Zoek.exe v5.0.0.0 Updated 26-09-2014 Tool run by Ivan Hubrecht on vr 26/09/2014 at 10:49:08.76. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Ivan Hubrecht\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 26/09/2014 10:52:15 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\Program Files\log deleted successfully C:\PROGRA~3\CanonEPP deleted successfully C:\PROGRA~3\CanonIJEPPEX2 deleted successfully C:\PROGRA~3\Oracle deleted successfully C:\PROGRA~3\ProductData deleted successfully C:\PROGRA~3\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} deleted successfully C:\Users\Ivan Hubrecht\AppData\Local\PackageStaging deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3620971024-2762982169-941777991-1002\Software\Microsoft\Internet Explorer\SearchScopes\{978279C4-A109-40DE-9F9C-724A4E914EA3} deleted successfully HKEY_USERS\S-1-5-21-3620971024-2762982169-941777991-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B4F3A835-0E21-4959-BA22-42B3008E02FF} deleted successfully HKEY_USERS\S-1-5-21-3620971024-2762982169-941777991-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B4F3A835-0E21-4959-BA22-42B3008E02FF} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== Adobe Reader XI (11.0.09) - Nederlands Advanced SystemCare 7 AllMyNotes Organizer AOMEI Dynamic Disk Manager Pro Edition Ashampoo Video Styler v.1.0.1 Ashampoo WinOptimizer 9 v.9.04.31 avast Free Antivirus Belgium e-ID middleware 4.0.7 (build 7453) Browser Extensions Canon Easy-PhotoPrint EX Canon MP Navigator EX 2.0 Canon MP540 series MP Drivers Canon My Printer Canon Utilities Solution Menu CCleaner CyberLink LabelPrint 2.5 CyberLink MediaEspresso 6.5 CyberLink Power2Go 8 CyberLink PowerDVD 10 CyberLink PowerDVD Copy 1.5 CyberLink PowerRecover CyberLink YouCam 5 D3DX10 Disk Check 1.2 Dolby Home Theater v4 Dropbox Fotogalerie Fotogalerija Fotogalleri Fotogalleriet Fotograf Galerisi Fot˘t r Galeria de Fotografias Galerˇa de fotos Galeria fotografii Galerie de photos Google Chrome Google Update Helper HTML-Kit 292 Intel(R) Management Engine Components Intel(R) Processor Graphics Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1423.2) Intel(R) Rapid Storage Technology Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel© PROSet/Wireless Software Intel© Trusted Connect Service Client IObit Malware Fighter IObit Uninstaller Java 7 Update 67 Java Auto Updater Malwarebytes Anti-Malware versie 1.75.0.1300 Medion Home Cinema 10 Microsoft Application Error Reporting Microsoft Office 365 - nl-nl Microsoft Silverlight Microsoft SkyDrive Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Movie Maker MSVCRT MSVCRT110 MSVCRT110_amd64 MSXML 4.0 SP3 Parser (KB2758694) NVIDIA-configuratiescherm 331.65 NVIDIA 3D Vision stuurprogramma 331.65 NVIDIA Grafisch stuurprogramma 331.65 NVIDIA Install Application NVIDIA Optimus 1.11.3 NVIDIA PhysX NVIDIA PhysX System Software 9.12.1031 NVIDIA Stereoscopic 3D Driver NVIDIA Update Components Office 15 Click-to-Run Extensibility Component Office 15 Click-to-Run Licensing Component Office 15 Click-to-Run Localization Component paint.net Paragon Backup & RecoveryT 2014 Free ParetoLogic PC Health Advisor PHotkey Photo Common Photo Gallery Podstawowe programy Windows Live Raccolta foto Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Realtek USB Card Reader S?????? f?t???af??? Stuurprogrammapakket voor Windows - Fedict SmartCard (03/25/2014 4.0.7.4) Surfing Protection Synaptics Pointing Device Driver System Requirements Lab for Intel Tweaking.com - Windows Repair (All in One) Valokuvavalikoima Windows Live Communications Platform Windows Live Essentials Windows Live Installer Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live Temel Par‡alar Windows Live UX Platform Windows Live UX Platform Language Pack Windows Liven peruspaketti ==== Running Processes ====================== C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files (x86)\PHotkey\PHotkey.exe C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe C:\Program Files (x86)\PHotkey\POSD.exe C:\Program Files (x86)\PHotkey\GPMTray.exe C:\Program Files (x86)\PHotkey\HCSynApi.exe C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Users\Ivan Hubrecht\Desktop\zoek.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe C:\WINDOWS\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Browser Extensions"=- ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Browser Extensions"=- ==== Deleting Files \ Folders ====================== C:\PROGRA~3\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} not found C:\PROGRA~2\ParetoLogic deleted C:\PROGRA~2\COMMON~1\ParetoLogic deleted C:\Users\Ivan Hubrecht\AppData\Roaming\ParetoLogic deleted C:\Users\Ivan Hubrecht\AppData\Roaming\DriverCure deleted C:\Users\Ivan Hubrecht\AppData\Roaming\Systweak deleted C:\PROGRA~3\Systweak deleted C:\PROGRA~3\ParetoLogic deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic deleted C:\WINDOWS\SysNative\roboot64.exe deleted C:\Users\Ivan Hubrecht\AppData\LocalLow\ADSRemoval deleted C:\WINDOWS\tasks\ParetoLogic Registration3.job deleted C:\WINDOWS\tasks\ParetoLogic Update Version3.job deleted C:\WINDOWS\tasks\PC Health Advisor Defrag.job deleted C:\WINDOWS\tasks\PC Health Advisor.job deleted C:\WINDOWS\SysNative\config\systemprofile\Searches deleted "C:\Users\Ivan Hubrecht\AppData\Roaming\Browser Extensions\CouponsHelper.exe" deleted ==== System Specs ====================== Windows: Windows Version 6.2 (Build 9200) Memory (RAM): 8072 MB CPU Info: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz CPU Speed: 2615.9 MHz Sound Card: Speakers (Realtek High Definiti | Display Adapters: Intel(R) HD Graphics 4000 | Intel(R) HD Graphics 4000 | Intel(R) HD Graphics 4000 Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: Bluetooth-apparaat (Personal Area Network) | Microsoft Wi-Fi Direct Virtual Adapter | Realtek PCIe GBE Family-controller | Intel(R) Wireless-N 7260 CD / DVD Drives: 1x (F: | ) F: TSSTcorpCDDVDW SU-208DB Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 5 Button Wheel Mouse Present Hard Disks: C: 869.4GB | D: 60.0GB | E: 931.5GB Hard Disks - Free: C: 828.0GB | D: 40.2GB | E: 763.1GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | | MEDION - 1 Time Zone: Romance (standaardtijd) Motherboard *: Medion Akoya P7627T Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: avast! Antivirus On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: IObit Malware Fighter disabled (Outdated) Anti-Spyware: avast! Antivirus disabled (Outdated) Internet Explorer Version: 11.0.9600.17278 Google Chrome version: 37.0.2062.124 Adobe Reader version: 11.0.9.29 Sun Java version: 1.7.0_67 (32-bit) ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-09-23 09:35:35 A283E768FA12EF33087F07B01F82D6DD 181064 ----a-w- C:\WINDOWS\PSEXESVC.EXE 2014-09-22 16:30:55 CA2A8AF1DBAD0F31F9B33A2827DFBC16 207 ----a-w- C:\WINDOWS\tweaking.com-regbackup-LAPTOP-IVAN-Microsoft-Windows-8.1-(64-bit).dat 2014-09-18 10:06:36 357CEBBCD99C8928A2D1A61A6CACC168 43152 ----a-w- C:\WINDOWS\avastSS.scr 2014-09-17 08:53:56 6F4787DB578FECF2DEA5234BCBF733B7 1293240 ----a-w- C:\WINDOWS\ddmmain.exe 2014-09-15 16:00:30 ACDBE1ED38167C8B01B8F63161BB2CEA 2374784 ----a-w- C:\WINDOWS\explorer.exe 2014-09-12 19:40:51 9B2C4A2B498F91D769AD53FAB4794D1A 28578 ----a-w- C:\WINDOWS\diagwrn.xml 2014-09-12 19:40:51 9B2C4A2B498F91D769AD53FAB4794D1A 28578 ----a-w- C:\WINDOWS\diagerr.xml ====== C:\Users\IVANHU~1\AppData\Local\Temp ==== 2014-09-24 12:29:32 8DC8286FAB0193AF701D8A5FB85ED6D6 17202688 ----a-w- C:\Users\Ivan Hubrecht\AppData\Local\Temp\BeidMW.msi 2014-09-24 12:29:32 639C0F8172702E3E88723681579B2642 18949120 ----a-w- C:\Users\Ivan Hubrecht\AppData\Local\Temp\BeidMW64.msi ====== Java Cache ===== 2014-09-24 12:42:24 E8C80BF60938EE72EE77AB866EA40E2B 282048 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\7e60542d-72d42afc 2014-09-24 12:42:23 0B23B3044AE9E02DCE26DB4D5E007252 848 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58\31b19ba-6125d1c9 2014-09-24 12:42:24 0B23B3044AE9E02DCE26DB4D5E007252 848 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-123ab1c6 2014-09-24 12:42:24 B4B96537D36ACC3478F63525B0CBAA0D 107 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-e2e4c8970372d2fb4193a7ef29d16f6c3f08527947fcb9208b3a0e48820369fd-6.0.lap 2014-09-24 13:39:05 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-6f59e459 ====== C:\WINDOWS\SysWOW64 ===== 2014-09-24 12:41:05 07EF2978A5BC36720378F95566697FD8 272808 ----a-w- C:\WINDOWS\SysWOW64\javaws.exe 2014-09-24 12:41:04 3BDEB17FE6390BFF1BF3A2D964DE8E48 175528 ----a-w- C:\WINDOWS\SysWOW64\javaw.exe 2014-09-24 12:41:04 11FD45A41DF45298686ED39062AABE2A 175528 ----a-w- C:\WINDOWS\SysWOW64\java.exe 2014-09-24 12:41:04 0F70F4DAF2BC5613EE75C9B2585CE67E 98216 ----a-w- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2014-09-17 08:53:56 7F75C697F0947FFB7E2B1B91395206A1 12728 ----a-w- C:\WINDOWS\SysWOW64\ddmdrv.sys 2014-09-16 07:15:24 CA573004E12C7D5F474D3614F5532074 706016 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-09-16 07:15:24 0F945C84360FA65F1B074DB471730E34 105440 ----a-w- C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-15 16:00:30 195822ACCDAA2B4815DD01BAFC335595 2084520 ----a-w- C:\WINDOWS\SysWOW64\explorer.exe 2014-09-15 16:00:29 A1EE5C4A020DB9A8DB216C660C3FBDBE 11818496 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2014-09-15 16:00:28 C0281344E7702939DCE4A17734269E58 1038336 ----a-w- C:\WINDOWS\SysWOW64\actxprxy.dll 2014-09-15 16:00:28 1E4CD5DB4F61DF2A9053C8B9A46B4013 50176 ----a-w- C:\WINDOWS\SysWOW64\UXInit.dll 2014-09-15 16:00:27 CB90D56DB19B8213CF5F7CB789C1C778 3117568 ----a-w- C:\WINDOWS\SysWOW64\msi.dll 2014-09-15 16:00:26 C49344C2F399A22704C682C5E18B8DF2 2321920 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2014-09-15 15:59:54 02E324E880F6E54187A2B3C9F53DD70E 12730880 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-09-15 15:59:49 AA3E2CEECFCD89D49FF902ECAD197946 2071552 ----a-w- C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-09-15 15:59:49 495B4CA2AF924CE5C08BBC9D5E7E1103 2145472 ----a-w- C:\WINDOWS\SysWOW64\mfcore.dll 2014-09-15 15:59:47 69567319D077611FFF5A07BDCDF2A400 889344 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-09-15 15:59:47 5EE87C7E41A2BFF787FD5B8C5BA91EAF 674512 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-09-15 15:59:46 E011C6CA6921FAC88F8B163C68E554BF 2410976 ----a-w- C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2014-09-15 15:59:45 D39BD0DB9D91A4376F759282B2C276AE 1057792 ----a-w- C:\WINDOWS\SysWOW64\printui.dll 2014-09-15 15:59:45 0C666352A0F9C61AB07019D3928463ED 391000 ----a-w- C:\WINDOWS\SysWOW64\netcfgx.dll 2014-09-15 15:59:45 0120A5300040B9A1E459A03B364A74D5 1741824 ----a-w- C:\WINDOWS\SysWOW64\SRH.dll 2014-09-15 15:59:44 FB970EC73EAB710FE1F529C139E258A0 477200 ----a-w- C:\WINDOWS\SysWOW64\SHCore.dll 2014-09-15 15:59:44 F7A00AA3EA30F2F923C1F8A0DE76A113 180720 ----a-w- C:\WINDOWS\SysWOW64\mftranscode.dll 2014-09-15 15:59:44 B393F30C63DCD1A0D6977A8E27A42A57 707536 ----a-w- C:\WINDOWS\SysWOW64\mfplat.dll 2014-09-15 15:59:44 9D75171689317D82FBF8B155FCF34AE8 371712 ----a-w- C:\WINDOWS\SysWOW64\winspool.drv 2014-09-15 15:59:44 86A8EEFADBDDA52474456818D76DFAAA 302080 ----a-w- C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-09-15 15:59:44 6ADEF3CCE9788849FA7F8D28A85B2833 540672 ----a-w- C:\WINDOWS\SysWOW64\comdlg32.dll 2014-09-15 15:59:44 427A26A303BBF3736B054244EAFFAA4D 439296 ----a-w- C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2014-09-15 15:59:44 3C120DEE84D42246A17A917B2B934A36 513544 ----a-w- C:\WINDOWS\SysWOW64\locale.nls 2014-09-15 15:59:44 3362D78214C5B0A5CAE9E5C1692FA12B 474112 ----a-w- C:\WINDOWS\SysWOW64\AppxPackaging.dll 2014-09-15 15:59:42 ACB131E8AB530C71841FEA38AE6E6707 328704 ----a-w- C:\WINDOWS\SysWOW64\puiobj.dll 2014-09-15 15:59:42 95719EC346E3A9FDD87662BE886EB200 1817088 ----a-w- C:\WINDOWS\SysWOW64\Display.dll 2014-09-15 15:59:42 7BB5166433C5319CED9E8D05A0C5F7E8 230400 ----a-w- C:\WINDOWS\SysWOW64\wlanapi.dll 2014-09-15 15:59:42 3EAE3411A4A492C253A88534209E3045 355800 ----a-w- C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-09-15 15:59:41 FEC1F6C1F496944BC40D995957D971CF 1404416 ----a-w- C:\WINDOWS\SysWOW64\storagewmi.dll 2014-09-15 15:59:41 8A5A7AB46513F9FA75E7223471084645 667136 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2014-09-15 15:59:41 19C5844B56BCA187625D2CFA9A7C1144 127544 ----a-w- C:\WINDOWS\SysWOW64\winmmbase.dll 2014-09-15 15:59:41 190228E527C47A96D9B865F07BF2EC19 889856 ----a-w- C:\WINDOWS\SysWOW64\aclui.dll 2014-09-15 15:59:41 0F3DF44347B0051D30B23EED12973D8C 210944 ----a-w- C:\WINDOWS\SysWOW64\wisp.dll 2014-09-15 15:59:40 F19F4DF5361132D5E19FBE1A0DCDC80B 335680 ----a-w- C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2014-09-15 15:59:40 8FC068ACF45786301D04CED5B58A13E3 1319936 ----a-w- C:\WINDOWS\SysWOW64\wsecedit.dll 2014-09-15 15:59:40 704AA3D6466B2070D321C63C99368448 95232 ----a-w- C:\WINDOWS\SysWOW64\AppxSip.dll 