Ga naar inhoud

misteragga

Lid
  • Items

    1.738
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door misteragga

  1. Mbam Log. Malwarebytes Anti-Malware 1.75.0.1300 Malwarebytes : Free Anti-Malware Databaseversie: v2014.01.17.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Brian_Pc :: BRIAN_PC-PC [administrator] 17-1-2014 14:16:18 mbam-log-2014-01-17 (14-16-18).txt Scan type: Snelle scan Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: P2P Objecten gescand: 203219 Verstreken tijd: 2 minuut/minuten, 12 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) (einde)
  2. oke register is opgeruimd de melding blijft nog steeds het zelfde wat nu?
  3. moet ik dan de audio center niet gebruiken voor mij geluidkaart de 64 bit driver heb ik wel gevonden kan ik die gewoon installeren?
  4. hier bij stuur ik weer de dan de mbamlog. [ATTACH]29924[/ATTACH] mbam-log-2014-01-17 (01-16-36).txt
  5. ik krijg nog steeds de zelfde resultaat als mij computer op start met de internet browser zie hier de zoek.exe log. en de web-browser. [ATTACH]29923[/ATTACH] zoek-results.txt
  6. ik heb nog een foutmelding waneer de pc opstart van asus.
  7. dit is dan de rsitlog. Logfile of random's system information tool 1.09 (written by random/random) Run by Brian_Pc at 2014-01-16 20:19:54 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 87 GB (72%) free of 122 GB Total RAM: 3959 MB (66% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 20:19:56, on 16-1-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16428) Boot mode: Normal Running processes: P:\Norton Internet Security 2013\Engine\20.4.0.40\ccSvcHst.exe C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe C:\Windows\system\CMGxMon.exe P:\Winbar\WinBar.exe C:\Program Files\ASUS Xonar DX Audio\Customapp\ASUSAUDIOCENTER.EXE C:\Users\Brian_Pc\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe C:\Program Files\ASUS Xonar DX Audio\Customapp\MXMon.exe C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe P:\Canon\OpWareSE4.exe C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe C:\Program Files\trend micro\Brian_Pc.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - P:\Norton Internet Security 2013\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - P:\Norton Internet Security 2013\Engine\20.4.0.40\IPS\IPSBHO.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - P:\Norton Internet Security 2013\Engine\20.4.0.40\coIEPlg.dll O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [OpwareSE4] "P:\Canon\OpwareSE4.exe" O4 - HKCU\..\Run: [WinBar (x86)] P:\Winbar\WinBar.exe O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [speccy] "T:\Speccy\Speccy64.exe" /totray O4 - Startup: Facebook Messenger.lnk = Brian_Pc\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: Afbeelding knippen - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4 O8 - Extra context menu item: Kopieer selectie - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3 O8 - Extra context menu item: Kopieer URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 O8 - Extra context menu item: Nieuwe notitie - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html O8 - Extra context menu item: Pagina opemen - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1 O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.dell.com O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: BlackBerry Device Manager - Research In Motion Limited - C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe O23 - Service: BootRacerServ - Greatis Software, LLC - C:\Program Files (x86)\BootRacer\BootRacerServ.exe O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - P:\Norton Internet Security 2013\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Macrium Reflect Image Mounting Service (ReflectService.exe) - Unknown owner - P:\Macrium Reflect\ReflectService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - P:\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: SynoDrService - Unknown owner - T:\Data Replicator\SynoDrServicex64.exe O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe O23 - Service: UsbClientService - Unknown owner - T:\Assistant\UsbClientService.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 11645 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe winlogon.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs "C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe" C:\Windows\system32\svchost.exe -k GPSvcGroup atieclxx "C:\Program Files (x86)\BootRacer\BootRacerServ.exe" C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" C:\Windows\system32\CISVC.EXE "C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe" "C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE" "P:\Norton Internet Security 2013\Engine\20.4.0.40\ccSvcHst.exe" /s "NIS" /m "P:\Norton Internet Security 2013\Engine\20.4.0.40\diMaster.dll" /prefetch:1 "P:\Macrium Reflect\ReflectService.exe" C:\Windows\system32\svchost.exe -k imgsvc "T:\Data Replicator\SynoDrServicex64.exe" "C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe" T:\Assistant\UsbClientService.exe "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" WLIDSvcM.exe 1712 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5651e47e-ea06-4f1d-aae4-c3d3a0003ba0 -SystemEventPortName:HostProcess-b4ef08a4-2fdc-476d-ac79-932d7cce9889 -IoCancelEventPortName:HostProcess-3a6bbccf-3fc9-4d3a-a5e3-37b383e22a95 -NonStateChangingEventPortName:HostProcess-07a29b76-68fd-4e11-9502-9fc17e361c10 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5d0dc5f7-8269-48fd-b368-4da21ac899de -DeviceGroupId:WpdFsGroup "taskhost.exe" "P:\Norton Internet Security 2013\Engine\20.4.0.40\ccSvcHst.exe" /c /a /s UserSession2 "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe" "C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log "C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log "P:\Canon\BJMYPRT.EXE" /logon "C:\Windows\system\CMGxMon.exe" Envoke "P:\Winbar\WinBar.exe" "C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun "C:\Program Files\ASUS Xonar DX Audio\Customapp\ASUSAUDIOCENTER.EXE" "C:\Users\Brian_Pc\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe" "C:\Program Files\ASUS Xonar DX Audio\Customapp\MXMon.exe" "C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide "C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" "P:\Canon\OpWareSE4.exe" "C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide "C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe" "C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe" -Embedding C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\System32\svchost.exe -k LocalServicePeerNet "C:\Windows\system32\taskmgr.exe" /4 C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0 "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" C:\Windows\system32\wbem\wmiprvse.exe taskeng.exe {FEEEB1FC-E3F6-44C9-BA67-035C1F0BA07B} "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524 C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} "C:\Users\Brian_Pc\Desktop\RSITx64.exe" C:\Windows\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2191765731-929917457-40214162-1000Core.job C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2191765731-929917457-40214162-1000UA.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job =========Mozilla firefox========= ProfilePath - C:\Users\Brian_Pc\AppData\Roaming\Mozilla\Firefox\Profiles\v3rmnfky.default prefs.js - "browser.startup.homepage" - "https://www.google.nl/" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.43 Plugin "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin] "Description"=Google Earth in your browser "Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0] "Description"=Picasa3 plugin "Path"=T:\Picasa\Picasa3\npPicasa3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@rim.com/npappworld] "Description"= "Path"=C:\Program Files (x86)\Research In Motion Limited\Browserplug-in voor BlackBerry World\npappworld.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0] "Description"=BlackBerry Web Software Loading Helper Plug-In for Mozilla browsers "Path"=C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7] "Description"=VLC Multimedia Plugin "Path"=P:\Vlc Player\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8] "Description"=VLC Multimedia Plugin "Path"=P:\Vlc Player\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1] "Description"=VLC Multimedia Plugin "Path"=P:\Vlc Player\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2] "Description"=VLC Multimedia Plugin "Path"=P:\Vlc Player\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 12.0.0.43 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled C:\Users\Brian_Pc\AppData\Roaming\Mozilla\Firefox\Profiles\v3rmnfky.default\extensions\ 3f85ebca-5ee0-4042-935e-20d7bb38c127@f20b526a-b828-41ab-9361-de1cad391506.com {ab91efd4-6975-4081-8552-1b3922ed79e2} C:\Users\Brian_Pc\AppData\Roaming\Mozilla\Firefox\Profiles\v3rmnfky.default\searchplugins\ safesearch.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-10-30 553384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-10-30 210856] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2013-10-08 515848] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - P:\Norton Internet Security 2013\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - P:\Norton Internet Security 2013\Engine\20.4.0.40\IPS\IPSBHO.DLL [2012-09-06 387040] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Aanmeldhulp voor Microsoft-account - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}] Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2013-12-18 583520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}] HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2013-10-08 448776] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - P:\Norton Internet Security 2013\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CanonSolutionMenu"=C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696] "CanonMyPrinter"=P:\Canon\BJMyPrt.exe [2010-07-26 2782096] "Cmaudio8788"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544] "Cmaudio8788GX"=C:\Windows\system\CmGxMon.exe [2007-12-19 20480] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2013-12-12 21720] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "WinBar (x86)"=P:\Winbar\WinBar.exe [2009-09-29 271360] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584] "Speccy"=T:\Speccy\Speccy64.exe [2013-11-13 6691608] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11 958576] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApplePhotoStreams] P:\icloud\ApplePhotoStreams.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent] C:\Users\Brian_Pc\AppData\Roaming\BitTorrent\BitTorrent.exe [2013-11-21 895328] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner] P:\Ccleaner\CCleaner64.exe [2013-12-17 5973272] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSystemDetect] C:\Users\Brian_Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms [2013-10-02 370] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update] C:\Users\Brian_Pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-09-11 138096] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iCloudServices] P:\icloud\iCloudServices.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] P:\Skype\Phone\Skype.exe [2013-11-14 20584608] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate] C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware] T:\virus scanners\SUPERAntiSpyware.exe [2013-12-29 6563096] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Tango] P:\Tango\Tango.exe [2011-11-04 13489992] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^DeskDrive.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\DeskDrive\DeskDrive.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Finderbar.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\Finderbar\Finderbar.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Refresh.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\Tools\Refresh.cmd [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^RocketDock.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\RocketDock\RocketDock.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SkinPackMenu.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\SP.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^UberIcon.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\UberIcon\UberIcon.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^VirtuaWin.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\VirtuaWin\VirtuaWin.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Winroll.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\Winroll\winroll.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^xwidget.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\Xwidget\xwidget.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^YzShadow.lnk] C:\Program Files (x86)\Mountain Lion Skin Pack\YzShadow\YzShadow.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Brian_Pc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Coolbarz.lnk] C:\Users\Brian_Pc\Desktop\Coolbarz.exe [] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2011-11-11 205336] "RIMBBLaunchAgent.exe"=C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [2013-01-17 267792] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-10-24 343168] "OpwareSE4"=P:\Canon\OpwareSE4.exe [2007-02-04 79400] C:\Users\Brian_Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Facebook Messenger.lnk - C:\Users\Brian_Pc\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler] FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - P:\Fences\Stardock\Fences\FencesMenu64.dll [2010-06-22 253288] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcod64.