Zoek.exe v5.0.0.0 Updated 02-June-2014 Tool run by Georgia on za 14-06-2014 at 16:52:04,47. Microsoft Windows 8 6.2.9200 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Georgia\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 14-6-2014 16:55:09 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\Users\Georgia\AppData\Roaming\Solvusoft deleted successfully C:\Users\Georgia\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-628973499-3763302461-3193448878-1002\Software\Microsoft\Internet Explorer\SearchScopes\{0A714E32-51FB-4B29-9C99-AB79415388E9} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{d7356335-81bf-4769-bfbd-2e2889138641} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d7356335-81bf-4769-bfbd-2e2889138641} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Running Processes ====================== C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe C:\Users\Georgia\Downloads\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ASO3DiskOptimizer deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d7356335-81bf-4769-bfbd-2e2889138641}] ==== Deleting Files \ Folders ====================== C:\Users\Georgia\AppData\Roaming\Solvusoft not found C:\Program Files (x86)\RegClean Pro deleted C:\Users\Georgia\AppData\Roaming\OpenCandy deleted C:\Program Files (x86)\ConstaSurf deleted C:\ProgramData\Systweak deleted C:\Program Files (x86)\Advanced System Protector deleted C:\Users\Georgia\AppData\Roaming\Systweak deleted C:\Users\Georgia\daemonprocess.txt deleted C:\Users\Georgia\.android deleted C:\PROGRA~2\Uniblue\SpeedUpMyPC deleted C:\PROGRA~2\Advanced System Optimizer 3 deleted C:\PROGRA~2\GreenTree Applications deleted C:\Users\Georgia\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SpeedUpMyPC.lnk deleted C:\Users\Georgia\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Advanced System Optimizer.lnk deleted C:\Users\Georgia\AppData\Roaming\Uniblue deleted C:\PROGRA~3\CyberlinkOutput.txt deleted C:\PROGRA~3\YTD Video Downloader deleted C:\PROGRA~3\Package Cache deleted C:\Users\Georgia\AppData\Local\nsh9E63.tmp deleted C:\Users\Georgia\AppData\Local\Mobogenie deleted C:\Users\Georgia\AppData\Local\cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Optimizer 3 deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector deleted C:\WINDOWS\SysNative\roboot64.exe deleted C:\WINDOWS\Tasks\SpeedUpMyPC Maintenance.job deleted C:\WINDOWS\SysNative\sasnative64.exe deleted C:\Users\Georgia\Downloads\SoftonicDownloader_voor_daemon-tools-lite.exe deleted C:\Users\Georgia\AppData\LocalLow\somotomoviestoolbar1 deleted C:\WINDOWS\tasks\AdvancedDriverUpdater_UPDATES.job deleted C:\windows\SysNative\tasks\AdvancedDriverUpdater_UPDATES deleted C:\windows\SysNative\tasks\ASO-AutoCheckUpdate7Days deleted C:\WINDOWS\tasks\ASO-AutoCheckUpdate7Days.job deleted C:\windows\SysNative\tasks\ASO-OneClickCare deleted C:\WINDOWS\tasks\ASO-OneClickCare.job deleted C:\windows\SysNative\tasks\RegClean Pro_DEFAULT deleted C:\windows\SysNative\tasks\RegClean Pro_UPDATES deleted C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job deleted C:\WINDOWS\tasks\RegClean Pro_UPDATES.job deleted C:\Users\Georgia\Documents\Mobogenie deleted "C:\Users\Georgia\AppData\Local\LumaEmu" deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 3555 MB CPU Info: AMD A4-4300M APU with Radeon(tm) HD Graphics CPU Speed: 2519,4 MHz Sound Card: Luidsprekers / HP (IDT High Def | Display Adapters: AMD Radeon HD 7420G | AMD Radeon HD 7420G | AMD Radeon HD 7420G | AMD Radeon HD 7420G Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1600 X 900 - 32 bit Network: Network Present Network Adapters: Microsoft Wi-Fi Direct Virtual Adapter | Bluetooth-apparaat (Personal Area Network) | Ralink RT3290 802.11bgn Wi-Fi Adapter | Realtek PCIe FE Family Controller CD / DVD Drives: 2x (E: | F: | ) E: hp DVD A DS8A9SH | F: DTSOFT BDROM Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 5 Button Wheel Mouse Present Hard Disks: C: 446,3GB | D: 18,2GB Hard Disks - Free: C: 252,9GB | D: 2,3GB Manufacturer *: Insyde BIOS Info: AT/AT COMPATIBLE | | HPQOEM - 1 Time Zone: West-Europa (standaardtijd) Motherboard *: Hewlett-Packard 184B Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Windows Defender On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 35.0.1916.153 Internet Explorer Version: 10.0.9200.16921 Google Chrome version: 35.0.1916.153 Flash Player version: 11.3.300.265 Shockwave Player version: 11.6.6r636 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-06-09 07:30:53 050C668A459D689E7C033DBCA4417642 22863 ----a-w- C:\WINDOWS\diagwrn.xml 2014-06-09 07:30:53 050C668A459D689E7C033DBCA4417642 22863 ----a-w- C:\WINDOWS\diagerr.xml ====== C:\Users\Georgia\AppData\Local\Temp ==== 2014-06-14 08:54:08 A2140654332D468788E784C3C8FCAEDC 1062208 ----a-w- C:\Users\Georgia\AppData\Local\Temp\Epic-38922df8-7fdc-4b7a-a890-767a4fd552a5\Binaries\UnSetup.exe 2014-06-14 08:54:08 3EA4B01045BB503A0ADDEFE7FBD97D5D 55128 ----a-w- C:\Users\Georgia\AppData\Local\Temp\Epic-38922df8-7fdc-4b7a-a890-767a4fd552a5\Binaries\InstallData\Interop.IWshRuntimeLibrary.dll ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2014-06-13 06:16:46 8DA3E7A3CEBBAC987A68A6A52E44D4FD 703992 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-06-13 06:16:46 2326D8540D9517EB6861659068B87E49 105464 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-12 20:29:13 49B54717941A7D8922640177CFD02EF8 1164800 ----a-w- C:\WINDOWS\SysWOW64\Display.dll 2014-06-12 20:29:12 A9525FB4171425B47EB07D01C45952C4 6656 ----a-w- C:\WINDOWS\SysWOW64\KBDKURD.DLL 2014-06-12 20:28:58 5363A9B4FA7DB5E3B1025411CBF9977F 8858112 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2014-06-12 20:28:50 D8FED3E93970890FC25C5D378E6A5BD6 893952 ----a-w- C:\WINDOWS\SysWOW64\msctf.dll 2014-06-12 20:28:49 7D98A4A02FEA4C24A2EA9D8978E6CAB5 2035712 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2014-06-12 20:28:40 E2C9A11BC849BC39384A8C430F17B63C 158208 ----a-w- C:\WINDOWS\SysWOW64\mbsmsapi.dll 2014-06-12 20:28:40 7DD1611953A4CB01F9E3287E86629172 356352 ----a-w- C:\WINDOWS\SysWOW64\SettingSync.dll 2014-06-12 20:28:40 42946DF60DA82E1350AB6D636AE19B3D 199168 ----a-w- C:\WINDOWS\SysWOW64\shdocvw.dll 2014-06-12 20:28:37 7F8D446C49D3052CD364C01477BCE5ED 100864 ----a-w- C:\WINDOWS\SysWOW64\SettingSyncInfo.dll 2014-06-12 20:28:32 BB9B1E4AD29328FAFCA5A9AD05BC9554 1245696 ----a-w- C:\WINDOWS\SysWOW64\wdc.dll 2014-06-12 20:28:32 2A4C4B4921AD0DE90D4DFCD6E4CF8B84 399360 ----a-w- C:\WINDOWS\SysWOW64\sysmon.ocx 2014-06-12 20:28:31 831EB87A22B5011908334B8481289948 437248 ----a-w- C:\WINDOWS\SysWOW64\wvc.dll 2014-06-12 20:27:09 D2E155FC442D58B8F4E67F43E83A1EF2 305152 ----a-w- C:\WINDOWS\SysWOW64\wusa.exe 2014-06-12 20:26:57 985A570128DAEB86F77DE843028BDC9C 974848 ----a-w- C:\WINDOWS\SysWOW64\kernel32.dll 2014-06-12 20:26:56 352190626162123D949303CE208B3E5A 1075200 ----a-w- C:\WINDOWS\SysWOW64\gpedit.dll 2014-06-12 20:26:43 20DEAA3798E24F2568D13E59854B86BA 10799104 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-06-12 20:26:41 E5022C5E268209367A186DF3F8705AEA 914432 ----a-w- C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-06-12 20:26:41 94AE186C279DD59E8D9F4E735CB81525 247296 ----a-w- C:\WINDOWS\SysWOW64\ubpm.dll 2014-06-12 20:26:39 B607284B548E9749B7DFE21F0B0EE376 20992 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2014-06-12 20:26:39 98AC5B3A987A7698B070D39AC88B7ED7 485376 ----a-w- C:\WINDOWS\SysWOW64\WSDApi.dll 2014-06-12 20:25:27 0AC4D04D2D127CAE2BE09FBA48D19639 2273792 ----a-w- C:\WINDOWS\SysWOW64\msftedit.dll 2014-06-12 20:25:23 0E38A984BE8C1F4A095B4A4E8BA1EB23 125440 ----a-w- C:\WINDOWS\SysWOW64\winmm.dll 2014-06-12 20:25:22 DF790AE26A476DAA05210BA571B45AAC 160256 ----a-w- C:\WINDOWS\SysWOW64\winmmbase.dll 2014-06-12 20:25:22 3631AE3089DE4FAA50D3BD62E370299E 385768 ----a-w- C:\WINDOWS\SysWOW64\WerFault.exe 2014-06-12 20:25:22 34076BB22B3975BDA4D98E1A0F03F199 268800 ----a-w- C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-06-12 20:25:20 A179B0FB8241BC7FEF62E0AA5F315F9B 702464 ----a-w- C:\WINDOWS\SysWOW64\nshwfp.dll 2014-06-12 20:25:20 499403FAB514EF7C468F1E9157F8F7BA 67072 ----a-w- C:\WINDOWS\SysWOW64\openfiles.exe 2014-06-12 20:25:20 1C51CD68DB8C774E4C69CD628CFC4C80 245248 ----a-w- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-06-12 20:25:19 68451FE440B77BD6447E8AF1D21FD62B 245760 ----a-w- C:\WINDOWS\SysWOW64\LocationApi.dll 2014-06-12 20:25:18 1342E8DE249F4049536F38F8D473CE26 154112 ----a-w- C:\WINDOWS\SysWOW64\WinSCard.dll 2014-06-12 20:24:47 2C1467A6FF34E6E13920D9E546D47E50 551424 ----a-w- C:\WINDOWS\SysWOW64\oleaut32.dll 2014-06-12 20:24:46 ED2612731F5D9DA4F22E2C6B311F0506 488960 ----a-w- C:\WINDOWS\SysWOW64\resutils.dll 2014-06-12 20:24:46 76260C0FC2B57D9B0CC225E373C3578F 628736 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2014-06-12 20:24:45 F3C7A2A76A5262B68A98009A71987D2E 302080 ----a-w- C:\WINDOWS\SysWOW64\clusapi.dll 2014-06-12 20:24:44 745090E87A3EEA65AD1EFFCD2CFEC366 35328 ----a-w- C:\WINDOWS\SysWOW64\wuapp.exe 2014-06-12 20:24:44 1C4BD0C76158F05A3FF34436461C22DA 126976 ----a-w- C:\WINDOWS\SysWOW64\wuwebv.dll 2014-06-12 20:24:44 008AC9B51D8EC5AC16921358A84B8FD6 84992 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2014-06-12 20:24:17 6A10586D2456BBE6E1F7DBAABB2C5F28 550400 ----a-w- C:\WINDOWS\SysWOW64\FirewallAPI.dll 2014-06-12 20:24:17 07577AD2DA7D82B8A077DA4C1981DB9B 199168 ----a-w- C:\WINDOWS\SysWOW64\WebClnt.dll 2014-06-12 20:24:16 AC52DA0DC81956307CB8E13B5A0A390E 86016 ----a-w- C:\WINDOWS\SysWOW64\davclnt.dll 2014-06-12 20:21:40 06C5E22E47C68A204CAA7206ECD6E58B 11878912 ----a-w- C:\WINDOWS\SysWOW64\wmp.dll 2014-06-12 20:21:38 18152CAB34DF83B2B16A7FC0BFE80AAB 2767360 ----a-w- C:\WINDOWS\SysWOW64\tquery.dll 2014-06-12 20:21:37 4B6BCFDA47A2E55C326494F12452D36B 1593344 ----a-w- C:\WINDOWS\SysWOW64\mssrch.dll 2014-06-12 20:21:24 9398353A04C00C3B9B7A9A45DF3C13A9 1113600 ----a-w- C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2014-06-12 20:21:22 49CDF50EDBC11418B1A33959A99961EA 403968 ----a-w- C:\WINDOWS\SysWOW64\mssph.dll 2014-06-12 20:21:19 4DD38C9F28B9A0D8B1635580E8DF7D86 302592 ----a-w- C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2014-06-12 20:21:18 FCCEDE04F10EC0B72321333FF928E5AF 1408896 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2014-06-12 20:21:16 58ABD60925CE849CEAEBAC105E74BE5A 426024 ----a-w- C:\WINDOWS\SysWOW64\AudioEng.dll 2014-06-12 20:21:16 434D27871C24D123038BCE8507010276 252928 ----a-w- C:\WINDOWS\SysWOW64\rsaenh.dll 2014-06-12 20:21:16 1F2C7F52F7A53751ED38287EF90942C8 324368 ----a-w- C:\WINDOWS\SysWOW64\AudioSes.dll 2014-06-12 20:21:14 031397F2F9B2445CD901C8694E4012FD 670208 ----a-w- C:\WINDOWS\SysWOW64\SearchIndexer.exe 2014-06-12 20:21:00 701B9B1100E251A9125BD72307ABACFF 659456 ----a-w- C:\WINDOWS\SysWOW64\mssvp.dll 2014-06-12 20:20:58 D54A923CB6EEA45576380C197A480142 411136 ----a-w- C:\WINDOWS\SysWOW64\Windows.Networking.dll 2014-06-12 20:20:49 BB208BC1082B114AFBBE6CCBE42AA6CA 171008 ----a-w- C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2014-06-12 20:20:49 973490D8FA14A14C6307BC4F672178DB 123880 ----a-w- C:\WINDOWS\SysWOW64\wscapi.dll 2014-06-12 20:20:44 C043356858B65CEC5B751CE74F013125 106496 ----a-w- C:\WINDOWS\SysWOW64\Robocopy.exe 2014-06-12 20:20:41 450DBA20B14DA7F827C71F880483B859 155648 ----a-w- C:\WINDOWS\SysWOW64\dmvdsitf.dll 2014-06-12 20:20:40 CE3EE84318F36CEFFE8B35F97BFA2804 214528 ----a-w- C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-06-12 20:20:40 2616F018CF3BB7D8CEE0C00EE5730898 364544 ----a-w- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-06-12 20:20:39 98AE6E68249F47584EB5353D2E371AF4 361984 ----a-w- C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-06-12 20:20:38 EE6CD55E45FB9022B90C12B760A32876 186880 ----a-w- C:\WINDOWS\SysWOW64\mssphtb.dll 2014-06-12 20:20:38 492EDFADEFB48CCAE6D848BC484E9630 41984 ----a-w- C:\WINDOWS\SysWOW64\fmifs.dll 2014-06-12 20:20:37 CF3FE167858C4DC3E853AFCC43AB4B7F 35328 ----a-w- C:\WINDOWS\SysWOW64\mssprxy.dll 2014-06-12 20:20:37 48C690A3F2106A23B261442E08992E08 10752 ----a-w- C:\WINDOWS\SysWOW64\msshooks.dll 