2014-09-15 15:59:39 E5FB6044A36E74484DA958AC17FA9504 1290752 ----a-w- C:\WINDOWS\SysWOW64\XpsPrint.dll 2014-09-15 15:59:39 E1F38BF986C7285AB13FB369243A41E0 448000 ----a-w- C:\WINDOWS\SysWOW64\VAN.dll 2014-09-15 15:59:39 D9ABDEC0BDCD1FE7391EF756A2A9107B 180208 ----a-w- C:\WINDOWS\SysWOW64\SndVol.exe 2014-09-15 15:59:39 A0E20B50D66FDF786BC2324499F7C482 195584 ----a-w- C:\WINDOWS\SysWOW64\prnntfy.dll 2014-09-15 15:59:39 558838A9A51259F3E76030E3E997A72A 162816 ----a-w- C:\WINDOWS\SysWOW64\puiapi.dll 2014-09-15 15:59:39 42A350B81E0E9A427D7366E1E8BFBADC 198656 ----a-w- C:\WINDOWS\SysWOW64\WebClnt.dll 2014-09-15 15:59:39 2F6410A7641BE1196DC423025F208285 98048 ----a-w- C:\WINDOWS\SysWOW64\dwmapi.dll 2014-09-15 15:59:39 21A13082B44A898B8DCC54972B2B5C31 128568 ----a-w- C:\WINDOWS\SysWOW64\winmm.dll 2014-09-15 15:59:39 05B976CBCB4ADE4D3F4E75DAD196EECD 313856 ----a-w- C:\WINDOWS\SysWOW64\clusapi.dll 2014-09-15 15:59:38 DA5AD8EA1331015BCC2FCFB1B7EE4EBC 168960 ----a-w- C:\WINDOWS\SysWOW64\iasnap.dll 2014-09-15 15:59:37 FC36740153F03C81ADA5B5EEF22C8064 1048064 ----a-w- C:\WINDOWS\SysWOW64\gpedit.dll 2014-09-15 15:59:36 EBA5466233255ADAF7D5501F0CC2B9CF 189016 ----a-w- C:\WINDOWS\SysWOW64\rsaenh.dll 2014-09-15 15:59:34 D32E7F10D61EFF5A26FB806934FB1088 1029632 ----a-w- C:\WINDOWS\SysWOW64\mispace.dll 2014-09-15 15:59:34 CB587DCB837D0367B43584855BD22F25 432128 ----a-w- C:\WINDOWS\SysWOW64\Windows.Networking.dll 2014-09-15 15:59:34 710A55B8443155F1FF09E07C2E44D79D 200192 ----a-w- C:\WINDOWS\SysWOW64\DafPrintProvider.dll 2014-09-15 15:59:34 1CD80290AEB1DA851B6AA9B9822F25F2 779264 ----a-w- C:\WINDOWS\SysWOW64\osk.exe 2014-09-15 15:59:34 0836AC3FEF8E7380D1973E6DB14E31A7 459264 ----a-w- C:\WINDOWS\SysWOW64\SettingSync.dll 2014-09-15 15:59:33 FE166ADB02C1E146005789C17E065143 8192 ----a-w- C:\WINDOWS\SysWOW64\KBDRUM.DLL 2014-09-15 15:59:33 FB38126A24BDC4912C175C4C430E911C 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDRU1.DLL 2014-09-15 15:59:33 F7CA5639A235A1E2071500B4D1FCC6F8 51200 ----a-w- C:\WINDOWS\SysWOW64\wshbth.dll 2014-09-15 15:59:33 F1FCD3780D71FD21EAA2A42D3A924B1F 832512 ----a-w- C:\WINDOWS\SysWOW64\ActionCenter.dll 2014-09-15 15:59:33 DA84B73474C3D02B453E6FAC0F38DBFB 26112 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2014-09-15 15:59:33 A40516F4443996DC92350D6890546E4A 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDYAK.DLL 2014-09-15 15:59:33 A39251FAE3189E1AE1F0DF0884D37E2A 1361408 ----a-w- C:\WINDOWS\SysWOW64\user32.dll 2014-09-15 15:59:33 8A073508726DE4A69ED702A7A6082808 1351168 ----a-w- C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-09-15 15:59:33 5232DEDED1A958814344D564F6C9C632 344576 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2014-09-15 15:59:33 44AABDB92C816F112E054FC3523B51E8 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDBASH.DLL 2014-09-15 15:59:33 35D1AA379B4C2873F1DD62EDCA740C19 6656 ----a-w- C:\WINDOWS\SysWOW64\KBDRU.DLL 2014-09-15 15:59:33 14D03A4F5F0AFCDB93CAFB68B77ACDB6 288768 ----a-w- C:\WINDOWS\SysWOW64\stobject.dll 2014-09-15 15:59:33 0A6ABB521CDCE96D3A50939CF7964E24 206336 ----a-w- C:\WINDOWS\SysWOW64\powercfg.cpl 2014-09-15 15:59:32 DB46A1A84AEC3A7F0FBA4E20320F3159 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDTT102.DLL 2014-09-15 15:59:32 CA16D3794D44C57CBFBE0CE5530FFED8 80896 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2014-09-15 15:59:32 C5D013B0C8F019F950B7E7451A57034E 318976 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2014-09-15 15:59:32 7D6731C5BA01769612A3EDC42A7C931B 79872 ----a-w- C:\WINDOWS\SysWOW64\BluetoothApis.dll 2014-09-15 15:59:32 594CEF2E9CD8A5BB8310B3844614C127 7168 ----a-w- C:\WINDOWS\SysWOW64\KBDTAT.DLL 2014-09-14 16:27:13 F51B727AFF404ED8D730DFA069D88D7B 18722600 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2014-09-14 16:27:13 DBA00F3FC75495058A25B24906C24599 1205976 ----a-w- C:\WINDOWS\SysWOW64\propsys.dll 2014-09-14 16:27:13 DA65F1320538BC417B8FAE0BCAC330A0 265216 ----a-w- C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-09-14 16:27:13 BFC6F7889A9CFF451A418862444B9F63 321024 ----a-w- C:\WINDOWS\SysWOW64\Wldap32.dll 2014-09-14 16:27:13 A4E624F7658D08C1717542FA10E0A973 1467384 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2014-09-14 16:27:13 76831C139BD9E227712B283A6A5ABBA8 840192 ----a-w- C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-09-14 16:27:13 1FA2D34A17E366C269FBE94DE06B177F 855552 ----a-w- C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-09-14 16:27:13 074BF061D97E49AAF04F2FAF46409A14 5902848 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-09-14 16:27:13 021825EF003AA09835ECCA2CCF973BB8 626688 ----a-w- C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-09-14 16:27:12 E86549FED3008360730A6B722079D537 756224 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2014-09-14 16:27:12 7BEE9E040222E7033A820780E1A61204 5777408 ----a-w- C:\WINDOWS\SysWOW64\mstscax.dll 2014-09-14 16:27:12 24B30DB8D1F8CF0F8C1AAAE319BC508E 838144 ----a-w- C:\WINDOWS\SysWOW64\KernelBase.dll 2014-09-14 16:25:49 E4783EB6A6B2D04F3B541B378E843617 229888 ----a-w- C:\WINDOWS\SysWOW64\dhcpcore6.dll 2014-09-14 16:25:49 E28501E3A241DDC5DC65382E55661B1D 285696 ----a-w- C:\WINDOWS\SysWOW64\dhcpcore.dll 2014-09-14 16:25:49 BEA7A26C2C22381B6DD88758352B9D9B 62976 ----a-w- C:\WINDOWS\SysWOW64\dhcpcsvc.dll 2014-09-14 16:25:49 57E0A896C38C41C8B5B7F3127F8FD0D9 56320 ----a-w- C:\WINDOWS\SysWOW64\dhcpcsvc6.dll 2014-09-14 16:25:49 4E07710A2C9EA43E7509BF7D0452430E 106496 ----a-w- C:\WINDOWS\SysWOW64\Robocopy.exe 2014-09-14 16:25:48 EA15CC7B75A2DE287E3B0C266A35490C 235008 ----a-w- C:\WINDOWS\SysWOW64\framedynos.dll 2014-09-14 16:25:48 BA6E52B0D82682EDE4B49D9CCC7D529B 207360 ----a-w- C:\WINDOWS\SysWOW64\framedyn.dll 2014-09-14 16:25:48 949E0E42DAAD0418513B44C31A697CA5 1797896 ----a-w- C:\WINDOWS\SysWOW64\d3d9.dll 2014-09-14 16:25:48 191B7F25BE13D9F9E56B2B4EA595AC62 11776 ----a-w- C:\WINDOWS\SysWOW64\d3d8thk.dll 2014-09-14 16:25:48 0CCDFED2DFCD4FBA73EE989249379458 52736 ----a-w- C:\WINDOWS\SysWOW64\ncobjapi.dll 2014-09-14 16:24:08 61F5222289E052C40274ECD182A8AA99 98816 ----a-w- C:\WINDOWS\SysWOW64\drvinst.exe 2014-09-12 20:26:14 1DEC681B79501A714F0D3FA2787183C3 305152 ----a-w- C:\WINDOWS\SysWOW64\wusa.exe 2014-09-12 20:26:04 128EC9879D462F89829E663417FE5DBD 710144 ----a-w- C:\WINDOWS\SysWOW64\rpcrt4.dll 2014-09-12 20:25:58 2C01D8EA2B0FA834597FCD96AAAE4F52 406400 ----a-w- C:\WINDOWS\SysWOW64\dxgi.dll 2014-09-12 20:24:10 F8D0951A75826AD557CFAC323A936AA6 281088 ----a-w- C:\WINDOWS\SysWOW64\msihnd.dll 2014-09-12 20:23:16 4C48253C6A21CCEBA071B58A5CDF17C1 875688 ----a-w- C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2014-09-12 20:22:02 38045850ACB96313A1983A8803302906 35480 ----a-w- C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-09-12 20:20:43 EB40EFEBE9EB4ACA3DD950A1AFA0F51B 171008 ----a-w- C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-09-12 20:20:43 A82DF6AB70BF4558B58D0B2827B61C3C 33792 ----a-w- C:\WINDOWS\SysWOW64\sxproxy.dll 2014-09-12 20:20:43 59BB015A6FEB79D7911005D3E5F8C770 402432 ----a-w- C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-09-12 20:20:43 503281E8561B81FC080887ECAF5F5E31 151040 ----a-w- C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-09-12 20:20:43 1AFACFDB26C1B81586801AFF8BB0ABF1 222720 ----a-w- C:\WINDOWS\SysWOW64\spp.dll 2014-09-12 20:20:42 FF0EE1B87E5DD7A82F7BB124D5CA8BB6 494592 ----a-w- C:\WINDOWS\SysWOW64\dnsapi.dll 2014-09-12 20:20:42 FE85E0B190DD141E4826FEC9F015FA18 139776 ----a-w- C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-09-12 20:20:42 FBA4497DEBB5C07F5FA230618857A329 58368 ----a-w- C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-09-12 20:20:42 D30975FD233E399744E2FB083F5E5545 222720 ----a-w- C:\WINDOWS\SysWOW64\dcomp.dll 2014-09-12 20:20:42 C06B6C8E002EDB492D93F2494E32F9CA 605184 ----a-w- C:\WINDOWS\SysWOW64\rasapi32.dll 2014-09-12 20:20:42 BD9306F715EA9B959EDB892614F6D581 94016 ----a-w- C:\WINDOWS\SysWOW64\userenv.dll 2014-09-12 20:20:42 B918D220FCD67E5A4AF05018515E4C14 172544 ----a-w- C:\WINDOWS\SysWOW64\ReInfo.dll 2014-09-12 20:20:42 B4309F7821BDE5A31E1E4FB24ED97C5C 197632 ----a-w- C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-09-12 20:20:42 AFFB4EB53FC1D04495C8A5EC80B1EBCD 264192 ----a-w- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-09-12 20:20:42 AF2A68F7890A680DAE0637EC49456A7B 85504 ----a-w- C:\WINDOWS\SysWOW64\davclnt.dll 2014-09-12 20:20:42 ADC071E4F65BAC3AEF4807B23438472A 280576 ----a-w- C:\WINDOWS\SysWOW64\SessEnv.dll 2014-09-12 20:20:42 9264B57E8C0BCCA14F92EBA56B9B5106 800256 ----a-w- C:\WINDOWS\SysWOW64\ReAgent.dll 2014-09-12 20:20:42 91F6883B61C0E5BEAE9B734D8E46829B 386560 ----a-w- C:\WINDOWS\SysWOW64\wlangpui.dll 2014-09-12 20:20:42 83058B0F0CEC63A5A7438818B71C0935 1679128 ----a-w- C:\WINDOWS\SysWOW64\msxml6.dll 2014-09-12 20:20:42 7C0E08F3F04ED8874E19DD23753DE2C6 356864 ----a-w- C:\WINDOWS\SysWOW64\wlidprov.dll 2014-09-12 20:20:42 775C3D06C408F4F093254B39637A6F1E 755712 ----a-w- C:\WINDOWS\SysWOW64\kerberos.dll 2014-09-12 20:20:42 6F389E3C60FD27DA4322F78D2233E1FC 567296 ----a-w- C:\WINDOWS\SysWOW64\nshwfp.dll 2014-09-12 20:20:42 67D2296474FB0F3B858E1758FFA3AC79 1779800 ----a-w- C:\WINDOWS\SysWOW64\d3d11.dll 2014-09-12 20:20:42 5B8D7F29CA815E6DB156DF9853F0472D 2030080 ----a-w- C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-09-12 20:20:42 5AEFC877161F7A481DD7CC137F97E761 2270208 ----a-w- C:\WINDOWS\SysWOW64\msftedit.dll 2014-09-12 20:20:42 595653478434F2A8451EDA55CD954CED 1036288 ----a-w- C:\WINDOWS\SysWOW64\kernel32.dll 2014-09-12 20:20:42 4F3AD1A7C0ED3CF5C4EBE49F61074E41 226304 ----a-w- C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-09-12 20:20:42 411201FFB3882554D5B833E6EC2EC649 254976 ----a-w- C:\WINDOWS\SysWOW64\pdh.dll 2014-09-12 20:20:42 3D83889B6343386C918AB45F5C4C9355 262656 ----a-w- C:\WINDOWS\SysWOW64\LocationApi.dll 2014-09-12 20:20:42 37725B5D560398E5BF4DAF85E4F89249 70656 ----a-w- C:\WINDOWS\SysWOW64\w32tm.exe 2014-09-12 20:20:42 2BDB085AA7ECA65D1793D150CEC960AF 1095488 ----a-w- C:\WINDOWS\SysWOW64\ole32.dll 2014-09-12 20:20:42 21DDC5D6CFAC0A5FEE3B364A9B58A7CB 1764864 ----a-w- C:\WINDOWS\SysWOW64\dwmcore.dll 2014-09-12 20:20:42 1FE14EDDEED70613E3A032182C7796FB 27136 ----a-w- C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-09-12 20:18:33 684CF6A72A8DF7D66D262AC4A6E07845 270848 ----a-w- C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll 2014-09-12 20:18:01 7DB59908D49605F2CD0CFB0CF9940E86 735232 ----a-w- C:\WINDOWS\SysWOW64\adtschema.dll 2014-09-12 20:17:46 BA4FA107EF9A728C58A81B2EFCD6FE2B 26784 ----a-w- C:\WINDOWS\SysWOW64\mrt100.dll 2014-09-12 20:17:46 6923D6FAB7CBA8D82BD792182B4F3DE4 80032 ----a-w- C:\WINDOWS\SysWOW64\mrt_map.dll 2014-09-12 20:16:18 4B7FA0A3D7B9D316BC6B2A409701E47D 828928 ----a-w- C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-09-12 20:15:11 FA5275F6BE4D2615B754F06E7CF228DB 17455104 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2014-09-12 20:15:11 D9F5B424C307B195E16A9B0A21E53BCC 61952 ----a-w- C:\WINDOWS\SysWOW64\iesetup.dll 2014-09-12 20:15:11 B9361205DC3168E724E6288F64D0D867 69632 ----a-w- C:\WINDOWS\SysWOW64\mshtmled.dll 2014-09-12 20:15:11 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\WINDOWS\SysWOW64\msrating.dll 2014-09-12 20:15:11 A98F492B4C63CA5E11DAAEB36A0CEFCE 2185728 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2014-09-12 20:15:11 96C9E7D834583F5F48CC0390F7755CE1 678400 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-09-12 20:15:11 7E1AB823D5F57E18392A2C6BC7466B07 11769856 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2014-09-12 20:15:11 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-09-12 20:15:11 734FB412C293001F7777DEF89BC510BF 603136 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2014-09-12 20:15:11 6DBE009D0DECBD8F1F170366332BE432 1190400 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2014-09-12 20:15:11 6D6E5210CA43AAC67082C69A8BA53705 4232704 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2014-09-12 20:15:11 6A89CC35530F7021B91571D2C2DF7009 312320 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2014-09-12 20:15:11 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\WINDOWS\SysWOW64\jsproxy.dll 2014-09-12 20:15:11 4E9D7F3948E0B1DB2F861A0C9BA186AB 597504 ----a-w- C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-09-12 20:15:11 332E39115D7AE6071357E453574FCD48 365056 ----a-w- C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-09-12 20:15:11 2BFB1103B7D2B45A094B0600CDD775F3 60416 ----a-w- C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-12 20:15:11 26E85EDDE755D489A20CC67C4DAAD8BC 2014208 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-09-12 20:15:11 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-09-12 20:15:11 1E2AEB0238F0FE156FC1E4EE918446DD 61952 ----a-w- C:\WINDOWS\SysWOW64\MshtmlDac.dll 2014-09-12 20:15:11 1C9DF9ABA72C6F6ED0AAAD9AC3F0DAC5 454656 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2014-09-12 20:15:11 1A03F9B1D9F0493B18B1E648F4F82D4F 