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "MSVideo"=vfwwdm32.dll "MSVideo8"=VfWWDM32.dll "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux2"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 ======List of files/folders created in the last 1 month====== 2014-01-15 18:12:26 ----A---- C:\Windows\system32\win32k.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbport.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbohci.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbhub.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbehci.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbd.sys 2014-01-15 18:12:26 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2014-01-15 18:12:25 ----A---- C:\Windows\system32\drivers\netio.sys 2014-01-14 21:20:17 ----D---- C:\Users\Brian_Pc\AppData\Roaming\ASUS 2014-01-14 21:20:16 ----RA---- C:\Windows\SYSWOW64\tmp2B46.tmp 2014-01-14 21:20:16 ----D---- C:\Program Files (x86)\OpenAL 2014-01-14 21:20:16 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll 2014-01-14 21:20:16 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll 2014-01-14 21:20:16 ----A---- C:\Windows\system32\wrap_oal.dll 2014-01-14 21:20:16 ----A---- C:\Windows\system32\OpenAL32.dll 2014-01-14 21:20:09 ----RA---- C:\Windows\SYSWOW64\Cm_Oal.dll 2014-01-14 21:20:09 ----RA---- C:\Windows\system32\Cm_Oal.dll 2014-01-14 21:20:08 ----RA---- C:\Windows\SYSWOW64\tmp2B35.tmp 2014-01-14 21:20:08 ----RA---- C:\Windows\SYSWOW64\Cmpaoxy.dll 2014-01-14 21:20:08 ----RA---- C:\Windows\SYSWOW64\cmasiop.dll 2014-01-14 21:20:08 ----RA---- C:\Windows\system32\cmasiopx.dll 2014-01-14 21:20:05 ----RA---- C:\Windows\SYSWOW64\VmixP8.dll 2014-01-14 21:20:05 ----RA---- C:\Windows\SYSWOW64\CmPropP.dll 2014-01-14 21:20:04 ----RA---- C:\Windows\system32\Audio3Dp.dll 2014-01-14 21:20:04 ----RA---- C:\Windows\system32\a3d.dll 2014-01-14 21:19:56 ----RA---- C:\Windows\system32\Cmeauoxy.exe 2014-01-14 21:19:56 ----D---- C:\Program Files\ASUS Xonar DX Audio 2014-01-14 20:07:21 ----A---- C:\Windows\system32\drivers\cmudaxp.sys 2014-01-14 20:07:20 ----A---- C:\Windows\SYSWOW64\CmiFltr.dll 2014-01-14 20:07:20 ----A---- C:\Windows\system32\cmudaxp.dll 2014-01-14 20:07:16 ----RA---- C:\Windows\system32\CmiInstallResAll64.dll 2014-01-14 20:07:13 ----RA---- C:\Windows\difxapi.dll 2014-01-13 20:58:42 ----D---- C:\Program Files\Common Files\Adobe 2014-01-09 23:19:37 ----D---- C:\Users\Brian_Pc\AppData\Roaming\vlc 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\wvc1dmod.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\vp7vfw.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\sipr3260.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\Pncrt.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\drv43260.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\drv33260.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\drv23260.dll 2014-01-07 14:15:02 ----A---- C:\Windows\SYSWOW64\cook3260.dll 2014-01-06 20:23:36 ----A---- C:\Windows\SYSWOW64\GPhotos.scr 2014-01-06 19:52:47 ----SHD---- C:\$RECYCLE.BIN 2014-01-05 15:15:44 ----D---- C:\Program Files (x86)\Hp 2014-01-05 14:48:27 ----A---- C:\Windows\ntbtlog.txt 2014-01-04 21:41:39 ----A---- C:\Users\Brian_Pc\AppData\Roaming\inst.exe 2014-01-04 20:18:40 ----D---- C:\ProgramData\vsosdk 2014-01-04 18:18:40 ----A---- C:\Windows\SYSWOW64\ssubtmr6.dll 2014-01-03 01:01:05 ----AD---- C:\ProgramData\TEMP 2013-12-31 13:58:27 ----D---- C:\ProgramData\Doctor Web 2013-12-27 01:19:51 ----D---- C:\Program Files (x86)\Evernote 2013-12-24 14:38:42 ----D---- C:\Windows\Temp 2013-12-21 14:03:11 ----A---- C:\ComboFix.txt 2013-12-21 01:54:20 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-20 22:15:16 ----D---- C:\Users\Brian_Pc\AppData\Roaming\aignes 2013-12-19 19:32:28 ----D---- C:\Windows\pss 2013-12-19 19:25:36 ----D---- C:\Users\Brian_Pc\AppData\Roaming\GemistDownloader 2013-12-18 18:33:45 ----D---- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-12-18 01:28:36 ----D---- C:\Program Files (x86)\TeamViewer 2013-12-17 20:55:12 ----D---- C:\ProgramData\Synology 2013-12-17 14:51:01 ----D---- C:\zoek_backup ======List of files/folders modified in the last 1 month====== 2014-01-16 20:19:55 ----D---- C:\Program Files\trend micro 2014-01-16 20:16:06 ----D---- C:\Windows\System32 2014-01-16 20:16:06 ----D---- C:\Windows\inf 2014-01-16 20:16:06 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-01-16 20:12:11 ----SHD---- C:\System Volume Information 2014-01-16 20:11:48 ----D---- C:\Program Files (x86)\BootRacer 2014-01-16 14:03:32 ----D---- C:\Windows\system32\config 2014-01-15 21:15:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-01-15 18:16:58 ----D---- C:\Windows\winsxs 2014-01-15 18:15:30 ----D---- C:\Windows\system32\DriverStore 2014-01-15 18:15:30 ----D---- C:\Windows\system32\drivers 2014-01-15 18:13:26 ----D---- C:\Windows\system32\MRT 2014-01-15 18:13:22 ----A---- C:\Windows\system32\MRT.exe 2014-01-15 18:12:23 ----D---- C:\Windows\system32\catroot2 2014-01-15 18:12:23 ----D---- C:\Windows\system32\catroot 2014-01-14 21:20:16 ----RD---- C:\Program Files (x86) 2014-01-14 21:20:16 ----D---- C:\Windows\SysWOW64 2014-01-14 21:20:16 ----D---- C:\Windows 2014-01-14 21:20:14 ----D---- C:\Windows\SoftwareDistribution 2014-01-14 21:20:08 ----D---- C:\Windows\system 2014-01-14 21:19:56 ----RD---- C:\Program Files 2014-01-13 21:09:01 ----D---- C:\Users\Brian_Pc\AppData\Roaming\BitTorrent 2014-01-13 21:02:08 ----SHD---- C:\Windows\Installer 2014-01-13 20:59:16 ----D---- C:\Users\Brian_Pc\AppData\Roaming\Adobe 2014-01-13 20:58:42 ----D---- C:\ProgramData\Adobe 2014-01-13 20:58:42 ----D---- C:\Program Files\Common Files 2014-01-13 16:52:15 ----D---- C:\ProgramData\CanonIJPLM 2014-01-11 16:48:20 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-01-07 14:15:22 ----D---- C:\Users\Brian_Pc\AppData\Roaming\Vso 2014-01-07 14:15:02 ----D---- C:\Program Files (x86)\vso 2014-01-07 14:12:49 ----D---- C:\ProgramData\VSO 2014-01-06 19:50:07 ----D---- C:\Windows\erdnt 2014-01-05 15:10:56 ----RD---- C:\ProgramData 2014-01-04 17:59:47 ----D---- C:\Users\Brian_Pc\AppData\Roaming\HandBrake 2014-01-01 15:59:40 ----D---- C:\Users\Brian_Pc\AppData\Roaming\Skype 2013-12-26 01:09:47 ----D---- C:\Windows\system32\wbem 2013-12-24 14:43:34 ----D---- C:\Users\Brian_Pc\AppData\Roaming\Macromedia 2013-12-21 14:02:10 ----A---- C:\Windows\system.ini 2013-12-21 14:02:05 ----D---- C:\Windows\system32\drivers\etc 2013-12-21 14:00:06 ----D---- C:\Windows\SYSWOW64\drivers 2013-12-21 14:00:06 ----D---- C:\Windows\AppPatch 2013-12-21 14:00:05 ----D---- C:\Program Files (x86)\Common Files 2013-12-21 01:53:30 ----D---- C:\Program Files (x86)\Mozilla Firefox 2013-12-18 20:36:30 ----DC---- C:\Windows\system32\DRVSTORE 2013-12-18 20:35:12 ----D---- C:\Users\Brian_Pc\AppData\Roaming\Apple Computer 2013-12-18 20:34:23 ----D---- C:\Windows\system32\Tasks 2013-12-18 19:31:39 ----D---- C:\Program Files\Internet Explorer 2013-12-18 18:30:35 ----D---- C:\Windows\system32\drivers\UMDF 2013-12-18 01:28:44 ----RSD---- C:\Windows\Fonts 2013-12-17 22:25:41 ----D---- C:\Windows\system32\FxsTmp 2013-12-17 00:04:40 ----D---- C:\Windows\rescache ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS [2013-05-20 493656] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS [2013-05-22 1139800] R1 A2DDA;A2 Direct Disk Access Support Driver; \??\P:\EMSISOFT\RUN\a2ddax64.sys [2013-08-19 26176] R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20140110.001\BHDrvx64.sys [2013-12-18 1526488] R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [2013-04-15 169048] R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-12-23 484952] R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20140114.001\IDSvia64.sys [2013-12-13 521944] R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\P:\Ultra Iso\UltraISO\drivers\ISODrv64.sys [2010-01-29 115600] R1 SASDIFSV;SASDIFSV; \??\T:\virus scanners\SASDIFSV64.SYS [2011-07-22 14928] R1 SAS***IL;SAS***IL; \??\T:\virus scanners\SAS***IL64.SYS [2011-07-12 12368] R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [2013-03-04 36952] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [2012-09-06 224416] R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1404000.028\SYMNETS.SYS [2013-04-24 433752] R1 truecrypt;truecrypt; C:\Windows\System32\drivers\truecrypt.sys [2013-08-15 231376] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-10-24 10203648] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-10-24 310784] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-06-07 231440] R3 busenum;Synology Virtual USB Hub; C:\Windows\system32\DRIVERS\busenum.sys [2012-08-03 55776] R3 cmudaxp;ASUS Xonar DX Audio Interface; C:\Windows\system32\drivers\cmudaxp.sys [2008-01-18 1197568] R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-11-21 137648] R3 HECIx64;Intel® Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-07-04 2484072] R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-01-18 351136] R3 LVUVC64;Logitech HD Webcam C310(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2012-01-18 4865568] R3 MonitorFunction;Driver for Monitor; C:\Windows\system32\DRIVERS\TVMonitor.sys [2013-06-06 16376] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20140115.001\ENG64.SYS [2013-12-23 126040] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20140115.001\EX64.SYS [2013-12-23 2099288] R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [2012-12-10 44544] R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-07-04 349800] R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSP64.SYS [2013-05-15 796760] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-08-22 177312] S3 athur;Atheros AR9271 Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2010-01-05 1847296] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232] S3 BthAvrcp;Bluetooth AVRCP-profiel; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184] S3 BthEnum;Bluetooth-stuurprogramma voor aanvraagblok; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984] S3 BthPan;Bluetooth-apparaat (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784] S3 BTHPORT;Stuurprogramma voor Bluetooth-poort; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960] S3 BTHUSB;USB-stuurprogramma voor Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384] S3 catchme;catchme; \??\C:\ComboFix\catchme.sys [] S3 cleanhlp;cleanhlp; \??\P:\EMSISOFT\RUN\cleanhlp64.sys [2013-12-13 57024] S3 DIRECTIO;DIRECTIO; \??\T:\PerformanceTest\DirectIo.sys [2012-08-13 22120] S3 lvpopf64;Logitech POP Suppression Filter; C:\Windows\system32\DRIVERS\lvpopf64.sys [2010-05-14 271712] S3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304] S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] S3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2013-08-15 82816] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456] S3 RFCOMM;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720] S3 RimUsb;BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [2013-06-27 79872] S3 SANDRA;SANDRA; \??\T:\SiSoftware Sandra Lite 2014.RTM\WNt500x64\Sandra.sys [] S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832] S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784] S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496] S3 WinUSB;Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640] R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-10-24 204288] R2 BootRacerServ;BootRacerServ; C:\Program Files (x86)\BootRacer\BootRacerServ.exe [2013-08-19 67888] R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456] R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528] R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2013-12-17 46904] R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 101528] R2 NIS;Norton Internet Security; P:\Norton Internet Security 2013\Engine\20.4.0.40\ccSvcHst.exe [2013-05-20 144368] R2 ReflectService.exe;Macrium Reflect Image Mounting Service; P:\Macrium Reflect\ReflectService.exe [2013-06-28 409720] R2 SynoDrService;SynoDrService; T:\Data Replicator\SynoDrServicex64.exe [2013-04-24 381312] R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2013-12-17 5341536] R2 UMVPFSrv;UMVPFSrv; C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-01-18 450848] R2 UsbClientService;UsbClientService; T:\Assistant\UsbClientService.exe [2012-09-18 248704] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480] R3 BlackBerry Device Manager;BlackBerry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [2013-09-09 585728] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-29 116648] S2 SkypeUpdate;Skype Updater; P:\Skype\Updater\Updater.exe [2013-09-05 171680] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-15 257928] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-29 116648] S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120] S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-05 119408] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-08-12 1255736] S4 !SASCORE;SAS Core Service; T:\virus scanners\SASCORE64.EXE [2013-05-23 143120] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------
  8. hallo ik krijg steeds deze melding als ik mij computer op start het lijkt op een virus wie kan dat bevestigen voor mij?
  9. hallo ik had een vraagje ik heb een asus video kaart gekocht en geplaatst in mij computer maar de software van asus loopt vast hoe komt dit is het mogelijk dat het met een update word opgelost het gaat om de asus xonar dx audio center. zie hier afbeelding van de vastloop.
  10. aha oke nou dan wacht ik nog even af
  11. oke prima is mij computer nu volledig virus vrij?
  12. ja fences is verwijderd wat mij moederbord betreft kan ik dat dan gewoon zo laten want mij bios van asus geeft wel de goeie temperatuur aan.
  13. oke is prima dan wacht ik nog even af hier is dan de adwarelog. [ATTACH]29813[/ATTACH] AdwCleaner[S0].txt
  14. ik had nog een vraagje is dit normaal voor een moederbord? volgens mij niet zie hier de temperatuur.
