Ga naar inhoud

manneke

Lid
  • Items

    164
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door manneke

  1. Sorry hiervoor vergeten te melden Dit topic mag inderdaad ook als opgelost worden afgesloten Nogmaals bedankt voor de hulp MVG Manneke
  2. Bedankt kweezie wabbit, Het resultaat mag er zijn, laptop draait weer vlotter. Wij kunnen dit toppic als opgelost afsluiten. M.V.G. Manneke
  3. Bedankt kweezie wabbit, Sorry voor de late reactie, ik was even met andere zaken bezig. Er is inderdaad al enige verbetering te zien. Met vriendelijke groeten Manneke
  4. Bedankt kweezie wabbit, Voor uw deskundige hulp In bijlage het logbestand met vriendelijke groeten Manneke Fixlog.txt
  5. Beste kweezie wabbit, Eerst wilde ik hierop reageren "Progjes zoals FRST mag je enkel gebruiken onder begeleiding van een expert terzake" Ik zou dit zeker niet gebruiken zonder jullie deskundige hulp. In bijlage de 2 logjes van de FRST-scan op mijn laptop groeten Manneke Addition.txt FRST.txt
  6. Beste kweezie wabbit, Dit ben ik nog vergeten te vragen Mag ik dit progje (FRST64) ook eens op mijn laptop laten draaien of heb jij nog andere progjes om de laptop eens van alle rommel te ontdoen groeten manneke
  7. Beste kweezie wabbit, Bedankt de laptop is merkelijk sneller geworden. Wij zullen hier nu nog de verdere stappen uitvoeren zodat de vrouw weer tevreden is Met vele dank voor de hulp groeten manneke
  8. Bedankt kweezie wabbit voor uw reactie. Wat betreft de harde schijf ga ik met een ex collega die een pc winkel heeft eens informeren wat hij kan doen. De vrouw wil niets kwijt en zeker geen van haar foto's Wat Java betreft heb ik vandaag de melding gekregen dat ik een verouderde versie had, de oude versie is verwijderd en de update voor de nieuwe versie is gebeurd. In bijlage vind jij het gevraagde logbestand groeten Manneke Fixlog.txt
  9. Bedankt Eddy, Dit ga ik later op mijn laptop toepassen,maar eerst ons vrouwtje haar laptop in orde krijgen
  10. Bedankt kweezie wabbit voor uw reactie. Zoals gevraagd vind jij in de bijlage de logbestanden. groeten Manneke Addition.txt FRST.txt
  11. Het is reeds geruime tijd geleden dat ik mij hier nog gemeld heb. deze laptop werkt op windows10 Is het nog mogelijk om met jullie hulp een oudere laptop sneller te laten werken? Deze laptop word door mijn vrouw gebruik, maar vroeger door ons beiden. Ik wil mijn account op deze laptop enkel nog gebruiken als back up (ondersteuning) als er eens iets misgaat. Tevens wil ik de laptop eens grondig van alle rommel ontdoen. Kunnen jullie mij hierbij helpen Alvast bedankt groeten manneke
  12. Thx Kape, Voor het ganse Pc helpers team ook een prettig eindejaar gewenst van hieruit grts Peter
  13. Thx Kape Delfix is uitgevoerd grts Peter
  14. Thx Kape, het ziet er op de moment heel goed uit Ik heb dat probleem binnengehaald door een film te willen downloaden was allemaal Chinese brol dat daar was meegekomen Ga daar mijn polletjes afhouden, heb mijn lesje geleerd grts Peter
  15. Hoi Kape, heb hier 3 mapjes (tekstdocumenten) in de AdwCleaner staan als ik het een c1 / s1 en een quarantine Daar jij spreekt van de (C0) voeg ik er dan in bijlage de C1 bij grts Peter AdwCleanerC1.txt
  16. Thx Kape, Zoals gevraagd in bijlage het zoek logje grts Peter zoek-results.txt
  17. Thx Kape Nog een fijne kerst toegewenst hiermee het zoek logje in bijlage grts Peter zoek-results.txt
  18. Sorry ik dacht toch dat ik het logbestand had bijgevoegd hieronder een copy paste het log bestand ook nog eens toegevoegd grts Peter Logfile of random's system information tool 1.10 (written by random/random) Run by Peter at 2015-12-24 14:08:27 Microsoft Windows 10 Home System drive C: has 386 GB (86%) free of 446 GB Total RAM: 3975 MB (21% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 14:08:37, on 24/12/2015 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.10586.0020) Boot mode: Normal Running processes: C:\Users\Peter\AppData\Local\Microsoft\BingSvc\BingSvc.exe C:\Users\Peter\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE C:\Program Files (x86)\Microsoft Office\Root\Office16\MsoSync.exe C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe C:\Users\Peter\AppData\Roaming\ACEStream\engine\ace_engine.exe C:\Users\Peter\AppData\Roaming\ACEStream\updater\ace_update.exe C:\Users\Peter\AppData\Local\mbot_be_014010185\upmbot_be_014010185.exe C:\WINDOWS\SysWOW64\ctfmon.exe C:\Program Files (x86)\Intel\Rs.exe C:\Program Files (x86)\MTV20151125\MTView.exe C:\Program Files (x86)\MTV20151125\bugreport.exe C:\Program Files (x86)\ADSafe\ADSafe.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\plugins\QMNetMon\QQPCNetFlow.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRealTimeSpeedup.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QMDeskTopGC.exe C:\Program Files (x86)\Wooden Seal\bin\WoodenSeal.BrowserAdapter.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCLeakScan.exe C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QMUsbGuard.exe C:\Program Files\trend micro\Peter.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://sony13.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=90820167_hao_pg R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/?tn=90820167_hao_pg R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit= O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Wooden Seal 1.0.0.7 - {7a0ab196-76b2-4ee2-858e-7efdc93c3a47} - C:\Program Files (x86)\Wooden Seal\WoodenSealbho.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [intel AppUp® center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4 O4 - HKLM\..\Run: [mbot_be_014010185] "C:\Program Files (x86)\mbot_be_014010185\mbot_be_014010185.exe" O4 - HKLM\..\Run: [Rs] "C:\Program Files (x86)\Intel\Rs.exe" http://down.baidu2016.com/qq/test.txt /start O4 - HKLM\..\Run: [MTview] C:\Program Files (x86)\MTV20151125\MTView.exe -mini O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe" /regrun O4 - HKLM\..\RunOnce: [upmbot_be_014010185.exe] C:\Users\Peter\AppData\Local\mbot_be_014010185\upmbot_be_014010185.exe -runonce O4 - HKCU\..\Run: [bingSvc] C:\Users\Peter\AppData\Local\Microsoft\BingSvc\BingSvc.exe O4 - HKCU\..\Run: [AceStream] C:\Users\Peter\AppData\Roaming\ACEStream\engine\ace_engine.exe O4 - HKCU\..\Run: [OneDrive] "C:\Users\Peter\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\RunOnce: [uninstall C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: ADSafe Host Service (ADSafeSvc) - Shanghai Damo Network Sci. & Tech. Co. Ltd. - C:\Program Files (x86)\ADSafe\ADSafeSvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: @oem28.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing) O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: Energy Server Service (ESRV_SVC) - Unknown owner - C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: Intel® Integrated Clock Controller Service - Intel® ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel® HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing) O23 - Service: Intel® Capability Licensing Service Interface - Intel® Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel® ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel® Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: McAfee Security Scan Component Host Service for Sony (McComponentHostServiceSony) - McAfee, Inc. - C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRTP.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe O23 - Service: VAIO Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe O23 - Service: VAIO Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe O23 - Service: TAOFrame - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TAOFrame.exe O23 - Service: TDataSvr - TData.com - C:\Program Files (x86)\TDataDld\TData.exe O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: Update Wooden Seal - Unknown owner - C:\Program Files (x86)\Wooden Seal\updateWoodenSeal.exe O23 - Service: User Energy Server Service (USER_ESRV_SVC) - Unknown owner - C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe O23 - Service: Util Wooden Seal - Unknown owner - C:\Program Files (x86)\Wooden Seal\bin\utilWoodenSeal.exe O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 15480 bytes ======Listing Processes====== C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k LocalService "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b9c81574-6699-4842-8f2d-5f27d2704fb8 -SystemEventPortName:HostProcess-18ea6ffa-63b3-4b00-b33b-dc5330d24f45 -IoCancelEventPortName:HostProcess-f746ccb1-6947-4024-9426-76cde521763c -NonStateChangingEventPortName:HostProcess-c4a01889-5632-4725-b38a-57726b87aa44 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ee04d26c-b3f0-49de-b994-8729d8a7d539 -DeviceGroupId:WudfDefaultDevicePool C:\WINDOWS\System32\svchost.exe -k NetworkService C:\WINDOWS\system32\igfxCUIService.