29AC2563985CEE72B9C 24576 ----a-w- C:\Windows\System32\cryptdlg.dll 2014-01-29 20:19:26 813A7F5A2D6D366EB3FFB643B851BCE5 3914176 ----a-w- C:\Windows\System32\ntoskrnl.exe 2014-01-29 20:19:26 482C8CD985C727C7C78A5E9B320947F0 3969472 ----a-w- C:\Windows\System32\ntkrnlpa.exe 2014-01-29 20:19:26 401D25136E26B237D77DA1BF1198B3BD 619520 ----a-w- C:\Windows\System32\tdh.dll 2014-01-29 20:19:25 E0B8C6B1EA1EF94747E966E9093FB968 1289096 ----a-w- C:\Windows\System32\ntdll.dll 2014-01-29 20:19:25 D67472125471784DE7147946EDA25FEB 640512 ----a-w- C:\Windows\System32\advapi32.dll 2014-01-29 20:19:23 4EC2C3B15B9EC41AD0D6CD918D20376E 2048 ----a-w- C:\Windows\System32\tzres.dll 2014-01-29 20:19:19 2A01B40C8334A8124001CFAC256FCA83 102608 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll 2014-01-29 20:19:18 FC415B303B1ECF80B5F130A1F7203D02 492544 ----a-w- C:\Windows\System32\win32spl.dll 2014-01-29 20:19:18 1E882889A4314D6DF5DED4F6EC994E72 2349056 ----a-w- C:\Windows\System32\win32k.sys 2014-01-29 20:19:17 F632602316001D517F4EF3B53B9A6C33 26112 ----a-w- C:\Windows\System32\lpk.dll 2014-01-29 20:19:17 8CC4638FA7B5B921B9080CF962582C0B 70656 ----a-w- C:\Windows\System32\fontsub.dll 2014-01-29 20:19:17 7D27E63B54DB093BB0D9E95F81094D75 34304 ----a-w- C:\Windows\System32\atmlib.dll 2014-01-29 20:19:17 5C6B44F9CAAC475B7B9EBBC29CB7F065 295424 ----a-w- C:\Windows\System32\atmfd.dll 2014-01-29 20:19:17 2342EC9254F4C60CA98441BD65C89E12 10240 ----a-w- C:\Windows\System32\dciman32.dll 2014-01-29 20:19:16 E2ED66FAF894F545EB083AC5F5763854 434688 ----a-w- C:\Windows\System32\scavengeui.dll 2014-01-29 20:19:12 CC917AC4D3F8756FF13174980B474791 43008 ----a-w- C:\Windows\System32\certenc.dll 2014-01-29 20:19:12 0D52559AEF4AA5EAC82F530617032283 903168 ----a-w- C:\Windows\System32\certutil.exe 2014-01-29 20:19:06 58F67245D041FBE7AF88F4EAF79DF0FA 499712 ----a-w- C:\Windows\System32\iphlpsvc.dll 2014-01-29 20:19:06 140D9F911182357626165EA0BEB98C4F 156672 ----a-w- C:\Windows\System32\ncsi.dll 2014-01-29 20:19:05 50E0DD0A5B8D8BC353578F2F73926697 52224 ----a-w- C:\Windows\System32\nlaapi.dll 2014-01-29 20:19:05 5078492B9CAC9CB721698DB51F039035 175104 ----a-w- C:\Windows\System32\netcorehc.dll 2014-01-29 20:19:05 374071043F9E4231EE43BE2BB48DD36D 242176 ----a-w- C:\Windows\System32\nlasvc.dll 2014-01-29 20:19:05 23FC8068953C9BE2D63AE4EF1129112A 18944 ----a-w- C:\Windows\System32\netevent.dll 2014-01-29 20:18:56 6DE66FE7C526637E74CD066461C7C871 1505280 ----a-w- C:\Windows\System32\d3d11.dll 2014-01-29 20:18:55 674EB817CF6E43B7DF3EC26E06E98D98 509440 ----a-w- C:\Windows\System32\qedit.dll 2014-01-29 20:18:53 0805487A6036A9F9C4E7AF7FEF835529 1620992 ----a-w- C:\Windows\System32\WMVDECOD.DLL 2014-01-29 20:18:31 EAF4712B706936C0B10D3B5319B37E81 81920 ----a-w- C:\Windows\System32\davclnt.dll 2014-01-29 20:18:31 75E8EBD7040CE238684333F97014762A 205824 ----a-w- C:\Windows\System32\WebClnt.dll 2014-01-29 20:18:29 5A775CAE7CCCAC581C05B8D2C92C0DF1 305152 ----a-w- C:\Windows\System32\gdi32.dll 2014-01-29 20:18:27 E02781D4871844DCD30DF1D69A650F78 12872704 ----a-w- C:\Windows\System32\shell32.dll 2014-01-29 20:18:27 2C4A87CA8C00E98EFDCFA2E8EC9A3503 180224 ----a-w- C:\Windows\System32\shdocvw.dll 2014-01-29 20:18:23 F0D0E883EBBDC7615DC9EDEA0FFB2817 216576 ----a-w- C:\Windows\System32\FWPUCLNT.DLL 2014-01-29 20:18:23 CE2A48CD0D2B39FB77FA4797C6434E71 656896 ----a-w- C:\Windows\System32\nshwfp.dll 2014-01-29 20:18:23 B9C54120F46392100478F58F374E5709 679424 ----a-w- C:\Windows\System32\IKEEXT.DLL 2014-01-29 20:18:20 72E953215CADE1A726C04AAFDF6B463D 49152 ----a-w- C:\Windows\System32\taskhost.exe 2014-01-29 20:18:13 EF71BA5DF59034962B0C62314A71351A 193536 ----a-w- C:\Windows\System32\dhcpcore6.dll 2014-01-29 20:18:13 81F6C1AE23B1C493D9E996C3103915D7 44032 ----a-w- C:\Windows\System32\dhcpcsvc6.dll 2014-01-29 20:18:06 CC09E0C9A2D89C6E71D093DC8BD121B7 1168384 ----a-w- C:\Windows\System32\crypt32.dll 2014-01-29 20:18:06 7CA1BECEA5DE2643ADDAD32670E7A4C9 140288 ----a-w- C:\Windows\System32\cryptsvc.dll 2014-01-29 20:18:06 7B851A8018B1EA00A69707A390004884 103936 ----a-w- C:\Windows\System32\cryptnet.dll 2014-01-29 20:17:59 6933E2AFF444A7A95D5C67E98449163E 868352 ----a-w- C:\Windows\System32\kernel32.dll 2014-01-29 20:17:59 51BB04243DF6196C06E125898127E397 169984 ----a-w- C:\Windows\System32\winsrv.dll 2014-01-29 20:17:59 2DE16A63F71D10B42ACE01E759078600 271360 ----a-w- C:\Windows\System32\conhost.exe 2014-01-29 20:17:59 1E65CF7B26D02750544EFDD73C8118FA 293376 ----a-w- C:\Windows\System32\KernelBase.dll 2014-01-29 20:14:25 765CDED47E68FDD7F24820A079309FE2 918528 ----a-w- C:\Windows\System32\rdpcorets.dll 2014-01-29 20:14:08 EACFDF31921F51C097629F1F3C9129B4 47104 ----a-w- C:\Windows\System32\appinfo.dll 2014-01-29 20:14:08 B0BC447C758FF055D53FC6831FDB0344 101720 ----a-w- C:\Windows\System32\consent.exe 2014-01-28 22:36:48 B4834F08230A2EB7F498DE4E5B6AB814 74240 ----a-w- C:\Windows\System32\fsutil.exe 2014-01-28 22:36:46 5C3F9DBA818CD93379D1A0F215270374 1699328 ----a-w- C:\Windows\System32\esent.dll 2014-01-28 22:32:48 FFD0CF7A58905B8D05CDA6F8554A346D 116224 ----a-w- C:\Windows\System32\VmbusCoinstaller.dll 2014-01-28 22:32:48 CF9E55F8D1E527FE19153604EADC918C 14336 ----a-w- C:\Windows\System32\vmbuspipe.dll 2014-01-28 22:32:48 C0AB322DAE9E26F13C4B6BBBABCFA148 53760 ----a-w- C:\Windows\System32\vmicres.dll 2014-01-28 22:32:48 B373C8ACBB78D7B31AD4FAC8BD4F2102 113664 ----a-w- C:\Windows\System32\IcCoinstall.dll 2014-01-28 22:32:48 B1462F0C851B0B0F3FBC4ADBB09CDF5E 47616 ----a-w- C:\Windows\System32\vmictimeprovider.dll 2014-01-28 22:32:48 774D0EB71920648ACC79642341CA56C7 215552 ----a-w- C:\Windows\System32\vmicsvc.exe 2014-01-28 22:32:48 6FD5074B8CD05450F3F040993C6C2F1D 44544 ----a-w- C:\Windows\System32\vmbusres.dll 2014-01-28 22:32:47 B0AC902EFD7E46708014625ECEB25741 38400 ----a-w- C:\Windows\System32\vmstorfltres.dll 2014-01-28 22:32:47 993ABFB6DFD197927C3B24A36C966039 113664 ----a-w- C:\Windows\System32\VmdCoinstall.dll 2014-01-28 22:32:47 73F6C5223F7E9B5780DD4A6C30FCF569 458752 ----a-w- C:\Windows\System32\WSDApi.dll 2014-01-28 22:32:46 A2AEEAB451AD341070F9B8F8E1A2EC28 99176 ----a-w- C:\Windows\System32\PresentationHostProxy.dll 2014-01-28 22:32:46 6A08F1C87BBF6197F5DAD95CF41E5175 295264 ----a-w- C:\Windows\System32\PresentationHost.exe 2014-01-28 22:32:45 6A1E8DEB746912DF47CF651E138401D7 363520 ----a-w- C:\Windows\System32\StructuredQuery.dll 2014-01-28 22:32:38 D33E95C0A2754061233B58DC41F8094C 50688 ----a-w- C:\Windows\System32\umb.dll 2014-01-28 22:32:22 84897874906481E0B3F4045DAD90D69F 856576 ----a-w- C:\Windows\System32\FirewallControlPanel.dll 2014-01-28 22:32:21 9835584E999D25004E1EE8E5F3E3B881 566272 ----a-w- C:\Windows\System32\MPSSVC.dll 2014-01-28 22:32:21 13A1F9A72F81509658F3E0B6AC2AD994 5066752 ----a-w- C:\Windows\System32\AuthFWSnapin.dll 2014-01-28 22:32:18 D83947A58613E9091B4C9CC0F1546A8D 297808 ----a-w- C:\Windows\System32\mscoree.dll 2014-01-28 22:32:18 D5291C38F1AF2107810A24C6059F9EFD 155472 ----a-w- C:\Windows\System32\mscorier.dll 2014-01-28 22:32:18 75C59DFB82BBB997EB702BE0770619C2 80720 ----a-w- C:\Windows\System32\mscories.dll 2014-01-28 22:32:17 E9CFC1884D1E579E82073103827FA62B 107008 ----a-w- C:\Windows\System32\NAPHLPR.DLL 2014-01-28 22:32:17 C02F50BBC064689FE3FCD89348C884EB 49488 ----a-w- C:\Windows\System32\netfxperf.dll 2014-01-28 22:32:17 95DE3CF54E0A360EED766DBDDF152F0D 1077248 ----a-w- C:\Windows\System32\Narrator.exe 2014-01-28 22:32:17 93C4029DABC19166076BE347283AB969 46080 ----a-w- C:\Windows\System32\NAPCRYPT.DLL 2014-01-28 22:32:17 518318A103C888001054EFA1236E5033 1130824 ----a-w- C:\Windows\System32\dfshim.dll 2014-01-28 22:32:16 CA9F7888B524D8100B977C81F44C3234 351232 ----a-w- C:\Windows\System32\winhttp.dll 2014-01-28 22:32:16 297848A1D7D03A5735CEDF91F82ACFAB 577024 ----a-w- C:\Windows\System32\wpd_ci.dll 2014-01-28 22:32:14 A2F0B6A45EF5B68173AAA2A39690904E 327680 ----a-w- C:\Windows\System32\zipfldr.dll 2014-01-28 22:32:14 8CBD6FDACDCC0ED48BAF607226D6D0C9 314880 ----a-w- C:\Windows\System32\wusa.exe 2014-01-28 22:32:14 8A31F7A5A29EA3564493BC5EF8E78032 196608 ----a-w- C:\Windows\System32\wwanconn.dll 2014-01-28 22:32:14 29BC473072568C072EC8B176498DE996 1334272 ----a-w- C:\Windows\System32\CertEnroll.dll 2014-01-28 22:32:13 AAF7BEB63E2CC499834B608A85A55E4E 21504 ----a-w- C:\Windows\System32\wsdchngr.dll 2014-01-28 22:32:10 F7CF764F8155492EB50E4505A6DA8D87 427520 ----a-w- C:\Windows\System32\PortableDeviceStatus.dll 2014-01-28 22:32:10 E98278865E8DABA21CFE5FE4BE34210A 547840 ----a-w- C:\Windows\System32\PortableDeviceApi.dll 2014-01-28 22:32:10 AA53356D60AF47EACC85BC617A4F3F66 85504 ----a-w- C:\Windows\System32\wpdbusenum.dll 2014-01-28 22:32:10 9E44D3D2D1D2DA5ED565D471E350F1CD 541184 ----a-w- C:\Windows\System32\WMVSDECD.DLL 2014-01-28 22:32:10 735263DA17BF5BAF9CCD483843BF9D5A 105984 ----a-w- C:\Windows\System32\WPDShServiceObj.dll 2014-01-28 22:32:10 65B76F79BA94CF8837D556D4C9067773 739328 ----a-w- C:\Windows\System32\WMSPDMOD.DLL 2014-01-28 22:32:10 58405E4F68BA8E4057C6E914F326ABA2 84480 ----a-w- C:\Windows\System32\wkssvc.dll 2014-01-28 22:32:10 181F69BC9C406B7FB5C0ADE8031630AC 2311168 ----a-w- C:\Windows\System32\wpdshext.dll 2014-01-28 22:32:09 E362FAA5E232D9A326F42D8F78AEA2D8 202752 ----a-w- C:\Windows\System32\framedyn.dll 2014-01-28 22:32:09 D0481FB85BEEDD30A0884BE327880F80 206336 ----a-w- C:\Windows\System32\framedynos.dll 2014-01-28 22:32:09 704314FD398C81D5F342CAA5DF7B7F21 363008 ----a-w- C:\Windows\System32\wbemcomn.dll 2014-01-28 22:32:08 FF3C5379DE4FD18498C255D096FED3F5 902656 ----a-w- C:\Windows\System32\WMADMOD.DLL 2014-01-28 22:32:08 F99A4D145C862CBAD61B409C0AB0CD65 411648 ----a-w- C:\Windows\System32\wlangpui.dll 2014-01-28 22:32:08 CC88EF08712C08C5F5FE74A395BA25AC 1326592 ----a-w- C:\Windows\System32\wlanpref.dll 2014-01-28 22:32:08 A882CD13F68656CFD657E6639D3D3E17 410112 ----a-w- C:\Windows\System32\wlanui.dll 2014-01-28 22:32:08 6ADA78F0E4BE07CF7C5500778DE8FB7D 351232 ----a-w- C:\Windows\System32\wmicmiplugin.dll 2014-01-28 22:32:08 3CC04CB09FAFAD87942437FDDEE11EE3 247808 ----a-w- C:\Windows\System32\ReAgent.dll 2014-01-28 22:32:08 3C9035085141162416A0DD34DBF3F3C1 428032 ----a-w- C:\Windows\System32\wlanmsm.dll 2014-01-28 22:32:08 2BF84985DE59544A0460BB33F804DA3A 22016 ----a-w- C:\Windows\System32\ReAgentc.exe 2014-01-28 22:32:07 F6FD7F8147A591317E57D9008C8C7541 327680 ----a-w- C:\Windows\System32\wimserv.exe 2014-01-28 22:32:07 DB846EECA70EE9D2E2FF31147C57B0F4 782336 ----a-w- C:\Windows\System32\webservices.dll 2014-01-28 22:32:07 861A80C7DCA93A95327463D7F8C9CE64 406528 ----a-w- C:\Windows\System32\wimgapi.dll 2014-01-28 22:32:07 8126CB6DEA909054E4ECA1F0D55B7579 98304 ----a-w- C:\Windows\System32\fphc.dll 2014-01-28 22:32:06 34EEE0DFAADB4F691D6D5308A51315DC 276992 ----a-w- C:\Windows\System32\wcncsvc.dll 2014-01-28 22:32:05 4634B0EE4098F0F2B972BDAC19A802E7 243712 ----a-w- C:\Windows\System32\audiodev.dll 2014-01-28 22:32:04 E2D56AE1D40E3725084054CD8E9CFBB1 33280 ----a-w- C:\Windows\System32\wiarpc.dll 2014-01-28 22:32:04 E1FB3706030FB4578A0D72C2FC3689E4 463360 ----a-w- C:\Windows\System32\wiaservc.dll 2014-01-28 22:32:04 886B0EAA3B0FE76B3204E687C8DA6F66 3367424 ----a-w- C:\Windows\System32\WinSAT.exe 2014-01-28 22:32:04 4D7B1415719FFCC700118318D86FD7EC 416768 ----a-w- C:\Windows\System32\wiadefui.dll 2014-01-28 22:32:02 CA63BC9F834A42DAA8375FAC76B5CE83 198144 ----a-w- C:\Windows\System32\wpdwcn.dll 2014-01-28 22:32:02 7FF15A4F092CD4A96055BA69F903E3E9 206848 ----a-w- C:\Windows\System32\ws2_32.dll 2014-01-28 22:32:02 7B97346CE563B74BBCC120FC83E5A6D9 738816 ----a-w- C:\Windows\System32\wmpmde.dll 2014-01-28 22:31:56 AF2E7640E72F005DDB86158E1F8BA1FC 109568 ----a-w- C:\Windows\System32\wiavideo.dll 2014-01-28 22:31:55 81C0FA250EF6DC1C6B3FA2BCE81D6C2E 335872 ----a-w- C:\Windows\System32\WinSATAPI.dll 2014-01-28 22:31:55 1B91CD34EA3A90AB6A4EF0550174F4CC 1175040 ----a-w- C:\Windows\System32\WsmSvc.dll 2014-01-28 22:31:46 E5A4A1326A02F8E7B59E6C3270CE7202 47104 ----a-w- C:\Windows\System32\wkscli.dll 2014-01-28 22:31:46 7DF45A1E1A4AAFDEEFF2CA8F8200F37B 350720 ----a-w- C:\Windows\System32\WPDSp.dll 2014-01-28 22:31:45 C3CD30495687C2A2F66A65CA6FD89BE9 453632 ----a-w- C:\Windows\System32\vds.exe 2014-01-28 22:31:45 C335EC1182AC10B188705554E0BC1186 120320 ----a-w- C:\Windows\System32\msvfw32.dll 2014-01-28 22:31:45 59D16C3D5CC0D573256A01783ED5CCB4 2291712 ----a-w- C:\Windows\System32\MSVidCtl.dll 2014-01-28 22:31:45 45DC6C69CE5759666EC758BAD657B040 31744 ----a-w- C:\Windows\System32\msvidc32.dll 2014-01-28 22:31:45 33BEE4A0B2DC34F4A6D01210F7507508 151040 ----a-w- C:\Windows\System32\vdsutil.dll 2014-01-28 22:31:45 209A3B1901B83AEB8527ED211CCE9E4C 1025536 ----a-w- C:\Windows\System32\VSSVC.exe 2014-01-28 22:31:45 13337A3FB17F2242487FD45488ED0485 1128448 ----a-w- C:\Windows\System32\vssapi.dll 2014-01-28 22:31:44 DCEABBA22E12CC44C2E7785C0EB9C6E3 91648 ----a-w- C:\Windows\System32\avifil32.dll 2014-01-28 22:31:44 CF3CD3F466D84C9E2F66490D9578A563 160256 ----a-w- C:\Windows\System32\vdsbas.dll 2014-01-28 22:31:44 A912933C92B9C4C70E9039C0B597AE4E 68608 ----a-w- C:\Windows\System32\WSTPager.ax 2014-01-28 22:31:44 4D6262D5CFFA7D932126D2B85C373F87 153600 ----a-w- C:\Windows\System32\VBICodec.ax 2014-01-28 22:31:44 451E47CF063A37D105A1D2111FD4C4E5 84480 ----a-w- C:\Windows\System32\mciavi32.dll 2014-01-28 22:31:44 3FBBE458FB60D5F38EF5E19F53772088 66560 ----a-w- C:\Windows\System32\cca.dll 2014-01-28 22:31:44 370349F79315D4DB86CD992CACEFEE61 638976 ----a-w- C:\Windows\System32\VAN.dll 2014-01-28 22:31:44 1DE21EC4A2232FF4F5298ADCAE7B3690 82944 ----a-w- C:\Windows\System32\iccvid.dll 2014-01-28 22:31:44 04FAE971A77E76B3F4EF44053AEE0905 13312 ----a-w- C:\Windows\System32\msrle32.dll 2014-01-28 22:31:42 F87D30E72E03D579A5199CCB3831D6EA 119808 ----a-w- C:\Windows\System32\umpo.dll 2014-01-28 22:31:42 F1DD3ACAEE5E6B4BBC69BC6DF75CEF66 811520 ----a-w- C:\Windows\System32\user32.dll 2014-01-28 22:31:42 D83841B6EE406B58461ACE8A6308AA2D 600064 ----a-w- C:\Windows\System32\usercpl.dll 2014-01-28 22:31:42 D15618A0FF8DBC2C5BF3726BACC75A0B 81920 ----a-w- C:\Windows\System32\userenv.dll 2014-01-28 22:31:42 61AC3EFDFACFDD3F0F11DD4FD4044223 26624 ----a-w- C:\Windows\System32\userinit.exe 2014-01-28 22:31:41 F9724B48380FE80D75A3C16280A5D78F 59904 ----a-w- C:\Windows\System32\djoin.exe 2014-01-28 22:31:41 C9708C9F3DBA3DBFB1D2FEE1E9DABAD0 146432 ----a-w- C:\Windows\System32\twext.dll 2014-01-28 22:31:41 B85B0267A743607052263447E6091E8C 2983424 ----a-w- C:\Windows\System32\UIRibbon.dll 2014-01-28 22:31:41 ACA1F50844E08F3F5178E8FF3F21FBC2 78848 ----a-w- C:\Windows\System32\UserAccountControlSettings.dll 2014-01-28 22:31:41 954EA9B34F155C844B11F4047A8F6F89 206848 ----a-w- C:\Windows\System32\upnp.dll 2014-01-28 22:31:41 8DDD47810EE260744BEAA82EFA2DB9BB 47616 ----a-w- C:\Windows\System32\tzutil.exe 2014-01-28 22:31:41 86B9E27CDB040DE1C981BEC2A56326A7 1164800 ----a-w- C:\Windows\System32\UIRibbonRes.dll 2014-01-28 22:31:41 543324F86787BFA31AABBAA7A91D08D0 21504 ----a-w- C:\Windows\System32\TRAPI.dll 2014-01-28 22:31:41 53CA6BF58658815FCB472205291DD953 59392 ----a-w- C:\Windows\System32\unimdmat.dll 2014-01-28 22:31:41 377F0C1DDBFA6A43CB7E7568BC0ECED0 281088 ----a-w- C:\Windows\System32\unimdm.tsp 2014-01-28 22:31:40 D4496F4DC6B90F6915CEB1DB20B44C07 25600 ----a-w- C:\Windows\System32\netiougc.exe 2014-01-28 22:31:40 CAFC0B884E5590B5E80D84F592388B3D 181760 ----a-w- C:\Windows\System32\tcpipcfg.dll 2014-01-28 22:31:40 A42E7748BE906434C5FD17161D168C20 17408 ----a-w- C:\Windows\System32\schedcli.dll 2014-01-28 22:31:40 A04BB13F8A72F8B6E8B4071723E4E336 750592 ----a-w- C:\Windows\System32\schedsvc.dll 2014-01-28 22:31:40 9FC4D46F7BCAD9EE8517171195917776 352768 ----a-w- C:\Windows\System32\termmgr.dll 2014-01-28 22:31:40 96FE583424174CF7926250ED16C4EA01 66048 ----a-w- C:\Windows\System32\w32tm.exe 2014-01-28 22:31:40 672D7C5080ACB003343006405DA2E621 82944 ----a-w- C:\Windows\System32\thumbcache.dll 2014-01-28 22:31:40 64B628C5258625129288F2D0C75268DA 2157568 ----a-w- C:\Windows\System32\themecpl.dll 2014-01-28 22:31:40 5992A9DF57FD5E6960FDCC2DB69867F7 2755072 ----a-w- C:\Windows\System32\themeui.dll 2014-01-28 22:31:40 545BF7EAA24A9E062857D0742EC0B28A 227328 ----a-w- C:\Windows\System32\taskmgr.exe 2014-01-28 22:31:40 544EFF88AC6C85DF5A4D6F18DFE08CFC 505856 ----a-w- C:\Windows\System32\taskschd.dll 2014-01-28 22:31:40 4F2659160AFCCA990305816946F69407 192000 ----a-w- C:\Windows\System32\taskeng.exe 2014-01-28 22:31:40 38CACBEB75E3F85CBF7E65522DFDA1B0 166400 ----a-w- C:\Windows\System32\netiohlp.dll 2014-01-28 22:31:39 E84735F79C272FCEC320A6BED2861475 45568 ----a-w- C:\Windows\System32\g711codc.ax 2014-01-28 22:31:39 D304A5C08E733D694455DC770B86E069 600576 ----a-w- C:\Windows\System32\TabletPC.cpl 2014-01-28 22:31:39 C2EF686098DDABD5851E6BCA2F8620C2 53248 ----a-w- C:\Windows\System32\MultiDigiMon.exe 2014-01-28 22:31:39 8007508CEF6A5B10C24F7971DAF00F09 51200 ----a-w- C:\Windows\System32\takeown.exe 2014-01-28 22:31:39 7717A57C01812C3714BA25B96C36BF39 233472 ----a-w- C:\Windows\System32\taskbarcpl.dll 2014-01-28 22:31:39 613BF4820361543956909043A265C6AC 242176 ----a-w- C:\Windows\System32\tapisrv.dll 2014-01-28 22:31:39 44D647692BEFABB34EA46B34048C0F03 74240 ----a-w- C:\Windows\System32\tabcal.exe 2014-01-28 22:31:39 2097D9A13CDB88213612E3E8479185F5 222208 ----a-w- C:\Windows\System32\wavemsp.dll 2014-01-28 22:31:38 382C804C92811BE57829D8E550A900E2 521216 ----a-w- C:\Windows\System32\termsrv.dll 2014-01-28 22:31:36 9D30A820EAB9C146BB59557CA0236875 186368 ----a-w- C:\Windows\System32\rdpencom.dll 2014-01-28 22:31:36 9B9A0802B4E34CC4D9DB04AB6ABFA8AE 202240 ----a-w- C:\Windows\System32\input.dll 2014-01-28 22:31:36 8371F19E329B6CD650A6A9E9BF41EB2D 213504 ----a-w- C:\Windows\System32\rdpdd.dll 2014-01-28 22:31:36 6A6B2EE4565A178035BE2A4FF6F2C968 40448 ----a-w- C:\Windows\System32\wtsapi32.dll 2014-01-28 22:31:36 4AE380F39A0032EAB7DD953030B26D28 113664 ----a-w- C:\Windows\System32\SessEnv.dll 2014-01-28 22:31:36 292F2FA57EB9B773DA1C15AFCC4A4F90 146944 ----a-w- C:\Windows\System32\remotepg.dll 2014-01-28 22:31:35 FB1BA42D1A1440E99C6B8667E141CFB1 17408 ----a-w- C:\Windows\System32\perfts.dll 2014-01-28 22:31:35 F74737E0EF87295E82EBD0A4B040539A 334336 ----a-w- C:\Windows\System32\wisptis.exe 2014-01-28 22:31:35 D0C94D78DC8652153F020F5B6ACED36F 52224 ----a-w- C:\Windows\System32\rdpd3d.dll 2014-01-28 22:31:35 763FECDC3D30C815FE72DD57936C6CD1 73216 ----a-w- C:\Windows\System32\TabSvc.dll 2014-01-28 22:31:35 2607A85B6466C0110EA8ABB9D8CC83FC 72192 ----a-w- C:\Windows\System32\regapi.dll 2014-01-28 22:31:33 D25958B2A71EF488959272878EF934BE 31744 ----a-w- C:\Windows\System32\utildll.dll 2014-01-28 22:31:33 C5A99A4C0DC9F0F5A95BA0C83D30A549 209920 ----a-w- C:\Windows\System32\mstask.dll 2014-01-28 22:31:33 BD2978E85EF0007A89F7BB1367C007DD 597504 ----a-w- C:\Windows\System32\TSWorkspace.dll 2014-01-28 22:31:33 967C44F54703EE9E16EA288AA42F14C6 57344 ----a-w- C:\Windows\System32\rdpsign.exe 2014-01-28 22:31:33 8D5AAE3F6AEF417EF4DFDB8A3031B877 133632 ----a-w- C:\Windows\System32\tspubwmi.dll 2014-01-28 22:31:33 8AEA9A37C1A3565A204D37C5E72AB791 267776 ----a-w- C:\Windows\System32\lsm.exe 2014-01-28 22:31:33 68B4A549D0B56A4DD9A488751037CF09 1049600 ----a-w- C:\Windows\System32\mstsc.exe 2014-01-28 22:31:33 5505592313B74F2E2C8727837750F66D 173568 ----a-w- C:\Windows\System32\rdpclip.exe 2014-01-28 22:31:33 418E881201583A3039D81F43E39E6C78 156672 ----a-w- C:\Windows\System32\winsta.dll 2014-01-28 22:31:33 326A5BDD4F299EA8B4843BB78F06A6B8 15872 ----a-w- C:\Windows\System32\icaapi.dll 2014-01-28 22:31:33 0435045377BF76438CE5BF385995C699 121856 ----a-w- C:\Windows\System32\RDPENCDD.dll 2014-01-28 22:31:32 BAF28D456E418DC1013F9F38E0EFE8F3 260608 ----a-w- C:\Windows\System32\rdpshell.exe 2014-01-28 22:31:32 A4EDDE0895B8595D5D1F4C9C40E7BB3A 161280 ----a-w- C:\Windows\System32\rdpinit.exe 2014-01-28 22:31:31 F8BD7CBFBFE95CFC8205707A05E0C666 120320 ----a-w- C:\Windows\System32\tssrvlic.dll 2014-01-28 22:31:31 B85B7368F6EC16CE2DF2A87E7EE20F0B 140800 ----a-w- C:\Windows\System32\rdpendp.dll 2014-01-28 22:31:31 6FE596F2DC97F7E1CA292F376C33D3CB 223232 ----a-w- C:\Windows\System32\wksprt.exe 2014-01-28 22:31:31 6C796F88B7D9BF52A45757E2C837185A 21504 ----a-w- C:\Windows\System32\rdprefdrvapi.dll 2014-01-28 22:31:31 56CEED370508F69A1BA04939BD1BADDA 167936 ----a-w- C:\Windows\System32\msutb.dll 2014-01-28 22:31:31 46A8664B446B5ED10DBDEF8B6DE7F648 26624 ----a-w- C:\Windows\System32\RDPREFDD.dll 2014-01-28 22:31:31 409994A8EACEEE4E328749C0353527A0 171008 ----a-w- C:\Windows\System32\umrdp.dll 2014-01-28 22:31:31 337CC9E8EA6F7BE53EB1B200365CE918 22528 ----a-w- C:\Windows\System32\tskill.exe 2014-01-28 22:31:31 1EAEA5605AEB7F5EDA1AA73AE8DBB233 53760 ----a-w- C:\Windows\System32\LSCSHostPolicy.dll 2014-01-28 22:31:30 F88E4A26A7C8112FD1809CAF0F512D27 14848 ----a-w- C:\Windows\System32\query.exe 2014-01-28 22:31:30 D9A93A44116C4FDED67F1F83BC8AE88E 22016 ----a-w- C:\Windows\System32\tsdiscon.exe 2014-01-28 22:31:30 CCC607182821134A38D7A400AE063F73 21504 ----a-w- C:\Windows\System32\tscon.exe 2014-01-28 22:31:30 86472B217C2E96640297B3F719BD7CBF 154624 ----a-w- C:\Windows\System32\tscfgwmi.dll 2014-01-28 22:31:30 795582E10CA3DCF596C01B58FFE3AC28 21504 ----a-w- C:\Windows\System32\qappsrv.exe 2014-01-28 22:31:30 595B73359FD9B724E7981B0989FC274C 15360 ----a-w- C:\Windows\System32\reset.exe 2014-01-28 22:31:30 445B0083337705538690841766921AD1 20992 ----a-w- C:\Windows\System32\chgusr.exe 2014-01-28 22:31:30 37E31A84967F6E5135FF0CFD10BFE487 20992 ----a-w- C:\Windows\System32\shadow.exe 2014-01-28 22:31:30 32A5CC033236E6CC8AAE00B580986C4D 25088 ----a-w- C:\Windows\System32\qprocess.exe 2014-01-28 22:31:30 310AD32D483D4E16A62CDFD52B1C5D7E 22528 ----a-w- C:\Windows\System32\chgport.exe 2014-01-28 22:31:30 2B53A92F4BB168B893C4722F56C2201E 15360 ----a-w- C:\Windows\System32\change.exe 2014-01-28 22:31:30 1CAD25B4E90A2648FDD25F4F00BE3C37 20992 ----a-w- C:\Windows\System32\rwinsta.exe 2014-01-28 22:31:29 E460AFD3A201408919ADB05977095E8D 69632 ----a-w- C:\Windows\System32\tlscsp.dll 2014-01-28 22:31:29 C9FB8C3D650EF8BD76865EC20A19A5BC 252928 ----a-w- C:\Windows\System32\DShowRdpFilter.dll 2014-01-28 22:31:29 8DCB990113DEF9255445B17D7F6DA64A 270848 ----a-w- C:\Windows\System32\tsmf.dll 2014-01-28 22:31:29 835982D4DB80A9CC114E34E34E90E2A0 24576 ----a-w- C:\Windows\System32\msg.exe 2014-01-28 22:31:29 5AA02AB0623B57332A7AF6CB73A9011C 26624 ----a-w- C:\Windows\System32\qwinsta.exe 2014-01-28 22:31:29 4C640D37A9FFD4B92320059951887441 23040 ----a-w- C:\Windows\System32\quser.exe 2014-01-28 22:31:29 1C3E8371377E988B683797A132EFFE1B 305152 ----a-w- C:\Windows\System32\taskcomp.dll 2014-01-28 22:31:29 03A88560EF6B5F746A9AC5BA1C0A36C7 8704 ----a-w- C:\Windows\System32\rdpcfgex.dll 2014-01-28 22:31:28 F1E9A22C1D4F5D3AC7BA555D4E95329C 755200 ----a-w- C:\Windows\System32\sud.dll 2014-01-28 22:31:28 BEFF01C9F044BA2AD7F5FB837972FC90 326656 ----a-w- C:\Windows\System32\sysdm.cpl 2014-01-28 22:31:28 BC080CEA43CB990F28B049742706581F 61952 ----a-w- C:\Windows\System32\spbcd.dll 2014-01-28 22:31:28 A90DC9ABD65DB1A8902F361103029952 103936 ----a-w- C:\Windows\System32\IPHLPAPI.DLL 2014-01-28 22:31:28 A29E036A5A3B37C7530F3EA1CF385129 21504 ----a-w- C:\Windows\System32\lsmproxy.dll 2014-01-28 22:31:28 9D67B55896F679CD6C0FC7EAD0F4BDEA 183296 ----a-w- C:\Windows\System32\PortableDeviceSyncProvider.dll 2014-01-28 22:31:28 919001D2BB17DF06CA3F8AC16AD039F6 380416 ----a-w- C:\Windows\System32\sxs.dll 2014-01-28 22:31:28 912649A1B3F9E6ACB3899FBDABA2ED5F 228352 ----a-w- C:\Windows\System32\stobject.dll 2014-01-28 22:31:28 73869A8A7AF77801387A36CF9B9B5886 198144 ----a-w- C:\Windows\System32\sysclass.dll 2014-01-28 22:31:28 56D80B7E622338AF0F93B25A85D97188 14848 ----a-w- C:\Windows\System32\syssetup.dll 2014-01-28 22:31:28 4AC64014668BB2B4834A66B73406AB63 410624 ----a-w- C:\Windows\System32\systemcpl.dll 2014-01-28 22:31:28 3C519BC7767F41F1C88DB0395F31A817 19968 ----a-w- C:\Windows\System32\spopk.dll 2014-01-28 22:31:28 20A20A911CD79A6F6839167149A05668 159232 ----a-w- C:\Windows\System32\syncui.dll 2014-01-28 22:31:27 CE292C4C10B8DB6070F262EA2733F0DC 189952 ----a-w- C:\Windows\System32\sqmapi.dll 2014-01-28 22:31:27 AD6DB3F85D329ABA90EAF7B2D8A2EEA9 293888 ----a-w- C:\Windows\System32\ssText3d.scr 2014-01-28 22:31:27 971A36C4827AD1AE2A54E6407478921A 172544 ----a-w- C:\Windows\System32\spp.dll 2014-01-28 22:31:27 22DE9DFF5565B00F230EAC0C635DAEB7 254976 ----a-w- C:\Windows\System32\wsqmcons.exe 2014-01-28 22:31:27 13CDD3FF0961A2EC6D9829A1640DD6DC 309760 ----a-w- C:\Windows\System32\sqlcese30.dll 2014-01-28 22:31:26 D64AF876D53ECA3668BB97B51B4E70AB 168960 ----a-w- C:\Windows\System32\srvsvc.dll 2014-01-28 22:31:26 BF7DDBE14FA4B68AAB6A3C78EF5C96B8 52736 ----a-w- C:\Windows\System32\inetmib1.dll 2014-01-28 22:31:26 B47CD1B9551DA3DE9166D6DD17E6FD82 144768 ----a-w- C:\Windows\System32\basecsp.dll 2014-01-28 22:31:26 89E783711AF91AF09E1EF30EF3107446 9728 ----a-w- C:\Windows\System32\sscore.dll 2014-01-28 22:31:26 6357E2B68753A1F5CF4A68A25C4FD14A 51712 ----a-w- C:\Windows\System32\wsnmp32.dll 2014-01-28 22:31:26 5CCDCD40E732D54E0F7451AC66AC1C87 90112 ----a-w- C:\Windows\System32\srvcli.dll 2014-01-28 22:31:26 39C3CDE5BFA5D95661712258EDFE5F17 697344 ----a-w- C:\Windows\System32\SmiEngine.dll 2014-01-28 22:31:26 3379984F13BDC0F26783E3E0C678ED5C 46592 ----a-w- C:\Windows\System32\WavDest.dll 2014-01-28 22:31:26 319C6B309773D063541D01DF8AC6F55F 67584 ----a-w- C:\Windows\System32\certprop.dll 2014-01-28 22:31:25 FAA05DD44E5DF264AEBE3F03BA4211BB 35840 ----a-w- C:\Windows\System32\shimgvw.dll 2014-01-28 22:31:25 F44CCA639625EC735667BD8B8E523A33 19456 ----a-w- C:\Windows\System32\sisbkup.dll 2014-01-28 22:31:25 E9B7D9BBD3E78E7DD053A5108B7649AC 428544 ----a-w- C:\Windows\System32\shwebsvc.dll 2014-01-28 22:31:25 CFD8B8537036CF35F6254192997A4D8E 20992 ----a-w- C:\Windows\System32\shgina.dll 2014-01-28 22:31:25 8CC3C111D653E96F3EA1590891491D71 350208 ----a-w- C:\Windows\System32\shlwapi.dll 2014-01-28 22:31:25 414DA952A35BF5D50192E28263B40577 328192 ----a-w- C:\Windows\System32\shsvcs.dll 2014-01-28 22:31:25 0A8E209F3C1D1FB6889465D1019CC5BF 10752 ----a-w- C:\Windows\System32\shunimpl.dll 2014-01-28 22:31:24 5E6E37DC2EFE39EC146271E22A16844F 111104 ----a-w- C:\Windows\System32\shsetup.dll 2014-01-28 22:31:23 F14A9B1778376D0B1788E402AC1F831A 108032 ----a-w- C:\Windows\System32\shacct.dll 2014-01-28 22:31:23 E98A08E70C15D6371AFEEB802227228D 202240 ----a-w- C:\Windows\System32\unattend.dll 2014-01-28 22:31:23 1BE1A0487946F64AF5D2946AD1ECD596 103936 ----a-w- C:\Windows\System32\setupcl.exe 2014-01-28 22:31:23 10FB16B50AFFDA6D44588F3C445DC273 1667584 ----a-w- C:\Windows\System32\setupapi.dll 2014-01-28 22:31:22 97BAF1DE66F886D8292AED040B8CC281 179200 ----a-w- C:\Windows\System32\ActionQueue.dll 2014-01-28 22:31:22 8C545F6F1BA83C15B8B02EE4AA62FF11 270336 ----a-w- C:\Windows\System32\sethc.exe 2014-01-28 22:31:22 3F5A4F3A11EAA28DCD5C85C06C09D853 115712 ----a-w- C:\Windows\System32\setupcln.dll 2014-01-28 22:31:22 283E4E276D023DC20E7C9F8DFB4A3204 253952 ----a-w- C:\Windows\System32\spwizui.dll 2014-01-28 22:31:20 E178A1BD78441E08ACA10F6AF4B88F6E 327168 ----a-w- C:\Windows\System32\nltest.exe 2014-01-28 22:31:20 D0804290B30C58652724344365C89D12 280576 ----a-w- C:\Windows\System32\spreview.exe 2014-01-28 22:31:20 CF87A1DE791347E75B98885214CED2B8 3179520 ----a-w- C:\Windows\System32\sppsvc.exe 2014-01-28 22:31:20 A8CDF3768604FF95B54669E20053D569 51712 ----a-w- C:\Windows\System32\wscapi.dll 2014-01-28 22:31:20 6FEC7B9A76B41D9AC67615A3040017F5 196096 ----a-w- C:\Windows\System32\vaultsvc.dll 2014-01-28 22:31:20 669E18322F05A14356E8F6DA16D15DA0 933376 ----a-w- C:\Windows\System32\Vault.dll 2014-01-28 22:31:20 23E9DCEE1D2BBA23EA5B50F76F633A0A 456192 ----a-w- C:\Windows\System32\spinstall.exe 2014-01-28 22:31:19 E3AE23569749DE12D45BA3B489A036AE 193536 ----a-w- C:\Windows\System32\sppcomapi.dll 2014-01-28 22:31:19 D861EB4D6719D6738270E6A376B87F18 325632 ----a-w- C:\Windows\System32\slui.exe 2014-01-28 22:31:19 D29E45078CF4020CE0AAC82EC652D1EA 65024 ----a-w- C:\Windows\System32\TSpkg.dll 2014-01-28 22:31:19 B0180B20B065D89232A78A40FE56EAA6 53760 ----a-w- C:\Windows\System32\sppuinotify.dll 2014-01-28 22:31:19 8E4B58E12B3FA65ED1462846906E0B59 121344 ----a-w- C:\Windows\System32\sppc.dll 2014-01-28 22:31:19 5A220C5CFC74AB3C2517D1F1B670D5D3 100864 ----a-w- C:\Windows\System32\sppinst.dll 2014-01-28 22:31:19 4E5FE39C1076D115EC8BFCFE14D75B80 17408 ----a-w- C:\Windows\System32\credssp.dll 2014-01-28 22:31:19 4C1E16B9A53102C8D6FBA587CBCB95DE 257024 ----a-w- C:\Windows\System32\msv1_0.dll 2014-01-28 22:31:19 457C561BA80E02F1230DD0B87DA770A9 61952 ----a-w- C:\Windows\System32\manage-bde.exe 2014-01-28 22:31:19 19F75D71E4256F5113D64CE2BB66B838 14336 ----a-w- C:\Windows\System32\slwga.dll 2014-01-28 22:31:18 EB1A79442F10C6768E5B92D5868CF81B 175104 ----a-w- C:\Windows\System32\fvecpl.dll 2014-01-28 22:31:18 E6D90DC604F407B3B5E0FD285E46B2A0 271664 ----a-w- C:\Windows\System32\fveapi.dll 2014-01-28 22:31:18 6581B52E133CC6D00661C58968C7E212 646144 ----a-w- C:\Windows\System32\SearchFolder.dll 2014-01-28 22:31:18 5EFDBEAECD69E250E5BA4A2950203CD4 1131008 ----a-w- C:\Windows\System32\sdclt.exe 2014-01-28 22:31:18 5C18CD22BE4628865FCB63337A6E5EF6 10429 ----a-w- C:\Windows\System32\ScavengeSpace.xml 2014-01-28 22:31:18 3E63222185341DCB8EEEDB8E2761EE6F 246272 ----a-w- C:\Windows\System32\scansetting.dll 2014-01-28 22:31:18 3B28814B74E898750A139FA4CBDFDCF7 907776 ----a-w- C:\Windows\System32\sdengin2.dll 2014-01-28 22:31:18 2003E9B15E1C502B146DAD2E383AC1E3 179712 ----a-w- C:\Windows\System32\schtasks.exe 2014-01-28 22:31:18 08236C4BCE5EDD0A0318A438AF28E0F7 125952 ----a-w- C:\Windows\System32\sdrsvc.dll 2014-01-28 22:31:17 421D9645B72CD341ECDBB0FCE06C97DE 974336 ----a-w- C:\Windows\System32\sppobjs.dll 2014-01-28 22:31:16 CE61B59CE4FC335A46A7D016C3AB2F59 126464 ----a-w- C:\Windows\System32\BdeHdCfg.exe 2014-01-28 22:31:16 8124944EC89D6A1815E4E53F5B96AAF4 175616 ----a-w- C:\Windows\System32\scecli.dll 2014-01-28 22:31:14 CA1870CDB1052F33B05E338F2B326A3D 57344 ----a-w- C:\Windows\System32\repair-bde.exe 2014-01-28 22:31:14 716A8BB33CE8EA28D57FC3050D8C027F 428032 ----a-w- C:\Windows\System32\secproc.dll 2014-01-28 22:31:14 23FBEA5DCE05E2A848483A9AB6256E9E 322048 ----a-w- C:\Windows\System32\RMActivate.exe 2014-01-28 22:31:10 CACE16598662D697169B3B1EF2FA4549 85504 ----a-w- C:\Windows\System32\secproc_ssp.dll 2014-01-28 22:31:10 B2120B16B3E221B4D3342E87867A5163 280064 ----a-w- C:\Windows\System32\RMActivate_ssp.exe 2014-01-28 22:31:09 FD4C4F9EC7D6D23E282F9375B4029AE5 118784 ----a-w- C:\Windows\System32\uxlib.dll 2014-01-28 22:31:09 B8CBB46B42570D373C9933FBDF25EBCE 146852 ----a-w- C:\Windows\System32\systemsf.ebd 2014-01-28 22:31:09 B5842E6BCD0CFDCA40795EEB33042E4E 423936 ----a-w- C:\Windows\System32\secproc_isv.dll 2014-01-28 22:31:09 49E29F981428DA9FA5FC264E0A7C8935 327168 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-01-28 22:31:09 3F0BB313E64983FF701D43C930530AC7 7680 ----a-w- C:\Windows\System32\spwizres.dll 2014-01-28 22:31:09 36650D618CA34C9D357DFD3D89B2C56F 1159168 ----a-w- C:\Windows\System32\sysmain.dll 2014-01-28 22:31:09 1EB40CEBF58C2983497A77442B99B2D0 352768 ----a-w- C:\Windows\System32\spwizeng.dll 2014-01-28 22:31:08 E2864DF592832883151A8D5500A7EAAA 257024 ----a-w- C:\Windows\System32\srrstr.dll 2014-01-28 22:31:08 B7A7EFA6DBB68401CFAB1C4252FD3257 316416 ----a-w- C:\Windows\System32\sharemediacpl.dll 2014-01-28 22:31:08 44F5C1CF70AC8F7239F3B3667E58697A 65024 ----a-w- C:\Windows\System32\CertPolEng.dll 2014-01-28 22:31:07 9419ABF3163B6F0E3AD3DD2B381C879F 134656 ----a-w- C:\Windows\System32\WinSCard.dll 2014-01-28 22:31:07 250AA41DE690561AF1282D598914564C 307712 ----a-w- C:\Windows\System32\scesrv.dll 2014-01-28 22:31:06 2BC3BA232E46F310BEDF9A14260AD650 85504 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll 2014-01-28 22:31:06 199D8ECB6748B2B866CBA52A8D092034 278016 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-01-28 22:31:05 3A11396EAC2414012155AB14E5C1E332 412160 ----a-w- C:\Windows\System32\sppwinob.dll 2014-01-28 22:31:04 D44741F65A1D71F65814A12CF6E2400A 50688 ----a-w- C:\Windows\System32\runonce.exe 2014-01-28 22:31:04 B5506B451BFE7148ECA7056BDA2970BD 8704 ----a-w- C:\Windows\System32\riched32.dll 2014-01-28 22:31:04 A2718532AFF3B0F9C73D3034A1511F50 139264 ----a-w- C:\Windows\System32\rpchttp.dll 2014-01-28 22:31:04 87095E9BA2A172685897F1D4AFE35E91 182784 ----a-w- C:\Windows\System32\RelPost.exe 2014-01-28 22:31:04 831319977C168FFCF4E9ABB83A992F80 220672 ----a-w- C:\Windows\System32\Ribbons.scr 2014-01-28 22:31:04 5997D769CDB108390DCFAEBF442BF816 46080 ----a-w- C:\Windows\System32\RpcRtRemote.dll 2014-01-28 22:31:04 39B9273CA01364E115B464416CFB729B 98816 ----a-w- C:\Windows\System32\Robocopy.exe 2014-01-28 22:31:04 102CF6879887BBE846A00C459E6D4ABC 473600 ----a-w- C:\Windows\System32\riched20.dll 2014-01-28 22:31:03 D8B2F66671C13C4C2F22FE3A588945F8 271360 ----a-w- C:\Windows\System32\iprtrmgr.dll 2014-01-28 22:31:03 B2E1E4A16EDD02396F451F915FA3CBFA 69632 ----a-w- C:\Windows\System32\rastapi.dll 2014-01-28 22:31:03 7635B6502882E4B1713F049FD8FD2EA4 210432 ----a-w- C:\Windows\System32\recdisc.exe 2014-01-28 22:31:03 6944501ED659F2C835F8DD16182C9330 372224 ----a-w- C:\Windows\System32\rastls.dll 2014-01-28 22:31:03 2DAF758E7C15886DD2424F77F488759A 135680 ----a-w- C:\Windows\System32\recovery.dll 2014-01-28 22:31:02 D56D2F498713BD66F50763D5285F4F38 268800 ----a-w- C:\Windows\System32\mprddm.dll 2014-01-28 22:31:02 CB9E04DC05EACF5B9A36CA276D475006 286208 ----a-w- C:\Windows\System32\rasmans.dll 2014-01-28 22:31:02 80B562B5B59ED850C328DD75F964F3D8 242176 ----a-w- C:\Windows\System32\vpnike.dll 2014-01-28 22:31:02 67F9B5C7E215B48F9256757E9CC09A7B 176640 ----a-w- C:\Windows\System32\rasppp.dll 2014-01-28 22:31:02 5845B1C54380FB980F68024B3A8B1E66 25600 ----a-w- C:\Windows\System32\vpnikeapi.dll 2014-01-28 22:31:02 207CF171B1C6B8AE50C1FBF87363EEBC 318976 ----a-w- C:\Windows\System32\raschap.dll 2014-01-28 22:31:02 0915C4DB6DBC3BB9E11B7ECBBE4B7159 37376 ----a-w- C:\Windows\System32\rtutils.dll 2014-01-28 22:31:02 00263CA2071DC9A6EE577EB356B0D1D9 84992 ----a-w- C:\Windows\System32\cmstp.exe 2014-01-28 22:31:01 B78AF77C0F1627969DAB04E17870618C 11776 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll 2014-01-28 22:31:01 B292EBE345B14B66E17E5F36CEF7209C 7680 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe 2014-01-28 22:31:01 A04C06A2142226D79DDA75920A496243 80896 ----a-w- C:\Windows\System32\RDVGHelper.exe 2014-01-28 22:31:01 1D3198205747685AAC2EED0B3BCD38C3 33280 ----a-w- C:\Windows\System32\TsUsbGDCoInstaller.dll 2014-01-28 22:30:59 C236A8735A48B165A2A7724357DBE332 105559 ----a-w- C:\Windows\System32\RacRules.xml 2014-01-28 22:30:59 B350525D71B42CF9366AF7443BBA21E6 341504 ----a-w- C:\Windows\System32\msdrm.dll 2014-01-28 22:30:59 198366199A9F342EF87978D79308B49F 1115136 ----a-w- C:\Windows\System32\RacEngn.dll 2014-01-28 22:30:58 F059EB4C9C256F62F196EAA439E28F74 155136 ----a-w- C:\Windows\System32\hgprint.dll 2014-01-28 22:30:58 E56C4703D0D9B476EF6195AD22C2ACC0 35328 ----a-w- C:\Windows\System32\pifmgr.dll 2014-01-28 22:30:58 D8868258E3F26B40ECB8E945C2DA8BD9 142336 ----a-w- C:\Windows\System32\powercfg.cpl 2014-01-28 22:30:58 866A43013535DC8587C258E43579C764 317440 ----a-w- C:\Windows\System32\spoolsv.exe 2014-01-28 22:30:58 55CDE81B9FD8E234C4E00E4EEE919406 115712 ----a-w- C:\Windows\System32\sppnp.dll 2014-01-28 22:30:58 50AF423CC8915B0010F0A96BF78672E9 116736 ----a-w- C:\Windows\System32\prncache.dll 2014-01-28 22:30:58 3925944734DFC5D2253F3DC5923F797D 441856 ----a-w- C:\Windows\System32\powercpl.dll 2014-01-28 22:30:58 2E77BAB79F078654782F83F0A0AEFE31 28672 ----a-w- C:\Windows\System32\proquota.exe 2014-01-28 22:30:58 12C45E3CB6D65F73209549E2D02ECA7A 988160 ----a-w- C:\Windows\System32\propsys.dll 2014-01-28 22:30:57 E82CEFE0D2F98651D556E2437163486B 389632 ----a-w- C:\Windows\System32\sysmon.ocx 2014-01-28 22:30:57 DC661CF87F2501A8B8D9628C006AA3BD 157184 ----a-w- C:\Windows\System32\perfmon.exe 2014-01-28 22:30:57 BFDC1FE9B277779E3263B0B2A9DC3E0D 766464 ----a-w- C:\Windows\System32\wpccpl.dll 2014-01-28 22:30:57 8BCF1DCE05F4494C8891F33EEA450D0A 1227776 ----a-w- C:\Windows\System32\wdc.dll 2014-01-28 22:30:57 7B47059ADEA2983C073562DD40F3FD73 46592 ----a-w- C:\Windows\System32\pdhui.dll 2014-01-28 22:30:57 59079D4288FF7175758E838A489DD992 295424 ----a-w- C:\Windows\System32\photowiz.dll 2014-01-28 22:30:57 0BD483CECD8DAC86E04347589ADC71EE 444928 ----a-w- C:\Windows\System32\wvc.dll 2014-01-28 22:30:57 0BA4982FE2C21D3D4A68B81FB25474D7 413696 ----a-w- C:\Windows\System32\PhotoScreensaver.scr 2014-01-28 22:30:57 013CB5286ABB32259349AD858087068C 600576 ----a-w- C:\Windows\System32\PerfCenterCPL.dll 2014-01-28 22:30:56 EB6C16CE0163AD282E95FCE5EE9BA518 66048 ----a-w- C:\Windows\System32\PrintBrmUi.exe 2014-01-28 22:30:56 D27DDE7E0444C7F1819F958469EB7D93 126464 ----a-w- C:\Windows\System32\inetpp.dll 2014-01-28 22:30:56 C8333F1F77A1B2E25F2202E892CAF634 395264 ----a-w- C:\Windows\System32\prnfldr.dll 2014-01-28 22:30:56 C06A8EB439D3451DF15828FF1CB7D0F8 209920 ----a-w- C:\Windows\System32\PkgMgr.exe 2014-01-28 22:30:56 A557563260FD041F6CFA5C296918104E 61440 ----a-w- C:\Windows\System32\PnPUnattend.exe 2014-01-28 22:30:56 A399514D3B28C9A3453A486BBAAFF1C7 189952 ----a-w- C:\Windows\System32\wdscore.dll 2014-01-28 22:30:56 9E4B0E7472B4CEBA9E17F440B8CB0AB8 320000 ----a-w- C:\Windows\System32\winspool.drv 2014-01-28 22:30:56 9DF9B31EAC1669F244C02B61F10D123A 932352 ----a-w- C:\Windows\System32\printui.dll 2014-01-28 22:30:56 89F5770AD1E9D9CEF93D00303135EC33 297472 ----a-w- C:\Windows\System32\ntprint.dll 2014-01-28 22:30:56 487F44B08EFEAF5AD087878357B9403D 236544 ----a-w- C:\Windows\System32\pdh.dll 2014-01-28 22:30:56 414BBA67A3DED1D28437EB66AEB8A720 1508864 ----a-w- C:\Windows\System32\pla.dll 2014-01-28 22:30:56 2C098921217204301D76BF3BD5D953BB 34304 ----a-w- C:\Windows\System32\unlodctr.exe 2014-01-28 22:30:55 909C11946AC04EA54A98C97792DC3C18 324608 ----a-w- C:\Windows\System32\puiobj.dll 2014-01-28 22:30:55 03CF941D031F30272D3063E5A4D686F5 32768 ----a-w- C:\Windows\System32\PrintIsolationProxy.dll 2014-01-28 22:30:52 D683E64BB0D3AE0FDEB5BCC4EC04FACE 51200 ----a-w- C:\Windows\System32\PushPrinterConnections.exe 2014-01-28 22:30:52 0FC7E6C8DFB1052F121638485A675761 120320 ----a-w- C:\Windows\System32\prntvpt.dll 2014-01-28 22:30:49 F748F53FE09D21D8ECBB6421E6792024 199168 ----a-w- C:\Windows\System32\onex.dll 2014-01-28 22:30:49 B4D3BDF863B81BF84658396666CF7200 197632 ----a-w- C:\Windows\System32\ocsetup.exe 