  15. Dit is dan de zoeklog Maar ik heb ook deze melding erbij gekregen Toen Windows was op gestart van Asus zie hier. De melding onder. Log. [ATTACH]29805[/ATTACH] zoek-results.txt
  16. het probleem is opgelost ik heb tijdelijk de oude hardeschijf terug geplaatst fences verwijderd en vervolgens de nieuwe schijf weer terug geplaatst en toen fences opnieuw geinstaleerd verder had ik nog een vraag of ik mij computer op virussen kan laten na kijken ik stuur alvast een hijackthislogje. Hijackthislog. Logfile of random's system information tool 1.09 (written by random/random) Run by Rajni at 2014-01-10 02:56:30 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 76 GB (66%) free of 114 GB Total RAM: 4002 MB (54% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 2:56:33, on 10-1-2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.16428) Boot mode: Normal Running processes: C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe D:\Samsung Kies\Kies\Kies.exe C:\Program Files (x86)\Logitech\Vid\Vid.exe C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe D:\Samsung Kies\Kies\KiesTrayAgent.exe C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe C:\Users\Public\temp\TeamViewer\Version9\TeamViewer.exe C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe D:\Firefox\firefox.exe D:\Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe C:\Program Files\trend micro\Rajni.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: CrossriderApp0043628 - {11111111-1111-1111-1111-110411361128} - C:\Program Files (x86)\weDownload Manager Pro\weDownload Manager Pro-bho.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - D:\Evernote\EvernoteIE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: DVDVideoSoft.WebPageAdjuster - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O4 - HKLM\..\Run: [iMSS] "C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PIconStartup.exe" O4 - HKLM\..\Run: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [KiesTrayAgent] D:\Samsung Kies\Kies\KiesTrayAgent.exe O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe" O4 - HKCU\..\Run: [WinBar (x64)] D:\Winbar\WinBar.exe O4 - HKCU\..\Run: [KiesPreload] D:\Samsung Kies\Kies\Kies.exe /preload O4 - HKCU\..\Run: [KiesAirMessage] D:\Samsung Kies\Kies\KiesAirMessage.exe -startup O4 - HKCU\..\Run: [Logitech Vid] "C:\Program Files (x86)\Logitech\Vid\Vid.exe" -bootmode O4 - HKCU\..\Run: [Logitech Vid HD] "C:\Program Files (x86)\Logitech\Vid\vid.exe" -bootmode O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O4 - Startup: Logitech . Productregistratie.lnk = C:\Program Files (x86)\Logitech\Ereg\eReg.exe O8 - Extra context menu item: Afbeelding knippen - D:\Evernote\\EvernoteIERes\Clip.html?clipAction=4 O8 - Extra context menu item: Clip image - D:\Evernote\EvernoteIERes\Clip.html?clipAction=4 O8 - Extra context menu item: Clip selection - D:\Evernote\EvernoteIERes\Clip.html?clipAction=3 O8 - Extra context menu item: Clip this page - D:\Evernote\EvernoteIERes\Clip.html?clipAction=1 O8 - Extra context menu item: Clip URL - D:\Evernote\EvernoteIERes\Clip.html?clipAction=0 O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm O8 - Extra context menu item: Kopieer selectie - D:\Evernote\\EvernoteIERes\Clip.html?clipAction=3 O8 - Extra context menu item: Kopieer URL - D:\Evernote\\EvernoteIERes\Clip.html?clipAction=0 O8 - Extra context menu item: New note - D:\Evernote\EvernoteIERes\NewNote.html O8 - Extra context menu item: Nieuwe notitie - D:\Evernote\\EvernoteIERes\NewNote.html O8 - Extra context menu item: Pagina opemen - D:\Evernote\\EvernoteIERes\Clip.html?clipAction=1 O9 - Extra button: @D:\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\Evernote\\EvernoteIERes\AddNote.html O9 - Extra 'Tools' menuitem: @D:\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\Evernote\\EvernoteIERes\AddNote.html O9 - Extra button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O9 - Extra 'Tools' menuitem: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel® Capability Licensing Service TCP IP Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Users\Public\temp\TeamViewer\Version9\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 13021 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe winlogon.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch "C:\Windows\system32\nvvsvc.exe" "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs "C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe" C:\Windows\system32\svchost.exe -k GPSvcGroup "C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe" C:\Windows\system32\nvvsvc.exe -session -first C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "taskhost.exe" "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe" "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE" /logon "C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun "C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe" "D:\Winbar\WinBar.exe" "C:/Users/Rajni/AppData/Local/Akamai/netsession_win.exe" --client "D:\Samsung Kies\Kies\Kies.exe" /preload "C:\Program Files (x86)\Logitech\Vid\Vid.exe" -bootmode "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "D:\Samsung Kies\Kies\KiesTrayAgent.exe" "C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide "C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide "C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe" -Embedding C:\Windows\SysWOW64\ASGT.exe "C:\Program Files\Intel\iCLS Client\HeciServer.exe" "C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\diMaster.dll" /prefetch:1 "C:\Users\Public\temp\TeamViewer\Version9\TeamViewer_Service.exe" "C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /c /a /s UserSession2 "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" WLIDSvcM.exe 2600 C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a4ac70c8-f22f-4c50-8b5d-090339bfbffa -SystemEventPortName:HostProcess-18ae7e23-a68e-4160-ae38-e6bfabcad9e9 -IoCancelEventPortName:HostProcess-b57853d8-8092-4220-802a-cccd88aa34b6 -NonStateChangingEventPortName:HostProcess-17220cbe-5601-4f4d-9268-6b7d9388772b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d9d5884a-0292-4e07-9cd4-10c2dd715501 -DeviceGroupId: "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-40035a04-bf16-4bf1-aff8-5cffc93355e0 -SystemEventPortName:HostProcess-0e90e2c0-1614-489b-9d9b-e11749669c49 -IoCancelEventPortName:HostProcess-e16a2fe4-61d8-423e-997f-fb5c4596dbf9 -NonStateChangingEventPortName:HostProcess-e4e9cc8f-5c99-4420-bd38-28d2ac20360f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cc131145-9aba-468e-baa2-b4b44af7c34c -DeviceGroupId:WpdFsGroup "C:\Users\Public\temp\TeamViewer\Version9\TeamViewer.exe" "C:\Users\Public\temp\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Users\Public\temp\TeamViewer\Version9\TeamViewer9_Logfile.log "C:\Users\Public\temp\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Users\Public\temp\TeamViewer\Version9\TeamViewer9_Logfile.log C:\Windows\system32\SearchIndexer.exe /Embedding "C:\Program Files\Windows Media Player\wmpnetwk.exe" C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} "C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" "C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PrivacyIconClient.exe" -startup "C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe" "C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe" "C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe" "D:\Firefox\firefox.exe" "D:\Firefox\plugin-container.exe" --channel=4740.1e2d5300.2037972616 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" -greomni "D:\Firefox\omni.ja" -appomni "D:\Firefox\browser\omni.ja" -appdir "D:\Firefox\browser" 53D9F4F1D7BF8C3A 4740 "\\.\pipe\gecko-crash-server-pipe.4740" plugin "C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --proxy-stub-channel=Flash1052.5E1FB990.1269 --host-broker-channel=Flash1052.5E1FB990.30391 --host-pid=1052 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" "C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --channel=2744.0024F8D8.354101589 --proxy-stub-channel=Flash1052.5E1FB990.1269 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" --host-npapi-version=27 --type=renderer "C:\Windows\system32\taskmgr.exe" /4 "C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524 "C:\Users\Rajni\Desktop\RSITx64.exe" C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF} C:\Windows\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\weDownload Manager Pro-chromeinstaller.job C:\Windows\tasks\weDownload Manager Pro-codedownloader.job C:\Windows\tasks\weDownload Manager Pro-enabler.job C:\Windows\tasks\weDownload Manager Pro-firefoxinstaller.job C:\Windows\tasks\weDownload Manager Pro-updater.job =========Mozilla firefox========= ProfilePath - C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default prefs.js - "browser.search.useDBForOrder" - "false" prefs.js - "browser.startup.homepage" - "www.google.nl" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 11.9.900.170 Plugin "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer] "Description"=Adobe Shockwave Player "Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72] "Description"=Intel IPT WebApi plugin "Path"=C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater] "Description"=This plugin updates Intel WebAPI component "Path"=C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2] "Description"=VLC Multimedia Plugin "Path"=D:\Vlc Media Player\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 11.9.900.170 Plugin "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default\extensions\ 008abed2-b43a-46c9-9a5b-a771c87b82da@1ad61d53-2bdc-4484-a26b-b888ecae1906.com 3f85ebca-5ee0-4042-935e-20d7bb38c127@f20b526a-b828-41ab-9361-de1cad391506.com ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128}] weDownload Manager Pro - C:\Program Files (x86)\weDownload Manager Pro\weDownload Manager Pro-bho64.dll [2014-01-05 965120] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2013-12-30 357432] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128}] weDownload Manager Pro - C:\Program Files (x86)\weDownload Manager Pro\weDownload Manager Pro-bho.dll [2014-01-05 637440] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL [2012-09-06 387040] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-20 462760] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Aanmeldhulp voor Microsoft-account - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}] Evernote extension - D:\Evernote\EvernoteIE.dll [2013-12-18 583520] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-20 171944] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2013-12-30 294456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-11-19 6846096] "IAStorIcon"=C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352] "CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1840720] "CanonSolutionMenu"=C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584] "Akamai NetSession Interface"=C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe [2013-06-05 4489472] "WinBar (x64)"=D:\Winbar\WinBar.exe [2009-09-29 305664] "KiesPreload"=D:\Samsung Kies\Kies\Kies.exe [2013-12-11 1564528] "KiesAirMessage"=D:\Samsung Kies\Kies\KiesAirMessage.exe -startup [] "Logitech Vid"=C:\Program Files (x86)\Logitech\Vid\Vid.exe [2010-05-11 6061400] "Logitech Vid HD"=C:\Program Files (x86)\Logitech\Vid\vid.exe [2010-05-11 6061400] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload] F:\Kies\Kies.exe /preload [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] F:\Kies\KiesTrayAgent.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Vid HD] F:\Vid\vid.exe -bootmode [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Rajni^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Productregistratie.lnk] F:\Ereg\eReg.exe [] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "IMSS"=C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PIconStartup.exe [2013-03-12 134616] "USB3MON"=C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-04-26 292848] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896] "KiesTrayAgent"=D:\Samsung Kies\Kies\KiesTrayAgent.exe [2013-12-11 311152] "LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2011-11-11 205336] C:\Users\Rajni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Logitech . Productregistratie.lnk - C:\Program Files (x86)\Logitech\Ereg\eReg.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler] FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - D:\Fences\Stardock\Fences\FencesMenu64.dll [2010-06-22 253288] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CleanHlp.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=lvcod64.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "MSVideo"=vfwwdm32.dll "MSVideo8"=VfWWDM32.dll "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-01-10 02:56:30 ----D---- C:\rsit 2014-01-10 02:56:30 ----D---- C:\Program Files\trend micro 2014-01-10 02:50:39 ----D---- C:\Users\Rajni\AppData\Roaming\Logitech 2014-01-10 02:50:39 ----D---- C:\Users\Rajni\AppData\Roaming\Logishrd 2014-01-10 02:42:28 ----HDC---- C:\ProgramData\{A3A26C56-02C3-4F76-A033-12EE2FB52AE6} 2014-01-05 17:00:17 ----D---- C:\Program Files\Windows Live 2014-01-05 17:00:16 ----D---- C:\Windows\PCHEALTH 2014-01-05 17:00:12 ----D---- C:\Program Files (x86)\Windows Live 2014-01-05 16:32:29 ----D---- C:\Users\Rajni\AppData\Roaming\HandBrake 2014-01-05 16:22:28 ----D---- C:\Program Files\Canon 2014-01-05 16:14:39 ----D---- C:\Program Files (x86)\Logitech 2014-01-05 15:48:11 ----A---- C:\Windows\SYSWOW64\dgderapi.dll 2014-01-05 15:43:58 ----D---- C:\Users\Rajni\AppData\Roaming\Media Player Classic 2014-01-05 15:42:34 ----D---- C:\Program Files (x86)\K-Lite Codec Pack 2014-01-05 15:28:48 ----A---- C:\Windows\system32\drivers\TVMonitor.sys 2014-01-05 02:26:20 ----A---- C:\Users\Rajni\AppData\Roaming\Stardockfences_debug_snapshot.dat 2014-01-05 01:46:41 ----D---- C:\Program Files (x86)\weDownload Manager Pro 2014-01-05 01:25:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-05 01:19:20 ----D---- C:\Users\Rajni\AppData\Roaming\AVG 2014-01-05 01:19:12 ----D---- C:\ProgramData\AVG 2014-01-05 01:19:11 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-01-05 01:19:11 ----HD---- C:\ProgramData\Common Files 2014-01-05 01:17:29 ----D---- C:\Users\Rajni\AppData\Roaming\OpenCandy 2014-01-05 01:10:44 ----D---- C:\Windows\SYSWOW64\Adobe 2014-01-05 01:07:11 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe 2014-01-05 01:05:14 ----D---- C:\Program Files (x86)\Adobe 2014-01-05 00:40:53 ----D---- C:\Program Files\Common Files\Symantec Shared 2014-01-05 00:40:53 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS 2014-01-05 00:40:25 ----D---- C:\Windows\system32\drivers\NISx64 2014-01-05 00:40:24 ----D---- C:\Program Files (x86)\Norton Internet Security 2014-01-05 00:39:03 ----D---- C:\Program Files (x86)\NortonInstaller 2014-01-03 01:00:10 ----D---- C:\ProgramData\TEMP 2014-01-02 23:14:54 ----D---- C:\Users\Rajni\AppData\Roaming\Malwarebytes 2013-12-29 22:11:05 ----D---- C:\Users\Rajni\AppData\Roaming\vlc 2013-12-29 21:07:28 ----D---- C:\Users\Rajni\AppData\Roaming\MPC-HC 2013-12-23 21:53:11 ----D---- C:\Users\Rajni\AppData\Roaming\OpenOffice 2013-12-21 00:49:57 ----D---- C:\Users\Rajni\AppData\Roaming\TeamViewer 2013-12-21 00:22:30 ----D---- C:\Users\Rajni\AppData\Roaming\Windows Live Writer 2013-12-20 23:40:18 ----D---- C:\ProgramData\BootRacer 2013-12-20 23:39:14 ----D---- C:\Windows\pss 2013-12-20 23:36:48 ----D---- C:\ProgramData\Oracle 2013-12-20 23:36:46 ----D---- C:\ProgramData\Sun 2013-12-20 23:36:45 ----A---- C:\Windows\SYSWOW64\javaws.exe 2013-12-20 23:36:44 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll 2013-12-20 23:36:44 ----A---- C:\Windows\SYSWOW64\javaw.exe 2013-12-20 23:36:44 ----A---- C:\Windows\SYSWOW64\java.exe 2013-12-20 23:36:41 ----D---- C:\Program Files (x86)\Java 2013-12-20 23:28:46 ----D---- C:\ProgramData\Adobe 2013-12-20 23:06:56 ----D---- C:\Users\Rajni\AppData\Roaming\WinRAR 2013-12-20 23:03:53 ----D---- C:\Program Files (x86)\Canon 2013-12-20 23:03:21 ----A---- C:\Windows\system32\CNMLM8S.DLL 2013-12-20 23:00:50 ----D---- C:\Users\Rajni\AppData\Roaming\Stardock 2013-12-20 22:53:48 ----D---- C:\Program Files\Microsoft Silverlight 2013-12-20 22:53:48 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2013-12-20 22:53:42 ----D---- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 2013-12-20 22:52:56 ----D---- C:\Program Files (x86)\GPLGS 2013-12-20 22:52:46 ----A---- C:\Windows\system32\cpwmon64.dll 2013-12-20 22:52:45 ----D---- C:\Program Files (x86)\Acro Software 2013-12-20 22:49:10 ----D---- C:\Users\Rajni\AppData\Roaming\WinBar 2013-12-20 22:49:08 ----D---- C:\ProgramData\WinBar 2013-12-20 22:47:47 ----A---- C:\Windows\SYSWOW64\unrar.dll 2013-12-20 22:43:41 ----D---- C:\Users\Rajni\AppData\Roaming\Skype 2013-12-20 22:43:36 ----D---- C:\ProgramData\Skype 2013-12-20 22:41:00 ----D---- C:\ProgramData\Malwarebytes 2013-12-20 22:41:00 ----A---- C:\Windows\system32\drivers\mbam.sys 2013-12-20 22:40:27 ----D---- C:\Users\Rajni\AppData\Roaming\Samsung 2013-12-20 22:39:42 ----A---- C:\Windows\SYSWOW64\Redemption.dll 2013-12-20 22:39:32 ----D---- C:\ProgramData\Samsung 2013-12-20 22:37:27 ----D---- C:\Users\Rajni\AppData\Roaming\DVDVideoSoft 2013-12-20 22:29:08 ----D---- C:\ProgramData\LogiShrd 2013-12-20 22:24:52 ----D---- C:\Users\Rajni\AppData\Roaming\Leadertech 2013-12-20 22:24:11 ----D---- C:\Windows\SYSWOW64\logishrd 2013-12-20 22:24:11 ----D---- C:\Windows\system32\logishrd 2013-12-20 22:24:10 ----D---- C:\Program Files\Common Files\Logishrd 2013-12-20 22:23:56 ----D---- C:\ProgramData\Logitech 2013-12-20 22:13:01 ----A---- C:\Windows\SYSWOW64\ieui.dll 2013-12-20 22:13:01 ----A---- C:\Windows\system32\ieui.dll 2013-12-20 22:13:01 ----A---- C:\Windows\system32\ieetwcollectorres.dll 2013-12-20 22:13:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll 2013-12-20 22:13:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll 2013-12-20 22:13:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\mshtml.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\jsproxy.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\jscript9diag.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\ieUnatt.exe 2013-12-20 22:13:00 ----A---- C:\Windows\system32\iesetup.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\iertutil.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\iernonce.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\ieetwproxystub.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\ieetwcollector.exe 2013-12-20 22:13:00 ----A---- C:\Windows\system32\ieapfltr.dll 2013-12-20 22:13:00 ----A---- C:\Windows\system32\ie4uinit.exe 2013-12-20 22:12:59 ----A---- C:\Windows\SYSWOW64\wininet.dll 2013-12-20 22:12:59 ----A---- C:\Windows\SYSWOW64\urlmon.dll 2013-12-20 22:12:59 ----A---- C:\Windows\SYSWOW64\iertutil.dll 2013-12-20 22:12:59 ----A---- C:\Windows\system32\wininet.dll 2013-12-20 22:12:59 ----A---- C:\Windows\system32\urlmon.dll 2013-12-20 22:12:59 ----A---- C:\Windows\system32\ieframe.dll 2013-12-20 22:12:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll 2013-12-20 22:12:58 ----A---- C:\Windows\SYSWOW64\jscript9.dll 2013-12-20 22:12:58 ----A---- C:\Windows\SYSWOW64\ieframe.dll 2013-12-20 22:12:58 ----A---- C:\Windows\system32\jscript9.dll 2013-12-20 22:12:29 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll 2013-12-20 22:12:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll 2013-12-20 22:12:29 ----A---- C:\Windows\SYSWOW64\explorer.exe 2013-12-20 22:12:29 ----A---- C:\Windows\system32\WMPhoto.dll 2013-12-20 22:12:29 ----A---- C:\Windows\system32\WindowsCodecs.dll 2013-12-20 22:12:29 ----A---- C:\Windows\system32\spoolsv.exe 2013-12-20 22:12:29 ----A---- C:\Windows\splwow64.exe 2013-12-20 22:12:29 ----A---- C:\Windows\explorer.exe 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbuhci.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbport.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbohci.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbhub.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbehci.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbd.sys 2013-12-20 22:10:01 ----A---- C:\Windows\system32\drivers\usbccgp.sys 2013-12-20 22:05:44 ----D---- C:\Windows\Migration 2013-12-20 22:04:58 ----A---- C:\Windows\system32\IEUDINIT.EXE 2013-12-20 22:03:16 ----A---- C:\Windows\SYSWOW64\elshyph.dll 2013-12-20 22:03:16 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\wextract.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\webcheck.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\vbscript.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\url.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\pngfilt.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\occache.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\msrating.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\msls31.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\mshtmler.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\mshtmled.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\mshta.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\msfeeds.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\licmgr10.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\jsIntl.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\jscript.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\inseng.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\imgutil.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iexpress.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iesysprep.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iesetup.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iernonce.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iepeers.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\icardie.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\dxtrans.dll 2013-12-20 22:03:15 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\wextract.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\webcheck.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\vbscript.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\url.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\pngfilt.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\occache.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\msrating.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\msls31.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\mshtmlmedia.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\mshtmler.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\mshtmled.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\MshtmlDac.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\mshta.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\msfeedssync.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\msfeedsbs.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\msfeeds.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\licmgr10.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\jsIntl.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\jscript.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\inseng.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\imgutil.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\iexpress.exe 2013-12-20 22:03:15 ----A---- C:\Windows\system32\iesysprep.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\iepeers.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\iedkcs32.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\ieapfltr.dat 2013-12-20 22:03:15 ----A---- C:\Windows\system32\IEAdvpack.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\icardie.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\elshyph.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\dxtrans.dll 2013-12-20 22:03:15 ----A---- C:\Windows\system32\dxtmsft.dll 2013-12-20 21:58:40 ----A---- C:\Windows\SYSWOW64\wmploc.DLL 2013-12-20 21:58:40 ----A---- C:\Windows\system32\wmploc.DLL 2013-12-20 21:58:39 ----A---- C:\Windows\SYSWOW64\wmp.dll 2013-12-20 21:58:39 ----A---- C:\Windows\system32\wmp.dll 2013-12-20 21:45:38 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2013-12-20 21:45:38 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2013-12-20 21:45:38 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\tsgqec.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\mstscax.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\mstsc.exe 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll 2013-12-20 21:45:37 ----A---- C:\Windows\SYSWOW64\aaclient.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\wksprtPS.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\wksprt.exe 2013-12-20 21:45:37 ----A---- C:\Windows\system32\TSWbPrxy.exe 2013-12-20 21:45:37 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\tsgqec.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\rdpudd.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\rdpendp_winip.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\rdpcorets.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\mstsc.exe 2013-12-20 21:45:37 ----A---- C:\Windows\system32\MsRdpWebAccess.dll 2013-12-20 21:45:37 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys 2013-12-20 21:45:37 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys 2013-12-20 21:45:37 ----A---- C:\Windows\system32\aaclient.dll 2013-12-20 21:45:36 ----A---- C:\Windows\system32\mstscax.dll 2013-12-20 21:39:01 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll 2013-12-20 21:39:01 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll 2013-12-20 21:39:01 ----A---- C:\Windows\system32\UIAnimation.dll 2013-12-20 21:39:01 ----A---- C:\Windows\system32\msmpeg2vdec.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-20 21:38:59 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\dxgi.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\DWrite.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10core.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d3d10.dll 2013-12-20 21:38:59 ----A---- C:\Windows\SYSWOW64\d2d1.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\XpsPrint.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\FntCache.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\dxgi.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\DWrite.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10warp.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10level9.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10core.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10_1core.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10_1.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d3d10.dll 2013-12-20 21:38:59 ----A---- C:\Windows\system32\d2d1.dll 2013-12-20 21:38:14 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll 2013-12-20 21:38:14 ----A---- C:\Windows\SYSWOW64\cryptnet.dll 2013-12-20 21:38:14 ----A---- C:\Windows\SYSWOW64\crypt32.dll 2013-12-20 21:38:14 ----A---- C:\Windows\system32\cryptsvc.dll 2013-12-20 21:38:14 ----A---- C:\Windows\system32\cryptnet.dll 2013-12-20 21:38:14 ----A---- C:\Windows\system32\crypt32.dll 2013-12-20 21:38:05 ----A---- C:\Windows\system32\consent.exe 2013-12-20 21:38:05 ----A---- C:\Windows\system32\appinfo.dll 2013-12-20 21:38:03 ----A---- C:\Windows\SYSWOW64\nlaapi.dll 2013-12-20 21:38:03 ----A---- C:\Windows\SYSWOW64\netevent.dll 2013-12-20 21:38:03 ----A---- C:\Windows\SYSWOW64\netcorehc.dll 2013-12-20 21:38:03 ----A---- C:\Windows\SYSWOW64\ncsi.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\nlasvc.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\nlaapi.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\netevent.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\netcorehc.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\ncsi.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\iphlpsvc.dll 2013-12-20 21:38:03 ----A---- C:\Windows\system32\drivers\tcpipreg.sys 2013-12-20 21:37:58 ----A---- C:\Windows\SYSWOW64\wintrust.dll 2013-12-20 21:37:58 ----A---- C:\Windows\system32\wintrust.dll 2013-12-20 21:37:55 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll 2013-12-20 21:37:55 ----A---- C:\Windows\system32\rpcrt4.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-12-20 21:37:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-12-20 21:37:53 ----A---- C:\Windows\SYSWOW64\KernelBase.dll 2013-12-20 21:37:53 ----A---- C:\Windows\SYSWOW64\kernel32.dll 2013-12-20 21:37:53 ----A---- C:\Windows\system32\winsrv.dll 2013-12-20 21:37:53 ----A---- C:\Windows\system32\smss.exe 2013-12-20 21:37:53 ----A---- C:\Windows\system32\KernelBase.dll 2013-12-20 21:37:53 ----A---- C:\Windows\system32\kernel32.dll 2013-12-20 21:37:53 ----A---- C:\Windows\system32\csrsrv.dll 2013-12-20 21:37:53 ----A---- C:\Windows\system32\conhost.exe 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-12-20 21:37:52 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-12-20 21:37:52 ----A---- C:\Windows\SYSWOW64\sspicli.dll 2013-12-20 21:37:52 ----A---- C:\Windows\SYSWOW64\schannel.dll 2013-12-20 21:37:52 ----A---- C:\Windows\SYSWOW64\apisetschema.dll 2013-12-20 21:37:52 ----A---- C:\Windows\system32\sspicli.dll 2013-12-20 21:37:52 ----A---- C:\Windows\system32\schannel.dll 2013-12-20 21:37:52 ----A---- C:\Windows\system32\lsasrv.dll 2013-12-20 21:37:52 ----A---- C:\Windows\system32\drivers\ksecpkg.sys 2013-12-20 21:37:52 ----A---- C:\Windows\system32\drivers\ksecdd.sys 2013-12-20 21:37:52 ----A---- C:\Windows\system32\drivers\cng.sys 2013-12-20 21:37:52 ----A---- C:\Windows\system32\apisetschema.dll 2013-12-20 21:37:51 ----A---- C:\Windows\SYSWOW64\secur32.dll 2013-12-20 21:37:51 ----A---- C:\Windows\SYSWOW64\ncrypt.dll 2013-12-20 21:37:51 ----A---- C:\Windows\system32\sspisrv.dll 2013-12-20 21:37:51 ----A---- C:\Windows\system32\secur32.dll 2013-12-20 21:37:51 ----A---- C:\Windows\system32\ncrypt.dll 2013-12-20 21:37:51 ----A---- C:\Windows\system32\lsass.exe 2013-12-20 21:37:49 ----A---- C:\Windows\SYSWOW64\tzres.dll 2013-12-20 21:37:49 ----A---- C:\Windows\system32\tzres.dll 2013-12-20 21:37:47 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll 2013-12-20 21:37:47 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll 2013-12-20 21:37:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2013-12-20 21:37:47 ----A---- C:\Windows\system32\dhcpcore6.dll 2013-12-20 21:37:44 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll 2013-12-20 21:37:44 ----A---- C:\Windows\SYSWOW64\credui.dll 2013-12-20 21:37:44 ----A---- C:\Windows\SYSWOW64\authui.dll 2013-12-20 21:37:44 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll 2013-12-20 21:37:44 ----A---- C:\Windows\system32\credui.dll 2013-12-20 21:37:44 ----A---- C:\Windows\system32\authui.dll 2013-12-20 21:37:43 ----A---- C:\Windows\SYSWOW64\qdvd.dll 2013-12-20 21:37:43 ----A---- C:\Windows\system32\qdvd.dll 2013-12-20 21:37:42 ----A---- C:\Windows\SYSWOW64\msieftp.dll 2013-12-20 21:37:42 ----A---- C:\Windows\SYSWOW64\imagehlp.dll 2013-12-20 21:37:42 ----A---- C:\Windows\SYSWOW64\d3d11.dll 2013-12-20 21:37:42 ----A---- C:\Windows\SYSWOW64\comctl32.dll 2013-12-20 21:37:42 ----A---- C:\Windows\system32\win32k.sys 2013-12-20 21:37:42 ----A---- C:\Windows\system32\msieftp.dll 2013-12-20 21:37:42 ----A---- C:\Windows\system32\imagehlp.dll 2013-12-20 21:37:42 ----A---- C:\Windows\system32\d3d11.dll 2013-12-20 21:37:42 ----A---- C:\Windows\system32\comctl32.dll 2013-12-20 21:37:41 ----A---- C:\Windows\system32\wwansvc.dll 2013-12-20 21:37:41 ----A---- C:\Windows\system32\wwanprotdim.dll 2013-12-20 21:37:41 ----A---- C:\Windows\system32\OxpsConverter.exe 2013-12-20 21:37:41 ----A---- C:\Windows\system32\drivers\Wdf01000.sys 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\lpk.dll 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\fontsub.dll 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\dciman32.dll 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\atmlib.dll 2013-12-20 21:37:40 ----A---- C:\Windows\SYSWOW64\atmfd.dll 2013-12-20 21:37:40 ----A---- C:\Windows\system32\WMVDECOD.DLL 2013-12-20 21:37:40 ----A---- C:\Windows\system32\lpk.dll 2013-12-20 21:37:40 ----A---- C:\Windows\system32\fontsub.dll 2013-12-20 21:37:40 ----A---- C:\Windows\system32\drivers\portcls.sys 2013-12-20 21:37:40 ----A---- C:\Windows\system32\drivers\drmk.sys 2013-12-20 21:37:40 ----A---- C:\Windows\system32\drivers\ataport.sys 2013-12-20 21:37:40 ----A---- C:\Windows\system32\drivers\afd.sys 2013-12-20 21:37:40 ----A---- C:\Windows\system32\dciman32.dll 2013-12-20 21:37:40 ----A---- C:\Windows\system32\atmlib.dll 2013-12-20 21:37:40 ----A---- C:\Windows\system32\atmfd.dll 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\wow32.dll 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\user.exe 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\tdh.dll 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\setup16.exe 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\ntdll.dll 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\instnm.exe 2013-12-20 21:37:39 ----A---- C:\Windows\SYSWOW64\advapi32.dll 2013-12-20 21:37:39 ----A---- C:\Windows\system32\wow64.dll 2013-12-20 21:37:39 ----A---- C:\Windows\system32\tdh.dll 2013-12-20 21:37:39 ----A---- C:\Windows\system32\ntoskrnl.exe 2013-12-20 21:37:39 ----A---- C:\Windows\system32\ntdll.dll 2013-12-20 21:37:39 ----A---- C:\Windows\system32\advapi32.dll 2013-12-20 21:37:38 ----A---- C:\Windows\system32\drivers\usbcir.sys 2013-12-20 21:37:38 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys 2013-12-20 21:37:36 ----A---- C:\Windows\SYSWOW64\mswsock.dll 2013-12-20 21:37:36 ----A---- C:\Windows\system32\mswsock.dll 2013-12-20 21:37:36 ----A---- C:\Windows\system32\drivers\tcpip.sys 2013-12-20 21:37:35 ----A---- C:\Windows\SYSWOW64\WebClnt.dll 2013-12-20 21:37:35 ----A---- C:\Windows\SYSWOW64\davclnt.dll 2013-12-20 21:37:35 ----A---- C:\Windows\system32\WebClnt.dll 2013-12-20 21:37:35 ----A---- C:\Windows\system32\drivers\RNDISMP.sys 2013-12-20 21:37:35 ----A---- C:\Windows\system32\drivers\ndis.sys 2013-12-20 21:37:35 ----A---- C:\Windows\system32\drivers\mrxdav.sys 2013-12-20 21:37:35 ----A---- C:\Windows\system32\drivers\hidparse.sys 2013-12-20 21:37:35 ----A---- C:\Windows\system32\drivers\hidclass.sys 2013-12-20 21:37:35 ----A---- C:\Windows\system32\davclnt.dll 2013-12-20 21:37:34 ----A---- C:\Windows\SYSWOW64\shell32.dll 2013-12-20 21:37:34 ----A---- C:\Windows\SYSWOW64\qedit.dll 2013-12-20 21:37:34 ----A---- C:\Windows\system32\shell32.dll 2013-12-20 21:37:34 ----A---- C:\Windows\system32\qedit.dll 2013-12-20 21:37:34 ----A---- C:\Windows\system32\drivers\tssecsrv.sys 2013-12-20 21:37:33 ----A---- C:\Windows\SYSWOW64\shdocvw.dll 2013-12-20 21:37:33 ----A---- C:\Windows\system32\shdocvw.dll 2013-12-20 21:37:32 ----A---- C:\Windows\SYSWOW64\win32spl.dll 2013-12-20 21:37:32 ----A---- C:\Windows\SYSWOW64\gdi32.dll 2013-12-20 21:37:32 ----A---- C:\Windows\system32\win32spl.dll 2013-12-20 21:37:32 ----A---- C:\Windows\system32\taskhost.exe 2013-12-20 21:37:32 ----A---- C:\Windows\system32\gdi32.dll 2013-12-20 21:35:46 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll 2013-12-20 21:35:46 ----A---- C:\Windows\system32\cryptdlg.dll 2013-12-20 21:35:19 ----A---- C:\Windows\SYSWOW64\certutil.exe 2013-12-20 21:35:19 ----A---- C:\Windows\SYSWOW64\certenc.dll 2013-12-20 21:35:19 ----A---- C:\Windows\system32\certutil.exe 2013-12-20 21:35:19 ----A---- C:\Windows\system32\certenc.dll 2013-12-20 21:35:14 ----A---- C:\Windows\SYSWOW64\wscript.exe 2013-12-20 21:35:14 ----A---- C:\Windows\SYSWOW64\scrrun.dll 2013-12-20 21:35:14 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll 2013-12-20 21:35:14 ----A---- C:\Windows\SYSWOW64\cscript.exe 2013-12-20 21:35:14 ----A---- C:\Windows\system32\wscript.exe 2013-12-20 21:35:14 ----A---- C:\Windows\system32\scrrun.dll 2013-12-20 21:35:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-12-20 21:35:14 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2013-12-20 21:35:14 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2013-12-20 21:35:14 ----A---- C:\Windows\system32\cscript.exe 2013-12-20 21:35:14 ----A---- C:\Windows\system32\cdd.dll 2013-12-20 21:35:12 ----A---- C:\Windows\SYSWOW64\nshwfp.dll 2013-12-20 21:35:12 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL 2013-12-20 21:35:12 ----A---- C:\Windows\system32\nshwfp.dll 2013-12-20 21:35:12 ----A---- C:\Windows\system32\IKEEXT.DLL 2013-12-20 21:35:12 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2013-12-20 21:35:11 ----A---- C:\Windows\system32\scavengeui.dll 2013-12-20 21:20:44 ----D---- C:\Windows\system32\SPReview 2013-12-20 21:20:37 ----D---- C:\Windows\system32\EventProviders 2013-12-20 21:16:41 ----A---- C:\Windows\system32\netfxperf.dll 2013-12-20 21:16:41 ----A---- C:\Windows\system32\dfshim.dll 2013-12-20 21:16:39 ----A---- C:\Windows\SYSWOW64\dfshim.dll 2013-12-20 21:16:36 ----A---- C:\Windows\SYSWOW64\mfc40u.dll 2013-12-20 21:16:36 ----A---- C:\Windows\SYSWOW64\mfc40.dll 2013-12-20 21:16:36 ----A---- C:\Windows\system32\sysmain.dll 2013-12-20 21:16:35 ----A---- C:\Windows\system32\MSVidCtl.dll 2013-12-20 21:16:34 ----A---- C:\Windows\system32\secproc_isv.dll 2013-12-20 21:16:34 ----A---- C:\Windows\system32\mscoree.dll 2013-12-20 21:16:34 ----A---- C:\Windows\system32\mmcndmgr.dll 2013-12-20 21:16:34 ----A---- C:\Windows\system32\mf.dll 2013-12-20 21:16:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll 2013-12-20 21:16:33 ----A---- C:\Windows\SYSWOW64\secproc.dll 2013-12-20 21:16:33 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe 2013-12-20 21:16:33 ----A---- C:\Windows\SYSWOW64\RMActivate.exe 2013-12-20 21:16:33 ----A---- C:\Windows\system32\xpsservices.dll 2013-12-20 21:16:33 ----A---- C:\Windows\system32\secproc.dll 2013-12-20 21:16:33 ----A---- C:\Windows\system32\schedsvc.dll 2013-12-20 21:16:33 ----A---- C:\Windows\system32\RMActivate_isv.exe 2013-12-20 21:16:33 ----A---- C:\Windows\system32\RMActivate.exe 2013-12-20 21:16:33 ----A---- C:\Windows\system32\ole32.dll 2013-12-20 21:16:32 ----A---- C:\Windows\SYSWOW64\mscoree.dll 2013-12-20 21:16:32 ----A---- C:\Windows\SYSWOW64\mf.dll 2013-12-20 21:16:32 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\wevtsvc.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\vssapi.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\UIRibbon.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\taskschd.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\spwizui.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\RacEngn.