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe C:\WINDOWS\System32\spoolsv.exe dashost.exe {addbf482-f212-4a87-b822b86fb79a4c2d} C:\WINDOWS\system32\BtwRSupportService.exe C:\WINDOWS\System32\svchost.exe -k utcsvc "C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe" "C:\Program Files\Intel\iCLS Client\HeciServer.exe" "C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service "c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" "C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe" "C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe" C:\WINDOWS\system32\svchost.exe -k appmodel "C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe" C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe C:\WINDOWS\SysWOW64\DllHost.exe /Processid:{CB45D4CA-8A34-4EF1-9957-6134E5270E83} "C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe" -Embedding "C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49265" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Sony\VAIO Care\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Sony Corporation\VAIO Care\inteldata' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Sony\VAIO Care\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Sony\VAIO Care\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\acpi_battery_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\sema_thermal_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\wifi_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Sony\VAIO Care\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Sony Corporation\VAIO Care\inteldata override_existing_tracing=no limit_output_by_filesize_mb=100' os='C:\Program Files\Sony\VAIO Care\ESRV\os_counters.txt' " C:\WINDOWS\system32\svchost.exe -k HPService "C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe" "C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe" C:\WINDOWS\system32\SearchIndexer.exe /Embedding "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe" "C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe" -System C:\WINDOWS\system32\DllHost.exe /Processid:{B32DAC50-97B2-4BF7-A8DB-418294621529} "C:\Program Files\Sony\VAIO Update\vuagent.exe" C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Program Files\Sony\VAIO Care\VCService.exe" "C:\Program Files\Sony\VAIO Care\VCAgent.exe" C:\WINDOWS\system32\WLANExt.exe 2756981987312 \??\C:\WINDOWS\system32\conhost.exe 0x4 \??\C:\WINDOWS\system32\conhost.exe 0x4 C:\WINDOWS\System32\WinLogon.exe -SpecialSession "dwm.exe" "C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe" sihost.exe taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} C:\WINDOWS\Explorer.EXE C:\Windows\System32\RuntimeBroker.exe -Embedding igfxEM.exe igfxHK.exe igfxTray.exe "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca "C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE" C:\WINDOWS\system32\SettingSyncHost.exe -Embedding "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE" "C:\Users\Peter\AppData\Local\Microsoft\BingSvc\BingSvc.exe" "C:\Users\Peter\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background "C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" "C:\Program Files\Sony\NFC Connection Utility\NFCConnectionUtility.exe" /AutoStart "C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE" "C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE" -Embedding "C:\Program Files (x86)\Microsoft Office\Root\Office16\MsoSync.exe" "" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49266" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Sony\VAIO Care\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Sony Corporation\VAIO Care\inteldata\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Sony\VAIO Care\ESRV\foreground_window_input.dll' " \??\C:\WINDOWS\system32\conhost.exe 0x4 C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup "C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe" /Stationary "C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer "C:\Program Files\Sony\VAIO Care\VCSystemTray.exe" CheckIoloLicense "C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe" -User C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding "C:\Users\Peter\AppData\Roaming\ACEStream\engine\ace_engine.exe" C:\Users\Peter\AppData\Roaming\ACEStream\engine\..\updater\ace_update.exe --allow-multiple --debug=0 "C:\Users\Peter\AppData\Local\mbot_be_014010185\upmbot_be_014010185.exe" -runhelper ctfmon.exe "C:\Program Files (x86)\TDataDld\TData.exe" "C:\Program Files (x86)\Wooden Seal\bin\utilWoodenSeal.exe" "C:\Program Files (x86)\Intel\Rs.exe" http://down.baidu2016.com/qq/test.txt "C:\Program Files (x86)\MTV20151125\MTView.exe" -mini "bugreport.exe" /ie ca0eea57-25f4-425b-b417-a0a1954dbba1 /fi 69260228-eacb-438f-b332-92fab51a95e8 /z "n=WoodenSeal&is=reamfpBE&dpt=20" "C:\Program Files (x86)\ADSafe\ADSafe.exe" "C:\Program Files (x86)\ADSafe\ADSafeSvc.exe" "C:\Program Files (x86)\Wooden Seal\updateWoodenSeal.exe" "fontdrvhost.exe" "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TAOFrame.exe" "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRtp.exe" -r "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe" /elevated /regrun "C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe" -Embedding "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRealTimeSpeedup.exe" C:\Windows\System32\SystemSettingsBroker.exe -Embedding C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849} "C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QMDeskTopGC.exe" /ShowNotifyNum 1805643904 22739464192 winlogon.exe "dwm.exe" "C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe" taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} sihost.exe igfxEM.exe C:\WINDOWS\Explorer.EXE igfxHK.exe igfxTray.exe "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" C:\WINDOWS\System32\LocationNotificationWindows.exe "C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" "C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE" "C:\Program Files\Sony\NFC Connection Utility\NFCConnectionUtility.exe" /AutoStart C:\Windows\System32\RuntimeBroker.exe -Embedding "" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49266" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Sony\VAIO Care\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Sony Corporation\VAIO Care\inteldata\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Sony\VAIO Care\ESRV\foreground_window_input.dll' " \??\C:\WINDOWS\system32\conhost.exe 0x4 C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup "C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe" /Stationary "C:\Program Files (x86)\ADSafe\ADSafe.exe" -svcstart "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE" "C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe" /elevated /regrun "C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe" -Embedding "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRealTimeSpeedup.exe" /parent=speedupapp /parent=speedupapp "C:\Program Files\Sony\VAIO Care\VCSystemTray.exe" -versionsave -reminder -autoupdate "C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe" -User C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding taskhostw.exe /updateInstalled /background /ie ca0eea57-25f4-425b-b417-a0a1954dbba1 /fi 69260228-eacb-438f-b332-92fab51a95e8 /z "n=WoodenSeal&is=reamfpBE&dpt=20" /ie ca0eea57-25f4-425b-b417-a0a1954dbba1 /fi 69260228-eacb-438f-b332-92fab51a95e8 /z "n=WoodenSeal&is=reamfpBE&dpt=20" "C:\Users\Peter\AppData\Local\Temp\MTViewbuildmtview_295.exe" "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe" /slient /PLUGIN_管家蓝屏修复 /pcmgr consent.exe 524 580 000001A4E38ABEE0 "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe" /slient /PLUGIN_管家蓝屏修复 /pcmgr "C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel="79516.3.1752817245\1145882281" "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 79516 "\\.