2014-01-28 22:30:49 A77E0E5B15E6956C19E7269566ABE6C7 1111552 ----a-w- C:\Windows\System32\onexui.dll 2014-01-28 22:30:49 8F64E5E1CE1F7E0F76D66BB0C7E2221F 109568 ----a-w- C:\Windows\System32\CscMig.dll 2014-01-28 22:30:49 703FFD301AB900B047337C5D40FD6F96 90112 ----a-w- C:\Windows\System32\olepro32.dll 2014-01-28 22:30:49 4A6554C141450D2B6AA6DE17A298AEDA 218112 ----a-w- C:\Windows\System32\OnLineIDCpl.dll 2014-01-28 22:30:49 3EC541C196DE18ED9A0D0AC82A694D4C 418816 ----a-w- C:\Windows\System32\cscui.dll 2014-01-28 22:30:49 15F93B37F6801943360D9EB42485D5D3 546304 ----a-w- C:\Windows\System32\cscsvc.dll 2014-01-28 22:30:49 1274A7FD37E2DA781282CEE1D2131374 174592 ----a-w- C:\Windows\System32\ocsetapi.dll 2014-01-28 22:30:48 CF4274CEEA9F7791FB7FC40A066BC2C7 139264 ----a-w- C:\Windows\System32\cscobj.dll 2014-01-28 22:30:48 57A51217581614DE07F30E34D6BB4993 23040 ----a-w- C:\Windows\System32\cscdll.dll 2014-01-28 22:30:48 465BEA35F7ED4A4A57686DEA7EA10F47 34816 ----a-w- C:\Windows\System32\cscapi.dll 2014-01-28 22:30:48 088CF5B6380FB9002F2A4246F812225D 67584 ----a-w- C:\Windows\System32\asycfilt.dll 2014-01-28 22:30:47 D7B7159BC8374E87D8C45A30377A3440 69120 ----a-w- C:\Windows\System32\ntlanman.dll 2014-01-28 22:30:47 03783D0840B2C54D7665248425C74417 53600 ----a-w- C:\Windows\System32\dosx.exe 2014-01-28 22:30:46 EA72CAE0FFA2D86522888320ADE6B33E 2130944 ----a-w- C:\Windows\System32\networkmap.dll 2014-01-28 22:30:46 5E3830EE3282A53920E00784FEC44CFD 98304 ----a-w- C:\Windows\System32\nslookup.exe 2014-01-28 22:30:46 5ABBEF3B5984C29BD9D7CB1C7F35B323 1644032 ----a-w- C:\Windows\System32\netcenter.dll 2014-01-28 22:30:46 3D57FFBAD3ED16B63DE3879BAB0FB56F 1661440 ----a-w- C:\Windows\System32\networkexplorer.dll 2014-01-28 22:30:45 EAB975DB4C2805927FE5BD047D05C9AA 2494464 ----a-w- C:\Windows\System32\netshell.dll 2014-01-28 22:30:45 E62AA52713617C1F402829EBF79653AB 175616 ----a-w- C:\Windows\System32\netplwiz.dll 2014-01-28 22:30:45 E343CABBD8D600ABAF3F11625D33B3D0 161792 ----a-w- C:\Windows\System32\netjoin.dll 2014-01-28 22:30:45 3D6F22551D422F97AACB0BB927E4C846 1750528 ----a-w- C:\Windows\System32\pnidui.dll 2014-01-28 22:30:45 20B3934DB73EABA2B49B7177873CB81F 22528 ----a-w- C:\Windows\System32\netutils.dll 2014-01-28 22:30:45 1E2BAC209D184BB851E1A187D8A29136 494592 ----a-w- C:\Windows\System32\BFE.DLL 2014-01-28 22:30:44 71C39495C1BC7C3979B4CFAF59B1265B 25600 ----a-w- C:\Windows\System32\netcfg.exe 2014-01-28 22:30:44 45D9F6CD2469CDB6A640DD4BD2B01471 78848 ----a-w- C:\Windows\System32\nci.dll 2014-01-28 22:30:44 33CDDA42E768A997827CC480EC13DAD5 60928 ----a-w- C:\Windows\System32\ncryptui.dll 2014-01-28 22:30:44 2041012726EF7C95ED51C15C56545A7F 142336 ----a-w- C:\Windows\System32\net1.exe 2014-01-28 22:30:44 1FF7E4F548C7C372C804938F0D5B36AE 406528 ----a-w- C:\Windows\System32\netcfgx.dll 2014-01-28 22:30:44 02C25A63D58FC12DEA8FA4ECDB832CC0 24064 ----a-w- C:\Windows\System32\netbtugc.exe 2014-01-28 22:30:43 8B57A1AD493653BB57F281FE75DD175B 801280 ----a-w- C:\Windows\System32\NaturalLanguage6.dll 2014-01-28 22:30:23 F65D14471F76F9C91315352932408939 99328 ----a-w- C:\Windows\System32\QSVRMGMT.DLL 2014-01-28 22:30:23 BD626EF05967D14C772B8096292731A3 80896 ----a-w- C:\Windows\System32\QUTIL.DLL 2014-01-28 22:30:23 34391196FE00480C9ADBFBE215B6B28C 167936 ----a-w- C:\Windows\System32\QSHVHOST.DLL 2014-01-28 22:30:23 196B4E3F4CCCC24AF836CE58FACBB699 71168 ----a-w- C:\Windows\System32\KMSVC.DLL 2014-01-28 22:30:22 B1603F0A972B94927B8EF5F04DF11855 400896 ----a-w- C:\Windows\System32\ipsmsnap.dll 2014-01-28 22:30:21 4EA584FCC419E66E9ADCEEAE0B0A7301 122880 ----a-w- C:\Windows\System32\iasrecst.dll 2014-01-28 22:30:21 404B123E9460395E3A7338B12C681B92 346112 ----a-w- C:\Windows\System32\nshipsec.dll 2014-01-28 22:30:20 EB9B8B2C75FFC489F57E16794FD41215 78848 ----a-w- C:\Windows\System32\iasacct.dll 2014-01-28 22:30:20 C6FA3CBF5C6BD7B9BCB63441C6D67EA7 225792 ----a-w- C:\Windows\System32\netdiagfx.dll 2014-01-28 22:30:20 9E122E5CD1BB79CF8F0BCEAC947B81C0 68096 ----a-w- C:\Windows\System32\napdsnap.dll 2014-01-28 22:30:20 925AE681543B4E666E172B5BD7E45B32 71680 ----a-w- C:\Windows\System32\QCLIPROV.DLL 2014-01-28 22:30:20 61D57A5D7C6D9AFE10E77DAE6E1B445E 330240 ----a-w- C:\Windows\System32\QAGENTRT.DLL 2014-01-28 22:30:20 186147C89867B66CB02667D4037C7550 172032 ----a-w- C:\Windows\System32\iasrad.dll 2014-01-28 22:30:20 02530B0B7E048DD5AC8D52DAEACAEB2B 171520 ----a-w- C:\Windows\System32\QAGENT.DLL 2014-01-28 22:30:17 D15880276D208AF03521B8F922C1F3B5 221184 ----a-w- C:\Windows\System32\Mystify.scr 2014-01-28 22:30:17 53946B69BA0836BD95B03759530C81EC 350208 ----a-w- C:\Windows\System32\IPSECSVC.DLL 2014-01-28 22:30:17 5232D090B7540F90E9BF6DDC2EBB5CA2 220672 ----a-w- C:\Windows\System32\mcbuilder.exe 2014-01-28 22:30:17 50BB4FBC720D23497EEB5C9DAC497405 136192 ----a-w- C:\Windows\System32\mydocs.dll 2014-01-28 22:30:16 DC190EB70C5C15BB087F893D6E77E5C6 226304 ----a-w- C:\Windows\System32\MSAC3ENC.DLL 2014-01-28 22:30:16 D4191EFAB91E00FC09257AA5EBAF503B 158720 ----a-w- C:\Windows\System32\mprapi.dll 2014-01-28 22:30:16 CCA67BD391CFC9F036323B2522887A6A 101376 ----a-w- C:\Windows\System32\mobsync.exe 2014-01-28 22:30:16 CBBD4D79EEC3EF5A4ADAE9697944C6B9 830464 ----a-w- C:\Windows\System32\MSMPEG2ENC.DLL 2014-01-28 22:30:16 A00075951E38A73FE2F9D8384311710A 233984 ----a-w- C:\Windows\System32\msconfig.exe 2014-01-28 22:30:16 938F39B50BAFE13D6F58C7790682C010 34304 ----a-w- C:\Windows\System32\msasn1.dll 2014-01-28 22:30:16 5F2122888583347C9B81724CF169EFC6 303104 ----a-w- C:\Windows\System32\msinfo32.exe 2014-01-28 22:30:16 3A16EA01FCFAAB40882DB5BFEE632322 592384 ----a-w- C:\Windows\System32\msftedit.dll 2014-01-28 22:30:16 2DDEA2C345DA5BC589EFD398F220DB0E 2146304 ----a-w- C:\Windows\System32\SyncCenter.dll 2014-01-28 22:30:15 E8CB091A918C1C687B087389D9A66B39 2202624 ----a-w- C:\Windows\System32\SensorsCpl.dll 2014-01-28 22:30:15 BFEBB6F76A0988A38260870C61A6D1B7 196608 ----a-w- C:\Windows\System32\mfreadwrite.dll 2014-01-28 22:30:15 9204A9C716B7B4AA451010DEDB0BB5BE 176128 ----a-w- C:\Windows\System32\MFPlay.dll 2014-01-28 22:30:15 71D5EBEFC617B84E1136F3F0E07A88F5 296448 ----a-w- C:\Windows\System32\mfds.dll 2014-01-28 22:30:15 53E054880ADBB856ECE6EB10EDBB8A32 905216 ----a-w- C:\Windows\System32\mmsys.cpl 2014-01-28 22:30:15 243974EC02F7AE49E4179C54624143AB 213504 ----a-w- C:\Windows\System32\MMDevAPI.dll 2014-01-28 22:30:14 AB9EB3745B03AE67AB241A82338DEA7B 954288 ----a-w- C:\Windows\System32\mfc40u.dll 2014-01-28 22:30:14 2A6C1373D88B6D5933383B9F5C034CB9 954752 ----a-w- C:\Windows\System32\mfc40.dll 2014-01-28 22:30:13 5CF15474FFDB5005E54958DF6EDD97AB 507392 ----a-w- C:\Windows\System32\wmdrmdev.dll 2014-01-28 22:30:13 41A2EEB3FC7C4677787C612478DBD69A 436736 ----a-w- C:\Windows\System32\wmdrmnet.dll 2014-01-28 22:30:12 0F416E23DD2EB4DEBE70608020CFD283 2504192 ----a-w- C:\Windows\System32\WMVCORE.DLL 2014-01-28 22:30:11 E9C7D94D71857409BF741F1B7561D0E6 105472 ----a-w- C:\Windows\System32\wmpshell.dll 2014-01-28 22:30:11 B86FB49A715157C49E2C7205E1817012 182272 ----a-w- C:\Windows\System32\wmpsrcwp.dll 2014-01-28 22:30:10 80C5342074711F098A00F71FFF262B3B 1624064 ----a-w- C:\Windows\System32\WMPEncEn.dll 2014-01-28 22:30:10 3F2B83695E5BF11930C16AF50E991F96 144384 ----a-w- C:\Windows\System32\wmpps.dll 2014-01-28 22:30:10 3B91EA6DC3AE6088C880AB9073A833C2 352256 ----a-w- C:\Windows\System32\wmpeffects.dll 2014-01-28 22:30:09 F645EF77ED0735B927E9804E28855E17 299520 ----a-w- C:\Windows\System32\wmpdxm.dll 2014-01-28 22:30:09 12C1BBE5B01F554DC2FA3225131E2D2B 1003008 ----a-w- C:\Windows\System32\WMNetMgr.dll 2014-01-28 22:30:08 394117608EB031E622D4812E67746F09 616960 ----a-w- C:\Windows\System32\wmdrmsdk.dll 2014-01-28 22:30:07 EA2B00551F3E7B3D5F7FB730A55F8246 743424 ----a-w- C:\Windows\System32\blackbox.dll 2014-01-28 22:30:07 CB9EF09B4BF03F8DE663B3F55D61A8E9 265216 ----a-w- C:\Windows\System32\msnetobj.dll 2014-01-28 22:30:07 510B493DF0DD669E60879B6B19E9B949 504320 ----a-w- C:\Windows\System32\msscp.dll 2014-01-28 22:30:07 2708C75F1A7FA45403383C7E43A82A81 402944 ----a-w- C:\Windows\System32\drmmgrtn.dll 2014-01-28 22:29:59 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\System32\msdxm.ocx 2014-01-28 22:29:59 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\System32\dxmasf.dll 2014-01-28 22:29:59 0A4A970D997125C7E8A06D72C20369FB 8192 ----a-w- C:\Windows\System32\spwmp.dll 2014-01-28 22:29:58 FDBA1DEC4F9BE4274A00B9B850C63484 3207680 ----a-w- C:\Windows\System32\mf.dll 2014-01-28 22:29:58 3206ADC4D06BB764C9A4936C8E22708C 266752 ----a-w- C:\Windows\System32\MediaMetadataHandler.dll 2014-01-28 22:29:56 FCA71F6230075CD687189AC29AB06945 665600 ----a-w- C:\Windows\System32\AuxiliaryDisplayCpl.dll 2014-01-28 22:29:56 BA2B249CD7C8CE15E1A8D69ECAEE5FA3 516096 ----a-w- C:\Windows\System32\main.cpl 2014-01-28 22:29:56 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\System32\mapistub.dll 2014-01-28 22:29:56 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\System32\mapi32.dll 2014-01-28 22:29:55 82FA3C4C5752C7F630FA39005B2FC8C8 520064 ----a-w- C:\Windows\System32\mcupdate_GenuineIntel.dll 2014-01-28 22:29:55 6EC16BBD14906A59EA8A9A3F71B7F9AD 101888 ----a-w- C:\Windows\System32\migisol.dll 2014-01-28 22:29:55 6E2C504C11A2D0B3820EDAF66E6DF06B 40960 ----a-w- C:\Windows\System32\odbcconf.dll 2014-01-28 22:29:55 604409A90F3962C1CC05276ADBFE233C 170496 ----a-w- C:\Windows\System32\PresentationSettings.exe 2014-01-28 22:29:55 1A1C4782E9C4110BDD0DBD5052D91383 112128 ----a-w- C:\Windows\System32\AuxiliaryDisplayServices.dll 2014-01-28 22:29:54 E783DE1447EC0EED7B768BB69705D8E3 84480 ----a-w- C:\Windows\System32\kstvtune.ax 2014-01-28 22:29:54 4470B0943469C4AF5B114E420DCB1AEF 778240 ----a-w- C:\Windows\System32\sqlsrv32.dll 2014-01-28 22:29:54 3D97D200A1449F3995E88BEA8F7D0C81 48640 ----a-w- C:\Windows\System32\ksxbar.ax 2014-01-28 22:29:54 373A87DBFD387DDC54375F547834FBBD 33792 ----a-w- C:\Windows\System32\vbisurf.ax 2014-01-28 22:29:52 B5FFA9977015ED3E1B2C3FF266A1BEB9 941568 ----a-w- C:\Windows\System32\mblctr.exe 2014-01-28 22:29:52 0B5FED26EA8686163591F2609DEF5C89 727040 ----a-w- C:\Windows\System32\mcmde.dll 2014-01-28 22:29:51 7D34AF98A706230CC2DEDFE0CABF87AB 573440 ----a-w- C:\Windows\System32\odbc32.dll 2014-01-28 22:29:51 653CF8E759C4B13C5507B70BD383F158 2151936 ----a-w- C:\Windows\System32\mmcndmgr.dll 2014-01-28 22:29:51 4D05BDE56A7116B744B04192173A0122 132608 ----a-w- C:\Windows\System32\MdSched.exe 2014-01-28 22:29:51 0AEE06C1CB1123AE2C9873908DB59BAF 176128 ----a-w- C:\Windows\System32\msorcl32.dll 2014-01-28 22:29:50 C2DF5544931944AE00C59A0B3080EBFE 41984 ----a-w- C:\Windows\System32\luainstall.dll 2014-01-28 22:29:50 73CB55D2E8099D24FD077C990FFE3DDB 220672 ----a-w- C:\Windows\System32\defaultlocationcpl.dll 2014-01-28 22:29:49 D2A937964199F647B1C3BC435712E5D9 11776 ----a-w- C:\Windows\System32\nrpsrv.dll 2014-01-28 22:29:49 A8BB45F9ECAD993461E0FEF8E2A99152 269824 ----a-w- C:\Windows\System32\Wldap32.dll 2014-01-28 22:29:49 A3901CD2E276484003C2944F78BEB80E 477696 ----a-w- C:\Windows\System32\lpksetup.exe 2014-01-28 22:29:29 EEE470F2A771FC0B543BDEEF74FCECA0 73216 ----a-w- C:\Windows\System32\msiexec.exe 2014-01-28 22:29:29 DFEC71402D544893908744E4863DC969 337408 ----a-w- C:\Windows\System32\msihnd.dll 2014-01-28 22:29:29 D35F4DFF5D7B3D6503CF9888B833C801 69120 ----a-w- C:\Windows\System32\nlsbres.dll 2014-01-28 22:29:29 7BD10646253ED4F6FD361279181362E7 70656 ----a-w- C:\Windows\System32\MuiUnattend.exe 2014-01-28 22:29:29 630A31F277349109299E590856A4B004 107008 ----a-w- C:\Windows\System32\Kswdmcap.ax 2014-01-28 22:29:29 3FE9A20ECA67745948FD536F8A9E00D9 86528 ----a-w- C:\Windows\System32\isoburn.exe 2014-01-28 22:29:29 21CE1E98A17FD46BE371719DFD046958 11264 ----a-w- C:\Windows\System32\wshirda.dll 2014-01-28 22:29:29 0FE24BD8E67F3A6757A5D193A7A9B287 345088 ----a-w- C:\Windows\System32\intl.cpl 2014-01-28 22:29:29 00F48A9D03F672F7EBE601FFA9BB6F28 219648 ----a-w- C:\Windows\System32\iTVData.dll 2014-01-28 22:29:26 8E8C92DD50F6B34907813AFDC0C8F7DD 2522624 ----a-w- C:\Windows\System32\dbgeng.dll 2014-01-28 22:29:26 53223B673A3FA2F9A4D1C31C8D3F6CD8 854016 ----a-w- C:\Windows\System32\dbghelp.dll 2014-01-28 22:29:26 4A8E2F20809CC161107FAA94F6CF2685 118272 ----a-w- C:\Windows\System32\imm32.dll 2014-01-28 22:29:26 41EE23F636C6E9BDE5E8C09454CBEEFD 430080 ----a-w- C:\Windows\System32\imkr80.ime 2014-01-28 22:29:26 2D11BC8B460957E62E4420373A0D8BDA 392192 ----a-w- C:\Windows\System32\imapi2.dll 2014-01-28 22:29:21 7F8678C59F188528D60104E697C2361E 481792 ----a-w- C:\Windows\System32\mscms.dll 2014-01-28 22:29:19 8711853E43B65F5CA1CCD48980BC6A22 7168 ----a-w- C:\Windows\System32\kbdlk41a.dll 2014-01-28 22:29:14 E615582BCA38987368E5598BD114A6BC 6144 ----a-w- C:\Windows\System32\KBDINHIN.DLL 2014-01-28 22:29:14 E2F6200309179812F1EC40245F988C15 6144 ----a-w- C:\Windows\System32\KBDBULG.DLL 2014-01-28 22:29:14 9CA1705E2EBFE63F2E92628415934960 6656 ----a-w- C:\Windows\System32\KBDSF.DLL 2014-01-28 22:29:14 86EA2C61BCEC344195AE33B995CAB9C3 6656 ----a-w- C:\Windows\System32\KBDGKL.DLL 2014-01-28 22:29:14 86B58589C695702E05395D4E34D9D39D 6144 ----a-w- C:\Windows\System32\KBDUGHR1.DLL 2014-01-28 22:29:14 357B990A4249D7F7485B230C0CC8825A 6144 ----a-w- C:\Windows\System32\KBDUS.DLL 2014-01-28 22:29:14 035074DAEB2333A248FD9C6B88AD16CD 11264 ----a-w- C:\Windows\System32\C_ISCII.DLL 2014-01-28 22:29:13 F7BAA05246D68845641DF85D2D4B77AA 6656 ----a-w- C:\Windows\System32\KBDTUQ.DLL 2014-01-28 22:29:13 F533E1EA22FB9B1426010D285BFDD7D4 6144 ----a-w- C:\Windows\System32\KBDINORI.DLL 2014-01-28 22:29:13 E097726A556E584EE8CEF98FCD848033 6656 ----a-w- C:\Windows\System32\KBDTUF.DLL 2014-01-28 22:29:13 DD3524C9B0EC264BF74B4C5A84891D76 7168 ----a-w- C:\Windows\System32\KBDCZ1.DLL 2014-01-28 22:29:13 D3BFA17457E5EAB5B7DABEDA21961183 6656 ----a-w- C:\Windows\System32\KBDINBEN.DLL 2014-01-28 22:29:13 CDD67E0C0E3205CD00F5CD56E4DC9104 7168 ----a-w- C:\Windows\System32\KBDSG.DLL 2014-01-28 22:29:13 C42D1CE706C54875A6A4BBAD0429288C 6144 ----a-w- C:\Windows\System32\KBDBASH.DLL 2014-01-28 22:29:13 BDEB4A838DA1E2D9C9631298FA3D58C5 6144 ----a-w- C:\Windows\System32\KBDTURME.DLL 2014-01-28 22:29:13 BD5B1737FDE2FF7AD036FADE1CAC4D0D 6144 ----a-w- C:\Windows\System32\KBDBLR.DLL 2014-01-28 22:29:13 B566E8F3EB5953722E11D113285E0ACB 6656 ----a-w- C:\Windows\System32\KBDNEPR.DLL 2014-01-28 22:29:13 A92149941A0D6A0A14AC116245E1E08F 6144 ----a-w- C:\Windows\System32\KBDINMAR.DLL 2014-01-28 22:29:13 A02691FF3AA0763CF4E312DF56A7AC50 6656 ----a-w- C:\Windows\System32\KBDPO.DLL 2014-01-28 22:29:13 98F657555DD1C1A30362927DF8FBB266 28672 ----a-w- C:\Windows\System32\iscsium.dll 2014-01-28 22:29:13 93132CE66FC74818B4FD32E13C24C4BB 6656 ----a-w- C:\Windows\System32\KBDGR1.DLL 2014-01-28 22:29:13 911DA311FF63B6F91D2BD05EFED9756A 6144 ----a-w- C:\Windows\System32\KBDINKAN.DLL 2014-01-28 22:29:13 7B3FD36359DE5D2EE49D213CCAD13427 22528 ----a-w- C:\Windows\System32\elsTrans.dll 2014-01-28 22:29:13 566925A00B8F439D6155F023E9494DEB 6144 ----a-w- C:\Windows\System32\KBDTAJIK.DLL 2014-01-28 22:29:13 48DC9C2926AAE98D9E3FE14570180246 6144 ----a-w- C:\Windows\System32\KBDMON.DLL 2014-01-28 22:29:13 4542DED3177F52CF075565987885EB0D 144896 ----a-w- C:\Windows\System32\iscsicli.exe 2014-01-28 22:29:13 3174AA5D2A5BCDF4DB378FC0C24B08A9 6144 ----a-w- C:\Windows\System32\KBDMAORI.DLL 2014-01-28 22:29:13 11DB22E2FBAC2854DAA7541B16E11F41 6144 ----a-w- C:\Windows\System32\KBDINTEL.DLL 2014-01-28 22:29:13 0DEDC0314F3EB8C0253A88D72A73E019 6144 ----a-w- C:\Windows\System32\KBDLT1.DLL 2014-01-28 22:29:13 0CCB0C66DCD24A742CFBC06CD49EBD0D 5632 ----a-w- C:\Windows\System32\KBDGEO.DLL 2014-01-28 22:29:13 05477A526F6EAF10952DC63FFCED6609 6144 ----a-w- C:\Windows\System32\KBDINTAM.DLL 2014-01-28 22:29:09 7A82634C75F5CD12EFCF43897A2E28CE 732160 ----a-w- C:\Windows\System32\imapi2fs.dll 2014-01-28 22:29:08 DBC02D918FFF1CAD628ACBE0C0EAA8E8 165376 ----a-w- C:\Windows\System32\provsvc.dll 2014-01-28 22:29:08 C7952D0A4C43A965A1741916BB134751 312832 ----a-w- C:\Windows\System32\hgcpl.dll 2014-01-28 22:29:08 8CD1DEE212E52B9C22E66DBA44991D32 34816 ----a-w- C:\Windows\System32\httpapi.dll 2014-01-28 22:29:08 7319102526BD11B45FD66335CF90CA12 22528 ----a-w- C:\Windows\System32\HotStartUserAgent.dll 2014-01-28 22:29:08 6658F4404DE03D75FE3BA09F7ABA6A30 194560 ----a-w- C:\Windows\System32\ListSvc.dll 2014-01-28 22:29:08 100733DAEA508929EDDF1A3A3B7324CE 158720 ----a-w- C:\Windows\System32\itircl.dll 2014-01-28 22:29:07 CFE599FA85D52F82327FA8C549AD9296 66560 ----a-w- C:\Windows\System32\hbaapi.dll 2014-01-28 22:29:07 9A39A2A5F443A756C568C6ED5748AFE4 744448 ----a-w- C:\Windows\System32\ActionCenter.dll 2014-01-28 22:29:07 54DEFF61C4E6AF1581DA2F236154BA4C 537600 ----a-w- C:\Windows\System32\ActionCenterCPL.dll 2014-01-28 22:29:07 1BF0D4727FDB437D513CFF8A9359C050 194432 ----a-w- C:\Windows\System32\halmacpi.dll 2014-01-28 22:29:07 1BF0D4727FDB437D513CFF8A9359C050 194432 ----a-w- C:\Windows\System32\hal.dll 2014-01-28 22:29:07 0A2DFF70EB5210C4F7D4954A317E9B04 137088 ----a-w- C:\Windows\System32\halacpi.dll 2014-01-28 22:28:51 E897EAF5ED6BA41E081060C9B447A673 593408 ----a-w- C:\Windows\System32\gpsvc.dll 2014-01-28 22:28:49 F68878CF6A7EA29EACEAD49A268FC447 339968 ----a-w- C:\Windows\System32\appmgr.dll 2014-01-28 22:28:49 1ECF8CD26AF7D9555C5B09CC2BDF51EF 584192 ----a-w- C:\Windows\System32\gpprefcl.dll 2014-01-28 22:28:46 5862A867BB6228D427CB784F610662F7 438272 ----a-w- C:\Windows\System32\AdmTmpl.dll 2014-01-28 22:28:46 342E7165807B7C0BC9E810F3A9E2527E 464896 ----a-w- C:\Windows\System32\scrptadm.dll 2014-01-28 22:28:45 9996103F8A650BDB3586C9AAE1101912 42496 ----a-w- C:\Windows\System32\ftp.exe 2014-01-28 22:28:45 69C81451DCE63069A036FBF646A86996 828928 ----a-w- C:\Windows\System32\fontext.dll 2014-01-28 22:28:42 B70B2E022318E7EF942EEAC7126E6972 124416 ----a-w- C:\Windows\System32\fde.dll 2014-01-28 22:28:42 737AFC772243C75E6AD17A7A8E8E23F9 93696 ----a-w- C:\Windows\System32\fms.dll 2014-01-28 22:28:42 6F241D9C35D157A376003CDEF2E26CAE 59904 ----a-w- C:\Windows\System32\fdeploy.dll 2014-01-28 22:28:42 6B140B1382F1FE04BA57B196AEB19725 109056 ----a-w- C:\Windows\System32\t2embed.dll 2014-01-28 22:28:42 5F8B3561CD7024C0F488A2E43434AE22 13312 ----a-w- C:\Windows\System32\muifontsetup.dll 2014-01-28 22:28:42 18F02C555FBC9885DF9DB77754D6BB9B 62976 ----a-w- C:\Windows\System32\findstr.exe 2014-01-28 22:28:41 AE9898D5600A232CD8AE3298692162E5 230912 ----a-w- C:\Windows\System32\clusapi.dll 2014-01-28 22:28:41 967EA5B213E9984CBE270205DF37755B 523264 ----a-w- C:\Windows\System32\FXSSVC.exe 2014-01-28 22:28:41 82A9C6ADDCC4D392293AF15C09192DEC 148992 ----a-w- C:\Windows\System32\ifsutil.dll 2014-01-28 22:28:41 6468512559971A92A66E2AA08AC8BA61 430080 ----a-w- C:\Windows\System32\FXSTIFF.dll 2014-01-28 22:28:41 2AF094C822BD6094F14A8E85FB51D52A 71168 ----a-w- C:\Windows\System32\resutils.dll 2014-01-28 22:28:41 126F8331BD023178C7F0EF2F5EDE16B3 39424 ----a-w- C:\Windows\System32\FXSMON.dll 2014-01-28 22:28:40 82E7ECE9096EEACB2EAC5644FE19A6F2 346624 ----a-w- C:\Windows\System32\untfs.dll 2014-01-28 22:28:38 E2A17BCC08D92F42E08AF6BA2F93ABA7 1493504 ----a-w- C:\Windows\System32\ExplorerFrame.dll 2014-01-28 22:28:38 590D5C506044FE02FF7643E32FF9BDAC 381440 ----a-w- C:\Windows\System32\wer.dll 2014-01-28 22:28:38 53AF1750FD45DDD705C9B68C7DC58827 488448 ----a-w- C:\Windows\System32\evr.dll 2014-01-28 22:28:38 4DAD175C07B982A1518FE64FDBB7071A 28672 ----a-w- C:\Windows\System32\WerFaultSecure.exe 2014-01-28 22:28:38 241E015DD809CFB23242F890B1FC575B 1086976 ----a-w- C:\Windows\System32\wevtsvc.dll 2014-01-28 22:28:38 1E8D06AAE74FED674C1156B3FEA911C2 320512 ----a-w- C:\Windows\System32\Faultrep.dll 2014-01-28 22:28:38 1869BD251211FB6275067372A45682D6 1063936 ----a-w- C:\Windows\System32\werconcpl.dll 2014-01-28 22:28:38 050A774CF85E04EE4387515994B8455D 288256 ----a-w- C:\Windows\System32\eudcedit.exe 2014-01-28 22:28:37 EAC4B0A0900CB391BBD48FC0A0E58C7F 414208 ----a-w- C:\Windows\System32\mspbda.dll 2014-01-28 22:28:37 26EF8C37B8D58E98EE49F0DA81E77283 417792 ----a-w- C:\Windows\System32\msdri.dll 2014-01-28 22:28:37 1060D60CCA69A8136A87DBE3C8F4A467 128512 ----a-w- C:\Windows\System32\EhStorAPI.dll 2014-01-28 22:28:34 BFB9EE8EE977EFE85D1A3105ABEF6DD1 68096 ----a-w- C:\Windows\System32\Mcx2Svc.dll 2014-01-28 22:28:33 3F6D9269E7B3A754B1C2F8533DC7F318 205312 ----a-w- C:\Windows\System32\efscore.dll 2014-01-28 22:28:32 477B711EBF491226FA40301290F66BAC 312168 ----a-w- C:\Windows\System32\MCEWMDRMNDBootstrap.dll 2014-01-28 22:28:31 9B9EF57993ECC02CE7469F3F3AC3CE10 242176 ----a-w- C:\Windows\System32\eapp3hst.dll 2014-01-28 22:28:31 9A892B3439884C62B04718F0303A49E9 222208 ----a-w- C:\Windows\System32\eapphost.dll 2014-01-28 22:28:31 6DB7ECBA34165ACB99A1A3C7F739E757 94208 ----a-w- C:\Windows\System32\eappgnui.dll 2014-01-28 22:28:30 ABA2AAA6F31EE934A76C87B537515EC6 1400320 ----a-w- C:\Windows\System32\DxpTaskSync.dll 2014-01-28 22:28:29 ADDB05C93272A62606599B24730BD645 399872 ----a-w- C:\Windows\System32\DXP.dll 2014-01-28 22:28:29 1078F4A06BE5DACDC8429215ADAE8104 630784 ----a-w- C:\Windows\System32\DXPTaskRingtone.dll 2014-01-28 22:28:28 ED04627EF998D04182C00ECD211FACBD 323072 ----a-w- C:\Windows\System32\drvstore.dll 2014-01-28 22:28:28 97D7CC94EEA6EBB6B928EA3DD91A2A0C 196608 ----a-w- C:\Windows\System32\dskquoui.dll 2014-01-28 22:28:28 8FBE98499ADC541C63BB10B722DA00D4 333824 ----a-w- C:\Windows\System32\dot3ui.dll 2014-01-28 22:28:28 366BA8FB4B7BB7435E3B9EACB3843F67 214016 ----a-w- C:\Windows\System32\dot3svc.dll 2014-01-28 22:28:28 0CE0812F2BDFED908FB1066AD4B868C7 115200 ----a-w- C:\Windows\System32\dot3msm.dll 2014-01-28 22:28:28 04B88428A872390D235BE52D38A9D4EF 91136 ----a-w- C:\Windows\System32\dot3api.dll 2014-01-28 22:28:27 B06B2FEC249F48C4E7F628B689859AC7 82432 ----a-w- C:\Windows\System32\dot3cfg.dll 2014-01-28 22:28:26 BF1EAD0561F37CEA65F76DD276F90E04 276480 ----a-w- C:\Windows\System32\diskraid.exe 2014-01-28 22:28:26 7DC1FABD139B6AE5743C5DF75EEC5958 109056 ----a-w- C:\Windows\System32\dnscmmc.dll 2014-01-28 22:28:26 2C60338287CB0AEC009D0B48CEA864D2 133632 ----a-w- C:\Windows\System32\diskpart.exe 2014-01-28 22:28:26 14558D849EC14160AC3DACD8AC36E10A 1040384 ----a-w- C:\Windows\System32\Display.dll 2014-01-28 22:28:25 6EF5F3F18413C367195F06E503AB86A6 1828352 ----a-w- C:\Windows\System32\d3d9.dll 2014-01-28 22:28:24 AA5F3F417DF0F470D67A7862451EA8E1 36352 ----a-w- C:\Windows\System32\mciqtz32.dll 2014-01-28 22:28:24 92DF43A9CDD39C67F2B2D2F98799E086 283136 ----a-w- C:\Windows\System32\qdv.dll 2014-01-28 22:28:24 382BDDDE3438F9A65935ABC6B3F76D1B 70656 ----a-w- C:\Windows\System32\amstream.dll 2014-01-28 22:28:24 24498D084FAA7A459C91066EC241E1CE 56832 ----a-w- C:\Windows\System32\vfwwdm32.dll 2014-01-28 22:28:23 CC5BF60E9D3F181C0B62AC91AD8634B8 190976 ----a-w- C:\Windows\System32\qcap.dll 2014-01-28 22:28:23 A54E92AE753D4BC63FE71F010F76EF04 206848 ----a-w- C:\Windows\System32\qasf.dll 2014-01-28 22:28:23 7069AAB8536F29ED7323140973A2894B 30720 ----a-w- C:\Windows\System32\msdmo.dll 2014-01-28 22:28:22 3E158EB9DC295CA3EF8D1F1EF57ABEDD 1188864 ----a-w- C:\Windows\System32\DiagCpl.dll 2014-01-28 22:28:22 245F4691314F42D4D1BC06442F0B2086 551424 ----a-w- C:\Windows\System32\samsrv.dll 2014-01-28 22:28:21 E9E01EB683C132F7FA27CD607B8A2B63 254464 ----a-w- C:\Windows\System32\dhcpcore.dll 2014-01-28 22:28:21 6D666983C638F5E507C4A11AED1291CC 30208 ----a-w- C:\Windows\System32\dsauth.dll 2014-01-28 22:28:21 5DC6DBFC22911C58FD2C9208A9756021 211456 ----a-w- C:\Windows\System32\DevicePairingFolder.dll 2014-01-28 22:28:20 824E84AC88AC9F82D772960657E094D1 113152 ----a-w- C:\Windows\System32\setupugc.exe 2014-01-28 22:28:20 2A39F32E0067CBF221611FE1FA8C6D8F 484864 ----a-w- C:\Windows\System32\DeviceCenter.dll 2014-01-28 22:28:20 0C0DF0F05BAEA320FA301F34E256E08B 257024 ----a-w- C:\Windows\System32\dpx.dll 2014-01-28 22:28:20 079D12BFED9E3E03D02A44BAF8FFA3A9 128000 ----a-w- C:\Windows\System32\desk.cpl 2014-01-28 22:28:19 FB036244DBD2FADC225AD8650886B641 586752 ----a-w- C:\Windows\System32\dfrgui.exe 2014-01-28 22:28:18 C140F86932B5B61F54A4D836E2D34AB2 193536 ----a-w- C:\Windows\System32\ksproxy.ax 2014-01-28 22:28:18 69C85737F4CA5634E7A19B818579D176 210432 ----a-w- C:\Windows\System32\dxdiagn.dll 2014-01-28 22:28:17 754AFC50022C95DA7C86B7020DB78136 97280 ----a-w- C:\Windows\System32\dwmredir.dll 2014-01-28 22:28:17 68ECCA523ED760AAFC03C5D587569859 51200 ----a-w- C:\Windows\System32\samcli.dll 2014-01-28 22:28:16 AC32AF909111561893E42E8EC89C5532 1027584 ----a-w- C:\Windows\System32\IMJP10.IME 2014-01-28 22:28:10 D30117DB43F48C4DBA9B41C08156A339 22528 ----a-w- C:\Windows\System32\msyuv.dll 2014-01-28 22:28:10 665AAD05AEE9E37A7A9BAEDCAC775989 12288 ----a-w- C:\Windows\System32\tsbyuv.dll 2014-01-28 22:28:10 55663BED58AEDDE8ADE37A582CD8380C 50176 ----a-w- C:\Windows\System32\iyuv_32.dll 2014-01-28 22:28:10 497E59D9F01C6F247E72222A61835119 1371136 ----a-w- C:\Windows\System32\dwmcore.dll 2014-01-28 22:27:59 8EC04CA86F1D68DA9E11952EB85973D6 144384 ----a-w- C:\Windows\System32\dps.dll 2014-01-28 22:27:54 573EF199073CE66169B4A8166EB8581B 429056 ----a-w- C:\Windows\System32\localsec.dll 2014-01-28 22:27:52 28CA821606669BB9215CE010767720FA 1003520 ----a-w- C:\Windows\System32\cryptui.dll 2014-01-28 22:27:47 B81E879AE660F9D244FC20EC8A26783E 42496 ----a-w- C:\Windows\System32\mimefilt.dll 2014-01-28 22:27:47 09D786401F6CA6AEB16B2811B169F944 679424 ----a-w- C:\Windows\System32\autoconv.exe 2014-01-28 22:27:46 67BCB4490E9C7307E39C150CC09BEF9A 117248 ----a-w- C:\Windows\System32\netid.dll 2014-01-28 22:27:46 37485CC09B7E6E70093A4DF62B3CC744 1160192 ----a-w- C:\Windows\System32\OpcServices.dll 2014-01-28 22:27:45 D1DE1EAFDE97BE41CF6585027FF3E732 485888 ----a-w- C:\Windows\System32\comdlg32.dll 2014-01-28 22:27:45 AD7B9C14083B52BC532FBA5948342B98 302592 ----a-w- C:\Windows\System32\cmd.exe 2014-01-28 22:27:44 C43580971DE309516BAFC30DE736C147 1066496 ----a-w- C:\Windows\System32\msdtctm.dll 2014-01-28 22:27:44 B21B85E60DA18D7D338599D95D4CB211 77824 ----a-w- C:\Windows\System32\olethk32.dll 2014-01-28 22:27:43 928CF7268086631F54C3D8E17238C6DD 1414144 ----a-w- C:\Windows\System32\ole32.dll 2014-01-28 22:27:43 7660F01D3B38ACA1747E397D21D790AF 376832 ----a-w- C:\Windows\System32\rpcss.dll 2014-01-28 22:27:42 1319CD4619E96B156911CA3897563EBC 690680 ----a-w- C:\Windows\System32\ci.dll 2014-01-28 22:27:38 60B7C0FEAD45F2066E5B805A91F4F0FC 776192 ----a-w- C:\Windows\System32\calc.exe 2014-01-28 22:27:38 41E215F560028DBAA897DEAEF8390A7A 132608 ----a-w- C:\Windows\System32\cabview.dll 2014-01-28 22:27:37 9C8E9CAAF237E8CD8BEBDE700AAFF9E0 1712640 ----a-w- C:\Windows\System32\xpsservices.dll 2014-01-28 22:27:37 7A6986DD659B96398A11AF5173892715 73216 ----a-w- C:\Windows\System32\cabinet.dll 2014-01-28 22:27:37 61B1ED5F429EFAC7E2036769870AB93E 342016 ----a-w- C:\Windows\System32\certcli.dll 2014-01-28 22:27:36 ECF036299AA554B5E0455262857B39D0 863744 ----a-w- C:\Windows\System32\diagperf.dll 2014-01-28 22:27:29 8A244E6F8004A421359812C3FC55AE1B 135168 ----a-w- C:\Windows\System32\XpsRasterService.dll 2014-01-28 22:27:29 63B282FB2550893724647A359BA2323F 1363456 ----a-w- C:\Windows\System32\Query.dll 2014-01-28 22:27:28 8483DD8F87DBE86AAB55BBF95C207061 320512 ----a-w- C:\Windows\System32\mtxclu.dll 2014-01-28 22:27:27 34BEF0783E17E760BE6DBEFB888A94B8 1555456 ----a-w- C:\Windows\System32\certmgr.dll 2014-01-28 22:27:25 775C41C2F2EF3DD150A7444B95E631D0 878592 ----a-w- C:\Windows\System32\Bubbles.scr 2014-01-28 22:27:24 E3D5E244807AD655787FCD25477CC1BC 692736 ----a-w- C:\Windows\System32\bthprops.cpl 2014-01-28 22:27:24 AC122407B29378FF9646F03404AC7C54 36352 ----a-w- C:\Windows\System32\wshbth.dll 2014-01-28 22:27:23 F977BE7B8C5462087374364EAFB3C15B 10752 ----a-w- C:\Windows\System32\browseui.dll 2014-01-28 22:27:23 CF13841F9F2B231F0DF974425888B89A 2217856 ----a-w- C:\Windows\System32\bootres.dll 2014-01-28 22:27:21 B243C97C4F5292CADB71E850DA7FEB1D 52736 ----a-w- C:\Windows\System32\BlbEvents.dll 2014-01-28 22:27:21 691E3285E53DCA558E1A84667F13E15A 1203200 ----a-w- C:\Windows\System32\wbengine.exe 2014-01-28 22:27:20 0552A8684BF7566F744D5B19FF6AEC6B 19456 ----a-w- C:\Windows\System32\bitsperf.dll 2014-01-28 22:27:19 E585445D5021971FAE10393F0F1C3961 585728 ----a-w- C:\Windows\System32\qmgr.dll 2014-01-28 22:27:19 0920B14AA67A8B04ACF48FFE7C6F0927 186368 ----a-w- C:\Windows\System32\bitsadmin.exe 2014-01-28 22:27:18 E4343C7233EF714435231A85F11677D7 428032 ----a-w- C:\Windows\System32\biocpl.dll 2014-01-28 22:27:17 E24BB41C4EFC309A14709FC127A3B847 750080 ----a-w- C:\Windows\System32\sdcpl.dll 2014-01-28 22:27:17 DAB748AE0439955ED2FA22357533DDDB 44032 ----a-w- C:\Windows\System32\basesrv.dll 2014-01-28 22:27:17 D65645E5E9858EB60C3CF06848DD328D 146944 ----a-w- C:\Windows\System32\bcdboot.exe 2014-01-28 22:27:17 67C1B58706B47EEBA4E117AC197289E6 740864 ----a-w- C:\Windows\System32\batmeter.dll 2014-01-28 22:27:16 E1068D2D6D4D3465E7C0CB4B2F08F9F5 508904 ----a-w- C:\Windows\System32\winload.exe 2014-01-28 22:27:16 6ED76824354C47C0B227ED38DEC89800 133632 ----a-w- C:\Windows\System32\bcdsrv.dll 2014-01-28 22:27:16 16F9DE9F9D122DBE0B6E7F28AFE3EE04 442720 ----a-w- C:\Windows\System32\winresume.exe 2014-01-28 22:27:10 F1F2AD1C3A9BEF7AC914FDA714BC7879 50176 ----a-w- C:\Windows\System32\setbcdlocale.dll 2014-01-28 22:27:10 9473C7BDD77A204C0BB70B467740D326 295424 ----a-w- C:\Windows\System32\bcdedit.exe 2014-01-28 22:27:08 CC0C2CF2EBD58234C45C5D0C046ABB79 28160 ----a-w- C:\Windows\System32\AzSqlExt.dll 2014-01-28 22:27:08 2F6C94BA73C976FAF939358D84E653E9 762880 ----a-w- C:\Windows\System32\azroles.dll 2014-01-28 22:27:07 DFA05B91BA331F7407F5F50EEAA9E2B2 146944 ----a-w- C:\Windows\System32\autoplay.dll 2014-01-28 22:27:07 A475B7BB0CCCFD848AA26075E81D7888 658944 ----a-w- C:\Windows\System32\autofmt.exe 2014-01-28 22:27:07 6E30D02AAC9CAC84F421622E3A2F6178 88064 ----a-w- C:\Windows\System32\AxInstSv.dll 2014-01-28 22:27:06 F88A52EB62019D6A62FDD9E08034DBD8 668160 ----a-w- C:\Windows\System32\autochk.exe 2014-01-28 22:27:06 5BAC1C3853E2D1F3F65CBB578228A268 314368 ----a-w- C:\Windows\System32\azroleui.dll 2014-01-28 22:27:04 D5AEFAD57C08349A4393D987DF7C715D 194048 ----a-w- C:\Windows\System32\winmm.dll 2014-01-28 22:27:04 CE3B4E731638D2EF62FCB419BE0D39F0 473600 ----a-w- C:\Windows\System32\audiosrv.dll 2014-01-28 22:27:04 2CFA4569350B7F84F815E9EC34E85766 220160 ----a-w- C:\Windows\System32\SndVolSSO.dll 2014-01-28 22:27:04 2305BFF2966D73694972FD7531BC5BAA 314368 ----a-w- C:\Windows\System32\SndVol.exe 2014-01-28 22:27:03 F68194F74350D4A2ADE98961E33F884C 100864 ----a-w- C:\Windows\System32\audiodg.exe 2014-01-28 22:27:03 C940F2F5C60B3727C5F18840735B229C 195584 ----a-w- C:\Windows\System32\AudioSes.dll 2014-01-28 22:27:03 8EC00CCCBB3436D534FC8DA85FF943BF 649216 ----a-w- C:\Windows\System32\appwiz.cpl 2014-01-28 22:26:58 D2958325C1AE1AE37A83334C6229E3BC 309760 ----a-w- C:\Windows\System32\actxprxy.dll 2014-01-28 22:26:58 45C0DF404182850C21749AF7763C095F 3727872 ----a-w- C:\Windows\System32\accessibilitycpl.dll 2014-01-28 22:26:55 F0016853FA3F38F55FD868FF74C0359B 31744 ----a-w- C:\Windows\System32\wdiasqmmodule.dll 2014-01-28 22:26:53 D205C24A9D069049FE2DF2A1B38726A7 172032 ----a-w- C:\Windows\System32\wdmaud.drv 2014-01-28 22:26:53 C262B132CF3790405A9AC8C5B18847A1 302592 ----a-w- C:\Windows\System32\aeinv.dll 2014-01-28 22:26:53 B57053CD59114D36952461EE638D3784 45568 ----a-w- C:\Windows\System32\acppage.dll 2014-01-28 22:26:53 3E709F7BFA217CD3B6FC338780465E20 186880 ----a-w- C:\Windows\System32\adsldp.dll 2014-01-28 22:26:53 27A81A5FEB2ACF01D406EFE153E95D4C 321536 ----a-w- C:\Windows\System32\aepdu.dll 2014-01-28 22:26:52 2A3557DD3913F8D7CC5A5703083424D8 119808 ----a-w- C:\Windows\System32\aitagent.exe 2014-01-28 22:26:52 1C20F53017D9ADBE40B6826FE81FF47C 292864 ----a-w- C:\Windows\System32\WindowsAnytimeUpgradeResults.exe 2014-01-28 22:26:51 521B748A7F9923302CA18B7E6AA2EEAE 202752 ----a-w- C:\Windows\System32\activeds.dll 2014-01-28 22:26:50 863F793D15B4026B1A5FDECA873D4D84 295936 ----a-w- C:\Windows\System32\apphelp.dll 2014-01-28 22:26:46 918379B6C94AA59F567E06FB4E0E5E1B 685056 ----a-w- C:\Windows\System32\dsuiext.dll 2014-01-28 22:26:46 674B0C0F6A448EB185CAAB9C51D44032 301568 ----a-w- C:\Windows\System32\srchadmin.dll 2014-01-28 22:26:45 468D6989581E6AEA75DE74D4B3722CC3 859648 ----a-w- C:\Windows\System32\OobeFldr.dll 2014-01-28 22:23:37 98295660D97F3089FA9745FB95109185 26432 ----a-w- C:\Windows\System32\nitrolocalmon.dll 2014-01-28 22:23:37 85FEE10AA03618AE056A71CB2BB72E66 17728 ----a-w- C:\Windows\System32\nitrolocalui.dll 2014-01-28 20:46:53 BDF4F4DB2AEFC3AE41F481810D1F1549 335478 ----a-w- C:\Windows\System32\perfi010.dat 2014-01-28 20:46:53 B1F6278EC9E27F016DAFF4BADD4D5544 32166 ----a-w- C:\Windows\System32\perfd00D.dat 2014-01-28 20:46:53 9D5F2E64A46B8DF64B5954788C278D2F 68896 ----a-w- C:\Windows\System32\perfc00D.dat 2014-01-28 20:46:53 462519A6822AE0D531708E9424181AC5 229316 ----a-w- C:\Windows\System32\perfi00D.dat 2014-01-28 20:46:53 12DA04CDBE83EE420B808E11803CB062 353324 ----a-w- C:\Windows\System32\perfh00D.dat 2014-01-28 20:46:52 C6DFE5419580CD897A4B0EE82C43E4F6 126946 ----a-w- C:\Windows\System32\perfc010.dat 2014-01-28 20:46:52 AC54C5C17319157C9A71C3A36F8D347B 688910 ----a-w- C:\Windows\System32\perfh010.dat 2014-01-28 20:46:52 44869CF36F828490C320281AE16D6533 37534 ----a-w- C:\Windows\System32\perfd010.dat 2014-01-28 18:19:56 ED54D269D0F35F79EF8052CB0EC67F9E 377672 ----a-w- C:\Windows\System32\prfh0404.dat 2014-01-28 18:19:56 7EA6238ADEB79DF41A31283D7847FE5E 117840 ----a-w- C:\Windows\System32\prfi0404.dat 2014-01-28 18:19:56 7AAA3E23CE4C7845B112F7A79B110E60 31548 ----a-w- C:\Windows\System32\prfd0404.dat 2014-01-28 18:19:56 3A30763E86C208AE1B579E35F3A80303 99136 ----a-w- C:\Windows\System32\prfc0404.dat 2014-01-28 18:12:41 CB742D5766869554A4BAEDE7143A63B2 157694 ----a-w- C:\Windows\System32\perfi012.dat 2014-01-28 18:12:41 CB734E3C5A7D3C76630A6F1A98FE4D2C 104478 ----a-w- C:\Windows\System32\perfc012.dat 2014-01-28 18:12:41 7AAA3E23CE4C7845B112F7A79B110E60 31548 ----a-w- C:\Windows\System32\perfd012.dat 2014-01-28 18:12:41 71A298E88C50A8693908336CFD57D206 399538 ----a-w- C:\Windows\System32\perfh012.dat 2014-01-28 18:06:01 F7E10FCE3ED98D4F1BDC9295CA8B343D 129942 ----a-w- C:\Windows\System32\perfc00C.dat 2014-01-28 18:06:01 886715403DAF38CA65ECC99B1F8BFD0D 694232 ----a-w- C:\Windows\System32\perfh00C.dat 2014-01-28 18:06:01 07BA000B2E67565BDF112C35171865A5 38160 ----a-w- C:\Windows\System32\perfd00C.dat 2014-01-28 18:06:01 04F6C9757DB75FF27C427E5B31DDB289 344522 ----a-w- C:\Windows\System32\perfi00C.dat 2014-01-28 17:58:02 F6298FE67F335770017B4F969E1EA8F6 292004 ----a-w- C:\Windows\System32\perfi005.dat 2014-01-28 17:58:02 D33224777579FA2893A1FA1C744AC700 622946 ----a-w- C:\Windows\System32\perfh005.dat 2014-01-28 17:58:02 C76792E0F7B291AF373053C07A259BFE 121590 ----a-w- C:\Windows\System32\perfc005.dat 2014-01-28 17:58:02 450B1A03967FF8296D97E1D4DDD66F26 36232 ----a-w- C:\Windows\System32\perfd005.dat 2014-01-28 16:23:41 2F0BC1FC6142DCB31C7D9804962A7011 9728 ----a-w- C:\Windows\System32\Wdfres.dll 2014-01-28 16:23:00 FE47B7BC8EA320C2D9B5E5BF6E303765 73216 ----a-w- C:\Windows\System32\WUDFSvc.dll 2014-01-28 16:23:00 D5CF1536137026ACDED95BF6CBF849F6 172032 ----a-w- C:\Windows\System32\WUDFPlatform.dll 2014-01-28 16:22:59 D689B2C2E69156D954C24810F4081C1E 38912 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll 2014-01-28 16:22:59 980B6A5F92B8DB235C4A26728C2BE732 196608 ----a-w- C:\Windows\System32\WUDFHost.exe 2014-01-28 16:22:58 A36F7A256E65D858A7039DB00ADEEBDD 613888 ----a-w- C:\Windows\System32\WUDFx.dll 2014-01-28 16:22:17 907281ED4AD35D41B29FFDC211EBAD80 5120 ----a-w- C:\Windows\System32\wmi.dll 2014-01-28 16:21:29 DA1919D896DBD5895E138932AE9E398B 293376 ----a-w- C:\Windows\System32\browserchoice.exe 2014-01-28 16:10:46 F5562EFA9E4867D30EC2330B80FCB25C 131584 ----a-w- C:\Windows\System32\aaclient.dll 2014-01-28 16:10:46 52D33A22DE04BD9F40E1B1A28B46A95C 3217408 ----a-w- C:\Windows\System32\mstscax.dll 2014-01-28 16:10:46 2A6BFDEDF2C57923E78F970BB15D7E7D 36864 ----a-w- C:\Windows\System32\tsgqec.dll 2014-01-28 16:02:43 1153AC6E133AA849853DFD407B086B80 420064 ----a-w- C:\Windows\System32\locale.nls 2014-01-28 16:01:55 43C9CF6825CEA58F1815B7C3DBBB385C 308736 ----a-w- C:\Windows\System32\Wpc.dll 2014-01-28 16:01:49 ED59143843560B5EDB543C2A48CB9E4B 45568 ----a-w- C:\Windows\System32\oflc-nz.rs 2014-01-28 16:01:49 DDD1C4AB9A9DAE6D4092C4C95E714650 51712 ----a-w- C:\Windows\System32\esrb.rs 2014-01-28 16:01:49 CBC69A055EF410CBD65593E4808B6DB4 23552 ----a-w- C:\Windows\System32\oflc.rs 2014-01-28 16:01:49 A704E750245D5D4EE4A23E99A00F27D5 46592 ----a-w- C:\Windows\System32\fpb.rs 2014-01-28 16:01:49 A067A19A91C2AA0198F9BD01A5CEF5C6 21504 ----a-w- C:\Windows\System32\grb.rs 2014-01-28 16:01:49 9EDCFA23CC081E38C86CA309D0F7E3DC 30720 ----a-w- C:\Windows\System32\usk.rs 2014-01-28 16:01:49 9B7D7F4D1F79E8B7D727BE94B1630D59 44544 ----a-w- C:\Windows\System32\pegibbfc.rs 2014-01-28 16:01:49 7752619457598CF057C4CC02A0867029 55296 ----a-w- C:\Windows\System32\cero.rs 2014-01-28 16:01:49 72035C97983745E742D71E9A8EF70BBB 20480 ----a-w- C:\Windows\System32\pegi-fi.rs 2014-01-28 16:01:49 6EC618588447B82EA8D88719EE46F725 43520 ----a-w- C:\Windows\System32\csrr.rs 2014-01-28 16:01:49 5109C45498BC709C8A7E016D5FFCCAC2 20480 ----a-w- C:\Windows\System32\pegi.rs 2014-01-28 16:01:49 4F5C56DBF076D5BBB1D22B37BF281396 20480 ----a-w- C:\Windows\System32\pegi-pt.rs 2014-01-28 16:01:49 41CE7975CAD7BCF92538D2C452239523 40960 ----a-w- C:\Windows\System32\cob-au.rs 2014-01-28 16:01:49 27828AAA24AA46F11036954ADE355C1C 15360 ----a-w- C:\Windows\System32\djctq.rs 2014-01-28 16:01:48 64E211E0FDFCE4D186DF58BB7D0503BC 2576384 ----a-w- C:\Windows\System32\gameux.dll 2014-01-28 05:46:55 F4A645226E53596DBD31600D5184EC2B 433190 ----a-w- C:\Windows\System32\perfh00B.dat 2014-01-28 05:46:55 8F1AADC928F974A39494E99474AF08E4 81950 ----a-w- C:\Windows\System32\perfc00B.dat 2014-01-28 05:46:55 78B6F0C1136D84A7B5303785BB8B6102 38258 ----a-w- C:\Windows\System32\perfd00B.dat 2014-01-28 05:46:55 386AA73A31A7C12272FFBCEDF749A37B 279790 ----a-w- C:\Windows\System32\perfi00B.dat 2014-01-28 05:46:54 7D57D289C5F93908319DEA1080CC111D 295922 ----a-w- C:\Windows\System32\perfi007.dat 2014-01-28 05:46:54 7AAA3E23CE4C7845B112F7A79B110E60 31548 ----a-w- C:\Windows\System32\prfd0804.dat 2014-01-28 05:46:54 5243507049F2BACC55F5AB80EF5DA949 36156 ----a-w- C:\Windows\System32\perfd014.dat 2014-01-28 05:46:54 4F6E7EDAFF2F7497FD0AAFC72ABF84EF 104050 ----a-w- C:\Windows\System32\prfc0804.dat 2014-01-28 05:46:54 3B3EBA1AD31F12894AEC4AF01D445140 