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\ExplorerFrame.dll 2013-12-20 21:16:32 ----A---- C:\Windows\system32\drivers\msiscsi.sys 2013-12-20 21:16:32 ----A---- C:\Windows\system32\diagperf.dll 2013-12-20 21:16:31 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll 2013-12-20 21:16:31 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe 2013-12-20 21:16:31 ----A---- C:\Windows\system32\WsmSvc.dll 2013-12-20 21:16:31 ----A---- C:\Windows\system32\WMVCORE.DLL 2013-12-20 21:16:31 ----A---- C:\Windows\system32\WinSAT.exe 2013-12-20 21:16:31 ----A---- C:\Windows\system32\spreview.exe 2013-12-20 21:16:31 ----A---- C:\Windows\system32\spinstall.exe 2013-12-20 21:16:31 ----A---- C:\Windows\system32\rdpdd.dll 2013-12-20 21:16:31 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2013-12-20 21:16:31 ----A---- C:\Windows\system32\PresentationHost.exe 2013-12-20 21:16:31 ----A---- C:\Windows\system32\MPSSVC.dll 2013-12-20 21:16:31 ----A---- C:\Windows\system32\CertEnroll.dll 2013-12-20 21:16:30 ----A---- C:\Windows\SYSWOW64\RacEngn.dll 2013-12-20 21:16:30 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\VSSVC.exe 2013-12-20 21:16:30 ----A---- C:\Windows\system32\SearchFolder.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\gpsvc.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\dwmcore.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\dbgeng.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\d3d9.dll 2013-12-20 21:16:30 ----A---- C:\Windows\system32\AuthFWSnapin.dll 2013-12-20 21:16:29 ----A---- C:\Windows\SYSWOW64\ole32.dll 2013-12-20 21:16:29 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll 2013-12-20 21:16:29 ----A---- C:\Windows\system32\TSWorkspace.dll 2013-12-20 21:16:29 ----A---- C:\Windows\system32\termsrv.dll 2013-12-20 21:16:29 ----A---- C:\Windows\system32\qmgr.dll 2013-12-20 21:16:29 ----A---- C:\Windows\system32\drivers\http.sys 2013-12-20 21:16:29 ----A---- C:\Windows\system32\audiosrv.dll 2013-12-20 21:16:29 ----A---- C:\Windows\system32\actxprxy.dll 2013-12-20 21:16:28 ----A---- C:\Windows\SYSWOW64\vssapi.dll 2013-12-20 21:16:28 ----A---- C:\Windows\SYSWOW64\taskschd.dll 2013-12-20 21:16:28 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll 2013-12-20 21:16:28 ----A---- C:\Windows\SYSWOW64\d3d9.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\WSDApi.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\winhttp.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\werconcpl.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\wbengine.exe 2013-12-20 21:16:28 ----A---- C:\Windows\system32\user32.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\taskeng.exe 2013-12-20 21:16:28 ----A---- C:\Windows\system32\setupapi.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\rpcss.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\QAGENTRT.DLL 2013-12-20 21:16:28 ----A---- C:\Windows\system32\propsys.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\odbc32.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\netlogon.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\msv1_0.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\imapi2fs.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\dhcpcore.dll 2013-12-20 21:16:28 ----A---- C:\Windows\system32\certmgr.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\wer.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\odbc32.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\dwmcore.dll 2013-12-20 21:16:27 ----A---- C:\Windows\SYSWOW64\certcli.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\ws2_32.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\wmpps.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\wmicmiplugin.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\winlogon.exe 2013-12-20 21:16:27 ----A---- C:\Windows\system32\tsmf.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\shlwapi.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\netshell.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\netcfgx.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\msdtctm.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\msdrm.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\lsm.exe 2013-12-20 21:16:27 ----A---- C:\Windows\system32\framedynos.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\drivers\tdx.sys 2013-12-20 21:16:27 ----A---- C:\Windows\system32\drivers\netbt.sys 2013-12-20 21:16:27 ----A---- C:\Windows\system32\comdlg32.dll 2013-12-20 21:16:27 ----A---- C:\Windows\system32\apphelp.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\winhttp.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\tsmf.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\setupapi.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\Query.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\netlogon.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\netcfgx.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\dot3api.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\dbgeng.dll 2013-12-20 21:16:26 ----A---- C:\Windows\SYSWOW64\apphelp.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\wpdshext.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\Wldap32.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\Vault.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\taskcomp.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\sxs.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\samsrv.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\Query.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\QAGENT.DLL 2013-12-20 21:16:26 ----A---- C:\Windows\system32\mcbuilder.exe 2013-12-20 21:16:26 ----A---- C:\Windows\system32\lpksetup.exe 2013-12-20 21:16:26 ----A---- C:\Windows\system32\DShowRdpFilter.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\drvstore.dll 2013-12-20 21:16:26 ----A---- C:\Windows\system32\drivers\vhdmp.sys 2013-12-20 21:16:26 ----A---- C:\Windows\system32\cmd.exe 2013-12-20 21:16:26 ----A---- C:\Windows\system32\BFE.DLL 2013-12-20 21:16:26 ----A---- C:\Windows\system32\azroles.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\xpsservices.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\userenv.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\upnp.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\shlwapi.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\SessEnv.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\netfxperf.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\msv1_0.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\msdrm.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\drvstore.dll 2013-12-20 21:16:25 ----A---- C:\Windows\SYSWOW64\certmgr.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\WMNetMgr.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\wlanpref.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\winsta.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\webservices.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\vpnike.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\userenv.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\sqlsrv32.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\SessEnv.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\schtasks.exe 2013-12-20 21:16:25 ----A---- C:\Windows\system32\prncache.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\pnidui.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\photowiz.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\mfds.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\mcmde.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\ipsmsnap.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\hgprint.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\fveapi.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\evr.dll 2013-12-20 21:16:25 ----A---- C:\Windows\system32\drivers\rdbss.sys 2013-12-20 21:16:25 ----A---- C:\Windows\system32\drivers\msrpc.sys 2013-12-20 21:16:25 ----A---- C:\Windows\system32\drivers\1394ohci.sys 2013-12-20 21:16:25 ----A---- C:\Windows\system32\dot3api.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\Wldap32.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\user32.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\propsys.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\mfds.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\framedynos.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\comdlg32.dll 2013-12-20 21:16:24 ----A---- C:\Windows\SYSWOW64\cmd.exe 2013-12-20 21:16:24 ----A---- C:\Windows\system32\wmpmde.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\WMPEncEn.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\wmpeffects.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\WinSATAPI.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\SyncCenter.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\stobject.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\srvsvc.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\sppobjs.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\shsvcs.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\netid.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\netdiagfx.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\mfreadwrite.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\localsec.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\IPSECSVC.DLL 2013-12-20 21:16:24 ----A---- C:\Windows\system32\inetpp.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\imapi2.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\FXSSVC.exe 2013-12-20 21:16:24 ----A---- C:\Windows\system32\framedyn.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\fde.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\drivers\udfs.sys 2013-12-20 21:16:24 ----A---- C:\Windows\system32\drivers\fltMgr.sys 2013-12-20 21:16:24 ----A---- C:\Windows\system32\bcryptprimitives.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\AudioSes.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\aepdu.dll 2013-12-20 21:16:24 ----A---- C:\Windows\system32\aeinv.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\themeui.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\taskeng.exe 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\taskcomp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\spp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\evr.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\dbghelp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\basecsp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\SYSWOW64\azroles.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\XpsRasterService.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\wusa.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\wisptis.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\wiaservc.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\vds.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\tcpipcfg.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\sppwinob.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\spp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\scansetting.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\rpchttp.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\QSHVHOST.DLL 2013-12-20 21:16:23 ----A---- C:\Windows\system32\printui.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\pla.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\PkgMgr.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\PhotoScreensaver.scr 2013-12-20 21:16:23 ----A---- C:\Windows\system32\ocsetup.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\mspbda.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\msinfo32.exe 2013-12-20 21:16:23 ----A---- C:\Windows\system32\msdri.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\mscms.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\IPHLPAPI.DLL 2013-12-20 21:16:23 ----A---- C:\Windows\system32\FirewallControlPanel.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\drivers\rasl2tp.sys 2013-12-20 21:16:23 ----A---- C:\Windows\system32\drivers\pci.sys 2013-12-20 21:16:23 ----A---- C:\Windows\system32\biocpl.dll 2013-12-20 21:16:23 ----A---- C:\Windows\system32\aitagent.exe 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\WSDApi.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\ws2_32.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\sxs.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\stobject.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\rpchttp.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\prncache.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\printui.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\netshell.dll 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\net1.exe 2013-12-20 21:16:22 ----A---- C:\Windows\SYSWOW64\calc.exe 2013-12-20 21:16:22 ----A---- C:\Windows\system32\wpdbusenum.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\wdc.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\wcncsvc.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\upnp.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\thumbcache.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\themeui.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\t2embed.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\scecli.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\Robocopy.exe 2013-12-20 21:16:22 ----A---- C:\Windows\system32\puiobj.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\PerfCenterCPL.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\onex.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\ocsetapi.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL 2013-12-20 21:16:22 ----A---- C:\Windows\system32\msasn1.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\mprapi.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\iasrad.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\hal.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\eapphost.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\eapp3hst.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\DxpTaskSync.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\DXPTaskRingtone.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\DXP.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\dwmredir.dll 2013-12-20 21:16:22 ----A---- C:\Windows\system32\drivers\volmgr.sys 2013-12-20 21:16:22 ----A---- C:\Windows\system32\drivers\msdsm.sys 2013-12-20 21:16:22 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys 2013-12-20 21:16:22 ----A---- C:\Windows\system32\drivers\HpSAMD.sys 2013-12-20 21:16:22 ----A---- C:\Windows\system32\drivers\Classpnp.sys 2013-12-20 21:16:22 ----A---- C:\Windows\system32\ci.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\wscapi.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\wpdshext.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\wlangpui.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\webservices.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\t2embed.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\scansetting.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\pnidui.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll 2013-12-20 21:16:21 ----A---- C:\Windows\SYSWOW64\fde.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\wscapi.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\wlangpui.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\wiadefui.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\VAN.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\tapisrv.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\TabSvc.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\StructuredQuery.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\srchadmin.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\SndVol.exe 2013-12-20 21:16:21 ----A---- C:\Windows\system32\setupcl.exe 2013-12-20 21:16:21 ----A---- C:\Windows\system32\sdengin2.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\scesrv.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\samcli.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\regapi.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\rastls.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\rasmans.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\QUTIL.DLL 2013-12-20 21:16:21 ----A---- C:\Windows\system32\netiohlp.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\netcenter.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\msftedit.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\iasacct.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\dskquoui.dll 2013-12-20 21:16:21 ----A---- C:\Windows\system32\drivers\termdd.sys 2013-12-20 21:16:21 ----A---- C:\Windows\system32\drivers\ndiswan.sys 2013-12-20 21:16:21 ----A---- C:\Windows\system32\drivers\msahci.sys 2013-12-20 21:16:21 ----A---- C:\Windows\system32\drivers\acpi.sys 2013-12-20 21:16:20 ----A---- C:\Windows\SYSWOW64\winsta.dll 2013-12-20 21:16:20 ----A---- C:\Windows\SYSWOW64\WinSCard.dll 2013-12-20 21:16:20 ----A---- C:\Windows\SYSWOW64\pla.dll 2013-12-20 21:16:20 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL 2013-12-20 21:16:20 ----A---- C:\Windows\SYSWOW64\msasn1.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\msconfig.exe 2013-12-20 21:16:20 ----A---- C:\Windows\system32\mimefilt.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\lsmproxy.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\ListSvc.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\hgcpl.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\fdeploy.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\drivers\sbp2port.sys 2013-12-20 21:16:20 ----A---- C:\Windows\system32\drivers\raspptp.sys 2013-12-20 21:16:20 ----A---- C:\Windows\system32\drivers\ks.sys 2013-12-20 21:16:20 ----A---- C:\Windows\system32\clusapi.dll 2013-12-20 21:16:20 ----A---- C:\Windows\system32\basecsp.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\winmm.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\thumbcache.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\srchadmin.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\shsvcs.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\schtasks.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\samcli.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\regapi.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\proquota.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\powercpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\onex.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\netiohlp.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\msutb.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\msinfo32.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\msihnd.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\mimefilt.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\imapi2.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\hbaapi.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\framedyn.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\eapphost.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\autofmt.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\autoconv.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\autochk.exe 2013-12-20 21:16:19 ----A---- C:\Windows\SYSWOW64\AudioSes.