\pipe\gecko-crash-server-pipe.79516" plugin "C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe" --proxy-stub-channel=Flash81576.52D50EA8.25966 --host-broker-channel=Flash81576.52D50EA8.16960 --host-pid=81576 --host-npapi-version=28 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_20_0_0_235.dll" "C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe" --channel=70416.0018F134.1018361530 --proxy-stub-channel=Flash81576.52D50EA8.25966 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_20_0_0_235.dll" --host-npapi-version=28 --type=renderer C:\WINDOWS\system32\wbem\wmiprvse.exe "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCLeakScan.exe" /start=heart "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c24ee20e-724d-439d-91bd-ca1e15190322 -SystemEventPortName:HostProcess-e25859be-edb5-4998-97ca-3bacdd716bc8 -IoCancelEventPortName:HostProcess-872424ed-e082-4f80-8808-5631f01240dc -NonStateChangingEventPortName:HostProcess-3129dc4c-caad-4c1e-8cbb-28dfc5a080f4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4a3b20aa-6028-47a0-8e1f-c1f9596efb00 -DeviceGroupId:WpdFsGroup "C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QMUsbGuard.exe" "E:\RSITx64.exe" ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =========Mozilla firefox========= ProfilePath - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\ghn50o7n.default prefs.js - "browser.startup.homepage" - "https://www.google.be/" prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=SL5MDF&PC=SL5M&q=" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 20.0.0.235 Plugin "Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42] "Description"=Intel IPT WebApi plugin "Path"=C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater] "Description"=This plugin updates Intel WebAPI component "Path"=C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.13.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Windows\SysWOW64\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.13.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@mcafee.com/McAfeeMssPlugin] "Description"=McAfee Mss Plugin "Path"=C:\Program Files\Sony\MSS\3.8.141\npMcAfeeMss.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0] "Description"=Microsoft SharePoint Plug-in for Firefox "Path"=C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/QQPCMgr] "Description"=QQPCMgr Detector "Path"=C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\npQMExtensionsMozilla.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0] "Description"=WildTangent Games App V2 Presence Detector Plugin "Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader] "Description"=Handles PDFs in-place in Firefox "Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 20.0.0.235 Plugin "Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.13.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Windows\system32\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.13.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] "Description"=Ag Player Plugin "Path"=c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll C:\Program Files (x86)\Mozilla Firefox\extensions\ belgiumeid@eid.belgium.be C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\ghn50o7n.default\extensions\ deskCutv2@gmail.com C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\ghn50o7n.default\searchplugins\ mysites123.xml ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}] Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2015-12-17 220840] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-19 551840] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}] 电脑管家网页防火墙 - C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TSWebMon64.dat [2015-12-24 415584] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}] Microsoft OneDrive for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2015-12-17 2083032] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-19 209824] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}] MSS+ Identifier - C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll [2014-01-16 96128] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-19 461216] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7a0ab196-76b2-4ee2-858e-7efdc93c3a47}] Wooden Seal 1.0.0.7 - C:\Program Files (x86)\Wooden Seal\WoodenSealbho.dll [2015-10-20 269040] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-19 170912] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-07-23 1403136] "Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [2013-03-14 10590208] "Bluetooth"=C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe [] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-21 3954368] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "BingSvc"=C:\Users\Peter\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-12 144008] "AceStream"=C:\Users\Peter\AppData\Roaming\ACEStream\engine\ace_engine.exe [2015-11-10 27000] "OneDrive"=C:\Users\Peter\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-15 551112] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey [] "PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2013-02-06 740376] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152] "Intel AppUp® center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2013-02-19 156000] "mbot_be_014010185"=C:\Program Files (x86)\mbot_be_014010185\mbot_be_014010185.exe [2015-12-23 3972784] "Rs"=C:\Program Files (x86)\Intel\Rs.exe [2015-12-05 188416] "MTview"=C:\Program Files (x86)\MTV20151125\MTView.exe [2015-11-25 1875464] " QQPCTray"=C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCTray.exe [2015-12-24 355296] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce] "upmbot_be_014010185.exe"=C:\Users\Peter\AppData\Local\mbot_be_014010185\upmbot_be_014010185.exe [2015-12-23 3319984] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DSCAutomationHostEnabled"=2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=221 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "midimapper"=midimap.dll "msacm.imaadpcm"=imaadp32.acm "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "msacm.msadpcm"=msadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "vidc.i420"=iyuv_32.dll "vidc.iyuv"=iyuv_32.dll "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvu9"=tsbyuv.dll "vidc.yvyu"=msyuv.dll "wavemapper"=msacm32.drv "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2015-12-24 14:08:28 ----D---- C:\Program Files\trend micro 2015-12-24 14:08:27 ----D---- C:\rsit 2015-12-24 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\drivers\TsFltMgr.sys 2015-12-24 12:38:28 ----A---- C:\Users\Peter\AppData\Roaming\GiftBag.db 2015-12-24 12:38:04 ----A---- C:\WINDOWS\system32\drivers\TAOKernel64.sys 2015-12-24 12:38:04 ----A---- C:\WINDOWS\system32\drivers\TAOAccelerator64.sys 2015-12-24 12:38:02 ----D---- C:\Program Files\Common Files\Tencent 2015-12-24 12:37:48 ----D---- C:\ProgramData\TXQMPC 2015-12-24 12:37:31 ----A---- C:\WINDOWS\system32\drivers\TFsFltX64.sys 2015-12-24 12:36:44 ----D---- C:\Program Files (x86)\Tencent 2015-12-24 12:36:37 ----D---- C:\Users\Peter\AppData\Roaming\Tencent 2015-12-24 12:36:35 ----D---- C:\ProgramData\Tencent 2015-12-24 12:31:43 ----D---- C:\Program Files (x86)\ADSafe 2015-12-24 12:31:43 ----A---- C:\WINDOWS\system32\drivers\DMRedirect.sys 2015-12-24 12:31:43 ----A---- C:\WINDOWS\system32\drivers\DMProtectEx64.sys 2015-12-24 12:31:40 ----D---- C:\Users\Peter\AppData\Roaming\ADSafe3 2015-12-24 12:30:22 ----A---- C:\WINDOWS\system32\drivers\{0b8efc7b-9d58-4cc6-9916-8445c9d2e11f}Gw64.sys 2015-12-24 12:29:35 ----D---- C:\Program Files (x86)\MTV20151125 2015-12-24 12:28:43 ----D---- C:\Program Files (x86)\Wooden Seal 2015-12-24 12:28:23 ----D---- C:\Program Files (x86)\TDataDld 2015-12-24 12:27:02 ----D---- C:\Users\Peter\AppData\Roaming\mysites123 2015-12-24 12:26:50 ----D---- C:\Program Files (x86)\mbot_be_014010185 2015-12-24 11:58:45 ----HD---- C:\OneDriveTemp 2015-12-19 13:50:33 ----AD---- C:\Program Files (x86)\Mozilla Firefox 2015-12-18 18:45:58 