2014-06-12 20:15:03 5F27960598F19E9509289DCAA6F6BA84 309760 ----a-w- C:\WINDOWS\SysWOW64\BCP47Langs.dll 2014-06-12 20:15:00 A5189CC0316DDCD935F360E26904ECA9 14848 ----a-w- C:\WINDOWS\SysWOW64\rars.rs 2014-06-12 20:14:56 D273CCF1F17F43A7E26DEEDC4C329287 151040 ----a-w- C:\WINDOWS\SysWOW64\netplwiz.dll 2014-06-12 20:14:54 82E03C39A0CA7B3803C46DB54BA30F88 303616 ----a-w- C:\WINDOWS\SysWOW64\stobject.dll 2014-06-12 20:14:52 10B7F2AFB7E77E5AF276B1E2CE51A13B 449536 ----a-w- C:\WINDOWS\SysWOW64\DevicePairing.dll 2014-06-12 20:14:52 0A52F0EF8C82A1FB42894B3EB88823E9 758784 ----a-w- C:\WINDOWS\SysWOW64\Magnify.exe 2014-06-12 20:14:51 4811BEA676D8355C158246D1F9B7A4F2 115712 ----a-w- C:\WINDOWS\SysWOW64\netprofm.dll 2014-06-12 20:14:49 D83276FC6EA62F04E57E3EFC48017167 92160 ----a-w- C:\WINDOWS\SysWOW64\biwinrt.dll 2014-06-12 20:14:48 E2A0A49905CC14690B3433F7019BCBDC 389632 ----a-w- C:\WINDOWS\SysWOW64\intl.cpl 2014-06-12 20:14:47 EBD3510794753FC266A556EF6ECBFBFD 411136 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-06-12 20:14:43 E404E1649DC1CCDEEAD46C4B5F2E07DA 14336 ----a-w- C:\WINDOWS\SysWOW64\muifontsetup.dll 2014-06-12 20:14:43 3A57A288F098188E92C6B0309CBC50B2 18432 ----a-w- C:\WINDOWS\SysWOW64\npmproxy.dll 2014-06-12 19:56:35 E5AA5FCA529FB3FD88D2C3EB38BBD899 1338880 ----a-w- C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2014-06-12 19:56:22 54574CAD4D52690EA31BB5BE4DF00608 850944 ----a-w- C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2014-06-12 19:56:12 2072CE914C627A37E8CC8592E68A8851 357888 ----a-w- C:\WINDOWS\SysWOW64\netcfgx.dll 2014-06-12 19:56:11 1A242673EFA49EC8C16AA691DC027E6F 5091840 ----a-w- C:\WINDOWS\SysWOW64\mstscax.dll 2014-06-12 19:56:04 9DEE93BEA6D719FCA849B7ABFCCE5621 601088 ----a-w- C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2014-06-12 19:56:04 9C4CD6ADB8FB30BAA1B642FFFD04E194 893952 ----a-w- C:\WINDOWS\SysWOW64\winmde.dll 2014-06-12 19:56:02 0BF4D74962263306006C82DFBB114554 550912 ----a-w- C:\WINDOWS\SysWOW64\drvstore.dll 2014-06-12 19:55:18 67A05BE41C37A3BF140377C0CEFFC309 145408 ----a-w- C:\WINDOWS\SysWOW64\powercfg.cpl 2014-06-12 19:55:10 73DC5278EE0A0F01750A0DEF17FE7EFD 36352 ----a-w- C:\WINDOWS\SysWOW64\DevDispItemProvider.dll 2014-06-12 18:18:56 7B7C5753CB4B555C9BC4ADCEE344B811 482816 ----a-w- C:\WINDOWS\SysWOW64\untfs.dll 2014-06-12 18:18:54 61ADD65C9D1E2EAF8BB080A4D6AAB055 793088 ----a-w- C:\WINDOWS\SysWOW64\autochk.exe 2014-06-11 16:27:11 63B163EBB6CD51AB066EEAA573C0A4C5 1023488 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2014-06-11 16:24:54 DA150FBA450DB268C3DD1D389DF261EB 562688 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2014-06-11 16:24:53 68309D440373633C54CCD61FFAB4948C 143872 ----a-w- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2014-06-11 16:24:53 4A4A793059187D8C85797F0FB8D9E48C 91648 ----a-w- C:\WINDOWS\SysWOW64\sppc.dll 2014-06-11 16:24:52 810B2358688A62CD67F0FBC699628D48 159232 ----a-w- C:\WINDOWS\SysWOW64\WSSync.dll 2014-06-11 16:24:51 EC598115895C5E2BFCC3EC6D1DD5E1E2 167424 ----a-w- C:\WINDOWS\SysWOW64\WSClient.dll 2014-06-11 16:24:50 B7267F83DE710AF993A15380C1F33239 83968 ----a-w- C:\WINDOWS\SysWOW64\OEMLicense.dll 2014-06-11 16:24:50 62FB9CC2F6E0EF8015EA06ECFD746154 76800 ----a-w- C:\WINDOWS\SysWOW64\setupcln.dll 2014-06-11 16:22:42 6E3FE9ED37F6B3EE671AB3893DF8717A 59392 ----a-w- C:\WINDOWS\SysWOW64\imagehlp.dll 2014-06-11 16:22:34 1136EC767D7915D0F945E38BBC64024C 541696 ----a-w- C:\WINDOWS\SysWOW64\comctl32.dll 2014-06-11 16:20:45 5C1611E2B668727FF22150D108FCB06F 17562112 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2014-06-11 16:19:10 568C888D74169B679E4D9E1F4E7E75BD 523776 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2014-06-11 16:17:44 D6442A667427194DED60C778EBAC09AF 1141248 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2014-06-11 16:17:44 B68C3F9DC9ED5C12D91E2EBC2E983F44 163840 ----a-w- C:\WINDOWS\SysWOW64\msrating.dll 2014-06-11 16:17:44 93ADE30136C7B4C38037E4A106021AA8 33280 ----a-w- C:\WINDOWS\SysWOW64\iernonce.dll 2014-06-11 16:17:44 82A443039354DB5A13AA310AD9972CE0 61440 ----a-w- C:\WINDOWS\SysWOW64\iesetup.dll 2014-06-11 16:17:43 EEBB92A56115248259308FDBDB9EFC80 1440768 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-06-11 16:17:43 4CDD119A96E01289C76BAF4AAB407C37 44032 ----a-w- C:\WINDOWS\SysWOW64\UXInit.dll 2014-06-11 16:17:43 09B52FC5769B29CFF48A8B9A8471ED1E 109056 ----a-w- C:\WINDOWS\SysWOW64\iesysprep.dll 2014-06-11 16:17:42 6B0F3460EEB39F2BC44BCC02718A5741 493056 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2014-06-11 16:17:42 69C95B8F87C24940BEC0505F90AC559F 13731328 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2014-06-11 16:17:42 369621475E732E68E2904109A37C4B71 534528 ----a-w- C:\WINDOWS\SysWOW64\uxtheme.dll 2014-06-11 16:17:39 A1C2C8CE19D844AF03E1AED0FA19C080 39936 ----a-w- C:\WINDOWS\SysWOW64\jsproxy.dll 2014-06-11 16:17:38 A75DB7709AC2E09FBCF068320C3CFC49 226816 ----a-w- C:\WINDOWS\SysWOW64\dxtrans.dll 2014-06-11 16:17:35 B46C4C23FB70D3C35D4B54DFDF482F23 1766400 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2014-06-11 16:17:35 05508B910202CDD620CD34FEDE87229E 2706432 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb 2014-06-11 16:17:34 E6A88972B3087DCFC6463C2F25741233 357888 ----a-w- C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-06-11 16:16:49 9C5E4D86786FBE599D5F219F47C60D45 80896 ----a-w- C:\WINDOWS\SysWOW64\mshtmled.dll 2014-06-11 16:16:48 2BF932961E027461B745883DD7D89655 690688 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2014-06-11 16:16:47 F48E21D977D20F883303726F8171AD77 2050560 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2014-06-11 16:16:35 95E087A289866DC5E435C5664DF02F84 2862080 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2014-06-11 16:16:33 094BD2492BB6266C8FFF09644682EA00 14365696 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-06-11 16:14:25 8EF66E7F4CEE23A30917D27C460CDB8D 1569280 ----a-w- C:\WINDOWS\SysWOW64\crypt32.dll 2014-06-11 16:13:16 B4CB5AE28AD921DBB2BB5D0A6D1FDD9D 694272 ----a-w- C:\WINDOWS\SysWOW64\rpcrt4.dll 2014-06-11 16:11:42 A50E9F5111BFB5451750F1A66DFC088B 109056 ----a-w- C:\WINDOWS\SysWOW64\cryptnet.dll 2014-06-11 16:11:42 6498FE5EEE819307EDE2FE17CE849994 1013248 ----a-w- C:\WINDOWS\SysWOW64\certutil.exe 2014-06-11 16:09:38 57F794FDACC45FABCEFE7C941EF8413F 35328 ----a-w- C:\WINDOWS\SysWOW64\atmlib.dll 2014-06-11 16:09:38 27E18DC09423730863241E3F207A36C4 300032 ----a-w- C:\WINDOWS\SysWOW64\atmfd.dll 2014-06-11 16:09:26 3213F234B8FC8D0869D50B98884EB5F4 1421312 ----a-w- C:\WINDOWS\SysWOW64\DWrite.dll 2014-06-11 16:09:07 79453BAE17B59ECF80D5AAB5AC21E289 666624 ----a-w- C:\WINDOWS\SysWOW64\kerberos.dll 2014-06-11 16:09:04 F8B1D218C6D90674A2BC0E36AD33B44B 452608 ----a-w- C:\WINDOWS\SysWOW64\SHCore.dll 2014-06-11 16:09:04 7D4DCF88AA0F3C5B9CD9F5DB17A0D224 323072 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2014-06-11 16:09:03 A7EB6E44E7B850028DE3765A00FFC3E6 668160 ----a-w- C:\WINDOWS\SysWOW64\KernelBase.dll 2014-06-11 16:09:03 54A7E41968B1014510928096E812D6D8 273920 ----a-w- C:\WINDOWS\SysWOW64\msv1_0.dll 2014-06-11 16:09:02 8BE0E10A872DB03E12E9E7AACB5F1707 559104 ----a-w- C:\WINDOWS\SysWOW64\objsel.dll 2014-06-11 16:09:01 7F14619A35EFD2A6C2676A5DA44DF669 961536 ----a-w- C:\WINDOWS\SysWOW64\usercpl.dll 2014-06-11 16:09:01 1C0AC35405717EC499F5E2B8ADC28E97 178688 ----a-w- C:\WINDOWS\SysWOW64\wdigest.dll 2014-06-11 16:09:00 80CAD18595095CE6FAFD7B72354ABB3D 76800 ----a-w- C:\WINDOWS\SysWOW64\TSpkg.dll 2014-06-11 16:08:59 FE08612815D2A3CE56A9A2EFE54DE876 99840 ----a-w- C:\WINDOWS\SysWOW64\sspicli.dll 2014-06-11 16:08:58 6C3F68096889CFD2D1CC68212C736E60 38400 ----a-w- C:\WINDOWS\SysWOW64\dimsroam.dll 2014-06-11 16:08:58 3A19DD75AB1ECF87885ED308DFB5D32B 17408 ----a-w- C:\WINDOWS\SysWOW64\credssp.dll 2014-06-11 16:04:41 A2476B7D165AFB10A8FA4E335DEC9E88 2620928 ----a-w- C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2014-06-11 16:04:40 80E99EF897E98BFF0C1579FC9024F724 102608 ----a-w- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-06-11 16:04:30 F7A43B51E2C1D7C332FB17D0A804AF60 261120 ----a-w- C:\WINDOWS\SysWOW64\wintrust.dll 2014-06-11 16:04:30 AA4D1D67CFC5C9BC17163FA619A070FA 74240 ----a-w- C:\WINDOWS\SysWOW64\apprepsync.dll 2014-06-11 16:04:30 3674D14E4B7D4700BFF7D06DC608334E 87040 ----a-w- C:\WINDOWS\SysWOW64\apprepapi.dll 2014-06-11 16:04:23 55C7A599269BDC4772E795A1327ECFAA 156160 ----a-w- C:\WINDOWS\SysWOW64\scrrun.dll 2014-06-11 16:04:22 6954431724A32132E8961D9BA2708786 115712 ----a-w- C:\WINDOWS\SysWOW64\cscript.exe 2014-06-11 16:04:22 23D0BC752AB7539D9886D4E56BF8F69F 162304 ----a-w- C:\WINDOWS\SysWOW64\scrobj.dll 2014-06-11 16:04:03 C7E96470AD5552C67092B073B667121B 3288576 ----a-w- C:\WINDOWS\SysWOW64\d2d1.dll 2014-06-11 16:04:01 CB0AD586EA7C13AEF616848B64C5CC53 2032640 ----a-w- C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-06-11 16:00:34 82EABFF4B896E5D3CD5F51E38E23B56B 496640 ----a-w- C:\WINDOWS\SysWOW64\qedit.dll 2014-06-11 16:00:05 115DAE15480BA4FA00D11096EDA01A26 132608 ----a-w- C:\WINDOWS\SysWOW64\poqexec.exe 2014-06-11 15:59:51 D50C5638CD3AFF9A2023ABCCF38900DD 1419264 ----a-w- C:\WINDOWS\SysWOW64\msxml3.dll 2014-06-11 14:51:01 F36DF06A6046E7D574FFADF0259386ED 303104 ----a-w- C:\WINDOWS\SysWOW64\CNC270L.dll 2014-06-11 14:51:01 EC3C86375905CAA463E0BB25A657CCD7 12544 ----a-w- C:\WINDOWS\SysWOW64\CNC173BD.TBL 2014-06-11 14:51:00 D16CF34B17899F90A8FCF2A3F77B4A27 15872 ----a-w- C:\WINDOWS\SysWOW64\CNHMCA.dll 2014-06-11 14:51:00 BB13EBC7467DAA8D39188CC6B107AE99 106496 ----a-w- C:\WINDOWS\SysWOW64\CNC270U.dll 2014-06-11 12:24:02 4FD7BCB9D8AF6A165E9BA0C2EB702E7C 239960 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_7.dll 2014-06-11 12:24:00 83EBA442F07AAB8D6375D2EEC945C46C 1868128 ----a-w- C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2014-06-11 12:23:56 E4CE2AF32F501A7F7DDDD908704A0EE6 74072 ----a-w- C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2014-06-11 12:23:56 4976243BD70FAE3D1D24E49739AB2710 528216 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_6.dll 2014-06-11 12:23:55 F81C4678A55FFEE585AC75825FAF5582 238936 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_6.dll 2014-06-11 12:23:55 C811E70C8804CFFF719038250A43B464 22360 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2014-06-11 12:23:53 8B01FB723F3B30AB3DEBDDBF97CFE577 515416 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_5.dll 2014-06-11 12:23:51 DB3C93E87452B8DAB4F58ED1FD2B1998 238936 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_5.dll 2014-06-11 12:23:45 D09AC80A4B5312239852836C84DF3392 235344 ----a-w- C:\WINDOWS\SysWOW64\d3dx11_42.dll 2014-06-11 12:23:45 B337306DFB508A1BCEF1974BFBB8D924 5501792 ----a-w- C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2014-06-11 12:23:28 3FA06CF5079B84155D18B05C08F7131B 4178264 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_41.dll 2014-06-11 12:23:25 E684C5FA18ADF9EA14737757413BF727 517448 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_4.dll 2014-06-11 12:23:25 30686ECE80545E06D78D156EB9F7D463 69464 ----a-w- C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2014-06-11 12:23:23 686F8D1B4926D48227A06ACD4D41CD1E 235352 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_4.dll 2014-06-11 12:23:22 E763798CAD2A90B6AB61854F50CD47DD 22360 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2014-06-11 12:23:22 91B4AAD4412BB223B466F3DFB43E86DA 452440 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_40.dll 2014-06-11 12:23:22 3384134EEB8F223178C2EB8323003EC0 2036576 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2014-06-11 12:23:17 47ED15DC87AE334C13C4DACD1BE2CCED 514384 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_3.dll 2014-06-11 12:23:17 295E47A75F278580F9441041EAAEA3D2 70992 ----a-w- C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2014-06-11 12:23:15 8BA296419AF3417D1E9806B83166E472 235856 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_3.dll 2014-06-11 12:23:15 350FEFE18B86BD4D9AB2A96D00215A49 23376 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2014-06-11 12:23:11 D95EAABF5D277EF91D9CA70151209E56 68616 ----a-w- C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2014-06-11 12:23:11 50F4A0D5E6A0BAFEFA78F353533B8E06 509448 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_2.dll 2014-06-11 12:23:09 F3C6BE26949CAADB11DBF0086082FAC9 238088 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_2.dll 2014-06-11 12:23:06 E6C2F1D8B667DDC04CB55B9F0159EF97 467984 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_39.dll 2014-06-11 12:23:06 C4F1972497FE2CEB7D900938C97FCF91 1493528 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2014-06-11 12:23:04 8CB3DEFB8887C4F0846DB1FC1304D6D2 3851784 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_39.dll 2014-06-11 12:23:01 E34FF0115B1EE3B4E03D22AE9840EE03 507400 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_1.dll 2014-06-11 12:23:01 DD165760F1B95200A3DA2D9DFDB84234 65032 ----a-w- C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2014-06-11 12:22:58 2E0E25252E1D41752876E9FE12ADE175 238088 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_1.dll 2014-06-11 12:22:57 E3832514BD21236067B7227F6165EF95 25608 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2014-06-11 12:22:55 A2650B27472C21CDD817EEEDE65648E1 467984 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_38.dll 2014-06-11 12:22:55 103CBFC5591008AD33046E20E8E1EEBE 1491992 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2014-06-11 12:22:54 8F3EB548AC4ED90252394F60C77E3196 3850760 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_38.dll 2014-06-11 12:22:50 418CDC57E55EE79C3F86C13A19B3D5E3 479752 ----a-w- C:\WINDOWS\SysWOW64\XAudio2_0.dll 2014-06-11 12:22:48 8A83673F0AB001870583FDE2B004FA59 238088 ----a-w- C:\WINDOWS\SysWOW64\xactengine3_0.dll 2014-06-11 12:22:47 C593FD0A96EE4B6390B653C4C641313F 25608 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2014-06-11 12:22:45 EA752DBCE35045D3C830DC16578CC8AB 1420824 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2014-06-11 12:22:45 4A43E9A2B17E4CAFA9CB5FEC0B5B686B 462864 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_37.dll 2014-06-11 12:22:43 AC3C517FB0FBBE45FE44007BCD3625A7 3786760 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_37.dll 2014-06-11 12:22:41 73E055AF78A64F9B2779D44407CA2AB6 267272 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_10.dll 2014-06-11 12:22:38 FB4299688A0D3A37687C015AC2B9922D 1374232 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2014-06-11 12:22:38 D9158E78A368B08D9133043EB3058C12 444776 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_36.dll 2014-06-11 12:22:37 44BFEC5C9C82A2EE9871D88FD3B9A0E2 3734536 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_36.dll 2014-06-11 12:22:28 46EE68F04A75A1CCF40235EA6F1CBA05 267112 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_9.dll 2014-06-11 12:22:25 F3764552E45880DC49B82F38699AA87C 444776 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_35.dll 2014-06-11 12:22:25 5B441670A4F5F8BCCE76741902B8AF56 1358192 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2014-06-11 12:22:16 F6A9FC2AD2F9111372B5AB3BBA3707EC 17928 ----a-w- C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2014-06-11 12:22:16 499210C45AFEAADEE8CF4DCF7D5E570B 266088 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_8.dll 2014-06-11 12:22:14 75F206C195BBACA6EF28565B1C0CD75C 1124720 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2014-06-11 12:22:14 5AA9987F2E62B56D7661B6901901F927 443752 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_34.dll 2014-06-11 12:22:12 77F595DEE5FFACEA72B135B1FCE1312E 81768 ----a-w- C:\WINDOWS\SysWOW64\xinput1_3.dll 2014-06-11 12:22:11 7FEBB8CE2233CBAE738B16D42ED29674 261480 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_7.dll 2014-06-11 12:22:10 FAE7E1D578C42A7C3D9D61A99D178BD5 1123696 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2014-06-11 12:22:10 37A8171ACCF46A9C196054066C28827F 443752 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_33.dll 2014-06-11 12:22:09 CDB1CD22BAFF21F48606B3C1A18B000B 3495784 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_33.dll 2014-06-11 12:22:07 39000E033D39D19CCCE21AEAFCCE2476 255848 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_6.dll 2014-06-11 12:21:58 86C93789E9006F1AC47ED9DD47D4C8A1 251672 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_5.dll 2014-06-11 12:21:57 6F34F7405807DCBF0B9BF6811C94C6D9 440080 ----a-w- C:\WINDOWS\SysWOW64\d3dx10.dll 2014-06-11 12:21:54 6550E1A0A7BE611592C31222FCB981FB 237848 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_4.dll 2014-06-11 12:21:54 121B131EAA369D8F58DACC5C39A77D80 15128 ----a-w- C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2014-06-11 12:21:53 797E24743937D67D69F28F2CF5052EE8 2414360 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_31.dll 2014-06-11 12:21:52 69D841744B2BAE38FBB2D40A230A549C 236824 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_3.dll 2014-06-11 12:21:52 33B62BE226934E1B01F5043870C70427 62744 ----a-w- C:\WINDOWS\SysWOW64\xinput1_2.dll 2014-06-11 12:21:50 5C4D3843B491C047B7A619901FBD2EC1 230168 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_2.dll 2014-06-11 12:21:46 F1726346E583442541FE73429F8E9C10 62672 ----a-w- C:\WINDOWS\SysWOW64\xinput1_1.dll 2014-06-11 12:21:43 7C9952111F4C743B9F0D8B68B6ED93C9 229584 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_1.dll 2014-06-11 12:21:12 2112FE0C46662D429347A7D7B49E3ECE 230096 ----a-w- C:\WINDOWS\SysWOW64\xactengine2_0.dll 2014-06-11 12:21:11 99F4FC172A5ACE36CF00AA7038D23F2C 2332368 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_29.dll 2014-06-11 12:21:11 4E961525CC7FF0E5D7DA19E170B7C14C 14032 ----a-w- C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2014-06-11 12:21:09 BE19B603DFBAA829EE5B7749B3BA97DB 2323664 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_28.dll 2014-06-11 12:21:07 852EDC778A7A50077694F84D8E601234 2319568 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_27.dll 2014-06-11 12:21:06 523AB607EEF81CC4D909E7FEBD8A788E 2297552 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_26.dll 2014-06-11 12:21:05 5B48FE9D6686F0D54B26A005ACE24D1D 2337488 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_25.dll 2014-06-11 12:21:02 BC831661963763AC4D504C5CABB1FDD9 2222800 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_24.dll 2014-06-10 18:37:02 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_43.dll 2014-06-10 18:37:02 20C835843FCEC4DEDFCD7BFFA3B91641 470880 ----a-w- C:\WINDOWS\SysWOW64\d3dx10_43.dll 2014-06-09 10:41:59 316A9E7E0EEEA57050E19732CE5941E1 9890008 ----a-w- C:\WINDOWS\SysWOW64\RsCRIcon.dll 2014-06-09 08:30:25 B33B21DB610116262D906305CE65C354 1974616 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2014-06-09 08:30:20 C6A44FC3CF2F5801561804272217B14D 1892184 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_42.dll 2014-06-09 08:30:16 EEA5E428CE63804F9B12D21C97B5968F 4379984 ----a-w- C:\WINDOWS\SysWOW64\D3DX9_40.dll 2014-06-09 08:30:13 3EF18B78D17C962F2B71AC1CB7757684 3727720 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_35.dll 2014-06-09 08:30:09 1CA939918ED1B930059B3A882DE6F648 3497832 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_34.dll 2014-06-09 08:29:29 E415862612E65F10D7D888443ECD7594 2388176 ----a-w- C:\WINDOWS\SysWOW64\d3dx9_30.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-06-13 07:36:40 05E1930DCAD884F820800ADDB0D1D8A9 437280 ----a-w- C:\WINDOWS\Sysnative\FNTCACHE.DAT 2014-06-12 20:29:13 BBF7D04F71182799EAF280CE3397926B 1184256 ----a-w- C:\WINDOWS\Sysnative\Display.dll 2014-06-12 20:29:12 49A79382551888CA8F0EE02220F45F94 7168 ----a-w- C:\WINDOWS\Sysnative\KBDKURD.DLL 2014-06-12 20:29:00 09B07DFC6792D49516073FEF024315C9 10116608 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2014-06-12 20:28:50 F85D33830D2655FB2916667579D45725 1125888 ----a-w- C:\WINDOWS\Sysnative\msctf.dll 2014-06-12 20:28:50 5EE6D3195E6470DB22F480CCF5F5FF4A 2146304 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2014-06-12 20:28:49 7D5FEB67505A6D983F5D8AE0B474581D 2304512 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2014-06-12 20:28:41 DFB8703836AF863A25FC55BF88176591 222208 ----a-w- C:\WINDOWS\Sysnative\shdocvw.dll 2014-06-12 20:28:41 5690B3793FD93716EF4C5CE71D9FF156 448512 ----a-w- C:\WINDOWS\Sysnative\SettingSync.dll 2014-06-12 20:28:40 60CF5B27BBEF38F11729B847541E33A3 225280 ----a-w- C:\WINDOWS\Sysnative\mbsmsapi.dll 2014-06-12 20:28:37 755059FD6A758EA4413B58A1B423E7D1 128512 ----a-w- C:\WINDOWS\Sysnative\SettingSyncInfo.dll 2014-06-12 20:28:32 EEB55974CFE4DB0B4FC840E6101090B8 462336 ----a-w- C:\WINDOWS\Sysnative\sysmon.ocx 2014-06-12 20:28:32 CA45D615BA0102CEDE9C25F4C6EE0983 1374208 ----a-w- C:\WINDOWS\Sysnative\wdc.dll 2014-06-12 20:28:32 20E76634DE7792397261A8AC442B9ACB 566784 ----a-w- C:\WINDOWS\Sysnative\wvc.dll 2014-06-12 20:27:09 93E7FA131B9AF0AF62D112AB19D31264 387268 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2014-06-12 20:27:09 62C34DD7477501468924A4AA0C89BF8E 309760 ----a-w- C:\WINDOWS\Sysnative\wusa.exe 2014-06-12 20:26:58 7BDE8F40FF491D8507CE3A6BF4EF0851 1258496 ----a-w- C:\WINDOWS\Sysnative\kernel32.dll 2014-06-12 20:26:57 AA6FD65C372252A338D8CD0E704D30D7 1120768 ----a-w- C:\WINDOWS\Sysnative\gpedit.dll 2014-06-12 20:26:46 B37AF4CB7C5BBE8ABF0CD7E796AB1EB3 13661696 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2014-06-12 20:26:42 58FE249FBABBA09A98EBAF28B0E0C382 1173504 ----a-w- C:\WINDOWS\Sysnative\UIAutomationCore.dll 2014-06-12 20:26:41 16C7029B1FBD1F80B2337933E66BF793 328192 ----a-w- C:\WINDOWS\Sysnative\ubpm.dll 2014-06-12 20:26:40 A0C07056756C94FA19B231BBE58C33DF 49664 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2014-06-12 20:26:40 633B9891D7C18B992CE9C6AF08DF4D05 49152 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2014-06-12 20:26:39 96486A251B78FFBD9C559C78054BAD59 599040 ----a-w- C:\WINDOWS\Sysnative\WSDApi.dll 2014-06-12 20:25:26 560A9357766AB0CDF38143EA3A66DA64 2839552 ----a-w- C:\WINDOWS\Sysnative\msftedit.dll 2014-06-12 20:25:25 814F4A0774F08F580D71FA7E880CD454 1025024 ----a-w- C:\WINDOWS\Sysnative\localspl.dll 2014-06-12 20:25:24 97D3B79F36CBD8B70F0D9BA6939D2462 391168 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.BackgroundTransfer.dll 2014-06-12 20:25:23 C89FAB42CD5FD672506031D941529A74 439488 ----a-w- C:\WINDOWS\Sysnative\WerFault.exe 2014-06-12 20:25:23 AF1349386D4C6786EF4E34FACEF15042 263680 ----a-w- C:\WINDOWS\Sysnative\wcmsvc.dll 2014-06-12 20:25:23 8E5271A1AC463276023B39BC846F299C 230912 ----a-w- C:\WINDOWS\Sysnative\WinSCard.dll 2014-06-12 20:25:23 827AE73CD7CB3A8292A50EF39169071F 115712 ----a-w- C:\WINDOWS\Sysnative\winmm.dll 2014-06-12 20:25:23 6D9E07436B6646EC8F7EFFD39B6BA288 447488 ----a-w- C:\WINDOWS\Sysnative\wwansvc.dll 2014-06-12 20:25:23 58B7BEACEB8B19A9698FE85B76C88ED9 381952 ----a-w- C:\WINDOWS\Sysnative\FWPUCLNT.DLL 2014-06-12 20:25:23 12DE753B04FE08427BC4BA3133BFB1DB 414208 ----a-w- C:\WINDOWS\Sysnative\wwanconn.dll 2014-06-12 20:25:23 0ABF97013CA7400213DCBDC7B499AF85 183808 ----a-w- C:\WINDOWS\Sysnative\winmmbase.dll 2014-06-12 20:25:21 FF2E7B5DEF4C46870E8D00B80BBDB1DC 370688 ----a-w- C:\WINDOWS\Sysnative\Wwanadvui.dll 2014-06-12 20:25:21 9A218BB2D3EC7CAAC84351D59204013A 77312 ----a-w- C:\WINDOWS\Sysnative\openfiles.exe 2014-06-12 20:25:21 8C7D71CE2F03E8CD6F1045D9275E6E1D 74240 ----a-w- C:\WINDOWS\Sysnative\wcmcsp.dll 2014-06-12 20:25:20 B8BF7450DC17F940DD3B1A853F62724F 888832 ----a-w- C:\WINDOWS\Sysnative\nshwfp.dll 2014-06-12 20:25:20 93BBEFF2825AFD81651EA2D938AAFCCA 543744 ----a-w- C:\WINDOWS\Sysnative\wwanmm.dll 2014-06-12 20:25:18 DB5C9AD31E50EDC86C6072EDE1E89692 312832 ----a-w- C:\WINDOWS\Sysnative\LocationApi.dll 2014-06-12 20:24:49 311E5E1976E0BD9110A88B93158055D5 3279872 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2014-06-12 20:24:47 DE9FDB812157F77CA4EB46E3ABB40448 374784 ----a-w- C:\WINDOWS\Sysnative\clusapi.dll 2014-06-12 20:24:47 C9549BC9C3E3DECD8BE81E527137B85F 773120 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2014-06-12 20:24:47 BB1B37C53D09CA41E2A55DD9D6C1B32E 778752 ----a-w- C:\WINDOWS\Sysnative\oleaut32.dll 2014-06-12 20:24:46 D728042519B8FCBEE14EC250E3F050B8 626688 ----a-w- C:\WINDOWS\Sysnative\resutils.dll 2014-06-12 20:24:46 A7045F139A9C3ABE4AA838E17D1DB8C7 1622016 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2014-06-12 20:24:45 8C30507C9EAA8F1E7D62D4388DC5330E 252928 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2014-06-12 20:24:44 E6434F7D79D112FAB2EF83D340E06EE1 99328 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2014-06-12 20:24:44 E363AD0D35F79615E6596AE70184FEE2 40448 ----a-w- C:\WINDOWS\Sysnative\wuapp.exe 2014-06-12 20:24:44 AAE63132AEE6A66A8DA6DADB7EC6C28F 59416 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2014-06-12 20:24:44 493C5728796ABBF760147CA38C3418E9 142848 ----a-w- C:\WINDOWS\Sysnative\wuwebv.dll 2014-06-12 20:24:44 1D40913DA534B116B8F15CCC747918A3 175104 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll 2014-06-12 20:24:18 9DE3341BD4E14BC5FADFCAD3019F2D0D 915968 ----a-w- C:\WINDOWS\Sysnative\MPSSVC.dll 2014-06-12 20:24:18 09DC813EA00294A6F5B2B6C75E2740ED 758784 ----a-w- C:\WINDOWS\Sysnative\FirewallAPI.dll 2014-06-12 20:24:17 9B1384CE8E681D2D77BB3524B8E86311 227840 ----a-w- C:\WINDOWS\Sysnative\WebClnt.dll 2014-06-12 20:24:17 353F85DB0B6EB92A77DA1DC2B9DD4FEF 104448 ----a-w- C:\WINDOWS\Sysnative\davclnt.dll 2014-06-12 20:21:43 64C3C2FCFECC783279FBC51769673144 3552768 ----a-w- C:\WINDOWS\Sysnative\tquery.dll 2014-06-12 20:21:42 57EF2DC36D34092F79CD9F7F016359F3 14267904 ----a-w- C:\WINDOWS\Sysnative\wmp.dll 2014-06-12 20:21:39 13FC1A4A3463E9DE1EF1881E8525EB56 2107904 ----a-w- C:\WINDOWS\Sysnative\mssrch.dll 2014-06-12 20:21:32 A05BA2FE3B3FFE1920F383E3E321D9A2 1829408 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2014-06-12 20:21:28 092115A536C478921DA3D24E29C06E3E 1444864 ----a-w- C:\WINDOWS\Sysnative\MSAudDecMFT.dll 2014-06-12 20:21:23 ED40ED9A65F3E79A8C43DD50C5FDADBF 1285632 ----a-w- C:\WINDOWS\Sysnative\schedsvc.dll 2014-06-12 20:21:23 A7FA87716A1F39BECB5CDED4F03C73F7 306952 ----a-w- C:\WINDOWS\Sysnative\kd_02_10ec.dll 2014-06-12 20:21:22 9FDAA6957F04A6D1917463B7CBBEF88A 816128 ----a-w- C:\WINDOWS\Sysnative\SearchIndexer.exe 2014-06-12 20:21:22 810F30FF8490ED5ED510621DF10DE320 785408 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2014-06-12 20:21:21 77DAB73F2AF988D07D72FD2DA0DC91FC 298456 ----a-w- C:\WINDOWS\Sysnative\rsaenh.dll 2014-06-12 20:21:20 78DF3884149D09A3E703DDCA91BFFD84 446792 ----a-w- C:\WINDOWS\Sysnative\AudioSes.dll 2014-06-12 20:21:19 480FB2259449C49C630D4AC3EC1EB426 373760 ----a-w- C:\WINDOWS\Sysnative\SearchProtocolHost.exe 2014-06-12 20:21:18 6B8EDB9EC94DC2D1370C57564E853051 489576 ----a-w- C:\WINDOWS\Sysnative\AudioEng.dll 2014-06-12 20:21:17 A6D52417607B399790678AFB2B44CDF3 172544 ----a-w- C:\WINDOWS\Sysnative\dwmredir.dll 2014-06-12 20:21:17 7018F9EEEC3B5427046E6D761715BC54 595456 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.dll 2014-06-12 20:21:17 58C0CA86362B32ABC87E39A99013C75A 367616 ----a-w- C:\WINDOWS\Sysnative\conhost.exe 2014-06-12 20:21:17 38069D6F774EB0B83A9301E5698B52CA 435200 ----a-w- C:\WINDOWS\Sysnative\mssph.dll 2014-06-12 20:21:16 09B2F3A41C6A8BFA22640826F70E9810 253544 ----a-w- C:\WINDOWS\Sysnative\audiodg.exe 2014-06-12 20:21:15 205162CCEBA17B54C6A7788C31726E95 804352 ----a-w- C:\WINDOWS\Sysnative\RecoveryDrive.exe 2014-06-12 20:21:14 AB279D4734BC508911C004F8D1011973 456704 ----a-w- C:\WINDOWS\Sysnative\wpncore.dll 2014-06-12 20:21:13 E1B0C213296FF324992BEF0E285BB623 1403784 ----a-w- C:\WINDOWS\Sysnative\winload.efi 2014-06-12 20:21:12 4E1F42D7616BB19253B99E85EDDA6E8C 1267424 ----a-w- C:\WINDOWS\Sysnative\winload.exe 2014-06-12 20:21:11 46159633AA549E4D2CF6455B056CAB96 523264 ----a-w- C:\WINDOWS\Sysnative\XpsGdiConverter.dll 2014-06-12 20:21:11 22B9D38C6A69591811C10D4D1BF96AFE 1217328 ----a-w- C:\WINDOWS\Sysnative\winresume.efi 2014-06-12 20:21:10 B7F4C0DEC76583C128D40579C36D6AA8 1093880 ----a-w- C:\WINDOWS\Sysnative\winresume.exe 2014-06-12 20:21:08 F2027911CBDC096576F0F1F81C790C1B 468992 ----a-w- C:\WINDOWS\Sysnative\MFMediaEngine.dll 2014-06-12 20:21:08 F0CFE7AA1100CDEF41ABA210C5610E85 196096 ----a-w- C:\WINDOWS\Sysnative\dmvdsitf.dll 2014-06-12 20:21:07 365C6C6BC10201CC1080EB97A559BFC1 503080 ----a-w- C:\WINDOWS\Sysnative\ci.dll 2014-06-12 20:21:07 0B43D0E9E00CB4F98FC62AB2FA5D96F3 231936 ----a-w- C:\WINDOWS\Sysnative\fhengine.dll 2014-06-12 20:20:49 BCD7A47EF587DC00DD61D12D9C2D1E44 169472 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2014-06-12 20:20:49 4C1C6E9BB02654EB38CD6DF4ACE6664B 281088 ----a-w- C:\WINDOWS\Sysnative\mfreadwrite.dll 2014-06-12 20:20:48 61A9A710077526C9A7F068741540D96E 77960 ----a-w- C:\WINDOWS\Sysnative\kdvm.dll 2014-06-12 20:20:48 5EAC1240B4699EC313C69FCADC5F457A 126464 ----a-w- C:\WINDOWS\Sysnative\Robocopy.exe 2014-06-12 20:20:48 3EA778FE9D9B56E67C0783A63C4B142E 197120 ----a-w- C:\WINDOWS\Sysnative\SearchFilterHost.exe 2014-06-12 20:20:43 5D072A59331A34C9BE621C7A55578562 210432 ----a-w- C:\WINDOWS\Sysnative\iuilp.dll 2014-06-12 20:20:40 E8801AF63EE3DEACA29F1F5526C35F53 86280 ----a-w- C:\WINDOWS\Sysnative\kdnet.dll 2014-06-12 20:20:40 012CFE7F0F95266F554EE3B91EE2128A 99840 ----a-w- C:\WINDOWS\Sysnative\wscsvc.dll 2014-06-12 20:20:39 D2EFA32998014927140E40054645CA4E 414720 ----a-w- C:\WINDOWS\Sysnative\GenuineCenter.dll 2014-06-12 20:20:39 31CAB21D19D8794854E037DEAABB499C 745984 ----a-w- C:\WINDOWS\Sysnative\mssvp.dll 2014-06-12 20:20:38 E55A2C4497247F8CA09F1B2AAFAEDD3C 13824 ----a-w- C:\WINDOWS\Sysnative\msshooks.dll 2014-06-12 20:20:38 8383D48F0A55703A613C339EF586C6AA 50176 ----a-w- C:\WINDOWS\Sysnative\fmifs.dll 2014-06-12 20:20:37 3C77496ED7DB0D802427689F7E613777 96256 ----a-w- C:\WINDOWS\Sysnative\mssprxy.dll 2014-06-12 20:20:37 0E2D8CE7A7A459256CBD5698F90D100A 65024 ----a-w- C:\WINDOWS\Sysnative\msscntrs.dll 2014-06-12 20:15:06 D4F14AF64DC2DB6FB3FA23DA49B6050E 1131520 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentServer.dll 2014-06-12 20:15:06 A06CB9269D29EE3D0F3F5630ABB660B8 1332736 ----a-w- C:\WINDOWS\Sysnative\sysmain.dll 2014-06-12 20:15:05 D0C69E44BC1E1D4AD290FD84104623D8 1483776 ----a-w- C:\WINDOWS\Sysnative\VSSVC.exe 2014-06-12 20:15:04 7ACA8A8C9180334B88C402F8FB5FC517 389120 ----a-w- C:\WINDOWS\Sysnative\BCP47Langs.dll 2014-06-12 20:15:04 79FA9393C67EBBF92A56923592CF7A7C 470528 ----a-w- C:\WINDOWS\Sysnative\netprofmsvc.dll 2014-06-12 20:15:00 BAC4C6E060303F461212DEEAD56C2B62 14848 ----a-w- C:\WINDOWS\Sysnative\rars.rs 2014-06-12 20:14:59 E482BED932FFF4CA65099ED19A760574 330240 ----a-w- C:\WINDOWS\Sysnative\stobject.dll 2014-06-12 20:14:59 43B20FC33366C5F867C9F05D03DA651F 151552 ----a-w- C:\WINDOWS\Sysnative\netprofm.dll 2014-06-12 20:14:58 B02E9E96AC9C0F23818FA4B1FDE914BE 708096 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentExtensions.dll 2014-06-12 20:14:58 956F4E14D161D068F9C42AF1FD286181 169984 ----a-w- C:\WINDOWS\Sysnative\netplwiz.dll 2014-06-12 20:14:57 D69E38C31AE78522BCC92212863C0193 560640 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2014-06-12 20:14:57 8018DC4AA69B7B2159B4EBEC9833C67E 93696 ----a-w- C:\WINDOWS\Sysnative\psmsrv.dll 2014-06-12 20:14:57 7D727992D410C8387C45D3148468B28C 812544 ----a-w- C:\WINDOWS\Sysnative\Magnify.exe 2014-06-12 20:14:54 969A5D1871D5CCBC2D90E7A9F509F962 501760 ----a-w- C:\WINDOWS\Sysnative\DevicePairing.dll 2014-06-12 20:14:54 3426BE7D0ED8888ACFE04BA6BB9AF83B 77824 ----a-w- C:\WINDOWS\Sysnative\taskhost.exe 2014-06-12 20:14:53 D566F980C5932F34D226A5476C9BDE5E 419840 ----a-w- C:\WINDOWS\Sysnative\intl.cpl 2014-06-12 20:14:52 3123FDC79AC340B60618B03D3EBE6DD3 120736 ----a-w- C:\WINDOWS\Sysnative\AuthHost.exe 2014-06-12 20:14:51 BCB4D840095140EC137CD2C57C23615C 122368 ----a-w- C:\WINDOWS\Sysnative\biwinrt.dll 2014-06-12 20:14:48 0899BF12B2142213630D49E645B8A507 72192 ----a-w- C:\WINDOWS\Sysnative\taskhostex.exe 2014-06-12 20:14:48 038FA1B55531E7020DB705B42FCCE373 179712 ----a-w- C:\WINDOWS\Sysnative\bisrv.dll 2014-06-12 20:14:44 E2D62B60E6E8C3A1902C1F312CB70C53 17408 ----a-w- C:\WINDOWS\Sysnative\muifontsetup.dll 2014-06-12 19:56:40 6587EB86E32C49AC726817220390CFFE 1627648 ----a-w- C:\WINDOWS\Sysnative\WindowsCodecs.dll 2014-06-12 19:56:25 0E8924B51839B0CC8AB4B9C456220683 1048576 ----a-w- C:\WINDOWS\Sysnative\mfasfsrcsnk.dll 2014-06-12 19:56:23 01344DD46C95BC2A478B52AF07336F4A 5978624 ----a-w- C:\WINDOWS\Sysnative\mstscax.dll 2014-06-12 19:56:20 110B70302AC6EC29FE013C5BB99BA559 1101824 ----a-w- C:\WINDOWS\Sysnative\wmpmde.dll 2014-06-12 19:56:17 D608E0955BF3623B54CFA1A90FCA59FD 1149952 ----a-w- C:\WINDOWS\Sysnative\winmde.dll 2014-06-12 19:56:15 76E6465F3153FCA20F07928BBA62D7B8 951808 ----a-w- C:\WINDOWS\Sysnative\Windows.Globalization.dll 2014-06-12 19:56:10 6FB88606C4A71E1BFAF97D63A676C673 180224 ----a-w- C:\WINDOWS\Sysnative\SystemEventsBrokerServer.dll 2014-06-12 19:56:09 4515B9E4140F04FB3907692DF89FCA87 171008 ----a-w- C:\WINDOWS\Sysnative\TimeBrokerServer.dll 2014-06-12 19:56:03 D3CD3034E2292DBECCD3161DC29D8E07 455168 ----a-w- C:\WINDOWS\Sysnative\netcfgx.dll 2014-06-12 19:56:03 BE611E28DD9AF75A6B904B55F5D6E6C3 245248 ----a-w- C:\WINDOWS\Sysnative\usbmon.dll 2014-06-12 19:56:03 3013658A4D327854BEEC4A08D9655194 103936 ----a-w- C:\WINDOWS\Sysnative\wpdbusenum.dll 2014-06-12 19:55:56 A6B742C6B8CF9A37E0EF470DF890F74B 703488 ----a-w- C:\WINDOWS\Sysnative\drvstore.dll 2014-06-12 19:55:54 821D79C4602C5BF6C8183630D301638A 150016 ----a-w- C:\WINDOWS\Sysnative\discan.dll 2014-06-12 19:55:48 25FD6AB608C7CFDEAAC24BA882AC4052 117248 ----a-w- C:\WINDOWS\Sysnative\NdisImPlatform.dll 2014-06-12 19:55:40 50361572A98348A6E780FFE231B55D49 49152 ----a-w- C:\WINDOWS\Sysnative\DevDispItemProvider.dll 2014-06-12 19:55:39 F5BB165DD4C8B784E06E3F0324150E0F 156160 ----a-w- C:\WINDOWS\Sysnative\powercfg.cpl 2014-06-12 19:55:18 1F11A9A178E063B2A04C2903C4346B7F 240640 ----a-w- C:\WINDOWS\Sysnative\fsquirt.exe 2014-06-12 19:55:13 3A014B98C45AA8C0E4ABF2AB764F9AAC 71168 ----a-w- C:\WINDOWS\Sysnative\WSDPrintProxy.DLL 2014-06-12 18:18:58 E47235E8DF26CA48DA189ACFD756329C 888320 ----a-w- C:\WINDOWS\Sysnative\autochk.exe 2014-06-12 18:18:57 46CC344A94F7C6AAE35724A5CFCB8609 542208 ----a-w- C:\WINDOWS\Sysnative\untfs.dll 2014-06-11 16:27:11 BA9BEF9D223E174B0C1395FF59A90FFE 1301504 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2014-06-11 16:25:54 E455C83E029121270BED73CDAC381F37 1160192 ----a-w- C:\WINDOWS\Sysnative\IKEEXT.DLL 2014-06-11 16:25:54 53AA55632B94622F2DC3695E86EF9363 723968 ----a-w- C:\WINDOWS\Sysnative\BFE.DLL 2014-06-11 16:24:59 061A977C920FBE4BF71FF47C966DDDCA 4917760 ----a-w- C:\WINDOWS\Sysnative\sppsvc.exe 2014-06-11 16:24:57 D4D04839F3DFAF09D94BAB1016F7A297 2371728 ----a-w- C:\WINDOWS\Sysnative\WSService.dll 2014-06-11 16:24:57 C80BE09E09CBD2D85D95C96CD9EA839B 1164288 ----a-w- C:\WINDOWS\Sysnative\sppobjs.dll 2014-06-11 16:24:57 4DD390AE1E1AD7EE02EFBB40FFBFE353 209200 ----a-w- C:\WINDOWS\Sysnative\NotificationUI.exe 2014-06-11 16:24:55 C34DDB3F1082D40B9795AB7013C6E8B3 688640 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2014-06-11 16:24:55 0F33B2A36E50793A08C86A0DBFFD60D5 105984 ----a-w- C:\WINDOWS\Sysnative\WinSetupUI.dll 2014-06-11 16:24:54 C121D6818C4FD2B8572F3409D4FF556F 120320 ----a-w- C:\WINDOWS\Sysnative\sppc.dll 2014-06-11 16:24:54 20FAFBD28EC1128955308E7ABA5E765A 368640 ----a-w- C:\WINDOWS\Sysnative\sppwinob.dll 2014-06-11 16:24:52 DD9730BDD6515CE314F2EAAADFE54951 183808 ----a-w- C:\WINDOWS\Sysnative\WSSync.dll 2014-06-11 16:24:52 AA3BF5E865917912239E52E2217556CA 204800 ----a-w- C:\WINDOWS\Sysnative\WSClient.dll 2014-06-11 16:24:52 00DC7D597DAA2740100B18BDD8CA8B7E 198656 ----a-w- C:\WINDOWS\Sysnative\Windows.ApplicationModel.Store.dll 2014-06-11 16:24:51 5C1442CC4FD8628839852297C05D6EF2 81408 ----a-w- C:\WINDOWS\Sysnative\setupcln.dll 2014-06-11 16:24:23 A2D7F03BA538D9EFF7EF283E2FDBB30B 235520 ----a-w- C:\WINDOWS\Sysnative\rdpudd.dll 2014-06-11 16:24:23 6DFC361AF35A7C1928EF00ACC2E461D7 3246592 ----a-w- C:\WINDOWS\Sysnative\rdpcorets.dll 2014-06-11 16:22:42 544A2EB9629532C6C8D4FE7DB9181FA4 62976 ----a-w- C:\WINDOWS\Sysnative\imagehlp.dll 2014-06-11 16:22:34 8A8DB47DDF6B2118DF4D1561CEA586B3 652288 ----a-w- C:\WINDOWS\Sysnative\comctl32.dll 2014-06-11 16:20:48 9002A0C3E940E1A01BD03A7062B27B41 19759104 