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\wpd_ci.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\wkssvc.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\vpnikeapi.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\themecpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\sppcomapi.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\shsetup.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\sharemediacpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\SensorsCpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\sdclt.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\RpcRtRemote.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\riched20.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\prntvpt.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\powercpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\nshipsec.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\netjoin.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\nci.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\Narrator.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\mtxclu.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\logoncli.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\fms.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\Faultrep.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\eudcedit.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\drivers\wanarp.sys 2013-12-20 21:16:19 ----A---- C:\Windows\system32\dnscmmc.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\cabview.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\bcdsrv.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll 2013-12-20 21:16:19 ----A---- C:\Windows\system32\autofmt.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\autoconv.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\autochk.exe 2013-12-20 21:16:19 ----A---- C:\Windows\system32\audiodg.exe 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\wlanpref.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\wiadefui.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\wdc.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\Vault.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\userinit.exe 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\untfs.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\termmgr.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\taskmgr.exe 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\shsetup.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\scesrv.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\Robocopy.exe 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\rastls.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\rasppp.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\puiobj.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\netid.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\nci.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\mtxclu.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\mscorier.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\logoncli.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\eudcedit.exe 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\Display.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\cabview.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll 2013-12-20 21:16:18 ----A---- C:\Windows\SYSWOW64\actxprxy.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\wwanconn.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\wpccpl.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\wmpsrcwp.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\wlanui.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\userinit.exe 2013-12-20 21:16:18 ----A---- C:\Windows\system32\usercpl.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\untfs.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\taskmgr.exe 2013-12-20 21:16:18 ----A---- C:\Windows\system32\sppsvc.exe 2013-12-20 21:16:18 ----A---- C:\Windows\system32\SndVolSSO.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\SmiEngine.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\rtutils.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\rasppp.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\provsvc.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\proquota.exe 2013-12-20 21:16:18 ----A---- C:\Windows\system32\prnfldr.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\pdh.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\mscorier.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\MSAC3ENC.DLL 2013-12-20 21:16:18 ----A---- C:\Windows\system32\mprddm.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\mblctr.exe 2013-12-20 21:16:18 ----A---- C:\Windows\system32\hbaapi.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\fontext.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\dxdiagn.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\drivers\volmgrx.sys 2013-12-20 21:16:18 ----A---- C:\Windows\system32\drivers\scsiport.sys 2013-12-20 21:16:18 ----A---- C:\Windows\system32\drivers\rdyboost.sys 2013-12-20 21:16:18 ----A---- C:\Windows\system32\drivers\mountmgr.sys 2013-12-20 21:16:18 ----A---- C:\Windows\system32\dps.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\dot3cfg.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\Display.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\DiagCpl.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\credssp.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\bootres.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\batmeter.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\AxInstSv.dll 2013-12-20 21:16:18 ----A---- C:\Windows\system32\accessibilitycpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\wlanui.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\w32tm.exe 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\VAN.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\usercpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\themecpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\tapisrv.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\SndVol.exe 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\scecli.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\prntvpt.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\netcenter.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\mscories.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\mscms.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\mprddm.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\localsec.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\iasacct.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\hgcpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\fontext.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll 2013-12-20 21:16:17 ----A---- C:\Windows\SYSWOW64\batmeter.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\zipfldr.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\uxlib.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\twext.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\taskbarcpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\sud.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\slui.exe 2013-12-20 21:16:17 ----A---- C:\Windows\system32\recovery.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\OobeFldr.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\OnLineIDCpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\networkmap.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\drivers\hwpolicy.sys 2013-12-20 21:16:17 ----A---- C:\Windows\system32\dot3svc.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\DeviceCenter.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\defaultlocationcpl.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\cryptui.dll 2013-12-20 21:16:17 ----A---- C:\Windows\system32\bcdedit.exe 2013-12-20 21:16:17 ----A---- C:\Windows\system32\ActionCenter.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\zipfldr.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\wusa.exe 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\sud.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\spwizeng.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\prnfldr.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\photowiz.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\networkmap.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\netjoin.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\fdeploy.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\Faultrep.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\cryptui.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\credssp.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\azroleui.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\adsldp.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll 2013-12-20 21:16:16 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\wlanmsm.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\vdsutil.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\tzutil.exe 2013-12-20 21:16:16 ----A---- C:\Windows\system32\termmgr.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\systemcpl.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\sysclass.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\syncui.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\spwizeng.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\sisbkup.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\shwebsvc.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\sdrsvc.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\sdcpl.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\recdisc.exe 2013-12-20 21:16:16 ----A---- C:\Windows\system32\netplwiz.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\ncryptui.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\msvidc32.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\MFPlay.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\isoburn.exe 2013-12-20 21:16:16 ----A---- C:\Windows\system32\httpapi.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\efscore.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\dsuiext.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\drivers\mpio.sys 2013-12-20 21:16:16 ----A---- C:\Windows\system32\certcli.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\cca.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\azroleui.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\autoplay.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\asycfilt.dll 2013-12-20 21:16:16 ----A---- C:\Windows\system32\ActionCenterCPL.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\wuwebv.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\wmpmde.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\wavemsp.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\systemcpl.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\syncui.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\sisbkup.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\sethc.exe 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\rtutils.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\riched20.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ReAgent.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\provsvc.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ntprint.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ntlanman.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\nshipsec.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\netplwiz.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\msftedit.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\migisol.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\isoburn.exe 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ifsutil.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\iasrad.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\httpapi.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ftp.exe 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\fms.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\efscore.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\dskquoui.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\dpx.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\dot3ui.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\blackbox.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\autoplay.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\asycfilt.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\activeds.dll 2013-12-20 21:16:15 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\wsnmp32.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\wmpdxm.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\wmdrmsdk.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\wkscli.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\WinSCard.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\wavemsp.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\UserAccountControlSettings.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\TSpkg.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\ssText3d.scr 2013-12-20 21:16:15 ----A---- C:\Windows\system32\srvcli.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\srrstr.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\sqlcese30.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\sppnp.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\slwga.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\sethc.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\remotepg.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\ReAgent.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\rdpd3d.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\ntprint.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\ntlanman.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\nslookup.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\networkexplorer.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\net1.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\NAPHLPR.DLL 2013-12-20 21:16:15 ----A---- C:\Windows\system32\msscp.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\msiexec.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\iyuv_32.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\iTVData.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\iprtrmgr.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\ftp.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\drmmgrtn.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\drivers\ndproxy.sys 2013-12-20 21:16:15 ----A---- C:\Windows\system32\dfrgui.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\DevicePairingFolder.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\certprop.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\cabinet.dll 2013-12-20 21:16:15 ----A---- C:\Windows\system32\bcdboot.exe 2013-12-20 21:16:15 ----A---- C:\Windows\system32\acppage.dll 2013-12-20 21:16:14 ----A---- C:\Windows\twain_32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wvc.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wimserv.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\wimgapi.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\vdsbas.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\uxlib.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\tzutil.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\twext.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\TSpkg.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\ssText3d.scr 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\slwga.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\setupugc.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\runonce.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\remotepg.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\rdpencom.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\raschap.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\qcap.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\qasf.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\perfmon.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\onexui.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\olepro32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\ocsetup.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\nslookup.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\msvfw32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\mstask.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\msscp.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\mciavi32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\iTVData.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\input.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\dsuiext.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\diskraid.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\dfrgui.exe 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\clusapi.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\audiodev.dll 2013-12-20 21:16:14 ----A---- C:\Windows\SYSWOW64\acppage.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wvc.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wsqmcons.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wpdwcn.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\WMVSDECD.DLL 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wmpshell.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wmdrmdev.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\WMADMOD.DLL 2013-12-20 21:16:14 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\wiavideo.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\WerFaultSecure.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\vdsbas.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\unimdmat.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\umb.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\tsbyuv.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\tlscsp.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\syssetup.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\seclogon.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\runonce.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\Ribbons.scr 2013-12-20 21:16:14 ----A---- C:\Windows\system32\rdpencom.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\raschap.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\qasf.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\PrintIsolationProxy.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\perfmon.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\OpcServices.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\netutils.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\NAPCRYPT.DLL 2013-12-20 21:16:14 ----A---- C:\Windows\system32\Mystify.scr 2013-12-20 21:16:14 ----A---- C:\Windows\system32\muifontsetup.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\msyuv.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\msrle32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\mfps.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\MdSched.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\Mcx2Svc.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\mapistub.