298300 ----a-w- C:\Windows\System32\perfi014.dat 2014-01-28 05:46:54 3A6AE335F598733BA114414BACF8B163 111310 ----a-w- C:\Windows\System32\prfi0804.dat 2014-01-28 05:46:54 34212FE6920DD92316F733B097BD7C03 643638 ----a-w- C:\Windows\System32\perfh007.dat 2014-01-28 05:46:54 23454A0294D69D0341D63E6D64C32062 361570 ----a-w- C:\Windows\System32\prfh0804.dat 2014-01-28 05:46:54 15C23F16EEDB690C1CD66F7800F77235 129342 ----a-w- C:\Windows\System32\perfc007.dat 2014-01-28 05:46:54 123AE03AE3801D7CF2E7C25A4F36E20F 38104 ----a-w- C:\Windows\System32\perfd007.dat 2014-01-28 05:46:54 038DCD263473D386B1C84BC70C13ADA2 448388 ----a-w- C:\Windows\System32\perfh014.dat 2014-01-28 05:46:53 FC2A3761DBCB4D547A924BEBC33B04C4 76898 ----a-w- C:\Windows\System32\perfc014.dat 2014-01-27 22:43:12 D5AD6FE415664BFD94384A30AAC5488B 83425928 ----a-w- C:\Windows\System32\MRT.exe 2014-01-27 21:33:22 3B7C1A53047FF6ACEFD9BA6E281DEBB7 805376 ----a-w- C:\Windows\System32\cdosys.dll 2014-01-27 21:33:09 465DBF63A5049E4DB4BC5C12FFE781CB 1549312 ----a-w- C:\Windows\System32\tquery.dll 2014-01-27 21:33:08 E1AC89F6C5252057E6062843E36A6701 164352 ----a-w- C:\Windows\System32\SearchProtocolHost.exe 2014-01-27 21:33:08 DB67C7C62038BDE813CB6486581A7611 337408 ----a-w- C:\Windows\System32\mssph.dll 2014-01-27 21:33:08 987323F0247D023AD1AE52195540ECE0 666624 ----a-w- C:\Windows\System32\mssvp.dll 2014-01-27 21:33:08 5BDF8B0B9A3EADE3A2A6F2ED8D44E36D 197120 ----a-w- C:\Windows\System32\mssphtb.dll 2014-01-27 21:33:08 236F286E103FD44BD85FDD93097FD5DD 427520 ----a-w- C:\Windows\System32\SearchIndexer.exe 2014-01-27 21:33:08 0241CB16136B9A4939CA0395768AE286 1401344 ----a-w- C:\Windows\System32\mssrch.dll 2014-01-27 21:33:07 A6CD6B3F71E13E2E45B727FB8A47EA87 86528 ----a-w- C:\Windows\System32\SearchFilterHost.exe 2014-01-27 21:33:07 2DC6285EC4F902BE08E7C5FA6D3FD017 59392 ----a-w- C:\Windows\System32\msscntrs.dll 2014-01-27 21:32:28 DE91DCC7BC55E940979097E98F743205 69632 ----a-w- C:\Windows\System32\smss.exe 2014-01-27 21:32:28 23AB7E36551C6BA5370EF7F05142F0EB 38912 ----a-w- C:\Windows\System32\csrsrv.dll 2014-01-27 21:32:14 92FB57D9D865019D26346EB13E15CD75 642048 ----a-w- C:\Windows\System32\CPFilters.dll 2014-01-27 21:32:14 4D05D7A79E970398D8C687712E65A9B0 850944 ----a-w- C:\Windows\System32\sbe.dll 2014-01-27 21:32:13 246560C5B7995489F25BF9175F2B6380 199680 ----a-w- C:\Windows\System32\mpg2splt.ax 2014-01-27 21:32:07 FB19FC5951A88F3C523E35C2C98D23C0 314880 ----a-w- C:\Windows\System32\webio.dll 2014-01-27 21:32:01 68783E77D401E6392EA6579EBCEF16C8 514560 ----a-w- C:\Windows\System32\qdvd.dll 2014-01-27 21:32:01 0AE0C4955E1DE29CCDC9DA1B816FE5EE 1328128 ----a-w- C:\Windows\System32\quartz.dll 2014-01-27 21:31:58 866004E949EB3D02C3CAE0A553231A3A 400896 ----a-w- C:\Windows\System32\srcore.dll 2014-01-27 21:31:58 78079EB83665E1AC18AC9C5E273845BF 262656 ----a-w- C:\Windows\System32\rstrui.exe 2014-01-27 21:31:57 A6C29DB53ECA94FA8591C5388D604B82 2342400 ----a-w- C:\Windows\System32\msi.dll 2014-01-27 21:31:57 813845D5C5D8325CA5E8B1F547016378 534528 ----a-w- C:\Windows\System32\EncDec.dll 2014-01-27 21:31:51 BDA0B954A30498B5A7EDC6204CBA07ED 542208 ----a-w- C:\Windows\System32\kerberos.dll 2014-01-27 21:31:45 A45CB10FC8C4DCA23F96FE4D334F64FE 2048 ----a-w- C:\Windows\System32\msxml3r.dll 2014-01-27 21:31:45 1CDEA9188899E76D4FFD54C9D512CCDB 1236992 ----a-w- C:\Windows\System32\msxml3.dll 2014-01-27 21:31:44 ED27D1D75BF5E683AD3EDD9E3123520A 741376 ----a-w- C:\Windows\System32\inetcomm.dll 2014-01-27 21:31:36 68DCA1777D7224A79A9DC3D47BED6D32 75776 ----a-w- C:\Windows\System32\psisrndr.ax 2014-01-27 21:31:35 E9AEF26AEEBFAAB901FAB3D93677DF98 72704 ----a-w- C:\Windows\System32\Mpeg2Data.ax 2014-01-27 21:31:35 6E79D0D90AB03DC45AFACA52A6699963 204288 ----a-w- C:\Windows\System32\MSNP.ax 2014-01-27 21:31:35 2883942DF154A6CEBDB75B42C0093CF3 59904 ----a-w- C:\Windows\System32\MSDvbNP.ax 2014-01-27 21:31:35 00ADF21DE55AA97297FAC65E4F3A0256 465408 ----a-w- C:\Windows\System32\psisdecd.dll 2014-01-27 21:31:31 72910F1DEB838E6E08A9017BFB7D4F0B 41984 ----a-w- C:\Windows\System32\browcli.dll 2014-01-27 21:31:31 3DAA727B5B0A45039B0E1C9A211B8400 102912 ----a-w- C:\Windows\System32\browser.dll 2014-01-27 21:31:31 2FCA0D2C59A855C54BAFA22AA329DF0F 57344 ----a-w- C:\Windows\System32\netapi32.dll 2014-01-27 21:31:29 8E01332CC4B68BC6B5B7EFFE374442AA 233472 ----a-w- C:\Windows\System32\oleacc.dll 2014-01-27 21:31:29 6C765E82B57F2E66CE9C54AC238471D9 571904 ----a-w- C:\Windows\System32\oleaut32.dll 2014-01-27 21:31:28 B40420876B9288E0A1C8CCA8A84E5DC9 270336 ----a-w- C:\Windows\System32\dnsapi.dll 2014-01-27 21:31:28 33EF4861F19A0736B11314AAD9AE28D0 132608 ----a-w- C:\Windows\System32\dnsrslvr.dll 2014-01-27 21:31:27 ACBC1FB1950AC0C41944A6C8917032EF 28672 ----a-w- C:\Windows\System32\dnscacheugc.exe 2014-01-27 21:31:14 7B90C5F0A510852036822EE860CABF26 67072 ----a-w- C:\Windows\System32\packager.dll 2014-01-27 21:31:13 3FDB77D0BBEEB36AE35077ABC0BF80EC 319488 ----a-w- C:\Windows\System32\odbcjt32.dll 2014-01-27 21:31:12 EF37EDC20412A01DDD9A42E8D939A5A3 163840 ----a-w- C:\Windows\System32\odbctrac.dll 2014-01-27 21:31:12 E2D83DAA6A229CFDAF129189A9245889 86016 ----a-w- C:\Windows\System32\odbccu32.dll 2014-01-27 21:31:12 66ABBF38123D3113BB55EBAFCF37AB92 122880 ----a-w- C:\Windows\System32\odbccp32.dll 2014-01-27 21:31:12 534BF06B2DEE965A1389A9312545AE03 81920 ----a-w- C:\Windows\System32\odbccr32.dll 2014-01-27 21:31:11 9DC80A8AAAAAC397BDAB3C67165A824E 690688 ----a-w- C:\Windows\System32\msvcrt.dll 2014-01-27 21:31:09 B7230010D97787AF3D25E4C82F2B06B9 626688 ----a-w- C:\Windows\System32\usp10.dll 2014-01-27 21:31:05 C245EBD6B1A5FB6E6BBE2A635032490F 191488 ----a-w- C:\Windows\System32\FXSCOVER.exe 2014-01-27 21:31:05 33B0A618BA5F44E67757C561D0A935C1 802304 ----a-w- C:\Windows\System32\WFS.exe 2014-01-27 21:30:59 EC7BC28D207DA09E79B3E9FAF8B232CA 293376 ----a-w- C:\Windows\System32\umpnpmgr.dll 2014-01-27 21:30:59 3FFAEA12666E565FF51BF2FCA674F543 145920 ----a-w- C:\Windows\System32\cfgmgr32.dll 2014-01-27 21:30:57 D667E487B72FEB7FFEAD869ECC0467CF 2560 ----a-w- C:\Windows\System32\dpnaddr.dll 2014-01-27 21:30:57 310F6F492A3B4B1020ED9BF9CCBBE6B6 376832 ----a-w- C:\Windows\System32\dpnet.dll 2014-01-27 21:30:56 EAADD6E47ED2A7003ACE1793B98CF63F 1389568 ----a-w- C:\Windows\System32\msxml6.dll 2014-01-27 21:30:51 7E9917D5309A90E7576653BFE39F80D8 478720 ----a-w- C:\Windows\System32\timedate.cpl 2014-01-27 21:30:50 5D1BFF0FCE80F9E2E539F436710D4A79 31232 ----a-w- C:\Windows\System32\prevhost.exe 2014-01-27 21:30:48 EDF2A5E96BEC469DA3F64E9BDD386111 180224 ----a-w- C:\Windows\System32\xmllite.dll 2014-01-27 21:30:44 D23E615E0969AECC1134E372B0B295D1 78336 ----a-w- C:\Windows\System32\synceng.dll 2014-01-27 21:30:43 CADEFAC453040E370A1BDFF3973BE00D 164352 ----a-w- C:\Windows\System32\profsvc.dll 2014-01-27 21:30:43 5831FC32006FB68B4014B16837CE4A95 28672 ----a-w- C:\Windows\System32\profprov.dll 2014-01-27 21:30:42 A5661C9330E5FCFCDD53EB03D5F04822 8192 ----a-w- C:\Windows\System32\rdrmemptylst.exe 2014-01-27 21:30:42 954AAF2028CD907B7F7ED40FFFD9D27F 58880 ----a-w- C:\Windows\System32\rdpwsx.dll 2014-01-27 21:30:42 58D2343C32DF596FB6132B54395DE5DB 129536 ----a-w- C:\Windows\System32\rdpcorekmts.dll 2014-01-27 21:30:40 DC6612A9EE015A36BA2A27BC9CC12537 1137664 ----a-w- C:\Windows\System32\mfc42.dll 2014-01-27 21:30:40 24CAEDCD73B5B0E22226283B7B2468C7 1164288 ----a-w- C:\Windows\System32\mfc42u.dll 2014-01-27 21:30:38 74AF6AA2E8B3180AADAE5FE8813CB1CD 769024 ----a-w- C:\Windows\System32\localspl.dll 2014-01-27 21:30:32 03F3B770DFBED6131653CEDA8CA780F0 442880 ----a-w- C:\Windows\System32\ntshrui.dll 2014-01-27 21:30:20 20104EA66332D24D7C65BBB087C56737 123904 ----a-w- C:\Windows\System32\poqexec.exe 2014-01-27 21:20:04 CAEF9CD6C10B1017E2C298D849CD31DB 107520 ----a-w- C:\Windows\System32\cdd.dll 2014-01-27 20:22:45 E6DEDFF979D8439A4C09CBC187743A7F 7600846 ----a-w- C:\Windows\System32\PerfStringBackup.INI 2014-01-27 20:22:20 DD7A6E8A927666F01762852AFE78511E 134656 ----a-w- C:\Windows\System32\rdpudd.dll 2014-01-27 20:22:20 86F34E7288DA428E38E2D8C7E806A871 826880 ----a-w- C:\Windows\System32\rdpcore.dll 2014-01-27 20:19:02 BDC0C99E472176C8C2C853A68ADC5073 45080 ----a-w- C:\Windows\System32\wups2.dll 2014-01-27 20:19:01 FC3EC24FCE372C89423E015A2AC1A31E 1933848 ----a-w- C:\Windows\System32\wuaueng.dll 2014-01-27 20:19:01 2E0B0A051FFAA86E358465BB0880D453 53784 ----a-w- C:\Windows\System32\wuauclt.exe 2014-01-27 20:19:01 285C594C4913FA9DC7BB6BA3AD6F101A 2422272 ----a-w- C:\Windows\System32\wucltux.dll 2014-01-27 20:18:50 C480F0E968ECA0D80D0299D7F204E33B 88576 ----a-w- C:\Windows\System32\wudriver.dll 2014-01-27 20:18:50 3458EDA96E30FBD0477A2800D3FB1909 35864 ----a-w- C:\Windows\System32\wups.dll 2014-01-27 20:18:50 1A617835452EEE5060976C9B9F5FE635 577048 ----a-w- C:\Windows\System32\wuapi.dll 2014-01-27 20:18:38 98F94089E9C549E223AB05BE54BAB2ED 171904 ----a-w- C:\Windows\System32\wuwebv.dll 2014-01-27 20:18:38 069385484EA57B663D688894C88975C5 33792 ----a-w- C:\Windows\System32\wuapp.exe 2014-01-27 20:12:34 A5EFC23380B5E83413ACBF67608F6132 21552 ----a-w- C:\Windows\System32\emptyregdb.dat 2014-01-27 20:05:18 DED3E3640A25F3E1C49ABF2AACB2E379 2859296 ----a-w- C:\Windows\System32\nvsvc.dll 2014-01-27 20:05:18 60307769C577A2924F787DCD761EFFB0 2557728 ----a-w- C:\Windows\System32\nvsvcr.dll 2014-01-27 20:05:18 52BC3911486594FFDE596B6CB96E9B15 108832 ----a-w- C:\Windows\System32\nvmctray.dll 2014-01-27 20:05:18 31B8835B003CAA6D31BEAD83DDBF98E5 634656 ----a-w- C:\Windows\System32\nvvsvc.exe 2014-01-27 20:05:18 13C1E611F3C3758BB2E4249A712900FE 62752 ----a-w- C:\Windows\System32\nvshext.dll 2014-01-27 20:05:18 054E058EB59212BE229C516258DFC5FF 3970848 ----a-w- C:\Windows\System32\nvcpl.dll 2014-01-27 19:30:41 D815DD4262E4FCC211091F7BA7A01155 231584 ------w- C:\Windows\System32\MpSigStub.exe 2014-01-27 19:10:34 8E7D037A7B83E912B8D9C4FE43278F96 53024 ----a-w- C:\Windows\System32\OpenCL.dll ====== C:\Windows\system32\drivers ===== 2014-01-30 21:55:25 A36EE93698802CD899F98BFD553D8185 28520 ----a-w- C:\Windows\System32\drivers\ssmdrv.sys 2014-01-30 21:55:24 D8C712305F73CD34D1B344810E522728 37352 ----a-w- C:\Windows\System32\drivers\avkmgr.sys 2014-01-30 21:55:24 B8C10FF9369394EB84993F331810CF29 90400 ----a-w- C:\Windows\System32\drivers\avgntflt.sys 2014-01-30 21:55:24 4189E5AB2CAD6F395D87DAAE73EB090F 135648 ----a-w- C:\Windows\System32\drivers\avipbb.sys 2014-01-29 20:20:40 F81BB7E487EDCEAB630A7EE66CF23913 338944 ----a-w- C:\Windows\System32\drivers\afd.sys 2014-01-29 20:20:39 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\drivers\hidparse.sys 2014-01-29 20:20:39 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys 2014-01-29 20:20:36 ED80D303102A746D30C1684B387BCBF1 33280 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys 2014-01-29 20:20:36 8C9C922D71F1CD4DEF73F186416B7896 712048 ----a-w- C:\Windows\System32\drivers\ndis.sys 2014-01-29 20:19:58 F286830298323272260332D6ABC905C1 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2014-01-29 20:19:58 D7C760D57B1656DD748B9E4AB6CB5A51 136640 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2014-01-29 20:19:58 85449EEBE8F8EBD6481EFBF0F352B4EB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys 2014-01-29 20:19:36 E405328A0E38BF823E2361C413283F6D 218984 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys 2014-01-29 20:19:36 71BC35067CABC02C9453AEAA42B2E43E 729024 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2014-01-29 20:19:05 3EEBD3BD93DA46A26E89893C7AB2FF3B 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys 2014-01-29 20:18:47 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys 2014-01-29 20:18:47 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys 2014-01-29 20:18:31 21F4B24ACFC79A483515BD986DD9043F 115712 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2014-01-29 20:18:29 CA59F7C570AF70BC174F477CFE2D9EE3 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2014-01-29 20:18:29 5DBD4F73E2A52FEED61DBAB3752E329C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys 2014-01-29 20:18:24 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\drivers\ataport.sys 2014-01-29 20:18:03 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\drivers\usbcir.sys 2014-01-29 20:18:00 25944D2CC49E0A6C581D02A74B7D6645 527064 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2014-01-29 20:17:58 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2014-01-29 20:17:58 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2014-01-29 20:17:57 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2014-01-29 20:17:57 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2014-01-29 20:17:57 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys 2014-01-29 20:17:57 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys 2014-01-29 20:17:57 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys 2014-01-29 20:14:25 B37B08F2E5EEB1A37E448E09BACE1101 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys 2014-01-29 09:31:11 4470E3C1E0C3378E4CAB137893C12C3A 22856 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-01-28 22:36:49 F991AB9CC6B908DB552166768176896A 76288 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS 2014-01-28 22:36:49 B3E25EE28883877076E0E1FF877D02E0 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys 2014-01-28 22:36:49 4380E59A170D88C4F1022EFF6719A8A4 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys 2014-01-28 22:36:48 EF3D32464EBBB10449465C8CAB57CA19 148864 ----a-w- C:\Windows\System32\drivers\storport.sys 2014-01-28 22:36:46 D320BF87125326F996D4904FE24300FC 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys 2014-01-28 22:36:46 5CD5F9A5444E6CDCB0AC89BD62D8B76E 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys 2014-01-28 22:36:46 46387FB17B086D16DEA267D5BE23A2F2 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys 2014-01-28 22:32:48 D4D77455211E204F370D08F4963063CE 17920 ----a-w- C:\Windows\System32\drivers\VMBusHID.sys 2014-01-28 22:32:48 C2F2911156FDC7817C52829C86DA494E 175360 ----a-w- C:\Windows\System32\drivers\vmbus.sys 2014-01-28 22:32:48 62BA4FDCA65BDB69695E0D1157C57717 43392 ----a-w- C:\Windows\System32\drivers\winhv.sys 2014-01-28 22:32:47 DCAFFD62259E0BDB433DD67B5BB37619 28032 ----a-w- C:\Windows\System32\drivers\storvsc.sys 2014-01-28 22:32:47 7FA7F2E249A5DCBB7970630E15E1F482 5632 ----a-w- C:\Windows\System32\drivers\vms3cap.sys 2014-01-28 22:32:47 472AF0311073DCECEAA8FA18BA2BDF89 40704 ----a-w- C:\Windows\System32\drivers\vmstorfl.sys 2014-01-28 22:32:39 F497F67932C6FA693D7DE2780631CFE7 245632 ----a-w- C:\Windows\System32\drivers\volsnap.sys 2014-01-28 22:32:39 5461686CCA2FDA57B024547733AB42E3 160128 ----a-w- C:\Windows\System32\drivers\vhdmp.sys 2014-01-28 22:32:38 D295BED4B898F0FD999FCFA9B32B071B 39936 ----a-w- C:\Windows\System32\drivers\umbus.sys 2014-01-28 22:32:34 6D4CCAEDC018F1CF52866BBBAA235982 12800 ----a-w- C:\Windows\System32\drivers\sffp_sd.sys 2014-01-28 22:32:28 05D860DA1040F111503AC416CCEF2BCA 85376 ----a-w- C:\Windows\System32\drivers\sbp2port.sys 2014-01-28 22:32:16 55055F8AD8BE27A64C831322A780A228 116096 ----a-w- C:\Windows\System32\drivers\msdsm.sys 2014-01-28 22:32:16 2D699FB6E89CE0D8DA14ECC03B3EDFE0 130432 ----a-w- C:\Windows\System32\drivers\mpio.sys 2014-01-28 22:32:16 099972E1FAF4950D3994FBAB9DD21253 140160 ----a-w- C:\Windows\System32\drivers\scsiport.sys 2014-01-28 22:32:16 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\drivers\msahci.sys 2014-01-28 22:31:45 1A078C3FE1C1F9C8561CD600C69AD300 26112 ----a-w- C:\Windows\System32\drivers\usbrpm.sys 2014-01-28 22:31:41 FD82D2B38C465A55C527E339BA1201B1 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD.sys 2014-01-28 22:31:41 EE43346C7E4B5E63E54F927BABBB32FF 246784 ----a-w- C:\Windows\System32\drivers\udfs.sys 2014-01-28 22:31:41 E071E5BE621FEC4590117C488A78AE32 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD2.sys 2014-01-28 22:31:41 B2FA25D9B17A68BB93D58B0556E8C90D 108544 ----a-w- C:\Windows\System32\drivers\tunnel.sys 2014-01-28 22:31:40 B973FCFC50DC1434E1970A146F7E3885 133632 ----a-w- C:\Windows\System32\drivers\rdpdr.sys 2014-01-28 22:31:40 B459575348C20E8121D6039DA063C704 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys 2014-01-28 22:31:40 2F885864D5BC8A16C86BEE595969A48A 21504 ----a-w- C:\Windows\System32\drivers\tdi.sys 2014-01-28 22:31:39 FD1D6C73E6333BE727CBCC6054247654 52224 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2014-01-28 22:31:33 23DAE03F29D253AE74C44F99E515F9A1 6656 ----a-w- C:\Windows\System32\drivers\RDPCDD.sys 2014-01-28 22:31:26 0693B5EC673E34DC147E195779A4DCF6 26624 ----a-w- C:\Windows\System32\drivers\scfilter.sys 2014-01-28 22:31:04 906DCFC5EBF4EC0433F8D4FFFB0BA334 117760 ----a-w- C:\Windows\System32\drivers\rmcast.sys 2014-01-28 22:31:03 D528BC58A489409BA40334EBF96A311B 242688 ----a-w- C:\Windows\System32\drivers\rdbss.sys 2014-01-28 22:31:03 518395321DC96FE2C9F0E96AC743B656 173440 ----a-w- C:\Windows\System32\drivers\rdyboost.sys 2014-01-28 22:31:02 A4BDC541E69674FBFF1A8FF00BE913F2 48640 ----a-w- C:\Windows\System32\drivers\ndproxy.sys 2014-01-28 22:31:02 3C3C78515F5AB448B022BDF5B8FFDD2E 63488 ----a-w- C:\Windows\System32\drivers\wanarp.sys 2014-01-28 22:31:02 38FBE267E7E6983311179230FACB1017 118784 ----a-w- C:\Windows\System32\drivers\ndiswan.sys 2014-01-28 22:30:49 3C2177A897B4CA2788C6FB0C3FD81D4B 388096 ----a-w- C:\Windows\System32\drivers\csc.sys 2014-01-28 22:30:44 D8A65DAFB3EB41CBB622745676FCD072 46080 ----a-w- C:\Windows\System32\drivers\ndisuio.sys 2014-01-28 22:30:44 280122DDCF04B378EDD1AD54D71C1E54 187904 ----a-w- C:\Windows\System32\drivers\netbt.sys 2014-01-28 22:30:16 FC8771F45ECCCFD89684E38842539B9B 78208 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2014-01-28 22:29:30 5DCEF0C32BE0F33277326586FA503689 190976 ----a-w- C:\Windows\System32\drivers\ks.sys 2014-01-28 22:29:08 871917B07A141BFF43D76D8844D48106 513536 ----a-w- C:\Windows\System32\drivers\http.sys 2014-01-28 22:29:07 0C4E035C7F105F1299258C90886C64C5 14208 ----a-w- C:\Windows\System32\drivers\hwpolicy.sys 2014-01-28 22:28:21 F024449C97EC1E464AAFFDA18593DB88 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys 2014-01-28 22:27:03 AEA177F783E20150ACE5383EE368DA19 50176 ----a-w- C:\Windows\System32\drivers\appid.sys 2014-01-28 22:26:48 9E3CED91863E6EE98C24794D05E27A71 28160 ----a-w- C:\Windows\System32\drivers\kbdhid.sys 2014-01-28 22:26:48 673E55C3498EB970088E812EA820AA8F 153984 ----a-w- C:\Windows\System32\drivers\pci.sys 2014-01-28 22:26:48 4C63E00F2F4B5F86AB48A58CD990F212 53120 ----a-w- C:\Windows\System32\drivers\volmgr.sys 2014-01-28 22:26:48 04DBF4B01EA4BF25A9A3E84AFFAC9B20 53120 ----a-w- C:\Windows\System32\drivers\termdd.sys 2014-01-28 22:26:47 CB7A9ABB12B8415BCE5D74994C7BA3AE 233344 ----a-w- C:\Windows\System32\drivers\msiscsi.sys 2014-01-28 22:26:47 A5EF29D5315111C80A5C1ABAD14C8972 304128 ----a-w- C:\Windows\System32\drivers\HdAudio.sys 2014-01-28 22:26:47 9036377B8A6C15DC2EEC53E489D159B5 108544 ----a-w- C:\Windows\System32\drivers\hdaudbus.sys 2014-01-28 22:26:47 4BD7134618C1D2A27466A099062547BF 65536 ----a-w- C:\Windows\System32\drivers\IPMIDrv.sys 2014-01-28 22:26:47 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\drivers\hidusb.sys 2014-01-28 22:26:45 CBE8C58A8579CFE5FCCF809E6F114E89 31232 ----a-w- C:\Windows\System32\drivers\CompositeBus.sys 2014-01-28 22:26:45 BE167ED0FDB9C1FA1133953C18D5A6C9 108544 ----a-w- C:\Windows\System32\drivers\cdrom.sys 2014-01-28 22:26:44 CEA80C80BED809AA0DA6FEBC04733349 274304 ----a-w- C:\Windows\System32\drivers\acpi.sys 2014-01-28 22:26:44 1EFBC664ABFF416D1D07DB115DCB264F 10240 ----a-w- C:\Windows\System32\drivers\acpipmi.sys 2014-01-28 22:26:44 1B133875B8AA8AC48969BD3458AFE9F5 164864 ----a-w- C:\Windows\System32\drivers\1394ohci.sys 2014-01-28 16:23:44 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-01-28 16:23:41 48704647CD2E9DAA2EB81BDE6D029EDB 47720 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys 2014-01-28 16:23:01 867C301E8B790040AE9CF6486E8041DF 155136 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys 2014-01-28 16:23:01 06E6F32C8D0A3F66D956F57B43A2E070 66560 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys 2014-01-28 16:22:58 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-01-28 16:22:17 7DAE5EBCC80E45D3253F4923DC424D05 19824 ----a-w- C:\Windows\System32\drivers\fs_rec.sys 2014-01-27 21:33:06 E4C2764065D66EA1D2D3EBC28FE99C46 311808 ----a-w- C:\Windows\System32\drivers\srv.sys 2014-01-27 21:33:06 BE6BD660CAA6F291AE06A718A4FA8ABC 114688 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2014-01-27 21:33:06 03F0545BD8D4C77FA0AE1CEEDFCC71AB 310272 ----a-w- C:\Windows\System32\drivers\srv2.sys 2014-01-27 21:32:25 B81F204D146000BE76651A50670A5E9E 96768 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2014-01-27 21:32:25 6D17A4791ACA19328C685D256349FEFC 223744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2014-01-27 21:32:25 5D16C921E3671636C0EBA3BBAAC5FD25 123904 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2014-01-27 21:32:15 AAB149EE616952BB84308C28E75ED20D 187752 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS 2014-01-27 21:31:41 5E43D2B0EE64123D4880DFA6626DEFDE 1211752 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2014-01-27 21:31:39 F031683E6D1FEA157ABB2FF260B51E61 183808 ----a-w- C:\Windows\System32\drivers\rdpwd.sys 2014-01-27 21:31:22 E306A24D9694C724FA2491278BF50FDB 196328 ----a-w- C:\Windows\System32\drivers\fvevol.sys 2014-01-27 21:31:01 3F34A1B4C5F6475F320C275E63AFCE9B 56176 ----a-w- C:\Windows\System32\drivers\partmgr.sys 2014-01-27 21:30:54 FE8A57C8E04EDD3AA8ADD8F3C8F65297 15872 ----a-w- C:\Windows\System32\drivers\usb8023.sys 2014-01-27 21:30:30 D0F0D7A97C90FE72A79732812E65F822 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2014-01-27 21:30:27 8F2DA3028D5FCBD1A060A3DE64CD6506 69632 ----a-w- C:\Windows\System32\drivers\bowser.sys 2014-01-27 20:22:20 68A0387F58E226DEEE23D9715955572A 15872 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys 2014-01-27 20:22:20 2C2C5AFE7EE4F620D69C23C0617651A8 24576 ----a-w- C:\Windows\System32\drivers\tdtcp.sys 2014-01-27 20:22:20 1CB91B2BD8F6DD367DFC2EF26FD751B2 18432 ----a-w- C:\Windows\System32\drivers\tdpipe.sys ====== C:\Windows\Tasks ====== 2014-01-30 21:32:12 -------- d-----w- C:\Windows\system32\Tasks\COMODO 2014-01-30 21:04:46 2F855198C98813D1BE0D0F7E0A82AB0D 3050 ----a-w- C:\Windows\system32\Tasks\{0CDD3496-0B5D-4D84-BB63-2B9A35FAA157} 2014-01-30 21:03:24 2F855198C98813D1BE0D0F7E0A82AB0D 3050 ----a-w- C:\Windows\system32\Tasks\{E8139123-1F47-4765-BDBA-E01180683379} 2014-01-30 21:03:04 2F855198C98813D1BE0D0F7E0A82AB0D 3050 ----a-w- C:\Windows\system32\Tasks\{928711DC-BE0D-4D37-9B89-AD25328E3F59} 2014-01-28 21:49:14 -------- d-----w- C:\Windows\system32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-28 21:10:56 E23894D823A87F15436FD081642BC0EB 266 ----a-w- C:\Windows\Tasks\AutoKMS.job 2014-01-28 21:10:56 5F86B735C706CD90FDBFFB6068DF7896 2896 ----a-w- C:\Windows\system32\Tasks\AutoKMS 2014-01-28 15:50:40 47E177A638FD6D925941C4804BB49FD3 1044 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-28 15:50:40 0FC3CF9BB9D465728C4B2A1B52ED548F 4040 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2014-01-28 15:50:38 F5896D586E718B576A5A9509FB52D97D 1040 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-28 15:50:38 6D6A318FA57AD8F20687D7ADD13495DB 3788 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-30 21:59:06 -------- d-----w- C:\Program Files\trend micro 2014-01-30 21:46:07 -------- d-----w- C:\Program Files\Avira 2014-01-30 21:29:17 -------- d-----w- C:\Program Files\COMODO 2014-01-30 13:11:17 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-30 13:09:24 -------- d-----w- C:\Program Files\Windows Live 2014-01-30 13:04:45 -------- d-----w- C:\Program Files\Microsoft SkyDrive 2014-01-28 22:23:05 -------- d-----w- C:\Program Files\Nitro PDF 2014-01-28 22:23:05 -------- d-----w- C:\Program Files\Common Files\Nitro PDF 2014-01-28 19:45:15 -------- d-----w- C:\Program Files\Microsoft Silverlight 2014-01-28 17:00:15 -------- d-----w- C:\Program Files\Microsoft.NET 2014-01-28 15:50:33 -------- d-----w- C:\Program Files\Google 2014-01-28 06:34:23 -------- d-----w- C:\Program Files\WinRAR 2014-01-27 23:28:49 -------- d-----w- C:\Program Files\Common Files\Windows Live 2014-01-27 20:04:39 -------- d-----w- C:\Program Files\NVIDIA Corporation ======= C: ===== 2014-01-27 00:24:38 BD1C0F0E715590C354C6C63BC5903C79 8192 --sha-r- C:\BOOTSECT.BAK 2014-01-27 00:24:36 259525CFB422E6AC8E87BC9777B1DF73 383786 --sha-r- C:\bootmgr ====== C:\Users\Marcel\AppData\Roaming ====== 2014-01-30 22:02:32 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Avira 2014-01-30 21:58:16 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\Avira 2014-01-30 21:34:17 -------- d-----w- C:\Users\Marcel\AppData\Local\ElevatedDiagnostics 2014-01-30 20:05:42 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Adobe 2014-01-30 08:14:15 -------- d-----w- C:\Users\Marcel\AppData\Local\Diagnostics 2014-01-30 07:40:34 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-apps 2014-01-29 09:30:54 -------- d-----w- C:\Users\Marcel\AppData\Local\Programs 2014-01-29 00:12:19 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2014-01-28 23:04:51 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft Help 2014-01-28 23:04:51 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-28 22:30:34 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Nitro PDF 2014-01-28 22:21:37 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Downloaded Installations 2014-01-28 21:41:01 -------- d-----w- C:\Users\Marcel\AppData\Local\Microsoft Help 2014-01-28 20:50:56 -------- d-----w- C:\Users\Marcel\AppData\Local\Microsoft Games 2014-01-28 15:55:43 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Google 2014-01-28 15:50:28 -------- d-----w- C:\Users\Marcel\AppData\Local\Google 2014-01-28 15:50:03 -------- d-----w- C:\Users\Marcel\AppData\Local\Apps 2014-01-28 15:50:02 -------- d-----w- C:\Users\Marcel\AppData\Local\Deployment 2014-01-28 06:34:41 -------- d-----w- C:\Users\Marcel\AppData\Roaming\WinRAR 2014-01-28 06:34:27 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-27 23:28:50 -------- d-----w- C:\Users\Marcel\AppData\Local\Windows Live 2014-01-27 21:15:39 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft 2014-01-27 21:11:36 6F7B7CCD31B58AA5E46261A85B5AD233 107264 ----a-w- C:\Users\Marcel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-27 21:05:43 -------- d-s---w- C:\Users\Marcel\AppData\Locallow\Microsoft 2014-01-27 20:06:40 -------- d-s---w- C:\Users\Marcel\AppData\Roaming\Microsoft 2014-01-27 20:06:40 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Media Center Programs 2014-01-27 20:06:40 -------- d-----w- C:\Users\Marcel\AppData\Local\Temp 2014-01-27 20:06:40 -------- d-----w- C:\Users\Marcel\AppData\Local\Microsoft 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-27 20:06:37 -------- d-s---w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft 2014-01-27 20:06:37 -------- d-----w- C:\Users\UpdatusUser\AppData\Roaming\Media Center Programs 2014-01-27 20:06:37 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Temp 2014-01-27 20:06:37 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Microsoft 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-27 19:16:02 -------- d-s---w- C:\Users\UpdatusUser\AppData\Locallow\Microsoft 2014-01-27 19:02:13 -------- d-----r- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-27 19:02:13 -------- d-----r- C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-27 19:01:55 -------- d-----w- C:\Users\Marcel\AppData\Roaming\Identities 2014-01-27 19:01:39 -------- d-----w- C:\Users\Marcel\AppData\Local\VirtualStore ====== C:\Users\Marcel ====== 2014-01-30 21:58:28 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Marcel\Downloads\RSIT.exe 2014-01-30 21:46:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-01-30 21:46:07 -------- d-----w- C:\ProgramData\Avira 2014-01-30 21:45:04 2B8052B0922D270D094F6D06C28C0F4A 3975576 ----a-w- C:\Users\Marcel\Downloads\avira_oe_client_antivirus_en.exe 2014-01-30 21:40:35 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Marcel\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.34314545226369578.1.1.Run.exe 2014-01-30 21:31:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO 2014-01-30 21:31:04 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Marcel\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.37314541774353054.1.1.Run.exe 2014-01-30 21:29:21 -------- d-s---w- C:\ProgramData\Shared Space 2014-01-30 21:29:15 -------- d-----w- C:\ProgramData\Comodo 2014-01-30 21:29:12 -------- d-----w- C:\ProgramData\Comodo Downloader 2014-01-30 21:18:16 A0163415AE817DE66ABCCAEFD56F672D 211388240 ----a-w- C:\Users\Marcel\Downloads\cfw_installer.exe 2014-01-30 21:16:32 401F5787E44B2728C1C73BCBEC51CCB3 12217544 ----a-w- C:\Users\Marcel\Downloads\AppRemover.exe 2014-01-30 13:11:41 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-01-30 13:04:44 -------- d-----r- C:\Users\Marcel\SkyDrive 2014-01-30 13:04:24 -------- d-----w- C:\ProgramData\Microsoft SkyDrive 2014-01-30 07:50:48 54DB2B8C60F04C5ADE6D711D47EABA75 1166132 ----a-w- C:\Users\Marcel\Downloads\adwcleaner.exe 2014-01-28 22:23:07 -------- d-----w- C:\ProgramData\Nitro PDF 2014-01-28 21:40:49 -------- d-----w- C:\ProgramData\Microsoft Help 2014-01-28 19:45:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-01-28 15:52:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-01-28 06:34:27 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-27 20:19:19 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\UpdatusUser\ntuser.ini 2014-01-27 20:18:10 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Marcel\ntuser.ini 2014-01-27 20:06:40 -------- d--h--w- C:\Users\Marcel\AppData 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Videos 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Saved Games 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Pictures 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Music 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Links 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Favorites 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Downloads 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Documents 2014-01-27 20:06:40 -------- d-----r- C:\Users\Marcel\Desktop 2014-01-27 20:06:37 -------- d--h--w- C:\Users\UpdatusUser\AppData 2014-01-27 20:06:37 -------- d-----w- C:\Users\UpdatusUser\Saved Games 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Videos 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Pictures 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Music 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Links 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Favorites 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Downloads 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Documents 2014-01-27 20:06:37 -------- d-----r- C:\Users\UpdatusUser\Desktop 2014-01-27 20:05:30 -------- d-----w- C:\ProgramData\NVIDIA 2014-01-27 20:04:43 -------- d-----w- C:\ProgramData\NVIDIA Corporation 2014-01-27 19:11:09 -------- d-----w- C:\Users\UpdatusUser\Searches 2014-01-27 19:11:09 -------- d-----w- C:\Users\UpdatusUser\Contacts 2014-01-27 19:02:13 -------- d-----r- C:\Users\Marcel\Searches 2014-01-27 19:01:50 -------- d-----r- C:\Users\Marcel\Contacts ====== C: exe-files == 2014-01-30 21:59:06 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Marcel.exe 2014-01-30 21:58:28 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Marcel\Downloads\RSIT.exe 2014-01-30 21:55:25 FE79366FECD444A16CCA9979134DBEA8 440376 ----a-w- C:\Program Files\Avira\AntiVir Desktop\sched.exe 2014-01-30 21:55:25 91ECCE87F494816737BD6F1B0B671C2A 934968 ----a-w- C:\Program Files\Avira\AntiVir Desktop\update.exe 2014-01-30 21:55:25 5BC02AC86CB9F875BD91A5D009132FDE 645688 ----a-w- C:\Program Files\Avira\AntiVir Desktop\wsctool.exe 2014-01-30 21:55:25 26731C2F4452C1A2DBDBAE8D201E4CE2 399416 ----a-w- C:\Program Files\Avira\AntiVir Desktop\updrgui.exe 2014-01-30 21:55:25 1106B8D42E6614240C03AB76224DAF02 422456 ----a-w- C:\Program Files\Avira\AntiVir Desktop\setuppending.exe 2014-01-30 21:55:25 039ECAE9617FBC500B891256F139FD79 1315384 ----a-w- C:\Program Files\Avira\AntiVir Desktop\setup.exe 2014-01-30 21:55:24 FDE9C7030FB1E9E2715E113EE6A10F90 440376 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avguard.exe 2014-01-30 21:55:24 FDA1329BF7F5F92C71C692798B642BAC 661048 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avcenter.exe 2014-01-30 21:55:24 F88A5D699B6F6AD080ECD58548EF4D7F 511544 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avrestart.exe 2014-01-30 21:55:24 F143483EF1FD85495AF9EAD190C55983 441400 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avadmin.exe 2014-01-30 21:55:24 DD231039B13EC2ABDE315D76E658EF0E 684600 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 2014-01-30 21:55:24 D49A434E4BF69D23291D54164D5D15D6 796728 ----a-w- C:\Program Files\Avira\AntiVir Desktop\fact.exe 2014-01-30 21:55:24 BD64ED04CB32C31F9F6812415405E65E 566328 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avwebloader.exe 2014-01-30 21:55:24 B1625BA4BB3667C3219F2E2EB34AE0E7 411704 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avupgsvc.exe 2014-01-30 21:55:24 AFE071E446E1A2ABB75B0B9234AC726E 474680 ----a-w- C:\Program Files\Avira\AntiVir Desktop\ccuac.exe 2014-01-30 21:55:24 8D69B1551F51E18AE12E01DE6A2050EA 1011768 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe 2014-01-30 21:55:24 8A2DEC9995EFD16D97A84E3CB7F09812 759864 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avnotify.exe 2014-01-30 21:55:24 849D6BD0357DD1E39B01FFF40659B5ED 401976 ----a-w- C:\Program Files\Avira\AntiVir Desktop\checkt.exe 2014-01-30 21:55:24 782ED0F2DFF01B1556A353E4283F2888 1032760 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avscan.exe 2014-01-30 21:55:24 72B909F1594FC52D25FC3622B9D80D45 769592 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avconfig.exe 2014-01-30 21:55:24 6F1E9AB820B3DD8BD38C0190A206205D 431672 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe 2014-01-30 21:55:24 42AFC20DB8D9D8651E26140E95B6A902 858720 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avwsc.exe 2014-01-30 21:55:24 29D956C8CB67222D678FAF20D485B25B 1011768 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe 2014-01-30 21:55:24 17819ACCC4D21E3C07E80454A40A26EB 466488 ----a-w- C:\Program Files\Avira\AntiVir Desktop\guardgui.exe 2014-01-30 21:55:24 1305B94364F8F8F80DCD0E22E64E267A 467000 ----a-w- C:\Program Files\Avira\AntiVir Desktop\ipmgui.exe 2014-01-30 21:55:24 02AC980B23C6539B56DEC7956DE2DA3B 458296 ----a-w- C:\Program Files\Avira\AntiVir Desktop\licmgr.exe 2014-01-30 21:55:23 4E41301AB03814EABE37FCF194B728A6 1326512 ----a-w- C:\Program Files\Avira\AntiVir Desktop\offercast_avirav7_.exe 2014-01-30 21:46:36 563917418534A65BCAAC2DE6BD47F016 129564536 ----a-w- C:\ProgramData\Avira\My Avira\Temp\antivirus.exe 2014-01-30 21:45:04 2B8052B0922D270D094F6D06C28C0F4A 3975576 ----a-w- C:\Users\Marcel\Downloads\avira_oe_client_antivirus_en.exe 2014-01-30 21:40:35 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Marcel\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.34314545226369578.1.1.Run.exe 2014-01-30 21:31:04 A0844C730F1091B491A8737404F4C914 347816 ----a-w- C:\Users\Marcel\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.37314541774353054.1.1.Run.exe 2014-01-30 21:26:08 61AB175718EF5E9F69F163B16C8FFDA3 12809376 ----a-w- C:\ProgramData\Comodo Downloader\cis\download\installs\xml_binaries\privdog\privdog.exe 2014-01-30 21:26:04 E5DFEB91445838850ED7747C35516382 40522032 ----a-w- C:\ProgramData\Comodo Downloader\cis\download\installs\xml_binaries\dragon\dragonsetup.exe 2014-01-30 21:18:16 A0163415AE817DE66ABCCAEFD56F672D 211388240 ----a-w- C:\Users\Marcel\Downloads\cfw_installer.exe 2014-01-30 21:16:32 401F5787E44B2728C1C73BCBEC51CCB3 12217544 ----a-w- C:\Users\Marcel\Downloads\AppRemover.exe 2014-01-30 21:00:20 9796275DFBCF692C75CF667163B6767E 103896 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\x64\MEcp64.exe 2014-01-30 21:00:20 004C985F3BB669F9021807DCC77DFA74 179672 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\x64\Drv64.exe 2014-01-30 21:00:16 08E2B577DB95156F9A658C988EE71F5D 390616 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\LMS\LMS.exe 2014-01-30 21:00:13 D9B551B88BA132EAEF08DB1F95F6DB4E 1478616 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\IMSS\PrivacyIconClient.exe 2014-01-30 21:00:13 3AC269FDBF84B8BE16D5EBAD1F373550 134616 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\IMSS\PIconStartup.exe 2014-01-30 21:00:12 57739E742ABC085C2A4340D4404B4A8B 131544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\IFR\IntelMeFwService.exe 2014-01-30 21:00:12 1801436936E64598BAB5B87B37DC7F87 8990552 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\DAL\vcredist_x86.exe 2014-01-30 21:00:11 C9D9EEBCCEF20D637F193490CEC05E79 10274136 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\DAL\vcredist_x64.exe 2014-01-30 21:00:11 52069AEB42D3D0F97CBCA1085EBF55E6 169432 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\DAL\jhi_service.exe 2014-01-30 21:00:10 20CC50186375F5DE666E49E9CAD5B907 988632 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\Setup.exe 2014-01-30 19:16:24 C8A8321292A459B0A17FB39A782A5C74 806096 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2014-01-30 19:16:23 ED45D1C3FDA215374FBCFC161A57AA80 467456 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2014-01-30 19:16:23 CC02FE4520CA886508069245D9A6962F 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2014-01-30 19:16:23 2AFAE62B727EE7190450D4A14C287422 359632 ----a-w- C:\Program Files\Internet Explorer\iediagcmd.exe 2014-01-30 19:16:20 7F7F391491C315A4A72EFCAC0D34FA93 25600 ----a-w- C:\Program Files\Internet Explorer\ExtExport.exe 2014-01-30 19:10:02 31B2F9C62B37470482D7AB3D988D953F 34954376 ----a-w- C:\Users\Marcel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CPNV8XZS\EIE11_NL-NL_WOL_WIN7.EXE 2014-01-30 13:13:34 1420ABA24CF82D66070BD0188F88588E 6040688 ----a-w- C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\Update\skydrivesetup.exe 2014-01-30 13:13:34 1420ABA24CF82D66070BD0188F88588E 6040688 ----a-w- C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveSetup.exe 2014-01-30 13:13:22 0F4D9B695D793B4979EE2A32A285191B 77424 ----a-w- C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveConfig.exe 2014-01-30 13:04:45 DEDD078A9893AF42CD624977DADF308A 5659096 ----a-w- C:\Program Files\Microsoft