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2014-06-11 16:19:10 05F9C60AD29EDF12929663B1227D28F5 600064 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2014-06-11 16:17:44 E41F6D65A38FF596254FF4899E26F357 39936 ----a-w- C:\WINDOWS\Sysnative\iernonce.dll 2014-06-11 16:17:43 E58CA58CE7126ABA7BBCBA518E177EE3 197120 ----a-w- C:\WINDOWS\Sysnative\msrating.dll 2014-06-11 16:17:43 CC25DBC03D5492E4BB5BBC2BC7AE300A 2706432 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2014-06-11 16:17:43 A28977D4ADBDCA4E72A1E0EE22C4BF65 1366016 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2014-06-11 16:17:43 990CADAAD3A5E3BE39BB71C582781F0E 136704 ----a-w- C:\WINDOWS\Sysnative\iesysprep.dll 2014-06-11 16:17:43 1F6CB2605311BD90763B9DA6ED44BD22 51712 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2014-06-11 16:17:42 3D565B725F2E8CA65E1DDE371543B4F8 53760 ----a-w- C:\WINDOWS\Sysnative\UXInit.dll 2014-06-11 16:17:39 E689794136A6ACF839C01A2DFF965BC0 1508864 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2014-06-11 16:17:38 F181992EBE03646ECA4344C6DDE0975D 915968 ----a-w- C:\WINDOWS\Sysnative\uxtheme.dll 2014-06-11 16:17:38 1854BA1C8076E17146DB9FC3190E713D 603136 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2014-06-11 16:17:37 43FE211BF795E9B9E1B5B235F1FE46D0 67072 ----a-w- C:\WINDOWS\Sysnative\iesetup.dll 2014-06-11 16:17:35 FFF2A91E3E338C7D4752E0DEA63881C2 53760 ----a-w- C:\WINDOWS\Sysnative\jsproxy.dll 2014-06-11 16:17:34 B2A9CE2659BFB41526FE76D8E80BCE3C 281600 ----a-w- C:\WINDOWS\Sysnative\dxtrans.dll 2014-06-11 16:17:33 E586C06D10EA9184E23871298258D9E0 15368704 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2014-06-11 16:17:30 73AB92A1AA104EAF08B7AEA27B10C5CD 2239488 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2014-06-11 16:17:29 FE53AACE72D45C7EFC8BA8D93498548B 452096 ----a-w- C:\WINDOWS\Sysnative\dxtmsft.dll 2014-06-11 16:17:29 40D30DAD6874AF781229C3B85DF47C88 855552 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2014-06-11 16:17:26 2B2BF069F45BCD774D0D584E9640B3E4 97792 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2014-06-11 16:17:23 36EA060DD7FF676E9A5E76F8E018002A 19290112 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-06-11 16:16:49 FC4AC8F1E9218E8921012397F2165396 3958784 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2014-06-11 16:16:49 EE625C14C19F5CF864B4030591BF3AE4 2650112 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2014-06-11 16:14:25 61EE56D354A5B425845F6A38CE401F92 1890816 ----a-w- C:\WINDOWS\Sysnative\crypt32.dll 2014-06-11 16:13:17 6BDCC68E85A386414E4E028DEB768350 1314816 ----a-w- C:\WINDOWS\Sysnative\rpcrt4.dll 2014-06-11 16:13:07 126D6B3B7E8339A2537C4E1FEFA454A7 4036608 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2014-06-11 16:11:43 3C300826241468F59D7C0244B4D8B867 1255936 ----a-w- C:\WINDOWS\Sysnative\certutil.exe 2014-06-11 16:11:42 8D454387D12D4DB13805F4128DE8F117 141312 ----a-w- C:\WINDOWS\Sysnative\cryptnet.dll 2014-06-11 16:09:38 FD16BDF463EF68ADD48026ACCEA100B8 362496 ----a-w- C:\WINDOWS\Sysnative\atmfd.dll 2014-06-11 16:09:38 469A5DCF1E51DC9AF03CE1B3B4360DEE 46080 ----a-w- C:\WINDOWS\Sysnative\atmlib.dll 2014-06-11 16:09:27 3E57DE8477F6F851B43904B50B1816C5 1838080 ----a-w- C:\WINDOWS\Sysnative\DWrite.dll 2014-06-11 16:09:12 425B488F076DF105CFB8A700D2A50352 6987096 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2014-06-11 16:09:09 8501267018C90AE5C6D736D673B8DA2A 982016 ----a-w- C:\WINDOWS\Sysnative\KernelBase.dll 2014-06-11 16:09:09 02D1B7DF0EF66CF5C20C7412E4CB094F 1281536 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2014-06-11 16:09:08 D082B5BEBF77753442BA212DA7BD6D93 827904 ----a-w- C:\WINDOWS\Sysnative\kerberos.dll 2014-06-11 16:09:07 3A52B02E38CE289A05EAFC42844D714D 588288 ----a-w- C:\WINDOWS\Sysnative\SHCore.dll 2014-06-11 16:09:06 8B072BB69984C8FE36914BF0E9F69281 419328 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2014-06-11 16:09:04 A294087B82A4EB0CD179D0A90DE3B651 318464 ----a-w- C:\WINDOWS\Sysnative\msv1_0.dll 2014-06-11 16:09:04 773DF0EC54E53CE2CEEFB776CF941A93 164864 ----a-w- C:\WINDOWS\Sysnative\sspicli.dll 2014-06-11 16:09:04 37C282CF52358E6CF25A36B2D94EC4D1 684032 ----a-w- C:\WINDOWS\Sysnative\objsel.dll 2014-06-11 16:09:03 0D56D94264702B235C87EAD49D443949 179712 ----a-w- C:\WINDOWS\Sysnative\dpapisrv.dll 2014-06-11 16:09:02 D85E906ACB458BE4BF5F3C9B35404A74 439808 ----a-w- C:\WINDOWS\Sysnative\lsm.dll 2014-06-11 16:09:02 D736F2A53EEC2CD9AEAE44B653A7CCDB 1043968 ----a-w- C:\WINDOWS\Sysnative\usercpl.dll 2014-06-11 16:09:01 7926C10A43BBED1D04DFC17A7042FF68 208896 ----a-w- C:\WINDOWS\Sysnative\wdigest.dll 2014-06-11 16:09:00 F1DA34D64F2BA200D28A7451804E2FEE 35840 ----a-w- C:\WINDOWS\Sysnative\lsass.exe 2014-06-11 16:09:00 3639852ECE97DF80A23DF26E41C5A9AF 94720 ----a-w- C:\WINDOWS\Sysnative\TSpkg.dll 2014-06-11 16:08:59 E6A730CD372B10DB1AA3BC7D4DF39AD7 45056 ----a-w- C:\WINDOWS\Sysnative\dimsroam.dll 2014-06-11 16:08:58 5579488320C3C827E75F5E8BBDF44AF6 20480 ----a-w- C:\WINDOWS\Sysnative\credssp.dll 2014-06-11 16:08:58 14D42343D1FBA771C8884B705637A821 27648 ----a-w- C:\WINDOWS\Sysnative\sspisrv.dll 2014-06-11 16:08:57 578F8E769CAB4B52D132843B6FE85475 14848 ----a-w- C:\WINDOWS\Sysnative\workerdd.dll 2014-06-11 16:06:15 5544F876B3932D3D6ED67656B28228CF 112872 ----a-w- C:\WINDOWS\Sysnative\consent.exe 2014-06-11 16:06:15 4F750B7EFCB6520AE01E01D082D7D476 70144 ----a-w- C:\WINDOWS\Sysnative\appinfo.dll 2014-06-11 16:05:05 93CF42531671EA4E24DA842B124FA269 733184 ----a-w- C:\WINDOWS\Sysnative\win32spl.dll 2014-06-11 16:04:42 67AB74C4493C123D1E32F013222DA107 2842112 ----a-w- C:\WINDOWS\Sysnative\WMVDECOD.DLL 2014-06-11 16:04:40 20E0FC5F724B85CA09C82D2776E84C5E 124112 ----a-w- C:\WINDOWS\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2014-06-11 16:04:31 74466D77EE8588C04B95AE9DBC693EF8 337408 ----a-w- C:\WINDOWS\Sysnative\wintrust.dll 2014-06-11 16:04:30 F68F697F5B4E74217159C38FFFD37964 124416 ----a-w- C:\WINDOWS\Sysnative\apprepapi.dll 2014-06-11 16:04:30 E4E889A9CA3E8CCEE6FB5D1B4F94296F 98304 ----a-w- C:\WINDOWS\Sysnative\apprepsync.dll 2014-06-11 16:04:30 5CE2742F063731EC10C1B2EE386A2C08 68096 ----a-w- C:\WINDOWS\Sysnative\cryptsvc.dll 2014-06-11 16:04:23 F5BAFB32D8EC6286B96C23E27CEF2578 146944 ----a-w- C:\WINDOWS\Sysnative\cscript.exe 2014-06-11 16:04:23 D890ECBF9D1BE08B81C7832690DD16B0 143872 ----a-w- C:\WINDOWS\Sysnative\wshom.ocx 2014-06-11 16:04:23 C867433D5C96E4F616F0AEC2E0E46B5D 222720 ----a-w- C:\WINDOWS\Sysnative\scrobj.dll 2014-06-11 16:04:23 907B7589463313452942F17297D8CDB7 194048 ----a-w- C:\WINDOWS\Sysnative\scrrun.dll 2014-06-11 16:04:03 D05FDB359808642231FC244CD06E8E4C 2238976 ----a-w- C:\WINDOWS\Sysnative\d3d10warp.dll 2014-06-11 16:04:03 B9868B46EC3A67EF9B85B9437DB2CB65 3842560 ----a-w- C:\WINDOWS\Sysnative\d2d1.dll 2014-06-11 16:00:34 220FC13B64A483A8B0ED2E3758CFAA56 595968 ----a-w- C:\WINDOWS\Sysnative\qedit.dll 2014-06-11 16:00:11 AFB0FFB0E349B72EB335BDE6FDFD164B 144896 ----a-w- C:\WINDOWS\Sysnative\tssdisai.dll 2014-06-11 16:00:09 6C164DB26B40E4EC1B60AAF87C8BCA63 122880 ----a-w- C:\WINDOWS\Sysnative\VmHostAI.dll 2014-06-11 16:00:09 6BA877DC84A42BB6EFCDD300D32DE230 126976 ----a-w- C:\WINDOWS\Sysnative\RDWebAI.dll 2014-06-11 16:00:09 19D7C8C2186B5D0230361D7BDBA3558D 135680 ----a-w- C:\WINDOWS\Sysnative\appserverai.dll 2014-06-11 16:00:05 13D62F90D06CDE48A5A68686F524940A 148480 ----a-w- C:\WINDOWS\Sysnative\poqexec.exe 2014-06-11 15:59:52 4ABAA6956EE250DEFBE31B3BB1F2FEED 1845760 ----a-w- C:\WINDOWS\Sysnative\msxml3.dll 2014-06-11 14:51:02 939717674154417F0B51671FFF651709 328192 ----a-w- C:\WINDOWS\Sysnative\CNC270L.dll 2014-06-11 14:51:02 41EAAC265B16CF94FE136B780F8DB312 92672 ----a-w- C:\WINDOWS\Sysnative\CNC270I.dll 2014-06-11 14:51:01 EC3C86375905CAA463E0BB25A657CCD7 12544 ----a-w- C:\WINDOWS\Sysnative\CNC173BD.TBL 2014-06-11 14:51:01 B7C13F529A726068B0EECAAC05063AB4 1321984 ----a-w- C:\WINDOWS\Sysnative\CNC270C.dll 2014-06-11 14:51:01 493574E218AA18161D14EECFD572A0E8 17920 ----a-w- C:\WINDOWS\Sysnative\CNHMCA6.dll 2014-06-11 14:47:15 DD6028E17DF06C524B29177829B569A3 336896 ----a-w- C:\WINDOWS\Sysnative\CNMLM9X.DLL 2014-06-11 14:46:47 7B7C262BB16D6A47054577026D6F2153 104960 ----a-w- C:\WINDOWS\Sysnative\CNC270O.dll 2014-06-11 14:46:34 936AA43A69EB7E0DA2CD5BDDB43E19BF 244736 ----a-w- C:\WINDOWS\Sysnative\CNMIU9X.DLL 2014-06-11 12:24:02 BDEC09A032DB44D9CDB3A0D97224D64E 176984 ----a-w- C:\WINDOWS\Sysnative\xactengine3_7.dll 2014-06-11 12:24:00 5F1DA86286A2DFB01C4FED55C2DD1D61 1907552 ----a-w- C:\WINDOWS\Sysnative\d3dcsx_43.dll 2014-06-11 12:23:59 AD7FA9485059F4DC53C98B49CAB13F0B 511328 ----a-w- C:\WINDOWS\Sysnative\d3dx10_43.dll 2014-06-11 12:23:56 A9724EB3D6CC032D0C4ECAFF4AD8C17F 78680 ----a-w- C:\WINDOWS\Sysnative\XAPOFX1_4.dll 2014-06-11 12:23:56 7160FC226391C0B50C85571FA1A546E5 2401112 ----a-w- C:\WINDOWS\Sysnative\D3DX9_43.dll 2014-06-11 12:23:56 05E88C8D8E652DFF03B469331F474CCE 530776 ----a-w- C:\WINDOWS\Sysnative\XAudio2_6.dll 2014-06-11 12:23:55 B4FF2A39685C1A6D43F0E56EB350AF3A 24920 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_7.dll 2014-06-11 12:23:55 936DCC640B2991905D909395E03B64F9 176984 ----a-w- C:\WINDOWS\Sysnative\xactengine3_6.dll 2014-06-11 12:23:53 C291AEFD47A587FF5F509E2F96613F7D 517960 ----a-w- C:\WINDOWS\Sysnative\XAudio2_5.dll 2014-06-11 12:23:51 51D65BE2F794B944CADAF287B34EF603 176968 ----a-w- C:\WINDOWS\Sysnative\xactengine3_5.dll 2014-06-11 12:23:47 E92D2E4AFA43CD39A8C1C2C2DB59667E 2582888 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_42.dll 2014-06-11 12:23:45 F13B90F5090EBA9041558BC6AAED79B8 5554512 ----a-w- C:\WINDOWS\Sysnative\d3dcsx_42.dll 2014-06-11 12:23:45 522749761B6CC69F8630F4B472DCA623 285024 ----a-w- C:\WINDOWS\Sysnative\d3dx11_42.dll 2014-06-11 12:23:34 1AF7AE1FDE027A30B9097280819A0A86 2475352 ----a-w- C:\WINDOWS\Sysnative\D3DX9_42.dll 2014-06-11 12:23:30 E730967811E3702499446FFC8A432607 520544 ----a-w- C:\WINDOWS\Sysnative\d3dx10_41.dll 2014-06-11 12:23:30 A59A5BADE4AF200C720D99EAE6E04E0E 2430312 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_41.dll 2014-06-11 12:23:28 ECDDB13BC805B9F3EF3A855E6FD85C69 5425496 ----a-w- C:\WINDOWS\Sysnative\D3DX9_41.dll 2014-06-11 12:23:25 B94F08069EFE2F8151DEF350E526E063 521560 ----a-w- C:\WINDOWS\Sysnative\XAudio2_4.dll 2014-06-11 12:23:25 37B348A79C4C9B8AB925B18FFD241E96 73544 ----a-w- C:\WINDOWS\Sysnative\XAPOFX1_3.dll 2014-06-11 12:23:23 1BA01062450BD1F052C54C01C12248F6 174936 ----a-w- C:\WINDOWS\Sysnative\xactengine3_4.dll 2014-06-11 12:23:22 EEE871CC4F5563FF8B3C8385B32B0C5F 24920 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_6.dll 2014-06-11 12:23:22 862586AD4B1355F7DCDE111EE0AAF350 519000 ----a-w- C:\WINDOWS\Sysnative\d3dx10_40.dll 2014-06-11 12:23:22 37309B833480DC69FDE7DB68F9B8BC20 2605920 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_40.dll 2014-06-11 12:23:20 29A79F0B607FAF5722D7BAF2485F632A 5631312 ----a-w- C:\WINDOWS\Sysnative\D3DX9_40.dll 2014-06-11 12:23:17 758139A39AECC1B512576275A27C1177 518480 ----a-w- C:\WINDOWS\Sysnative\XAudio2_3.dll 2014-06-11 12:23:17 2F8F9B707FED2405A787380230CC6FA9 74576 ----a-w- C:\WINDOWS\Sysnative\XAPOFX1_2.dll 2014-06-11 12:23:15 CFF1C1F7B9F855DDEE431D7B5DCACDF8 25936 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_5.dll 2014-06-11 12:23:15 84B41FD03CAFC5048346B3B2AB92D199 175440 ----a-w- C:\WINDOWS\Sysnative\xactengine3_3.dll 2014-06-11 12:23:11 E335DF094836EE7030F1B9CE7429E884 513544 ----a-w- C:\WINDOWS\Sysnative\XAudio2_2.dll 2014-06-11 12:23:11 0F2DB378FBE2D124E4D3631B329688AE 72200 ----a-w- C:\WINDOWS\Sysnative\XAPOFX1_1.dll 2014-06-11 12:23:09 CC8399A9E51B2AF1C2C20A26D85EB60E 177672 ----a-w- C:\WINDOWS\Sysnative\xactengine3_2.dll 2014-06-11 12:23:06 EAA692FDC990ED0407DF957316DA33C2 540688 ----a-w- C:\WINDOWS\Sysnative\d3dx10_39.dll 2014-06-11 12:23:06 7741A0A6CED6C441B97D625B730D6075 1942552 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_39.dll 2014-06-11 12:23:04 7505C133FC704B40CFDDFD38777BAAC3 4992520 ----a-w- C:\WINDOWS\Sysnative\D3DX9_39.dll 2014-06-11 12:23:01 E9C0F926D7C9082A805F4FEF81DEEB30 511496 ----a-w- C:\WINDOWS\Sysnative\XAudio2_1.dll 2014-06-11 12:23:01 