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2015-12-18 18:45:56 ----A---- C:\WINDOWS\system32\mshtml.dll 2015-12-18 18:45:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2015-12-18 18:45:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-12-18 18:45:49 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll 2015-12-18 18:45:49 ----A---- C:\WINDOWS\system32\mfcore.dll 2015-12-18 18:45:48 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll 2015-12-18 18:45:48 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2015-12-18 18:45:47 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-12-18 18:45:46 ----A---- C:\WINDOWS\system32\LicenseManager.dll 2015-12-18 18:45:45 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll 2015-12-18 18:45:45 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2015-12-18 18:45:45 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-12-18 18:45:44 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll 2015-12-18 18:45:44 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll 2015-12-18 18:45:44 ----A---- C:\WINDOWS\system32\mfnetsrc.dll 2015-12-18 18:45:44 ----A---- C:\WINDOWS\system32\iertutil.dll 2015-12-18 18:45:43 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll 2015-12-18 18:45:43 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-12-18 18:45:43 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll 2015-12-18 18:45:42 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll 2015-12-18 18:45:41 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll 2015-12-18 18:45:40 ----A---- C:\WINDOWS\system32\Windows.Media.dll 2015-12-18 18:45:40 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll 2015-12-18 18:45:40 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll 2015-12-18 18:45:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll 2015-12-18 18:45:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-12-18 18:45:39 ----A---- C:\WINDOWS\system32\MBMediaManager.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\wcmcsp.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\mfplat.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\mfds.dll 2015-12-18 18:45:38 ----A---- C:\WINDOWS\system32\InstallAgent.exe 2015-12-18 18:45:37 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll 2015-12-18 18:45:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll 2015-12-18 18:45:37 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll 2015-12-18 18:45:37 ----A---- C:\WINDOWS\system32\provengine.dll 2015-12-18 18:45:37 ----A---- C:\WINDOWS\system32\MSMPEG2ENC.DLL 2015-12-18 18:45:36 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll 2015-12-18 18:45:36 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll 2015-12-18 18:45:36 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe 2015-12-18 18:45:36 ----A---- C:\WINDOWS\system32\wcmsvc.dll 2015-12-18 18:45:36 ----A---- C:\WINDOWS\system32\mfreadwrite.dll 2015-12-18 18:45:36 ----A---- C:\WINDOWS\system32\MFPlay.dll 2015-12-18 18:45:36 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll 2015-12-18 18:45:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll 2015-12-18 18:45:35 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll 2015-12-18 18:45:35 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll 2015-12-18 18:45:35 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll 2015-12-18 18:45:35 ----A---- C:\WINDOWS\system32\provhandlers.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\system32\StoreAgent.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\system32\mfps.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\system32\MapConfiguration.dll 2015-12-18 18:45:34 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\SYSWOW64\MSMPEG2ENC.DLL 2015-12-18 18:45:33 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\wifitask.exe 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\qdvd.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\NetSetupApi.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\MDEServer.exe 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\MapsStore.dll 2015-12-18 18:45:33 ----A---- C:\WINDOWS\system32\dialserver.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\win32kfull.sys 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\provtool.exe 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\provisioningcsp.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\provdatastore.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\KnobsCore.dll 2015-12-18 18:45:32 ----A---- C:\WINDOWS\system32\flvprophandler.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\StorSvc.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\moshostcore.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\moshost.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\fveapibase.dll 2015-12-18 18:45:31 ----A---- C:\WINDOWS\system32\fveapi.dll 2015-12-18 18:45:30 ----A---- C:\WINDOWS\SYSWOW64\mos.dll 2015-12-18 18:45:30 ----A---- C:\WINDOWS\system32\mos.dll 2015-12-18 18:45:29 ----A---- C:\WINDOWS\SYSWOW64\BackgroundTransferHost.exe 2015-12-18 18:45:29 ----A---- C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll 2015-12-18 18:45:29 ----A---- C:\WINDOWS\system32\wificonnapi.dll 2015-12-18 18:45:29 ----A---- C:\WINDOWS\system32\StorageUsage.dll 2015-12-18 18:45:29 ----A---- C:\WINDOWS\system32\BackgroundTransferHost.exe 2015-12-08 21:02:19 ----A---- C:\WINDOWS\system32\edgehtml.dll 2015-12-08 21:02:16 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2015-12-08 21:02:15 ----A---- C:\WINDOWS\system32\ieframe.dll 2015-12-08 21:02:14 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll 2015-12-08 21:02:12 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\SYSWOW64\user32.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\win32kbase.sys 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\vbscript.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\user32.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\ntdll.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\GdiPlus.dll 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys 2015-12-08 21:02:11 ----A---- C:\WINDOWS\system32\comsvcs.dll 2015-12-08 21:02:10 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll 2015-12-08 21:02:10 ----A---- C:\WINDOWS\SYSWOW64\authui.dll 2015-12-08 21:02:10 ----A---- C:\WINDOWS\system32\authui.dll 2015-12-08 21:02:09 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll 2015-12-08 21:02:09 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll 2015-12-08 21:02:09 ----A---- C:\WINDOWS\system32\shutdownux.dll 2015-12-08 21:02:09 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys 2015-12-08 21:02:09 ----A---- C:\WINDOWS\system32\catsrvut.dll 2015-12-08 21:02:08 ----A---- C:\WINDOWS\system32\wshrm.dll 2015-12-08 21:02:08 ----A---- C:\WINDOWS\system32\win32k.sys 2015-12-08 21:02:08 ----A---- C:\WINDOWS\system32\readingviewresources.dll 2015-12-03 19:16:29 ----AD---- C:\Program Files (x86)\Mozilla Thunderbird 2015-12-03 17:10:18 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-12-03 17:10:18 ----A---- C:\WINDOWS\system32\cdp.dll 2015-12-03 17:10:16 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll 2015-12-03 17:10:16 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll 2015-12-03 17:10:16 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-03 17:10:11 ----A---- C:\WINDOWS\system32\XblAuthManager.dll 2015-12-03 17:10:11 ----A---- C:\WINDOWS\system32\InputService.dll 2015-12-03 17:10:11 ----A---- C:\WINDOWS\system32\d3d11.dll 2015-12-03 17:10:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2015-12-03 17:10:09 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll 2015-12-03 17:10:09 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll 2015-12-03 17:10:09 ----A---- C:\WINDOWS\system32\usermgr.dll 2015-12-03 17:10:09 ----A---- C:\WINDOWS\system32\modernexecserver.dll 2015-12-03 17:10:09 ----A---- C:\WINDOWS\system32\MapControlCore.dll 2015-12-03 17:10:09 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll 2015-12-03 17:10:08 ----A---- C:\WINDOWS\system32\wwansvc.dll 2015-12-03 17:10:08 ----A---- C:\WINDOWS\system32\PlayToManager.dll 2015-12-03 17:10:08 ----A---- C:\WINDOWS\system32\msftedit.dll 2015-12-03 17:10:08 ----A---- C:\WINDOWS\system32\generaltel.dll 2015-12-03 17:10:07 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll 2015-12-03 17:10:07 ----A---- C:\WINDOWS\system32\wuaueng.dll 2015-12-03 17:10:07 ----A---- C:\WINDOWS\system32\wininet.dll 2015-12-03 17:10:07 ----A---- C:\WINDOWS\system32\enterprisecsps.