SkyDrive\SkyDriveSetup.exe 2014-01-30 13:04:45 DEDD078A9893AF42CD624977DADF308A 5659096 ----a-w- C:\Program Files\Common Files\Windows Live\.cache\9be5aa1d1cf1dbb05\skydrivesetup.exe 2014-01-30 13:04:44 D213F06AE294341F3503FD74E22E7DDA 257136 ----a-w- C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe 2014-01-30 13:03:02 F5443547CAAC20AA334A88817579270F 525656 ----a-w- C:\Program Files\Common Files\Windows Live\.cache\99aaccf11cf1dbb04\DXSETUP.exe 2014-01-30 13:02:58 DDCE338BB173B32024679D61FB4F2BA6 537432 ----a-w- C:\Program Files\Common Files\Windows Live\.cache\970545851cf1dbb03\DXSETUP.exe 2014-01-30 13:02:47 DDCE338BB173B32024679D61FB4F2BA6 537432 ----a-w- C:\Program Files\Common Files\Windows Live\.cache\91ab69661cf1dbb01\DXSETUP.exe 2014-01-30 08:33:56 45BF0C1D004B807BA0A1978562A7D9C4 666856 ----a-w- C:\Users\Marcel\AppData\Local\Temp\ICReinstall_ICReinstall_ZipSetup.exe 2014-01-30 07:50:48 54DB2B8C60F04C5ADE6D711D47EABA75 1166132 ----a-w- C:\Users\Marcel\Downloads\adwcleaner.exe 2014-01-29 23:40:19 9AED8E824CF5FAAB67957EDBC5512060 164864 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe 2014-01-29 18:26:32 9D10F99A6712E28F8ACD5641E3A7EA6B 149352 ----a-w- C:\Users\Marcel\AppData\Local\Temp\Setup00000834\ose00000.exe 2014-01-29 09:28:59 45BF0C1D004B807BA0A1978562A7D9C4 666856 ----a-w- C:\Users\Marcel\AppData\Local\Temp\ICReinstall_ZipSetup.exe 2014-01-28 22:32:10 B3DD214F23037E3D3C27D6C9447B40B5 4247040 ----a-w- C:\Program Files\Windows NT\Accessories\wordpad.exe 2014-01-28 22:32:09 5E7C0B88923B4BBE4C21CB5ADE932DBA 983040 ----a-w- C:\Program Files\Windows Media Player\WMPDMC.exe 2014-01-28 22:32:09 3B40D3A61AA8C21B88AE57C58AB3122E 1121792 ----a-w- C:\Program Files\Windows Media Player\wmpnetwk.exe 2014-01-28 22:32:05 EF162817C730DB9355F6C28F2445D206 516096 ----a-w- C:\Program Files\Windows Mail\wab.exe 2014-01-28 22:31:41 2C49B175AEE1D4364B91B531417FE583 204800 ----a-w- C:\Windows\servicing\TrustedInstaller.exe 2014-01-28 22:31:31 7B554081A0A80B14F1E5D06441DBAF58 1221632 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\mip.exe 2014-01-28 22:31:26 1A8B7AC483D55E3D6E2C6BFCAA3C29FA 9612800 ----a-w- C:\Windows\ehome\CreateDisc\SBEServer.exe 2014-01-28 22:31:25 DCCA4B04AF87E52EF9EAA2190E06CBAC 1174016 ----a-w- C:\Program Files\Windows Sidebar\sidebar.exe 2014-01-28 22:30:16 5F2122888583347C9B81724CF169EFC6 303104 ----a-w- C:\Program Files\Common Files\microsoft shared\MSInfo\msinfo32.exe 2014-01-28 22:30:09 50DCD2C685D22348DA268F2AAB398230 2012672 ----a-w- C:\Program Files\Windows Media Player\setup_wm.exe 2014-01-28 22:30:06 0566DB6153DC8F7BDBEF9552A6852139 102400 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe 2014-01-28 22:30:03 B3D2770AAFB694A4C2EF911BF36C40DB 101888 ----a-w- C:\Program Files\Windows Media Player\wmpconfig.exe 2014-01-28 22:29:59 46691ECD93D1BA38DE8EB68AB281603E 228352 ----a-w- C:\Program Files\Windows Media Player\wmlaunch.exe 2014-01-28 22:28:38 40D777B7A95E00593EB1568C68514493 2616320 ----a-w- C:\Windows\explorer.exe 2014-01-28 22:28:37 A8C362018EFC87BEB013EE28F29C0863 556544 ----a-w- C:\Windows\ehome\ehrecvr.exe 2014-01-28 22:28:37 87C0B75D2DF4498B45138CB0197BDFD8 235520 ----a-w- C:\Windows\ehome\ehvid.exe 2014-01-28 22:28:36 A7DC47DBBE3C0384BA719DC4188AFA7E 144384 ----a-w- C:\Windows\ehome\ehtray.exe 2014-01-28 22:28:35 6A0CE6378716E61EC766D7D05D80046F 67584 ----a-w- C:\Windows\ehome\ehrec.exe 2014-01-28 22:28:34 7E865AD3D556F427F23FEC15C02649BA 226304 ----a-w- C:\Windows\ehome\ehprivjob.exe 2014-01-28 22:28:34 556CA4010C24BB32F9B1BEEF8420926A 169984 ----a-w- C:\Windows\ehome\Mcx2Prov.exe 2014-01-28 22:27:16 DBD14D0DB0382DFE96D7B5007DDD5ABE 65024 ----a-w- C:\Windows\bfsvc.exe 2014-01-28 22:27:15 631EA355665F28D4707448E442FBF5B8 485760 ----a-w- C:\Windows\Boot\PCAT\memtest.exe 2014-01-28 22:26:49 F65CFF843B6E073A4F8188E19EC538D2 186368 ----a-w- C:\Windows\ehome\mcupdate.exe 2014-01-28 22:25:48 7F404ED2BAD3365F1A6452DBE40024FD 143360 ----a-w- C:\Windows\ehome\ehexthost.exe 2014-01-28 15:56:46 CA0A340ABCF0C14A09691CBC90186AB4 51080 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateBroker.exe 2014-01-28 15:56:46 600B1A4BCC0823A96DC7B86F005ADBB8 51080 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateOnDemand.exe 2014-01-28 15:56:43 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateSetup.exe 2014-01-28 15:55:56 9CCBA5E2489E603BB1578D1D541252A8 273800 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler64.exe 2014-01-28 15:55:52 465680BDE344CE4FF6646626AA3A9125 223112 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe 2014-01-28 15:55:43 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdate.exe 2014-01-28 15:55:37 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.22.3\GoogleUpdateSetup.exe 2014-01-28 15:51:32 75B0D4CC6E1BFD6344EEF198270A773D 36532904 ----a-w- C:\Program Files\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\32.0.1700.102\32.0.1700.102_chrome_installer.exe 2014-01-28 15:50:35 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\GoogleUpdate.exe 2014-01-28 15:50:23 A6F8D4FBC12177A75AB4C06D059229B6 784664 ----a-w- C:\Users\Marcel\AppData\Local\Apps\2.0\1CW7599M.EPG\2689G89G.A4G\inst...app_4fe91ede9f9bdca3_0001.0003_fc100576141c6894\GoogleUpdateSetup.exe 2014-01-28 15:50:23 A6F8D4FBC12177A75AB4C06D059229B6 784664 ----a-w- C:\Users\Marcel\AppData\Local\Apps\2.0\1CW7599M.EPG\2689G89G.A4G\clic...exe_4fe91ede9f9bdca3_0001.0003_none_81523f7b64d98436\GoogleUpdateSetup.exe 2014-01-28 15:50:23 2D479A35439E0DFBDBF2FDB6DEE8D49B 10120 ------w- C:\Users\Marcel\AppData\Local\Apps\2.0\1CW7599M.EPG\2689G89G.A4G\inst...app_4fe91ede9f9bdca3_0001.0003_fc100576141c6894\clickonce_bootstrap.exe 2014-01-28 15:39:35 1C45FE48852BF6C4909AA42053E87514 40448 ----a-w- C:\Windows\servicing\GC32\tzupd.exe 2014-01-28 06:34:23 F99C56B59CE8C30F4B299812A77E1E58 490072 ----a-w- C:\Program Files\WinRAR\Rar.exe 2014-01-28 06:34:23 CEE4F0AC1087543056A07EE8C6F0D06A 136792 ----a-w- C:\Program Files\WinRAR\Uninstall.exe 2014-01-28 06:34:23 BAF91D94848FA72B9DB58CAAE044A5B2 1239640 ----a-w- C:\Program Files\WinRAR\WinRAR.exe 2014-01-28 06:34:23 2CA040EDEA081336FBC95DBCE1A7C71F 306776 ----a-w- C:\Program Files\WinRAR\UnRAR.exe 2014-01-27 21:32:03 5AF22331F2CA24D7688DE5C374519BA3 1785344 ----a-w- C:\Program Files\Windows Journal\Journal.exe 2014-01-27 20:05:18 B776DFE408E415AA901030C022EEB7DA 1821472 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe 2014-01-27 20:05:18 AA8F29F3343C04E0821678B6F431AC01 56096 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvsmartmaxapp.exe 2014-01-27 20:05:18 1ED58DA041A992EEEC934290508B6B71 865056 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe 2014-01-27 20:05:17 5C681F5599A4871E6798F5E98F94C4BE 5913376 ----a-w- C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe 2014-01-27 20:05:03 FEAC5C5E9A5D09913D74CC5C1761273B 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\Setup.exe 2014-01-27 20:05:03 1ED58DA041A992EEEC934290508B6B71 865056 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\nvxdsync.exe 2014-01-27 20:05:02 B776DFE408E415AA901030C022EEB7DA 1821472 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\NVTray.exe 2014-01-27 20:05:02 31B8835B003CAA6D31BEAD83DDBF98E5 634656 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\nvvsvc.exe 2014-01-27 20:05:01 AA8F29F3343C04E0821678B6F431AC01 56096 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\nvSmartMaxapp.exe 2014-01-27 20:05:01 5C681F5599A4871E6798F5E98F94C4BE 5913376 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{4345AEE6-1BDC-49EE-93C2-D462503FF1C4}\nvcplui.exe 2014-01-27 20:04:59 FEAC5C5E9A5D09913D74CC5C1761273B 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{E0E69EA1-2779-4577-A20B-C13ADDA9F9D3}\Setup.exe 2014-01-27 19:16:03 8C5042E938C80479B9F187022F6BCB72 353128 ----a-w- C:\ProgramData\NVIDIA\Updatus\Packages\00000eaf\drsupdate.13728286_RUNASUSER.exe 2014-01-27 19:11:04 F935E817409F78FA50C5921DB39124B3 1259296 ----a-w- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 2014-01-27 19:11:04 2F1E7414F6B6F2C7BF856917A01EF96E 1021728 ----a-w- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe 2014-01-27 19:11:04 156499BEAC2E8ACBCCBB196E5195101E 190752 ----a-w- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\WLMerger.exe 2014-01-27 19:10:47 FEAC5C5E9A5D09913D74CC5C1761273B 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\Setup.exe 2014-01-27 19:10:47 B776DFE408E415AA901030C022EEB7DA 1821472 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\NVTray.exe 2014-01-27 19:10:47 AA8F29F3343C04E0821678B6F431AC01 56096 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\nvSmartMaxapp.exe 2014-01-27 19:10:47 5C681F5599A4871E6798F5E98F94C4BE 5913376 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\nvcplui.exe 2014-01-27 19:10:47 31B8835B003CAA6D31BEAD83DDBF98E5 634656 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\nvvsvc.exe 2014-01-27 19:10:47 1ED58DA041A992EEEC934290508B6B71 865056 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{2750680C-80B0-44D0-A7BF-29A231DA7255}\nvxdsync.exe 2014-01-27 19:10:45 FEAC5C5E9A5D09913D74CC5C1761273B 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{0427331E-7B28-4D48-9509-6B610C40EB56}\Setup.exe 2014-01-27 19:10:32 FAED0CC8D37C076C03769D4CEFC3442A 1982312 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\nwiz.exe 2014-01-27 19:10:32 F935E817409F78FA50C5921DB39124B3 1259296 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{E1261637-B31C-472F-A1E2-B2D97F0EAECF}\daemonu.exe 2014-01-27 19:10:32 F935E817409F78FA50C5921DB39124B3 1259296 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\daemonu.exe 2014-01-27 19:10:32 F3877795F9F70AE4FF088456A51F9722 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\setup.exe 2014-01-27 19:10:32 F14B54FEB342AFBBF25E98E9FF295558 361248 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\NvMUP.exe 2014-01-27 19:10:32 D2212FC164B8307C28BD891808583515 28660816 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\NvCplSetupEng.exe 2014-01-27 19:10:32 CCB77AFC6F137F98C9527B8F8A9F01E9 238952 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\nvTaskbar.exe 2014-01-27 19:10:32 B759A82940C37D568F3DD0F2B063E85E 1239328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\d3dreg.exe 2014-01-27 19:10:32 928825458F2A1C16B3866C22A9BFFB0A 69978808 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\NvCplSetupInt.exe 2014-01-27 19:10:32 8E27914D21E20C3F17D79DF3FD8404AF 67584 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\nvsetup.exe 2014-01-27 19:10:32 8CC053D87B788241CDFBE1DC28F934F0 200992 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\dbInstaller.exe 2014-01-27 19:10:32 7C72F3C973635776301A952E7F9883BA 728424 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\Keystone.exe 2014-01-27 19:10:32 617E441CCD30496D6A2DD993F4DB942E 749344 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\nvWmi.exe 2014-01-27 19:10:32 43773A15198EF9EB983EF4F1C5886110 443240 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\nvAppBar.exe 2014-01-27 19:10:32 2F1E7414F6B6F2C7BF856917A01EF96E 1021728 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{E1261637-B31C-472F-A1E2-B2D97F0EAECF}\ComUpdatus.exe 2014-01-27 19:10:32 2F1E7414F6B6F2C7BF856917A01EF96E 1021728 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\ComUpdatus.exe 2014-01-27 19:10:32 156499BEAC2E8ACBCCBB196E5195101E 190752 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{E1261637-B31C-472F-A1E2-B2D97F0EAECF}\WLMerger.exe 2014-01-27 19:10:32 156499BEAC2E8ACBCCBB196E5195101E 190752 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\WLMerger.exe 2014-01-27 19:10:32 07F83412C6B12588759D5B2FFF885F61 22763232 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{E4F98D40-2AD8-4455-AF99-BD62C8A0286C}\3DVision_307.83.exe 2014-01-27 19:10:29 F3877795F9F70AE4FF088456A51F9722 404768 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{7DCE5706-177A-4B2D-98FB-5A70F91DC3E5}\setup.exe 2014-01-27 00:24:36 631EA355665F28D4707448E442FBF5B8 485760 ----a-w- C:\Boot\memtest.exe 2014-01-26 16:19:06 6A8CB90446387D6511AC24402669B6C8 154496 ----a-w- C:\fsc.tmp\1013465\PROUnstl.exe 2014-01-26 16:19:05 F98C190E0596B75158592EAC55FC2466 176128 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\PICON\atchksrv.exe 2014-01-26 16:19:05 EF3585E0787D5D2A402AD01E582E6808 90624 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\x64\Difx64.exe 2014-01-26 16:19:05 EF3585E0787D5D2A402AD01E582E6808 90624 ----a-w- C:\fsc.tmp\1013808\HECI\x64\Difx64.exe 2014-01-26 16:19:05 C82B4BF309113C4D71288F6D938DDA6E 2514944 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\UNS\UNS.exe 2014-01-26 16:19:05 A706ECC2298B3056400C55D892ADF934 401408 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\PICON\atchk.exe 2014-01-26 16:19:05 37F9DDFE5D512D6B2DB5425B3ED3F3AD 920344 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\setup.exe 2014-01-26 16:19:05 37D3C351995F2BEC0C6C35E73F8F11AF 102400 ----a-w- C:\fsc.tmp\1013808\LMS_SOL\LMS\LMS.exe 2014-01-26 16:19:04 4FADCF6FEB354829D51D780DFF764D3C 920344 ----a-w- C:\fsc.tmp\1013808\HECI\setup.exe 2014-01-26 16:19:01 DE07DD3C7D91CE70A8C1D7612C5879D3 94208 ----a-w- C:\fsc.tmp\1017680\Vista\RtkAudioService.exe 2014-01-26 16:19:01 8A451B4C2E8688311B7483B2D61D3FB6 1826816 ----a-w- C:\fsc.tmp\1017680\Vista\SkyTel.exe 2014-01-26 16:19:01 780CD58AF6438E8B1BB9F288D4E483CF 4706304 ----a-w- C:\fsc.tmp\1017680\Vista\RtHDVCpl.exe 2014-01-26 16:19:01 49B3D2077199C44C1F3BBB16B4094AE6 121064 ----a-w- C:\fsc.tmp\1017680\Setup.exe 2014-01-26 16:19:01 43C3571EADA5BC1EDEAD7CA22AD66F30 49152 ----a-w- C:\fsc.tmp\1017680\ChCfg.exe 2014-01-26 16:19:01 3DB566C154ABA88F1617CC24B71B9EC2 1191936 ----a-w- C:\fsc.tmp\1017680\Vista\RtlUpd.exe 2014-01-26 16:19:01 25C1F045FA646C7713BD3988A7BCF332 23552 ----a-w- C:\fsc.tmp\1017680\SetCDfmt.exe 2014-01-26 16:18:58 CAFB55AA463C6DF8802122838D50D2BB 116880 ----a-w- C:\fsc.tmp\1013483\setup.exe 2014-01-26 16:18:58 9AE1807AD1C7654016A2E826BD3A9EDE 356352 ----a-w- C:\fsc.tmp\1013483\NVUninst.exe 2014-01-26 16:18:58 9AE1807AD1C7654016A2E826BD3A9EDE 356352 ----a-w- C:\fsc.tmp\1013483\nvudisp.exe 2014-01-26 16:18:47 27A00A1512C0402B6EDEEB2B7E942F38 2403096 ----a-w- C:\fsc.tmp\1010554\infinst_autol.exe 2014-01-24 15:35:16 F1887FDD390E7DE33DC1F402D45CD823 174648 ----a-w- C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe 2014-01-24 15:35:04 C15007B7CBF9631EFAAEB8B39A0625E3 104504 ----a-w- C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe === C: other files == 2014-01-30 21:55:25 A36EE93698802CD899F98BFD553D8185 28520 ----a-w- C:\Windows\System32\drivers\ssmdrv.sys 2014-01-30 21:55:25 43552F707825F03E84C0FA217DBA3868 42088 ----a-w- C:\Program Files\Avira\AntiVir Desktop\sweb.zip 2014-01-30 21:55:24 D8C712305F73CD34D1B344810E522728 37352 ----a-w- C:\Windows\System32\drivers\avkmgr.sys 2014-01-30 21:55:24 D8C712305F73CD34D1B344810E522728 37352 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avkmgr.sys 2014-01-30 21:55:24 B8C10FF9369394EB84993F331810CF29 90400 ----a-w- C:\Windows\System32\drivers\avgntflt.sys 2014-01-30 21:55:24 B8C10FF9369394EB84993F331810CF29 90400 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avgntflt.sys 2014-01-30 21:55:24 444E1CF85DD54019DC6CBB73C0875728 69240 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avnetflt.sys 2014-01-30 21:55:24 4189E5AB2CAD6F395D87DAAE73EB090F 135648 ----a-w- C:\Windows\System32\drivers\avipbb.sys 2014-01-30 21:55:24 4189E5AB2CAD6F395D87DAAE73EB090F 135648 ----a-w- C:\Program Files\Avira\AntiVir Desktop\avipbb.sys 2014-01-30 21:00:19 15D689B7142164751F297841D45229BB 32 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\MEWMIProv\ME\cim_schema\Core\comp.bat 2014-01-30 21:00:18 792EB0CA0719F59E71FC682F25B3911C 195 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\MEWMIProv\ME\CreateMENamespace.bat 2014-01-30 21:00:12 F1A67CF6EA9DD11BFC730AB990C67D97 64472 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\Drivers\MEI\x64\HECIx64.sys 2014-01-30 21:00:12 E0EF6C1399A9B1AAA0B28590411BED04 99288 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\Drivers\MEI\x64\TEEDriverx64.sys 2014-01-30 21:00:12 6C87E806EDE05928EDA5E6BCB426BB7D 56280 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\Drivers\MEI\x86\HECI.sys 2014-01-30 21:00:12 113412F2962F700710BB22FCFE266B65 85464 ----a-w- C:\$Recycle.Bin\S-1-5-21-3731940905-1802021636-2726163588-1000\$R4259MQ\Drivers\MEI\x86\TEEDriver.sys 2014-01-30 07:39:32 9DAA1468BC7FBB55C3E6821082CACC28 194 ----a-w- C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp\3.8.3_0\js\MKLINKS.bat 2014-01-30 07:37:10 159B1E20E1314B6E1AD601111FB40797 388 ----a-w- C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk\1.2_0\js\z_compress-js.bat 2014-01-29 20:20:40 F81BB7E487EDCEAB630A7EE66CF23913 338944 ----a-w- C:\Windows\System32\drivers\afd.sys 2014-01-29 20:20:39 FC6B21DB4B5B398AB93DBE59CBF11036 36352 ----a-w- C:\Windows\System32\DriverStore\FileRepository\sti.inf_x86_neutral_24eb5587941b03fb\usbscan.sys 2014-01-29 20:20:39 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_1436b88c77b8881d\hidparse.sys 2014-01-29 20:20:39 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\drivers\hidparse.sys 2014-01-29 20:20:39 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_1436b88c77b8881d\hidclass.sys 2014-01-29 20:20:39 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys 2014-01-29 20:20:36 ED80D303102A746D30C1684B387BCBF1 33280 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys 2014-01-29 20:20:36 8C9C922D71F1CD4DEF73F186416B7896 712048 ----a-w- C:\Windows\System32\drivers\ndis.sys 2014-01-29 20:19:58 F286830298323272260332D6ABC905C1 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2014-01-29 20:19:58 D7C760D57B1656DD748B9E4AB6CB5A51 136640 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2014-01-29 20:19:58 85449EEBE8F8EBD6481EFBF0F352B4EB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys 2014-01-29 20:19:43 007C0C8D5B01D82ACEB70431D15083F6 28160 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mdmcpq.inf_x86_neutral_1965855805a8e768\usbser.sys 2014-01-29 20:19:36 E405328A0E38BF823E2361C413283F6D 218984 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys 2014-01-29 20:19:36 71BC35067CABC02C9453AEAA42B2E43E 729024 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2014-01-29 20:19:18 1E882889A4314D6DF5DED4F6EC994E72 2349056 ----a-w- C:\Windows\System32\win32k.sys 2014-01-29 20:19:05 3EEBD3BD93DA46A26E89893C7AB2FF3B 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys 2014-01-29 20:18:47 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_x86_neutral_df2ea65e936720f7\portcls.sys 2014-01-29 20:18:47 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys 2014-01-29 20:18:47 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_x86_neutral_df2ea65e936720f7\drmk.sys 2014-01-29 20:18:47 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys 2014-01-29 20:18:31 21F4B24ACFC79A483515BD986DD9043F 115712 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2014-01-29 20:18:29 CA59F7C570AF70BC174F477CFE2D9EE3 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2014-01-29 20:18:29 5DBD4F73E2A52FEED61DBAB3752E329C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys 2014-01-29 20:18:24 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\ataport.sys 2014-01-29 20:18:24 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\drivers\ataport.sys 2014-01-29 20:18:03 DE014425522610BEDCA3821BB8C0F1D5 146816 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbvideo.inf_x86_neutral_b63436395ec126b7\usbvideo.sys 2014-01-29 20:18:03 A1977C315BF5691DA99235AA4A6907AF 80896 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdma_usb.inf_x86_neutral_8583111d879ac65d\USBAUDIO.sys 2014-01-29 20:18:03 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbcir.inf_x86_neutral_1a7503cad201feda\usbcir.sys 2014-01-29 20:18:03 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\drivers\usbcir.sys 2014-01-29 20:18:00 25944D2CC49E0A6C581D02A74B7D6645 527064 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2014-01-29 20:17:58 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbehci.sys 2014-01-29 20:17:58 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2014-01-29 20:17:58 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_4232097e28daf017\usbccgp.sys 2014-01-29 20:17:58 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2014-01-29 20:17:57 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbhub.sys 2014-01-29 20:17:57 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_4232097e28daf017\usbhub.sys 2014-01-29 20:17:57 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2014-01-29 20:17:57 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbport.sys 2014-01-29 20:17:57 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2014-01-29 20:17:57 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbohci.sys 2014-01-29 20:17:57 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys 2014-01-29 20:17:57 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbuhci.sys 2014-01-29 20:17:57 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys 2014-01-29 20:17:57 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbd.sys 2014-01-29 20:17:57 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys 2014-01-29 20:14:25 B37B08F2E5EEB1A37E448E09BACE1101 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys 2014-01-29 09:31:11 4470E3C1E0C3378E4CAB137893C12C3A 22856 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-01-28 22:36:49 F991AB9CC6B908DB552166768176896A 76288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbstor.inf_x86_neutral_e6d53e776821c5b8\USBSTOR.SYS 2014-01-28 22:36:49 F991AB9CC6B908DB552166768176896A 76288 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS 2014-01-28 22:36:49 B3E25EE28883877076E0E1FF877D02E0 117120 ----a-w- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_0276fc3b3ea60d41\nvraid.sys 2014-01-28 22:36:49 B3E25EE28883877076E0E1FF877D02E0 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys 2014-01-28 22:36:49 4380E59A170D88C4F1022EFF6719A8A4 143744 ----a-w- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_0276fc3b3ea60d41\nvstor.sys 2014-01-28 22:36:49 4380E59A170D88C4F1022EFF6719A8A4 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys 2014-01-28 22:36:48 EF3D32464EBBB10449465C8CAB57CA19 148864 ----a-w- C:\Windows\System32\drivers\storport.sys 2014-01-28 22:36:46 D320BF87125326F996D4904FE24300FC 80256 ----a-w- C:\Windows\System32\DriverStore\FileRepository\amdsata.inf_x86_neutral_5c3d0d1e97e99e10\amdsata.sys 2014-01-28 22:36:46 D320BF87125326F996D4904FE24300FC 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys 2014-01-28 22:36:46 5CD5F9A5444E6CDCB0AC89BD62D8B76E 332160 ----a-w- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_0bcee2057afcc090\iaStorV.sys 2014-01-28 22:36:46 5CD5F9A5444E6CDCB0AC89BD62D8B76E 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys 2014-01-28 22:36:46 46387FB17B086D16DEA267D5BE23A2F2 22400 ----a-w- C:\Windows\System32\DriverStore\FileRepository\amdsata.inf_x86_neutral_5c3d0d1e97e99e10\amdxata.sys 2014-01-28 22:36:46 46387FB17B086D16DEA267D5BE23A2F2 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys 2014-01-28 22:32:48 D4D77455211E204F370D08F4963063CE 17920 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wvmbushid.inf_x86_neutral_337ff5bbc81c06e8\VMBusHID.sys 2014-01-28 22:32:48 D4D77455211E204F370D08F4963063CE 17920 ----a-w- C:\Windows\System32\drivers\VMBusHID.sys 2014-01-28 22:32:48 C2F2911156FDC7817C52829C86DA494E 175360 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wvmbus.inf_x86_neutral_fca91999602b0343\vmbus.sys 2014-01-28 22:32:48 C2F2911156FDC7817C52829C86DA494E 175360 ----a-w- C:\Windows\System32\drivers\vmbus.sys 2014-01-28 22:32:48 62BA4FDCA65BDB69695E0D1157C57717 43392 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wvmbus.inf_x86_neutral_fca91999602b0343\winhv.sys 2014-01-28 22:32:48 62BA4FDCA65BDB69695E0D1157C57717 43392 ----a-w- C:\Windows\System32\drivers\winhv.sys 2014-01-28 22:32:48 04990C25043705985F1EC40BF704AAAC 19456 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wvmbusvideo.inf_x86_neutral_1b297af3587246aa\VMBusVideoM.sys 2014-01-28 22:32:47 DCAFFD62259E0BDB433DD67B5BB37619 28032 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wstorvsc.inf_x86_neutral_d7bf942e99bb1d41\storvsc.sys 2014-01-28 22:32:47 DCAFFD62259E0BDB433DD67B5BB37619 28032 ----a-w- C:\Windows\System32\drivers\storvsc.sys 2014-01-28 22:32:47 7FA7F2E249A5DCBB7970630E15E1F482 5632 ----a-w- C:\Windows\System32\DriverStore\FileRepository\ws3cap.inf_x86_neutral_dac7c9faa4fc2a78\vms3cap.sys 2014-01-28 22:32:47 7FA7F2E249A5DCBB7970630E15E1F482 5632 ----a-w- C:\Windows\System32\drivers\vms3cap.sys 2014-01-28 22:32:47 472AF0311073DCECEAA8FA18BA2BDF89 40704 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wstorflt.inf_x86_neutral_3db956c41708f7f5\vmstorfl.sys 2014-01-28 22:32:47 472AF0311073DCECEAA8FA18BA2BDF89 40704 ----a-w- C:\Windows\System32\drivers\vmstorfl.sys 2014-01-28 22:32:46 DB72D49B2CB0E9B81038D134BBE3B02C 81152 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wnetvsc.inf_x86_neutral_548addf09cb466fa\netvsc50.sys 2014-01-28 22:32:46 A67E5F9A400F3BD1BE3D80613B45F708 35968 ----a-w- C:\Windows\System32\DriverStore\FileRepository\winusb.inf_x86_neutral_6cb50ae9f480775b\winusb.sys 2014-01-28 22:32:46 104BE93F0607C6AA0D85319581F96EC2 126464 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wnetvsc.inf_x86_neutral_548addf09cb466fa\netvsc60.sys 2014-01-28 22:32:44 2A958EF85DB1B61FFCA65044FA4BCE9E 62464 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmvsc.inf_x86_neutral_a2cf745000e2ea92\dmvsc.sys 2014-01-28 22:32:44 1D9F2BD026E8E2D45033A4DF3F16B78C 80768 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdma_usb.inf_x86_neutral_a721e4f3907a2769\USBAUDIO.sys 2014-01-28 22:32:39 F497F67932C6FA693D7DE2780631CFE7 245632 ----a-w- C:\Windows\System32\DriverStore\FileRepository\volume.inf_x86_neutral_6dee0205881d1a1d\volsnap.sys 2014-01-28 22:32:39 F497F67932C6FA693D7DE2780631CFE7 245632 ----a-w- C:\Windows\System32\drivers\volsnap.sys 2014-01-28 22:32:39 F3ADCFB2F0BA791A26AC8E9C33D7E20E 284672 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_f9abf85fd00186bd\usbport.sys 2014-01-28 22:32:39 CFBCE999C057D78979A181C9C60F208E 42496 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_f9abf85fd00186bd\usbehci.sys 2014-01-28 22:32:39 BF63EBFC6979FEFB2BC03DF7989A0C1A 76288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbstor.inf_x86_neutral_c77d41a490bdc63d\USBSTOR.SYS 2014-01-28 22:32:39 9D22AAD9AC6A07C691A1113E5F860868 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_f9abf85fd00186bd\usbhub.sys 2014-01-28 22:32:39 5461686CCA2FDA57B024547733AB42E3 160128 ----a-w- C:\Windows\System32\DriverStore\FileRepository\vhdmp.inf_x86_neutral_efa659e9a38d5b8c\vhdmp.sys 2014-01-28 22:32:39 5461686CCA2FDA57B024547733AB42E3 160128 ----a-w- C:\Windows\System32\drivers\vhdmp.sys 2014-01-28 22:32:39 45F4E7BF43DB40A6C6B4D92C76CBC3F2 146432 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbvideo.inf_x86_neutral_8fe3504355514e0c\usbvideo.sys 2014-01-28 22:32:38 D295BED4B898F0FD999FCFA9B32B071B 39936 ----a-w- C:\Windows\System32\DriverStore\FileRepository\umbus.inf_x86_neutral_79120b2cb6857971\umbus.sys 2014-01-28 22:32:38 D295BED4B898F0FD999FCFA9B32B071B 39936 ----a-w- C:\Windows\System32\drivers\umbus.sys 2014-01-28 22:32:38 A67E5F9A400F3BD1BE3D80613B45F708 35968 ----a-w- C:\Windows\System32\DriverStore\FileRepository\transfercable.inf_x86_neutral_82f4c743c8996d67\x86\winusb.sys 2014-01-28 22:32:38 9D22AAD9AC6A07C691A1113E5F860868 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_2620fd493cad7d41\usbhub.sys 2014-01-28 22:32:38 7E72E7D7E0757D59481D530FD2B0BFAE 75776 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_2620fd493cad7d41\usbccgp.sys 2014-01-28 22:32:38 052306FD76793D5D5AB5D9891FD1ADBB 25600 ----a-w- C:\Windows\System32\DriverStore\FileRepository\termmou.inf_x86_neutral_4cc2997d96f50d62\terminpt.sys 2014-01-28 22:32:38 052306FD76793D5D5AB5D9891FD1ADBB 25600 ----a-w- C:\Windows\System32\DriverStore\FileRepository\termkbd.inf_x86_neutral_1125d2fa6c2adf13\terminpt.sys 2014-01-28 22:32:38 045ACB987C650D8186C6B4A692223860 112640 ----a-w- C:\Windows\System32\DriverStore\FileRepository\tsusbhub.inf_x86_neutral_927afe150d9ff343\tsusbhub.sys 2014-01-28 22:32:38 01246F0BAAD7B68EC0F472AA41E33282 27264 ----a-w- C:\Windows\System32\DriverStore\FileRepository\tsgenericusbdriver.inf_x86_neutral_10faa3d9ed6a6c29\TsUsbGD.sys 2014-01-28 22:32:37 F2AD8960812FD111E20E84659EF19D43 77184 ----a-w- C:\Windows\System32\DriverStore\FileRepository\synth3dvsc.inf_x86_neutral_bccbc5fb46a05558\Synth3dVsc.sys 2014-01-28 22:32:34 6D4CCAEDC018F1CF52866BBBAA235982 12800 ----a-w- C:\Windows\System32\DriverStore\FileRepository\sffdisk.inf_x86_neutral_7e5210507f8fc265\sffp_sd.sys 2014-01-28 22:32:34 6D4CCAEDC018F1CF52866BBBAA235982 12800 ----a-w- C:\Windows\System32\drivers\sffp_sd.sys 2014-01-28 22:32:28 05D860DA1040F111503AC416CCEF2BCA 85376 ----a-w- C:\Windows\System32\DriverStore\FileRepository\sbp2.inf_x86_neutral_bfc02db3bc163c19\sbp2port.sys 2014-01-28 22:32:28 05D860DA1040F111503AC416CCEF2BCA 85376 ----a-w- C:\Windows\System32\drivers\sbp2port.sys 2014-01-28 22:32:28 0328BE1C7F1CBA23848179F8762E391C 84992 ----a-w- C:\Windows\System32\DriverStore\FileRepository\sdbus.inf_x86_neutral_47b152eccdb186c8\sdbus.sys 2014-01-28 22:32:26 98F3C9CC6A660A0CAD14EF5A10765953 93568 ----a-w- C:\Windows\System32\DriverStore\FileRepository\rdvgwddm.inf_x86_neutral_345f205da00aaad5\rdvgkmd.sys 2014-01-28 22:32:22 AF2EEC9580C1D32FB7EAF105D9784061 117120 ----a-w- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_dd659ed032d28a14\nvraid.sys 2014-01-28 22:32:22 9283C58EBAA2618F93482EB5DABCEC82 143744 ----a-w- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_dd659ed032d28a14\nvstor.sys 2014-01-28 22:32:16 55055F8AD8BE27A64C831322A780A228 116096 ----a-w- C:\Windows\System32\DriverStore\FileRepository\msdsm.inf_x86_neutral_cacb427259f0d93e\msdsm.sys 2014-01-28 22:32:16 55055F8AD8BE27A64C831322A780A228 116096 ----a-w- C:\Windows\System32\drivers\msdsm.sys 2014-01-28 22:32:16 4B55C9F9A93B3BFD01ED7366EB0B9D2E 132992 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\ataport.sys 2014-01-28 22:32:16 2D699FB6E89CE0D8DA14ECC03B3EDFE0 130432 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mpio.inf_x86_neutral_18f08f79e68b1972\mpio.sys 2014-01-28 22:32:16 2D699FB6E89CE0D8DA14ECC03B3EDFE0 130432 ----a-w- C:\Windows\System32\drivers\mpio.sys 2014-01-28 22:32:16 099972E1FAF4950D3994FBAB9DD21253 140160 ----a-w- C:\Windows\System32\drivers\scsiport.sys 2014-01-28 22:32:16 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\msahci.sys 2014-01-28 22:32:16 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\msahci.sys 2014-01-28 22:32:16 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\drivers\msahci.sys 2014-01-28 22:31:45 1A078C3FE1C1F9C8561CD600C69AD300 26112 ----a-w- C:\Windows\System32\drivers\usbrpm.sys 2014-01-28 22:31:41 FD82D2B38C465A55C527E339BA1201B1 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD.sys 2014-01-28 22:31:41 EE43346C7E4B5E63E54F927BABBB32FF 246784 ----a-w- C:\Windows\System32\drivers\udfs.sys 2014-01-28 22:31:41 E071E5BE621FEC4590117C488A78AE32 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD2.sys 2014-01-28 22:31:41 B2FA25D9B17A68BB93D58B0556E8C90D 108544 ----a-w- C:\Windows\System32\drivers\tunnel.sys 2014-01-28 22:31:40 B973FCFC50DC1434E1970A146F7E3885 133632 ----a-w- C:\Windows\System32\drivers\rdpdr.sys 2014-01-28 22:31:40 B459575348C20E8121D6039DA063C704 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys 2014-01-28 22:31:40 2F885864D5BC8A16C86BEE595969A48A 21504 ----a-w- C:\Windows\System32\drivers\tdi.sys 2014-01-28 22:31:39 FD1D6C73E6333BE727CBCC6054247654 52224 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2014-01-28 22:31:33 23DAE03F29D253AE74C44F99E515F9A1 6656 ----a-w- C:\Windows\System32\drivers\RDPCDD.sys 2014-01-28 22:31:26 0693B5EC673E34DC147E195779A4DCF6 26624 ----a-w- C:\Windows\System32\drivers\scfilter.sys 2014-01-28 22:31:04 906DCFC5EBF4EC0433F8D4FFFB0BA334 117760 ----a-w- C:\Windows\System32\drivers\rmcast.sys 2014-01-28 22:31:03 D528BC58A489409BA40334EBF96A311B 242688 ----a-w- C:\Windows\System32\drivers\rdbss.sys 2014-01-28 22:31:03 518395321DC96FE2C9F0E96AC743B656 173440 ----a-w- C:\Windows\System32\drivers\rdyboost.sys 2014-01-28 22:31:02 A4BDC541E69674FBFF1A8FF00BE913F2 48640 ----a-w- C:\Windows\System32\drivers\ndproxy.sys 2014-01-28 22:31:02 3C3C78515F5AB448B022BDF5B8FFDD2E 63488 ----a-w- C:\Windows\System32\drivers\wanarp.sys 2014-01-28 22:31:02 38FBE267E7E6983311179230FACB1017 118784 ----a-w- C:\Windows\System32\drivers\ndiswan.sys 2014-01-28 22:30:49 3C2177A897B4CA2788C6FB0C3FD81D4B 388096 ----a-w- C:\Windows\System32\drivers\csc.sys 2014-01-28 22:30:44 D8A65DAFB3EB41CBB622745676FCD072 46080 ----a-w- C:\Windows\System32\drivers\ndisuio.sys 2014-01-28 22:30:44 280122DDCF04B378EDD1AD54D71C1E54 187904 ----a-w- C:\Windows\System32\drivers\netbt.sys 2014-01-28 22:30:16 FC8771F45ECCCFD89684E38842539B9B 78208 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2014-01-28 22:29:30 5DCEF0C32BE0F33277326586FA503689 190976 ----a-w- C:\Windows\System32\drivers\ks.sys 2014-01-28 22:29:08 871917B07A141BFF43D76D8844D48106 513536 ----a-w- C:\Windows\System32\drivers\http.sys 2014-01-28 22:29:07 0C4E035C7F105F1299258C90886C64C5 14208 ----a-w- C:\Windows\System32\drivers\hwpolicy.sys 2014-01-28 22:28:21 F024449C97EC1E464AAFFDA18593DB88 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys 2014-01-28 22:27:03 AEA177F783E20150ACE5383EE368DA19 50176 ----a-w- C:\Windows\System32\drivers\appid.sys 2014-01-28 22:26:49 FA69CC7B9A6ECFC1AC330D433C5785C2 9216 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\m4mc.sys 2014-01-28 22:26:49 F477E616557CD6EF05CE822012555976 10240 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\jvcmc.sys 2014-01-28 22:26:49 F12809D3CC9FBE9A2BE486C04B0471D7 11264 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\ddsmc.sys 2014-01-28 22:26:49 D306166F579FB49A9FB95A152EEF3999 12288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\plasmc.sys 2014-01-28 22:26:49 D1E461E2BE4D6CC03BA52ECE7103ECCA 13312 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\powerfil.sys 2014-01-28 22:26:49 C73A584234D77E2C6ADD1C3737DECE8C 13312 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\examc.sys 2014-01-28 22:26:49 C510CDDB20668BD7E4EDCBDA31191756 14848 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\hpmc.sys 2014-01-28 22:26:49 B54BD7A2190D8B41073DF04842A2D0C2 10752 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\elmsmc.sys 2014-01-28 22:26:49 B0E31A90D5B7497483DCAF89FA023A62 11264 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\nsmmc.sys 2014-01-28 22:26:49 A66B90FEC65845619B6D8CFB7DA5991C 10240 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\seaddsmc.sys 2014-01-28 22:26:49 A5858E75B6705A70FC2BACD4517BC8F6 11776 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\qlstrmc.sys 2014-01-28 22:26:49 A2DBC1F1DEA533CA372A6E0FD2019AA5 9728 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\qntmmc.sys 2014-01-28 22:26:49 9DA23A0C0F87BA0B44454D94CD3B84C3 10752 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\snyaitmc.sys 2014-01-28 22:26:49 7E93DF14AD4BBB5E86CDA330FD0C46D7 10240 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\pnrmc.sys 2014-01-28 22:26:49 6A3F06CCDF329C88EA6261CDEB14B531 13312 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\sonymc.sys 2014-01-28 22:26:49 34AECDF0B35FC528C04DB25C746A5BB1 12288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\libxprmc.sys 2014-01-28 22:26:49 31181DE6190B39FC8007DFFD1A48FFD6 27648 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mdmcpq.inf_x86_neutral_9f203c20b6f0dabd\usbser.sys 2014-01-28 22:26:49 139C3B86867EDB69F78668A48BA31033 11264 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\spctramc.sys 2014-01-28 22:26:49 032ED8DD95B0172EE1677C65A25874C5 10240 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\breecemc.sys 2014-01-28 22:26:48 E39C731D6DD21CE2E37DEC907DE6A43D 11776 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\adicsc.sys 2014-01-28 22:26:48 E348589B8078A5788550F946D0114120 10752 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\atlmc.sys 2014-01-28 22:26:48 9E3CED91863E6EE98C24794D05E27A71 28160 ----a-w- C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_x86_neutral_50ad659974198591\kbdhid.sys 2014-01-28 22:26:48 9E3CED91863E6EE98C24794D05E27A71 28160 ----a-w- C:\Windows\System32\drivers\kbdhid.sys 2014-01-28 22:26:48 673E55C3498EB970088E812EA820AA8F 153984 ----a-w- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\pci.sys 2014-01-28 22:26:48 673E55C3498EB970088E812EA820AA8F 153984 ----a-w- C:\Windows\System32\drivers\pci.sys 2014-01-28 22:26:48 6281420610D830562A5323F294CB4F3A 10752 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mchgr.inf_x86_neutral_185970e67258389c\adicvls.sys 2014-01-28 22:26:48 4C63E00F2F4B5F86AB48A58CD990F212 53120 ----a-w- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\volmgr.sys 2014-01-28 22:26:48 4C63E00F2F4B5F86AB48A58CD990F212 53120 ----a-w- C:\Windows\System32\drivers\volmgr.sys 2014-01-28 22:26:48 04DBF4B01EA4BF25A9A3E84AFFAC9B20 53120 ----a-w- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\termdd.sys 2014-01-28 22:26:48 04DBF4B01EA4BF25A9A3E84AFFAC9B20 53120 ----a-w- C:\Windows\System32\drivers\termdd.sys 2014-01-28 22:26:47 CB7A9ABB12B8415BCE5D74994C7BA3AE 233344 ----a-w- C:\Windows\System32\DriverStore\FileRepository\iscsi.inf_x86_neutral_7ad2bf0be3b9a90e\msiscsi.sys 2014-01-28 22:26:47 CB7A9ABB12B8415BCE5D74994C7BA3AE 233344 ----a-w- C:\Windows\System32\drivers\msiscsi.sys 2014-01-28 22:26:47 A5EF29D5315111C80A5C1ABAD14C8972 304128 ----a-w- C:\Windows\System32\DriverStore\FileRepository\hdaudio.inf_x86_neutral_5a5e688ecb9e273f\HdAudio.sys 2014-01-28 22:26:47 A5EF29D5315111C80A5C1ABAD14C8972 304128 ----a-w- C:\Windows\System32\drivers\HdAudio.sys 2014-01-28 22:26:47 A3CAE5D281DB4CFF7CFF8233507EE5AD 332160 ----a-w- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_668286aa35d55928\iaStorV.sys 2014-01-28 22:26:47 931A1DF1520ABC6E84BA4A75E6957025 55808 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_9e1eba5724be176f\hidclass.sys 2014-01-28 22:26:47 9036377B8A6C15DC2EEC53E489D159B5 108544 ----a-w- C:\Windows\System32\DriverStore\FileRepository\hdaudbus.inf_x86_neutral_77479a4820fb8643\hdaudbus.sys 2014-01-28 22:26:47 9036377B8A6C15DC2EEC53E489D159B5 108544 ----a-w- C:\Windows\System32\drivers\hdaudbus.sys 2014-01-28 22:26:47 4BD7134618C1D2A27466A099062547BF 65536 ----a-w- C:\Windows\System32\DriverStore\FileRepository\ipmidrv.inf_x86_neutral_2084908fa838c2b9\IPMIDrv.sys 2014-01-28 22:26:47 4BD7134618C1D2A27466A099062547BF 65536 ----a-w- C:\Windows\System32\drivers\IPMIDrv.sys 2014-01-28 22:26:47 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_9e1eba5724be176f\hidusb.sys 2014-01-28 22:26:47 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_1436b88c77b8881d\hidusb.sys 2014-01-28 22:26:47 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\drivers\hidusb.sys 2014-01-28 22:26:46 CAEFD09B6A6249C53A67D55A9A9FCABF 16384 ----a-w- C:\Windows\System32\DriverStore\FileRepository\dot4prt.inf_x86_neutral_ff48d313003e46b8\Dot4Prt.sys 2014-01-28 22:26:45 CBE8C58A8579CFE5FCCF809E6F114E89 31232 ----a-w- C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_x86_neutral_a53ef080c39c3218\CompositeBus.sys 2014-01-28 22:26:45 CBE8C58A8579CFE5FCCF809E6F114E89 31232 ----a-w- C:\Windows\System32\drivers\CompositeBus.sys 2014-01-28 22:26:45 BE167ED0FDB9C1FA1133953C18D5A6C9 108544 ----a-w- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys 2014-01-28 22:26:45 BE167ED0FDB9C1FA1133953C18D5A6C9 108544 ----a-w- C:\Windows\System32\drivers\cdrom.sys 2014-01-28 22:26:45 43B3206DD654E783AA7E4EAD340A43B8 60416 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_2d4ce84c4a0b8470\BTHUSB.SYS 2014-01-28 22:26:45 195C41CC67E9E1CEDD960CCB74925920 393216 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_2d4ce84c4a0b8470\bthport.sys 2014-01-28 22:26:44 E7F4D42D8076EC60E21715CD11743A0D 80256 ----a-w- C:\Windows\System32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdsata.sys 2014-01-28 22:26:44 CEA80C80BED809AA0DA6FEBC04733349 274304 ----a-w- C:\Windows\System32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\acpi.sys 2014-01-28 22:26:44 CEA80C80BED809AA0DA6FEBC04733349 274304 ----a-w- C:\Windows\System32\drivers\acpi.sys 2014-01-28 22:26:44 1EFBC664ABFF416D1D07DB115DCB264F 10240 ----a-w- C:\Windows\System32\DriverStore\FileRepository\acpipmi.inf_x86_neutral_71194ee3f26255a7\acpipmi.sys 2014-01-28 22:26:44 1EFBC664ABFF416D1D07DB115DCB264F 10240 ----a-w- C:\Windows\System32\drivers\acpipmi.sys 2014-01-28 22:26:44 1B133875B8AA8AC48969BD3458AFE9F5 164864 ----a-w- C:\Windows\System32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394ohci.sys 2014-01-28 22:26:44 1B133875B8AA8AC48969BD3458AFE9F5 164864 ----a-w- C:\Windows\System32\drivers\1394ohci.sys 2014-01-28 22:26:44 146459D2B08BFDCBFA856D9947043C81 22400 ----a-w- C:\Windows\System32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdxata.sys 2014-01-28 21:22:40 159B1E20E1314B6E1AD601111FB40797 388 ----a-w- C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk\1.2_0\js\z_compress-js.bat 2014-01-28 21:21:57 9DAA1468BC7FBB55C3E6821082CACC28 194 ----a-w- C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp\3.8.3_0\js\MKLINKS.bat 2014-01-28 18:30:25 FEEC1633ACF3D5CE9E84B22C017E2D94 7568 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\pubprn.vbs 2014-01-28 18:30:25 DCAA62E607931A6D3B90F4C4A9CBC478 52170 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prndrvr.vbs 2014-01-28 18:30:25 D1B5AC911041E364DC692814DEE01265 70588 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prnjobs.vbs 2014-01-28 18:30:25 B4FEB058CBE7A84FAC07123516DDD1A6 82154 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prnmngr.vbs 2014-01-28 18:30:25 B38E087C31679784DD16CA468B20FAC1 106910 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prncnfg.vbs 2014-01-28 18:30:25 71167CD0B2964F448B2A8E1BFF887286 51880 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prnqctl.vbs 2014-01-28 18:30:25 07CEA409FFA5957D437E6A2E16676D76 57494 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\it-IT\prnport.vbs 2014-01-28 18:14:22 F6A047642BF8644A3955D7F1205DD9C6 7110 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\pubprn.vbs 2014-01-28 18:14:22 D6F24DE8AA3CD09450FC8BAA9EB6707D 55130 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prnport.vbs 2014-01-28 18:14:22 A5F831E5D8B85277320A8434167284E6 78490 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prnmngr.vbs 2014-01-28 18:14:22 8C6F53C88BCAD7057F113136D3A13468 103974 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prncnfg.vbs 2014-01-28 18:14:22 75B81040196281A2C7147823AD44EA07 49058 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prndrvr.vbs 2014-01-28 18:14:22 3C88A8AD632BB25AFBF61E5541230E6F 50626 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prnqctl.vbs 2014-01-28 18:14:22 3A9B09B65881401A7B1F3D18AB62E963 68432 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-TW\prnjobs.vbs 2014-01-28 18:07:23 FB231DC6C870B872242DAF2415040094 68656 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prnjobs.vbs 2014-01-28 18:07:23 E00209EC1D0D5FFC414FBCA809BB2617 50756 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prnqctl.vbs 2014-01-28 18:07:23 CE267EB1DC762C8F9193DC7851D05935 49602 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prndrvr.vbs 2014-01-28 18:07:23 C07C487AD434E1A28D2DC9031D03E377 55320 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prnport.vbs 2014-01-28 18:07:23 BAE2E8A3062BE1D991C9E79FFEEFDB4F 7194 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\pubprn.vbs 2014-01-28 18:07:23 5AF249B0D39DA291AD7A38AB54724F6F 104146 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prncnfg.vbs 2014-01-28 18:07:23 5772C5B5341C99EC3C22AD4E114358ED 78860 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\ko-KR\prnmngr.vbs 2014-01-28 17:59:26 CA00C2D587D39AA5C0B17B60A9B74CB7 51974 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prnqctl.vbs 2014-01-28 17:59:26 C20AE62A7E65CC3D4EF6B8ADCBE76472 57568 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prnport.vbs 2014-01-28 17:59:26 86F513A8AD67DA4BB0CE8EA547DF31C1 107270 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prncnfg.vbs 2014-01-28 17:59:26 7053FE944558EFD74AEAD1841AB64596 7726 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\pubprn.vbs 2014-01-28 17:59:26 6D3822DBAF5F3DBEA4905BF5A6DE0F44 70914 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prnjobs.vbs 2014-01-28 17:59:26 182B77AA820674A8168AB0328C3B904C 82594 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prnmngr.vbs 2014-01-28 17:59:26 102289F3B854C8DEA54B991C58069501 52460 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fr-FR\prndrvr.vbs 2014-01-28 17:49:45 FF4CE24A8E7A8C70136F9444AF7AE546 51336 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prndrvr.vbs 2014-01-28 17:49:45 C9113F56330F897B0AF429DF4AFFC2A7 81600 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prnmngr.vbs 2014-01-28 17:49:45 8631D9CA310FB22C7E9635A9A57FCC37 106608 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prncnfg.vbs 2014-01-28 17:49:45 7D9C889CF7106E09FAE2606092655AA0 51674 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prnqctl.vbs 2014-01-28 17:49:45 5D8E7FE14DD2F6FE6E4DC33D649CC804 57050 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prnport.vbs 2014-01-28 17:49:45 2C93FE2654E0E6A9B0D896F622434DAB 7524 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\pubprn.vbs 2014-01-28 17:49:45 1F01DF005477581A1BCBFF86BB27F2BA 70182 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\cs-CZ\prnjobs.vbs 2014-01-28 17:03:16 F92DE757E4B7CE9C07C5E65423F3AE3B 43008 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbehci.sys 2014-01-28 17:03:16 BD9C55D7023C5DE374507ACC7A14E2AC 75776 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_1584ed9878602b0f\usbccgp.sys 2014-01-28 17:03:16 8DC94AEC6A7E644A06135AE7506DC2E9 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbhub.sys 2014-01-28 17:03:16 8DC94AEC6A7E644A06135AE7506DC2E9 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_1584ed9878602b0f\usbhub.sys 2014-01-28 17:03:16 68DF884CF41CDADA664BEB01DAF67E3D 24064 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbuhci.sys 2014-01-28 17:03:16 3AA940AA9AC3055FE32FF2D3D20CCD28 284672 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbport.sys 2014-01-28 17:03:15 E185D44FAC515A18D9DEDDC23C2CDF44 20480 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbohci.sys 2014-01-28 17:03:15 5787196F32D043572EC6565C0EF1B8E0 5888 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_18e46bb8fd6f032e\usbd.sys 2014-01-28 17:03:03 C2FBF6D271D9A94D839C416BF186EAD9 393728 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_92c343c9dc681a74\bthport.sys 2014-01-28 17:03:02 C81E9413A25A439F436B1D4B6A0CF9E9 60416 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_92c343c9dc681a74\BTHUSB.SYS 2014-01-28 17:03:01 C81E9413A25A439F436B1D4B6A0CF9E9 60416 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_a6bf6d613b46f6a5\BTHUSB.SYS 2014-01-28 17:03:01 1153DE2E4F5941E10C399CB5592F78A1 393728 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_neutral_a6bf6d613b46f6a5\bthport.sys 2014-01-28 16:23:41 48704647CD2E9DAA2EB81BDE6D029EDB 47720 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys 2014-01-28 16:23:01 867C301E8B790040AE9CF6486E8041DF 155136 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys 2014-01-28 16:23:01 06E6F32C8D0A3F66D956F57B43A2E070 66560 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys 2014-01-28 16:22:17 7DAE5EBCC80E45D3253F4923DC424D05 19824 ----a-w- C:\Windows\System32\drivers\fs_rec.sys 2014-01-27 23:16:13 DB55DA4BAD4F786BBDDB2A03C18AEC6F 106494 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prncnfg.vbs 2014-01-27 23:16:13 B7902DA49D1EA3838988F919114DFEF4 51680 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prndrvr.vbs 2014-01-27 23:16:13 8BD5F877DC0F9523424412823FC5C06E 51600 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prnqctl.vbs 2014-01-27 23:16:13 60E8BBF95A9C2B67B935177D6A072DB1 7452 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\pubprn.vbs 2014-01-27 23:16:13 56D265A4155D3100307B80A3BA230901 70098 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prnjobs.vbs 2014-01-27 23:16:13 512975D0AC96280F95F9D18863EE47C3 81538 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prnmngr.vbs 2014-01-27 23:16:13 3C0B11765D6B51AFD572BB799276BF2C 56810 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\fi-FI\prnport.vbs 2014-01-27 23:08:08 F57889EE915B908E326EE36DDD96CB02 103792 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prncnfg.vbs 2014-01-27 23:08:08 B7A6B1CD233563F67D8469B369B74E2E 78338 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prnmngr.vbs 2014-01-27 23:08:08 731B5E03B3597187DEC0C44F0FA1871C 48976 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prndrvr.vbs 2014-01-27 23:08:08 4D8AD265EC36BD3207E04CAC3910EAE0 50494 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prnqctl.vbs 2014-01-27 23:08:08 29CF998E68F0FEECB6E63A824B3D4A67 7094 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\pubprn.vbs 2014-01-27 23:08:08 2327813B34849C26AFC5BA01D4722291 54874 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prnport.vbs 2014-01-27 23:08:08 0094B8F9BF090C06F2FF3B3C51AF5081 68294 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\zh-CN\prnjobs.vbs 2014-01-27 22:39:33 F7D4D187D8F3490C11F6E4D7AED2B72D 56756 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prnport.vbs 2014-01-27 22:39:33 C36D1285B62C6739B465A285148E4000 51462 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prnqctl.vbs 2014-01-27 22:39:33 AB328741766A47CACE8978A24260C51A 7418 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\pubprn.vbs 2014-01-27 22:39:32 96289191763ACF8E4AB69F622262B15F 51312 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prndrvr.vbs 2014-01-27 22:39:32 816213C95FC12D011BF789213E1CC973 81048 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prnmngr.vbs 2014-01-27 22:39:32 31D7079AF27F244E6AA5B7A7C8FE75F3 105940 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prncnfg.vbs 2014-01-27 22:39:32 03E9BADC32A52E3CB44E4277803CFFF9 69882 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\en-US\prnjobs.vbs 2014-01-27 22:34:03 F3F91F257B8A7EF36D4B15A75F908436 70136 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prnjobs.vbs 2014-01-27 22:34:03 ECE2AD8CE19614FA7DDA135BF905A39B 51276 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prndrvr.vbs 2014-01-27 22:34:03 E0A01816791DB268227122DC54E7777C 56910 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prnport.vbs 2014-01-27 22:34:03 CBC12C09784DA31649D48F802D9ED362 106154 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prncnfg.vbs 2014-01-27 22:34:03 956CCA8C3D8E3BAFF1C816D1ECA30504 81342 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prnmngr.vbs 2014-01-27 22:34:03 92FCF4A0C5B6CC8B2C3D70B2FE4C0CB9 7434 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\pubprn.vbs 2014-01-27 22:34:03 383669623AEC2B7B208122570886F72C 51528 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\nb-NO\prnqctl.vbs 2014-01-27 22:27:32 F7BA12BD6F318026E9B1AB4F1A2F6AD7 51806 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prnqctl.vbs 2014-01-27 22:27:32 F16D120501FB639C668F727A7375F689 106798 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prncnfg.vbs 2014-01-27 22:27:32 F1492764A08F8C7D426723DE1D0C1A63 7518 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\pubprn.vbs 2014-01-27 22:27:32 E1C1A05BBAD56549B56805366F32830C 57556 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prnport.vbs 2014-01-27 22:27:32 D2FAB22C38EAD7148F5BDFA0417EC2FD 82080 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prnmngr.vbs 2014-01-27 22:27:32 7B95C5501F3CDC3C6F35C063682C9C50 70574 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prnjobs.vbs 2014-01-27 22:27:32 5484F6531D08C211A3EB462C0FFE7042 51986 ----a-w- C:\Windows\System32\Printing_Admin_Scripts\de-DE\prndrvr.vbs 2014-01-27 21:33:06 E4C2764065D66EA1D2D3EBC28FE99C46 311808 ----a-w- C:\Windows\System32\drivers\srv.sys 2014-01-27 21:33:06 BE6BD660CAA6F291AE06A718A4FA8ABC 114688 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2014-01-27 21:33:06 03F0545BD8D4C77FA0AE1CEEDFCC71AB 310272 ----a-w- C:\Windows\System32\drivers\srv2.sys 2014-01-27 21:32:25 B81F204D146000BE76651A50670A5E9E 96768 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2014-01-27 21:32:25 6D17A4791ACA19328C685D256349FEFC 223744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2014-01-27 21:32:25 5D16C921E3671636C0EBA3BBAAC5FD25 123904 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2014-01-27 21:32:15 AAB149EE616952BB84308C28E75ED20D 187752 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS 2014-01-27 21:31:41 5E43D2B0EE64123D4880DFA6626DEFDE 1211752 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2014-01-27 21:31:39 F031683E6D1FEA157ABB2FF260B51E61 183808 ----a-w- C:\Windows\System32\drivers\rdpwd.sys 2014-01-27 21:31:22 E306A24D9694C724FA2491278BF50FDB 196328 ----a-w- C:\Windows\System32\drivers\fvevol.sys 2014-01-27 21:31:01 3F34A1B4C5F6475F320C275E63AFCE9B 56176 ----a-w- C:\Windows\System32\drivers\partmgr.sys 2014-01-27 21:30:54 FE8A57C8E04EDD3AA8ADD8F3C8F65297 15872 ----a-w- C:\Windows\System32\drivers\usb8023.sys 2014-01-27 21:30:54 C44206971082446BA8E9A19A35D41424 30208 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_1c5becb2deac08f0\rndismp6.sys 2014-01-27 21:30:54 C44206971082446BA8E9A19A35D41424 30208 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_0b46e86f0f566f5a\rndismp6.sys 2014-01-27 21:30:54 BE444D443F424E3146534BA98978D68A 15872 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_1c5becb2deac08f0\usb80236.sys 2014-01-27 21:30:54 AF77716205C97E902E6C5B78DECE2CCA 15872 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_1c5becb2deac08f0\usb8023x.sys 2014-01-27 21:30:54 94617EC3A62336151C039E15A2945042 33280 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_1c5becb2deac08f0\rndismpx.sys 2014-01-27 21:30:54 94617EC3A62336151C039E15A2945042 33280 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netrndis.inf_x86_neutral_0b46e86f0f566f5a\rndismpx.sys 2014-01-27 21:30:30 D0F0D7A97C90FE72A79732812E65F822 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2014-01-27 21:30:27 8F2DA3028D5FCBD1A060A3DE64CD6506 69632 ----a-w- C:\Windows\System32\drivers\bowser.sys 2014-01-27 20:22:20 68A0387F58E226DEEE23D9715955572A 15872 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys 2014-01-27 20:22:20 2C2C5AFE7EE4F620D69C23C0617651A8 24576 ----a-w- C:\Windows\System32\drivers\tdtcp.sys 2014-01-27 20:22:20 1CB91B2BD8F6DD367DFC2EF26FD751B2 18432 ----a-w- C:\Windows\System32\drivers\tdpipe.sys 2014-01-26 16:19:06 DB93AE5D09E962B8E24EA7E99F19F141 125816 ----a-w- C:\fsc.tmp\1013465\E1G60I32.sys 2014-01-26 16:19:06 7552922839FB347704B3F58E5020986F 165272 ----a-w- C:\fsc.tmp\1013465\E1000NT5.SYS 2014-01-26 16:19:06 712CF7644656FB8A00081F50158EF62A 235928 ----a-w- C:\fsc.tmp\1013465\E1e5032.SYS 2014-01-26 16:19:06 34AAA3B298A852B3663E6E0D94D12945 254872 ----a-w- C:\fsc.tmp\1013465\e1e5132.sys 2014-01-26 16:19:06 3044851B3C5286A908A6A4D1166328AA 171416 ----a-w- C:\fsc.tmp\1013465\E1000325.sys 2014-01-26 16:19:06 04944F4FC4F0477185F5D26AE0DDB90E 228224 ----a-w- C:\fsc.tmp\1013465\e1e6032.sys 2014-01-26 16:19:04 C865D1F6D03595DF213DC3C67E4E4C58 45056 ----a-w- C:\fsc.tmp\1013808\HECI\HECI\HECI.sys 2014-01-26 16:19:04 57D5B9BBB70F70D0EFCB8B47F3947EC5 45312 ----a-w- C:\fsc.tmp\1013808\HECI\HECI\HECI2k.sys 2014-01-26 16:19:04 3CE9668E4AD154424B39EFAC30C49DEB 70424 ----a-w- C:\fsc.tmp\1013808\HECI\HECI\HECIx64.sys 2014-01-26 16:19:01 CE1342D3AAC00B81188ACF7365A9F374 2019416 ----a-w- C:\fsc.tmp\1017680\Vista\RTKVHDA.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3731940905-1802021636-2726163588-1000\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_11F810DC58703105CF0600BCC1ED96D2"="C:\Program Files\Google\Chrome\Application\chrome.exe --no-startup-window" [HKEY_USERS\S-1-5-21-3731940905-1802021636-2726163588-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:Troubleshoot problems installing Service Pack 1 (SP1) for Windows 7 and Windows Server 2008 R2 /build:7601" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-3731940905-1802021636-2726163588-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" "WAB Migrate"="%ProgramFiles%\Windows Mail\wab.exe /Upgrade" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:Troubleshoot problems installing Service Pack 1 (SP1) for Windows 7 and Windows Server 2008 R2 /build:7601" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "COMODO Internet Security"="C:\Program Files\COMODO\COMODO Internet Security\cistray.exe" "Avira Systray"="C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe" "avgnt"="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe /min" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_11F810DC58703105CF0600BCC1ED96D2"="C:\Program Files\Google\Chrome\Application\chrome.exe --no-startup-window" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\AutoKMS.job --a------ C:\Windows\AutoKMS\AutoKMS.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [28-01-2014 16:50] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [28-01-2014 16:50] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\AutoKMS" [C:\Windows\AutoKMS\AutoKMS.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\{0CDD3496-0B5D-4D84-BB63-2B9A35FAA157}" [C:\Users\Marcel\Desktop\FTS_IntelRActiveManagementTechnologyDriver_95L05_1099436\Setup.exe] "C:\Windows\system32\tasks\{928711DC-BE0D-4D37-9B89-AD25328E3F59}" [C:\Users\Marcel\Desktop\FTS_IntelRActiveManagementTechnologyDriver_95L05_1099436\Setup.exe] "C:\Windows\system32\tasks\{E8139123-1F47-4765-BDBA-E01180683379}" [C:\Users\Marcel\Desktop\FTS_IntelRActiveManagementTechnologyDriver_95L05_1099436\Setup.exe] "C:\Windows\system32\tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}" ["C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe"] "C:\Windows\system32\tasks\COMODO\COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69}" ["C:\Program Files\COMODO\COMODO Internet Security\cis.exe"] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Chrome Look ====================== Google Translate - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb Prezi - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\acoonfmhnndodekhecidldfdjgooefpg CookiesOK - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\afmkbjoakcacgljcdccofbffloabfbni Facebook Notifications - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ainkhhbgcdbenmmbaoacambbhjfgnmmm Check It Later Extension - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\amcmidlnbalnbkilajedfgiibhcfmbkh Delibookmarks (Delicious Bookmarks) - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\animchmhhndbcfahoigdpelodbhnhepg Embed WMPlayer inline - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli MindMeister - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm Open with Google Drive\u2122 Viewer - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdkpinfdldjdngmgfbifbdbgaoampkan SmoothScroll - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn OpenDyslexic - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnapgfjopgaggbmfgbiinmmbdcglnam Pushbullet - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd Symbaloo Bookmarker 0.4 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnjfgbikbkcmickdalamlmpmkhmbollm Send to Google Drive - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppogeekogbladboceekjeiibihnkbhp Read Later Fast - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji Symbaloo - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfnbdccaiknlpdgabdgjijniolkgmoeh MindMup - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnenaecjcgeppfpaokiifokeieopppej *Auto Logout Google Accounts* - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecobfildhmfjnalpfhjagnoldllommec Drive Template Gallery - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\edccfahmoapjmcaahncgcekjodejmhkg Torrent Turbo Search App - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eegbffmjdkflkcfncpfjjbggbdlnbdif Black Menu for Google\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eignhdfgaldabilaaegmdfbajngjmoke Box - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl Silver Bird - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic Chrome Notepad - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp Presentation Remote for Google Drive\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjdgmdaaacgdbfdohoidfjiipmbnbnho PowerInbox - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmmgljeemhhajnponhffhpjioiclpmbh VoiceThread - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gajclnhcflhoicggnpmgkedchldikjgn Facebook for Chrome - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp DocuSign - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd TweetDeck by Twitter - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl Kaizena (Voice Comments) - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdoaikeblbbiphjibkhliiedjhnbbke LastPass - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd Refresh for Twitter - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdpiilkeoldobfomlhipnnfanmgfllmp Feedly - News Blogs and Youtube - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Power Twitter for Google Chrome\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\iieehhjfejnoljbnnhfnhibcjhmifffo Speed Dial 2 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik Bookmarks - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk Phone 2 Google Chrome\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnlgojabfogikedjanecphloghlegpdm Lazarus Form Recovery - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\loljledaigphbcpfhfmgopdkppkifgno Boomerang for Gmail - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll LinkedIn Notifications - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\menceeiihdbmfffpmgeokellaigfjcdm Presentation Remote - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhfdnafbhfglkcjgkgoopjoadaopcomi Pocket - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk Ghostery - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij SkyDrive - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk Weeronline actueel Nederland - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\npgafdngocgnaincgfbpeblbeaadkpfa Checker Plus for Gmail\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj Twitter Preview URLs - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijgblonhcagdhfbgjilnpjipmijimmn Online Muziek Luisteren - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\olacollommkcihebibpjdbhkngcnhgdg Scoop.it - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn Instagram for Chrome - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb SpeakIt - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak Appie - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pidjpfnhaidmahnblgikaaadclebmoio Chrome Update Notifier Plus - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\plfbafagepmnjfhgoaakiobjffddcnbd iReader - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppelffpjgkifjfgnbaaldcehkpajlmbc Netvibes Chrome Extension - Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppfnnghflmcnehkalpghfnidkpcjclbm Google Translate - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb Prezi - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\acoonfmhnndodekhecidldfdjgooefpg CookiesOK - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afmkbjoakcacgljcdccofbffloabfbni Facebook Notifications - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ainkhhbgcdbenmmbaoacambbhjfgnmmm Check It Later Extension - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\amcmidlnbalnbkilajedfgiibhcfmbkh Delibookmarks (Delicious Bookmarks) - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\animchmhhndbcfahoigdpelodbhnhepg Embed WMPlayer inline - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bamkbfdmckphehgiafpenehgebjgdlli Open with Google Drive\u2122 Viewer - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bdkpinfdldjdngmgfbifbdbgaoampkan SmoothScroll - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn OpenDyslexic - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cdnapgfjopgaggbmfgbiinmmbdcglnam Pushbullet - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd Symbaloo Bookmarker 0.4 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cnjfgbikbkcmickdalamlmpmkhmbollm Send to Google Drive - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cppogeekogbladboceekjeiibihnkbhp Read Later Fast - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\decdfngdidijkdjgbknlnepdljfaepji Symbaloo - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dfnbdccaiknlpdgabdgjijniolkgmoeh MindMup - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dnenaecjcgeppfpaokiifokeieopppej *Auto Logout Google Accounts* - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ecobfildhmfjnalpfhjagnoldllommec Drive Template Gallery - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\edccfahmoapjmcaahncgcekjodejmhkg Torrent Turbo Search App - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eegbffmjdkflkcfncpfjjbggbdlnbdif Black Menu for Google\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eignhdfgaldabilaaegmdfbajngjmoke Box - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl Silver Bird - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\encaiiljifbdbjlphpgpiimidegddhic Chrome Notepad - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp Presentation Remote for Google Drive\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fjdgmdaaacgdbfdohoidfjiipmbnbnho PowerInbox - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fmmgljeemhhajnponhffhpjioiclpmbh VoiceThread - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gajclnhcflhoicggnpmgkedchldikjgn Facebook for Chrome - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp DocuSign - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\goblijolcnempeilmnkmfbhohlpngemd TweetDeck by Twitter - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hbdpomandigafcibbmofojjchbcdagbl Kaizena (Voice Comments) - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hcdoaikeblbbiphjibkhliiedjhnbbke LastPass - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd Refresh for Twitter - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdpiilkeoldobfomlhipnnfanmgfllmp Feedly - News Blogs and Youtube - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Power Twitter for Google Chrome\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iieehhjfejnoljbnnhfnhibcjhmifffo Speed Dial 2 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik Bookmarks - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk Phone 2 Google Chrome\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lnlgojabfogikedjanecphloghlegpdm Lazarus Form Recovery - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\loljledaigphbcpfhfmgopdkppkifgno Boomerang for Gmail - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll LinkedIn Notifications - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\menceeiihdbmfffpmgeokellaigfjcdm Presentation Remote - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mhfdnafbhfglkcjgkgoopjoadaopcomi Pocket - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk Ghostery - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mlomiejdfkolichcflejclcbmpeaniij SkyDrive - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nffchahhjecejoiigmnhhicpoabngedk Weeronline actueel Nederland - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\npgafdngocgnaincgfbpeblbeaadkpfa Checker Plus for Gmail\u2122 - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj Twitter Preview URLs - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oijgblonhcagdhfbgjilnpjipmijimmn Online Muziek Luisteren - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olacollommkcihebibpjdbhkngcnhgdg Scoop.it - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn Instagram for Chrome - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb SpeakIt - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pgeolalilifpodheeocdmbhehgnkkbak Appie - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pidjpfnhaidmahnblgikaaadclebmoio Chrome Update Notifier Plus - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\plfbafagepmnjfhgoaakiobjffddcnbd iReader - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ppelffpjgkifjfgnbaaldcehkpajlmbc Netvibes Chrome Extension - Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ppfnnghflmcnehkalpghfnidkpcjclbm LastPass - Marcel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\hdokiejnpimakedhajhdlcegeplioahd ==== Chrome Fix ====================== C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik deleted successfully C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.nl/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Users\Marcel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Marcel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=257 folders=37 7017529 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Marcel\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot
  4. Logfile of random's system information tool 1.09 (written by random/random) Run by Marcel at 2014-01-30 22:59:05 Microsoft Windows 7 Ultimate Service Pack 1 System drive C: has 66 GB (64%) free of 102 GB Total RAM: 3573 MB (42% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:59:26, on 30-1-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16428) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe C:\Program Files\COMODO\COMODO Internet Security\cis.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Windows\system32\taskhost.exe c:\program files\avira\antivir desktop\avgnt.exe C:\Program Files\Avira\AntiVir Desktop\updrgui.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Marcel\Downloads\RSIT.exe C:\Program Files\trend micro\Marcel.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe O4 - HKLM\..\Run: [Avira Systray] C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_11F810DC58703105CF0600BCC1ED96D2] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-3731940905-1802021636-2726163588-1001\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-3731940905-1802021636-2726163588-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe O23 - Service: NLS Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\system32\NLSSRV32.EXE O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- End of file - 6470 bytes ======Scheduled tasks folder====== C:\Windows\tasks\AutoKMS.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2013-11-11 1576152] "Avira Systray"=C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [2014-01-24 174648] "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-12-09 684600] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_11F810DC58703105CF0600BCC1ED96D2"=C:\Program Files\Google\Chrome\Application\chrome.exe [2014-01-23 866584] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-01-30 22:59:06 ----D---- C:\Program Files\trend micro 2014-01-30 22:59:05 ----D---- C:\rsit 2014-01-30 22:55:25 ----A---- C:\Windows\system32\drivers\ssmdrv.sys 2014-01-30 22:55:24 ----A---- C:\Windows\system32\drivers\avkmgr.sys 2014-01-30 22:55:24 ----A---- C:\Windows\system32\drivers\avipbb.sys 2014-01-30 22:55:24 ----A---- C:\Windows\system32\drivers\avgntflt.sys 2014-01-30 22:46:07 ----D---- C:\ProgramData\Avira 2014-01-30 22:46:07 ----D---- C:\Program Files\Avira 2014-01-30 22:45:26 ----D---- C:\ProgramData\Package Cache 2014-01-30 22:29:21 ----SD---- C:\ProgramData\Shared Space 2014-01-30 22:29:17 ----D---- C:\Program Files\COMODO 2014-01-30 22:29:15 ----D---- C:\ProgramData\Comodo 2014-01-30 22:29:12 ----D---- C:\ProgramData\Comodo Downloader 2014-01-30 21:05:42 ----D---- C:\Users\Marcel\AppData\Roaming\Adobe 2014-01-30 20:39:57 ----HD---- C:\Windows\msdownld.tmp 2014-01-30 20:16:24 ----A---- C:\Windows\system32\wininet.dll 2014-01-30 20:16:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-30 20:16:24 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-30 20:16:24 ----A---- C:\Windows\system32\msls31.dll 2014-01-30 20:16:24 ----A---- C:\Windows\system32\jsproxy.dll 2014-01-30 20:16:24 ----A---- C:\Windows\system32\jsIntl.dll 2014-01-30 20:16:24 ----A---- C:\Windows\system32\elshyph.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\urlmon.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\url.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\msrating.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\mshtmlmedia.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\iesetup.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\iertutil.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\iernonce.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\iedkcs32.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\ieapfltr.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\ieapfltr.dat 2014-01-30 20:16:23 ----A---- C:\Windows\system32\ie4uinit.exe 2014-01-30 20:16:23 ----A---- C:\Windows\system32\icardie.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\dxtrans.dll 2014-01-30 20:16:23 ----A---- C:\Windows\system32\dxtmsft.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\wextract.exe 2014-01-30 20:16:22 ----A---- C:\Windows\system32\webcheck.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\vbscript.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\mshtmled.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\mshtml.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\msfeeds.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\licmgr10.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\inseng.dll 2014-01-30 20:16:22 ----A---- C:\Windows\system32\iexpress.exe 2014-01-30 20:16:21 ----A---- C:\Windows\system32\pngfilt.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\occache.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\MshtmlDac.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\mshta.exe 2014-01-30 20:16:21 ----A---- C:\Windows\system32\jscript.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\imgutil.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\ieUnatt.exe 2014-01-30 20:16:21 ----A---- C:\Windows\system32\iepeers.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\ieetwproxystub.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2014-01-30 20:16:21 ----A---- C:\Windows\system32\ieetwcollector.exe 2014-01-30 20:16:20 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2014-01-30 20:16:20 ----A---- C:\Windows\system32\mshtmler.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\msfeedssync.exe 2014-01-30 20:16:20 ----A---- C:\Windows\system32\msfeedsbs.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\jscript9diag.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\jscript9.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\ieui.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\iesysprep.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\ieframe.dll 2014-01-30 20:16:20 ----A---- C:\Windows\system32\IEAdvpack.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-30 20:14:47 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\XpsPrint.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\WMPhoto.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\WindowsCodecs.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\UIAnimation.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\FntCache.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\dxgi.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\DWrite.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10warp.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10level9.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10core.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10_1core.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10_1.