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\mapi32.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\iscsium.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\ifsutil.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\FXSAPI.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\drivers\umbus.sys 2013-12-20 21:16:14 ----A---- C:\Windows\system32\diskraid.exe 2013-12-20 21:16:14 ----A---- C:\Windows\system32\dbghelp.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\Bubbles.scr 2013-12-20 21:16:14 ----A---- C:\Windows\system32\blackbox.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\AzSqlExt.dll 2013-12-20 21:16:14 ----A---- C:\Windows\system32\ActionQueue.dll 2013-12-20 21:16:14 ----A---- C:\Windows\bfsvc.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wudriver.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\WPDSp.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wmpshell.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wkscli.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\wiavideo.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\utildll.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\unimdmat.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\takeown.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\srvcli.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\sppinst.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\spbcd.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\shacct.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\setupcln.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\Ribbons.scr 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\relog.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\qdv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\pdhui.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\pdh.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\OpcServices.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\olethk32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\netiougc.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\ncryptui.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\Mystify.scr 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\mydocs.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msyuv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msvidc32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msrle32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msorcl32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msnetobj.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\msiexec.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\mprapi.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\MFPlay.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\mapistub.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\mapi32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\logman.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\logagent.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\iscsium.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\iscsicli.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\iasrecst.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\fphc.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\dot3msm.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\diskpart.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\cscapi.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\cmstp.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\cca.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\Bubbles.scr 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\avifil32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\SYSWOW64\amstream.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\WPDSp.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\WMSPDMOD.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\system32\wmdrmnet.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\WavDest.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\vss_ps.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\vfwwdm32.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\takeown.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\tabcal.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\sscore.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\spbcd.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\shimgvw.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\shacct.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\secproc_ssp.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\relog.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\QSVRMGMT.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\system32\qdv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\QCLIPROV.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\system32\qcap.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\PortableDeviceStatus.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\PnPUnattend.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\nrpsrv.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\nltest.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\mydocs.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\MultiDigiMon.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\mstask.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\msnetobj.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\msdmo.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\mobsync.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\logman.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\KMSVC.DLL 2013-12-20 21:16:13 ----A---- C:\Windows\system32\itircl.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\iscsicli.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\iasrecst.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\HotStartUserAgent.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\fphc.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\fdProxy.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\EhStorAPI.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\drivers\rmcast.sys 2013-12-20 21:16:13 ----A---- C:\Windows\system32\drivers\pacer.sys 2013-12-20 21:16:13 ----A---- C:\Windows\system32\drivers\ndisuio.sys 2013-12-20 21:16:13 ----A---- C:\Windows\system32\dot3ui.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\dot3msm.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\djoin.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\diskpart.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\cscapi.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\cmstp.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\CertPolEng.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\BWUnpairElevated.dll 2013-12-20 21:16:13 ----A---- C:\Windows\system32\bitsadmin.exe 2013-12-20 21:16:13 ----A---- C:\Windows\system32\amstream.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wups.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wuapp.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wshirda.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wshbth.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\wmpps.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\unlodctr.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\TRAPI.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\tlscsp.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\syssetup.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\sscore.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\sppc.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\spopk.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\shimgvw.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\shgina.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\schedcli.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\riched32.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\resutils.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\rastapi.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\perfts.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\odbcconf.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\netutils.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\netbtugc.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\napdsnap.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\msdmo.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\mobsync.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\luainstall.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\itircl.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\inetmib1.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\imm32.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\iccvid.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\findstr.exe 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\elsTrans.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\eappgnui.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\dsauth.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\cscdll.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\cabinet.dll 2013-12-20 21:16:12 ----A---- C:\Windows\SYSWOW64\bitsperf.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\wshirda.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\wshbth.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\wsdchngr.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\wdiasqmmodule.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\UIRibbonRes.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\TRAPI.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\sppc.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\spopk.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\shgina.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\schedcli.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\repair-bde.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\rdprefdrvapi.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\RDPENCDD.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\rdpcfgex.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\onexui.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\odbcconf.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\napdsnap.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\mciqtz32.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\manage-bde.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\luainstall.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\LogonUI.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\inetmib1.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\FXSUNATD.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\FXSTIFF.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\FXSMON.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\fixmapi.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\findstr.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\elsTrans.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\eappgnui.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\dsauth.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\usbrpm.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\tunnel.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\tdi.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\hidusb.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\dfsc.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\CompositeBus.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\appid.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\drivers\acpipmi.sys 2013-12-20 21:16:12 ----A---- C:\Windows\system32\cscdll.dll 2013-12-20 21:16:12 ----A---- C:\Windows\system32\choice.exe 2013-12-20 21:16:12 ----A---- C:\Windows\system32\bitsperf.dll 2013-12-20 21:16:11 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\spwmp.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\spwizres.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\shunimpl.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\pifmgr.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\nlsbres.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\dxmasf.dll 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\SYSWOW64\browseui.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\spwmp.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\spwizres.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\shunimpl.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\riched32.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\pifmgr.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\nlsbres.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDUS.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDUGHR1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDTURME.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDTUQ.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDTUF.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDTAJIK.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDSG.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDSF.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDPO.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDNEPR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDMON.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDMAORI.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDLT1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\kbdlk41a.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINTEL.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINTAM.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINORI.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINMAR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINKAN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINHIN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDINBEN.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDGR1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDGKL.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDGEO.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDCZ1.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDBULG.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDBLR.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\KBDBASH.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\dxmasf.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\sffp_sd.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\scfilter.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\kbdhid.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\HdAudio.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\hdaudbus.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\drivers\cdrom.sys 2013-12-20 21:16:11 ----A---- C:\Windows\system32\C_ISCII.DLL 2013-12-20 21:16:11 ----A---- C:\Windows\system32\browseui.dll 2013-12-20 21:16:11 ----A---- C:\Windows\system32\BlbEvents.dll 2013-12-20 21:16:10 ----A---- C:\Windows\SYSWOW64\wdscore.dll 2013-12-20 21:16:10 ----A---- C:\Windows\system32\dpx.dll 2013-12-20 21:16:08 ----A---- C:\Windows\SYSWOW64\sqmapi.dll 2013-12-20 21:16:05 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll 2013-12-20 21:15:53 ----A---- C:\Windows\system32\wbemcomn.dll 2013-12-20 21:15:52 ----A---- C:\Windows\system32\sqmapi.dll 2013-12-20 21:11:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe 2013-12-20 21:11:41 ----A---- C:\Windows\SYSWOW64\esent.dll 2013-12-20 21:11:41 ----A---- C:\Windows\system32\fsutil.exe 2013-12-20 21:11:41 ----A---- C:\Windows\system32\esent.dll 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\storport.sys 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\nvstor.sys 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\nvraid.sys 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\amdxata.sys 2013-12-20 21:11:41 ----A---- C:\Windows\system32\drivers\amdsata.sys 2013-12-20 21:09:16 ----D---- C:\Program Files (x86)\Microsoft.NET 2013-12-20 21:06:32 ----D---- C:\Windows\SYSWOW64\Wat 2013-12-20 21:06:32 ----D---- C:\Windows\system32\Wat 2013-12-20 18:55:54 ----D---- C:\Windows\SYSWOW64\Macromed 2013-12-20 18:55:53 ----D---- C:\Windows\system32\Macromed 2013-12-20 18:53:26 ----D---- C:\Users\Rajni\AppData\Roaming\Mozilla 2013-12-20 18:53:23 ----D---- C:\ProgramData\Mozilla 2013-12-20 18:35:39 ----A---- C:\Windows\system32\drivers\nvflash.sys 2013-12-20 18:35:29 ----A---- C:\Windows\GPU-Z.INI 2013-12-20 18:34:11 ----D---- C:\Users\Rajni\AppData\Roaming\NVIDIA 2013-12-20 18:33:37 ----D---- C:\Users\Rajni\AppData\Roaming\Macromedia 2013-12-20 18:33:37 ----D---- C:\Users\Rajni\AppData\Roaming\Adobe 2013-12-20 18:23:13 ----A---- C:\Windows\system32\Wdfres.dll 2013-12-20 18:23:13 ----A---- C:\Windows\system32\drivers\WdfLdr.sys 2013-12-20 18:17:21 ----A---- C:\Windows\system32\browserchoice.exe 2013-12-20 18:08:38 ----D---- C:\Windows\system32\MRT 2013-12-20 18:08:35 ----A---- C:\Windows\system32\MRT.exe 2013-12-20 18:08:23 ----A---- C:\Windows\SYSWOW64\wmi.dll 2013-12-20 18:08:23 ----A---- C:\Windows\system32\wmi.dll 2013-12-20 18:08:23 ----A---- C:\Windows\system32\drivers\fs_rec.sys 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\tquery.dll 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\mssvp.dll 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\mssrch.dll 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\mssphtb.dll 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\mssph.dll 2013-12-20 18:07:06 ----A---- C:\Windows\SYSWOW64\msscntrs.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\tquery.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\SearchProtocolHost.exe 2013-12-20 18:07:06 ----A---- C:\Windows\system32\SearchIndexer.exe 2013-12-20 18:07:06 ----A---- C:\Windows\system32\SearchFilterHost.exe 2013-12-20 18:07:06 ----A---- C:\Windows\system32\mssvp.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\mssrch.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\mssphtb.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\mssph.dll 2013-12-20 18:07:06 ----A---- C:\Windows\system32\msscntrs.dll 2013-12-20 18:06:54 ----A---- C:\Windows\SYSWOW64\webio.dll 2013-12-20 18:06:54 ----A---- C:\Windows\system32\webio.dll 2013-12-20 18:06:50 ----A---- C:\Windows\SYSWOW64\ntshrui.dll 2013-12-20 18:06:50 ----A---- C:\Windows\system32\ntshrui.dll 2013-12-20 18:06:50 ----A---- C:\Windows\system32\drivers\ntfs.sys 2013-12-20 18:06:43 ----A---- C:\Windows\SYSWOW64\poqexec.exe 2013-12-20 18:06:43 ----A---- C:\Windows\system32\poqexec.exe 2013-12-20 18:06:43 ----A---- C:\Windows\system32\odbccu32.dll 2013-12-20 18:06:43 ----A---- C:\Windows\system32\odbccr32.dll 2013-12-20 18:06:43 ----A---- C:\Windows\system32\odbccp32.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\sbe.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\odbctrac.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\odbccu32.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\odbccr32.