1812992 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2014-09-12 20:15:11 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\WINDOWS\SysWOW64\iernonce.dll 2014-09-12 20:15:11 089A1B20B83F147184D28E8633DC0F5E 243200 ----a-w- C:\WINDOWS\SysWOW64\dxtrans.dll 2014-09-12 20:14:27 0A9EB3956BCB7E5CDE15AF987BD81543 488960 ----a-w- C:\WINDOWS\SysWOW64\qedit.dll 2014-09-12 20:14:23 55ADDA5B29D1151727470FA165460773 1312256 ----a-w- C:\WINDOWS\SysWOW64\msxml3.dll 2014-09-12 20:14:08 65FCEABE3128592F84B60140F814BDDB 1509888 ----a-w- C:\WINDOWS\SysWOW64\DWrite.dll 2014-09-12 20:07:26 DC72DC452793C9622E6F056B89F9302C 123904 ----a-w- C:\WINDOWS\SysWOW64\wuwebv.dll 2014-09-12 20:07:26 D8C63F333D4A8D8433849A9ADC092BE9 31232 ----a-w- C:\WINDOWS\SysWOW64\wuapp.exe 2014-09-12 20:07:26 0542A44401EA9451D82D3DF4BF3BD871 419928 ----a-w- C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-09-12 20:06:59 DBC4D46A7DDC14D1D1ED4B613F9E41A4 1064448 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2014-09-12 20:06:39 DB3ED0BA26D7C598481A23E7D06A370E 2344448 ----a-w- C:\WINDOWS\SysWOW64\Wpc.dll 2014-09-12 20:06:04 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\WINDOWS\SysWOW64\mshtml.tlb 2014-09-12 20:05:15 EC4FA776548BF1A05DAE3B5EFB0FFE6F 1209616 ----a-w- C:\WINDOWS\SysWOW64\winmde.dll 2014-09-12 20:05:14 E697F1E4E819EB12C40AE01F88626BAB 219136 ----a-w- C:\WINDOWS\SysWOW64\resutils.dll 2014-09-12 20:05:14 D0E0E176F86C3B1048A67144DE0C5CD3 46592 ----a-w- C:\WINDOWS\SysWOW64\tlscsp.dll 2014-09-12 20:05:14 A624CA7CDFA7941EECD6F96F1A47CCA3 178184 ----a-w- C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2014-09-12 20:05:14 A54EB398BC2D792A0C603A97F7975FD8 357376 ----a-w- C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2014-09-12 20:05:14 A4F3682781DD8B36E97FD04BA50845A2 209920 ----a-w- C:\WINDOWS\SysWOW64\rdpencom.dll 2014-09-12 20:05:14 A3ECC0F6960AA699895CB48BC69BEA3B 326024 ----a-w- C:\WINDOWS\SysWOW64\AudioSes.dll 2014-09-12 20:05:14 956D8170AD470804405C0564E10ED6ED 406504 ----a-w- C:\WINDOWS\SysWOW64\AudioEng.dll 2014-09-12 20:05:14 90C83CF02C884315E595FA07CA9C64EF 387896 ----a-w- C:\WINDOWS\SysWOW64\mfsvr.dll 2014-09-12 20:05:14 8C25FBB338147754DA42DF990FB3AE4A 285144 ----a-w- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2014-09-12 20:05:14 88A821BC72CB1A935C92F453586233EF 518544 ----a-w- C:\WINDOWS\SysWOW64\mf.dll 2014-09-12 20:05:14 87AB9959EC23455326C8C55E59DE0A88 669856 ----a-w- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-09-12 20:05:14 76892045ECB1D830185618DBD3467562 337408 ----a-w- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-09-12 20:05:14 68A23F58F6F16B81BCBFCAA07CDF0680 61440 ----a-w- C:\WINDOWS\SysWOW64\srclient.dll 2014-09-12 20:05:14 619C6E72B8433B3F67738F7E6C972A96 230808 ----a-w- C:\WINDOWS\SysWOW64\wintrust.dll 2014-09-12 20:05:14 5FAEA469BCE03F8FABAFB63D7603DC3C 982016 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2014-09-12 20:05:14 561945C42E36012B4799C342E6A96498 800768 ----a-w- C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-09-12 20:05:14 4874EB05C1BE374B8A4AC15DF3DB07B0 111528 ----a-w- C:\WINDOWS\SysWOW64\gpapi.dll 2014-09-12 20:05:14 3DA5CD1E3B9BDAF79731CB6CB1029CB3 53248 ----a-w- C:\WINDOWS\SysWOW64\tsgqec.dll 2014-09-12 20:05:14 3CABBCB26C4E73F3440A8A064EB490FF 11264 ----a-w- C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-09-12 20:05:14 2169BB3BA0596881EE717A93EC60037D 35328 ----a-w- C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-09-12 20:05:14 15905E6B799C1446A37915ED23CD17E5 144384 ----a-w- C:\WINDOWS\SysWOW64\rpchttp.dll 2014-09-12 20:05:14 13CE2AA6D3ACAF0B485DBFE8AF2F5C48 305768 ----a-w- C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-09-12 20:05:14 0FDDBC46B0FE68B9516BED5CDC2A5296 5104640 ----a-w- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2014-09-12 19:58:40 262AD0EF90F757FB715B3EDD6A8E469C 778936 ----a-w- C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-09-12 19:58:40 2083BD93AE43F9494318B422FF8943D1 102608 ----a-w- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-09-12 19:31:44 D823A6ED12810DC4FBA9184B5922E5AD 60416 ----a-w- C:\WINDOWS\SysWOW64\OpenCL.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2014-09-21 15:08:31 CC2229EEC61D2E2C40A5EF7C8E99B98A 229888 ----a-w- C:\WINDOWS\Sysnative\CNC540O.DLL 2014-09-21 15:08:31 30D4DD78BCD887F3A4AE43D1383F39F8 293888 ----a-w- C:\WINDOWS\Sysnative\CNC540L.DLL 2014-09-21 15:08:31 09F3C958A007B2877B6725ECF815024A 92672 ----a-w- C:\WINDOWS\Sysnative\CNC540I.DLL 2014-09-21 15:08:30 26A865C2E0A2D59583986E0E257E80DB 1354240 ----a-w- C:\WINDOWS\Sysnative\CNC540C.DLL 2014-09-18 10:06:37 B46B41CE922CE5B7B055A28226DE2D79 307344 ----a-w- C:\WINDOWS\Sysnative\aswBoot.exe 2014-09-17 16:20:42 A1676271F37E953A2C4FB8E1046AEA86 279040 ----a-w- C:\WINDOWS\Sysnative\CNMLM9E.DLL 2014-09-17 08:53:56 F1BF87B19D32D68DC3A8B1C03F9861B5 15288 ----a-w- C:\WINDOWS\Sysnative\ddmdrv.sys 2014-09-15 16:00:30 91AEA2A8671DDDFA526604B2379867F3 13423104 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2014-09-15 16:00:30 00CD1254837739E310505EBCB19F7971 796672 ----a-w- C:\WINDOWS\Sysnative\uDWM.dll 2014-09-15 16:00:28 A4EE37B24370FABA65EF64FF24B5539E 2860032 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2014-09-15 16:00:28 A1864B6F524DAFAB750C613467E43515 4148736 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2014-09-15 16:00:28 04AE20974DF91DC7B9075FC5A126B77C 68096 ----a-w- C:\WINDOWS\Sysnative\UXInit.dll 2014-09-15 16:00:26 A00B916CD6A67984257DC53052350219 2646016 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2014-09-15 16:00:26 7667B9D81EA8FD6540E6CF72F92161A6 109568 ----a-w- C:\WINDOWS\Sysnative\appinfo.dll 2014-09-15 16:00:26 5DAA60A74D178525DC6ACF53ABE343D6 2779136 ----a-w- C:\WINDOWS\Sysnative\msi.dll 2014-09-15 16:00:07 E09BF40AA766B183F0F385C96B37D9E5 299520 ----a-w- C:\WINDOWS\Sysnative\WSDMon.dll 2014-09-15 16:00:07 DA947D89F64B72A40F678AAAE76F7564 205824 ----a-w- C:\WINDOWS\Sysnative\tcpmon.dll 2014-09-15 15:59:55 49EEC8569BF200C95A38D00766AFB830 16874496 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2014-09-15 15:59:52 BB832E06EE4F5585C15C441FE953DFF5 7424320 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2014-09-15 15:59:51 CC59B18DEC31120F9957ABA55EC49FAC 2389504 ----a-w- C:\WINDOWS\Sysnative\d3d10warp.dll 2014-09-15 15:59:51 74637F054A1DA40DA7C0A939094AFED7 2696704 ----a-w- C:\WINDOWS\Sysnative\SettingsHandlers.dll 2014-09-15 15:59:50 AD3137A754F60D369C176EF4DD5084A0 2141920 ----a-w- C:\WINDOWS\Sysnative\mfcore.dll 2014-09-15 15:59:49 69DB09F0263C637DA8568D404842466A 1261056 ----a-w- C:\WINDOWS\Sysnative\gpsvc.dll 2014-09-15 15:59:48 61BF52E9FFAB27A0B6D621BE26088373 1600000 ----a-w- C:\WINDOWS\Sysnative\workfolderssvc.dll 2014-09-15 15:59:48 3F5EF31C6AA204B099EE76497DF80A26 1532416 ----a-w- C:\WINDOWS\Sysnative\wlansvc.dll 2014-09-15 15:59:48 11FA35E24D76F62BD3E64D43B12656EF 1231872 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.dll 2014-09-15 15:59:47 7A136EFAB2E4DF9A897E0333C51B54B8 818624 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2014-09-15 15:59:47 3EB052F70F739728F89E2AEE2652E8CA 1029632 ----a-w- C:\WINDOWS\Sysnative\localspl.dll 2014-09-15 15:59:46 D24002EB2F4A8A04897703067E81CC5D 3465216 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2014-09-15 15:59:46 AEAD37FA03D6E90638D8A4DC30E50408 2050560 ----a-w- C:\WINDOWS\Sysnative\SRH.dll 2014-09-15 15:59:46 A9C015F01499761908DE61F172FAF65D 486744 ----a-w- C:\WINDOWS\Sysnative\netcfgx.dll 2014-09-15 15:59:46 8200B4C323229AA1F47C87EB37207E36 2574208 ----a-w- C:\WINDOWS\Sysnative\WMVDECOD.DLL 2014-09-15 15:59:46 4301A4D673F1ACB195C4F30B306B70B9 1992192 ----a-w- C:\WINDOWS\Sysnative\XpsPrint.dll 2014-09-15 15:59:46 17E700D2F6671196D0512BF806BB6435 1182208 ----a-w- C:\WINDOWS\Sysnative\printui.dll 2014-09-15 15:59:45 BF6897E960C08E9FDD41B80726C61C2F 371200 ----a-w- C:\WINDOWS\Sysnative\wlanmsm.dll 2014-09-15 15:59:45 B2C26168E74EA51BF65518A309B08C19 770048 ----a-w- C:\WINDOWS\Sysnative\WorkfoldersControl.dll 2014-09-15 15:59:45 42FEA9E0BA9761D9E65A4F167D91515B 795136 ----a-w- C:\WINDOWS\Sysnative\spoolsv.exe 2014-09-15 15:59:45 0A7F97DE49DB63E01CBCA067F4DA7AB8 544768 ----a-w- C:\WINDOWS\Sysnative\AppxPackaging.dll 2014-09-15 15:59:44 FF1CB6C5D9288DAAA0DADAD6B1E35085 205512 ----a-w- C:\WINDOWS\Sysnative\mftranscode.dll 2014-09-15 15:59:44 D249C3A58A4FCF755EF4C94F7047E015 449536 ----a-w- C:\WINDOWS\Sysnative\defragsvc.dll 2014-09-15 15:59:44 D0AD65EE089F735BF546ABFE28D192C0 621056 ----a-w- C:\WINDOWS\Sysnative\comdlg32.dll 2014-09-15 15:59:44 D01BA613D268DAD03DD32A0DC5FD24DF 287232 ----a-w- C:\WINDOWS\Sysnative\usbmon.dll 2014-09-15 15:59:44 C80D4D7AF450F7CAD615FF1D7B40D7AD 1488008 ----a-w- C:\WINDOWS\Sysnative\winresume.efi 2014-09-15 15:59:44 C40DE04CE3A8905EB8048B5CE0951DF0 882136 ----a-w- C:\WINDOWS\Sysnative\mfplat.dll 2014-09-15 15:59:44 835261C17478103B73F4FFB8454AF849 268288 ----a-w- C:\WINDOWS\Sysnative\wisp.dll 2014-09-15 15:59:44 79EFAEE6FBD8ABC066B944E1A7A605BB 645592 ----a-w- C:\WINDOWS\Sysnative\SHCore.dll 2014-09-15 15:59:44 793EACA6BAE9F481C2059BCB3743EB4A 324096 ----a-w- C:\WINDOWS\Sysnative\srvsvc.dll 2014-09-15 15:59:44 7740658736BD07FC121EACB3CA7C9194 2397184 ----a-w- C:\WINDOWS\Sysnative\storagewmi.dll 2014-09-15 15:59:44 70696A95F26778CFCB106ECEAA40F4D9 1519560 ----a-w- C:\WINDOWS\Sysnative\winload.exe 2014-09-15 15:59:44 5B6B32E83E371739B13AA67E260DC5C4 487936 ----a-w- C:\WINDOWS\Sysnative\winspool.drv 2014-09-15 15:59:44 40CC457FB140B509B50F96DAD9D8F80B 1660048 ----a-w- C:\WINDOWS\Sysnative\winload.efi 2014-09-15 15:59:44 3C120DEE84D42246A17A917B2B934A36 513544 ----a-w- C:\WINDOWS\Sysnative\locale.nls 2014-09-15 15:59:44 23F0DE75890E604B9DED5625EFA907FD 1417216 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2014-09-15 15:59:44 0FA02FD5BEF2B8FBA63B40746360E9C6 828416 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2014-09-15 15:59:44 01409F85BB9DB87E102B415EC91DD6C1 438272 ----a-w- C:\WINDOWS\Sysnative\puiobj.dll 2014-09-15 15:59:43 FE7E47BE6E0D9EF4F24D81381A829CEC 1463808 ----a-w- C:\WINDOWS\Sysnative\wsecedit.dll 2014-09-15 15:59:43 A4CF0D2FF18BF8D128389AF26410FD8B 1018368 ----a-w- C:\WINDOWS\Sysnative\aclui.dll 2014-09-15 15:59:43 3663F0BB881A16A689F33A21C1A3C76B 1356840 ----a-w- C:\WINDOWS\Sysnative\winresume.exe 2014-09-15 15:59:42 EA10272605422080EE2FAB142A75120D 356864 ----a-w- C:\WINDOWS\Sysnative\conhost.exe 2014-09-15 15:59:42 D069B88549B986C15731AE79F8D6C258 3360768 ----a-w- C:\WINDOWS\Sysnative\rdpcorets.dll 2014-09-15 15:59:42 CD8CA57C36E596875865F451393C7C66 576512 ----a-w- C:\WINDOWS\Sysnative\SettingSync.dll 2014-09-15 15:59:42 AE27E63B6A4AFCF4EBCCE8AC4A96C0EF 806400 ----a-w- C:\WINDOWS\Sysnative\win32spl.dll 2014-09-15 15:59:42 A055D7D686F1CB5CBEDCFBB4C6DC9E2E 1519488 ----a-w- C:\WINDOWS\Sysnative\user32.dll 2014-09-15 15:59:42 9D50C0B29FB20DF0A8FD197B332894B7 160600 ----a-w- C:\WINDOWS\Sysnative\winmmbase.dll 2014-09-15 15:59:42 8DC2979BC54C585BA5A4C9E6FABCD1B4 360480 ----a-w- C:\WINDOWS\Sysnative\mfreadwrite.dll 2014-09-15 15:59:42 693CC2794DEFB8493ABFF68D509DACC4 127488 ----a-w- C:\WINDOWS\Sysnative\WiFiDisplay.dll 2014-09-15 15:59:42 618A19EB31ECA7B7F2AA0207BAF598A5 84480 ----a-w- C:\WINDOWS\Sysnative\wpdbusenum.dll 2014-09-15 15:59:42 1C683FB45C6CE0BB8A74BB0B1392599D 505344 ----a-w- C:\WINDOWS\Sysnative\VAN.dll 2014-09-15 15:59:41 F8A869262251B011A21DEC79AC1F3F5D 1844224 ----a-w- C:\WINDOWS\Sysnative\Display.dll 2014-09-15 15:59:41 D62B6C0A254EADB94C138600E6DB6048 388608 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2014-09-15 15:59:41 9A3AF816758D144B097AE477D99F7D79 834560 ----a-w- C:\WINDOWS\Sysnative\osk.exe 2014-09-15 15:59:41 8EE8CA953542A8E70A841C453BC15196 427008 ----a-w- C:\WINDOWS\Sysnative\clusapi.dll 2014-09-15 15:59:41 793DE7C6B82804D5973C43484F527849 117248 ----a-w- C:\WINDOWS\Sysnative\AppxSip.dll 2014-09-15 15:59:41 2C38FF9DE23A3BB335A95099622AB603 65536 ----a-w- C:\WINDOWS\Sysnative\WorkFoldersGPExt.dll 2014-09-15 15:59:41 02FE7859AD2DEAD7E9E3C7BF5F484204 211216 ----a-w- C:\WINDOWS\Sysnative\SndVol.exe 2014-09-15 15:59:40 CCC106273D4265A9091AA7B619DCC5DA 595456 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.dll 2014-09-15 15:59:40 A6CB3CBF88DF671AC85FA9AABC33137F 125472 ----a-w- C:\WINDOWS\Sysnative\dwmapi.dll 2014-09-15 15:59:40 97F24AEACAD9C9038BEC5B2BA1ADA94C 187392 ----a-w- C:\WINDOWS\Sysnative\WorkFoldersShell.dll 2014-09-15 15:59:40 83E7C4DA3BF4A21C3F809A506245CAEF 233888 ----a-w- C:\WINDOWS\Sysnative\mfps.dll 2014-09-15 15:59:40 7DEAD28D8FB9BCAE4A153A57338315E7 123920 ----a-w- C:\WINDOWS\Sysnative\winmm.dll 2014-09-15 15:59:40 504DDEF8526CECAAD886D5AC5656DF1A 387896 ----a-w- C:\WINDOWS\Sysnative\bcryptprimitives.dll 2014-09-15 15:59:40 20657ACF2AE5B2E25EEFC597A34AFDED 1705472 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2014-09-15 15:59:40 1A5835F2E6B49A83F0AEAD17B4537AF7 1656832 ----a-w- C:\WINDOWS\Sysnative\GdiPlus.dll 2014-09-15 15:59:40 1922AAE64BCD761A0377F6981FC67736 721408 ----a-w- C:\WINDOWS\Sysnative\twinapi.dll 2014-09-15 15:59:40 12C0733F955E15C3C37DD24C9C7D796A 263680 ----a-w- C:\WINDOWS\Sysnative\DafPrintProvider.dll 2014-09-15 15:59:40 118A11C89FAD244A2B85DA7EDC3E9683 215552 ----a-w- C:\WINDOWS\Sysnative\prnntfy.dll 2014-09-15 15:59:39 FD807B56AECFD89E4A46960C261D78BF 1089024 ----a-w- C:\WINDOWS\Sysnative\gpedit.dll 2014-09-15 15:59:39 FA86C3F979EF9CCCCED109B05DEBDD46 432640 ----a-w- C:\WINDOWS\Sysnative\wwanconn.dll 2014-09-15 15:59:39 EF1F8B57323E5D3FC6A0A25F98F90DBC 220160 ----a-w- C:\WINDOWS\Sysnative\profsvc.dll 2014-09-15 15:59:39 CCD0DF268D9C9F5287B66565B4258FD6 59392 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2014-09-15 15:59:39 A8732AFE4DB47114355ABB285ED776D2 187392 ----a-w- C:\WINDOWS\Sysnative\puiapi.dll 2014-09-15 15:59:39 91B18D7A1702ED589E67C6C81052B955 226816 ----a-w- C:\WINDOWS\Sysnative\WebClnt.dll 2014-09-15 15:59:39 6ECFFE49AA43A74DC15701EFE6355621 92160 ----a-w- C:\WINDOWS\Sysnative\dab.dll 2014-09-15 15:59:39 572EBBCDBBA56736F4C0B5487AE7BFA5 220160 ----a-w- C:\WINDOWS\Sysnative\iasnap.dll 2014-09-15 15:59:39 31C2E53FE0C039C1BF0F15154D8596E7 53248 ----a-w- C:\WINDOWS\Sysnative\AppxSysprep.dll 2014-09-15 15:59:39 2B1C2CB5C97962C521CD806F0C86D2FE 102912 ----a-w- C:\WINDOWS\Sysnative\wcmcsp.dll 2014-09-15 15:59:39 28E8D340402C130427F2901004B7FA99 321536 ----a-w- C:\WINDOWS\Sysnative\stobject.dll 2014-09-15 15:59:39 0AB5085FE30F8F6942A2126BCFC1A606 263400 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlows.exe 2014-09-15 15:59:39 0A3E1B697F6ACB7BC1C898DC14A96EC7 1287680 ----a-w- C:\WINDOWS\Sysnative\mispace.dll 2014-09-15 15:59:37 3AB9868E0E78AD9CD501B83D7C293125 54752 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2014-09-15 15:59:36 B540693968BCA57F595A7B08DB4B46C3 216368 ----a-w- C:\WINDOWS\Sysnative\rsaenh.dll 2014-09-15 15:59:36 AEDF08DDF4EA929FEDBC0A1CCF01F287 296960 ----a-w- C:\WINDOWS\Sysnative\wlanapi.dll 2014-09-15 15:59:36 53F4FC66B94804BBF2016922CD826891 878592 ----a-w- C:\WINDOWS\Sysnative\ActionCenter.dll 2014-09-15 15:59:34 A7762A36F92E57E41B0356EF5C672473 659968 ----a-w- C:\WINDOWS\Sysnative\Windows.Devices.Bluetooth.dll 2014-09-15 15:59:34 69AF7212845FFCD0AA1F0FC5D51FB809 63488 ----a-w- C:\WINDOWS\Sysnative\wshbth.dll 2014-09-15 15:59:34 3A80675FF8524B09817000B6A2E35B7A 18432 ----a-w- C:\WINDOWS\Sysnative\wlansvcpal.dll 2014-09-15 15:59:34 2E80E960F1D376A502E9811B20621F2A 427520 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2014-09-15 15:59:34 1E01725D557B5325E8C99F712E7D4A7E 50688 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2014-09-15 15:59:34 041A999E4FF9A7CDBE67357751881FB8 134144 ----a-w- C:\WINDOWS\Sysnative\browser.dll 2014-09-15 15:59:33 EB2BB6EC7AEBBDD04FAB8E8D6FCEDAA6 183808 ----a-w- C:\WINDOWS\Sysnative\Defrag.exe 2014-09-15 15:59:33 CB9CEAB473897BE1E8C827D4F4EB1311 207360 ----a-w- C:\WINDOWS\Sysnative\powercfg.cpl 2014-09-15 15:59:33 A4DE7868879498A4E4CBB12788FAA3E8 105472 ----a-w- C:\WINDOWS\Sysnative\BluetoothApis.dll 2014-09-15 15:59:33 6A9650BDC13F1A770F20E7B99D29EE3D 6656 ----a-w- C:\WINDOWS\Sysnative\KBDRU.DLL 2014-09-15 15:59:33 454A0735E836FBC31C064FED6C120B46 7168 ----a-w- C:\WINDOWS\Sysnative\KBDRU1.DLL 2014-09-15 15:59:33 3429360674DA1E70F638924A6D5985CC 7168 ----a-w- C:\WINDOWS\Sysnative\KBDYAK.DLL 2014-09-15 15:59:33 2067AF0531ACD5D28BD49DB30DF109CE 8192 ----a-w- C:\WINDOWS\Sysnative\KBDRUM.DLL 2014-09-15 15:59:33 0AC5A816A01D0115588D4B997842780E 7168 ----a-w- C:\WINDOWS\Sysnative\KBDBASH.DLL 2014-09-15 15:59:32 D8683834163E00E252CAC57BB6025036 93696 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2014-09-15 15:59:32 B279922BCFD0E178068B159D85C5CDBE 2100736 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlowUI.dll 2014-09-15 15:59:32 A9CE2C192B4C7E7151011A56DB2C7B40 132608 ----a-w- C:\WINDOWS\Sysnative\rdpudd.dll 2014-09-15 15:59:32 A5141DD172927F04732F5B6BFBE49C15 443904 ----a-w- C:\WINDOWS\Sysnative\wlansec.dll 2014-09-15 15:59:32 997E5E28492F02036E5C7BA6DB66ABDC 7168 ----a-w- C:\WINDOWS\Sysnative\KBDTAT.DLL 2014-09-15 15:59:32 933C63C9003379F56BA4AF4149440FC8 226304 ----a-w- C:\WINDOWS\Sysnative\SndVolSSO.dll 2014-09-15 15:59:32 68270DE9415C8F8139242D38417B49BE 7168 ----a-w- C:\WINDOWS\Sysnative\KBDTT102.DLL 2014-09-15 15:59:32 6317C9DB4282CEAA3BAB131BC3839B2A 308736 ----a-w- C:\WINDOWS\Sysnative\compstui.dll 2014-09-15 15:59:32 4F6203CBBEFB9FBFA859246682849A24 1144320 ----a-w- C:\WINDOWS\Sysnative\wwanmm.dll 2014-09-15 15:59:32 1A2486F88B4F68FCCE7E01DF34869929 436224 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2014-09-14 16:27:40 888FC771B2D081EB39677868C882FB76 738816 ----a-w- C:\WINDOWS\Sysnative\aepdu.dll 2014-09-14 16:27:40 5F776A54E4B7C5D54E96D2FF8D580706 527360 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2014-09-14 16:27:40 5C809DB631BEB5DCC63C23203102D91A 97280 ----a-w- C:\WINDOWS\Sysnative\aepic.dll 2014-09-14 16:27:40 591B2C8C5C6B944AF538F182B7AF00A6 385536 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2014-09-14 16:27:13 FD4EA8E9232ADD51DC31C295DDEF2768 287744 ----a-w- C:\WINDOWS\Sysnative\SystemEventsBrokerServer.dll 2014-09-14 16:27:13 F58FBEA392B663B936E62939A877CA80 1120768 ----a-w- C:\WINDOWS\Sysnative\SkyDrive.exe 2014-09-14 16:27:13 E325BCD68EC0CF2E2EDD0AB7CC17C698 267776 ----a-w- C:\WINDOWS\Sysnative\bisrv.dll 2014-09-14 16:27:13 B6F423906D3E10BE38C16726C0905033 388729 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2014-09-14 16:27:13 ACFEE9487693C2BD573DFCA71D98E17C 914432 ----a-w- C:\WINDOWS\Sysnative\iphlpsvc.dll 2014-09-14 16:27:13 8A522BBE4E06586C57E5D9DC50FB88B0 6649344 ----a-w- C:\WINDOWS\Sysnative\mstscax.dll 2014-09-14 16:27:13 73F269436228D5625E83A1EAF3549F58 118272 ----a-w- C:\WINDOWS\Sysnative\httpprxm.dll 2014-09-14 16:27:13 66CBCDDEF429E5BA83C3288EEB0771A6 717824 ----a-w- C:\WINDOWS\Sysnative\SkyDriveTelemetry.dll 2014-09-14 16:27:13 5D4A403DAE434FBA11779496EAFBDDE8 75776 ----a-w- C:\WINDOWS\Sysnative\adhsvc.dll 2014-09-14 16:27:13 57CA779C19C2F224BE0C5EFC40F54B60 4758528 ----a-w- C:\WINDOWS\Sysnative\SyncEngine.dll 2014-09-14 16:27:13 3B048C495ED3ADB6D8CA00769EC542B3 921600 ----a-w- C:\WINDOWS\Sysnative\MrmCoreR.dll 2014-09-14 16:27:13 36F977EDAE6CEE96CE6409B2B16765B4 290816 ----a-w- C:\WINDOWS\Sysnative\ProximityService.dll 2014-09-14 16:27:13 34A16F6F9546595952C65003D9A4B474 21195616 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2014-09-14 16:27:13 30293301B14D0D11D086B09831F5FE0D 920064 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2014-09-14 16:27:13 3014CE5846A486C624E3E2CEB8C3290C 286208 ----a-w- C:\WINDOWS\Sysnative\SkyDriveShell.dll 2014-09-14 16:27:13 2ECA23663D13100032E09062C743C70D 1507648 ----a-w- C:\WINDOWS\Sysnative\propsys.dll 2014-09-14 16:27:13 1676B06421492B439A9E60C55692A921 8757760 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Search.dll 2014-09-14 16:27:13 10CE7F7704E293F6CC6E0AF51DBFD95A 1106432 ----a-w- C:\WINDOWS\Sysnative\SearchFolder.dll 2014-09-14 16:27:13 0DD29E5328436D51517316CD6D3BACCA 286208 ----a-w- C:\WINDOWS\Sysnative\pcsvDevice.dll 2014-09-14 16:27:13 0B1A9F6F9D2891C0F8783C0444D27DD0 1057280 ----a-w- C:\WINDOWS\Sysnative\rdvidcrl.dll 2014-09-14 16:27:12 ABB028BAB78E7B4AFE374F8246F6CCB6 359424 ----a-w- C:\WINDOWS\Sysnative\Wldap32.dll 2014-09-14 16:27:12 5053FE9043FB84D71B04EFC7D5DA13CF 1710184 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2014-09-14 16:27:12 37C1CBCB3F420C754E86E3EC313D436D 1112512 ----a-w- C:\WINDOWS\Sysnative\KernelBase.dll 2014-09-14 16:25:49 E07C80468D0C599BFF01D9D4EC7AEDC3 339456 ----a-w- C:\WINDOWS\Sysnative\bdesvc.dll 2014-09-14 16:25:49 98D0985521BF8F7086EA9C860898A1EE 721408 ----a-w- C:\WINDOWS\Sysnative\fveapi.dll 2014-09-14 16:25:48 FBB1841434072FFA76E4AD287448E34A 262656 ----a-w- C:\WINDOWS\Sysnative\framedyn.dll 2014-09-14 16:25:48 EA432A85ABF371E14FB364D5F4405897 403968 ----a-w- C:\WINDOWS\Sysnative\vpnike.dll 2014-09-14 16:25:48 DEA76F90F9777E3427D70E380222B23B 1063424 ----a-w- C:\WINDOWS\Sysnative\IKEEXT.DLL 2014-09-14 16:25:48 D3883FBCA97D10C8A39632D6CDDC6E85 65024 ----a-w- C:\WINDOWS\Sysnative\dhcpcsvc6.dll 2014-09-14 16:25:48 CFD6DBED27511D7A5FBE33AFA7E6B669 76800 ----a-w- C:\WINDOWS\Sysnative\BulkOperationHost.exe 2014-09-14 16:25:48 C1E44A99F7CF8C3A08CD5ADDF451636C 2125344 ----a-w- C:\WINDOWS\Sysnative\d3d9.dll 2014-09-14 16:25:48 B7CC32E00C5C5152D221DF182827F58E 50745 ----a-w- C:\WINDOWS\Sysnative\srms.dat 2014-09-14 16:25:48 7E1EBDB3424337ABB553F249A7811D94 87552 ----a-w- C:\WINDOWS\Sysnative\dhcpcsvc.dll 2014-09-14 16:25:48 71BAEAFD05B3040173F5BBEA2CFE9607 997888 ----a-w- C:\WINDOWS\Sysnative\reseteng.dll 2014-09-14 16:25:48 6CDCCD5323EEB8EBD66E02CB8C9C703F 118272 ----a-w- C:\WINDOWS\Sysnative\winbici.dll 2014-09-14 16:25:48 6B374D279DC423FE69DB8DD1401E84FC 301056 ----a-w- C:\WINDOWS\Sysnative\framedynos.dll 2014-09-14 16:25:48 2616E8E9C8B66A67CFB6197E9517A2F2 123392 ----a-w- C:\WINDOWS\Sysnative\Robocopy.exe 2014-09-14 16:25:48 20FB137ADDE1255F15F265A7BD9579BE 827392 ----a-w- C:\WINDOWS\Sysnative\BFE.DLL 2014-09-14 16:25:48 1824052F17B12B5D7B21445B869EE9F2 71168 ----a-w- C:\WINDOWS\Sysnative\ncobjapi.dll 2014-09-14 16:25:48 10AC9494ECE22A2362E4E4D98C528D01 271872 ----a-w- C:\WINDOWS\Sysnative\dhcpcore6.dll 2014-09-14 16:25:48 05DE04005CE0D84D0E6AD21CAEB369C6 353280 ----a-w- C:\WINDOWS\Sysnative\dhcpcore.dll 2014-09-14 16:24:08 BB7F878413AD3C2E7E89C96193D405DF 57856 ----a-w- C:\WINDOWS\Sysnative\drvcfg.exe 2014-09-14 16:24:08 8E472AA2E916417B55BC1E6727957453 110592 ----a-w- C:\WINDOWS\Sysnative\drvinst.exe 2014-09-13 08:09:11 CB136B267569A62EF63D798BC90ABD5A 144 ----a-w- C:\WINDOWS\Sysnative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2014-09-12 20:37:48 3BC10FA856911EAE5FE7CD700FE137B5 451 ----a-w- C:\WINDOWS\Sysnative\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2014-09-12 20:26:14 326715361A7D1C65983BFE920990E4EF 308224 ----a-w- C:\WINDOWS\Sysnative\wusa.exe 2014-09-12 20:26:09 D3AE5DB16EAF913860EC28654CE00E6B 1212928 ----a-w- C:\WINDOWS\Sysnative\schedsvc.dll 2014-09-12 20:26:04 1BB9CC78C91536CBA7B04B61ED0F85C4 1273184 ----a-w- C:\WINDOWS\Sysnative\rpcrt4.dll 2014-09-12 20:25:58 59EAFAE3A34B4925990A2E679CA91C5B 517528 ----a-w- C:\WINDOWS\Sysnative\dxgi.dll 2014-09-12 20:25:58 454978FB3D24DE5C4199162D5F81FBEE 2133504 ----a-w- C:\WINDOWS\Sysnative\dwmcore.dll 2014-09-12 20:24:32 52E94AE3C9FF1E18A1EA125C4FFB0EEC 2834944 ----a-w- C:\WINDOWS\Sysnative\wpccpl.dll 2014-09-12 20:24:10 10D8859CF01C1284603582ABD9B0482C 114520 ----a-w- C:\WINDOWS\Sysnative\consent.exe 2014-09-12 20:24:10 08914C8989AB93F5EC3A452D014E2C8D 356352 ----a-w- C:\WINDOWS\Sysnative\msihnd.dll 2014-09-12 20:24:00 F381B380B7B2704EA4C0F8D8C49C1C50 623616 ----a-w- C:\WINDOWS\Sysnative\MDMAgent.exe 2014-09-12 20:23:16 8BB7548307EE6147137993A410D64387 869544 ----a-w- C:\WINDOWS\Sysnative\msvcr120_clr0400.dll 2014-09-12 20:22:02 6DBE73C09215E281F4283641144110A5 35480 ----a-w- C:\WINDOWS\Sysnative\TsWpfWrp.exe 2014-09-12 20:20:43 65A3992EC59D8D33D7622E3AF4C50DBF 247296 ----a-w- C:\WINDOWS\Sysnative\SensorsApi.dll 2014-09-12 20:20:42 FE7656474448BE6A6C68E5C9BEB7CA94 254464 ----a-w- C:\WINDOWS\Sysnative\dnsrslvr.dll 2014-09-12 20:20:42 F7529BD3FFAC9C33D15F6DE3B7353B03 1306624 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentServer.dll 2014-09-12 20:20:42 F3523E611AB0B0977B048263A12DCF2A 1291200 ----a-w- C:\WINDOWS\Sysnative\kernel32.dll 2014-09-12 20:20:42 D5C3776CBD8BC307DCCA3FD4CE667A37 324096 ----a-w- C:\WINDOWS\Sysnative\SessEnv.dll 2014-09-12 20:20:42 CC6F6A993FE36A55AF8207B9393407D6 325632 ----a-w- C:\WINDOWS\Sysnative\LocationApi.dll 2014-09-12 20:20:42 C8D6344BDE2691A196E61C0D3372EAB7 2479616 ----a-w- C:\WINDOWS\Sysnative\WsmSvc.dll 2014-09-12 20:20:42 C253B8484DCABB3EBE6D60E67CADB373 356848 ----a-w- C:\WINDOWS\Sysnative\dcomp.dll 2014-09-12 20:20:42 C1D7A9932D7F468534F1913FB1F65572 40448 ----a-w- C:\WINDOWS\Sysnative\SetNetworkLocation.dll 2014-09-12 20:20:42 BC6849C62DB407573C6AD8CB1A4D2628 115200 ----a-w- C:\WINDOWS\Sysnative\umpnpmgr.dll 2014-09-12 20:20:42 B7E51F949ED8C3A75C1D3121AF9A4B6C 655360 ----a-w- C:\WINDOWS\Sysnative\dnsapi.dll 2014-09-12 20:20:42 A2BF5D466853422C143571064C7DD94F 252928 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentClient.dll 2014-09-12 20:20:42 A1C6BA515120C44E8D5A1EA3E927C7C2 291840 ----a-w- C:\WINDOWS\Sysnative\Windows.Devices.Sensors.dll 2014-09-12 20:20:42 9F83D40B242C7CD2868DBF7550F3FF4C 86016 ----a-w- C:\WINDOWS\Sysnative\RMapi.dll 2014-09-12 20:20:42 9F0759C6D691E7030BF33105EDA2C690 30208 ----a-w- C:\WINDOWS\Sysnative\CredentialMigrationHandler.dll 2014-09-12 20:20:42 94CD5DE7D2989AA64594F1925339C97E 542208 ----a-w- C:\WINDOWS\Sysnative\Windows.Graphics.Printing.dll 2014-09-12 20:20:42 8E5C2B32EE4166A3084B133183A00F2A 2141912 ----a-w- C:\WINDOWS\Sysnative\d3d11.dll 2014-09-12 20:20:42 8DAE6957A4F0EC461575F68239E0A13E 69120 ----a-w- C:\WINDOWS\Sysnative\l2gpstore.dll 2014-09-12 20:20:42 8183820F2D9648A619AA3200EFC62D0B 299008 ----a-w- C:\WINDOWS\Sysnative\pdh.dll 2014-09-12 20:20:42 