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d3d10.dll 2014-01-30 20:14:47 ----A---- C:\Windows\system32\d2d1.dll 2014-01-30 14:11:55 ----D---- C:\Windows\nl 2014-01-30 14:11:17 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-30 14:09:57 ----D---- C:\Windows\PCHEALTH 2014-01-30 14:09:24 ----D---- C:\Program Files\Windows Live 2014-01-30 14:08:47 ----A---- C:\Windows\system32\XAudio2_7.dll 2014-01-30 14:08:47 ----A---- C:\Windows\system32\XAPOFX1_5.dll 2014-01-30 14:08:47 ----A---- C:\Windows\system32\D3DCompiler_43.dll 2014-01-30 14:08:46 ----A---- C:\Windows\system32\d3dx11_43.dll 2014-01-30 14:07:19 ----A---- C:\Windows\system32\d3dx10_42.dll 2014-01-30 14:05:46 ----A---- C:\Windows\system32\d3dx9_32.dll 2014-01-30 14:04:45 ----D---- C:\Program Files\Microsoft SkyDrive 2014-01-30 14:04:24 ----D---- C:\ProgramData\Microsoft SkyDrive 2014-01-30 00:40:20 ----A---- C:\Windows\system32\wmp.dll 2014-01-30 00:40:19 ----A---- C:\Windows\system32\wmploc.DLL 2014-01-29 21:20:40 ----A---- C:\Windows\system32\mswsock.dll 2014-01-29 21:20:40 ----A---- C:\Windows\system32\drivers\afd.sys 2014-01-29 21:20:39 ----A---- C:\Windows\system32\drivers\hidparse.sys 2014-01-29 21:20:39 ----A---- C:\Windows\system32\drivers\hidclass.sys 2014-01-29 21:20:38 ----A---- C:\Windows\system32\comctl32.dll 2014-01-29 21:20:37 ----A---- C:\Windows\system32\rpcrt4.dll 2014-01-29 21:20:36 ----A---- C:\Windows\system32\drivers\RNDISMP.sys 2014-01-29 21:20:36 ----A---- C:\Windows\system32\drivers\ndis.sys 2014-01-29 21:20:32 ----A---- C:\Windows\system32\wintrust.dll 2014-01-29 21:20:28 ----A---- C:\Windows\system32\authui.dll 2014-01-29 21:20:27 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll 2014-01-29 21:20:27 ----A---- C:\Windows\system32\credui.dll 2014-01-29 21:20:16 ----A---- C:\Windows\system32\msieftp.dll 2014-01-29 21:19:58 ----A---- C:\Windows\system32\schannel.dll 2014-01-29 21:19:58 ----A---- C:\Windows\system32\lsasrv.dll 2014-01-29 21:19:58 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2014-01-29 21:19:58 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2014-01-29 21:19:58 ----A---- C:\Windows\system32\drivers\cng.sys 2014-01-29 21:19:57 ----A---- C:\Windows\system32\sspisrv.dll 2014-01-29 21:19:57 ----A---- C:\Windows\system32\sspicli.dll 2014-01-29 21:19:57 ----A---- C:\Windows\system32\secur32.dll 2014-01-29 21:19:57 ----A---- C:\Windows\system32\ncrypt.dll 2014-01-29 21:19:57 ----A---- C:\Windows\system32\lsass.exe 2014-01-29 21:19:42 ----A---- C:\Windows\system32\wscript.exe 2014-01-29 21:19:42 ----A---- C:\Windows\system32\imagehlp.dll 2014-01-29 21:19:41 ----A---- C:\Windows\system32\scrrun.dll 2014-01-29 21:19:41 ----A---- C:\Windows\system32\cscript.exe 2014-01-29 21:19:40 ----A---- C:\Windows\system32\OxpsConverter.exe 2014-01-29 21:19:36 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2014-01-29 21:19:36 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2014-01-29 21:19:35 ----A---- C:\Windows\system32\wwansvc.dll 2014-01-29 21:19:35 ----A---- C:\Windows\system32\wwanprotdim.dll 2014-01-29 21:19:31 ----A---- C:\Windows\system32\cryptdlg.dll 2014-01-29 21:19:26 ----A---- C:\Windows\system32\tdh.dll 2014-01-29 21:19:26 ----A---- C:\Windows\system32\ntoskrnl.exe 2014-01-29 21:19:26 ----A---- C:\Windows\system32\ntkrnlpa.exe 2014-01-29 21:19:25 ----A---- C:\Windows\system32\ntdll.dll 2014-01-29 21:19:25 ----A---- C:\Windows\system32\advapi32.dll 2014-01-29 21:19:23 ----A---- C:\Windows\system32\tzres.dll 2014-01-29 21:19:19 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-01-29 21:19:18 ----A---- C:\Windows\system32\win32spl.dll 2014-01-29 21:19:18 ----A---- C:\Windows\system32\win32k.sys 2014-01-29 21:19:17 ----A---- C:\Windows\system32\lpk.dll 2014-01-29 21:19:17 ----A---- C:\Windows\system32\fontsub.dll 2014-01-29 21:19:17 ----A---- C:\Windows\system32\dciman32.dll 2014-01-29 21:19:17 ----A---- C:\Windows\system32\atmlib.dll 2014-01-29 21:19:17 ----A---- C:\Windows\system32\atmfd.dll 2014-01-29 21:19:16 ----A---- C:\Windows\system32\scavengeui.dll 2014-01-29 21:19:12 ----A---- C:\Windows\system32\certutil.exe 2014-01-29 21:19:12 ----A---- C:\Windows\system32\certenc.dll 2014-01-29 21:19:06 ----A---- C:\Windows\system32\ncsi.dll 2014-01-29 21:19:06 ----A---- C:\Windows\system32\iphlpsvc.dll 2014-01-29 21:19:05 ----A---- C:\Windows\system32\nlasvc.dll 2014-01-29 21:19:05 ----A---- C:\Windows\system32\nlaapi.dll 2014-01-29 21:19:05 ----A---- C:\Windows\system32\netevent.dll 2014-01-29 21:19:05 ----A---- C:\Windows\system32\netcorehc.dll 2014-01-29 21:19:05 ----A---- C:\Windows\system32\drivers\tcpipreg.sys 2014-01-29 21:18:56 ----A---- C:\Windows\system32\d3d11.dll 2014-01-29 21:18:55 ----A---- C:\Windows\system32\qedit.dll 2014-01-29 21:18:53 ----A---- C:\Windows\system32\WMVDECOD.DLL 2014-01-29 21:18:47 ----A---- C:\Windows\system32\drivers\portcls.sys 2014-01-29 21:18:47 ----A---- C:\Windows\system32\drivers\drmk.sys 2014-01-29 21:18:31 ----A---- C:\Windows\system32\WebClnt.dll 2014-01-29 21:18:31 ----A---- C:\Windows\system32\drivers\mrxdav.sys 2014-01-29 21:18:31 ----A---- C:\Windows\system32\davclnt.dll 2014-01-29 21:18:29 ----A---- C:\Windows\system32\gdi32.dll 2014-01-29 21:18:29 ----A---- C:\Windows\system32\drivers\tcpip.sys 2014-01-29 21:18:29 ----A---- C:\Windows\system32\drivers\netio.sys 2014-01-29 21:18:27 ----A---- C:\Windows\system32\shell32.dll 2014-01-29 21:18:27 ----A---- C:\Windows\system32\shdocvw.dll 2014-01-29 21:18:24 ----A---- C:\Windows\system32\drivers\ataport.sys 2014-01-29 21:18:23 ----A---- C:\Windows\system32\nshwfp.dll 2014-01-29 21:18:23 ----A---- C:\Windows\system32\IKEEXT.DLL 2014-01-29 21:18:23 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2014-01-29 21:18:20 ----A---- C:\Windows\system32\taskhost.exe 2014-01-29 21:18:13 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2014-01-29 21:18:13 ----A---- C:\Windows\system32\dhcpcore6.dll 2014-01-29 21:18:06 ----A---- C:\Windows\system32\cryptsvc.dll 2014-01-29 21:18:06 ----A---- C:\Windows\system32\cryptnet.dll 2014-01-29 21:18:06 ----A---- C:\Windows\system32\crypt32.dll 2014-01-29 21:18:03 ----A---- C:\Windows\system32\drivers\usbcir.sys 2014-01-29 21:18:00 ----A---- C:\Windows\system32\drivers\Wdf01000.sys 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-01-29 21:17:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-01-29 21:17:59 ----A---- C:\Windows\system32\winsrv.dll 2014-01-29 21:17:59 ----A---- C:\Windows\system32\KernelBase.dll 2014-01-29 21:17:59 ----A---- C:\Windows\system32\kernel32.dll 2014-01-29 21:17:59 ----A---- C:\Windows\system32\conhost.exe 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-01-29 21:17:58 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-01-29 21:17:58 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-01-29 21:17:58 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-01-29 21:17:57 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-01-29 21:17:57 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-01-29 21:17:57 ----A---- C:\Windows\system32\drivers\usbohci.sys 2014-01-29 21:17:57 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-01-29 21:17:57 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-01-29 21:14:25 ----A---- C:\Windows\system32\rdpcorets.dll 2014-01-29 21:14:25 ----A---- C:\Windows\system32\drivers\tssecsrv.sys 2014-01-29 21:14:08 ----A---- C:\Windows\system32\consent.exe 2014-01-29 21:14:08 ----A---- C:\Windows\system32\appinfo.dll 2014-01-29 10:31:33 ----D---- C:\Users\Marcel\AppData\Roaming\Malwarebytes 2014-01-29 10:31:12 ----D---- C:\ProgramData\Malwarebytes 2014-01-29 10:31:11 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2014-01-29 10:31:11 ----A---- C:\Windows\system32\drivers\mbam.sys 2014-01-29 10:27:53 ----D---- C:\Program Files\CCleaner 2014-01-29 00:28:30 ----D---- C:\Windows\system32\SPReview 2014-01-28 23:36:49 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS 2014-01-28 23:36:49 ----A---- C:\Windows\system32\drivers\nvstor.sys 2014-01-28 23:36:49 ----A---- C:\Windows\system32\drivers\nvraid.sys 2014-01-28 23:36:48 ----A---- C:\Windows\system32\fsutil.exe 2014-01-28 23:36:48 ----A---- C:\Windows\system32\drivers\storport.sys 2014-01-28 23:36:46 ----A---- C:\Windows\system32\esent.dll 2014-01-28 23:36:46 ----A---- C:\Windows\system32\drivers\iaStorV.sys 2014-01-28 23:36:46 ----A---- C:\Windows\system32\drivers\amdxata.sys 2014-01-28 23:36:46 ----A---- C:\Windows\system32\drivers\amdsata.sys 2014-01-28 23:32:48 ----A---- C:\Windows\system32\vmictimeprovider.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\vmicsvc.exe 2014-01-28 23:32:48 ----A---- C:\Windows\system32\vmicres.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\vmbusres.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\vmbuspipe.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\VmbusCoinstaller.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\IcCoinstall.dll 2014-01-28 23:32:48 ----A---- C:\Windows\system32\drivers\winhv.sys 2014-01-28 23:32:48 ----A---- C:\Windows\system32\drivers\VMBusHID.sys 2014-01-28 23:32:48 ----A---- C:\Windows\system32\drivers\vmbus.sys 2014-01-28 23:32:47 ----A---- C:\Windows\system32\WSDApi.dll 2014-01-28 23:32:47 ----A---- C:\Windows\system32\vmstorfltres.dll 2014-01-28 23:32:47 ----A---- C:\Windows\system32\VmdCoinstall.dll 2014-01-28 23:32:47 ----A---- C:\Windows\system32\drivers\vmstorfl.sys 2014-01-28 23:32:47 ----A---- C:\Windows\system32\drivers\vms3cap.sys 2014-01-28 23:32:47 ----A---- C:\Windows\system32\drivers\storvsc.sys 2014-01-28 23:32:46 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2014-01-28 23:32:46 ----A---- C:\Windows\system32\PresentationHost.exe 2014-01-28 23:32:45 ----A---- C:\Windows\system32\StructuredQuery.dll 2014-01-28 23:32:39 ----A---- C:\Windows\system32\drivers\volsnap.sys 2014-01-28 23:32:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys 2014-01-28 23:32:38 ----A---- C:\Windows\system32\umb.dll 2014-01-28 23:32:38 ----A---- C:\Windows\system32\drivers\umbus.sys 2014-01-28 23:32:34 ----A---- C:\Windows\system32\drivers\sffp_sd.sys 2014-01-28 23:32:28 ----A---- C:\Windows\system32\drivers\sbp2port.sys 2014-01-28 23:32:22 ----A---- C:\Windows\system32\FirewallControlPanel.dll 2014-01-28 23:32:21 ----A---- C:\Windows\system32\MPSSVC.dll 2014-01-28 23:32:21 ----A---- C:\Windows\system32\AuthFWSnapin.dll 2014-01-28 23:32:18 ----A---- C:\Windows\system32\mscories.dll 2014-01-28 23:32:18 ----A---- C:\Windows\system32\mscorier.dll 2014-01-28 23:32:18 ----A---- C:\Windows\system32\mscoree.dll 2014-01-28 23:32:17 ----A---- C:\Windows\system32\netfxperf.dll 2014-01-28 23:32:17 ----A---- C:\Windows\system32\Narrator.exe 2014-01-28 23:32:17 ----A---- C:\Windows\system32\NAPHLPR.DLL 2014-01-28 23:32:17 ----A---- C:\Windows\system32\NAPCRYPT.DLL 2014-01-28 23:32:17 ----A---- C:\Windows\system32\dfshim.dll 2014-01-28 23:32:16 ----A---- C:\Windows\system32\wpd_ci.dll 2014-01-28 23:32:16 ----A---- C:\Windows\system32\winhttp.dll 2014-01-28 23:32:16 ----A---- C:\Windows\system32\drivers\scsiport.sys 2014-01-28 23:32:16 ----A---- C:\Windows\system32\drivers\msdsm.sys 2014-01-28 23:32:16 ----A---- C:\Windows\system32\drivers\msahci.sys 2014-01-28 23:32:16 ----A---- C:\Windows\system32\drivers\mpio.sys 2014-01-28 23:32:14 ----A---- C:\Windows\system32\zipfldr.dll 2014-01-28 23:32:14 ----A---- C:\Windows\system32\wwanconn.dll 2014-01-28 23:32:14 ----A---- C:\Windows\system32\wusa.exe 2014-01-28 23:32:14 ----A---- C:\Windows\system32\CertEnroll.dll 2014-01-28 23:32:13 ----A---- C:\Windows\system32\wsdchngr.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\wpdshext.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\wpdbusenum.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\WMVSDECD.DLL 2014-01-28 23:32:10 ----A---- C:\Windows\system32\WMSPDMOD.DLL 2014-01-28 23:32:10 ----A---- C:\Windows\system32\wkssvc.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\PortableDeviceStatus.dll 2014-01-28 23:32:10 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2014-01-28 23:32:09 ----A---- C:\Windows\system32\wbemcomn.dll 2014-01-28 23:32:09 ----A---- C:\Windows\system32\framedynos.dll 2014-01-28 23:32:09 ----A---- C:\Windows\system32\framedyn.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\wmicmiplugin.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\WMADMOD.DLL 2014-01-28 23:32:08 ----A---- C:\Windows\system32\wlanui.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\wlanpref.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\wlanmsm.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\wlangpui.dll 2014-01-28 23:32:08 ----A---- C:\Windows\system32\winlogon.exe 2014-01-28 23:32:08 ----A---- C:\Windows\system32\ReAgentc.exe 2014-01-28 23:32:08 ----A---- C:\Windows\system32\ReAgent.dll 2014-01-28 23:32:07 ----A---- C:\Windows\system32\wimserv.exe 2014-01-28 23:32:07 ----A---- C:\Windows\system32\wimgapi.dll 2014-01-28 23:32:07 ----A---- C:\Windows\system32\webservices.dll 2014-01-28 23:32:07 ----A---- C:\Windows\system32\fphc.dll 2014-01-28 23:32:06 ----A---- C:\Windows\system32\wcncsvc.dll 2014-01-28 23:32:05 ----A---- C:\Windows\system32\audiodev.dll 2014-01-28 23:32:04 ----A---- C:\Windows\system32\WinSAT.exe 2014-01-28 23:32:04 ----A---- C:\Windows\system32\wiaservc.dll 2014-01-28 23:32:04 ----A---- C:\Windows\system32\wiarpc.dll 2014-01-28 23:32:04 ----A---- C:\Windows\system32\wiadefui.dll 2014-01-28 23:32:02 ----A---- C:\Windows\system32\ws2_32.dll 2014-01-28 23:32:02 ----A---- C:\Windows\system32\wpdwcn.dll 2014-01-28 23:32:02 ----A---- C:\Windows\system32\wmpmde.dll 2014-01-28 23:32:01 ----A---- C:\Windows\twain_32.dll 2014-01-28 23:31:56 ----A---- C:\Windows\system32\wiavideo.dll 2014-01-28 23:31:55 ----A---- C:\Windows\system32\WsmSvc.dll 2014-01-28 23:31:55 ----A---- C:\Windows\system32\WinSATAPI.dll 2014-01-28 23:31:46 ----A---- C:\Windows\system32\WPDSp.dll 2014-01-28 23:31:46 ----A---- C:\Windows\system32\wkscli.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\VSSVC.exe 2014-01-28 23:31:45 ----A---- C:\Windows\system32\vssapi.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\vdsutil.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\vds.exe 2014-01-28 23:31:45 ----A---- C:\Windows\system32\MSVidCtl.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\msvidc32.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\msvfw32.dll 2014-01-28 23:31:45 ----A---- C:\Windows\system32\drivers\usbrpm.sys 2014-01-28 23:31:44 ----A---- C:\Windows\system32\vdsbas.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\VAN.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\msrle32.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\mciavi32.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\iccvid.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\cca.dll 2014-01-28 23:31:44 ----A---- C:\Windows\system32\avifil32.dll 2014-01-28 23:31:42 ----A---- C:\Windows\system32\userinit.exe 2014-01-28 23:31:42 ----A---- C:\Windows\system32\userenv.dll 2014-01-28 23:31:42 ----A---- C:\Windows\system32\usercpl.dll 2014-01-28 23:31:42 ----A---- C:\Windows\system32\user32.dll 2014-01-28 23:31:42 ----A---- C:\Windows\system32\umpo.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\UserAccountControlSettings.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\upnp.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\unimdmat.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\UIRibbonRes.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\UIRibbon.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\tzutil.exe 2014-01-28 23:31:41 ----A---- C:\Windows\system32\twext.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\TRAPI.dll 2014-01-28 23:31:41 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys 2014-01-28 23:31:41 ----A---- C:\Windows\system32\drivers\USBCAMD.sys 2014-01-28 23:31:41 ----A---- C:\Windows\system32\drivers\udfs.sys 2014-01-28 23:31:41 ----A---- C:\Windows\system32\drivers\tunnel.sys 2014-01-28 23:31:41 ----A---- C:\Windows\system32\djoin.exe 2014-01-28 23:31:40 ----A---- C:\Windows\system32\w32tm.exe 2014-01-28 23:31:40 ----A---- C:\Windows\system32\thumbcache.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\themeui.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\themecpl.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\termmgr.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\tcpipcfg.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\taskschd.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\taskmgr.exe 2014-01-28 23:31:40 ----A---- C:\Windows\system32\taskeng.exe 2014-01-28 23:31:40 ----A---- C:\Windows\system32\schedsvc.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\schedcli.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\netiougc.exe 2014-01-28 23:31:40 ----A---- C:\Windows\system32\netiohlp.dll 2014-01-28 23:31:40 ----A---- C:\Windows\system32\drivers\tdx.sys 2014-01-28 23:31:40 ----A---- C:\Windows\system32\drivers\tdi.sys 2014-01-28 23:31:40 ----A---- C:\Windows\system32\drivers\rdpdr.sys 2014-01-28 23:31:39 ----A---- C:\Windows\system32\wavemsp.dll 2014-01-28 23:31:39 ----A---- C:\Windows\system32\taskbarcpl.dll 2014-01-28 23:31:39 ----A---- C:\Windows\system32\tapisrv.dll 2014-01-28 23:31:39 ----A---- C:\Windows\system32\takeown.exe 2014-01-28 23:31:39 ----A---- C:\Windows\system32\tabcal.exe 2014-01-28 23:31:39 ----A---- C:\Windows\system32\MultiDigiMon.exe 2014-01-28 23:31:39 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys 2014-01-28 23:31:38 ----A---- C:\Windows\system32\termsrv.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\wtsapi32.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\SessEnv.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\remotepg.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\rdpencom.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\rdpdd.dll 2014-01-28 23:31:36 ----A---- C:\Windows\system32\input.dll 2014-01-28 23:31:35 ----A---- C:\Windows\system32\wisptis.exe 2014-01-28 23:31:35 ----A---- C:\Windows\system32\TabSvc.dll 2014-01-28 23:31:35 ----A---- C:\Windows\system32\regapi.dll 2014-01-28 23:31:35 ----A---- C:\Windows\system32\rdpd3d.dll 2014-01-28 23:31:35 ----A---- C:\Windows\system32\perfts.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\winsta.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\utildll.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\TSWorkspace.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\tspubwmi.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\rdpsign.exe 2014-01-28 23:31:33 ----A---- C:\Windows\system32\RDPENCDD.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\rdpclip.exe 2014-01-28 23:31:33 ----A---- C:\Windows\system32\mstsc.exe 2014-01-28 23:31:33 ----A---- C:\Windows\system32\mstask.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\lsm.exe 2014-01-28 23:31:33 ----A---- C:\Windows\system32\icaapi.dll 2014-01-28 23:31:33 ----A---- C:\Windows\system32\drivers\RDPCDD.sys 2014-01-28 23:31:32 ----A---- C:\Windows\system32\rdpshell.exe 2014-01-28 23:31:32 ----A---- C:\Windows\system32\rdpinit.exe 2014-01-28 23:31:31 ----A---- C:\Windows\system32\wksprt.exe 2014-01-28 23:31:31 ----A---- C:\Windows\system32\umrdp.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\tssrvlic.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\tskill.exe 2014-01-28 23:31:31 ----A---- C:\Windows\system32\rdprefdrvapi.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\RDPREFDD.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\rdpendp.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\msutb.dll 2014-01-28 23:31:31 ----A---- C:\Windows\system32\LSCSHostPolicy.dll 2014-01-28 23:31:30 ----A---- C:\Windows\system32\tsdiscon.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\tscon.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\tscfgwmi.dll 2014-01-28 23:31:30 ----A---- C:\Windows\system32\shadow.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\rwinsta.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\reset.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\query.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\qprocess.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\qappsrv.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\logoff.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\chgusr.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\chgport.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\chglogon.exe 2014-01-28 23:31:30 ----A---- C:\Windows\system32\change.exe 2014-01-28 23:31:29 ----A---- C:\Windows\system32\tsmf.dll 2014-01-28 23:31:29 ----A---- C:\Windows\system32\tlscsp.dll 2014-01-28 23:31:29 ----A---- C:\Windows\system32\taskcomp.dll 2014-01-28 23:31:29 ----A---- C:\Windows\system32\rdpcfgex.dll 2014-01-28 23:31:29 ----A---- C:\Windows\system32\qwinsta.exe 2014-01-28 23:31:29 ----A---- C:\Windows\system32\quser.exe 2014-01-28 23:31:29 ----A---- C:\Windows\system32\msg.exe 2014-01-28 23:31:29 ----A---- C:\Windows\system32\DShowRdpFilter.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\systemcpl.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\syssetup.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\sysclass.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\syncui.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\sxs.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\sud.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\stobject.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\spopk.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\spbcd.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\lsmproxy.dll 2014-01-28 23:31:28 ----A---- C:\Windows\system32\IPHLPAPI.DLL 2014-01-28 23:31:27 ----A---- C:\Windows\system32\wsqmcons.exe 2014-01-28 23:31:27 ----A---- C:\Windows\system32\ssText3d.scr 2014-01-28 23:31:27 ----A---- C:\Windows\system32\sqmapi.dll 2014-01-28 23:31:27 ----A---- C:\Windows\system32\sqlcese30.dll 2014-01-28 23:31:27 ----A---- C:\Windows\system32\spp.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\wsnmp32.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\WavDest.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\sscore.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\srvsvc.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\srvcli.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\SmiEngine.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\inetmib1.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\drivers\scfilter.sys 2014-01-28 23:31:26 ----A---- C:\Windows\system32\certprop.dll 2014-01-28 23:31:26 ----A---- C:\Windows\system32\basecsp.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\sisbkup.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shwebsvc.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shunimpl.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shsvcs.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shlwapi.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shimgvw.dll 2014-01-28 23:31:25 ----A---- C:\Windows\system32\shgina.dll 2014-01-28 23:31:24 ----A---- C:\Windows\system32\shsetup.dll 2014-01-28 23:31:23 ----A---- C:\Windows\system32\unattend.dll 2014-01-28 23:31:23 ----A---- C:\Windows\system32\shacct.dll 2014-01-28 23:31:23 ----A---- C:\Windows\system32\setupcl.exe 2014-01-28 23:31:23 ----A---- C:\Windows\system32\setupapi.dll 2014-01-28 23:31:22 ----A---- C:\Windows\system32\spwizui.dll 2014-01-28 23:31:22 ----A---- C:\Windows\system32\setupcln.dll 2014-01-28 23:31:22 ----A---- C:\Windows\system32\sethc.exe 2014-01-28 23:31:22 ----A---- C:\Windows\system32\ActionQueue.dll 2014-01-28 23:31:20 ----A---- C:\Windows\system32\wscapi.dll 2014-01-28 23:31:20 ----A---- C:\Windows\system32\vaultsvc.dll 2014-01-28 23:31:20 ----A---- C:\Windows\system32\Vault.dll 2014-01-28 23:31:20 ----A---- C:\Windows\system32\spreview.exe 2014-01-28 23:31:20 ----A---- C:\Windows\system32\sppsvc.exe 2014-01-28 23:31:20 ----A---- C:\Windows\system32\spinstall.exe 2014-01-28 23:31:20 ----A---- C:\Windows\system32\nltest.exe 2014-01-28 23:31:19 ----A---- C:\Windows\system32\TSpkg.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\sppuinotify.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\sppinst.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\sppcomapi.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\sppc.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\slwga.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\slui.exe 2014-01-28 23:31:19 ----A---- C:\Windows\system32\netlogon.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\msv1_0.dll 2014-01-28 23:31:19 ----A---- C:\Windows\system32\manage-bde.exe 2014-01-28 23:31:19 ----A---- C:\Windows\system32\credssp.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\SearchFolder.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\sdrsvc.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\sdengin2.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\sdclt.exe 2014-01-28 23:31:18 ----A---- C:\Windows\system32\schtasks.exe 2014-01-28 23:31:18 ----A---- C:\Windows\system32\scansetting.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\fvecpl.dll 2014-01-28 23:31:18 ----A---- C:\Windows\system32\fveapi.dll 2014-01-28 23:31:17 ----A---- C:\Windows\system32\sppobjs.dll 2014-01-28 23:31:16 ----A---- C:\Windows\system32\scecli.dll 2014-01-28 23:31:16 ----A---- C:\Windows\system32\BdeHdCfg.exe 2014-01-28 23:31:14 ----A---- C:\Windows\system32\secproc.dll 2014-01-28 23:31:14 ----A---- C:\Windows\system32\RMActivate.exe 2014-01-28 23:31:14 ----A---- C:\Windows\system32\repair-bde.exe 2014-01-28 23:31:10 ----A---- C:\Windows\system32\secproc_ssp.dll 2014-01-28 23:31:10 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2014-01-28 23:31:09 ----A---- C:\Windows\system32\uxlib.dll 2014-01-28 23:31:09 ----A---- C:\Windows\system32\sysmain.dll 2014-01-28 23:31:09 ----A---- C:\Windows\system32\spwizres.dll 2014-01-28 23:31:09 ----A---- C:\Windows\system32\spwizeng.dll 2014-01-28 23:31:09 ----A---- C:\Windows\system32\secproc_isv.dll 2014-01-28 23:31:09 ----A---- C:\Windows\system32\RMActivate_isv.exe 2014-01-28 23:31:08 ----A---- C:\Windows\system32\srrstr.dll 2014-01-28 23:31:08 ----A---- C:\Windows\system32\sharemediacpl.dll 2014-01-28 23:31:08 ----A---- C:\Windows\system32\logoncli.dll 2014-01-28 23:31:08 ----A---- C:\Windows\system32\CertPolEng.dll 2014-01-28 23:31:07 ----A---- C:\Windows\system32\WinSCard.dll 2014-01-28 23:31:07 ----A---- C:\Windows\system32\scesrv.dll 2014-01-28 23:31:06 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2014-01-28 23:31:06 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2014-01-28 23:31:05 ----A---- C:\Windows\system32\sppwinob.dll 2014-01-28 23:31:04 ----A---- C:\Windows\system32\runonce.exe 2014-01-28 23:31:04 ----A---- C:\Windows\system32\RpcRtRemote.dll 2014-01-28 23:31:04 ----A---- C:\Windows\system32\rpchttp.dll 2014-01-28 23:31:04 ----A---- C:\Windows\system32\Robocopy.exe 2014-01-28 23:31:04 ----A---- C:\Windows\system32\riched32.dll 2014-01-28 23:31:04 ----A---- C:\Windows\system32\riched20.dll 2014-01-28 23:31:04 ----A---- C:\Windows\system32\Ribbons.scr 2014-01-28 23:31:04 ----A---- C:\Windows\system32\RelPost.exe 2014-01-28 23:31:04 ----A---- C:\Windows\system32\drivers\rmcast.sys 2014-01-28 23:31:03 ----A---- C:\Windows\system32\recovery.dll 2014-01-28 23:31:03 ----A---- C:\Windows\system32\recdisc.exe 2014-01-28 23:31:03 ----A---- C:\Windows\system32\rastls.dll 2014-01-28 23:31:03 ----A---- C:\Windows\system32\rastapi.dll 2014-01-28 23:31:03 ----A---- C:\Windows\system32\iprtrmgr.dll 2014-01-28 23:31:03 ----A---- C:\Windows\system32\drivers\rdyboost.sys 2014-01-28 23:31:03 ----A---- C:\Windows\system32\drivers\rdbss.sys 2014-01-28 23:31:02 ----A---- C:\Windows\system32\vpnikeapi.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\vpnike.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\rtutils.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\rasppp.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\rasmans.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\raschap.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\mprddm.dll 2014-01-28 23:31:02 ----A---- C:\Windows\system32\drivers\wanarp.sys 2014-01-28 23:31:02 ----A---- C:\Windows\system32\drivers\ndproxy.sys 2014-01-28 23:31:02 ----A---- C:\Windows\system32\drivers\ndiswan.sys 2014-01-28 23:31:02 ----A---- C:\Windows\system32\cmstp.exe 2014-01-28 23:31:01 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-01-28 23:31:01 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-01-28 23:31:01 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-01-28 23:31:01 ----A---- C:\Windows\system32\RDVGHelper.exe 2014-01-28 23:30:59 ----A---- C:\Windows\system32\RacEngn.dll 2014-01-28 23:30:59 ----A---- C:\Windows\system32\msdrm.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\sppnp.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\spoolsv.exe 2014-01-28 23:30:58 ----A---- C:\Windows\system32\proquota.exe 2014-01-28 23:30:58 ----A---- C:\Windows\system32\propsys.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\prncache.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\powercpl.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\pifmgr.dll 2014-01-28 23:30:58 ----A---- C:\Windows\system32\hgprint.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\wvc.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\wpccpl.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\wdc.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\photowiz.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\PhotoScreensaver.scr 2014-01-28 23:30:57 ----A---- C:\Windows\system32\perfmon.exe 2014-01-28 23:30:57 ----A---- C:\Windows\system32\PerfCenterCPL.dll 2014-01-28 23:30:57 ----A---- C:\Windows\system32\pdhui.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\wdscore.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\unlodctr.exe 2014-01-28 23:30:56 ----A---- C:\Windows\system32\prnfldr.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\printui.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\PrintBrmUi.exe 2014-01-28 23:30:56 ----A---- C:\Windows\system32\PnPUnattend.exe 2014-01-28 23:30:56 ----A---- C:\Windows\system32\pla.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\PkgMgr.exe 2014-01-28 23:30:56 ----A---- C:\Windows\system32\pdh.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\ntprint.dll 2014-01-28 23:30:56 ----A---- C:\Windows\system32\inetpp.dll 2014-01-28 23:30:55 ----A---- C:\Windows\system32\relog.exe 2014-01-28 23:30:55 ----A---- C:\Windows\system32\puiobj.dll 2014-01-28 23:30:55 ----A---- C:\Windows\system32\PrintIsolationProxy.dll 2014-01-28 23:30:55 ----A---- C:\Windows\system32\logman.exe 2014-01-28 23:30:52 ----A---- C:\Windows\system32\PushPrinterConnections.exe 2014-01-28 23:30:52 ----A---- C:\Windows\system32\prntvpt.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\OnLineIDCpl.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\onexui.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\onex.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\olepro32.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\ocsetup.exe 2014-01-28 23:30:49 ----A---- C:\Windows\system32\ocsetapi.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\drivers\csc.sys 2014-01-28 23:30:49 ----A---- C:\Windows\system32\cscui.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\cscsvc.dll 2014-01-28 23:30:49 ----A---- C:\Windows\system32\CscMig.dll 2014-01-28 23:30:48 ----A---- C:\Windows\system32\cscobj.dll 2014-01-28 23:30:48 ----A---- C:\Windows\system32\cscdll.dll 2014-01-28 23:30:48 ----A---- C:\Windows\system32\cscapi.dll 2014-01-28 23:30:48 ----A---- C:\Windows\system32\asycfilt.dll 2014-01-28 23:30:47 ----A---- C:\Windows\system32\ntlanman.dll 2014-01-28 23:30:47 ----A---- C:\Windows\system32\dosx.exe 2014-01-28 23:30:46 ----A---- C:\Windows\system32\nslookup.exe 2014-01-28 23:30:46 ----A---- C:\Windows\system32\networkmap.dll 2014-01-28 23:30:46 ----A---- C:\Windows\system32\networkexplorer.dll 2014-01-28 23:30:46 ----A---- C:\Windows\system32\netcenter.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\pnidui.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\netutils.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\netshell.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\netplwiz.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\netjoin.dll 2014-01-28 23:30:45 ----A---- C:\Windows\system32\BFE.DLL 2014-01-28 23:30:44 ----A---- C:\Windows\system32\netcfgx.dll 2014-01-28 23:30:44 ----A---- C:\Windows\system32\netcfg.exe 2014-01-28 23:30:44 ----A---- C:\Windows\system32\netbtugc.exe 2014-01-28 23:30:44 ----A---- C:\Windows\system32\net1.exe 2014-01-28 23:30:44 ----A---- C:\Windows\system32\ncryptui.dll 2014-01-28 23:30:44 ----A---- C:\Windows\system32\nci.dll 2014-01-28 23:30:44 ----A---- C:\Windows\system32\drivers\netbt.sys 2014-01-28 23:30:44 ----A---- C:\Windows\system32\drivers\ndisuio.sys 2014-01-28 23:30:43 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2014-01-28 23:30:34 ----D---- C:\Users\Marcel\AppData\Roaming\Nitro PDF 2014-01-28 23:30:23 ----A---- C:\Windows\system32\QUTIL.DLL 2014-01-28 23:30:23 ----A---- C:\Windows\system32\QSVRMGMT.DLL 2014-01-28 23:30:23 ----A---- C:\Windows\system32\QSHVHOST.DLL 2014-01-28 23:30:23 ----A---- C:\Windows\system32\KMSVC.DLL 2014-01-28 23:30:22 ----A---- C:\Windows\system32\ipsmsnap.dll 2014-01-28 23:30:21 ----A---- C:\Windows\system32\nshipsec.dll 2014-01-28 23:30:21 ----A---- C:\Windows\system32\iasrecst.dll 2014-01-28 23:30:20 ----A---- C:\Windows\system32\QCLIPROV.DLL 2014-01-28 23:30:20 ----A---- C:\Windows\system32\QAGENTRT.DLL 2014-01-28 23:30:20 ----A---- C:\Windows\system32\QAGENT.DLL 2014-01-28 23:30:20 ----A---- C:\Windows\system32\netdiagfx.dll 2014-01-28 23:30:20 ----A---- C:\Windows\system32\napdsnap.dll 2014-01-28 23:30:20 ----A---- C:\Windows\system32\iasrad.dll 2014-01-28 23:30:20 ----A---- C:\Windows\system32\iasacct.dll 2014-01-28 23:30:17 ----A---- C:\Windows\system32\Mystify.scr 2014-01-28 23:30:17 ----A---- C:\Windows\system32\mydocs.dll 2014-01-28 23:30:17 ----A---- C:\Windows\system32\mcbuilder.exe 2014-01-28 23:30:17 ----A---- C:\Windows\system32\IPSECSVC.DLL 2014-01-28 23:30:16 ----A---- C:\Windows\system32\SyncCenter.dll 2014-01-28 23:30:16 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL 2014-01-28 23:30:16 ----A---- C:\Windows\system32\msinfo32.exe 2014-01-28 23:30:16 ----A---- C:\Windows\system32\msftedit.dll 2014-01-28 23:30:16 ----A---- C:\Windows\system32\msconfig.exe 2014-01-28 23:30:16 ----A---- C:\Windows\system32\msasn1.dll 2014-01-28 23:30:16 ----A---- C:\Windows\system32\MSAC3ENC.DLL 2014-01-28 23:30:16 ----A---- C:\Windows\system32\mprapi.dll 2014-01-28 23:30:16 ----A---- C:\Windows\system32\mobsync.exe 2014-01-28 23:30:16 ----A---- C:\Windows\system32\drivers\mountmgr.sys 2014-01-28 23:30:15 ----A---- C:\Windows\system32\SensorsCpl.dll 2014-01-28 23:30:15 ----A---- C:\Windows\system32\MMDevAPI.dll 2014-01-28 23:30:15 ----A---- C:\Windows\system32\mfreadwrite.dll 2014-01-28 23:30:15 ----A---- C:\Windows\system32\MFPlay.dll 2014-01-28 23:30:15 ----A---- C:\Windows\system32\mfds.dll 2014-01-28 23:30:14 ----A---- C:\Windows\system32\mfc40u.dll 2014-01-28 23:30:14 ----A---- C:\Windows\system32\mfc40.dll 2014-01-28 23:30:13 ----A---- C:\Windows\system32\wmdrmnet.dll 2014-01-28 23:30:13 ----A---- C:\Windows\system32\wmdrmdev.dll 2014-01-28 23:30:12 ----A---- C:\Windows\system32\WMVCORE.DLL 2014-01-28 23:30:11 ----A---- C:\Windows\system32\wmpsrcwp.dll 2014-01-28 23:30:11 ----A---- C:\Windows\system32\wmpshell.dll 2014-01-28 23:30:10 ----A---- C:\Windows\system32\wmpps.dll 2014-01-28 23:30:10 ----A---- C:\Windows\system32\WMPEncEn.dll 2014-01-28 23:30:10 ----A---- C:\Windows\system32\wmpeffects.dll 2014-01-28 23:30:09 ----A---- C:\Windows\system32\wmpdxm.dll 2014-01-28 23:30:09 ----A---- C:\Windows\system32\WMNetMgr.dll 2014-01-28 23:30:08 ----A---- C:\Windows\system32\wmdrmsdk.dll 2014-01-28 23:30:08 ----A---- C:\Windows\system32\logagent.exe 2014-01-28 23:30:07 ----A---- C:\Windows\system32\msscp.dll 2014-01-28 23:30:07 ----A---- C:\Windows\system32\msnetobj.dll 2014-01-28 23:30:07 ----A---- C:\Windows\system32\drmmgrtn.dll 2014-01-28 23:30:07 ----A---- C:\Windows\system32\blackbox.dll 2014-01-28 23:29:59 ----A---- C:\Windows\system32\spwmp.dll 2014-01-28 23:29:59 ----A---- C:\Windows\system32\dxmasf.dll 2014-01-28 23:29:58 ----A---- C:\Windows\system32\mf.dll 2014-01-28 23:29:58 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2014-01-28 23:29:56 ----A---- C:\Windows\system32\mapistub.dll 2014-01-28 23:29:56 ----A---- C:\Windows\system32\mapi32.dll 2014-01-28 23:29:56 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll 2014-01-28 23:29:55 ----A---- C:\Windows\system32\PresentationSettings.exe 2014-01-28 23:29:55 ----A---- C:\Windows\system32\odbcconf.dll 2014-01-28 23:29:55 ----A---- C:\Windows\system32\migisol.dll 2014-01-28 23:29:55 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll 2014-01-28 23:29:55 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll 2014-01-28 23:29:54 ----A---- C:\Windows\system32\sqlsrv32.dll 2014-01-28 23:29:52 ----A---- C:\Windows\system32\mcmde.dll 2014-01-28 23:29:52 ----A---- C:\Windows\system32\mblctr.exe 2014-01-28 23:29:51 ----A---- C:\Windows\system32\odbc32.dll 2014-01-28 23:29:51 ----A---- C:\Windows\system32\msorcl32.dll 2014-01-28 23:29:51 ----A---- C:\Windows\system32\mmcndmgr.dll 2014-01-28 23:29:51 ----A---- C:\Windows\system32\MdSched.exe 2014-01-28 23:29:50 ----A---- C:\Windows\system32\luainstall.dll 2014-01-28 23:29:50 ----A---- C:\Windows\system32\defaultlocationcpl.dll 2014-01-28 23:29:49 ----A---- C:\Windows\system32\Wldap32.dll 2014-01-28 23:29:49 ----A---- C:\Windows\system32\nrpsrv.dll 2014-01-28 23:29:49 ----A---- C:\Windows\system32\lpremove.exe 2014-01-28 23:29:49 ----A---- C:\Windows\system32\lpksetup.exe 2014-01-28 23:29:30 ----A---- C:\Windows\system32\drivers\ks.sys 2014-01-28 23:29:29 ----A---- C:\Windows\system32\wshirda.dll 2014-01-28 23:29:29 ----A---- C:\Windows\system32\nlsbres.dll 2014-01-28 23:29:29 ----A---- C:\Windows\system32\MuiUnattend.exe 2014-01-28 23:29:29 ----A---- C:\Windows\system32\msihnd.dll 2014-01-28 23:29:29 ----A---- C:\Windows\system32\msiexec.exe 2014-01-28 23:29:29 ----A---- C:\Windows\system32\iTVData.dll 2014-01-28 23:29:29 ----A---- C:\Windows\system32\isoburn.exe 2014-01-28 23:29:26 ----A---- C:\Windows\system32\imm32.dll 2014-01-28 23:29:26 ----A---- C:\Windows\system32\imapi2.dll 2014-01-28 23:29:26 ----A---- C:\Windows\system32\dbghelp.dll 2014-01-28 23:29:26 ----A---- C:\Windows\system32\dbgeng.dll 2014-01-28 23:29:21 ----A---- C:\Windows\system32\mscms.dll 2014-01-28 23:29:19 ----A---- C:\Windows\system32\kbdlk41a.dll 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDUS.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDUGHR1.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDSF.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDINHIN.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDGKL.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\KBDBULG.DLL 2014-01-28 23:29:14 ----A---- C:\Windows\system32\C_ISCII.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDTURME.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDTUQ.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDTUF.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDTAJIK.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDSG.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDPO.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDNEPR.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDMON.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDMAORI.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDLT1.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINTEL.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINTAM.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINORI.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINMAR.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINKAN.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDINBEN.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDGR1.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDGEO.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDCZ1.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDBLR.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\KBDBASH.DLL 2014-01-28 23:29:13 ----A---- C:\Windows\system32\iscsium.dll 2014-01-28 23:29:13 ----A---- C:\Windows\system32\iscsicli.exe 2014-01-28 23:29:13 ----A---- C:\Windows\system32\elsTrans.dll 2014-01-28 23:29:09 ----A---- C:\Windows\system32\imapi2fs.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\provsvc.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\ListSvc.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\itircl.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\httpapi.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\HotStartUserAgent.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\hgcpl.dll 2014-01-28 23:29:08 ----A---- C:\Windows\system32\drivers\http.sys 2014-01-28 23:29:07 ----A---- C:\Windows\system32\hbaapi.dll 2014-01-28 23:29:07 ----A---- C:\Windows\system32\halmacpi.dll 2014-01-28 23:29:07 ----A---- C:\Windows\system32\halacpi.dll 2014-01-28 23:29:07 ----A---- C:\Windows\system32\hal.dll 2014-01-28 23:29:07 ----A---- C:\Windows\system32\drivers\hwpolicy.sys 2014-01-28 23:29:07 ----A---- C:\Windows\system32\ActionCenterCPL.dll 2014-01-28 23:29:07 ----A---- C:\Windows\system32\ActionCenter.dll 2014-01-28 23:28:51 ----A---- C:\Windows\system32\gpsvc.dll 2014-01-28 23:28:49 ----A---- C:\Windows\system32\gpprefcl.dll 2014-01-28 23:28:49 ----A---- C:\Windows\system32\appmgr.dll 2014-01-28 23:28:46 ----A---- C:\Windows\system32\scrptadm.dll 2014-01-28 23:28:46 ----A---- C:\Windows\system32\AdmTmpl.dll 2014-01-28 23:28:45 ----A---- C:\Windows\system32\ftp.exe 2014-01-28 23:28:45 ----A---- C:\Windows\system32\fontext.dll 2014-01-28 23:28:42 ----A---- C:\Windows\system32\t2embed.dll 2014-01-28 23:28:42 ----A---- C:\Windows\system32\muifontsetup.dll 2014-01-28 23:28:42 ----A---- C:\Windows\system32\fms.dll 2014-01-28 23:28:42 ----A---- C:\Windows\system32\findstr.exe 2014-01-28 23:28:42 ----A---- C:\Windows\system32\fdeploy.dll 2014-01-28 23:28:42 ----A---- C:\Windows\system32\fde.dll 2014-01-28 23:28:41 ----A---- C:\Windows\system32\resutils.dll 2014-01-28 23:28:41 ----A---- C:\Windows\system32\ifsutil.dll 2014-01-28 23:28:41 ----A---- C:\Windows\system32\FXSTIFF.dll 2014-01-28 23:28:41 ----A---- C:\Windows\system32\FXSSVC.exe 2014-01-28 23:28:41 ----A---- C:\Windows\system32\FXSMON.dll 2014-01-28 23:28:41 ----A---- C:\Windows\system32\clusapi.dll 2014-01-28 23:28:40 ----A---- C:\Windows\system32\untfs.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\wevtsvc.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\WerFaultSecure.exe 2014-01-28 23:28:38 ----A---- C:\Windows\system32\werconcpl.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\wer.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\Faultrep.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\ExplorerFrame.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\evr.dll 2014-01-28 23:28:38 ----A---- C:\Windows\system32\eudcedit.exe 2014-01-28 23:28:38 ----A---- C:\Windows\explorer.exe 2014-01-28 23:28:37 ----A---- C:\Windows\system32\mspbda.dll 2014-01-28 23:28:37 ----A---- C:\Windows\system32\msdri.dll 2014-01-28 23:28:37 ----A---- C:\Windows\system32\EhStorAPI.dll 2014-01-28 23:28:34 ----A---- C:\Windows\system32\Mcx2Svc.dll 2014-01-28 23:28:33 ----A---- C:\Windows\system32\efscore.dll 2014-01-28 23:28:32 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll 2014-01-28 23:28:31 ----A---- C:\Windows\system32\eapphost.dll 2014-01-28 23:28:31 ----A---- C:\Windows\system32\eappgnui.dll 2014-01-28 23:28:31 ----A---- C:\Windows\system32\eapp3hst.dll 2014-01-28 23:28:30 ----A---- C:\Windows\system32\DxpTaskSync.dll 2014-01-28 23:28:29 ----A---- C:\Windows\system32\DXPTaskRingtone.dll 2014-01-28 23:28:29 ----A---- C:\Windows\system32\DXP.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\dskquoui.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\drvstore.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\dot3ui.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\dot3svc.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\dot3msm.dll 2014-01-28 23:28:28 ----A---- C:\Windows\system32\dot3api.dll 2014-01-28 23:28:27 ----A---- C:\Windows\system32\dot3cfg.dll 2014-01-28 23:28:26 ----A---- C:\Windows\system32\dnscmmc.dll 2014-01-28 23:28:26 ----A---- C:\Windows\system32\Display.dll 2014-01-28 23:28:26 ----A---- C:\Windows\system32\diskraid.exe 2014-01-28 23:28:26 ----A---- C:\Windows\system32\diskpart.exe 2014-01-28 23:28:25 ----A---- C:\Windows\system32\d3d9.dll 2014-01-28 23:28:24 ----A---- C:\Windows\system32\vfwwdm32.dll 2014-01-28 23:28:24 ----A---- C:\Windows\system32\qdv.dll 2014-01-28 23:28:24 ----A---- C:\Windows\system32\mciqtz32.dll 2014-01-28 23:28:24 ----A---- C:\Windows\system32\amstream.dll 2014-01-28 23:28:23 ----A---- C:\Windows\system32\qcap.dll 2014-01-28 23:28:23 ----A---- C:\Windows\system32\qasf.dll 2014-01-28 23:28:23 ----A---- C:\Windows\system32\msdmo.dll 2014-01-28 23:28:22 ----A---- C:\Windows\system32\samsrv.dll 2014-01-28 23:28:22 ----A---- C:\Windows\system32\DiagCpl.dll 2014-01-28 23:28:21 ----A---- C:\Windows\system32\dsauth.dll 2014-01-28 23:28:21 ----A---- C:\Windows\system32\drivers\dfsc.sys 2014-01-28 23:28:21 ----A---- C:\Windows\system32\dhcpcore.dll 2014-01-28 23:28:21 ----A---- C:\Windows\system32\DevicePairingFolder.dll 2014-01-28 23:28:20 ----A---- C:\Windows\system32\setupugc.exe 2014-01-28 23:28:20 ----A---- C:\Windows\system32\dpx.dll 2014-01-28 23:28:20 ----A---- C:\Windows\system32\DeviceCenter.dll 2014-01-28 23:28:19 ----A---- C:\Windows\system32\dfrgui.exe 2014-01-28 23:28:18 ----A---- C:\Windows\system32\dxdiagn.dll 2014-01-28 23:28:17 ----A---- C:\Windows\system32\samcli.dll 2014-01-28 23:28:17 ----A---- C:\Windows\system32\dwmredir.dll 2014-01-28 23:28:10 ----A---- C:\Windows\system32\tsbyuv.dll 2014-01-28 23:28:10 ----A---- C:\Windows\system32\msyuv.dll 2014-01-28 23:28:10 ----A---- C:\Windows\system32\iyuv_32.dll 2014-01-28 23:28:10 ----A---- C:\Windows\system32\dwmcore.dll 2014-01-28 23:27:59 ----A---- C:\Windows\system32\dps.dll 2014-01-28 23:27:54 ----A---- C:\Windows\system32\localsec.dll 2014-01-28 23:27:52 ----A---- C:\Windows\system32\cryptui.dll 2014-01-28 23:27:47 ----A---- C:\Windows\system32\mimefilt.dll 2014-01-28 23:27:47 ----A---- C:\Windows\system32\autoconv.exe 2014-01-28 23:27:46 ----A---- C:\Windows\system32\OpcServices.dll 2014-01-28 23:27:46 ----A---- C:\Windows\system32\netid.dll 2014-01-28 23:27:45 ----A---- C:\Windows\system32\comdlg32.dll 2014-01-28 23:27:45 ----A---- C:\Windows\system32\cmd.exe 2014-01-28 23:27:44 ----A---- C:\Windows\system32\olethk32.dll 2014-01-28 23:27:44 ----A---- C:\Windows\system32\msdtctm.dll 2014-01-28 23:27:43 ----A---- C:\Windows\system32\rpcss.dll 2014-01-28 23:27:43 ----A---- C:\Windows\system32\ole32.dll 2014-01-28 23:27:42 ----A---- C:\Windows\system32\ci.dll 2014-01-28 23:27:38 ----A---- C:\Windows\system32\calc.exe 2014-01-28 23:27:38 ----A---- C:\Windows\system32\cabview.dll 2014-01-28 23:27:37 ----A---- C:\Windows\system32\xpsservices.dll 2014-01-28 23:27:37 ----A---- C:\Windows\system32\certcli.dll 2014-01-28 23:27:37 ----A---- C:\Windows\system32\cabinet.dll 2014-01-28 23:27:36 ----A---- C:\Windows\system32\diagperf.dll 2014-01-28 23:27:29 ----A---- C:\Windows\system32\XpsRasterService.dll 2014-01-28 23:27:29 ----A---- C:\Windows\system32\Query.dll 2014-01-28 23:27:28 ----A---- C:\Windows\system32\mtxclu.dll 2014-01-28 23:27:27 ----A---- C:\Windows\system32\certmgr.dll 2014-01-28 23:27:25 ----A---- C:\Windows\system32\Bubbles.scr 2014-01-28 23:27:24 ----A---- C:\Windows\system32\wshbth.dll 2014-01-28 23:27:23 ----A---- C:\Windows\system32\browseui.dll 2014-01-28 23:27:23 ----A---- C:\Windows\system32\bootres.dll 2014-01-28 23:27:21 ----A---- C:\Windows\system32\wbengine.exe 2014-01-28 23:27:21 ----A---- C:\Windows\system32\BlbEvents.dll 2014-01-28 23:27:20 ----A---- C:\Windows\system32\bitsperf.dll 2014-01-28 23:27:19 ----A---- C:\Windows\system32\qmgr.dll 2014-01-28 23:27:19 ----A---- C:\Windows\system32\bitsadmin.exe 2014-01-28 23:27:18 ----A---- C:\Windows\system32\biocpl.dll 2014-01-28 23:27:17 ----A---- C:\Windows\system32\sdcpl.dll 2014-01-28 23:27:17 ----A---- C:\Windows\system32\bcdboot.exe 2014-01-28 23:27:17 ----A---- C:\Windows\system32\batmeter.dll 2014-01-28 23:27:17 ----A---- C:\Windows\system32\basesrv.dll 2014-01-28 23:27:16 ----A---- C:\Windows\system32\winresume.exe 2014-01-28 23:27:16 ----A---- C:\Windows\system32\winload.exe 2014-01-28 23:27:16 ----A---- C:\Windows\system32\bcdsrv.dll 2014-01-28 23:27:16 ----A---- C:\Windows\bfsvc.exe 2014-01-28 23:27:10 ----A---- C:\Windows\system32\setbcdlocale.dll 2014-01-28 23:27:10 ----A---- C:\Windows\system32\bcdedit.exe 2014-01-28 23:27:08 ----A---- C:\Windows\system32\AzSqlExt.dll 2014-01-28 23:27:08 ----A---- C:\Windows\system32\azroles.dll 2014-01-28 23:27:07 ----A---- C:\Windows\system32\AxInstSv.dll 2014-01-28 23:27:07 ----A---- C:\Windows\system32\autoplay.dll 2014-01-28 23:27:07 ----A---- C:\Windows\system32\autofmt.exe 2014-01-28 23:27:06 ----A---- C:\Windows\system32\azroleui.dll 2014-01-28 23:27:06 ----A---- C:\Windows\system32\autochk.exe 2014-01-28 23:27:05 ----A---- C:\Windows\system32\LogonUI.exe 2014-01-28 23:27:04 ----A---- C:\Windows\system32\winmm.dll 2014-01-28 23:27:04 ----A---- C:\Windows\system32\SndVolSSO.dll 2014-01-28 23:27:04 ----A---- C:\Windows\system32\SndVol.exe 2014-01-28 23:27:04 ----A---- C:\Windows\system32\audiosrv.dll 2014-01-28 23:27:03 ----A---- C:\Windows\system32\drivers\appid.sys 2014-01-28 23:27:03 ----A---- C:\Windows\system32\AudioSes.dll 2014-01-28 23:27:03 ----A---- C:\Windows\system32\audiodg.exe 2014-01-28 23:26:58 ----A---- C:\Windows\system32\actxprxy.dll 2014-01-28 23:26:58 ----A---- C:\Windows\system32\accessibilitycpl.dll 2014-01-28 23:26:55 ----A---- C:\Windows\system32\wdiasqmmodule.dll 2014-01-28 23:26:53 ----A---- C:\Windows\system32\aepdu.dll 2014-01-28 23:26:53 ----A---- C:\Windows\system32\aeinv.dll 2014-01-28 23:26:53 ----A---- C:\Windows\system32\adsldp.dll 2014-01-28 23:26:53 ----A---- C:\Windows\system32\acppage.dll 2014-01-28 23:26:52 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe 2014-01-28 23:26:52 ----A---- C:\Windows\system32\aitagent.exe 2014-01-28 23:26:51 ----A---- C:\Windows\system32\activeds.dll 2014-01-28 23:26:50 ----A---- C:\Windows\system32\apphelp.dll 2014-01-28 23:26:48 ----A---- C:\Windows\system32\drivers\volmgr.sys 2014-01-28 23:26:48 ----A---- C:\Windows\system32\drivers\termdd.sys 2014-01-28 23:26:48 ----A---- C:\Windows\system32\drivers\pci.sys 2014-01-28 23:26:48 ----A---- C:\Windows\system32\drivers\kbdhid.sys 2014-01-28 23:26:47 ----A---- C:\Windows\system32\drivers\msiscsi.sys 2014-01-28 23:26:47 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys 2014-01-28 23:26:47 ----A---- C:\Windows\system32\drivers\hidusb.sys 2014-01-28 23:26:47 ----A---- C:\Windows\system32\drivers\HdAudio.sys 2014-01-28 23:26:47 ----A---- C:\Windows\system32\drivers\hdaudbus.sys 2014-01-28 23:26:46 ----A---- C:\Windows\system32\srchadmin.dll 2014-01-28 23:26:46 ----A---- C:\Windows\system32\dsuiext.dll 2014-01-28 23:26:45 ----A---- C:\Windows\system32\OobeFldr.dll 2014-01-28 23:26:45 ----A---- C:\Windows\system32\drivers\CompositeBus.sys 2014-01-28 23:26:45 ----A---- C:\Windows\system32\drivers\cdrom.sys 2014-01-28 23:26:44 ----A---- C:\Windows\system32\drivers\acpipmi.sys 2014-01-28 23:26:44 ----A---- C:\Windows\system32\drivers\acpi.sys 2014-01-28 23:26:44 ----A---- C:\Windows\system32\drivers\1394ohci.sys 2014-01-28 23:23:37 ----A---- C:\Windows\system32\nitrolocalui.dll 2014-01-28 23:23:37 ----A---- C:\Windows\system32\nitrolocalmon.dll 2014-01-28 23:23:07 ----D---- C:\ProgramData\Nitro PDF 2014-01-28 23:23:05 ----D---- C:\Program Files\Nitro PDF 2014-01-28 23:23:05 ----D---- C:\Program Files\Common Files\Nitro PDF 2014-01-28 23:21:37 ----D---- C:\Users\Marcel\AppData\Roaming\Downloaded Installations 2014-01-28 22:40:49 ----D---- C:\ProgramData\Microsoft Help 2014-01-28 22:10:55 ----D---- C:\Windows\AutoKMS 2014-01-28 21:46:53 ----A---- C:\Windows\system32\perfi010.dat 2014-01-28 21:46:53 ----A---- C:\Windows\system32\perfi00D.dat 2014-01-28 21:46:53 ----A---- C:\Windows\system32\perfh00D.dat 2014-01-28 21:46:53 ----A---- C:\Windows\system32\perfd00D.dat 2014-01-28 21:46:53 ----A---- C:\Windows\system32\perfc00D.dat 2014-01-28 21:46:52 ----A---- C:\Windows\system32\perfh010.dat 2014-01-28 21:46:52 ----A---- C:\Windows\system32\perfd010.dat 2014-01-28 21:46:52 ----A---- C:\Windows\system32\perfc010.dat 2014-01-28 21:38:19 ----D---- C:\Windows\system32\drivers\th-TH 2014-01-28 21:38:13 ----D---- C:\Windows\th-TH 2014-01-28 21:38:02 ----D---- C:\Windows\system32\he 2014-01-28 21:38:02 ----D---- C:\Windows\system32\drivers\he-IL 2014-01-28 21:37:47 ----D---- C:\Windows\he-IL 2014-01-28 21:37:43 ----D---- C:\Windows\sr-Latn-CS 2014-01-28 21:37:34 ----D---- C:\Windows\system32\drivers\sr-Latn-CS 2014-01-28 21:37:26 ----D---- C:\Windows\uk-UA 2014-01-28 21:37:26 ----D---- C:\Windows\system32\drivers\uk-UA 2014-01-28 21:37:01 ----D---- C:\Windows\it-IT 2014-01-28 21:36:40 ----D---- C:\Windows\system32\drivers\it-IT 2014-01-28 21:36:40 ----D---- C:\Windows\system32\0410 2014-01-28 21:36:30 ----D---- C:\Windows\system32\it 2014-01-28 21:36:18 ----D---- C:\Windows\sk-SK 2014-01-28 21:36:06 ----D---- C:\Windows\system32\drivers\sk-SK 2014-01-28 20:49:02 ----D---- C:\Windows\system32\EventProviders 2014-01-28 20:45:15 ----D---- C:\Program Files\Microsoft Silverlight 2014-01-28 19:19:56 ----A---- C:\Windows\system32\prfi0404.dat 2014-01-28 19:19:56 ----A---- C:\Windows\system32\prfh0404.dat 2014-01-28 19:19:56 ----A---- C:\Windows\system32\prfd0404.dat 2014-01-28 19:19:56 ----A---- C:\Windows\system32\prfc0404.dat 2014-01-28 19:19:11 ----D---- C:\Windows\zh-TW 2014-01-28 19:19:10 ----D---- C:\Windows\system32\zh-CHT 2014-01-28 19:19:00 ----D---- C:\Windows\system32\drivers\zh-TW 2014-01-28 19:19:00 ----D---- C:\Windows\system32\drivers\zh-HK 2014-01-28 19:12:41 ----A---- C:\Windows\system32\perfi012.dat 2014-01-28 19:12:41 ----A---- C:\Windows\system32\perfh012.dat 2014-01-28 19:12:41 ----A---- C:\Windows\system32\perfd012.dat 2014-01-28 19:12:41 ----A---- C:\Windows\system32\perfc012.dat 2014-01-28 19:11:53 ----D---- C:\Windows\ko-KR 2014-01-28 19:11:51 ----D---- C:\Windows\system32\drivers\ko-KR 2014-01-28 19:11:38 ----D---- C:\Windows\system32\ko 2014-01-28 19:06:01 ----A---- C:\Windows\system32\perfi00C.dat 2014-01-28 19:06:01 ----A---- C:\Windows\system32\perfh00C.dat 2014-01-28 19:06:01 ----A---- C:\Windows\system32\perfd00C.dat 2014-01-28 19:06:01 ----A---- C:\Windows\system32\perfc00C.dat 2014-01-28 19:05:10 ----D---- C:\Windows\fr-FR 2014-01-28 19:04:53 ----D---- C:\Windows\system32\040C 2014-01-28 19:04:52 ----D---- C:\Windows\system32\fr 2014-01-28 19:04:52 ----D---- C:\Windows\system32\drivers\fr-FR 2014-01-28 18:58:02 ----A---- C:\Windows\system32\perfi005.dat 2014-01-28 18:58:02 ----A---- C:\Windows\system32\perfh005.dat 2014-01-28 18:58:02 ----A---- C:\Windows\system32\perfd005.dat 2014-01-28 18:58:02 ----A---- C:\Windows\system32\perfc005.dat 2014-01-28 18:57:10 ----D---- C:\Windows\cs-CZ 2014-01-28 18:57:09 ----D---- C:\Windows\system32\cs 2014-01-28 18:56:56 ----D---- C:\Windows\system32\drivers\cs-CZ 2014-01-28 18:00:15 ----D---- C:\Program Files\Microsoft.NET 2014-01-28 17:23:41 ----A---- C:\Windows\system32\Wdfres.dll 2014-01-28 17:23:41 ----A---- C:\Windows\system32\drivers\WdfLdr.sys 2014-01-28 17:23:01 ----A---- C:\Windows\system32\drivers\WUDFRd.sys 2014-01-28 17:23:01 ----A---- C:\Windows\system32\drivers\WUDFPf.sys 2014-01-28 17:23:00 ----A---- C:\Windows\system32\WUDFSvc.dll 2014-01-28 17:23:00 ----A---- C:\Windows\system32\WUDFPlatform.dll 2014-01-28 17:22:59 ----A---- C:\Windows\system32\WUDFHost.exe 2014-01-28 17:22:59 ----A---- C:\Windows\system32\WUDFCoinstaller.dll 2014-01-28 17:22:58 ----A---- C:\Windows\system32\WUDFx.dll 2014-01-28 17:22:17 ----A---- C:\Windows\system32\wmi.dll 2014-01-28 17:22:17 ----A---- C:\Windows\system32\drivers\fs_rec.sys 2014-01-28 17:21:29 ----A---- C:\Windows\system32\browserchoice.exe 2014-01-28 17:10:46 ----A---- C:\Windows\system32\tsgqec.dll 2014-01-28 17:10:46 ----A---- C:\Windows\system32\mstscax.dll 2014-01-28 17:10:46 ----A---- C:\Windows\system32\aaclient.dll 2014-01-28 17:01:55 ----A---- C:\Windows\system32\Wpc.dll 2014-01-28 17:01:48 ----A---- C:\Windows\system32\gameux.dll 2014-01-28 16:50:33 ----D---- C:\Program Files\Google 2014-01-28 07:42:30 ----D---- C:\Windows\system32\Wat 2014-01-28 07:34:41 ----D---- C:\Users\Marcel\AppData\Roaming\WinRAR 2014-01-28 07:34:23 ----D---- C:\Program Files\WinRAR 2014-01-28 06:46:55 ----A---- C:\Windows\system32\perfi00B.dat 2014-01-28 06:46:55 ----A---- C:\Windows\system32\perfh00B.dat 2014-01-28 06:46:55 ----A---- C:\Windows\system32\perfd00B.dat 2014-01-28 06:46:55 ----A---- C:\Windows\system32\perfc00B.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\prfi0804.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\prfh0804.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\prfd0804.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\prfc0804.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfi014.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfi007.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfh014.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfh007.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfd014.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfd007.dat 2014-01-28 06:46:54 ----A---- C:\Windows\system32\perfc007.dat 2014-01-28 06:46:53 ----A---- C:\Windows\system32\perfc014.dat 2014-01-28 06:39:21 ----D---- C:\Windows\fi-FI 2014-01-28 06:39:11 ----D---- C:\Windows\system32\fi 2014-01-28 06:39:11 ----D---- C:\Windows\system32\drivers\fi-FI 2014-01-28 06:38:58 ----D---- C:\Windows\system32\zh-CHS 2014-01-28 06:38:57 ----D---- C:\Windows\system32\drivers\zh-CN 2014-01-28 06:38:42 ----D---- C:\Windows\zh-CN 2014-01-28 06:38:33 ----D---- C:\Windows\system32\drivers\sl-SI 2014-01-28 06:38:33 ----D---- C:\Windows\sl-SI 2014-01-28 06:38:21 ----D---- C:\Windows\system32\drivers\et-EE 2014-01-28 06:38:15 ----D---- C:\Windows\et-EE 2014-01-28 06:38:11 ----D---- C:\Windows\hr-HR 2014-01-28 06:38:10 ----D---- C:\Windows\system32\drivers\hr-HR 2014-01-28 06:37:19 ----D---- C:\Windows\nb-NO 2014-01-28 06:37:19 ----D---- C:\Windows\en-US 2014-01-28 06:37:17 ----D---- C:\Windows\system32\no 2014-01-28 06:37:17 ----D---- C:\Windows\system32\en 2014-01-28 06:37:17 ----D---- C:\Windows\system32\0409 2014-01-28 06:37:05 ----D---- C:\Windows\system32\drivers\nb-NO 2014-01-28 06:37:05 ----D---- C:\Windows\system32\drivers\en-US 2014-01-28 06:36:45 ----D---- C:\Windows\de-DE 2014-01-28 06:36:24 ----D---- C:\Windows\system32\0407 2014-01-28 06:36:23 ----D---- C:\Windows\system32\drivers\de-DE 2014-01-28 06:36:16 ----D---- C:\Windows\system32\de 2014-01-28 00:28:49 ----D---- C:\Program Files\Common Files\Windows Live 2014-01-27 23:43:14 ----D---- C:\Windows\system32\MRT 2014-01-27 23:43:12 ----A---- C:\Windows\system32\MRT.exe 2014-01-27 22:33:22 ----A---- C:\Windows\system32\cdosys.dll 2014-01-27 22:33:09 ----A---- C:\Windows\system32\tquery.dll 2014-01-27 22:33:08 ----A---- C:\Windows\system32\SearchProtocolHost.exe 2014-01-27 22:33:08 ----A---- C:\Windows\system32\SearchIndexer.exe 2014-01-27 22:33:08 ----A---- C:\Windows\system32\mssvp.dll 2014-01-27 22:33:08 ----A---- C:\Windows\system32\mssrch.dll 2014-01-27 22:33:08 ----A---- C:\Windows\system32\mssphtb.dll 2014-01-27 22:33:08 ----A---- C:\Windows\system32\mssph.dll 2014-01-27 22:33:07 ----A---- C:\Windows\system32\SearchFilterHost.exe 2014-01-27 22:33:07 ----A---- C:\Windows\system32\msscntrs.dll 2014-01-27 22:33:06 ----A---- C:\Windows\system32\drivers\srvnet.sys 2014-01-27 22:33:06 ----A---- C:\Windows\system32\drivers\srv2.sys 2014-01-27 22:33:06 ----A---- C:\Windows\system32\drivers\srv.sys 2014-01-27 22:32:28 ----A---- C:\Windows\system32\smss.exe 2014-01-27 22:32:28 ----A---- C:\Windows\system32\csrsrv.dll 2014-01-27 22:32:25 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2014-01-27 22:32:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2014-01-27 22:32:25 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2014-01-27 22:32:15 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2014-01-27 22:32:14 ----A---- C:\Windows\system32\sbe.dll 2014-01-27 22:32:14 ----A---- C:\Windows\system32\CPFilters.dll 2014-01-27 22:32:07 ----A---- C:\Windows\system32\webio.dll 2014-01-27 22:32:01 ----A---- C:\Windows\system32\quartz.dll 2014-01-27 22:32:01 ----A---- C:\Windows\system32\qdvd.dll 2014-01-27 22:31:58 ----A---- C:\Windows\system32\srcore.dll 2014-01-27 22:31:58 ----A---- C:\Windows\system32\rstrui.exe 2014-01-27 22:31:57 ----A---- C:\Windows\system32\msi.dll 2014-01-27 22:31:57 ----A---- C:\Windows\system32\EncDec.dll 2014-01-27 22:31:51 ----A---- C:\Windows\system32\kerberos.dll 2014-01-27 22:31:45 ----A---- C:\Windows\system32\msxml3r.dll 2014-01-27 22:31:45 ----A---- C:\Windows\system32\msxml3.dll 2014-01-27 22:31:44 ----A---- C:\Windows\system32\inetcomm.dll 2014-01-27 22:31:41 ----A---- C:\Windows\system32\drivers\ntfs.sys 2014-01-27 22:31:39 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2014-01-27 22:31:35 ----A---- C:\Windows\system32\psisdecd.dll 2014-01-27 22:31:31 ----A---- C:\Windows\system32\netapi32.dll 2014-01-27 22:31:31 ----A---- C:\Windows\system32\browser.dll 2014-01-27 22:31:31 ----A---- C:\Windows\system32\browcli.dll 2014-01-27 22:31:29 ----A---- C:\Windows\system32\oleaut32.dll 2014-01-27 22:31:29 ----A---- C:\Windows\system32\oleacc.dll 2014-01-27 22:31:28 ----A---- C:\Windows\system32\dnsrslvr.dll 2014-01-27 22:31:28 ----A---- C:\Windows\system32\dnsapi.dll 2014-01-27 22:31:27 ----A---- C:\Windows\system32\dnscacheugc.exe 2014-01-27 22:31:22 ----A---- C:\Windows\system32\drivers\fvevol.sys 2014-01-27 22:31:14 ----A---- C:\Windows\system32\packager.dll 2014-01-27 22:31:13 ----A---- C:\Windows\system32\odbcjt32.dll 2014-01-27 22:31:12 ----A---- C:\Windows\system32\odbctrac.dll 2014-01-27 22:31:12 ----A---- C:\Windows\system32\odbccu32.dll 2014-01-27 22:31:12 ----A---- C:\Windows\system32\odbccr32.dll 2014-01-27 22:31:12 ----A---- C:\Windows\system32\odbccp32.dll 2014-01-27 22:31:11 ----A---- C:\Windows\system32\msvcrt.dll 2014-01-27 22:31:09 ----A---- C:\Windows\system32\usp10.dll 2014-01-27 22:31:05 ----A---- C:\Windows\system32\WFS.exe 2014-01-27 22:31:05 ----A---- C:\Windows\system32\FXSCOVER.exe 2014-01-27 22:31:01 ----A---- C:\Windows\system32\drivers\partmgr.sys 2014-01-27 22:30:59 ----A---- C:\Windows\system32\umpnpmgr.dll 2014-01-27 22:30:59 ----A---- C:\Windows\system32\cfgmgr32.dll 2014-01-27 22:30:57 ----A---- C:\Windows\system32\dpnet.dll 2014-01-27 22:30:57 ----A---- C:\Windows\system32\dpnaddr.dll 2014-01-27 22:30:56 ----A---- C:\Windows\system32\msxml6.dll 2014-01-27 22:30:54 ----A---- C:\Windows\system32\drivers\usb8023.sys 2014-01-27 22:30:50 ----A---- C:\Windows\system32\prevhost.exe 2014-01-27 22:30:48 ----A---- C:\Windows\system32\xmllite.dll 2014-01-27 22:30:44 ----A---- C:\Windows\system32\synceng.dll 2014-01-27 22:30:43 ----A---- C:\Windows\system32\profsvc.dll 2014-01-27 22:30:43 ----A---- C:\Windows\system32\profprov.dll 2014-01-27 22:30:42 ----A---- C:\Windows\system32\rdrmemptylst.exe 2014-01-27 22:30:42 ----A---- C:\Windows\system32\rdpwsx.dll 2014-01-27 22:30:42 ----A---- C:\Windows\system32\rdpcorekmts.dll 2014-01-27 22:30:40 ----A---- C:\Windows\system32\mfc42u.dll 2014-01-27 22:30:40 ----A---- C:\Windows\system32\mfc42.dll 2014-01-27 22:30:38 ----A---- C:\Windows\system32\localspl.dll 2014-01-27 22:30:32 ----A---- C:\Windows\system32\ntshrui.dll 2014-01-27 22:30:30 ----A---- C:\Windows\system32\drivers\Diskdump.sys 2014-01-27 22:30:27 ----A---- C:\Windows\system32\drivers\bowser.sys 2014-01-27 22:30:20 ----A---- C:\Windows\system32\poqexec.exe 2014-01-27 22:20:04 ----A---- C:\Windows\system32\cdd.dll 2014-01-27 22:09:58 ----SHD---- C:\Windows\Installer 2014-01-27 21:22:45 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-01-27 21:22:20 ----A---- C:\Windows\system32\rdpudd.dll 2014-01-27 21:22:20 ----A---- C:\Windows\system32\rdpcore.dll 2014-01-27 21:22:20 ----A---- C:\Windows\system32\drivers\tdtcp.sys 2014-01-27 21:22:20 ----A---- C:\Windows\system32\drivers\tdpipe.sys 2014-01-27 21:22:20 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys 2014-01-27 21:19:02 ----A---- C:\Windows\system32\wups2.dll 2014-01-27 21:19:01 ----A---- C:\Windows\system32\wucltux.dll 2014-01-27 21:19:01 ----A---- C:\Windows\system32\wuaueng.dll 2014-01-27 21:19:01 ----A---- C:\Windows\system32\wuauclt.exe 2014-01-27 21:18:50 ----A---- C:\Windows\system32\wups.dll 2014-01-27 21:18:50 ----A---- C:\Windows\system32\wudriver.dll 2014-01-27 21:18:50 ----A---- C:\Windows\system32\wuapi.dll 2014-01-27 21:18:38 ----A---- C:\Windows\system32\wuwebv.dll 2014-01-27 21:18:38 ----A---- C:\Windows\system32\wuapp.exe 2014-01-27 21:18:08 ----SHD---- C:\ProgramData\Sjablonen 2014-01-27 21:18:08 ----SHD---- C:\ProgramData\Menu Start 2014-01-27 21:18:08 ----SHD---- C:\ProgramData\Favorieten 2014-01-27 21:18:08 ----SHD---- C:\ProgramData\Documenten 2014-01-27 21:18:08 ----SHD---- C:\ProgramData\Bureaublad 2014-01-27 21:12:34 ----A---- C:\Windows\system32\emptyregdb.dat 2014-01-27 21:06:40 ----SD---- C:\Users\Marcel\AppData\Roaming\Microsoft 2014-01-27 21:06:40 ----D---- C:\Users\Marcel\AppData\Roaming\Media Center Programs 2014-01-27 21:05:30 ----D---- C:\ProgramData\NVIDIA 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvvsvc.exe 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvsvcr.dll 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvsvc.dll 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvshext.dll 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvmctray.dll 2014-01-27 21:05:18 ----A---- C:\Windows\system32\nvcpl.dll 2014-01-27 21:04:43 ----D---- C:\ProgramData\NVIDIA Corporation 2014-01-27 21:04:39 ----D---- C:\Program Files\NVIDIA Corporation 2014-01-27 21:01:46 ----D---- C:\Windows\Prefetch 2014-01-27 21:00:38 ----D---- C:\Windows\Panther 2014-01-27 20:30:41 ----N---- C:\Windows\system32\MpSigStub.exe 2014-01-27 20:10:34 ----A---- C:\Windows\system32\OpenCL.dll 2014-01-27 20:01:55 ----D---- C:\Users\Marcel\AppData\Roaming\Identities 2014-01-27 20:01:25 ----SHD---- C:\Recovery 2014-01-27 19:48:47 ----D---- C:\Windows\SoftwareDistribution 2014-01-27 01:24:38 ----RASH---- C:\BOOTSECT.BAK 2014-01-27 01:24:36 ----SHD---- C:\Boot 2014-01-26 17:19:06 ----D---- C:\Intel 2014-01-26 17:11:21 ----D---- C:\fsc.tmp 2014-01-26 16:31:36 ----ASH---- C:\hiberfil.sys 2014-01-26 16:25:57 ----ASH---- C:\pagefile.sys 2014-01-26 16:25:55 ----SHD---- C:\System Volume Information ======List of files/folders modified in the last 1 month====== 2014-01-30 22:59:25 ----D---- C:\Windows\Temp 2014-01-30 22:59:06 ----RD---- C:\Program Files 2014-01-30 22:56:38 ----D---- C:\Windows\system32\config 2014-01-30 22:56:36 ----D---- C:\Windows\system32\catroot 2014-01-30 22:55:25 ----D---- C:\Windows\system32\drivers 2014-01-30 22:55:19 ----D---- C:\Windows\System32 2014-01-30 22:55:19 ----D---- C:\Program Files\Common Files\microsoft shared 2014-01-30 22:46:07 ----HD---- C:\ProgramData 2014-01-30 22:40:49 ----D---- C:\Windows\inf 2014-01-30 22:32:12 ----D---- C:\Windows\system32\Tasks 2014-01-30 22:30:55 ----D---- C:\Windows\system32\DriverStore 2014-01-30 21:05:12 ----D---- C:\Windows\winsxs 2014-01-30 21:03:10 ----AD---- C:\Windows 2014-01-30 21:01:33 ----D---- C:\Windows\system32\it-IT 2014-01-30 21:01:32 ----D---- C:\Windows\system32\zh-CN 2014-01-30 21:01:32 ----D---- C:\Windows\system32\uk-UA 2014-01-30 21:01:32 ----D---- C:\Windows\system32\th-TH 2014-01-30 21:01:32 ----D---- C:\Windows\system32\hr-HR 2014-01-30 21:01:32 ----D---- C:\Windows\system32\de-DE 2014-01-30 21:01:32 ----D---- C:\Program Files\Internet Explorer 2014-01-30 21:01:31 ----D---- C:\Windows\system32\sr-Latn-CS 2014-01-30 21:01:31 ----D---- C:\Windows\system32\he-IL 2014-01-30 21:01:31 ----D---- C:\Windows\system32\fr-FR 2014-01-30 21:01:31 ----D---- C:\Windows\system32\et-EE 2014-01-30 21:01:28 ----D---- C:\Windows\system32\sl-SI 2014-01-30 21:01:27 ----D---- C:\Windows\system32\fi-FI 2014-01-30 21:01:26 ----D---- C:\Windows\system32\sk-SK 2014-01-30 21:01:25 ----D---- C:\Windows\system32\nb-NO 2014-01-30 21:01:23 ----D---- C:\Windows\system32\cs-CZ 2014-01-30 21:01:22 ----D---- C:\Windows\system32\zh-HK 2014-01-30 21:01:22 ----D---- C:\Windows\system32\nl-NL 2014-01-30 21:01:22 ----D---- C:\Windows\system32\ko-KR 2014-01-30 21:01:21 ----D---- C:\Windows\system32\migration 2014-01-30 21:01:21 ----D---- C:\Windows\system32\en-US 2014-01-30 21:01:21 ----D---- C:\Windows\PolicyDefinitions 2014-01-30 21:01:20 ----D---- C:\Windows\system32\zh-TW 2014-01-30 21:01:20 ----D---- C:\Windows\system32\tr-TR 2014-01-30 21:01:20 ----D---- C:\Windows\system32\sv-SE 2014-01-30 21:01:20 ----D---- C:\Windows\system32\ru-RU 2014-01-30 21:01:20 ----D---- C:\Windows\system32\pt-PT 2014-01-30 21:01:20 ----D---- C:\Windows\system32\pt-BR 2014-01-30 21:01:20 ----D---- C:\Windows\system32\pl-PL 2014-01-30 21:01:20 ----D---- C:\Windows\system32\ja-JP 2014-01-30 21:01:20 ----D---- C:\Windows\system32\hu-HU 2014-01-30 21:01:20 ----D---- C:\Windows\system32\es-ES 2014-01-30 21:01:20 ----D---- C:\Windows\system32\el-GR 2014-01-30 21:01:20 ----D---- C:\Windows\system32\da-DK 2014-01-30 20:39:56 ----D---- C:\Windows\Logs 2014-01-30 20:38:27 ----D---- C:\Windows\system32\catroot2 2014-01-30 14:27:01 ----D---- C:\Windows\Microsoft.NET 2014-01-30 14:26:11 ----RSD---- C:\Windows\assembly 2014-01-30 14:10:04 ----SD---- C:\ProgramData\Microsoft 2014-01-30 08:28:37 ----D---- C:\Windows\AppPatch 2014-01-30 08:28:34 ----D---- C:\Program Files\Windows Journal 2014-01-30 08:28:25 ----D---- C:\Program Files\Windows Media Player 2014-01-30 08:28:17 ----D---- C:\Program Files\Windows Defender 2014-01-30 08:26:27 ----D---- C:\Windows\TAPI 2014-01-29 19:36:32 ----D---- C:\Windows\Tasks 2014-01-29 19:29:42 ----RSD---- C:\Windows\Fonts 2014-01-29 19:29:32 ----D---- C:\Windows\ShellNew 2014-01-29 19:29:31 ----D---- C:\Program Files\MSBuild 2014-01-29 19:29:29 ----D---- C:\Program Files\Common Files 2014-01-29 19:28:21 ----D---- C:\Program Files\Common Files\System 2014-01-29 19:28:20 ----A---- C:\Windows\win.ini 2014-01-29 19:17:14 ----D---- C:\Windows\system32\wdi 2014-01-29 12:13:20 ----D---- C:\Windows\rescache 2014-01-29 10:32:49 ----D---- C:\Windows\debug 2014-01-29 04:05:39 ----D---- C:\Program Files\Windows Sidebar 2014-01-29 04:05:39 ----D---- C:\Program Files\Windows Mail 2014-01-29 04:05:38 ----D---- C:\Program Files\Windows Portable Devices 2014-01-29 04:05:38 ----D---- C:\Program Files\Windows Photo Viewer 2014-01-29 04:05:38 ----D---- C:\Program Files\DVD Maker 2014-01-29 04:05:30 ----D---- C:\Windows\servicing 2014-01-29 04:05:30 ----D---- C:\Windows\ehome 2014-01-29 04:05:16 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents 2014-01-29 04:04:36 ----D---- C:\Windows\system32\sysprep 2014-01-29 04:04:36 ----D---- C:\Windows\system32\oobe 2014-01-29 04:04:35 ----D---- C:\Windows\system32\AdvancedInstallers 2014-01-29 04:04:31 ----D---- C:\Windows\system32\Setup 2014-01-29 04:04:18 ----D---- C:\Windows\system32\manifeststore 2014-01-29 04:04:11 ----D---- C:\Windows\system32\sppui 2014-01-29 04:04:08 ----D---- C:\Windows\system32\drivers\nl-NL 2014-01-29 04:04:06 ----D---- C:\Windows\system32\drivers\UMDF 2014-01-29 04:04:01 ----D---- C:\Windows\system32\wbem 2014-01-29 04:03:54 ----D---- C:\Windows\system32\migwiz 2014-01-29 04:03:53 ----D---- C:\Windows\system32\Dism 2014-01-29 04:00:15 ----D---- C:\Windows\system32\Boot 2014-01-29 03:53:18 ----A---- C:\Windows\system32\msclmd.dll 2014-01-28 21:38:19 ----D---- C:\Windows\system32\WCN 2014-01-28 21:38:03 ----D---- C:\Windows\IME 2014-01-28 21:38:02 ----D---- C:\Windows\system32\XPSViewer 2014-01-28 21:38:02 ----D---- C:\Windows\system32\winrm 2014-01-28 21:38:02 ----D---- C:\Windows\system32\MUI 2014-01-28 21:37:01 ----D---- C:\Windows\DigitalLocker 2014-01-28 21:36:41 ----D---- C:\Windows\system32\WinBioPlugIns 2014-01-28 21:36:41 ----D---- C:\Windows\system32\slmgr 2014-01-28 21:36:35 ----D---- C:\Windows\system32\Printing_Admin_Scripts 2014-01-28 21:36:29 ----D---- C:\Windows\system32\com 2014-01-28 06:36:11 ----D---- C:\Windows\Speech 2014-01-27 21:33:49 ----D---- C:\Windows\system32\CodeIntegrity 2014-01-27 21:18:20 ----D---- C:\Windows\system32\restore 2014-01-27 21:18:08 ----D---- C:\Windows\system32\Recovery 2014-01-27 21:18:08 ----D---- C:\Program Files\Windows NT 2014-01-27 21:12:38 ----D---- C:\Windows\Registration 2014-01-27 21:12:26 ----D---- C:\Windows\system32\LogFiles 2014-01-27 21:09:29 ----RD---- C:\Users 2014-01-27 21:05:14 ----D---- C:\Windows\Help 2014-01-27 21:02:33 ----D---- C:\Windows\CSC 2014-01-27 20:59:52 ----SD---- C:\Windows\system32\Microsoft ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440] R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360] R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-12-09 135648] R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-12-09 37352] R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2013-09-24 20072] R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2013-11-14 582936] R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2013-09-24 44752] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096] R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2013-09-24 85464] R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-12-09 90400] R3 e1express;Stuurprogramma voor Intel® PRO/1000 PCI Express-netwerkverbinding; C:\Windows\system32\DRIVERS\e1e6032.sys [2009-07-13 211456] R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720] S1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2013-12-09 28520] S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032] S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224] S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [] S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys [] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-12-09 440376] R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-12-09 440376] R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-01-24 104504] R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2013-10-20 4832192] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 NitroDriverReadSpool;NitroPDFDriverCreatorReadSpool; C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe [2011-01-12 196928] R2 nlsX86cc;NLS Service; C:\Windows\system32\NLSSRV32.EXE [2011-01-12 68928] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-31 634656] R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-19 1259296] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-28 116648] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2013-09-24 131288] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-28 116648] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-01-30 108032] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-28 1343400] S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [2013-12-09 1011768] -----------------EOF-----------------
  5. Kan iemand kijken naar deze log? Ik wil graag een goede back-up maken maar wil eerst zeker weten of er niets vreemds tussen zit. Ik heb al het één en ander verwijderd maar ben er nog niet zeker van. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 20:00:34, on 30-1-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16526) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe D:\beveilingssoftware\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_11F810DC58703105CF0600BCC1ED96D2] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKCU\..\RunOnce: [uninstall C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marcel\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910" O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe O23 - Service: NLS Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\system32\NLSSRV32.EXE O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- End of file - 4616 bytes
  6. svchost zal ik toestaan! Het gaat nu niet zozeer om problemen maar ik dacht dat sommige geel gemarkeerde items volgens mij toch nog steeds resten van Iobit zijn en dat bijv. wfc.exe er nog tussen staat terwijl het verwijderd is???? Of ben ik nu mis?
  7. Avira-comodo probleem is inmiddels opgelost: 1. Go to Start → Control Panel → Programs and Features → Uninstall programs. Right-click Avira AntiVir and select "Change" 2. Click "Modify" and then "Next" 3. Carry on the installation process, disable "Windows Firewall" component, then "Next" until "Finish" . 4. Reboot.
  8. Hierbij de juiste afbeeldingen
  9. Weet je hier toevallig ook nog antwoord op of kan ik deze vragen hier niet stellen? Avira herkent ook alleen de Windows firewall als Avira de melding geeft: attention needed antivirus malware. (zie laatste afb.) Comodo komt hier niet in voor, alleen dus de Windows firewall. Fix dit levert op dat er 2 firewalls actief zijn. Chrome.exe bij inkomend in het rood op 94,5% staat. Moet ik hier nu iets mee? Wat doe ik met de melding svchost.exe toestaan via de firewall. Wel of niet? Ik heb toch nog het idee dat er iets achterblijft in de taakbalk. Zie eerste drie screenshots.
  10. Avira inmiddels weer aan de praat gekregen. Kijk vanavond of er nog een berichtje van je is. Nu lekker eerst even naar buiten!