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\system32\Unistore.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\system32\TextInputFramework.dll 2015-12-03 17:10:06 ----A---- C:\WINDOWS\system32\services.exe 2015-12-03 17:10:06 ----A---- C:\WINDOWS\system32\MbaeApi.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\system32\wpncore.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\system32\urlmon.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\system32\SensorService.dll 2015-12-03 17:10:05 ----A---- C:\WINDOWS\system32\DeviceCensus.exe 2015-12-03 17:10:04 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll 2015-12-03 17:10:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\system32\msfeeds.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\system32\LogonController.dll 2015-12-03 17:10:03 ----A---- C:\WINDOWS\system32\drivers\cng.sys 2015-12-03 17:10:03 ----A---- C:\WINDOWS\system32\cryptngc.dll 2015-12-03 17:10:02 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2015-12-03 17:10:02 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll 2015-12-03 17:10:02 ----A---- C:\WINDOWS\system32\lsasrv.dll 2015-12-03 17:10:02 ----A---- C:\WINDOWS\system32\dmenrollengine.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\system32\wwapi.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\system32\WWanAPI.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll 2015-12-03 17:10:01 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys 2015-12-03 17:10:00 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll 2015-12-03 17:10:00 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll 2015-12-03 17:10:00 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll 2015-12-03 17:10:00 ----A---- C:\WINDOWS\system32\wuauclt.exe 2015-12-03 17:10:00 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll 2015-12-03 17:10:00 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys 2015-12-03 17:09:59 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll 2015-12-03 17:09:59 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll 2015-12-03 17:09:59 ----A---- C:\WINDOWS\system32\SRH.dll 2015-12-03 17:09:59 ----A---- C:\WINDOWS\system32\mssign32.dll 2015-12-03 17:09:59 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2015-12-03 17:09:59 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2015-12-03 17:09:59 ----A---- C:\WINDOWS\system32\drivers\capimg.sys 2015-12-03 17:09:58 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll 2015-12-03 17:09:58 ----A---- C:\WINDOWS\system32\iesetup.dll 2015-12-03 17:09:58 ----A---- C:\WINDOWS\system32\CellularAPI.dll 2015-12-03 17:09:57 ----A---- C:\WINDOWS\system32\iernonce.dll 2015-12-03 17:09:56 ----A---- C:\WINDOWS\system32\wwanmm.dll 2015-12-03 17:09:55 ----A---- C:\WINDOWS\system32\wwanconn.dll 2015-12-03 17:09:55 ----A---- C:\WINDOWS\system32\mdmmigrator.dll 2015-12-03 17:09:55 ----A---- C:\WINDOWS\system32\dmcertinst.exe 2015-12-03 17:09:55 ----A---- C:\WINDOWS\system32\BingMaps.dll 2015-12-03 17:09:54 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll 2015-12-03 17:09:54 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll 2015-12-03 17:09:54 ----A---- C:\WINDOWS\system32\pnidui.dll 2015-12-03 17:09:54 ----A---- C:\WINDOWS\system32\jsproxy.dll 2015-12-03 17:09:53 ----A---- C:\WINDOWS\system32\SRHInproc.dll 2015-12-03 17:09:52 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll 2015-12-03 17:09:52 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll 2015-12-03 17:09:52 ----A---- C:\WINDOWS\system32\JpMapControl.dll 2015-12-03 17:09:51 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll 2015-12-03 17:09:51 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll 2015-12-03 17:09:51 ----A---- C:\WINDOWS\system32\wwancfg.dll 2015-12-03 17:09:51 ----A---- C:\WINDOWS\system32\NMAA.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\system32\wwanprotdim.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\system32\Wwanpref.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll 2015-12-03 17:09:50 ----A---- C:\WINDOWS\system32\offlinelsa.dll 2015-12-03 17:09:49 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll 2015-12-03 17:09:49 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll 2015-12-03 17:09:49 ----A---- C:\WINDOWS\system32\wininetlui.dll 2015-12-03 17:09:49 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2015-12-03 17:09:48 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\system32\MosStorage.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll 2015-12-03 17:09:47 ----A---- C:\WINDOWS\system32\enrollmentapi.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\wups2.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\wsplib.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\rilproxy.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\nativemap.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\MosHostClient.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\mapstoasttask.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\MapsCSP.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll 2015-12-03 17:09:46 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll 2015-12-03 17:09:45 ----A---- C:\WINDOWS\system32\WordBreakers.dll 2015-12-03 17:09:45 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll 2015-12-03 17:09:43 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll 2015-12-03 17:09:43 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll 2015-12-03 17:09:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll 2015-12-03 17:09:42 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll 2015-12-03 17:09:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2015-12-03 17:09:42 ----A---- C:\WINDOWS\system32\NmaDirect.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\system32\MosResource.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2015-12-03 17:09:41 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll 2015-11-30 15:30:20 ----D---- C:\WINDOWS\Minidump 2015-11-26 17:38:48 ----D---- C:\WINDOWS\system32\SleepStudy 2015-11-25 15:36:56 ----D---- C:\ProgramData\USOShared 2015-11-25 15:36:15 ----SHD---- C:\ProgramData\Application Data 2015-11-25 15:29:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2015-11-25 15:24:28 ----ASH---- C:\hiberfil.sys 2015-11-25 15:12:07 ----SD---- C:\Users\Peter\AppData\Roaming\Microsoft 2015-11-25 15:08:17 ----D---- C:\WINDOWS\SYSWOW64\RTCOM 2015-11-25 15:08:17 ----D---- C:\Program Files\Realtek 2015-11-25 15:08:14 ----D---- C:\WINDOWS\SYSWOW64\sda 2015-11-25 15:08:01 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL 2015-11-25 15:08:01 ----A---- C:\WINDOWS\system32\OpenCL.DLL 2015-11-25 15:07:55 ----D---- C:\Program Files\Intel 2015-11-25 15:07:13 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll 2015-11-25 15:06:43 ----D---- C:\Program Files\Synaptics 2015-11-25 15:05:34 ----AS---- C:\WINDOWS\bootstat.dat 2015-11-25 15:04:58 ----D---- C:\WINDOWS\Prefetch 2015-11-25 15:04:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT 2015-11-25 15:03:18 ----SHD---- C:\Recovery 2015-11-25 15:03:10 ----DC---- C:\WINDOWS\Panther 2015-11-25 14:58:09 ----D---- C:\Windows.old 2015-11-25 14:57:25 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll 2015-11-25 14:57:25 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe 2015-11-25 14:57:25 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\mf.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\WWAHost.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\Windows.UI.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\wimserv.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\wimgapi.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\tzautoupdate.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\twinui.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\twinui.appcore.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\tetheringservice.