7CDB6060224CFAD4D5AC49FFC5414F41 939520 ----a-w- C:\WINDOWS\Sysnative\kerberos.dll 2014-09-12 20:20:42 7C75BF2879AEAD311DAE25CB5F1A2C83 669696 ----a-w- C:\WINDOWS\Sysnative\rasapi32.dll 2014-09-12 20:20:42 71133C77DD8089DA3F74813F90361F81 83968 ----a-w- C:\WINDOWS\Sysnative\sxproxy.dll 2014-09-12 20:20:42 6DEA7E51085C4CEC311DBD5A1AF8C759 717312 ----a-w- C:\WINDOWS\Sysnative\nshwfp.dll 2014-09-12 20:20:42 5F58A221937B5D58E33F4B21AEF92210 192000 ----a-w- C:\WINDOWS\Sysnative\Windows.Devices.Scanners.dll 2014-09-12 20:20:42 5AEFB4F09549545FA3BBD58A6FFF4962 924160 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentExtensions.dll 2014-09-12 20:20:42 5ABA673EF6433BE68AAE77AE5C5FAFAA 412672 ----a-w- C:\WINDOWS\Sysnative\FWPUCLNT.DLL 2014-09-12 20:20:42 4DD9C026AAB3C12A5BF7FF9A0C038422 186368 ----a-w- C:\WINDOWS\Sysnative\dafWfdProvider.dll 2014-09-12 20:20:42 48F25CC79C6CCFD4B776C8FDA9ED7271 160768 ----a-w- C:\WINDOWS\Sysnative\AppxAllUserStore.dll 2014-09-12 20:20:42 3ED1FD93AA4C381A374C3835CF7A5C92 201216 ----a-w- C:\WINDOWS\Sysnative\ReInfo.dll 2014-09-12 20:20:42 398990EFC34218C3B6C4E6384502083B 2900992 ----a-w- C:\WINDOWS\Sysnative\msftedit.dll 2014-09-12 20:20:42 332E5E35DE9E8175A9550501E57E0612 1542768 ----a-w- C:\WINDOWS\Sysnative\ole32.dll 2014-09-12 20:20:42 2C727D11CDF4F8B2477FC2B1B305ECB9 512000 ----a-w- C:\WINDOWS\Sysnative\wlidprov.dll 2014-09-12 20:20:42 1DCD97010190EF9377E77AB0A846C720 115200 ----a-w- C:\WINDOWS\Sysnative\DevPropMgr.dll 2014-09-12 20:20:42 1B2CAD40A6FD2E9DC336F3A338293B29 2331000 ----a-w- C:\WINDOWS\Sysnative\msxml6.dll 2014-09-12 20:20:42 19F84D6153C06FE71203517BDAC9EA9F 102912 ----a-w- C:\WINDOWS\Sysnative\davclnt.dll 2014-09-12 20:20:42 18297BC1CE8A0C0BF9A703A3C45DACC1 462336 ----a-w- C:\WINDOWS\Sysnative\wlangpui.dll 2014-09-12 20:20:42 16E9AD0F7A34C4F071E40CDD76E7C86D 113648 ----a-w- C:\WINDOWS\Sysnative\userenv.dll 2014-09-12 20:20:42 14BEA911F78B44E47CBD18210E541A43 212992 ----a-w- C:\WINDOWS\Sysnative\cdd.dll 2014-09-12 20:20:42 06E5962471CFC5890F6B7AB2BF527250 950784 ----a-w- C:\WINDOWS\Sysnative\ReAgent.dll 2014-09-12 20:20:42 0633C74EFAAEF72FCC33B86CB86B2ED5 79360 ----a-w- C:\WINDOWS\Sysnative\w32tm.exe 2014-09-12 20:20:42 06304D50B5228BF1EB6E829A72A629DB 271872 ----a-w- C:\WINDOWS\Sysnative\spp.dll 2014-09-12 20:20:42 04D6FAB6BE09C83DF591D58E1FBADA59 274944 ----a-w- C:\WINDOWS\Sysnative\WsmWmiPl.dll 2014-09-12 20:18:33 B312E157D20E727F30EAB3A250441B6F 284672 ----a-w- C:\WINDOWS\Sysnative\WUDFHost.exe 2014-09-12 20:18:33 9CDC2059A23E3C9B57696178508777E7 99840 ----a-w- C:\WINDOWS\Sysnative\WUDFSvc.dll 2014-09-12 20:18:33 42D257559F97B30A94A027EB4555C62F 323584 ----a-w- C:\WINDOWS\Sysnative\DaOtpCredentialProvider.dll 2014-09-12 20:18:33 1A54E3DF2CBB8DBE8A17C87BB07E3A7E 209408 ----a-w- C:\WINDOWS\Sysnative\WUDFPlatform.dll 2014-09-12 20:18:33 08DCA300264238F9AE941302321F3D54 423768 ----a-w- C:\WINDOWS\Sysnative\hal.dll 2014-09-12 20:18:01 423D68307E57654A000AA484B009DD16 735232 ----a-w- C:\WINDOWS\Sysnative\adtschema.dll 2014-09-12 20:17:46 D178F55D53B9A10FFBDC134C95517846 28320 ----a-w- C:\WINDOWS\Sysnative\mrt100.dll 2014-09-12 20:17:46 A750229C96A406EE123F43916053F142 86688 ----a-w- C:\WINDOWS\Sysnative\mrt_map.dll 2014-09-12 20:16:18 CCC6D7250D01DA7E5499B0722CF6CAE3 1054208 ----a-w- C:\WINDOWS\Sysnative\twinui.appcore.dll 2014-09-12 20:16:18 9FA466A42109F408AC6C2848E851C38A 555736 ----a-w- C:\WINDOWS\Sysnative\twinapi.appcore.dll 2014-09-12 20:15:55 3D748E5558FD9A9F03182CB2330698DC 1018880 ----a-w- C:\WINDOWS\Sysnative\termsrv.dll 2014-09-12 20:15:11 FD08F8BA2437A85F500EFFE3FD3158A6 33792 ----a-w- C:\WINDOWS\Sysnative\iernonce.dll 2014-09-12 20:15:11 FCFAEDF0AA1A78A1875FDB798598408B 48640 ----a-w- C:\WINDOWS\Sysnative\ieetwproxystub.dll 2014-09-12 20:15:11 F519886D6075BFF0286793B3891E0675 727040 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2014-09-12 20:15:11 E86022F8AE3F9251459C744E175309F9 775168 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2014-09-12 20:15:11 E7852ACED4314BF475DE89C388247CAD 85504 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2014-09-12 20:15:11 E77092C38028EB0A5C461B3436E0A6D5 4096 ----a-w- C:\WINDOWS\Sysnative\ieetwcollectorres.dll 2014-09-12 20:15:11 E129D34089E70215B65EA611F802FA9A 111616 ----a-w- C:\WINDOWS\Sysnative\ieetwcollector.exe 2014-09-12 20:15:11 C1E2C16D58D76323800C3EE5E2C5095A 66048 ----a-w- C:\WINDOWS\Sysnative\iesetup.dll 2014-09-12 20:15:11 B2AA93A6FC3BB1EFBF25410DAA6BB1D2 359424 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2014-09-12 20:15:11 910AAE6634F7C809E93EE0341C850180 289280 ----a-w- C:\WINDOWS\Sysnative\dxtrans.dll 2014-09-12 20:15:11 7F88F6790401199B2C9C932FD91965F9 2793984 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2014-09-12 20:15:11 7F733479C6DC92B649B2B1298EE6D6B6 446464 ----a-w- C:\WINDOWS\Sysnative\dxtmsft.dll 2014-09-12 20:15:11 790FD40601502C5FE8213D4F335DA0BD 51200 ----a-w- C:\WINDOWS\Sysnative\jsproxy.dll 2014-09-12 20:15:11 550531ED60E7AD5CA02EDB0FAFA6280B 72704 ----a-w- C:\WINDOWS\Sysnative\JavaScriptCollectionAgent.dll 2014-09-12 20:15:11 5107C9AEF01636FF8A04E8F28CF7C316 5833728 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2014-09-12 20:15:11 4EBE88D6CC494B9BE3705B400562A587 2104832 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2014-09-12 20:15:11 4C56EBB6A31E8323D3CBBC476C81B998 1447424 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2014-09-12 20:15:11 47942CCF5A5CD57AE1BB44F17725A912 23591424 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2014-09-12 20:15:11 3EC77C4625862483BFCF4CEE1231EED7 13588480 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2014-09-12 20:15:11 343A53C71F8CE8DE172880F210BF50CB 83968 ----a-w- C:\WINDOWS\Sysnative\MshtmlDac.dll 2014-09-12 20:15:11 338415F2E9A188875B6E43B5269620B0 139264 ----a-w- C:\WINDOWS\Sysnative\ieUnatt.exe 2014-09-12 20:15:11 30C355249224173151874A7B86A8BB66 2310656 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2014-09-12 20:15:11 1FA34F04CB4529000AD818268F059D3E 707072 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2014-09-12 20:15:11 1D1D7F52EC84294859642A4309FE648E 195584 ----a-w- C:\WINDOWS\Sysnative\msrating.dll 2014-09-12 20:15:11 19FB8104F320C31BB0E34D5A926ECD1C 547328 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2014-09-12 20:15:11 0B52D185504457310D42B5413783D6DC 758272 ----a-w- C:\WINDOWS\Sysnative\jscript9diag.dll 2014-09-12 20:14:27 78FC2B2BA0E5E1C9249E3157D4EE9BC7 586240 ----a-w- C:\WINDOWS\Sysnative\qedit.dll 2014-09-12 20:14:23 201FE8AAD76FB1E7FB5A3B1337435DC1 2151424 ----a-w- C:\WINDOWS\Sysnative\msxml3.dll 2014-09-12 20:14:08 CC8E86B9C18BCA38D3C467CFD661A466 1975296 ----a-w- C:\WINDOWS\Sysnative\DWrite.dll 2014-09-12 20:14:08 3FA6DC6B29717E32E211C1FD821F2C75 1345536 ----a-w- C:\WINDOWS\Sysnative\FntCache.dll 2014-09-12 20:07:26 FD3638782572A8281BCF12520F6579F4 79872 ----a-w- C:\WINDOWS\Sysnative\WSReset.exe 2014-09-12 20:07:26 E9F333234A5641E2FEF2F5240BDD56B8 35328 ----a-w- C:\WINDOWS\Sysnative\wuapp.exe 2014-09-12 20:07:26 736046C9AFD66BA29BA61ACD582E7A7B 137728 ----a-w- C:\WINDOWS\Sysnative\wuwebv.dll 2014-09-12 20:07:26 68CB2B575F0C67BB14590D1471285287 201728 ----a-w- C:\WINDOWS\Sysnative\ubpm.dll 2014-09-12 20:07:26 3DF281C1553A6124DEF875C19D46AC0D 190976 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll 2014-09-12 20:06:59 87CEF71F9D5951C9379D2F956C07C37D 1336624 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2014-09-12 20:06:39 E7DE316FEEFC79327CFAD8F527979CC0 3118080 ----a-w- C:\WINDOWS\Sysnative\Wpc.dll 2014-09-12 20:06:39 E2F4125BFAC99244088324A1841C0B83 3048880 ----a-w- C:\WINDOWS\Sysnative\WpcMon.exe 2014-09-12 20:06:39 6BC31FB4E24A962C98801D3687A984C0 2861056 ----a-w- C:\WINDOWS\Sysnative\WpcWebSync.dll 2014-09-12 20:06:04 94C59DD02BC7EA0E421055B9946CA861 2724864 ----a-w- C:\WINDOWS\Sysnative\mshtml.tlb 2014-09-12 20:05:15 9ED0E72966FB08F7E6DB15E5519AF8D1 1379064 ----a-w- C:\WINDOWS\Sysnative\wmpmde.dll 2014-09-12 20:05:15 411DBFCD6ABAB75B6F7950677AEEFB7D 1403856 ----a-w- C:\WINDOWS\Sysnative\winmde.dll 2014-09-12 20:05:14 F587513213947A4C7EF47B660DAAFBC5 271872 ----a-w- C:\WINDOWS\Sysnative\rstrui.exe 2014-09-12 20:05:14 F4E351BB95D473CB55BB7C1A1FEB2798 467496 ----a-w- C:\WINDOWS\Sysnative\AudioSes.dll 2014-09-12 20:05:14 EEC46BC17F28C528AB7FAC20AFDF69E3 462336 ----a-w- C:\WINDOWS\Sysnative\XpsGdiConverter.dll 2014-09-12 20:05:14 EAE6ED6C5076CF765EB731B92A237149 955904 ----a-w- C:\WINDOWS\Sysnative\MFMediaEngine.dll 2014-09-12 20:05:14 E369C59F2C0852DDD090C07E0DDE0051 1436160 ----a-w- C:\WINDOWS\Sysnative\VSSVC.exe 2014-09-12 20:05:14 CB79B5D367376E7B49E2D95BFFB0BEEB 364640 ----a-w- C:\WINDOWS\Sysnative\AUDIOKSE.dll 2014-09-12 20:05:14 BF6FBC9D97A24FABB0AE8B878279CF0B 244880 ----a-w- C:\WINDOWS\Sysnative\audiodg.exe 2014-09-12 20:05:14 BAF51BE2DEB387BD99CAC4E3B7850FEC 250368 ----a-w- C:\WINDOWS\Sysnative\rdpencom.dll 2014-09-12 20:05:14 B6BD22DDEDDD8665080D664749ACFEF5 64512 ----a-w- C:\WINDOWS\Sysnative\tsgqec.dll 2014-09-12 20:05:14 B24960B79BDE7D5ED1EA638027F9E8F0 143872 ----a-w- C:\WINDOWS\Sysnative\BootMenuUX.dll 2014-09-12 20:05:14 AEDD44FDB8B521D443A07146F5CA3A53 7173120 ----a-w- C:\WINDOWS\Sysnative\Windows.Data.Pdf.dll 2014-09-12 20:05:14 AE2B9504C975B529D92D9E6603F6D33F 609448 ----a-w- C:\WINDOWS\Sysnative\mf.dll 2014-09-12 20:05:14 A1CD5194ACC156A852136B303F087260 491744 ----a-w- C:\WINDOWS\Sysnative\mfsvr.dll 2014-09-12 20:05:14 98A184F6EC43B178901FCD5D4E2EC43B 1222656 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.Streaming.dll 2014-09-12 20:05:14 9654DE19551093CD73874281E1573C94 135168 ----a-w- C:\WINDOWS\Sysnative\wscsvc.dll 2014-09-12 20:05:14 95471DDCB3B3FF70015FD9AA13404F44 281600 ----a-w- C:\WINDOWS\Sysnative\resutils.dll 2014-09-12 20:05:14 9465F8E72887AC6CCDD97F738A5AB6B6 70656 ----a-w- C:\WINDOWS\Sysnative\srclient.dll 2014-09-12 20:05:14 88ACBA95BB55B8226D52117462B76CD4 307304 ----a-w- C:\WINDOWS\Sysnative\wintrust.dll 2014-09-12 20:05:14 886767FD022213F7885416134E9082E5 201216 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2014-09-12 20:05:14 87CF824E47489DD972FB4FB9FC4EDD0A 324888 ----a-w- C:\WINDOWS\Sysnative\MFCaptureEngine.dll 2014-09-12 20:05:14 8596E6030C8DE66439DDF21C7F7B5006 40960 ----a-w- C:\WINDOWS\Sysnative\Windows.Shell.Search.UriHandler.dll 2014-09-12 20:05:14 850EBB87584484DC16F917E7B6F4A304 718336 ----a-w- C:\WINDOWS\Sysnative\swprv.dll 2014-09-12 20:05:14 82FE5F302FD7C7EF0E41465BB873EFC7 11264 ----a-w- C:\WINDOWS\Sysnative\wlanhlp.dll 2014-09-12 20:05:14 7FB9EC74ADFB2353B7782C3EF833F5B7 765408 ----a-w- C:\WINDOWS\Sysnative\mfmpeg2srcsnk.dll 2014-09-12 20:05:14 7B12172CCE581F76C9335D7A47E0AD50 130144 ----a-w- C:\WINDOWS\Sysnative\gpapi.dll 2014-09-12 20:05:14 79B134ECE836B406B212E28C24011538 834048 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2014-09-12 20:05:14 64B2A2630C964BF135A84A52FB2EEF9A 47616 ----a-w- C:\WINDOWS\Sysnative\tlscsp.dll 2014-09-12 20:05:14 626D19F1771E1AE72208AE9A8F3082F7 491520 ----a-w- C:\WINDOWS\Sysnative\GeofenceMonitorService.dll 2014-09-12 20:05:14 5EE916C3272A19B459717A8D2397B07A 55296 ----a-w- C:\WINDOWS\Sysnative\energyprov.dll 2014-09-12 20:05:14 414B81DE6CE46022ED43051C09EDB00B 467968 ----a-w- C:\WINDOWS\Sysnative\srcore.dll 2014-09-12 20:05:14 315502228EB37F36E86EF75CB1DA1D44 201920 ----a-w- C:\WINDOWS\Sysnative\MSVideoDSP.dll 2014-09-12 20:05:14 2A4177EE5446877BD24DD72504105603 191488 ----a-w- C:\WINDOWS\Sysnative\rpchttp.dll 2014-09-12 20:05:14 1697E09CDA4DD8741B8276F48A8514DE 32600 ----a-w- C:\WINDOWS\Sysnative\ploptin.dll 2014-09-12 20:05:14 0BDD786156C820F49EEF5D348B4ACFF4 335872 ----a-w- C:\WINDOWS\Sysnative\MDEServer.exe 2014-09-12 20:05:14 072A99F351C505A45C9FDA32E7324602 28408 ----a-w- C:\WINDOWS\Sysnative\mfpmp.exe 2014-09-12 20:05:14 067CB90C277DB4A737D5DEABA3055972 407016 ----a-w- C:\WINDOWS\Sysnative\services.exe 2014-09-12 20:05:14 01851563CB6FB986A4C0221C15AB6ADC 463256 ----a-w- C:\WINDOWS\Sysnative\AudioEng.dll 2014-09-12 19:58:39 E35AD6DAECED1213658E0976A16D6266 1166520 ----a-w- C:\WINDOWS\Sysnative\PresentationNative_v0300.dll 2014-09-12 19:58:39 DF290FC4E1116D92F34D8B6410AE544E 124112 ----a-w- C:\WINDOWS\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2014-09-12 19:55:48 8DBDB120A0E2CD494838BB61BAD3F0A7 22980 ----a-w- C:\WINDOWS\Sysnative\emptyregdb.dat 2014-09-12 19:32:02 FF1DD7D1A5FB7A1D9A00F88203FCECCD 63776 ----a-w- C:\WINDOWS\Sysnative\nvshext.dll 2014-09-12 19:32:02 E8ED3E3F7C9CD244CD704A5E036AC412 1064224 ----a-w- C:\WINDOWS\Sysnative\nv3dappshext.dll 2014-09-12 19:32:02 D941AC33FF6C91357CC0DB49821F203F 219424 ----a-w- C:\WINDOWS\Sysnative\nvmctray.dll 2014-09-12 19:32:02 D348FF384C1540104DF510559C236738 6669600 ----a-w- C:\WINDOWS\Sysnative\nvcpl.dll 2014-09-12 19:32:02 B9ACFCB1A564E07258E961A14A35763E 67072 ----a-w- C:\WINDOWS\Sysnative\nv3dappshextr.dll 2014-09-12 19:32:02 9358512875EF78AC11D27EF00A5E59A1 3489568 ----a-w- C:\WINDOWS\Sysnative\nvsvc64.dll 2014-09-12 19:32:02 6511C8C20922796753F1C41F3F6A3A88 2559776 ----a-w- C:\WINDOWS\Sysnative\nvsvcr.dll 2014-09-12 19:32:02 5CD98806151EE8633505CEF3A5AEF4E1 3426956 ----a-w- C:\WINDOWS\Sysnative\nvcoproc.bin 2014-09-12 19:32:02 415695F5A54E91E869EEBFEA261361A6 922912 ----a-w- C:\WINDOWS\Sysnative\nvvsvc.exe 2014-09-12 19:31:44 E446AA183E6344CF84A98730098D3D46 64000 ----a-w- C:\WINDOWS\Sysnative\OpenCL.