  11. Dat duurde dit keer lang zeg. Meldingen staan er nog. Wat de firewall betreft: uitzetten lukt, verwijderen niet. Avira herkent ook alleen de Windows firewall als ik die toe wil staan. Comodo komt hier niet voor. Ik vind Comodo wel weer wennen hoor! Ik zag o.a.bijv. dat chrome.exe bij inkomend in het rood op 94,5% staat. Moet ik hier nu iets mee? Ik kreeg ook meteen een melding om svchost.exe toe te staan. Wel of niet??? Nu krijg ik Avira desktop ook niet aan de praat. Bijwilt u de computer toestaan.... en ik klik op ja dan gebeurt er niets. Hierbij de log: Zoek.exe v5.0.0.0 Updated 09-Januari-2014 Tool run by Bea on zo 12-01-2014 at 10:40:26,88. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Bea\Downloads\zoek.exe [scan all users] [Quick Scan] [Auto Clean] ==== Older Logs ====================== C:\zoek-results2014-01-11-070735.log 20566 bytes C:\zoek-results2014-01-12-091829.log 242 bytes C:\zoek-results2014-01-12-092657.log 209 bytes C:\zoek-results2014-01-12-093608.log 519 bytes ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Internet Explorer\SearchScopes\{7EF149D8-62F6-4D4F-9A2A-059FE750405F} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\ProgramData\ProductData deleted C:\ProgramData\Package Cache deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Bea\AppData\Local\Temp ==== 2014-01-11 19:33:02 FCF35E1C0A7DDC52FE2A738600773C68 12344 ----a-w- C:\Users\Bea\AppData\Local\Temp\avgnt.exe\Avira.OE.Communicator.Interface.dll 2014-01-11 19:33:02 9B88C214FC43E13D627862F8B0E8F89F 39480 ----a-w- C:\Users\Bea\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-01-11 19:33:02 8166E0A1348922A61AF1765755061A00 285240 ----a-w- C:\Users\Bea\AppData\Local\Temp\avgnt.exe\Avira.OE.NativeCore.dll 2014-01-11 19:33:02 74B324BDE763615318490FE1DF9DC32A 119352 ----a-w- C:\Users\Bea\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.dll 2014-01-11 19:33:02 610C86FBC0483579DC35AA73DDADCE66 42040 ----a-w- C:\Users\Bea\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.Interface.dll ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2014-01-12 08:35:55 55C5E255A9B91E7813DA25D96E0429A3 546618 ----a-w- C:\Windows\Sysnative\drivers\fvstore.dat 2014-01-11 20:09:25 3DE0EBA0BF4771C897F544CBF7CB8973 84720 ----a-w- C:\Windows\Sysnative\drivers\avnetflt.sys 2014-01-11 19:31:42 C3A58DBD18786C338126D30BF8C33D72 131576 ----a-w- C:\Windows\Sysnative\drivers\avipbb.sys 2014-01-11 19:31:42 7806BFCD1D7FA5EC23F7324D4EAFD25B 108440 ----a-w- C:\Windows\Sysnative\drivers\avgntflt.sys 2014-01-11 19:31:42 390184FAD8FCC1B6DA25AEBAE928C3B6 28600 ----a-w- C:\Windows\Sysnative\drivers\avkmgr.sys ====== C:\Windows\Tasks ====== 2014-01-11 20:52:24 -------- d-----w- C:\Windows\Sysnative\Tasks\COMODO ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-11 20:49:38 -------- d-----w- C:\Program Files\COMODO ======= C:\PROGRA~2 ===== 2014-01-11 19:16:59 -------- d-----w- C:\PROGRA~2\Avira 2013-12-16 15:56:02 -------- d-----w- C:\PROGRA~2\Cabri II Plus ======= C: ===== 2014-01-10 08:53:48 AB5A7EC81E1481F303537D4D248E62A0 790 ----a-w- C:\DelFix.txt ====== C:\Users\Bea\AppData\Roaming ====== 2014-01-12 08:29:06 -------- d-----r- C:\Users\Bea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUSTek ASUSDVD 8 2014-01-11 22:50:52 -------- d-----w- C:\Users\Bea\AppData\Roaming\Comodo 2014-01-11 19:38:07 -------- d-----w- C:\Users\Bea\AppData\Roaming\Avira 2014-01-11 19:33:08 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Avira 2014-01-09 19:47:24 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2014-01-09 19:47:24 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2014-01-09 19:47:24 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2014-01-09 19:47:24 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2014-01-09 19:47:24 -------- d-----w- C:\Users\Bea\AppData\Local\Temp 2014-01-02 22:06:37 2DA4E0ED89DDDFCFC687CBF3ACFB1018 43 ----a-w- C:\Users\Bea\AppData\Roaming\mbam.context.scan 2013-12-19 09:19:04 -------- d-----w- C:\Users\Default\AppData\Local\Google 2013-12-19 09:19:04 -------- d-----w- C:\Users\Default User\AppData\Local\Google ====== C:\Users\Bea ====== 2014-01-11 22:08:36 29702C25639B549AC5221E546545D56B 728960 ----a-w- C:\Users\Bea\Downloads\SpyHunter-Installer.exe 2014-01-11 20:51:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO 2014-01-11 20:49:51 -------- d-s---w- C:\ProgramData\Shared Space 2014-01-11 20:49:33 -------- d-----w- C:\ProgramData\Comodo 2014-01-11 20:49:28 -------- d-----w- C:\ProgramData\Comodo Downloader 2014-01-11 20:32:41 A0163415AE817DE66ABCCAEFD56F672D 211388240 ----a-w- C:\Users\Bea\Downloads\cfw_installer.exe 2014-01-11 20:05:55 563917418534A65BCAAC2DE6BD47F016 129564536 ----a-w- C:\Users\Bea\Downloads\avira_free_antivirus_en.exe 2014-01-11 19:17:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-01-11 19:16:59 -------- d-----w- C:\ProgramData\Avira 2014-01-11 19:15:47 9A319F0CA0A2F423AC5240CEFFDE5109 3974840 ----a-w- C:\Users\Bea\Downloads\avira_oe_client_antivirus_en.exe 2013-12-16 15:56:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cabri Geometry II Plus ====== C: exe-files == 2014-01-11 22:08:36 29702C25639B549AC5221E546545D56B 728960 ----a-w- C:\Users\Bea\Downloads\SpyHunter-Installer.exe 2014-01-11 20:34:20 61AB175718EF5E9F69F163B16C8FFDA3 12809376 ----a-w- C:\ProgramData\Comodo Downloader\cis\download\installs\xml_binaries\privdog\privdog.exe 2014-01-11 20:34:15 E5DFEB91445838850ED7747C35516382 40522032 ----a-w- C:\ProgramData\Comodo Downloader\cis\download\installs\xml_binaries\dragon\dragonsetup.exe 2014-01-11 20:32:41 A0163415AE817DE66ABCCAEFD56F672D 211388240 ----a-w- C:\Users\Bea\Downloads\cfw_installer.exe 2014-01-11 20:05:55 563917418534A65BCAAC2DE6BD47F016 129564536 ----a-w- C:\Users\Bea\Downloads\avira_free_antivirus_en.exe 2014-01-11 19:31:46 5BC02AC86CB9F875BD91A5D009132FDE 645688 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe 2014-01-11 19:31:44 FE79366FECD444A16CCA9979134DBEA8 440376 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 2014-01-11 19:31:44 D49A434E4BF69D23291D54164D5D15D6 796728 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\fact.exe 2014-01-11 19:31:44 A617D7C5CCB4992FD278FED9AD2C7A3B 499256 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\inssda64.exe 2014-01-11 19:31:44 91ECCE87F494816737BD6F1B0B671C2A 934968 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\update.exe 2014-01-11 19:31:44 849D6BD0357DD1E39B01FFF40659B5ED 401976 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\checkt.exe 2014-01-11 19:31:44 26731C2F4452C1A2DBDBAE8D201E4CE2 399416 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe 2014-01-11 19:31:44 17819ACCC4D21E3C07E80454A40A26EB 466488 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\guardgui.exe 2014-01-11 19:31:44 1305B94364F8F8F80DCD0E22E64E267A 467000 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\ipmgui.exe 2014-01-11 19:31:44 1106B8D42E6614240C03AB76224DAF02 422456 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\setuppending.exe 2014-01-11 19:31:44 039ECAE9617FBC500B891256F139FD79 1315384 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\setup.exe 2014-01-11 19:31:44 02AC980B23C6539B56DEC7956DE2DA3B 458296 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\licmgr.exe 2014-01-11 19:31:43 AFE071E446E1A2ABB75B0B9234AC726E 474680 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\ccuac.exe 2014-01-11 19:31:42 FDE9C7030FB1E9E2715E113EE6A10F90 440376 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 2014-01-11 19:31:42 FDA1329BF7F5F92C71C692798B642BAC 661048 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe 2014-01-11 19:31:42 F88A5D699B6F6AD080ECD58548EF4D7F 511544 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avrestart.exe 2014-01-11 19:31:42 F143483EF1FD85495AF9EAD190C55983 441400 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avadmin.exe 2014-01-11 19:31:42 DD231039B13EC2ABDE315D76E658EF0E 684600 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe 2014-01-11 19:31:42 D8976CD6D0653CB6BBC000950590FBBD 601656 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe 2014-01-11 19:31:42 BD64ED04CB32C31F9F6812415405E65E 566328 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebloader.exe 2014-01-11 19:31:42 B1625BA4BB3667C3219F2E2EB34AE0E7 411704 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avupgsvc.exe 2014-01-11 19:31:42 8D69B1551F51E18AE12E01DE6A2050EA 1011768 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe 2014-01-11 19:31:42 8A2DEC9995EFD16D97A84E3CB7F09812 759864 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exe 2014-01-11 19:31:42 782ED0F2DFF01B1556A353E4283F2888 1032760 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe 2014-01-11 19:31:42 72B909F1594FC52D25FC3622B9D80D45 769592 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avconfig.exe 2014-01-11 19:31:42 42AFC20DB8D9D8651E26140E95B6A902 858720 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe 2014-01-11 19:31:42 29D956C8CB67222D678FAF20D485B25B 1011768 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe 2014-01-11 19:31:41 4E41301AB03814EABE37FCF194B728A6 1326512 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\offercast_avirav7_.exe 2014-01-11 19:17:23 563917418534A65BCAAC2DE6BD47F016 129564536 ----a-w- C:\ProgramData\Avira\My Avira\Temp\antivirus.exe 2014-01-11 19:15:47 9A319F0CA0A2F423AC5240CEFFDE5109 3974840 ----a-w- C:\Users\Bea\Downloads\avira_oe_client_antivirus_en.exe 2014-01-10 18:46:38 0FED953F65CA8C0F03BC456C93D99548 637760 ----a-w- C:\Users\Bea\AppData\Roaming\IObit\IObit Uninstaller\UninstallDisplaytemp.exe 2014-01-10 18:46:37 5F8833A5CC2FF12B24FAE9EB84222900 1814336 ----a-w- C:\Users\Bea\AppData\Roaming\IObit\IObit Uninstaller\UninstallPromotetemp.exe 2014-01-10 08:42:27 D77B66F8C8D8118EBBCB6D29464B97E0 2581656 ----a-w- C:\Users\Bea\AppData\Local\Microsoft\DefaultSetup\DefaultSetup.exe 2014-01-09 09:05:04 D9B8018BD363B1623E69B5691059520B 29120600 ----a-w- C:\Users\Bea\Google Drive\handleidingen\Google_\Google+\asc7-setup-beta.exe === C: other files == 2014-01-12 09:35:43 138F6492F066F7DAB4DFE4FB612A574D 1311 ----a-w- C:\Users\Bea\AppData\Local\Temp\folderchk.vbs 2014-01-12 08:29:15 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Bea\AppData\Local\Temp\_MEI24682\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2014-01-11 23:51:38 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Bea\AppData\Local\Temp\_MEI22402\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2014-01-11 23:17:00 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Bea\AppData\Local\Temp\_MEI26122\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2014-01-11 20:09:25 3DE0EBA0BF4771C897F544CBF7CB8973 84720 ----a-w- C:\Windows\System32\drivers\avnetflt.sys 2014-01-11 19:31:44 43552F707825F03E84C0FA217DBA3868 42088 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\sweb.zip 2014-01-11 19:31:42 C3A58DBD18786C338126D30BF8C33D72 131576 ----a-w- C:\Windows\System32\drivers\avipbb.sys 2014-01-11 19:31:42 C3A58DBD18786C338126D30BF8C33D72 131576 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avipbb.sys 2014-01-11 19:31:42 7806BFCD1D7FA5EC23F7324D4EAFD25B 108440 ----a-w- C:\Windows\System32\drivers\avgntflt.sys 2014-01-11 19:31:42 7806BFCD1D7FA5EC23F7324D4EAFD25B 108440 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avgntflt.sys 2014-01-11 19:31:42 3DE0EBA0BF4771C897F544CBF7CB8973 84720 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avnetflt.sys 2014-01-11 19:31:42 390184FAD8FCC1B6DA25AEBAE928C3B6 28600 ----a-w- C:\Windows\System32\drivers\avkmgr.sys 2014-01-11 19:31:42 390184FAD8FCC1B6DA25AEBAE928C3B6 28600 ----a-w- C:\Program Files (x86)\Avira\AntiVir Desktop\avkmgr.sys 2014-01-09 09:22:59 F532FEF5D9CF873D44F8DFF358955969 137952 ----a-w- C:\Users\Bea\AppData\LocalLow\LastPass\lpicons2_e2a01799f67d270e1338d1ac03502c86c51e26ce9cf32b92165495fc6029081e.zip 2014-01-09 09:05:51 70BE18AFAF7BF7FCB9EDA7C89EAFC559 27675 ----a-w- C:\Users\Bea\Google Drive\handleidingen\Google_\Google Chrome\beababijn@gmail.com-takeout.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74DE4DC2"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "GoogleDriveSync"="c:\program files (x86)\google\drive\googledrivesync.exe /autostart" "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74D"="c:\program files (x86)\google\chrome\application\chrome.exe --no-startup-window" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "UpdateP2GoShortCut"="C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\Power2Go UpdateWithCreateOnce SOFTWARE\CyberLink\Power2Go\6.0" "HControlUser"="C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe" "ATKMEDIA"="C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe" "BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "Avira Systray"="C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe" "avgnt"="C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe /min" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74DE4DC2"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "GoogleDriveSync"="c:\program files (x86)\google\drive\googledrivesync.exe /autostart" "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74D"="c:\program files (x86)\google\chrome\application\chrome.exe --no-startup-window" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AmIcoSinglun64"="C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "RemoteControl8"="c:\program files (x86)\asustek\asusdvd 8\pdvd8serv.exe" "PDVD8LanguageShortcut"="c:\program files (x86)\asustek\asusdvd 8\language\language.exe" "ETDWare"="c:\program files\elantech\etdctrl.exe" "ATKOSD2"="c:\program files (x86)\asus\atkosd2\atkosd2.exe" "Adobe ARM"="c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe" "COMODO Internet Security"="C:\Program Files\COMODO\COMODO Internet Security\cistray.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ADSMTray] "command"="C:\\Program Files (x86)\\ASUS\\ASUS Data Security Manager\\ADSMTray.exe" "hkey"="HKLM" "item"="ADSMTray" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUS Screen Saver Protector] "command"="C:\\Windows\\AsScrPro.exe" "hkey"="HKLM" "item"="ASUS Screen Saver Protector" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "command"="\"C:\\Program Files (x86)\\Cyberlink\\Power2Go\\CLMLSvc.exe\"" "hkey"="HKLM" "item"="CLMLServer" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl] "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s" "hkey"="HKLM" "item"="RtHDVCpl" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent] "command"="\"C:\\Users\\Bea\\AppData\\Roaming\\uTorrent\\uTorrent.exe\" /MINIMIZED" "hkey"="HKLM" "item"="uTorrent" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [10-12-2013 22:40] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-07-2013 20:16] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-07-2013 20:16] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\ACMON" [C:\Program Files (x86)\ASUS\Splendid\ACMON.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\ASUS Live Update" [C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe] "C:\Windows\SysNative\tasks\ASUS P4G" [C:\Program Files\P4G\BatteryLife.exe] "C:\Windows\SysNative\tasks\ASUS SmartLogon Console Sensor" [C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe] "C:\Windows\SysNative\tasks\ASUSControlDeck" [C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\P4GIntlCtrl" [C:\Program Files\P4G\IntlCtrl.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{5AC32AB6-BE18-430B-B6F3-EEE24D667F6E}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\WC3" [C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe] "C:\Windows\SysNative\tasks\{59DF2F61-B35D-4CDF-B1DE-FFE77969A3E6}" [C:\Program Files\Windows Firewall Control\wfc.exe] "C:\Windows\SysNative\tasks\{F1163D3A-82EB-4C6C-8DF4-6883148D83DB}" [C:\Program Files\Windows Firewall Control\wfc.exe] "C:\Windows\SysNative\tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}" ["C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe"] "C:\Windows\SysNative\tasks\COMODO\COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69}" ["C:\Program Files\COMODO\COMODO Internet Security\cis.exe"] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Chrome Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions apdfllckaahabafndbhieahigkjlhalf - C:\Users\Bea\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx[24-08-2013 23:37] Google Translate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb Google Slides - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Magic Actions for YouTube\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif Prezi - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\acoonfmhnndodekhecidldfdjgooefpg CookiesOK - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\afmkbjoakcacgljcdccofbffloabfbni Send using Gmail\u2122 no button - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahldefgplekckalfcolhhnljbbgaiboc Check It Later Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\amcmidlnbalnbkilajedfgiibhcfmbkh Delibookmarks (Delicious Bookmarks) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\animchmhhndbcfahoigdpelodbhnhepg TechSmith Snagit Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\annopcfmbiofommjmcmcfmhklhgbhkce Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Lucidchart Diagrams - Online - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apboafhkiegglekeafbckfjldecefkhn Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Embed WMPlayer inline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli MindMeister - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm Open with Google Drive\u2122 Viewer - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdkpinfdldjdngmgfbifbdbgaoampkan Show the YouTube Channel bar or the name. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn HootSuite Hootlet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifn Web2PDFConverter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkanhckocooacphbnclgcndnpfpoppdk YouTube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\boemmnepglcoinjcdlfcpcbmhiecichi SmoothScroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn OpenDyslexic - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnapgfjopgaggbmfgbiinmmbdcglnam Last updated at time on date - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Pushbullet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd Webpage Screenshot Capture - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki Symbaloo Bookmarker 0.4 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnjfgbikbkcmickdalamlmpmkhmbollm Send to Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppogeekogbladboceekjeiibihnkbhp Read Later Fast - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji Symbaloo - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfnbdccaiknlpdgabdgjijniolkgmoeh PicMonkey Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhipmoghimfdldnocmopeoanjmoolofl KeyRocket for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmocchgkijnbjdjkmlglaemjhhdiobbp MindMup - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnenaecjcgeppfpaokiifokeieopppej *Auto Logout Google Accounts* - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecobfildhmfjnalpfhjagnoldllommec Drive Template Gallery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\edccfahmoapjmcaahncgcekjodejmhkg Torrent Turbo Search App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eegbffmjdkflkcfncpfjjbggbdlnbdif Search All - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekjldapjblgadclklmgolijbagmdnfk Photos from Google Drive wont be deleted from Drive. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\efjnaogkjbogokcnohkmnjdojkikgobo Black Menu for Google\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eignhdfgaldabilaaegmdfbajngjmoke Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn Add to Feedly\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkjjleifeeaccajkekdcckflfpenoen Box - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl Silver Bird - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic Google Apps Script - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoieeedlomnegifmaghhjnghhmcldobl TechSmith Snagit - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcnghgbgmemnlbckdipnmelbanpgneik Google Sheets - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Chrome Notepad - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp Replies and more for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea Presentation Remote for Google Drive\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjdgmdaaacgdbfdohoidfjiipmbnbnho PowerInbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmmgljeemhhajnponhffhpjioiclpmbh VoiceThread - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gajclnhcflhoicggnpmgkedchldikjgn Facebook for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp Mail Checker Plus for Google Mail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe Android Desktop Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\giicnncicnopjohcpamieklkiacdoeni DocuSign - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd TweetDeck by Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl Kaizena (Voice Comments) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdoaikeblbbiphjibkhliiedjhnbbke SearchPreview - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo LastPass - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd Refresh for Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdpiilkeoldobfomlhipnnfanmgfllmp JustDelete.me - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpofkfbabpbbmchmiekfnlcgaedbgcf Feedly - News Blogs and Youtube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Google Keep - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki goo.gl URL Shortener - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk BitTorrent Surf (Beta) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibpbofogepkkeoockhkfcgngjkimndlp Power Twitter for Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iieehhjfejnoljbnnhfnhibcjhmifffo Dropbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl Google Translate for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl History Eraser App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjolhjmdgbhebcdnfjhngobjggghoipa Calculator - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkgihpbaofhkiliohfepioflkkbapao Bookmarks - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk Phone 2 Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnlgojabfogikedjanecphloghlegpdm Lazarus Form Recovery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\loljledaigphbcpfhfmgopdkppkifgno Boomerang for Gmail - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll LinkedIn Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\menceeiihdbmfffpmgeokellaigfjcdm Presentation Remote - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhfdnafbhfglkcjgkgoopjoadaopcomi Pocket - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk Google Drawings - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme Ghostery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij SkyDrive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk Atomic Bookmarks 2 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\njacljdblagcjdmljcgpjkcinfflmgdk RSS Subscription Extension by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Docs PDFPowerPoint Viewer by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn Weeronline actueel Nederland - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\npgafdngocgnaincgfbpeblbeaadkpfa Google Chrome to Phone Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj Twitter Preview URLs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijgblonhcagdhfbgjilnpjipmijimmn Google Quick Scroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Online Muziek Luisteren - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\olacollommkcihebibpjdbhkngcnhgdg Picasa - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb Diigo Web Collector - Capture and Annotate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole RealtimeBoard Whiteboard for Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg Scoop.it - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn Instagram for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb None - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbcgnkmbeodkmiijjfnliicelkjfcldg Cacoo - Diagramming Real-Time Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh ClickClean App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp SpeakIt - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak Appie - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pidjpfnhaidmahnblgikaaadclebmoio Evernote Web Clipper - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc Chrome Update Notifier Plus - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\plfbafagepmnjfhgoaakiobjffddcnbd iReader - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppelffpjgkifjfgnbaaldcehkpajlmbc Netvibes Chrome Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppfnnghflmcnehkalpghfnidkpcjclbm Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf Loupe Collage - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhaonknplhhecdgjpphnooeomecgipkc YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo GeoGebra - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee ScootPad - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\boihgpoojeingjbbdjmoocbdibophjap Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Sumo Paint - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Haiku LMS - Solo Teacher Account - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fgpoakifbipnkhifgabffhdkdnloobhm Stupeflix Video Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkdmcfnoimoilncpjchamnenebopocem AdBlock - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom VocabularySpellingCity - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gnbihkjgkedgkepcakdjcnbicklpgfpm Pictico - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gndkeamlgkegbmmoheplcndpopglacgf LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd CK-12 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilmbnmigihncgeckjgmkehcgkdeohkhl MeeGenius Children's Books - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhfhmaajajcjoijfaceafiembkmhcddc LearnBoost - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbigbedbdencpbioocekehcblgokpno Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda TypingClub - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obdbgibnhfcjmmpfijkpcihjieedpfah Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Khan Academy - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pahdiadnidmaaoohjmlkcjffbfcapgko DOGOnews - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pcolnnhmiknpeonnnmoadeficjagocgf Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\hdokiejnpimakedhajhdlcegeplioahd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{7EF149D8-62F6-4D4F-9A2A-059FE750405F}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7EF149D8-62F6-4D4F-9A2A-059FE750405F}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Bea\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Bea\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=6060 folders=2037 126052139 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Bea\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Bea\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on zo 12-01-2014 at 12:22:29,72 ======================
  12. Ik heb toch voor een ander antivirusprogramma gekozen, Avira in combinatie met Comodo. Is dat een goede combi denk je? Zal ik Windows Firewall control dan het beste verwijderen of maakt dat niet uit?
  13. Dan ga ik dat op die manier doen. SmartDefrag.exe en ASCTray.exe staan nog op de taakbalk. Evenals RSITx64.exe. - - - Updated - - - Ook driverbooster.exe zie ik trouwens.
  14. Oh stom, foutje van mij. Zoek.exe v5.0.0.0 Updated 05-Januari-2014 Tool run by Bea on za 11-01-2014 at 8:03:36,72. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode No Internet Access Detected Launched: C:\Users\Bea\Desktop\pc beveiliging\zoek\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 11-1-2014 8:04:41 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} deleted successfully ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"=- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Deployer.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DriverBooster.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbam.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamgui.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbampt.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamscheduler.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamservice.exe [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Promote.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Scheduler.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UpdateDB.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 6"=- [HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"=- [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 6"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\IObit not found C:\Windows\SysNative\tasks\ASC7_PerformanceMonitor not found C:\Windows\SysNative\tasks\ASC7_SkipUac_Bea not found C:\Windows\SysNative\tasks\Driver Booster Scan not found C:\Windows\SysNative\tasks\Driver Booster Startup not found C:\Windows\SysNative\tasks\Driver Booster Update not found C:\Windows\SysNative\tasks\SmartDefragUpdate not found C:\Windows\SysNative\tasks\SmartDefrag_Startup not found "C:\Windows\tasks\Driver Booster Startup.job" not found "C:\Windows\tasks\Driver Booster Update.job" not found C:\ProgramData\IObit deleted ==== Chrome Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions apdfllckaahabafndbhieahigkjlhalf - C:\Users\Bea\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx[24-08-2013 23:37] Google Translate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb Google Slides - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Magic Actions for YouTube\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif Prezi - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\acoonfmhnndodekhecidldfdjgooefpg CookiesOK - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\afmkbjoakcacgljcdccofbffloabfbni Send using Gmail\u2122 no button - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahldefgplekckalfcolhhnljbbgaiboc Check It Later Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\amcmidlnbalnbkilajedfgiibhcfmbkh Delibookmarks (Delicious Bookmarks) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\animchmhhndbcfahoigdpelodbhnhepg TechSmith Snagit Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\annopcfmbiofommjmcmcfmhklhgbhkce Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Lucidchart Diagrams - Online - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apboafhkiegglekeafbckfjldecefkhn Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Embed WMPlayer inline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli MindMeister - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm Open with Google Drive\u2122 Viewer - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdkpinfdldjdngmgfbifbdbgaoampkan Show the YouTube Channel bar or the name. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn HootSuite Hootlet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifn Web2PDFConverter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkanhckocooacphbnclgcndnpfpoppdk YouTube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\boemmnepglcoinjcdlfcpcbmhiecichi SmoothScroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn OpenDyslexic - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnapgfjopgaggbmfgbiinmmbdcglnam Last updated at time on date - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Pushbullet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd Webpage Screenshot Capture - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki Symbaloo Bookmarker 0.4 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnjfgbikbkcmickdalamlmpmkhmbollm Send to Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppogeekogbladboceekjeiibihnkbhp Read Later Fast - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji Symbaloo - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfnbdccaiknlpdgabdgjijniolkgmoeh PicMonkey Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhipmoghimfdldnocmopeoanjmoolofl KeyRocket for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmocchgkijnbjdjkmlglaemjhhdiobbp MindMup - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnenaecjcgeppfpaokiifokeieopppej *Auto Logout Google Accounts* - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecobfildhmfjnalpfhjagnoldllommec Drive Template Gallery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\edccfahmoapjmcaahncgcekjodejmhkg Torrent Turbo Search App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eegbffmjdkflkcfncpfjjbggbdlnbdif Search All - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekjldapjblgadclklmgolijbagmdnfk Photos from Google Drive wont be deleted from Drive. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\efjnaogkjbogokcnohkmnjdojkikgobo Black Menu for Google\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eignhdfgaldabilaaegmdfbajngjmoke Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn Add to Feedly\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkjjleifeeaccajkekdcckflfpenoen Box - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl Silver Bird - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic Google Apps Script - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoieeedlomnegifmaghhjnghhmcldobl TechSmith Snagit - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcnghgbgmemnlbckdipnmelbanpgneik Google Sheets - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Chrome Notepad - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp Replies and more for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea Presentation Remote for Google Drive\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjdgmdaaacgdbfdohoidfjiipmbnbnho PowerInbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmmgljeemhhajnponhffhpjioiclpmbh VoiceThread - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gajclnhcflhoicggnpmgkedchldikjgn Facebook for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp Mail Checker Plus for Google Mail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe Android Desktop Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\giicnncicnopjohcpamieklkiacdoeni DocuSign - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd TweetDeck by Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl Kaizena (Voice Comments) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdoaikeblbbiphjibkhliiedjhnbbke SearchPreview - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo LastPass - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd Refresh for Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdpiilkeoldobfomlhipnnfanmgfllmp JustDelete.me - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpofkfbabpbbmchmiekfnlcgaedbgcf Feedly - News Blogs and Youtube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Google Keep - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki goo.gl URL Shortener - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk BitTorrent Surf (Beta) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibpbofogepkkeoockhkfcgngjkimndlp Power Twitter for Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iieehhjfejnoljbnnhfnhibcjhmifffo Dropbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl Google Translate for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl History Eraser App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjolhjmdgbhebcdnfjhngobjggghoipa Calculator - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkgihpbaofhkiliohfepioflkkbapao Bookmarks - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk Phone 2 Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnlgojabfogikedjanecphloghlegpdm Lazarus Form Recovery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\loljledaigphbcpfhfmgopdkppkifgno Boomerang for Gmail - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll LinkedIn Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\menceeiihdbmfffpmgeokellaigfjcdm Presentation Remote - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhfdnafbhfglkcjgkgoopjoadaopcomi Pocket - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk Google Drawings - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme Ghostery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij SkyDrive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk Atomic Bookmarks 2 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\njacljdblagcjdmljcgpjkcinfflmgdk RSS Subscription Extension by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Docs PDFPowerPoint Viewer by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn Weeronline actueel Nederland - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\npgafdngocgnaincgfbpeblbeaadkpfa Google Chrome to Phone Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj Twitter Preview URLs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijgblonhcagdhfbgjilnpjipmijimmn Google Quick Scroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Online Muziek Luisteren - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\olacollommkcihebibpjdbhkngcnhgdg Picasa - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb Diigo Web Collector - Capture and Annotate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole RealtimeBoard Whiteboard for Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg Scoop.it - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn Instagram for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb None - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbcgnkmbeodkmiijjfnliicelkjfcldg Cacoo - Diagramming Real-Time Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh ClickClean App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp SpeakIt - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak Appie - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pidjpfnhaidmahnblgikaaadclebmoio Evernote Web Clipper - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc Chrome Update Notifier Plus - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\plfbafagepmnjfhgoaakiobjffddcnbd iReader - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppelffpjgkifjfgnbaaldcehkpajlmbc Netvibes Chrome Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppfnnghflmcnehkalpghfnidkpcjclbm Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf Loupe Collage - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhaonknplhhecdgjpphnooeomecgipkc YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo GeoGebra - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee ScootPad - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\boihgpoojeingjbbdjmoocbdibophjap Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Sumo Paint - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Haiku LMS - Solo Teacher Account - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fgpoakifbipnkhifgabffhdkdnloobhm Stupeflix Video Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkdmcfnoimoilncpjchamnenebopocem AdBlock - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom VocabularySpellingCity - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gnbihkjgkedgkepcakdjcnbicklpgfpm Pictico - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gndkeamlgkegbmmoheplcndpopglacgf LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd CK-12 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilmbnmigihncgeckjgmkehcgkdeohkhl MeeGenius Children's Books - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhfhmaajajcjoijfaceafiembkmhcddc LearnBoost - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbigbedbdencpbioocekehcblgokpno Advanced SystemCare Surfing Protection - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda TypingClub - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obdbgibnhfcjmmpfijkpcihjieedpfah Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Khan Academy - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pahdiadnidmaaoohjmlkcjffbfcapgko DOGOnews - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pcolnnhmiknpeonnnmoadeficjagocgf Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\hdokiejnpimakedhajhdlcegeplioahd Advanced SystemCare Surfing Protection - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd deleted successfully C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd deleted successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=6054 folders=2032 121755145 bytes) ==== EOF on za 11-01-2014 at 8:07:35,49 ====================== - - - Updated - - - Nu gebruikte ik altijd Microsoft Security Essentials. Toch beter Avast, Comodo of AVG denk ik zoals je eerder vermeldde? Zo ja, dan moet ik eerst Microsoft verwijderen voordat ik iets anders installeer toch?
  15. C:\Program Files (x86)\IObit;fs {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6};c Advanced SystemCare 7;s Advanced SystemCare 6;s AdvancedSystemCareService7;s [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}];r64 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r64 "Advanced SystemCare 7"=-;r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Deployer.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DriverBooster.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbam.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamgui.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbampt.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamscheduler.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbamservice.exe;r64] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Promote.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Scheduler.exe];r64 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UpdateDB.exe];r64 C:\ProgramData\IObit;fs PfFilter;s LiveUpdateSvc;s [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run];r64 "Advanced SystemCare 6"=-;r64 [HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Run];r64 "Advanced SystemCare 7"=-;r64 [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run];r64 "Advanced SystemCare 6"=-;r64 C:\Windows\tasks\Driver Booster Startup.job;f C:\Windows\tasks\Driver Booster Update.job;f C:\Windows\SysNative\tasks\ASC7_PerformanceMonitor;fs C:\Windows\SysNative\tasks\ASC7_SkipUac_Bea;fs C:\Windows\SysNative\tasks\Driver Booster Scan;fs C:\Windows\SysNative\tasks\Driver Booster Startup;fs C:\Windows\SysNative\tasks\Driver Booster Update;fs C:\Windows\SysNative\tasks\SmartDefragUpdate;fs C:\Windows\SysNative\tasks\SmartDefrag_Startup;fs Nfengeggddojhakldhlpjdlddgkkjkdd;chr
  16. Iobit verwijderd, na heel wat gezoek omdat ik in eerste instantie niet alles kon verwijderen. Helaas zie ik in de taakbalk toch nog smartdefrag.exe en ASCTray.exe nog staan. Ik krijg die die niet verwijderd. Weet je ook hier nog een oplossing voor? RSITx64.exe staat er trouwens ook nog tussen???
  17. Ik ga dat er maar eens afgooien dan en AVG gebruiken, daarnaast Malwarebytes wat vaker laten controleren. Als ik dat nu doe moet ik dan daarna nog iets doen? Iobit heeft het nodige in het register aangepast denk ik.
  18. Perfect gedaan jullie. Met Delfix nog de laatste restjes weggewerkt en daarna meteen maar een back-up gemaakt. Ik gebruik Advanced system care pro maar wat is jou advies nu. Ik hoor soms tegenstrijdige berichten hierover. Als ik zie wat ik nu allemaal heb binnengehaald en nooit een melding van iets heb gekregen dan vraag ik me sterk af of ik dit wel moet blijven gebruiken. Wat raden jullie nu aan om je pc goed te beveiligen?
  19. Zoek.exe v5.0.0.0 Updated 05-Januari-2014 Tool run by Bea on vr 10-01-2014 at 12:27:35,47. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode No Internet Access Detected Launched: C:\Users\Bea\AppData\Local\Temp\Rar$EXa0.385\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 10-1-2014 12:30:07 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_CLASSES_ROOT\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_CLASSES_ROOT\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BBUpdate deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BBUpdate deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\BBSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BBSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\BBSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BBSvc deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}] ==== Batch Command(s) Run By Tool====================== ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\Microsoft\BingBar deleted ==== C:\zoek_backup content ====================== C:\zoek_backup (files=5983 folders=2018 63645966 bytes) ==== EOF on vr 10-01-2014 at 12:32:43,84 ======================
  20. Die bingbar verwijderen lukt niet en geeft aan "bewerking kan niet worden voltooid omdat de map in een andere map of bestand is geopend". Ik kan alleen niet ontdekken waar? Afbeeldingen is gelukt!
  21. Ik heb al je stappen doorgelopen. Volgens mij is het nu echt helemaal clean. Misschien wil je nog even reageren op mijn vorige bericht en dan zal ik het daarna als opgelost markeren. Bedankt alvast voor je goede hulp!!
  22. Tot slot nog een laatste vraagje. Via Firewall control krijg ik de melding bbsvc.exe toestaan of blokkeren. Wat doe ik hiermee? Ik zag dat er ook weer een .exe bestand tussen stond. Het verwijst naar Bingbar 7.3.124.0. Tevens kwam er net achter dat ik geen afbeeldingen meer kan bekijken: Er is voor deze bewerking geen programma aan het opgegeven bestand gekoppeld..... Ik wilde een PNG afbeelding bekijken.
  23. # AdwCleaner v3.016 - Report created 10/01/2014 at 09:17:34 # Updated 23/12/2013 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : Bea - BEA-LAPTOP # Running from : C:\Users\Bea\Downloads\adwcleaner (1).exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Google Chrome v31.0.1650.63 [ File : C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [758 octets] - [10/09/2013 23:04:36] AdwCleaner[R1].txt - [2234 octets] - [09/01/2014 15:15:41] AdwCleaner[R2].txt - [996 octets] - [09/01/2014 15:27:52] AdwCleaner[R3].txt - [1120 octets] - [10/01/2014 09:15:31] AdwCleaner[s0].txt - [818 octets] - [10/09/2013 23:06:18] AdwCleaner[s1].txt - [1987 octets] - [09/01/2014 15:19:12] AdwCleaner[s2].txt - [1056 octets] - [09/01/2014 15:29:16] AdwCleaner[s3].txt - [1042 octets] - [10/01/2014 09:17:34] ########## EOF - C:\AdwCleaner\AdwCleaner[s3].txt - [1102 octets] ##########
  24. Ik heb Malwarebytes nog laten checken en heeft PUP.Optional.OneClickDownloader, PUP.Optional.YourfileDownloader en PUP.Optional.GoForFiles.A nog in quarantaine geplaatst en verwijderd. Het lijkt opgelost. Bedankt voor jullie goede hulp. Kan ik deze trucjes vaker uithalen bij problemen?
  25. Zoek.exe v5.0.0.0 Updated 09-Januari-2014 Tool run by Bea on do 09-01-2014 at 20:30:43,62. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Bea\Desktop\zoek\zoek.exe [scan all users] [script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-01-09-172117.log 54886 bytes C:\zoek-results2014-01-09-181335.log 54614 bytes C:\zoek-results2014-01-09-182509.log 54703 bytes C:\zoek-results2014-01-09-184502.log 50798 bytes C:\zoek-results2014-01-09-192450.log 56690 bytes ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\SWF Studio deleted successfully C:\Program Files\trend micro deleted successfully C:\ProgramData\Oracle deleted successfully C:\ProgramData\Uniblue deleted successfully C:\Users\Bea\AppData\Roaming\.# deleted successfully C:\Users\Bea\AppData\Roaming\FlashgetSetup deleted successfully C:\Users\Bea\AppData\Local\Secunia PSI deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Internet Explorer\SearchScopes\{7EF149D8-62F6-4D4F-9A2A-059FE750405F} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Windows\Sysnative\Tasks\YourFile DownloaderUpdate not found C:\Windows\Sysnative\Tasks\{20E73814-90B3-4AB4-9104-5CC3360EDA8C} deleted C:\Windows\Sysnative\Tasks\{4A10D1D8-D68B-47AC-8869-8554F2CCD718} deleted C:\Windows\SysNative\tasks\AutoKMS deleted "C:\Windows\tasks\AutoKMS.job" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Bea\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2013-12-12 13:34:42 E0D3CD5841E5C7BE7B94BA946AF1E498 116736 ----a-w- C:\Windows\Sysnative\drivers\drmk.sys 2013-12-12 13:34:42 1E0B4CBBA91C6B041A14ECC2186F7E24 230400 ----a-w- C:\Windows\Sysnative\drivers\portcls.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2013-12-16 15:56:02 -------- d-----w- C:\PROGRA~2\Cabri II Plus ======= C: ===== ====== C:\Users\Bea\AppData\Roaming ====== 2014-01-09 19:33:03 -------- d-----r- C:\Users\Bea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUSTek ASUSDVD 8 2014-01-09 19:20:56 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2014-01-09 19:20:56 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2014-01-09 19:20:56 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2014-01-09 19:20:56 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2014-01-09 19:20:56 -------- d-----w- C:\Users\Bea\AppData\Local\Temp 2014-01-02 22:06:37 2DA4E0ED89DDDFCFC687CBF3ACFB1018 43 ----a-w- C:\Users\Bea\AppData\Roaming\mbam.context.scan 2013-12-19 09:19:04 -------- d-----w- C:\Users\Default\AppData\Local\Google 2013-12-19 09:19:04 -------- d-----w- C:\Users\Default User\AppData\Local\Google 2013-12-10 22:34:41 -------- d-----w- C:\Users\Bea\AppData\Local\Spotnet 2013-12-10 22:24:37 -------- d-----w- C:\Users\Bea\AppData\Roaming\Spotnet ====== C:\Users\Bea ====== 2014-01-09 16:05:03 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Bea\Downloads\RSITx64.exe 2014-01-09 14:15:19 AF5C84446657B48C9B9B870C46438261 1233962 ----a-w- C:\Users\Bea\Downloads\adwcleaner.exe 2014-01-02 22:50:54 4751B5BE312920D9F6CF9C7E2A9ED2EB 10245808 ----a-w- C:\Users\Bea\Downloads\BlueStacks-SplitInstaller_native.exe 2014-01-02 22:29:44 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011 (2).exe 2014-01-02 22:27:05 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011 (1).exe 2014-01-02 22:26:59 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011.exe 2014-01-02 22:01:33 2D77EA0FB7E56370B9A41BD4415BBEA2 6558480 ----a-w- C:\Users\Bea\Downloads\whatsapp_hack_sh4x_v162_downloader (1).exe 2014-01-02 21:47:59 2D77EA0FB7E56370B9A41BD4415BBEA2 6558480 ----a-w- C:\Users\Bea\Downloads\whatsapp_hack_sh4x_v162_downloader.exe 2014-01-02 21:34:25 3008B1F6F574C0688D011C1DA4B4F7F0 6617448 ----a-w- C:\Users\Bea\Downloads\Facebook-Account-Hacker-Tool-Black-Code_downloader (1).exe 2014-01-02 21:34:17 3008B1F6F574C0688D011C1DA4B4F7F0 6617448 ----a-w- C:\Users\Bea\Downloads\Facebook-Account-Hacker-Tool-Black-Code_downloader.exe 2013-12-16 15:56:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cabri Geometry II Plus ====== C: exe-files == 2014-01-09 17:08:40 9B6158521550B55E691851CD764CAE06 1281024 ----a-w- C:\Users\Bea\Desktop\Z-Analyse\Z-Analyse.exe 2014-01-09 16:05:03 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Bea\Downloads\RSITx64.exe 2014-01-09 14:15:19 AF5C84446657B48C9B9B870C46438261 1233962 ----a-w- C:\Users\Bea\Downloads\adwcleaner.exe 2014-01-09 09:18:29 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Toolbox_Download\Sur12_DiskDoctor.exe 2014-01-09 09:05:04 D9B8018BD363B1623E69B5691059520B 29120600 ----a-w- C:\Users\Bea\Google Drive\handleidingen\Google_\Google+\asc7-setup-beta.exe 2014-01-06 18:06:46 561674D1EFCABCDFB3C259CBC9E5AB9E 11468448 ----a-w- C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0oemBingBarSetup-Partner.EXE 2014-01-02 22:50:54 4751B5BE312920D9F6CF9C7E2A9ED2EB 10245808 ----a-w- C:\Users\Bea\Downloads\BlueStacks-SplitInstaller_native.exe 2014-01-02 22:29:44 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011 (2).exe 2014-01-02 22:27:05 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011 (1).exe 2014-01-02 22:26:59 EEECB0DA686B428B62BADF7A675B9DD7 445856 ----a-w- C:\Users\Bea\Downloads\Asterisk_Password_Spy_Tool_2011.exe 2014-01-02 22:01:33 2D77EA0FB7E56370B9A41BD4415BBEA2 6558480 ----a-w- C:\Users\Bea\Downloads\whatsapp_hack_sh4x_v162_downloader (1).exe 2014-01-02 21:47:59 2D77EA0FB7E56370B9A41BD4415BBEA2 6558480 ----a-w- C:\Users\Bea\Downloads\whatsapp_hack_sh4x_v162_downloader.exe 2014-01-02 21:34:25 3008B1F6F574C0688D011C1DA4B4F7F0 6617448 ----a-w- C:\Users\Bea\Downloads\Facebook-Account-Hacker-Tool-Black-Code_downloader (1).exe 2014-01-02 21:34:17 3008B1F6F574C0688D011C1DA4B4F7F0 6617448 ----a-w- C:\Users\Bea\Downloads\Facebook-Account-Hacker-Tool-Black-Code_downloader.exe === C: other files == 2014-01-09 19:33:03 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Bea\AppData\Local\Temp\_MEI40762\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2014-01-09 17:07:53 42142D1488F3429CAF525FF49404D22D 2545620 ----a-w- C:\Users\Bea\Downloads\Z-Analyse.zip 2014-01-09 09:22:59 F532FEF5D9CF873D44F8DFF358955969 137952 ----a-w- C:\Users\Bea\AppData\LocalLow\LastPass\lpicons2_e2a01799f67d270e1338d1ac03502c86c51e26ce9cf32b92165495fc6029081e.zip 2014-01-09 09:05:51 70BE18AFAF7BF7FCB9EDA7C89EAFC559 27675 ----a-w- C:\Users\Bea\Google Drive\handleidingen\Google_\Google Chrome\beababijn@gmail.com-takeout.zip 2014-01-02 22:55:26 E1510408BFE1E6BF23768DC152B0B463 147986315 ----a-w- C:\ProgramData\BlueStacksSetup\runtimedata_0.8.4.3036.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 6"="C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe /AutoStart" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-314706107-1989528577-1666421781-1001\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74DE4DC2"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" "uTorrent"="C:\Users\Bea\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 6"="C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe /AutoStart" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "UpdateP2GoShortCut"="C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe C:\Program Files (x86)\CyberLink\Power2Go UpdateWithCreateOnce SOFTWARE\CyberLink\Power2Go\6.0" "HControlUser"="C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe" "ATKMEDIA"="C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe" "BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74DE4DC2"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" "uTorrent"="C:\Users\Bea\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AmIcoSinglun64"="C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" "MSC"="C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "command"="c:\\program files (x86)\\common files\\adobe\\arm\\1.0\\adobearm.exe" "hkey"="HKLM" "item"="Adobe ARM" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ADSMTray] "command"="C:\\Program Files (x86)\\ASUS\\ASUS Data Security Manager\\ADSMTray.exe" "hkey"="HKLM" "item"="ADSMTray" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ASUS Screen Saver Protector] "command"="C:\\Windows\\AsScrPro.exe" "hkey"="HKLM" "item"="ASUS Screen Saver Protector" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ATKOSD2] "command"="c:\\program files (x86)\\asus\\atkosd2\\atkosd2.exe" "hkey"="HKLM" "item"="ATKOSD2" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CLMLServer] "command"="\"C:\\Program Files (x86)\\Cyberlink\\Power2Go\\CLMLSvc.exe\"" "hkey"="HKLM" "item"="CLMLServer" "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ETDWare] "command"="c:\\program files\\elantech\\etdctrl.exe" "hkey"="HKLM" "item"="ETDWare" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74D] "command"="\"c:\\program files (x86)\\google\\chrome\\application\\chrome.exe\" --no-startup-window" "hkey"="HKCU" "item"="GoogleChromeAutoLaunch_140299A73DDFBEE682C1057A74D" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GoogleDriveSync] "command"="\"c:\\program files (x86)\\google\\drive\\googledrivesync.exe\" /autostart" "hkey"="HKCU" "item"="GoogleDriveSync" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PDVD8LanguageShortcut] "command"="c:\\program files (x86)\\asustek\\asusdvd 8\\language\\language.exe" "hkey"="HKLM" "item"="PDVD8LanguageShortcut" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RemoteControl8] "command"="c:\\program files (x86)\\asustek\\asusdvd 8\\pdvd8serv.exe" "hkey"="HKLM" "item"="RemoteControl8" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl] "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s" "hkey"="HKLM" "item"="RtHDVCpl" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent] "command"="\"c:\\users\\bea\\appdata\\roaming\\utorrent\\utorrent.exe\" /minimized" "hkey"="HKLM" "item"="uTorrent" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" ==== Startup Folders ====================== 2014-01-09 14:38:18 1298 ----a-w- C:\Users\Bea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [10-12-2013 22:40] C:\Windows\tasks\Driver Booster Startup.job --a------ C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [08-09-2013 10:39] C:\Windows\tasks\Driver Booster Update.job --a------ C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [08-09-2013 10:12] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-07-2013 20:16] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [02-07-2013 20:16] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\ACMON" [C:\Program Files (x86)\ASUS\Splendid\ACMON.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\ASC7_PerformanceMonitor" [C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe] "C:\Windows\SysNative\tasks\ASC7_SkipUac_Bea" [C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe /SkipUac] "C:\Windows\SysNative\tasks\ASUS Live Update" [C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe] "C:\Windows\SysNative\tasks\ASUS P4G" [C:\Program Files\P4G\BatteryLife.exe] "C:\Windows\SysNative\tasks\ASUS SmartLogon Console Sensor" [C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe] "C:\Windows\SysNative\tasks\ASUSControlDeck" [C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\Driver Booster Scan" [C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe] "C:\Windows\SysNative\tasks\Driver Booster Startup" [C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\SysNative\tasks\Driver Booster Update" [C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\P4GIntlCtrl" [C:\Program Files\P4G\IntlCtrl.exe] "C:\Windows\SysNative\tasks\SmartDefragUpdate" [C:\Program Files (x86)\IObit\Smart Defrag 2\AutoUpdate.exe] "C:\Windows\SysNative\tasks\SmartDefrag_Startup" [C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{5AC32AB6-BE18-430B-B6F3-EEE24D667F6E}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\WC3" [C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe] "C:\Windows\SysNative\tasks\{59DF2F61-B35D-4CDF-B1DE-FFE77969A3E6}" [C:\Program Files\Windows Firewall Control\wfc.exe] "C:\Windows\SysNative\tasks\{F1163D3A-82EB-4C6C-8DF4-6883148D83DB}" [C:\Program Files\Windows Firewall Control\wfc.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions nfengeggddojhakldhlpjdlddgkkjkdd - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx[12-10-2013 13:04] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions apdfllckaahabafndbhieahigkjlhalf - C:\Users\Bea\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx[24-08-2013 23:37] Google Translate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb Google Slides - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Magic Actions for YouTube\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif Prezi - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\acoonfmhnndodekhecidldfdjgooefpg CookiesOK - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\afmkbjoakcacgljcdccofbffloabfbni Send using Gmail\u2122 no button - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahldefgplekckalfcolhhnljbbgaiboc Check It Later Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\amcmidlnbalnbkilajedfgiibhcfmbkh Delibookmarks (Delicious Bookmarks) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\animchmhhndbcfahoigdpelodbhnhepg TechSmith Snagit Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\annopcfmbiofommjmcmcfmhklhgbhkce Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Lucidchart Diagrams - Online - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apboafhkiegglekeafbckfjldecefkhn Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Embed WMPlayer inline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bamkbfdmckphehgiafpenehgebjgdlli MindMeister - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm Open with Google Drive\u2122 Viewer - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdkpinfdldjdngmgfbifbdbgaoampkan Show the YouTube Channel bar or the name. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn HootSuite Hootlet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjgfdlplhmndoonmofmflcbiohgbkifn Web2PDFConverter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkanhckocooacphbnclgcndnpfpoppdk YouTube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\boemmnepglcoinjcdlfcpcbmhiecichi SmoothScroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cccpiddacjljmfbbgeimpelpndgpoknn OpenDyslexic - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnapgfjopgaggbmfgbiinmmbdcglnam Last updated at time on date - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Pushbullet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd Webpage Screenshot Capture - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki Symbaloo Bookmarker 0.4 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnjfgbikbkcmickdalamlmpmkhmbollm Send to Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppogeekogbladboceekjeiibihnkbhp Read Later Fast - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji Symbaloo - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfnbdccaiknlpdgabdgjijniolkgmoeh PicMonkey Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhipmoghimfdldnocmopeoanjmoolofl KeyRocket for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmocchgkijnbjdjkmlglaemjhhdiobbp MindMup - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnenaecjcgeppfpaokiifokeieopppej *Auto Logout Google Accounts* - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecobfildhmfjnalpfhjagnoldllommec Drive Template Gallery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\edccfahmoapjmcaahncgcekjodejmhkg Torrent Turbo Search App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eegbffmjdkflkcfncpfjjbggbdlnbdif Search All - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekjldapjblgadclklmgolijbagmdnfk Photos from Google Drive wont be deleted from Drive. - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\efjnaogkjbogokcnohkmnjdojkikgobo Black Menu for Google\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eignhdfgaldabilaaegmdfbajngjmoke Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn Add to Feedly - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkjjleifeeaccajkekdcckflfpenoen Box - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl Silver Bird - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic Google Apps Script - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoieeedlomnegifmaghhjnghhmcldobl TechSmith Snagit - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcnghgbgmemnlbckdipnmelbanpgneik Google Sheets - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Chrome Notepad - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp Replies and more for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea Presentation Remote for Google Drive\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjdgmdaaacgdbfdohoidfjiipmbnbnho PowerInbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmmgljeemhhajnponhffhpjioiclpmbh VoiceThread - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gajclnhcflhoicggnpmgkedchldikjgn Facebook for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp Mail Checker Plus for Google Mail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe Android Desktop Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\giicnncicnopjohcpamieklkiacdoeni DocuSign - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd TweetDeck by Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl Kaizena (Voice Comments) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdoaikeblbbiphjibkhliiedjhnbbke SearchPreview - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo LastPass - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd Refresh for Twitter - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdpiilkeoldobfomlhipnnfanmgfllmp JustDelete.me - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpofkfbabpbbmchmiekfnlcgaedbgcf Feedly - News Blogs and Youtube - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Google Keep - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki goo.gl URL Shortener - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk BitTorrent Surf (Beta) - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibpbofogepkkeoockhkfcgngjkimndlp Power Twitter for Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\iieehhjfejnoljbnnhfnhibcjhmifffo Dropbox - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl Google Translate for Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl History Eraser App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjolhjmdgbhebcdnfjhngobjggghoipa Calculator - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkgihpbaofhkiliohfepioflkkbapao Bookmarks - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljcgggmjhkegncpcaffddonfhpnfocdk Phone 2 Google Chrome\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnlgojabfogikedjanecphloghlegpdm Lazarus Form Recovery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\loljledaigphbcpfhfmgopdkppkifgno Boomerang for Gmail - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll LinkedIn Notifications - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\menceeiihdbmfffpmgeokellaigfjcdm Presentation Remote - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhfdnafbhfglkcjgkgoopjoadaopcomi Pocket - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk Google Drawings - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme Ghostery - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij Advanced SystemCare Surfing Protection - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd SkyDrive - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk Atomic Bookmarks 2 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\njacljdblagcjdmljcgpjkcinfflmgdk RSS Subscription Extension by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Docs PDFPowerPoint Viewer by Google - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn Weeronline actueel Nederland - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\npgafdngocgnaincgfbpeblbeaadkpfa Google Chrome to Phone Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj Twitter Preview URLs - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijgblonhcagdhfbgjilnpjipmijimmn Google Quick Scroll - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Online Muziek Luisteren - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\olacollommkcihebibpjdbhkngcnhgdg Picasa - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb Diigo Web Collector - Capture and Annotate - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole RealtimeBoard Whiteboard for Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg Scoop.it - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn Instagram for Chrome - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb None - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbcgnkmbeodkmiijjfnliicelkjfcldg Cacoo - Diagramming Real-Time Collaboration - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh ClickClean App - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp SpeakIt - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak Appie - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pidjpfnhaidmahnblgikaaadclebmoio Evernote Web Clipper - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc Chrome Update Notifier Plus - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\plfbafagepmnjfhgoaakiobjffddcnbd iReader - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppelffpjgkifjfgnbaaldcehkpajlmbc Netvibes Chrome Extension - Bea\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppfnnghflmcnehkalpghfnidkpcjclbm Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf Loupe Collage - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhaonknplhhecdgjpphnooeomecgipkc YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo GeoGebra - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee ScootPad - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\boihgpoojeingjbbdjmoocbdibophjap Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Sumo Paint - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod Gmail Offline - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk Haiku LMS - Solo Teacher Account - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fgpoakifbipnkhifgabffhdkdnloobhm Stupeflix Video Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkdmcfnoimoilncpjchamnenebopocem AdBlock - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom VocabularySpellingCity - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gnbihkjgkedgkepcakdjcnbicklpgfpm Pictico - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gndkeamlgkegbmmoheplcndpopglacgf LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd CK-12 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilmbnmigihncgeckjgmkehcgkdeohkhl MeeGenius Children's Books - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhfhmaajajcjoijfaceafiembkmhcddc LearnBoost - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfbigbedbdencpbioocekehcblgokpno Advanced SystemCare Surfing Protection - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda TypingClub - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obdbgibnhfcjmmpfijkpcihjieedpfah Checker Plus for Gmail\u2122 - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj WeVideo - Video Editor and Maker - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb Khan Academy - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pahdiadnidmaaoohjmlkcjffbfcapgko DOGOnews - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pcolnnhmiknpeonnnmoadeficjagocgf Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Calendar - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn LastPass - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\hdokiejnpimakedhajhdlcegeplioahd Advanced SystemCare Surfing Protection - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd Google Wallet - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{7EF149D8-62F6-4D4F-9A2A-059FE750405F}" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {7EF149D8-62F6-4D4F-9A2A-059FE750405F} Yahoo//nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=800236&p={searchTerms}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Bea\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Bea\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully C:\Users\Bea\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=183 folders=45 1296268 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Bea\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Bea\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 09-01-2014 at 20:49:22,32 ======================
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.