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\tetheringclient.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\shell32.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\provops.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\policymanager.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\PhoneProviders.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\mfpmp.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\mf.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\lpk.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\KnobsCsp.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\kerberos.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\jscript.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\fontsub.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\fontdrvhost.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\EncDump.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\drivers\tdx.sys 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\drivers\afd.sys 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\deviceaccess.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\dcomp.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\dciman32.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\bcastdvr.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\audiosrv.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\AudioSes.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\AudioEng.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\audiodg.exe 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\atmlib.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\atmfd.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\AppCapture.dll 2015-11-25 14:57:24 ----A---- C:\WINDOWS\system32\acmigration.dll 2015-11-25 14:55:01 ----D---- C:\WINDOWS\system32\Microsoft 2015-11-25 14:52:05 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer 2015-11-25 14:52:04 ----D---- C:\Program Files\Reference Assemblies 2015-11-25 14:52:04 ----D---- C:\Program Files\MSBuild 2015-11-25 14:52:04 ----D---- C:\Program Files (x86)\Reference Assemblies 2015-11-25 14:52:04 ----D---- C:\Program Files (x86)\MSBuild 2015-11-25 14:51:23 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe 2015-11-25 14:51:23 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll 2015-11-25 14:51:23 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-11-25 14:51:19 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe 2015-11-25 14:51:19 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-11-25 14:51:19 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll ======List of files/folders modified in the last 1 month====== 2015-12-24 14:08:28 ----RD---- C:\Program Files 2015-12-24 14:03:05 ----D---- C:\WINDOWS\Temp 2015-12-24 14:01:08 ----D---- C:\WINDOWS\system32\sru 2015-12-24 13:31:56 ----D---- C:\WINDOWS\AppReadiness 2015-12-24 13:30:18 ----D---- C:\WINDOWS\system32\GroupPolicy 2015-12-24 13:03:25 ----SHD---- C:\$Recycle.Bin 2015-12-24 12:42:17 ----D---- C:\WINDOWS\SysWOW64 2015-12-24 12:39:03 ----SHD---- C:\System Volume Information 2015-12-24 12:38:42 ----D---- C:\WINDOWS\SYSWOW64\drivers 2015-12-24 12:38:04 ----D---- C:\WINDOWS\system32\drivers 2015-12-24 12:38:02 ----D---- C:\Program Files\Common Files 2015-12-24 12:37:48 ----HD---- C:\ProgramData 2015-12-24 12:37:34 ----RSD---- C:\WINDOWS\Fonts 2015-12-24 12:37:30 ----D---- C:\Program Files (x86)\Common Files 2015-12-24 12:36:44 ----RD---- C:\Program Files (x86) 2015-12-24 12:30:25 ----A---- C:\WINDOWS\win.ini 2015-12-24 12:29:06 ----D---- C:\Program Files (x86)\Intel 2015-12-24 12:28:56 ----RSD---- C:\WINDOWS\assembly 2015-12-24 12:21:05 ----D---- C:\Users\Peter\AppData\Roaming\.ACEStream 2015-12-24 12:16:47 ----D---- C:\WINDOWS\Microsoft.NET 2015-12-24 12:16:47 ----D---- C:\Users\Peter\AppData\Roaming\vlc 2015-12-23 16:36:19 ----D---- C:\WINDOWS\system32\config 2015-12-23 12:45:26 ----D---- C:\WINDOWS\System32 2015-12-23 12:45:26 ----D---- C:\WINDOWS\INF 2015-12-23 12:43:38 ----A---- C:\WINDOWS\SYSWOW64\log.txt 2015-12-23 12:41:51 ----D---- C:\WINDOWS\WinSxS 2015-12-23 12:40:28 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-22 22:15:44 ----D---- C:\WINDOWS\system32\appraiser 2015-12-22 22:15:43 ----D---- C:\WINDOWS\Provisioning 2015-12-22 22:15:42 ----D---- C:\WINDOWS\bcastdvr 2015-12-22 22:15:42 ----D---- C:\WINDOWS\AppPatch 2015-12-22 22:15:41 ----D---- C:\WINDOWS\system32\DriverStore 2015-12-22 19:56:51 ----D---- C:\Users\Peter\AppData\Roaming\Kodi 2015-12-22 16:40:28 ----HD---- C:\Program Files\WindowsApps 2015-12-22 16:36:15 ----D---- C:\WINDOWS\CbsTemp 2015-12-18 18:43:37 ----D---- C:\Windows 2015-12-18 18:43:28 ----D---- C:\WINDOWS\system32\catroot2 2015-12-17 11:28:18 ----SHD---- C:\WINDOWS\Installer 2015-12-17 11:28:16 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft 2015-12-17 11:26:01 ----AD---- C:\Program Files (x86)\Microsoft Office 2015-12-16 10:44:45 ----SD---- C:\ProgramData\Microsoft 2015-12-10 14:40:51 ----D---- C:\WINDOWS\system32\oobe 2015-12-10 14:40:50 ----D---- C:\Program Files\Internet Explorer 2015-12-10 14:40:50 ----D---- C:\Program Files (x86)\Internet Explorer 2015-12-10 14:39:44 ----AD---- C:\Program Files\Microsoft Silverlight 2015-12-10 14:39:43 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2015-12-09 20:11:29 ----D---- C:\WINDOWS\system32\MRT 2015-12-09 04:39:31 ----N---- C:\WINDOWS\system32\MpSigStub.exe 2015-12-07 12:24:24 ----D---- C:\WINDOWS\rescache 2015-12-06 17:53:10 ----D---- C:\Users\Peter\AppData\Roaming\FileZilla 2015-12-05 10:43:54 ----D---- C:\WINDOWS\system32\WDI 2015-12-04 22:51:10 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2015-12-04 22:51:09 ----D---- C:\WINDOWS\system32\SystemResetPlatform 2015-12-04 22:51:09 ----D---- C:\WINDOWS\system32\nl-NL 2015-12-04 22:51:09 ----D---- C:\WINDOWS\system32\drivers\UMDF 2015-12-04 18:56:12 ----D---- C:\WINDOWS\system32\CatRoot 2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe 2015-11-28 19:11:46 ----D---- C:\WINDOWS\Logs 2015-11-26 22:06:01 ----D---- C:\WINDOWS\LiveKernelReports 2015-11-26 16:03:47 ----D---- C:\WINDOWS\debug 2015-11-26 11:02:43 ----D---- C:\WINDOWS\system32\LogFiles 2015-11-26 09:29:04 ----D---- C:\WINDOWS\system32\restore 2015-11-26 09:24:25 ----D---- C:\WINDOWS\system32\NDF 2015-11-26 09:19:43 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-11-26 04:19:07 ----D---- C:\WINDOWS\appcompat 2015-11-25 16:14:03 ----RD---- C:\WINDOWS\DevicesFlow 2015-11-25 16:01:51 ----D---- C:\WINDOWS\system32\Tasks 2015-11-25 15:57:01 ----RD---- C:\WINDOWS\PurchaseDialog 2015-11-25 15:56:59 ----RD---- C:\WINDOWS\PrintDialog 2015-11-25 15:56:59 ----RD---- C:\Users 2015-11-25 15:56:57 ----RD---- C:\WINDOWS\MiracastView 2015-11-25 15:56:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel 2015-11-25 15:36:56 ----D---- C:\ProgramData\USOPrivate 2015-11-25 15:36:15 ----D---- C:\Program Files\Windows NT 2015-11-25 15:36:02 ----D---- C:\WINDOWS\system32\WinBioDatabase 2015-11-25 15:35:50 ----D---- C:\WINDOWS\SoftwareDistribution 2015-11-25 15:34:17 ----D---- C:\WINDOWS\Registration 2015-11-25 15:33:04 ----D---- C:\WINDOWS\Tasks 2015-11-25 15:29:13 ----D---- C:\WINDOWS\system32\drivers\etc 2015-11-25 15:26:42 ----D---- C:\WINDOWS\system32\wbem 2015-11-25 15:24:06 ----D---- C:\WINDOWS\system32\FxsTmp 2015-11-25 15:23:51 ----D---- C:\WINDOWS\SYSWOW64\VAIO Startup Setting Tool 2015-11-25 15:17:10 ----D---- C:\WINDOWS\SYSWOW64\zh-TW 2015-11-25 15:17:09 ----D---- C:\WINDOWS\SYSWOW64\zh-HK 2015-11-25 15:17:09 ----D---- C:\WINDOWS\SYSWOW64\zh-CN 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\uk-UA 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\tr-TR 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\th-TH 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\sysprep 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\sv-SE 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\sl-SI 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\sk-SK 2015-11-25 15:17:08 ----D---- C:\WINDOWS\SYSWOW64\ru-RU 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\ro-RO 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\pt-PT 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\pt-BR 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\pl-PL 