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2014-09-24 12:27:19 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_WUDFUsbccidDriver_01_11_00.Wdf 2014-09-22 14:28:40 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\WINDOWS\Sysnative\drivers\mbam.sys 2014-09-18 10:06:51 0DEDC041DF594AEC2C3BD00417CFAF60 427360 ----a-w- C:\WINDOWS\Sysnative\drivers\aswsp.sys 2014-09-18 10:06:38 FF1E537A3632CBB9A0BF72B9FD0878D5 79184 ----a-w- C:\WINDOWS\Sysnative\drivers\aswMonFlt.sys 2014-09-18 10:06:38 D95E64416A4A3ED6986E0F474DA934BD 29208 ----a-w- C:\WINDOWS\Sysnative\drivers\aswHwid.sys 2014-09-18 10:06:38 B8FDEDE963B82CFD23B3A53A3084666D 1041168 ----a-w- C:\WINDOWS\Sysnative\drivers\aswSnx.sys 2014-09-18 10:06:38 A5757DE5F9C83AB40667A53D5126EA40 93568 ----a-w- C:\WINDOWS\Sysnative\drivers\aswRdr2.sys 2014-09-18 10:06:38 645D97385F3F284FB5604F9B970F4D24 65776 ----a-w- C:\WINDOWS\Sysnative\drivers\aswRvrt.sys 2014-09-18 10:06:38 48DED912CDE54FC0923B9858512366E1 92008 ----a-w- C:\WINDOWS\Sysnative\drivers\aswStm.sys 2014-09-18 10:06:38 471A311745848B80339436688A8286E6 224896 ----a-w- C:\WINDOWS\Sysnative\drivers\aswVmm.sys 2014-09-15 15:59:47 6416E79A58A8FCC33A447A4DDDD3BF04 412160 ----a-w- C:\WINDOWS\Sysnative\drivers\srv.sys 2014-09-15 15:59:46 77E1D08EF3BFB923F2EDC3FC8089E08E 475968 ----a-w- C:\WINDOWS\Sysnative\drivers\netio.sys 2014-09-15 15:59:46 5BED3AB69797C8786EF70AEA8C33748B 674816 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2014-09-15 15:59:46 038C77D577900EE39410662478BB0D50 2009920 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2014-09-15 15:59:44 FF78D053A05E5A394F4E3C1816CC65A8 143680 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbccgp.sys 2014-09-15 15:59:44 C910E5D18958914A66F0E45689D0B40A 206848 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2014-09-15 15:59:44 240C5C3793206725AA05665851E8C214 412992 -c--a-w- C:\WINDOWS\Sysnative\drivers\spaceport.sys 2014-09-15 15:59:43 64CA2B4A49A8EAF495E435623ECCE7DB 310080 -c--a-w- C:\WINDOWS\Sysnative\drivers\volsnap.sys 2014-09-15 15:59:42 FEF0BC107812B36849741C3211BA6B60 419648 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbhub.sys 2014-09-15 15:59:42 D047CD668E6277FD80F0C613946F034C 246272 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2014-09-15 15:59:42 26ACA481FAFEC59FE311D719E3027BBA 446976 ----a-w- C:\WINDOWS\Sysnative\drivers\nwifi.sys 2014-09-15 15:59:40 E4B4BE2D7750849C07589DA0B0AABA01 1118040 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2014-09-15 15:59:40 D4B7ED39C7900384D9E5C1283F1E7926 76800 -c--a-w- C:\WINDOWS\Sysnative\drivers\hdaudbus.sys 2014-09-15 15:59:40 B1AA3B19A2E596A59224F893E01A5A75 126464 ----a-w- C:\WINDOWS\Sysnative\drivers\NdisImPlatform.sys 2014-09-15 15:59:39 9C096BF5E10CA8BFA56F32522A89FAF1 79872 ----a-w- C:\WINDOWS\Sysnative\drivers\IPMIDrv.sys 2014-09-15 15:59:39 91ED124E261EA8FAA1C0FFDF2A71B0C4 280384 -c--a-w- C:\WINDOWS\Sysnative\drivers\pci.sys 2014-09-15 15:59:39 1DD05F4857C2188744B9E864658949DD 295424 ----a-w- C:\WINDOWS\Sysnative\drivers\ks.sys 2014-09-15 15:59:32 25BB93167DEF270188072603F92A1EF5 118272 -c--a-w- C:\WINDOWS\Sysnative\drivers\bthpan.sys 2014-09-14 16:27:13 E0927EFA25D473367C3341B9F5969779 115712 ----a-w- C:\WINDOWS\Sysnative\drivers\bridge.sys 2014-09-14 16:27:12 97B9076611291AE4C4C107BC915BD026 1200640 -c--a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2014-09-14 16:27:12 87F3713E620F62D243A82B3CB66CBDDE 2498880 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2014-09-14 16:27:12 65392F3F3F65E4C6CC82A0F4F8A0B051 468288 -c--a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2014-09-14 16:27:12 329FEB41BBE82FBBD9BD69547BA1CB82 428864 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2014-09-14 16:26:17 8DF1254093B5C354CE725EB6B9B0DE19 146752 ----a-w- C:\WINDOWS\Sysnative\drivers\msgpioclx.sys 2014-09-14 16:25:48 7A1A3F213CDB3363D179D5014272025D 402432 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2014-09-14 16:25:48 674A4702E4E144E8710ED1A2EC6DD049 96768 ----a-w- C:\WINDOWS\Sysnative\drivers\agilevpn.sys 2014-09-14 16:25:48 65ED7B9CFEA893DF7748D5FF692690DE 38912 ----a-w- C:\WINDOWS\Sysnative\drivers\vwifimp.sys 2014-09-14 16:25:48 35BF5C5F5E3C9902C98978C7640574DA 71680 ----a-w- C:\WINDOWS\Sysnative\drivers\vwififlt.sys 2014-09-12 20:25:58 313DCE665B57000B18CB26C6B6A10DFE 1557848 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2014-09-12 20:20:43 7FC5667DF73D4B04AA457CC3A4180E09 157016 ----a-w- C:\WINDOWS\Sysnative\drivers\wof.sys 2014-09-12 20:20:42 BFBE1C5F57FE7A885673A1962D5532B7 136024 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2014-09-12 20:20:42 ABB7341766902F5AAB45E15F34D19E15 111616 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidclass.sys 2014-09-12 20:20:42 A03F362C5557E238CBFA914689C77248 134144 ----a-w- C:\WINDOWS\Sysnative\drivers\dfsc.sys 2014-09-12 20:20:42 8DB8EAB9D0C6A5DF0BDCADEA239220B4 33280 -c--a-w- C:\WINDOWS\Sysnative\drivers\hidusb.sys 2014-09-12 20:20:42 41CF802064F72E55F50CA0A221FD36D4 49152 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpipreg.sys 2014-09-12 20:20:42 4030CB06B8D963A45CED9E60C9F2A11E 379224 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys 2014-09-12 20:20:42 3E28B99198B514DFEB152EACF913025E 283648 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys 2014-09-12 20:20:42 1D55DADC22D21883A2F80297F5A5AE48 140288 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxdav.sys 2014-09-12 20:20:42 179A41249055D5F039F1B6703F3B6D2B 376152 ----a-w- C:\WINDOWS\Sysnative\drivers\clfs.sys 2014-09-12 20:18:33 FE0ADF5028EB8C1339B66B3AEDE3FEF9 440664 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbport.sys 2014-09-12 20:18:33 D79920BE4E6683D3AB50F71457A4F6C6 27480 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbd.sys 2014-09-12 20:18:33 D537815E450A149752C15868392AD1F3 110592 ----a-w- C:\WINDOWS\Sysnative\drivers\WUDFPf.sys 2014-09-12 20:18:33 7CCBBCEE408A5DBE3FE47297DB5A6CFC 227840 ----a-w- C:\WINDOWS\Sysnative\drivers\WUDFRd.sys 2014-09-12 20:18:33 48BA326A3DBA5B5BEB5F2777F4618696 89944 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbehci.sys 2014-09-12 20:18:33 064260B3A5868AC894A4943543BC7AB7 37376 -c--a-w- C:\WINDOWS\Sysnative\drivers\usbuhci.sys 2014-09-12 20:18:01 1CD3A907D64D08F49208DA00B69BF35E 565576 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2014-09-12 20:15:51 374E27295F0A9DCAA8FC96370F9BEEA5 563200 ----a-w- C:\WINDOWS\Sysnative\drivers\afd.sys 2014-09-12 20:06:39 182561A14F2E93E81E66FE3700D17A5A 55328 ----a-w- C:\WINDOWS\Sysnative\drivers\wpcfltr.sys 2014-09-12 20:05:53 F5D4FA3E1F4879C361FFF3855259D2C2 35856 ----a-w- C:\WINDOWS\Sysnative\drivers\WdBoot.sys 2014-09-12 20:05:53 6CC1BB8F6851A262E2E824F0E92D5EEF 123224 ----a-w- C:\WINDOWS\Sysnative\drivers\WdNisDrv.sys 2014-09-12 20:05:53 019CC610AD95FF47EAD7C08B7A683B96 257880 ----a-w- C:\WINDOWS\Sysnative\drivers\WdFilter.sys 2014-09-12 20:05:14 F88CC88F4A6D8476F1664E805CA18CC2 180056 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2014-09-12 20:05:14 F152D55E497E12256290C43B31C7D0CE 589656 ----a-w- C:\WINDOWS\Sysnative\drivers\fvevol.sys 2014-09-12 20:05:14 D90AB68D0FAC9F357F663670FDBB511E 275800 -c--a-w- C:\WINDOWS\Sysnative\drivers\msiscsi.sys 2014-09-12 20:05:14 CADCE0D6C30427F70A4BFA426256F68C 337240 ----a-w- C:\WINDOWS\Sysnative\drivers\Classpnp.sys 2014-09-12 20:05:14 6592D192E2823C043EDBC010E7774053 360792 ----a-w- C:\WINDOWS\Sysnative\drivers\fltMgr.sys 2014-09-12 20:05:14 4C1E71E37B56C768900B1FCF81205027 372568 ----a-w- C:\WINDOWS\Sysnative\drivers\storport.sys 2014-09-12 19:33:37 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_btmhsf_01011.Wdf 2014-09-12 19:33:25 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_SynTP_01009.Wdf 2014-09-12 19:32:46 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-09-12 19:32:45 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-09-12 17:26:08 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_LocationProvider_01_11_00.Wdf ====== C:\WINDOWS\Tasks ====== 2014-09-18 10:06:48 701EE4304D8BCFF623E629303BE991A4 4182 ----a-w- C:\WINDOWS\Sysnative\Tasks\avast! Emergency Update 2014-09-15 15:52:33 FDDB22F064073944CAFCE4077AB02BC1 3830 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2014-09-15 15:52:33 EC2858CB6634F7695313D59966466623 4066 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2014-09-15 15:52:33 D692BAD7765281C275D9E9FA0F0A7B36 1094 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-15 15:52:32 2CD332EC864F89E09C872F73F4605A15 1090 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-15 08:12:39 2A9523F933B8CB6A77436F1ED0507108 3572 ----a-w- C:\WINDOWS\Sysnative\Tasks\CreateChoiceProcessTask 2014-09-13 16:44:39 DDF7C8B2DE0B73DE01EE7398CEE93838 2434 ----a-w- C:\WINDOWS\Sysnative\Tasks\Uninstaller_SkipUac_Administrator 2014-09-13 16:44:39 51049A6A28FC714098A625FB08AE55FE 318 ----a-w- C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2014-09-13 16:44:27 BF328770A531BED7DC42674369B02D3C 282 ----a-w- C:\WINDOWS\Tasks\ASC7_SkipUac_Ivan Hubrecht.job 2014-09-13 16:44:27 58C51FDC4472C71997015F2419B048F2 2398 ----a-w- C:\WINDOWS\Sysnative\Tasks\ASC7_SkipUac_Ivan Hubrecht 2014-09-12 21:30:20 C7CAC331DC8CA1D0C34BF3487631184E 4002 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{0FE61453-9FFA-4A03-99DF-F358D5E2BC27} 2014-09-12 19:33:25 FEBA6B9B781014647A35BD08A2C22B39 264 ----a-w- C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job 2014-09-12 17:22:55 404F6FBC47BBE3E1BB9957A8A1D83252 3596 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3620971024-2762982169-941777991-1002 2014-09-12 14:51:08 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\WPD 2014-09-12 14:39:03 16E37D8BDB21F222E5F22F48100C12EB 2324 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3620971024-2762982169-941777991-500 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2014-09-25 07:50:47 -------- d-----w- C:\Program Files\Disk Check 2014-09-24 12:29:48 -------- d-----w- C:\Program Files\DIFX 2014-09-24 08:05:20 -------- d-----w- C:\Program Files\trend micro 2014-09-21 15:08:23 -------- d--h--w- C:\Program Files\CanonBJ 2014-09-19 14:13:28 -------- d-----w- C:\Program Files\Canon 2014-09-19 14:12:47 -------- d-----w- C:\Program Files\Common Files\CANON 2014-09-15 16:22:57 -------- d-----w- C:\Program Files\paint.net 2014-09-13 07:25:52 -------- d-----w- C:\Program Files\Paragon Software 2014-09-12 19:59:12 -------- d-----w- C:\Program Files\Reference Assemblies 2014-09-12 19:59:12 -------- d-----w- C:\Program Files\MSBuild 2014-09-12 19:33:06 -------- d-----w- C:\Program Files\Realtek 2014-09-12 19:32:58 -------- d-----w- C:\Program Files\Intel 2014-09-12 19:32:45 -------- d-----w- C:\Program Files\Synaptics 2014-09-12 19:31:00 -------- d-----w- C:\Program Files\NVIDIA Corporation 2014-09-12 16:48:47 -------- d-----w- C:\Program Files\Microsoft Office 15 ======= C:\PROGRA~2 ===== 2014-09-24 14:44:42 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe 2014-09-24 14:44:42 -------- d-----w- C:\PROGRA~2\Adobe 2014-09-24 12:41:06 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2014-09-24 12:40:59 -------- d-----w- C:\PROGRA~2\Java 2014-09-24 12:29:36 -------- d-----w- C:\PROGRA~2\Belgium Identity Card 2014-09-24 11:55:04 -------- d-----w- C:\PROGRA~2\AllMyNotes Organizer 2014-09-22 16:40:52 -------- d--h--w- C:\PROGRA~2\Uninstall Information 2014-09-22 09:17:17 -------- d-----w- C:\PROGRA~2\Tweaking.com 2014-09-19 14:13:35 -------- d-----w- C:\PROGRA~2\Canon 2014-09-17 08:53:54 -------- d-----w- C:\PROGRA~2\AOMEI DDM Pro Edition 2014-09-16 09:44:13 -------- d-----w- C:\PROGRA~2\Chami 2014-09-15 15:52:31 -------- d-----w- C:\PROGRA~2\Google 2014-09-14 10:10:43 -------- d-----w- C:\PROGRA~2\SystemRequirementsLab 2014-09-13 16:44:18 -------- d-----w- C:\PROGRA~2\IObit 2014-09-12 21:31:19 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER 2014-09-12 19:59:13 -------- d-----w- C:\PROGRA~2\Reference Assemblies 2014-09-12 19:59:13 -------- d-----w- C:\PROGRA~2\MSBuild 2014-09-12 19:33:03 -------- d-----w- C:\PROGRA~2\Intel 2014-09-12 19:32:53 -------- d-----w- C:\PROGRA~2\COMMON~1\Intel 2014-09-12 19:32:15 -------- d-----w- C:\PROGRA~2\NVIDIA Corporation 2014-09-12 16:53:31 -------- d-----w- C:\PROGRA~2\Microsoft SkyDrive ======= C: ===== 2014-09-12 15:37:39 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Recovery.txt ====== C:\Users\Ivan Hubrecht\AppData\Roaming ====== 2014-09-25 07:59:30 C9EFE349BF5A0935D39136895D3BF7C9 775488 ----a-w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2014-09-25 07:43:54 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Diagnostics 2014-09-24 14:45:26 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Locallow\Adobe 