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\odbccp32.dll 2013-12-20 18:06:42 ----A---- C:\Windows\SYSWOW64\CPFilters.dll 2013-12-20 18:06:42 ----A---- C:\Windows\system32\sbe.dll 2013-12-20 18:06:42 ----A---- C:\Windows\system32\odbctrac.dll 2013-12-20 18:06:42 ----A---- C:\Windows\system32\CPFilters.dll 2013-12-20 18:06:37 ----A---- C:\Windows\SYSWOW64\xmllite.dll 2013-12-20 18:06:37 ----A---- C:\Windows\SYSWOW64\mfc42u.dll 2013-12-20 18:06:37 ----A---- C:\Windows\SYSWOW64\mfc42.dll 2013-12-20 18:06:37 ----A---- C:\Windows\system32\xmllite.dll 2013-12-20 18:06:37 ----A---- C:\Windows\system32\mfc42u.dll 2013-12-20 18:06:37 ----A---- C:\Windows\system32\mfc42.dll 2013-12-20 18:06:36 ----A---- C:\Windows\SYSWOW64\quartz.dll 2013-12-20 18:06:36 ----A---- C:\Windows\system32\quartz.dll 2013-12-20 18:06:36 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys 2013-12-20 18:06:36 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys 2013-12-20 18:06:36 ----A---- C:\Windows\system32\drivers\mrxsmb.sys 2013-12-20 18:06:35 ----A---- C:\Windows\system32\msxml6.dll 2013-12-20 18:06:35 ----A---- C:\Windows\system32\msxml3.dll 2013-12-20 18:06:34 ----A---- C:\Windows\SYSWOW64\msxml6.dll 2013-12-20 18:06:34 ----A---- C:\Windows\SYSWOW64\msxml3r.dll 2013-12-20 18:06:34 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2013-12-20 18:06:34 ----A---- C:\Windows\system32\msxml3r.dll 2013-12-20 18:06:33 ----A---- C:\Windows\system32\drivers\usb8023.sys 2013-12-20 18:06:32 ----A---- C:\Windows\system32\rdrmemptylst.exe 2013-12-20 18:06:32 ----A---- C:\Windows\system32\rdpwsx.dll 2013-12-20 18:06:32 ----A---- C:\Windows\system32\rdpcorekmts.dll 2013-12-20 18:06:32 ----A---- C:\Windows\system32\drivers\Diskdump.sys 2013-12-20 18:06:30 ----A---- C:\Windows\SYSWOW64\dpnet.dll 2013-12-20 18:06:30 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll 2013-12-20 18:06:30 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe 2013-12-20 18:06:30 ----A---- C:\Windows\SYSWOW64\dnsapi.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\profsvc.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\profprov.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\dpnet.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\dpnaddr.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\dnsrslvr.dll 2013-12-20 18:06:30 ----A---- C:\Windows\system32\dnscacheugc.exe 2013-12-20 18:06:30 ----A---- C:\Windows\system32\dnsapi.dll 2013-12-20 18:04:06 ----A---- C:\Windows\system32\drivers\srvnet.sys 2013-12-20 18:04:06 ----A---- C:\Windows\system32\drivers\srv2.sys 2013-12-20 18:04:06 ----A---- C:\Windows\system32\drivers\srv.sys 2013-12-20 18:04:05 ----A---- C:\Windows\system32\drivers\netio.sys 2013-12-20 18:04:05 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS 2013-12-20 18:04:04 ----A---- C:\Windows\system32\wow64win.dll 2013-12-20 18:04:03 ----A---- C:\Windows\system32\wow64cpu.dll 2013-12-20 18:04:03 ----A---- C:\Windows\system32\ntvdm64.dll 2013-12-20 18:03:57 ----A---- C:\Windows\SYSWOW64\Wpc.dll 2013-12-20 18:03:57 ----A---- C:\Windows\SYSWOW64\gameux.dll 2013-12-20 18:03:57 ----A---- C:\Windows\system32\Wpc.dll 2013-12-20 18:03:57 ----A---- C:\Windows\system32\gameux.dll 2013-12-20 18:03:51 ----A---- C:\Windows\system32\drivers\rdpwd.sys 2013-12-20 18:03:48 ----A---- C:\Windows\SYSWOW64\cdosys.dll 2013-12-20 18:03:48 ----A---- C:\Windows\system32\cdosys.dll 2013-12-20 18:03:46 ----A---- C:\Windows\SYSWOW64\kerberos.dll 2013-12-20 18:03:46 ----A---- C:\Windows\system32\winresume.exe 2013-12-20 18:03:46 ----A---- C:\Windows\system32\winload.exe 2013-12-20 18:03:46 ----A---- C:\Windows\system32\setbcdlocale.dll 2013-12-20 18:03:46 ----A---- C:\Windows\system32\kerberos.dll 2013-12-20 18:03:46 ----A---- C:\Windows\system32\kdusb.dll 2013-12-20 18:03:46 ----A---- C:\Windows\system32\kdcom.dll 2013-12-20 18:03:46 ----A---- C:\Windows\system32\kd1394.dll 2013-12-20 18:03:45 ----A---- C:\Windows\SYSWOW64\psisdecd.dll 2013-12-20 18:03:45 ----A---- C:\Windows\system32\psisdecd.dll 2013-12-20 18:03:43 ----A---- C:\Windows\SYSWOW64\usp10.dll 2013-12-20 18:03:43 ----A---- C:\Windows\SYSWOW64\msi.dll 2013-12-20 18:03:43 ----A---- C:\Windows\system32\usp10.dll 2013-12-20 18:03:43 ----A---- C:\Windows\system32\msi.dll 2013-12-20 18:03:42 ----A---- C:\Windows\system32\WFS.exe 2013-12-20 18:03:42 ----A---- C:\Windows\system32\FXSCOVER.exe 2013-12-20 18:03:41 ----A---- C:\Windows\SYSWOW64\drvinst.exe 2013-12-20 18:03:41 ----A---- C:\Windows\SYSWOW64\devrtl.dll 2013-12-20 18:03:41 ----A---- C:\Windows\SYSWOW64\devobj.dll 2013-12-20 18:03:41 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll 2013-12-20 18:03:41 ----A---- C:\Windows\system32\umpnpmgr.dll 2013-12-20 18:03:41 ----A---- C:\Windows\system32\drivers\partmgr.sys 2013-12-20 18:03:41 ----A---- C:\Windows\system32\cfgmgr32.dll 2013-12-20 18:03:40 ----A---- C:\Windows\SYSWOW64\srclient.dll 2013-12-20 18:03:40 ----A---- C:\Windows\SYSWOW64\netapi32.dll 2013-12-20 18:03:40 ----A---- C:\Windows\SYSWOW64\EncDec.dll 2013-12-20 18:03:40 ----A---- C:\Windows\SYSWOW64\browcli.dll 2013-12-20 18:03:40 ----A---- C:\Windows\system32\srcore.dll 2013-12-20 18:03:40 ----A---- C:\Windows\system32\rstrui.exe 2013-12-20 18:03:40 ----A---- C:\Windows\system32\netapi32.dll 2013-12-20 18:03:40 ----A---- C:\Windows\system32\EncDec.dll 2013-12-20 18:03:40 ----A---- C:\Windows\system32\browser.dll 2013-12-20 18:03:40 ----A---- C:\Windows\system32\browcli.dll 2013-12-20 18:03:39 ----A---- C:\Windows\SYSWOW64\synceng.dll 2013-12-20 18:03:39 ----A---- C:\Windows\SYSWOW64\oleaut32.dll 2013-12-20 18:03:39 ----A---- C:\Windows\SYSWOW64\oleacc.dll 2013-12-20 18:03:39 ----A---- C:\Windows\SYSWOW64\inetcomm.dll 2013-12-20 18:03:39 ----A---- C:\Windows\system32\synceng.dll 2013-12-20 18:03:39 ----A---- C:\Windows\system32\oleaut32.dll 2013-12-20 18:03:39 ----A---- C:\Windows\system32\oleacc.dll 2013-12-20 18:03:39 ----A---- C:\Windows\system32\inetcomm.dll 2013-12-20 18:03:38 ----A---- C:\Windows\SYSWOW64\prevhost.exe 2013-12-20 18:03:38 ----A---- C:\Windows\SYSWOW64\msvcrt.dll 2013-12-20 18:03:38 ----A---- C:\Windows\system32\prevhost.exe 2013-12-20 18:03:38 ----A---- C:\Windows\system32\msvcrt.dll 2013-12-20 18:03:38 ----A---- C:\Windows\system32\localspl.dll 2013-12-20 18:03:38 ----A---- C:\Windows\system32\drivers\fvevol.sys 2013-12-20 18:03:37 ----A---- C:\Windows\system32\drivers\bowser.sys 2013-12-20 18:03:35 ----A---- C:\Windows\SYSWOW64\packager.dll 2013-12-20 18:03:35 ----A---- C:\Windows\system32\packager.dll 2013-12-20 18:01:34 ----A---- C:\Windows\SYSWOW64\rdpcore.dll 2013-12-20 18:01:34 ----A---- C:\Windows\system32\rdpcore.dll 2013-12-20 18:01:34 ----A---- C:\Windows\system32\drivers\tdtcp.sys ======List of files/folders modified in the last 1 month====== 2014-01-10 02:56:30 ----RD---- C:\Program Files 2014-01-10 02:56:26 ----D---- C:\Windows\Temp 2014-01-10 02:51:07 ----D---- C:\Windows 2014-01-10 02:50:38 ----D---- C:\Windows\System32 2014-01-10 02:50:38 ----A---- C:\Windows\system32\PerfStringBackup.INI 2014-01-10 02:47:09 ----SHD---- C:\System Volume Information 2014-01-10 02:46:28 ----D---- C:\Windows\system32\drivers 2014-01-10 02:46:00 ----D---- C:\ProgramData\NVIDIA 2014-01-10 02:42:31 ----RSD---- C:\Windows\assembly 2014-01-10 02:42:31 ----D---- C:\Windows\Microsoft.NET 2014-01-10 02:42:28 ----SHD---- C:\Windows\Installer 2014-01-10 02:42:28 ----HD---- C:\ProgramData 2014-01-10 02:38:47 ----D---- C:\Windows\system32\config 2014-01-05 20:47:18 ----D---- C:\Windows\Tasks 2014-01-05 20:47:18 ----D---- C:\Windows\system32\Tasks 2014-01-05 17:00:30 ----D---- C:\Windows\winsxs 2014-01-05 17:00:18 ----SD---- C:\ProgramData\Microsoft 2014-01-05 17:00:16 ----D---- C:\Program Files\Common Files\Microsoft Shared 2014-01-05 17:00:12 ----RD---- C:\Program Files (x86) 2014-01-05 17:00:08 ----D---- C:\Windows\SysWOW64 2014-01-05 16:24:25 ----D---- C:\Windows\system32\FxsTmp 2014-01-05 16:15:00 ----D---- C:\Windows\system32\DriverStore 2014-01-05 16:15:00 ----D---- C:\Windows\system32\catroot 2014-01-05 16:15:00 ----D---- C:\Windows\inf 2014-01-05 15:48:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2014-01-05 01:41:51 ----D---- C:\Program Files (x86)\Common Files 2014-01-05 01:10:45 ----D---- C:\Windows\Downloaded Program Files 2014-01-05 00:40:53 ----D---- C:\Program Files\Common Files 2014-01-05 00:40:24 ----D---- C:\ProgramData\Norton 2014-01-05 00:39:04 ----D---- C:\ProgramData\NortonInstaller 2014-01-05 00:29:23 ----D---- C:\Windows\system32\catroot2 2014-01-05 00:16:19 ----SD---- C:\Users\Rajni\AppData\Roaming\Microsoft 2014-01-05 00:11:18 ----D---- C:\Windows\twain_32 2014-01-05 00:02:56 ----D---- C:\Windows\system32\wfp 2014-01-05 00:02:56 ----D---- C:\Windows\system32\wbem 2014-01-05 00:02:43 ----D---- C:\Windows\system32\drivers\etc 2014-01-05 00:02:43 ----D---- C:\Windows\rescache 2014-01-05 00:02:42 ----D---- C:\Windows\system32\NDF 2014-01-05 00:02:42 ----D---- C:\Windows\system32\drivers\UMDF 2014-01-05 00:02:42 ----D---- C:\Windows\system32\CodeIntegrity 2014-01-05 00:02:41 ----D---- C:\Windows\AppCompat 2014-01-05 00:02:35 ----D---- C:\Windows\ServiceProfiles 2014-01-05 00:02:35 ----D---- C:\Windows\registration 2014-01-04 22:28:09 ----D---- C:\Windows\Prefetch 2013-12-21 23:48:25 ----D---- C:\Windows\Logs 2013-12-21 23:48:24 ----D---- C:\Windows\system32\wdi 2013-12-20 22:44:38 ----RSD---- C:\Windows\Fonts 2013-12-20 22:14:11 ----D---- C:\Program Files\Internet Explorer 2013-12-20 22:14:11 ----D---- C:\Program Files (x86)\Internet Explorer 2013-12-20 22:12:55 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2013-12-20 22:08:30 ----D---- C:\Windows\SYSWOW64\nl-NL 2013-12-20 22:08:30 ----D---- C:\Windows\SYSWOW64\migration 2013-12-20 22:08:30 ----D---- C:\Windows\SYSWOW64\en-US 2013-12-20 22:08:30 ----D---- C:\Windows\system32\nl-NL 2013-12-20 22:08:29 ----D---- C:\Windows\system32\migration 2013-12-20 22:08:29 ----D---- C:\Windows\system32\en-US 2013-12-20 22:08:29 ----D---- C:\Windows\PolicyDefinitions 2013-12-20 22:00:03 ----D---- C:\Program Files\Windows Media Player 2013-12-20 22:00:03 ----D---- C:\Program Files (x86)\Windows Media Player 2013-12-20 22:00:02 ----D---- C:\Windows\AppPatch 2013-12-20 22:00:02 ----D---- C:\Program Files\Windows Defender 2013-12-20 22:00:02 ----D---- C:\Program Files (x86)\Windows Defender 2013-12-20 22:00:00 ----D---- C:\Windows\SYSWOW64\wbem 2013-12-20 22:00:00 ----D---- C:\Windows\system32\drivers\nl-NL 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\zh-TW 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\zh-HK 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\zh-CN 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\tr-TR 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\sv-SE 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\ru-RU 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\pt-PT 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\pt-BR 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\pl-PL 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\nb-NO 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\ko-KR 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\ja-JP 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\it-IT 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\hu-HU 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\fr-FR 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\fi-FI 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\es-ES 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\el-GR 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\de-DE 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\da-DK 2013-12-20 21:59:59 ----D---- C:\Windows\SYSWOW64\cs-CZ 2013-12-20 21:59:58 ----D---- C:\Windows\system32\zh-TW 2013-12-20 21:59:58 ----D---- C:\Windows\system32\zh-HK 2013-12-20 21:59:58 ----D---- C:\Windows\system32\zh-CN 2013-12-20 21:59:58 ----D---- C:\Windows\system32\tr-TR 2013-12-20 21:59:58 ----D---- C:\Windows\system32\sv-SE 2013-12-20 21:59:58 ----D---- C:\Windows\system32\ru-RU 2013-12-20 21:59:58 ----D---- C:\Windows\system32\pt-PT 2013-12-20 21:59:58 ----D---- C:\Windows\system32\pt-BR 2013-12-20 21:59:58 ----D---- C:\Windows\system32\pl-PL 2013-12-20 21:59:58 ----D---- C:\Windows\system32\nb-NO 2013-12-20 21:59:58 ----D---- C:\Windows\system32\ko-KR 2013-12-20 21:59:58 ----D---- C:\Windows\system32\ja-JP 2013-12-20 21:59:58 ----D---- C:\Windows\system32\it-IT 2013-12-20 21:59:58 ----D---- C:\Windows\system32\hu-HU 2013-12-20 21:59:58 ----D---- C:\Windows\system32\fr-FR 2013-12-20 21:59:58 ----D---- C:\Windows\system32\fi-FI 2013-12-20 21:59:58 ----D---- C:\Windows\system32\es-ES 2013-12-20 21:59:58 ----D---- C:\Windows\system32\el-GR 2013-12-20 21:59:58 ----D---- C:\Windows\system32\de-DE 2013-12-20 21:59:58 ----D---- C:\Windows\system32\da-DK 2013-12-20 21:59:58 ----D---- C:\Windows\system32\cs-CZ 2013-12-20 21:59:58 ----D---- C:\Program Files\Windows Journal 2013-12-20 21:31:17 ----D---- C:\Windows\servicing 2013-12-20 21:31:17 ----D---- C:\Windows\ehome 2013-12-20 21:31:17 ----D---- C:\Program Files\Windows Sidebar 2013-12-20 21:31:17 ----D---- C:\Program Files\Windows Portable Devices 2013-12-20 21:31:17 ----D---- C:\Program Files\Windows Photo Viewer 2013-12-20 21:31:17 ----D---- C:\Program Files\Windows Mail 2013-12-20 21:31:17 ----D---- C:\Program Files\DVD Maker 2013-12-20 21:31:17 ----D---- C:\Program Files\Common Files\System 2013-12-20 21:31:17 ----D---- C:\Program Files (x86)\Windows Sidebar 2013-12-20 21:31:17 ----D---- C:\Program Files (x86)\Windows Portable Devices 2013-12-20 21:31:17 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2013-12-20 21:31:17 ----D---- C:\Program Files (x86)\Windows Mail 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\sppui 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\Setup 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\oobe 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\migwiz 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\manifeststore 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\Dism 2013-12-20 21:31:16 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers 2013-12-20 21:31:15 ----D---- C:\Windows\system32\sppui 2013-12-20 21:31:15 ----D---- C:\Windows\system32\Setup 2013-12-20 21:31:15 ----D---- C:\Windows\system32\oobe 2013-12-20 21:31:15 ----D---- C:\Windows\system32\migwiz 2013-12-20 21:31:15 ----D---- C:\Windows\system32\manifeststore 2013-12-20 21:31:15 ----D---- C:\Windows\system32\Dism 2013-12-20 21:31:15 ----D---- C:\Windows\system32\AdvancedInstallers 2013-12-20 21:31:13 ----D---- C:\Windows\system32\Boot 2013-12-20 21:30:46 ----A---- C:\Windows\SYSWOW64\msclmd.dll 2013-12-20 21:30:46 ----A---- C:\Windows\system32\msclmd.dll 2013-12-20 18:08:37 ----D---- C:\Windows\debug 2013-12-20 18:02:22 ----D---- C:\Windows\system32\LogFiles ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-01-31 652784] R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-01-31 28656] R0 iusb3hcs;Intel® USB 3.0 hostcontrollerswitch-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2013-04-26 20464] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888] R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS [2013-05-20 493656] R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS [2013-05-22 1139800] R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-08-21 15232] R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20131218.001\BHDrvx64.sys [2013-12-18 1526488] R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [2013-04-15 169048] R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20140107.001\IDSvia64.sys [2014-01-03 521944] R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [2013-03-04 36952] R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [2012-09-06 224416] R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1404000.028\SYMNETS.SYS [2013-04-24 433752] R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544] R3 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2014-01-04 484952] R3 EraserUtilDrv11312;EraserUtilDrv11312; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11312.sys [2014-01-04 137648] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-11-20 4213904] R3 iusb3hub;Intel® USB 3.0 hub-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3hub.sys [2013-04-26 368112] R3 iusb3xhc;Intel® USB 3.0 uitbreidbare hostcontroller-stuurprogramma; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2013-04-26 786416] R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-01-18 351136] R3 LVUVC64;Logitech HD Webcam C310(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2012-01-18 4865568] R3 MEIx64;Intel® Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2013-03-12 64624] R3 MonitorFunction;Driver for Monitor; C:\Windows\system32\DRIVERS\TVMonitor.sys [2013-10-17 16376] R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20140108.003\ENG64.SYS [2014-01-04 126040] R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20140108.003\EX64.SYS [2014-01-04 2099288] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-14 196384] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-12-26 805088] R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSP64.SYS [2013-05-15 796760] R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2014-01-05 177312] R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [] S1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\F:\UltraISO\drivers\ISODrv64.sys [] S3 cleanhlp;cleanhlp; \??\C:\Users\Rajni\Desktop\VIRUS SCANNER'S\ALTIJD\EMSISOFT\RUN\cleanhlp64.sys [2013-12-28 57024] S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-04-12 137648] S3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304] S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456] S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.20); C:\Windows\system32\DRIVERS\RtTeam620.sys [2012-07-03 58512] S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2012-09-01 32400] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192] R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [2012-10-29 927232] R2 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296] R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-31 15344] R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648] R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [2013-03-12 169432] R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2013-03-12 366552] R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [2013-05-20 144368] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-11-11 922912] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-11-11 414496] R2 TeamViewer9;TeamViewer 9; C:\Users\Public\temp\TeamViewer\Version9\TeamViewer_Service.exe [2013-12-17 5341536] R2 UMVPFSrv;UMVPFSrv; C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-01-18 450848] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088] S2 SkypeUpdate;Skype Updater; D:\skype\Updater\Updater.exe [2013-10-23 172192] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-05 257416] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616] S3 Intel® Capability Licensing Service TCP IP Interface;Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-05 119408] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-20 1255736] S4 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856] -----------------EOF-----------------
  17. hallo ik heb een probleempje. met het verwijderen van fences. de programma stond eerst op mij. oude schijf die gecrasht is nu kan. kan ik fences niet verwijderen wie. kan mij helpen aub zie hier onder de melding.
  18. oke is goed dan laat ik het zo bedankt voor de hulp kan ik combofix verwijderen?
  19. moet ik dan maar me windows opnieuw installeren?
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.