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\nb-NO 2015-11-25 15:17:07 ----D---- C:\WINDOWS\SYSWOW64\migwiz 2015-11-25 15:17:06 ----D---- C:\WINDOWS\SYSWOW64\lv-LV 2015-11-25 15:17:06 ----D---- C:\WINDOWS\SYSWOW64\lt-LT 2015-11-25 15:17:06 ----D---- C:\WINDOWS\SYSWOW64\ko-KR 2015-11-25 15:17:06 ----D---- C:\WINDOWS\SYSWOW64\ja-JP 2015-11-25 15:17:06 ----D---- C:\WINDOWS\SYSWOW64\it-IT 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\IME 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\hu-HU 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\hr-HR 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\he-IL 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\fr-FR 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\fi-FI 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\et-EE 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\es-ES 2015-11-25 15:17:05 ----D---- C:\WINDOWS\SYSWOW64\en-GB 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\el-GR 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\de-DE 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\da-DK 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\bg-BG 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\beidpp 2015-11-25 15:17:04 ----D---- C:\WINDOWS\SYSWOW64\ar-SA 2015-11-25 15:17:02 ----D---- C:\WINDOWS\system32\zh-TW 2015-11-25 15:17:02 ----D---- C:\WINDOWS\system32\zh-HK 2015-11-25 15:17:01 ----D---- C:\WINDOWS\system32\zh-CN 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\WinBioPlugIns 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\uk-UA 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\tr-TR 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\th-TH 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\sv-SE 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\sr-Latn-RS 2015-11-25 15:16:59 ----D---- C:\WINDOWS\system32\spool 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\sl-SI 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\sk-SK 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\ru-RU 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\ro-RO 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\pt-PT 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\pt-BR 2015-11-25 15:16:57 ----D---- C:\WINDOWS\system32\pl-PL 2015-11-25 15:16:56 ----D---- C:\WINDOWS\system32\nb-NO 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\MUI 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\migration 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\lv-LV 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\lt-LT 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\ko-KR 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\ja-JP 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\it-IT 2015-11-25 15:16:55 ----D---- C:\WINDOWS\system32\InputMethod 2015-11-25 15:16:54 ----D---- C:\WINDOWS\system32\IME 2015-11-25 15:16:54 ----D---- C:\WINDOWS\system32\hu-HU 2015-11-25 15:16:54 ----D---- C:\WINDOWS\system32\hr-HR 2015-11-25 15:16:54 ----D---- C:\WINDOWS\system32\he-IL 2015-11-25 15:16:54 ----D---- C:\WINDOWS\system32\fr-FR 2015-11-25 15:16:53 ----DC---- C:\WINDOWS\system32\DRVSTORE 2015-11-25 15:16:53 ----D---- C:\WINDOWS\system32\fi-FI 2015-11-25 15:16:53 ----D---- C:\WINDOWS\system32\et-EE 2015-11-25 15:16:53 ----D---- C:\WINDOWS\system32\es-ES 2015-11-25 15:16:53 ----D---- C:\WINDOWS\system32\en-GB 2015-11-25 15:16:53 ----D---- C:\WINDOWS\system32\el-GR 2015-11-25 15:16:52 ----D---- C:\WINDOWS\system32\de-DE 2015-11-25 15:16:52 ----D---- C:\WINDOWS\system32\da-DK 2015-11-25 15:16:52 ----D---- C:\WINDOWS\system32\cs-CZ 2015-11-25 15:15:23 ----D---- C:\WINDOWS\system32\bg-BG 2015-11-25 15:15:23 ----D---- C:\WINDOWS\system32\ar-SA 2015-11-25 15:15:20 ----D---- C:\WINDOWS\Resources 2015-11-25 15:15:19 ----D---- C:\WINDOWS\PolicyDefinitions 2015-11-25 15:15:17 ----D---- C:\WINDOWS\MediaViewer 2015-11-25 15:15:16 ----D---- C:\WINDOWS\InputMethod 2015-11-25 15:15:14 ----D---- C:\WINDOWS\IME 2015-11-25 15:15:10 ----D---- C:\WINDOWS\DigitalLocker 2015-11-25 15:15:09 ----D---- C:\WINDOWS\ADFS 2015-11-25 15:15:06 ----D---- C:\ProgramData\PRICache 2015-11-25 15:14:54 ----D---- C:\Program Files (x86)\Windows Mail 2015-11-25 15:14:52 ----D---- C:\Program Files (x86)\Microsoft.NET 2015-11-25 15:14:49 ----D---- C:\Program Files\Windows Mail 2015-11-25 15:14:46 ----D---- C:\Program Files\WIDCOMM 2015-11-25 15:14:45 ----D---- C:\Program Files\Common Files\System 2015-11-25 15:14:45 ----D---- C:\Program Files\Common Files\microsoft shared 2015-11-25 15:14:32 ----D---- C:\WINDOWS\system32\CodeIntegrity 2015-11-25 15:13:55 ----D---- C:\WINDOWS\system32\Recovery 2015-11-25 15:11:12 ----D---- C:\WINDOWS\system32\Sysprep 2015-11-25 15:04:18 ----D---- C:\WINDOWS\ServiceProfiles 2015-11-25 14:57:53 ----D---- C:\WINDOWS\SYSWOW64\migration 2015-11-25 14:57:53 ----D---- C:\WINDOWS\SYSWOW64\Dism 2015-11-25 14:57:52 ----D---- C:\WINDOWS\system32\Dism 2015-11-25 14:52:05 ----D---- C:\WINDOWS\SYSWOW64\MUI 2015-11-25 14:35:28 ----HD---- C:\$WINDOWS.~BT ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 DMProtectEx;DMProtectEx; C:\WINDOWS\system32\drivers\DMProtectEx64.sys [2015-12-03 232192] R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-02-08 647736] R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536] R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040] R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192] R1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QMUdisk64.sys [2015-12-14 156984] R1 softaal;softaal; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\softaal64.sys [2015-12-24 35128] R1 TSSysKit;TSSysKit; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TSSysKit64.sys [2015-12-24 87352] R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616] R2 QQSysMonX64;QQSysMonX64; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQSysMonX64.sys [2015-12-24 138040] R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848] R2 TAOAccelerator;Tencent TAOAccelerator driver.; \??\C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys [2015-12-24 88632] R2 TAOKernelDriver;Tencent TAO kernel driver.; \??\C:\WINDOWS\system32\Drivers\TAOKernel64.sys [2015-12-24 274232] R3 bcbtums;@oem28.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312] R3 BCM42RLY;BCM42RLY; C:\WINDOWS\system32\drivers\BCM42RLY.sys [2013-03-14 23760] R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Stuurprogramma voor Broadcom 802.11-netwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2013-03-14 6971056] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2015-10-30 84992] R3 DMRedirect;DMRedirect; \??\C:\WINDOWS\system32\drivers\DMRedirect.sys [2015-12-03 52480] R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-07-23 4598528] R3 IntcDAud;@oem5.inf,%IntcDAud.SvcDesc%;Intel® Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112] R3 iwdbus;@oem29.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976] R3 MEIx64;@oem18.inf,%HECI_SvcDesc%;Intel® Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-01-23 62784] R3 RSPCIESTOR;@oem26.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2015-09-04 384760] R3 RTL8168;@oem1.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2013-01-23 760032] R3 semav6msr64;semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [2015-10-12 29352] R3 SFEP;@oem4.inf,%SvcDesc%;Sony Firmware Extension Parser; C:\WINDOWS\System32\drivers\SFEP.sys [2012-07-11 14336] R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-09-21 51392] R3 SynTP;@oem25.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-09-21 627392] R3 TFsFlt;TFsFlt; C:\WINDOWS\system32\Drivers\TFsFltX64.sys [2015-12-24 87864] S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800] S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168] S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2015-02-13 80160] S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208] S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720] S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144] S1 TSDefenseBt;TSDefenseBt; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TSDefenseBT64.sys [2015-12-24 28984] S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728] S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-10-30 112640] S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy-stuurprogramma; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-10-30 245248] S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2015-10-30 953344] S3 btwampfl;@oem28.