2014-09-24 14:44:10 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Adobe 2014-09-24 12:40:07 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Locallow\Sun 2014-09-24 11:55:04 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AllMyNotes Organizer 2014-09-24 10:55:21 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\ElevatedDiagnostics 2014-09-20 10:42:58 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Locallow\Temp 2014-09-19 14:45:36 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Canon Easy-PhotoPrint EX 2014-09-19 14:43:03 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Canon 2014-09-18 10:19:41 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\DropboxMaster 2014-09-18 10:19:36 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-09-18 10:17:12 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Dropbox 2014-09-18 07:42:04 -------- d-----w- C:\Users\Default\AppData\Roaming\IObit 2014-09-18 07:42:04 -------- d-----w- C:\Users\Default User\AppData\Roaming\IObit 2014-09-15 16:22:18 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\paint.net 2014-09-15 15:52:27 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Google 2014-09-15 15:51:50 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Deployment 2014-09-15 15:51:50 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Apps 2014-09-14 09:15:03 -------- d-s---w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Locallow\Microsoft 2014-09-14 09:05:40 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Ashampoo 2014-09-14 09:05:31 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Ashampoo 2014-09-14 08:55:19 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Ashampoo Video Styler 2014-09-14 08:54:04 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming\IObit 2014-09-13 16:45:52 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Browser Extensions 2014-09-13 16:45:43 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\ProductData 2014-09-13 16:44:39 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Apple Computer 2014-09-13 16:44:29 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Locallow\IObit 2014-09-13 16:43:34 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\IObit 2014-09-13 16:43:29 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Programs 2014-09-13 08:11:00 -------- d-sh--w- C:\Users\Ivan Hubrecht\AppData\Locallow\EmieUserList 2014-09-13 07:23:48 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Downloaded Installations 2014-09-12 21:30:20 -------- d-sh--w- C:\Users\Ivan Hubrecht\AppData\Local\EmieUserList 2014-09-12 21:30:20 -------- d-sh--w- C:\Users\Ivan Hubrecht\AppData\Local\EmieSiteList 2014-09-12 21:30:16 -------- d-sh--w- C:\Users\Ivan Hubrecht\AppData\Locallow\EmieSiteList 2014-09-12 20:37:51 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Identities 2014-09-12 19:56:38 -------- d-s---w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Locallow\Microsoft 2014-09-12 19:55:51 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Adobe 2014-09-12 19:51:32 -------- d-s---w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Microsoft 2014-09-12 19:51:23 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Intel 2014-09-12 19:51:17 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\MediaServer 2014-09-12 19:41:10 -------- d-s---w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft 2014-09-12 19:41:10 -------- d-----w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-12 19:41:10 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Temp 2014-09-12 19:41:10 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Microsoft 2014-09-12 19:41:10 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-09-12 19:41:10 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-12 19:41:10 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-09-12 19:41:09 -------- d-s---w- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft 2014-09-12 19:41:09 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-12 19:41:09 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Temp 2014-09-12 19:41:09 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Microsoft 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-09-12 19:31:52 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft 2014-09-12 17:26:09 -------- d-s---w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2014-09-12 16:34:22 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Intel_Corporation 2014-09-12 14:55:00 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2014-09-12 14:53:12 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2014-09-12 14:52:41 -------- d-s---w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Locallow\Microsoft 2014-09-12 14:52:23 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Intel Corporation 2014-09-12 14:52:17 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\CyberLink 2014-09-12 14:51:39 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Power2Go8 2014-09-12 14:50:35 -------- d-----r- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-09-12 14:50:35 -------- d-----r- C:\Users\Ivan Hubrecht\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-09-12 14:50:31 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Adobe 2014-09-12 14:48:52 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\VirtualStore 2014-09-12 14:48:45 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Local\Packages 2014-09-12 14:48:43 -------- d-s---w- C:\Users\Ivan Hubrecht\AppData\Locallow\Microsoft 2014-09-12 14:48:39 -------- d-----w- C:\Users\Ivan Hubrecht\AppData\Roaming\Intel ====== C:\Users\Ivan Hubrecht ====== 2014-09-25 08:14:56 63C3C419200755087C7496933C298F8F 5162600 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Repair-tool.exe 2014-09-25 08:13:28 63BF57B3214A67EB8DC9056843FF180F 60 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RestoreRemoteProcedureCallRPCWindows8 (1).bat 2014-09-25 07:50:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disk Check 2014-09-25 07:50:04 C72B658CEB5CAF8F9B95E3C44F0932DA 1451504 ----a-w- C:\Users\Ivan Hubrecht\Downloads\DiskCheckSetup (1).exe 2014-09-24 15:52:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP540 series 2014-09-24 15:50:33 6EA0EFDB3B3C27D0146E77AE712616EF 26502544 ----a-w- C:\Users\Ivan Hubrecht\Downloads\md64-win-mp540-1_04-ea24 (1).exe 2014-09-24 14:44:28 -------- d-----w- C:\ProgramData\Adobe 2014-09-24 12:41:07 -------- d-----w- C:\ProgramData\Sun 2014-09-24 12:41:04 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-09-24 12:39:37 9473F655CAE1A13C311C3FF1134D79DC 918440 ----a-w- C:\Users\Ivan Hubrecht\Downloads\chromeinstall-7u67.exe 2014-09-24 12:29:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID 2014-09-24 12:28:15 B2E88A6033AFFFB634872015D329A2A2 45870584 ----a-w- C:\Users\Ivan Hubrecht\Downloads\eID-QuickInstaller-407-7453-signed_tcm227-246722.exe 2014-09-24 11:55:35 D6713E6D0BE48AE58FA748B84D55E837 2877248 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Install_AllMyNotes_2_81_Free (1).exe 2014-09-24 11:54:34 D6713E6D0BE48AE58FA748B84D55E837 2877248 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Install_AllMyNotes_2_81_Free.exe 2014-09-24 10:18:14 491D1C5CE5FF9323BE55D5C73F80099E 6431728 ----a-w- C:\Users\Ivan Hubrecht\Downloads\OSGS14-WindowsUpgradeAssistant-32bitand64bit-ClientSKU-4141411.exe 2014-09-24 08:04:50 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RSITx64.exe 2014-09-23 09:34:26 EABC89C8A3C3FE5C1629ECA0EDBB4A0A 994421 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Tweaking.com-RepairPrintSpooler.exe 2014-09-23 09:25:55 0A9F845FEB65E54937CCCADF412D7E2E 772896 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Mats_Run.printing.exe 2014-09-23 09:21:30 8C7C8A8089FC8B84A502840C795BE046 1880096 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Print-Spooler-Repair-Tool.exe 2014-09-23 07:40:32 C72B658CEB5CAF8F9B95E3C44F0932DA 1451504 ----a-w- C:\Users\Ivan Hubrecht\Downloads\DiskCheckSetup.exe 2014-09-22 09:17:19 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2014-09-22 08:50:50 39C80615F4ECFC3FC7DF6C8B8D321135 9700040 ----a-w- C:\Users\Ivan Hubrecht\Downloads\tweaking.com_windows_repair_aio_setup.exe 2014-09-21 15:42:28 63BF57B3214A67EB8DC9056843FF180F 60 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RestoreRemoteProcedureCallRPCWindows8.bat 2014-09-21 15:08:51 -------- d--h--w- C:\ProgramData\CanonBJ 2014-09-21 15:03:43 6EA0EFDB3B3C27D0146E77AE712616EF 26502544 ----a-w- C:\Users\Ivan Hubrecht\Downloads\md64-win-mp540-1_04-ea24.exe 2014-09-21 14:44:21 955B519235602DD43D20B0312E9A3AC2 4901352 ----a-w- C:\Users\Ivan Hubrecht\Downloads\ccsetup417 (1).exe 2014-09-21 14:44:16 955B519235602DD43D20B0312E9A3AC2 4901352 ----a-w- C:\Users\Ivan Hubrecht\Downloads\ccsetup417.exe 2014-09-19 14:29:48 663F650729072ED3A1F2C6184652CB1C 7589616 ----a-w- C:\Users\Ivan Hubrecht\Downloads\PrinterSpoolerFixWizard3.exe 2014-09-19 14:13:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2014-09-18 10:07:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast 2014-09-17 16:15:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverTuner 2014-09-17 08:53:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Dynamic Disk Manager 2014-09-16 15:46:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2014-09-16 09:45:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTML-Kit 2014-09-15 15:53:06 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-09-14 10:13:42 -------- d-----w- C:\Users\Default.migrated\Roaming 2014-09-13 16:44:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2014-09-13 16:44:27 -------- d-----w- C:\ProgramData\IObit 2014-09-13 16:44:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7 2014-09-13 07:26:58 -------- d-----w- C:\ProgramData\newrestore 2014-09-13 07:26:32 -------- d-----w- C:\ProgramData\explauncher 2014-09-13 07:26:31 -------- d-----w- C:\ProgramData\launcher 2014-09-13 07:26:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Backup & Recovery™ 2014 Free 2014-09-12 20:39:22 -------- d---a-r- C:\Users\Ivan Hubrecht\OneDrive 2014-09-12 20:37:53 -------- d-sh--w- C:\Users\Ivan Hubrecht\IntelGraphicsProfiles 2014-09-12 20:37:25 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Ivan Hubrecht\ntuser.ini 2014-09-12 19:47:55 -------- d-----w- C:\Users\Default\Roaming 2014-09-12 19:41:10 -------- d--h--w- C:\Users\UpdatusUser\AppData 2014-09-12 19:41:10 -------- d-----r- C:\Users\UpdatusUser\Favorites 2014-09-12 19:41:10 -------- d-----r- C:\Users\UpdatusUser\Desktop 2014-09-12 19:41:09 -------- d--h--w- C:\Users\Ivan Hubrecht\AppData 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\Favorites 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\Documents 2014-09-12 19:41:09 -------- d-----r- C:\Users\Ivan Hubrecht\Desktop 2014-09-12 19:31:08 -------- d-----w- C:\ProgramData\NVIDIA Corporation 2014-09-12 16:53:31 -------- d-----r- C:\Users\Ivan Hubrecht\SkyDrive 2014-09-12 16:53:25 -------- d-----w- C:\ProgramData\Microsoft SkyDrive 2014-09-12 16:49:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-09-12 14:50:35 -------- d-----r- C:\Users\Ivan Hubrecht\Searches 2014-09-12 14:50:35 -------- d-----r- C:\Users\Ivan Hubrecht\Contacts 2014-09-12 14:48:37 -------- d-----w- C:\Users\Ivan Hubrecht\Roaming 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Videos 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Saved Games 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Pictures 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Music 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Links 2014-09-12 14:48:37 -------- d-----r- C:\Users\Ivan Hubrecht\Downloads 2014-09-12 14:42:26 -------- d--h--r- C:\Users\Public\AccountPictures ====== C: exe-files == 2014-09-25 14:57:20 6CF617A12FB9B7169B6C69D328F63389 39975504 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.124\37.0.2062.124_chrome_installer.exe 2014-09-25 08:14:56 63C3C419200755087C7496933C298F8F 5162600 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Repair-tool.exe 2014-09-25 07:57:17 7CA4092A339EA30DE8FF06D3FF79D6ED 749648 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.124\37.0.2062.124_37.0.2062.120_chrome_updater.exe 2014-09-25 07:50:47 C669B9BB5983364AEDB38030AA27B2AF 988544 ----a-w- C:\Program Files\Disk Check\Disk Check.exe 2014-09-25 07:50:47 8C49CE6E548531CEC254B51CC264F54C 1249152 ----a-w- C:\Program Files\Disk Check\unins000.exe 2014-09-25 07:50:04 C72B658CEB5CAF8F9B95E3C44F0932DA 1451504 ----a-w- C:\Users\Ivan Hubrecht\Downloads\DiskCheckSetup (1).exe 2014-09-25 07:39:08 F9E4B109A9D327D1239E491E29578A2E 550584 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOSQM.EXE 2014-09-25 07:39:08 E8E3518A752004AF04B9BE7BCB1B8420 207008 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOXMLED.EXE 2014-09-25 07:39:08 D40360ABC2BB38EE202F145CAF204E99 614568 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOICONS.EXE 2014-09-25 07:39:03 F79A490D9614CA9B8FC23409AF817EBA 