0E92D8C0ECA74B6D0A55ABAD53226113 68104 ----a-w- C:\WINDOWS\Sysnative\XAPOFX1_0.dll 2014-06-11 12:22:58 A2A098BF5A8C255A0090818AD8E87B0F 177672 ----a-w- C:\WINDOWS\Sysnative\xactengine3_1.dll 2014-06-11 12:22:57 DE6004D16DBACD781ED4596C4FEA7D14 28168 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_4.dll 2014-06-11 12:22:55 A7E59BB6FAC119FABB83F18BD72AA1D7 1941528 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_38.dll 2014-06-11 12:22:55 72CB653CECF4EA670E7F5A8D74358423 540688 ----a-w- C:\WINDOWS\Sysnative\d3dx10_38.dll 2014-06-11 12:22:54 E5EC2AB7156A752F9614CDA4BE66EFE8 4991496 ----a-w- C:\WINDOWS\Sysnative\D3DX9_38.dll 2014-06-11 12:22:50 29AF48F6C894328A58DEFDC560A70CF3 489480 ----a-w- C:\WINDOWS\Sysnative\XAudio2_0.dll 2014-06-11 12:22:48 A8B5370B7B61D3777D840DA1C64A1C2D 177672 ----a-w- C:\WINDOWS\Sysnative\xactengine3_0.dll 2014-06-11 12:22:47 C4C2ED69B18EE1C60026877FCC470FA7 28168 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_3.dll 2014-06-11 12:22:45 A8C5688BBA00C1630550F26260AB5CAE 529424 ----a-w- C:\WINDOWS\Sysnative\d3dx10_37.dll 2014-06-11 12:22:45 31026CEA5AFA2798292179102C06FE40 1860120 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_37.dll 2014-06-11 12:22:43 8A10974DC6E1E42BDC635C2C2AFBD2CC 4910088 ----a-w- C:\WINDOWS\Sysnative\D3DX9_37.dll 2014-06-11 12:22:41 E8932AF24786765859558CB79E385AC2 411656 ----a-w- C:\WINDOWS\Sysnative\xactengine2_10.dll 2014-06-11 12:22:38 7299DF5CF81135934740211D9A946737 2006552 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_36.dll 2014-06-11 12:22:38 570FDAE7041775DE0C67747BB7081939 508264 ----a-w- C:\WINDOWS\Sysnative\d3dx10_36.dll 2014-06-11 12:22:37 BBB6C6833C30E323B41860D6DF61972D 5081608 ----a-w- C:\WINDOWS\Sysnative\d3dx9_36.dll 2014-06-11 12:22:28 A69C32C2BD01522A088D254342826866 411496 ----a-w- C:\WINDOWS\Sysnative\xactengine2_9.dll 2014-06-11 12:22:25 B21427EDF0449E92000FF497DAAF89C9 1985904 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_35.dll 2014-06-11 12:22:25 84116AA94672D623B95217648AE5B5B9 508264 ----a-w- C:\WINDOWS\Sysnative\d3dx10_35.dll 2014-06-11 12:22:20 1B3AF16A27D390096925576202A64037 5073256 ----a-w- C:\WINDOWS\Sysnative\d3dx9_35.dll 2014-06-11 12:22:16 FA485E76F94B7457767E372F47757733 409960 ----a-w- C:\WINDOWS\Sysnative\xactengine2_8.dll 2014-06-11 12:22:16 BC78D5328541410510DDE06B9FA92024 21000 ----a-w- C:\WINDOWS\Sysnative\X3DAudio1_2.dll 2014-06-11 12:22:14 9D9407F52B8E24E99358D9944B0D5FA3 1401200 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_34.dll 2014-06-11 12:22:14 1ED4E7A82BD5C7DEED082F00E63BB7A0 506728 ----a-w- C:\WINDOWS\Sysnative\d3dx10_34.dll 2014-06-11 12:22:13 AE5D5439525B4A4CBF206058D493685D 4496232 ----a-w- C:\WINDOWS\Sysnative\d3dx9_34.dll 2014-06-11 12:22:12 BFB3091B167550EC6E6454813D3DB244 107368 ----a-w- C:\WINDOWS\Sysnative\xinput1_3.dll 2014-06-11 12:22:11 8C970509E0AE10061E3ED6D51E34FEB9 403304 ----a-w- C:\WINDOWS\Sysnative\xactengine2_7.dll 2014-06-11 12:22:10 839C3921005BB41D441E3752C74F2292 506728 ----a-w- C:\WINDOWS\Sysnative\d3dx10_33.dll 2014-06-11 12:22:10 3EBF620536A13CA343E52ECA4F0DE7F8 1400176 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_33.dll 2014-06-11 12:22:09 3172C3CAC8EA7CA1B5D5AF6699C037D6 4494184 ----a-w- C:\WINDOWS\Sysnative\d3dx9_33.dll 2014-06-11 12:22:07 4837A54574A6105D404A8560984B93DD 393576 ----a-w- C:\WINDOWS\Sysnative\xactengine2_6.dll 2014-06-11 12:21:58 398FF46FF7354FED2F0F1AECDB546866 390424 ----a-w- C:\WINDOWS\Sysnative\xactengine2_5.dll 2014-06-11 12:21:57 8251826F04BA0822D08AD9B92C65A3D5 469264 ----a-w- C:\WINDOWS\Sysnative\d3dx10.dll 2014-06-11 12:21:54 58BB51253427A834A8807B9245CC5965 364824 ----a-w- C:\WINDOWS\Sysnative\xactengine2_4.dll 2014-06-11 12:21:54 489E5B8BB1BD1028FF1C798EAAEC65E4 17688 ----a-w- C:\WINDOWS\Sysnative\x3daudio1_1.dll 2014-06-11 12:21:53 FAAA0BB9CD2905B25334132E5BA093EB 3977496 ----a-w- C:\WINDOWS\Sysnative\d3dx9_31.dll 2014-06-11 12:21:52 06F15D3CB1AE0EAFA50F595B3FF8D9F5 83736 ----a-w- C:\WINDOWS\Sysnative\xinput1_2.dll 2014-06-11 12:21:52 0396D2A98B0CCD4419B572EBF618E81E 363288 ----a-w- C:\WINDOWS\Sysnative\xactengine2_3.dll 2014-06-11 12:21:50 DC5A914C34EB12056531777D4DD0F44E 354072 ----a-w- C:\WINDOWS\Sysnative\xactengine2_2.dll 2014-06-11 12:21:46 6F9D3289D8B166E478AFFF9EFA92C42C 83664 ----a-w- C:\WINDOWS\Sysnative\xinput1_1.dll 2014-06-11 12:21:43 0CC809422AB40974DFF8078392E4D507 352464 ----a-w- C:\WINDOWS\Sysnative\xactengine2_1.dll 2014-06-11 12:21:24 E09A9CF383ACF4A28038561E62277377 3927248 ----a-w- C:\WINDOWS\Sysnative\d3dx9_30.dll 2014-06-11 12:21:12 CE5753F9A27837259EB52F3F47F39593 355536 ----a-w- C:\WINDOWS\Sysnative\xactengine2_0.dll 2014-06-11 12:21:11 F77D5AB654881E683CFF6650916C424E 16592 ----a-w- C:\WINDOWS\Sysnative\x3daudio1_0.dll 2014-06-11 12:21:11 68B35CBDB4A8CC424718BBCC894FEEEA 3830992 ----a-w- C:\WINDOWS\Sysnative\d3dx9_29.dll 2014-06-11 12:21:09 88BAC8306D4EC79A82B1FFA17DC8CF4A 3815120 ----a-w- C:\WINDOWS\Sysnative\d3dx9_28.dll 2014-06-11 12:21:07 914C3237E4D145A18DCD1D0D4C8659E1 3807440 ----a-w- C:\WINDOWS\Sysnative\d3dx9_27.dll 2014-06-11 12:21:06 44F5C5E27D6825E4E62420BC29B8B533 3767504 ----a-w- C:\WINDOWS\Sysnative\d3dx9_26.dll 2014-06-11 12:21:05 4C56E7C5B2A61353E534C7D15D05856D 3823312 ----a-w- C:\WINDOWS\Sysnative\d3dx9_25.dll 2014-06-11 12:21:02 B165DF72E13E6AF74D47013504319921 3544272 ----a-w- C:\WINDOWS\Sysnative\d3dx9_24.dll 2014-06-11 08:44:32 6FB598E8DE02D879D17B35F144A1B3BC 270496 ------w- C:\WINDOWS\Sysnative\MpSigStub.exe 2014-06-11 08:40:36 A5F57CC499EEC2D4EF8BECDFEDE78875 95414520 ----a-w- C:\WINDOWS\Sysnative\MRT.exe 2014-06-10 10:47:20 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\WINDOWS\Sysnative\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-06-10 09:32:21 DCE5597FCFE6258D656DECA270597282 1664 ----a-w- C:\WINDOWS\Sysnative\ASOROSet.bin 2014-06-09 10:53:21 A4C997A24702C6B617ED9A5B0A39C8E0 499200 ----a-w- C:\WINDOWS\Sysnative\stcplx64.dll 2014-06-09 10:53:19 1BBC7919DD0AABE04AFAAD7DAE1C7A78 2213376 ----a-w- C:\WINDOWS\Sysnative\stapo64.dll 2014-06-09 10:53:15 2A0D353D5380575D3144016349658BCD 697856 ------w- C:\WINDOWS\Sysnative\stapi64.dll 2014-06-09 10:53:11 ADF03FD14AC8368120D31AA307E9DDE2 256000 ----a-w- C:\WINDOWS\Sysnative\st646498.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-06-13 19:27:03 33F90B202E9DD9B7D489EB59310FDC34 283064 ----a-w- C:\WINDOWS\Sysnative\drivers\dtsoftbus01.sys 2014-06-12 20:28:41 0698DEDEAD6A00AD0D468C687D830FBF 69864 ----a-w- C:\WINDOWS\Sysnative\drivers\pdc.sys 2014-06-12 20:27:09 8504ADDE9C146C6295B16D13A0007560 619008 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2014-06-12 20:27:09 7B9BD186B7672DA1D79D5685BB2904CD 328024 ----a-w- C:\WINDOWS\Sysnative\drivers\Classpnp.sys 2014-06-12 20:26:57 BB0F9E19C5CE4DC765B263E2A5561DE1 247808 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2014-06-12 20:26:57 961A45CC15514178E511BBF1384CE0B8 83968 ----a-w- C:\WINDOWS\Sysnative\drivers\hidclass.sys 2014-06-12 20:26:57 7A761AEE58658378BBA45D360F874CB0 370688 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2014-06-12 20:26:57 697B78CE3925E4FBFC544232A5E9E2EB 215040 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2014-06-12 20:26:56 A4071DA3AE419F9694BFCB267C7DB8D7 78336 ----a-w- C:\WINDOWS\Sysnative\drivers\IPMIDrv.sys 2014-06-12 20:26:56 346DEF1A9DB0B4133CE0FA38AAF565C0 32768 ----a-w- C:\WINDOWS\Sysnative\drivers\hidparse.sys 2014-06-12 20:26:56 012C354B4AB48E9A7A657DF39E3A2073 27648 ----a-w- C:\WINDOWS\Sysnative\drivers\hidusb.sys 2014-06-12 20:26:40 E94F7A7B48C7638D1F3F8089344C97B7 151896 ----a-w- C:\WINDOWS\Sysnative\drivers\tpm.sys 2014-06-12 20:26:40 C1646A95EAC515F60CDB2A7A8A013C1E 465240 ----a-w- C:\WINDOWS\Sysnative\drivers\fvevol.sys 2014-06-12 20:26:39 07C872F13ACC81A5F10DEC6CF37BF9A8 61784 ----a-w- C:\WINDOWS\Sysnative\drivers\crashdmp.sys 2014-06-12 20:25:23 F58B030A0664385C707B8C1C63682041 195416 ----a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2014-06-12 20:25:23 DD7B107B2BB3EE845F57315EF4ECAC9A 125784 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2014-06-12 20:25:22 FC2B8B06BDBD3B6457F5A3DA9AD2410E 120144 ----a-w- C:\WINDOWS\Sysnative\drivers\msgpioclx.sys 2014-06-12 20:25:22 630555943E5A3FE21010CE91EC7FC84F 341504 ----a-w- C:\WINDOWS\Sysnative\drivers\HdAudio.sys 2014-06-12 20:25:21 BFC7FE4AAEB61317A921871B4085EF4B 119040 ----a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2014-06-12 20:25:20 25C50F4EDF70D0A831E0566BD181CCF2 321536 ----a-w- C:\WINDOWS\Sysnative\drivers\udfs.sys 2014-06-12 20:24:47 E6AF4DF1817953D73C519B17CF849756 1455448 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2014-06-12 20:24:46 E5F7328B1D29BCE791862CD3C0DD382A 447320 ----a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2014-06-12 20:24:45 9110193D93960E38B8692E4519C75D72 285016 ----a-w- C:\WINDOWS\Sysnative\drivers\spaceport.sys 2014-06-12 20:24:17 AE3786294CC246A5403783E1B86A0168 100696 ----a-w- C:\WINDOWS\Sysnative\drivers\disk.sys 2014-06-12 20:24:16 4CCBBD4944777CA100B9A6C2F149A46F 74752 ----a-w- C:\WINDOWS\Sysnative\drivers\mpsdrv.sys 2014-06-12 20:21:21 61FE70659CD43E07F94DA4DC31DEC493 805376 ----a-w- C:\WINDOWS\Sysnative\drivers\PEAuth.sys 2014-06-12 20:20:40 61F6972FF9AC9A8D0B4D62076DC30051 83456 ----a-w- C:\WINDOWS\Sysnative\drivers\wanarp.sys 2014-06-12 20:20:40 085F150D002B7F0153D3C06DDF33A143 95744 ----a-w- C:\WINDOWS\Sysnative\drivers\hidbth.sys 2014-06-12 20:20:39 3730942D7DB2F8BB5F84542B7FF6F650 60416 ----a-w- C:\WINDOWS\Sysnative\drivers\ndproxy.sys 2014-06-12 20:15:05 CA03D642ACE58E1BA54E4B383F91CD69 427520 ----a-w- C:\WINDOWS\Sysnative\drivers\rdbss.sys 2014-06-12 19:56:07 091607B272C5E7BE2DCEF2D5463A407B 332520 ----a-w- C:\WINDOWS\Sysnative\drivers\storport.sys 2014-06-12 19:56:02 13795CAA34239D97A7211E7F9D96E012 1175040 ----a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2014-06-12 19:55:59 500BE6B2E49883720D0AE8BB859ED7A3 495336 ----a-w- C:\WINDOWS\Sysnative\drivers\vhdmp.sys 2014-06-12 19:55:53 CCBFCABDFE2BC22F0645CEAADDB36004 156672 ----a-w- C:\WINDOWS\Sysnative\drivers\rfcomm.sys 2014-06-12 19:55:45 B240874B2CA0CD02E8CD11E140B14C57 77544 ----a-w- C:\WINDOWS\Sysnative\drivers\storahci.sys 2014-06-12 19:55:05 C0ADEBED913295803B579ED288936CBB 26112 ----a-w- C:\WINDOWS\Sysnative\drivers\mouhid.sys 2014-06-12 19:54:52 EA8EAD3F5B762F889CC7F3966625B48B 30720 ----a-w- C:\WINDOWS\Sysnative\drivers\monitor.sys 2014-06-12 18:58:35 AB6F7DE8BFBF61A42F8764D9A621BD8B 269592 ----a-w- C:\WINDOWS\Sysnative\drivers\WdFilter.sys 2014-06-12 18:58:34 3772FF85F0098686B0DCD77076AE0786 35856 ----a-w- C:\WINDOWS\Sysnative\drivers\WdBoot.sys 2014-06-11 16:25:53 44BB9C31E6242C4BD1CE7C2B440C2533 96600 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2014-06-11 16:25:24 7C0E0EDF18D6CC565D7BFBB451709FA5 576512 ----a-w- C:\WINDOWS\Sysnative\drivers\afd.sys 2014-06-11 16:24:52 FAEF4C245BE832DB41B15DAAC336AFB7 58200 ----a-w- C:\WINDOWS\Sysnative\drivers\dam.sys 2014-06-11 16:18:17 E2C933EDBC389386EBE6D2BA953F43D8 785624 ----a-w- C:\WINDOWS\Sysnative\drivers\Wdf01000.sys 2014-06-11 16:18:17 11876881E87BACEBBCEE41A037614D48 54488 ----a-w- C:\WINDOWS\Sysnative\drivers\WdfLdr.sys 2014-06-11 16:18:03 AD91D1BBE5D3CF4501887DC1C09384FD 43008 ----a-w- C:\WINDOWS\Sysnative\drivers\usbscan.sys 2014-06-11 16:18:02 9FDBA6982582A6F2354144980F641E7B 25600 ----a-w- C:\WINDOWS\Sysnative\drivers\usbprint.sys 2014-06-11 16:17:59 9EF7C01D3ACCBC243B5CB1A95865B2FF 210560 ----a-w- C:\WINDOWS\Sysnative\drivers\usbvideo.sys 2014-06-11 16:17:59 427B6DB8C05A5A977E8C3525370A2595 99328 ----a-w- C:\WINDOWS\Sysnative\drivers\usbcir.sys 2014-06-11 16:09:07 DBF9E5346431557BF56F41E7F8EC0DC1 570216 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2014-06-11 16:09:02 8B3EB6372436195B8EA8AE09A184BCE2 100184 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecdd.sys 2014-06-11 16:09:02 3DD9C86EA88E8B5A51904AD87E1F2E78 172888 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2014-06-11 16:08:43 F8C2A832DF9403F5EA8080CBDBDA95FB 623448 ----a-w- C:\WINDOWS\Sysnative\drivers\usbhub.sys 2014-06-11 16:08:43 7CB7E04259F323D051A10515B8863564 498008 ----a-w- C:\WINDOWS\Sysnative\drivers\usbport.sys 