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160] S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376] S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 117248] S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992] S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016] S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel® Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408] S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel® Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888] S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800] S3 intaud_WaveExtensible;@oem12.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240] S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624] S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376] S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128] S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656] S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-10-30 175104] S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952] S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592] S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056] S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816] S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048] S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-09-27 81088] R2 ADSafeSvc;ADSafe Host Service; C:\Program Files (x86)\ADSafe\ADSafeSvc.exe [2015-12-03 131840] R2 BcmBtRSupport;@oem28.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992] R2 ClickToRunSvc;Klik-en-klaar-service van Microsoft Office; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2015-12-04 2748600] R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] R2 ESRV_SVC;Energy Server Service; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [2015-08-26 413336] R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R2 igfxCUIService1.0.0.0;Intel® HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-08-27 330136] R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-19 634632] R2 Intel® ME Service;Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [2013-01-23 129824] R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [2013-01-23 166688] R2 LMS;Intel® Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [2013-01-23 277792] R2 OneSyncSvc_377d9b6;Host synchroniseren_377d9b6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R2 OneSyncSvc_44559c3;Host synchroniseren_44559c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2013-02-06 483864] R2 QQPCRTP;QQPCMgr RTP Service; C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\QQPCRTP.exe [2015-12-24 301728] R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-21 255168] R2 TDataSvr;TDataSvr; C:\Program Files (x86)\TDataDld\TData.exe [2015-12-22 228072] R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R3 cphs;Intel® Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744] R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696] R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] R3 PimIndexMaintenanceSvc_377d9b6;Contact Data_377d9b6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R3 PimIndexMaintenanceSvc_44559c3;Contact Data_44559c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] R3 TAOFrame;TAOFrame; C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16923.222\TAOFrame.exe [2015-12-24 297952] S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S2 OneSyncSvc_9060340;Host synchroniseren_9060340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09 269504] S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744] S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] S3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS; C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752] S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 McComponentHostServiceSony;McAfee Security Scan Component Host Service for Sony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [2014-01-16 289256] S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 MessagingService_377d9b6;MessagingService_377d9b6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 MessagingService_44559c3;MessagingService_44559c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 MessagingService_9060340;MessagingService_9060340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-19 147624] S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 NetworkSupport;NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [2013-02-05 639584] S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-12-04 202928] S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 PimIndexMaintenanceSvc_9060340;Contact Data_9060340; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944] S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408] S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S3 SOHCImp;VAIO Content Importer; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2013-01-29 124568] S3 SOHDms;VAIO Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2013-03-01 463000] S3 SOHDs;VAIO Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-01-29 79000] S3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952] S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304] S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944] -----------------EOF----------------- log.txt
  19. Hoi Pc Helpers Allereerst een zalige Kerst toegewenst Is het mogelijk om mijn logje eens na te kijken Ik zit zeker met malware hopelijk is er ook geen virus bij Alvast bedankt Grts Peter
  20. Probleem is opgelost op volgende manier - start op in de veilige modus - open het register (start/uitvoeren/regedit) - ga naar "HKEY_LOCAL_MACHINE/SOFTWARE/Microsoft/Windows NT/CurrentVersion/Profilelist onder profilelist zie je subsleutels met lange nummers en letters. Bij 1 staat waarschijnlijk de extentie .bak en eenzelfde sleutel zonder extentie. Benoem de subsleutel zonder extentie met de extentie .oud Haal bij de subsleutel met de extentie .bak de extentie .bak weg verlaat het register en start opnieuw op. Als het goed is moet het nu in orde zijn. Bij mij heeft het gewerkt. Had hier verschillende varianten op gezien maar dit was de enige degelijke uitleg "eenzelfde sleutel zonder en met extentie .bak" en opstarten vanuit veilige modus vanuit het probleem account en niet via een ander gebruiker grts Peter
  21. beste Helpers, sorry dat ik hier op in pik maar ik heb hetzelfde probleem met een nog andere afwijking Bij de vrouw haar laptop met Win7 hebben wij dit probleem ook met mijn account Wanneer ik naar de gebruikers ga kijken heb ik nog een temp-user (is dit normaal) dus de oplossing in stap 1 met die regedit geeft mij zo 3 mappen aan met S-1-5 en nog een reeks getallen 1 hiervan met . bak dit is de temp user de andere 2 zonder (voor elke gebruiker 1) 1 gebruiker werkt nochtans ook zonder die . bak namelijk de gebruiker van mijn vrouw Als ik het goed begrijp moet ik die zonder moeten veranderen naar .bak Wat doe ik dan met die temp-user en die user van mijn vrouw Het lijkt mij nogal onlogisch dit te veranderen als het wel werkt vandaar bedankt voor het meedenken grts Peter
  22. Hensyr, Bedankt voor de hulp Het is mij gelukt de Windows draait stabiel Ga het nog wel eens bekijken of ik mijn gekochte cdrom versie niet geïnstalleerd krijg Voor nu gaan wij dit topic als opgelost markeren grts Peter
  23. ik zie dat ik nu Windows7 profetional heb de cd rom die ik heb is de home premium editie dus deze laatste laterinstaleren zal geen nut hebben want dat is dan downgraden grts Peter - - - Updated - - - De Laptop was orgineel met windows XP dus die zal ook niet werken grts
  24. welke productcode kan ik nu gebruiken om deze Windows7 te activeren? die van mijn cdrom werkt niet
  25. Hensyr, Ik ben begonnen met de installatie van Windows 7 op de laptop Bedankt voor de hulp, zal u op de hoogte houden in verband met de afloop grts Peter
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.