2014-06-11 16:08:42 C976C4306F9AE133D6BBD47FDFC3BF92 120832 ----a-w- C:\WINDOWS\Sysnative\drivers\usbccgp.sys 2014-06-11 16:08:42 B24FDEB1B18496F1B463782235AA3AF1 79192 ----a-w- C:\WINDOWS\Sysnative\drivers\usbehci.sys 2014-06-11 16:08:42 9F83642C3709D1A4DD49EEE9F48F839D 21848 ----a-w- C:\WINDOWS\Sysnative\drivers\usbd.sys 2014-06-11 16:08:42 1ABF657259DB57F7E5558E4DF1357C0C 32256 ----a-w- C:\WINDOWS\Sysnative\drivers\usbuhci.sys 2014-06-11 16:04:21 8DC398D7B8E02C929A2096E74A170970 337752 ----a-w- C:\WINDOWS\Sysnative\drivers\USBXHCI.SYS 2014-06-11 16:04:21 061BA3EE0D2BE17944990544008CF190 213336 ----a-w- C:\WINDOWS\Sysnative\drivers\UCX01000.SYS 2014-06-11 16:03:24 F4A91D985EB9D1D2717D538F3424603C 861184 ----a-w- C:\WINDOWS\Sysnative\drivers\http.sys 2014-06-11 16:00:37 0E0C16EE82E2F4EBC2FBCA24C8F00D9E 2233176 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-06-11 16:00:36 36E2B5A5AC7688FFB3270F57103507D2 411880 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2014-06-11 15:58:58 857433889008F86728E8C099C740729D 288768 ----a-w- C:\WINDOWS\Sysnative\drivers\portcls.sys 2014-06-10 14:28:47 5545FB5B49268C903F311849DB1942ED 423240 ----a-w- C:\WINDOWS\Sysnative\drivers\aswsp.sys.1402410628202 2014-06-10 14:28:47 1C159A357210CAB8974D5FBA068DC38F 1039096 ----a-w- C:\WINDOWS\Sysnative\drivers\aswsnx.sys.1402410628202 2014-06-09 11:01:06 504901430B6E03B99EBB6BF26E0868C6 58536 ----a-w- C:\WINDOWS\Sysnative\drivers\usbfilter.sys 2014-06-09 10:53:36 674648106F972128B29D90EF6567629D 551936 ----a-w- C:\WINDOWS\Sysnative\drivers\stwrt64.sys ====== C:\WINDOWS\Tasks ====== 2014-06-10 20:13:09 93A4236F89688CC2453230122022E0B9 3142 ----a-w- C:\WINDOWS\Sysnative\Tasks\{0F486467-9FEA-4764-ABC1-BB4D82CA6F86} 2014-06-09 09:18:11 B933A514230ED6A4DE231824CDF73D42 3490 ----a-w- C:\WINDOWS\Sysnative\Tasks\AutoKMS 2014-06-09 08:24:21 F9D9AD3F18BACB92F813C1389F8E6F19 940 ----a-w- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-09 08:24:21 96360CD815C06B389B001A3AE95FE1FC 3828 ----a-w- C:\WINDOWS\Sysnative\Tasks\Adobe Flash Player Updater 2014-06-09 08:00:45 2F3D632B45FA291E5435C52DA44D7AD1 3596 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-628973499-3763302461-3193448878-1002 2014-06-09 08:00:17 8FFE720FD4251587C1C5544537DCA597 4020 ----a-w- C:\WINDOWS\Sysnative\Tasks\HPGenoobeReminder 2014-06-09 07:58:04 59DE910EDD60C4D8E4AB7BFC4DED6963 4040 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2014-06-09 07:58:04 1960A786272BC1700FC1DF6856B6E229 1068 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-09 07:58:03 C067E592E090C638E4E95A3E7256B6CF 1064 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-09 07:58:03 10ACF69ABAF8001D0ECDB83C0225F7BE 3804 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2014-06-09 07:55:16 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\WPD 2014-06-09 07:24:11 580398F0266598D15C54C299EEB7314E 2302 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-628973499-3763302461-3193448878-500 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-06-14 09:40:47 -------- d-----w- C:\Program Files\trend micro 2014-06-11 15:03:45 -------- d-----w- C:\Program Files\Common Files\CANON 2014-06-11 14:58:43 -------- d-----w- C:\Program Files\Canon 2014-06-11 14:45:51 -------- d--h--w- C:\Program Files\CanonBJ 2014-06-10 20:13:39 -------- d-----w- C:\Program Files\Microsoft Silverlight 2014-06-09 10:59:52 -------- d-----w- C:\Program Files\AMD 2014-06-09 10:51:48 -------- d-----w- C:\Program Files\IDT 2014-06-09 08:56:23 -------- d-----w- C:\Program Files\Common Files\DESIGNER 2014-06-09 08:55:27 -------- d-----w- C:\Program Files\Microsoft.NET 2014-06-09 08:53:43 -------- d-----w- C:\Program Files\Microsoft SQL Server 2014-06-09 08:49:30 -------- d-----w- C:\Program Files\Microsoft Analysis Services 2014-06-09 08:49:04 -------- d-----w- C:\Program Files\Microsoft Office 2014-06-09 08:21:05 -------- d-----w- C:\Program Files\WinRAR ======= C:\PROGRA~2 ===== 2014-06-13 20:51:21 -------- d-----w- C:\PROGRA~2\Apowersoft 2014-06-13 19:27:47 -------- d-----w- C:\PROGRA~2\Uniblue 2014-06-13 19:26:42 -------- d-----w- C:\PROGRA~2\DAEMON Tools Lite 2014-06-11 14:44:50 -------- d-----w- C:\PROGRA~2\Canon 2014-06-11 07:07:49 -------- d-----w- C:\PROGRA~2\Techland 2014-06-10 20:13:39 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight 2014-06-10 18:36:42 -------- d-----w- C:\PROGRA~2\Razer 2014-06-10 16:21:11 -------- d-----w- C:\PROGRA~2\Grinding Gear Games 2014-06-10 07:09:53 -------- d-----w- C:\PROGRA~2\Newzbin 2014-06-09 10:28:14 -------- d-----w- C:\PROGRA~2\Advanced Driver Updater 2014-06-09 10:01:58 -------- d-----w- C:\PROGRA~2\Bulk Rename Utility 2014-06-09 09:37:33 -------- d-----w- C:\PROGRA~2\SABnzbd 2014-06-09 08:55:28 -------- d-----w- C:\PROGRA~2\Microsoft SQL Server 2014-06-09 08:49:30 -------- d-----w- C:\PROGRA~2\Microsoft Analysis Services 2014-06-09 08:36:43 -------- d-----w- C:\PROGRA~2\COMMON~1\Nero 2014-06-09 08:36:34 -------- d-----w- C:\PROGRA~2\Nero 2014-06-09 08:24:01 -------- d-----w- C:\PROGRA~2\Xiph.Org 2014-06-09 08:23:57 -------- d-----w- C:\PROGRA~2\TVersity Codec Pack 2014-06-09 08:16:39 -------- d-----w- C:\PROGRA~2\PS3 Media Server 2014-06-09 08:00:33 -------- d-----w- C:\PROGRA~2\Spotnet 2014-06-09 07:58:30 -------- d-----w- C:\PROGRA~2\uTorrent 2014-06-09 07:58:00 -------- d-----w- C:\PROGRA~2\Google 2014-06-09 07:52:00 -------- d--h--w- C:\PROGRA~2\Uninstall Information ======= C: ===== 2014-06-10 09:47:49 3E64751CDCF716B4E2A19169A4DDB4E7 1709 ----a-w- C:\StartUpManager_scandataOUTPUT.xml 2014-06-10 09:47:33 17D0ECF7929CAF19B8F97AAA534E686E 2978 ----a-w- C:\StartUpManager_scandataINPUT.xml ====== C:\Users\Georgia\AppData\Roaming ====== 2014-06-14 09:02:49 4227306F248E4E8821262355C93A7483 812968 ----a-w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2014-06-13 20:51:40 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Apowersoft 2014-06-13 19:26:53 -------- d-----w- C:\Users\Georgia\AppData\Roaming\DAEMON Tools Lite 2014-06-13 18:56:38 -------- d-----w- C:\Users\Georgia\AppData\Local\CyberLink 2014-06-12 07:06:01 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Canon 2014-06-11 16:01:22 -------- d-----w- C:\Users\Georgia\AppData\Local\Chromium 2014-06-11 15:47:19 -------- d-----w- C:\Users\Georgia\AppData\Local\SKIDROW 2014-06-11 15:41:07 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\CrashDumps 2014-06-11 12:45:07 -------- d-----w- C:\Users\Georgia\AppData\Local\DayZ 2014-06-11 08:37:03 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft Help 2014-06-11 07:03:29 -------- d-----w- C:\Users\Georgia\AppData\Roaming\DAEMON Tools Pro 2014-06-10 20:30:26 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming\Adobe 2014-06-10 18:39:15 -------- d-----w- C:\Users\Georgia\AppData\Local\Razer_Inc 2014-06-10 18:37:27 -------- d-----w- C:\Users\Georgia\AppData\Local\Razer 2014-06-10 14:38:07 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Dropbox 2014-06-10 14:36:30 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\CrashDumps 2014-06-10 11:22:16 -------- d-s---w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2014-06-10 10:48:16 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming\Hewlett-Packard 2014-06-10 09:30:45 407AAB8C27CF7081EECE071C90A65B83 17 ----a-w- C:\Users\Georgia\AppData\Local\resmon.resmoncfg 2014-06-10 07:30:32 -------- d-----w- C:\Users\Georgia\AppData\Local\_ 2014-06-09 11:39:40 -------- d-----w- C:\Users\Georgia\AppData\Roaming\TuneUp Software 2014-06-09 10:32:12 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CrashDumps 2014-06-09 10:00:55 -------- d-s---w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Locallow\Microsoft 2014-06-09 09:55:48 -------- d-----w- C:\Users\Georgia\AppData\Local\Programs 2014-06-09 09:37:52 -------- d-----w- C:\Users\Georgia\AppData\Local\sabnzbd 2014-06-09 09:37:35 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SABnzbd 2014-06-09 09:33:42 -------- d-----w- C:\Users\Georgia\AppData\Local\___ 2014-06-09 09:31:53 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Newzbin 2014-06-09 09:15:07 -------- d-----w- C:\Users\Georgia\AppData\Roaming\CyberLink 2014-06-09 08:49:11 -------- d-----w- C:\Users\Georgia\AppData\Local\Microsoft Help 2014-06-09 08:34:35 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Chromium 2014-06-09 08:24:22 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TVersity Media Server Pro 2014-06-09 08:24:13 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TVersity Codec Pack 2014-06-09 08:22:03 -------- d-----w- C:\Users\Georgia\AppData\Roaming\vlc 2014-06-09 08:21:31 -------- d-----w- C:\Users\Georgia\AppData\Roaming\WinRAR 2014-06-09 08:21:16 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-06-09 08:03:45 -------- d-----w- C:\Users\Georgia\AppData\Local\Spotnet 2014-06-09 07:58:40 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2014-06-09 07:57:57 -------- d-----w- C:\Users\Georgia\AppData\Local\Google 2014-06-09 07:57:52 -------- d-----w- C:\Users\Georgia\AppData\Roaming\uTorrent 2014-06-09 07:57:29 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2014-06-09 07:57:22 -------- d-----w- C:\Users\Georgia\AppData\Local\Deployment 2014-06-09 07:57:22 -------- d-----w- C:\Users\Georgia\AppData\Local\Apps 2014-06-09 07:56:56 -------- d-----w- C:\Users\Georgia\AppData\Local\AMD 2014-06-09 07:56:34 -------- d-----w- C:\Users\Georgia\AppData\Roaming\ATI 2014-06-09 07:56:34 -------- d-----w- C:\Users\Georgia\AppData\Local\ATI 2014-06-09 07:55:36 -------- d-----w- C:\Users\Georgia\AppData\Local\Hewlett-Packard 2014-06-09 07:55:36 -------- d-----w- C:\Users\Georgia\AppData\Local\bluesoleil 2014-06-09 07:55:29 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Synaptics 2014-06-09 07:55:00 -------- d-----r- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-06-09 07:55:00 -------- d-----r- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-06-09 07:54:48 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Adobe 2014-06-09 07:52:58 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Hewlett-Packard 2014-06-09 07:52:27 -------- d-----w- C:\Users\Georgia\AppData\Local\Power2Go8 2014-06-09 07:52:18 -------- d-----w- C:\Users\Georgia\AppData\Local\VirtualStore 2014-06-09 07:52:13 -------- d-----w- C:\Users\Georgia\AppData\Local\Packages 2014-06-09 07:45:21 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Hewlett-Packard 2014-06-09 07:31:13 -------- d-s---w- C:\Users\Georgia\AppData\Roaming\Microsoft 2014-06-09 07:31:13 -------- d-----w- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-06-09 07:31:13 -------- d-----w- C:\Users\Georgia\AppData\Local\Temp 2014-06-09 07:31:13 -------- d-----w- C:\Users\Georgia\AppData\Local\Microsoft 2014-06-09 07:31:13 -------- d-----r- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-09 07:31:13 -------- d-----r- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-09 07:31:13 -------- d-----r- C:\Users\Georgia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-09 07:31:10 -------- d-s---w- C:\Users\Gast\AppData\Roaming\Microsoft 2014-06-09 07:31:10 -------- d-----w- C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-06-09 07:31:10 -------- d-----w- C:\Users\Gast\AppData\Local\Temp 2014-06-09 07:31:10 -------- d-----w- C:\Users\Gast\AppData\Local\Microsoft 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-05 20:26:54 -------- d-----w- C:\Users\Georgia\AppData\Locallow\SKS ====== C:\Users\Georgia ====== 2014-06-14 09:45:29 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Georgia\Downloads\RSITx64 (1).exe 2014-06-14 09:40:25 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Georgia\Downloads\RSITx64.exe 2014-06-14 08:23:13 E90BF9E1562F40140161573B79CD5720 17292760 ----a-w- C:\Users\Georgia\Downloads\mbam-setup-2.0.2.1012.exe 2014-06-13 21:05:23 98343A2C2AF5A0E851E550B045AB11EF 19544629 ----a-w- C:\Users\Georgia\Downloads\CouchPotato-2.4.0.win32.installer.exe 2014-06-13 20:51:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2014-06-13 19:15:39 -------- d-----w- C:\ProgramData\DAEMON Tools Lite 2014-06-13 19:05:39 -------- d-----w- C:\Users\Public\CyberLink 2014-06-12 07:06:32 -------- d-----w- C:\ProgramData\CanonIJ 2014-06-12 07:06:03 -------- d--h--w- C:\ProgramData\CanonIJScan 2014-06-11 15:44:34 -------- d--h--w- C:\ProgramData\CanonIJSolutionMenu 2014-06-11 15:44:32 -------- d--h--w- C:\ProgramData\CanonIJMyPrinter 2014-06-11 15:44:24 -------- d-----w- C:\ProgramData\CanonIJPLM 2014-06-11 15:43:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gebruikersregistratie voor Canon MP270 series 2014-06-11 15:43:27 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP270 series 2014-06-11 14:58:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2014-06-11 14:56:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP270 series Manual 2014-06-11 14:55:42 -------- d--h--w- C:\ProgramData\CanonBJ 2014-06-11 10:34:43 -------- d-----w- C:\ProgramData\Steam 2014-06-11 07:43:39 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Techland 2014-06-11 07:02:10 -------- d-----w- C:\ProgramData\DAEMON Tools Pro 2014-06-10 20:13:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-06-10 18:37:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-06-10 18:36:40 -------- d-----w- C:\ProgramData\Razer 2014-06-10 16:21:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grinding Gear Games 2014-06-09 11:26:22 -------- d--h--w- C:\ProgramData\Common Files 2014-06-09 10:28:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Driver Updater 2014-06-09 10:01:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bulk Rename Utility 2014-06-09 09:42:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Newzbin 2014-06-09 09:15:28 -------- d-----w- C:\ProgramData\Microsoft Toolkit 2014-06-09 08:58:19 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-06-09 08:48:58 -------- d-----w- C:\ProgramData\Microsoft Help 2014-06-09 08:37:25 -------- d-----w- C:\ProgramData\Nero 2014-06-09 08:36:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2014-06-09 08:30:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet Theme Installer 2014-06-09 08:30:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet Theme02 Installer 2014-06-09 08:24:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org 2014-06-09 08:23:36 -------- d-----w- C:\ProgramData\TVersity 2014-06-09 08:21:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-06-09 08:16:54 -------- d-----w- C:\ProgramData\PMS 2014-06-09 08:16:54 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server 2014-06-09 08:00:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet 2014-06-09 08:00:33 -------- d-----w- C:\ProgramData\Spotnet 2014-06-09 07:58:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-09 07:55:00 -------- d-----r- C:\Users\Georgia\Searches 2014-06-09 07:54:30 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services 2014-06-09 07:53:09 64BDE27FB8A8FCE5DA52A644F0D92A45 141 ----a-w- C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2014-06-09 07:51:51 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Georgia\ntuser.ini 2014-06-09 07:31:13 -------- d--h--w- C:\Users\Georgia\AppData 2014-06-09 07:31:13 -------- d-----w- C:\Users\Georgia\Desktop 2014-06-09 07:31:13 -------- d-----r- C:\Users\Georgia\Favorites 2014-06-09 07:31:13 -------- d-----r- C:\Users\Georgia\Documents 2014-06-09 07:31:10 -------- d--h--w- C:\Users\Gast\AppData 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\Links 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\Favorites 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\Documents 2014-06-09 07:31:10 -------- d-----r- C:\Users\Gast\Desktop ====== C: exe-files == 2014-06-13 19:15:09 0FA6CD1DE96BDE0431C1C91904F6D040 13429504 ----a-w- C:\1. iLiA\1. PROGRAMS\DAEMON Tools Lite 4.49.1.0356.exe 2014-06-13 18:56:41 CBEC2041F7FBA1261772F94D95A3A5B6 20013776 ----a-w- C:\1. iLiA\10. Gebrand\DAEMON Tools Pro Advanced v5.2.0. 0348 Including Crack [h33t][iahq76]\DAEMONToolsPro520-0348.exe 2014-06-12 18:56:32 80191FE747C6DBD58489EED74E8B93C0 74759 ----a-w- C:\1. iLiA\10. Gebrand\RustClient_v19.12.2013\uninstall.exe 2014-06-12 18:56:31 CD3F93FAE61FDED9433D4390A8FD0F39 11283968 ----a-w- C:\1. iLiA\10. Gebrand\RustClient_v19.12.2013\rust.exe 2014-06-12 18:56:31 479E0BBC4BF311DD979CCF9CF1969AB7 7680 ----a-w- C:\1. iLiA\10. Gebrand\RustClient_v19.12.2013\Rust Client.exe 2014-06-11 08:09:11 22C02F4F313405EFA542947A7FDB36A6 15790080 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\dead state 1.39 cracked\Dead State\ZRPG.exe 2014-06-11 08:08:47 DFFBD12AC95E6B65CD4A497A7BA20EBF 971264 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\dead state 1.39 cracked\Dead State\CrashSender1402.exe 2014-06-11 07:44:51 7C09749F7AA1FAAAEF118BCC65E1716A 15639040 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\ZRPG.exe 2014-06-11 07:44:50 8C55DC079572791E2974BE3C5C19E254 6552288 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\_CommonRedist\vcredist\2012\vcredist_x86.exe 2014-06-11 07:44:44 14C4D00DC9DD39FF5B4C34BD02B9BEDB 7185000 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\_CommonRedist\vcredist\2012\vcredist_x64.exe 2014-06-11 07:44:43 694F54BD227916B89FC3EB1DB53F0685 809496 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\_CommonRedist\OpenAL\2.0.7.0\oalinst.exe 2014-06-11 07:44:35 880A353DC9AB4202F2CFBEC1CB37181D 299864 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\_CommonRedist\DirectX\dxwebsetup.exe 2014-06-11 07:44:28 DFFBD12AC95E6B65CD4A497A7BA20EBF 971264 ----a-w- C:\1. iLiA\new gamessss\Dead State early acces\Dead State\CrashSender1402.exe 2014-06-11 07:01:32 CBEC2041F7FBA1261772F94D95A3A5B6 20013776 ----a-w- C:\1. iLiA\1. PROGRAMS\DAEMON Tools Pro Advanced v5.2.0. 0348 Including Crack [h33t][iahq76]\DAEMONToolsPro520-0348.exe 2014-06-10 18:35:18 5A2FDBBA45430375188D4B16935AA0EC 41954352 ----a-w- C:\1. iLiA\1. PROGRAMS\Razer Game Booster 4.2.45.0.exe 2014-06-10 08:59:20 CA14BD234214F6941A2DF00D4C49C3AF 15128096 ----a-w- C:\1. iLiA\1. PROGRAMS\Advanced System Optimizer 3.5.1000.15948 Incl. Patch-XenoCoder\aso3setup.exe 2014-06-10 07:57:27 18AAA78B9611678E499F17CCDD0EF793 603295275 ----a-w- C:\1. iLiA\1. PROGRAMS\The Forest Early Access 0.01b PC game ^^nosTEAM^^\TheForest_0.01b_nosTEAM.exe 2014-06-09 10:27:32 F82BE065BC9AF68FFCDC14D01DFF81DC 3672992 ----a-w- C:\1. iLiA\1. PROGRAMS\Systweak Advanced Driver Updater v2.1.1086 + Crack\adusetup.exe 2014-06-09 10:27:27 E0809343F155AED681D5782ECD806FE1 9300872 ----a-w- C:\1. iLiA\1. PROGRAMS\Systweak Advanced Driver Updater v2.1.1086 + Crack\Crack\adu.exe 2014-06-09 10:18:40 9A3B97D396477CCE7D7C10A68F2BD57F 4967232 ----a-w- C:\1. iLiA\1. PROGRAMS\SYSTweak Advanced System Protector v2.1.1000.9885 with Key [h33t][iahq76]\aspsetup.exe 2014-06-09 10:02:05 D55BDD9BDD07AC0087A1CFC1ED5BBA96 4455040 ----a-w- C:\1. iLiA\1. PROGRAMS\regclean pro\Regclean Pro 6.21.65.2601.exe 2014-06-09 08:21:24 6E0BDFBEEED65B017F2E4C2C910B0520 52736 ----a-w- C:\$WINDOWS.~BT\Sources\rundll32.exe 2014-06-09 08:21:24 209519A403E096A87C0E8EC1ADB7566D 9216 ----a-w- C:\$WINDOWS.~BT\Sources\ResetEngInterfaces.exe 2014-06-09 07:54:14 ECF429E42C623E435DA179CA7BB361E1 280168 ----a-w- C:\$WINDOWS.~BT\Sources\mighost.exe 2014-06-09 07:54:14 18BC9814D3834E1371FFF011B78DCF8A 6506160 ----a-w- C:\$WINDOWS.~BT\Sources\setupplatform.exe === C: other files == 2014-06-13 21:30:38 AC902D55BC5936217807D386BF833385 349115952 ----a-w- C:\1. iLiA\10. Gebrand\The_Stomping_Land_Alpha_v0.5.2.zip 2014-06-13 19:27:03 33F90B202E9DD9B7D489EB59310FDC34 283064 ----a-w- C:\Program Files (x86)\DAEMON Tools Lite\dtsoftbus01.sys 2014-06-12 18:56:31 3BB5222A51016084FE93180D91185289 814 ----a-w- C:\1. iLiA\10. Gebrand\RustClient_v19.12.2013\RUST_START.bat 2014-06-10 10:45:41 874A97E862AAF55A0AF7B8C1FDE22755 121518 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\resources\nl-NL\hcsolutions.zip 2014-06-10 10:45:37 070C4BD423D435BAFBC3640DE5C82381 1285474 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\resources\guidAcheck.zip 2014-06-10 10:45:32 9628AF082ABD5F0EEE14F24A260EFF5D 1918221 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\resources\guid.zip 2014-06-09 10:53:36 674648106F972128B29D90EF6567629D 551936 ------w- C:\Program Files\IDT\WDM\stwrt64.sys 2014-06-09 10:53:33 C1DEA046CD71EBE3D2CB0F89EE07D0EF 459264 ------w- C:\Program Files\IDT\WDM\stwrt.sys 2014-06-09 10:42:00 8CDA04D9F6C15F8E98FDE926A51DCCD6 293592 ----a-w- C:\Program Files (x86)\Realtek\Realtek Card Reader\RtsP2Stor.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-628973499-3763302461-3193448878-1002\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "BtTray"="C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe" "CLVirtualDrive"="C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe /R" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" "HP CoolSense"="C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey" "NBAgent"="C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe /WinStart" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" "CanonSolutionMenu"="C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "NCPluginUpdater"="C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe Update" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [09-06-2014 10:24] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [09-06-2014 09:57] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [09-06-2014 09:57] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\AutoKMS" [C:\WINDOWS\AutoKMS\AutoKMS.exe] "C:\WINDOWS\SysNative\tasks\CLMLSvc_P2G8" [C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\HPGenoobeReminder" ["C:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HP GenOOBE\HPGenOOBE.exe"] "C:\WINDOWS\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe] ==== Chrome Look ====================== Google Docs - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Last updated at time on date - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Georgia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.trovi.com/?gd=&ctid=CT3323924&octid=EB_ORIGINAL_CTID&ISID=M808D0F8A-FC98-400E-B05B-934416189C7C&SearchSource=55&CUI=&UM=5&UP=SP372E0C7F-BC46-4181-8E72-934A7F9282B7&SSPV=214CH36A_sp_ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.trovi.com/?gd=&ctid=CT3323924&octid=EB_ORIGINAL_CTID&ISID=M808D0F8A-FC98-400E-B05B-934416189C7C&SearchSource=55&CUI=&UM=5&UP=SP372E0C7F-BC46-4181-8E72-934A7F9282B7&SSPV=214CH36A_sp_ie" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {D944BB61-2E34-4DBF-A683-47E505C587DC} eBay Url="http://rover.ebay.com/rover/1/1346-154357-12126-2/4?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1 deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1 deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [BtTray] "C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe" O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe O4 - HKLM\..\Run: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll O9 - Extra button: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra 'Tools' menuitem: Lync - klikken om te bellen - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing) O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Connected Remote Service (HPConnectedRemote) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe O23 - Service: @oem25.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing) O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe O23 - Service: TVersity Media Server (TVersityMediaServer) - Unknown owner - C:\ProgramData\TVersity\Media Server\MediaServer.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Georgia\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Georgia\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Georgia\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== ==== Empty Temp Folders ====================== C:\Users\Administrator\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Gast\AppData\Local\Temp emptied successfully C:\Users\Georgia\AppData\Local\Temp will be emptied at reboot C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Georgia\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on za 14-06-2014 at 17:23:45,32 ======================