5624016 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CMigrate.exe 2014-09-25 07:39:03 D741359CAD4ED3D90BE624E48B60C47B 217768 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\MSOXMLED.EXE 2014-09-25 07:39:03 AD6502512DAB0512295F9051514343BB 474336 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DWTRIG20.EXE 2014-09-25 07:39:03 13ACDC68FAD1BE0E6E44A47E0EB5C475 842440 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DW20.EXE 2014-09-25 07:39:02 A8DC5CC29AD3B5608C4028A2FC64B8FD 3015336 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\WORDICON.EXE 2014-09-25 07:39:02 7BA52235E256DC309D5E808B6C358FDE 3685544 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\XLICONS.EXE 2014-09-25 07:39:02 167E713975F87CFDC5F05D5ED08FBD85 7651536 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CMigrate.exe 2014-09-25 07:39:00 A26A02BE800686B88F69B76BE5EC7326 3509416 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\PPTICO.EXE 2014-09-25 07:39:00 2ECE1C04DD7280A82A0EC1A259016B54 874160 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\protocolhandler.exe 2014-09-25 07:38:59 4BCE37BACBAB333187BB6E0F0B9F4C43 9597096 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\PDFREFLOW.EXE 2014-09-25 07:38:51 BAEA09EE9DEFB8A3935DB5EE0CF4A0F0 3748008 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ACCICONS.EXE 2014-09-25 07:38:49 96EA29F53F0475C4189008DFA22A89C3 6077128 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\OneDriveSetup.exe 2014-09-25 07:38:34 1FA58353814828F9B3D31CB01BFFCE6D 81648 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE 2014-09-25 07:38:32 B9E8AE87F0DEDB2E6C164E4BFEA02E7C 39576 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\AppSharingHookController64.exe 2014-09-25 07:38:32 A789DDA5192980D81DBB01D55811DEA9 49848 ----a-w- C:\Program Files\Microsoft Office 15\root\flattener\Flattener.exe 2014-09-25 07:38:20 1A46825F604C22732FC882D06A70D473 150704 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\FLTLDR.EXE 2014-09-25 07:38:17 54571FBCF53B33B8AD89C86FDFDF5CFA 449216 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOSYNC.EXE 2014-09-25 07:38:17 4C3B97A5E937EA214096F4DF33D34FE3 700064 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSQRY32.EXE 2014-09-25 07:38:15 F5D36DD4F4954883E1C3FF45FD2CA245 21931672 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\excelcnv.exe 2014-09-25 07:38:15 E2CD290381C86BE22C0628FBD17FE0C8 517360 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\IEContentService.exe 2014-09-25 07:38:15 BCDBD0DCD1A079CE468DA0E881F3C767 4522688 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\GRAPH.EXE 2014-09-25 07:38:14 8F2576BF4A07EDC6EB475ED0D9AF6A15 569584 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ORGCHART.EXE 2014-09-25 07:38:14 3A2C7CE18457029CC91BDE20281FA9CD 1026728 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\misc.exe 2014-09-25 07:38:09 5EFF8107B969FFED8FD43CF784E3041A 1090768 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe 2014-09-25 07:38:08 F74059079C0B2765D65F441A088A27EE 87240 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\NAMECONTROLSERVER.EXE 2014-09-25 07:38:08 D679931089526AF06B9D15A8A44EB53F 228544 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\CLVIEW.EXE 2014-09-25 07:38:08 89FCD7CB454386CEDEB5DFF98637830A 50392 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE 2014-09-25 07:38:08 4DEEDF0559E2A5E8A3B32220975A490B 497848 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOUC.EXE 2014-09-25 07:38:08 1B9CE92B611FFB9304405248D541A837 480984 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SELFCERT.EXE 2014-09-25 07:38:08 182315495531E8395EDA537739C87460 72384 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOHTMED.EXE 2014-09-25 07:38:07 98D3A7B6EC8360577B8E5FBD413FA713 153248 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\CNFNOT32.EXE 2014-09-25 07:38:07 866F5B7DE44901934A3F020C6FEB9E97 40680 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SCANPST.EXE 2014-09-25 07:38:06 4883FFDFC482CE29D50E34750C592C22 528576 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\VPREVIEW.EXE 2014-09-25 07:38:05 1A85EEDAB6D5F89864FE1A9F5F11457F 1846960 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\POWERPNT.EXE 2014-09-25 07:38:03 4E28F3BDCF66DEB0C3E9E2D6A8BBFBEE 18945704 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE 2014-09-25 07:38:01 03DED553CB47ECF6C87A9DF0A17391EA 1762976 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE 2014-09-25 07:37:59 18605ECCA0701DBC114739A8E58E0626 15518888 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSACCESS.EXE 2014-09-25 07:37:55 8FF1A393FD0CF4E888C4EBC73AF4F252 590536 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\Integrator.exe 2014-09-25 07:37:54 C419E73483ADA429BF4693D77CE49279 145056 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVDllSurrogate64.exe 2014-09-25 07:37:54 B950312617FB5EE9DD30C6A9B3B6EADE 311552 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVLP.exe 2014-09-25 07:37:54 33DFE1A4E0072E6815D653AABC0A8444 124072 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVDllSurrogate32.exe 2014-09-25 07:37:49 CA7EB396E5D8618855A87C1E51072E7B 1923224 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE 2014-09-25 07:37:46 3B3EBE7EE88DC7C3B35E6672F764EC37 10760352 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSPUB.EXE 2014-09-25 07:37:42 18B22B1B507B4ED6F4A0DBF68198D394 25705120 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE 2014-09-25 07:37:21 80C830207A104F6C1BDE91D0D86D8685 195240 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE 2014-09-25 07:37:05 1F081FC968D71544B5692178607FD682 991904 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\FIRSTRUN.EXE 2014-09-25 07:37:02 F9362E1DBABA93E104B0ECDA6D5C7012 90280 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\perfboost.exe 2014-09-25 07:37:02 C5BF5684F342C194120B4587E125CC00 205472 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\AppVShNotify.exe 2014-09-25 07:37:02 8D8D475017ACA6960DBC150C1391B7B9 249000 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\mavinject32.exe 2014-09-25 07:36:59 EDAD3D6932E4CB7D92F19FEE0238C29D 2428088 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe 2014-09-25 07:36:59 C5B220E9B4552D7C282CF605EAC5576E 867520 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\officec2rclient.exe 2014-09-25 07:36:58 55E59C8A534CAA8C86E5FE4B048E5777 849120 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe 2014-09-25 07:36:58 19CE32F5C6F9437C8402E04E4B938C7E 1460896 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\appvcleaner.exe 2014-09-24 15:50:33 6EA0EFDB3B3C27D0146E77AE712616EF 26502544 ----a-w- C:\Users\Ivan Hubrecht\Downloads\md64-win-mp540-1_04-ea24 (1).exe 2014-09-24 12:41:05 07EF2978A5BC36720378F95566697FD8 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe 2014-09-24 12:41:04 3BDEB17FE6390BFF1BF3A2D964DE8E48 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe 2014-09-24 12:41:04 11FD45A41DF45298686ED39062AABE2A 175528 ----a-w- C:\Windows\SysWOW64\java.exe 2014-09-24 12:41:01 F67D9621616CB31217A497FEDE4913F5 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\pack200.exe 2014-09-24 12:41:01 CEEFA72555A8FAD52C29BA17AE3E6DEF 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\servertool.exe 2014-09-24 12:41:01 A788E5ED0454307CBCFB95CC33E5F717 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\orbd.exe 2014-09-24 12:41:01 A6B7A388547C4CDF4D8F2AF55D79AC85 145832 ----a-w- C:\Program Files (x86)\Java\jre7\bin\unpack200.exe 2014-09-24 12:41:01 8B986C008892DB58928BC72483ADF7B9 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\tnameserv.exe 2014-09-24 12:41:01 7BDCC29DDFBB355761A018A74D4A1E8C 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmiregistry.exe 2014-09-24 12:41:01 7A17013ABD895DFBD61A5AF9996D0E5E 50088 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe 2014-09-24 12:41:01 48442596BFEB26E56898A0E4D2596A95 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\policytool.exe 2014-09-24 12:41:01 34CEC403ED594B55D55DED61A3A53DAF 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmid.exe 2014-09-24 12:41:00 F69D8BDC202973592D710BC913D01919 48040 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jabswitch.exe 2014-09-24 12:41:00 EC4C47AADE6606AFCDEAB28E29654ECE 75688 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jp2launcher.exe 2014-09-24 12:41:00 C8883F91C31CAC40890AC8B668E05F61 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java-rmi.exe 2014-09-24 12:41:00 C3F55C9B02A22EC0B345E20AE9AE9B71 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\klist.exe 2014-09-24 12:41:00 BF918C9473D64BBD53C22C47045883F5 182696 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jqs.exe 2014-09-24 12:41:00 8B657BA869AE7D3C6A29792C986E0DD5 68008 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javacpl.exe 2014-09-24 12:41:00 7ED5C21F9F29B5278FFF39718C667235 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ktab.exe 2014-09-24 12:41:00 7DC9A0127F850997B4CFD9923C680D7D 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\keytool.exe 2014-09-24 12:41:00 3BDEB17FE6390BFF1BF3A2D964DE8E48 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaw.exe 2014-09-24 12:41:00 11FD45A41DF45298686ED39062AABE2A 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java.exe 2014-09-24 12:41:00 07EF2978A5BC36720378F95566697FD8 272808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaws.exe 2014-09-24 12:41:00 0371CFD6228F89B5B9E20F67807987FE 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\kinit.exe 2014-09-24 12:40:26 3842C46F2FBC7522EF625F1833530804 145408 ----a-w- C:\Users\Ivan Hubrecht\AppData\LocalLow\Sun\Java\jre1.7.0_67\lzma.exe 2014-09-24 12:39:37 9473F655CAE1A13C311C3FF1134D79DC 918440 ----a-w- C:\Users\Ivan Hubrecht\Downloads\chromeinstall-7u67.exe 2014-09-24 12:28:15 B2E88A6033AFFFB634872015D329A2A2 45870584 ----a-w- C:\Users\Ivan Hubrecht\Downloads\eID-QuickInstaller-407-7453-signed_tcm227-246722.exe 2014-09-24 11:55:35 D6713E6D0BE48AE58FA748B84D55E837 2877248 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Install_AllMyNotes_2_81_Free (1).exe 2014-09-24 11:55:04 700312F0D0FA3168301E908174DFA5B9 120888 ----a-w- C:\Program Files (x86)\AllMyNotes Organizer\Uninstall.exe 2014-09-24 11:54:34 D6713E6D0BE48AE58FA748B84D55E837 2877248 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Install_AllMyNotes_2_81_Free.exe 2014-09-24 10:18:14 491D1C5CE5FF9323BE55D5C73F80099E 6431728 ----a-w- C:\Users\Ivan Hubrecht\Downloads\OSGS14-WindowsUpgradeAssistant-32bitand64bit-ClientSKU-4141411.exe 2014-09-24 08:05:20 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Ivan Hubrecht.exe 2014-09-24 08:04:50 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RSITx64.exe 2014-09-23 09:35:35 A283E768FA12EF33087F07B01F82D6DD 181064 ----a-w- C:\Windows\PSEXESVC.EXE 2014-09-23 09:34:26 EABC89C8A3C3FE5C1629ECA0EDBB4A0A 994421 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Tweaking.com-RepairPrintSpooler.exe 2014-09-23 09:25:55 0A9F845FEB65E54937CCCADF412D7E2E 772896 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Mats_Run.printing.exe 2014-09-23 09:21:30 8C7C8A8089FC8B84A502840C795BE046 1880096 ----a-w- C:\Users\Ivan Hubrecht\Downloads\Print-Spooler-Repair-Tool.exe 2014-09-23 07:40:32 C72B658CEB5CAF8F9B95E3C44F0932DA 1451504 ----a-w- C:\Users\Ivan Hubrecht\Downloads\DiskCheckSetup.exe 2014-09-22 14:28:35 A1AE00B0BED9C9D6C16969B68DA1DF07 10285152 ----a-w- C:\Windows\Temp\mbam-setup.exe 2014-09-22 14:28:35 A1AE00B0BED9C9D6C16969B68DA1DF07 10285152 ----a-w- C:\Users\Ivan Hubrecht\AppData\Local\Microsoft\Windows\INetCache\IE\IFWISBYV\mbam-setup[1].exe 2014-09-22 09:17:17 2237B196DE74B2516360F2E0A4B302A0 1346048 ----a-w- C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\uninstall.exe 2014-09-22 08:50:50 39C80615F4ECFC3FC7DF6C8B8D321135 9700040 ----a-w- C:\Users\Ivan Hubrecht\Downloads\tweaking.com_windows_repair_aio_setup.exe 2014-09-21 15:08:44 200627665DCBDC6DAA4D4955B783132D 936792 ----a-w- C:\Windows\System32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP540_series\DelDrv.exe 2014-09-21 15:08:36 D9D04489C0F7F95D0235F8CCB312B918 47440 ----a-w- C:\Windows\System32\spool\drivers\x64\3\CNMVS9E.EXE 2014-09-21 15:08:35 4BB353007FCE94C74B441E0B4EE2E12A 18768 ----a-w- C:\Windows\System32\spool\drivers\x64\3\CNMSE9E.EXE 2014-09-21 15:03:43 6EA0EFDB3B3C27D0146E77AE712616EF 26502544 ----a-w- C:\Users\Ivan Hubrecht\Downloads\md64-win-mp540-1_04-ea24.exe 2014-09-21 14:44:21 955B519235602DD43D20B0312E9A3AC2 4901352 ----a-w- C:\Users\Ivan Hubrecht\Downloads\ccsetup417 (1).exe 2014-09-21 14:44:16 955B519235602DD43D20B0312E9A3AC2 4901352 ----a-w- C:\Users\Ivan Hubrecht\Downloads\ccsetup417.exe 2014-09-19 14:29:48 663F650729072ED3A1F2C6184652CB1C 7589616 ----a-w- C:\Users\Ivan Hubrecht\Downloads\PrinterSpoolerFixWizard3.exe 2014-09-19 14:18:10 DF2A05AE34820F591FDF743916403C85 132456 ----a-w- C:\Program Files (x86)\Canon\SolutionMenu\uninst.exe 2014-09-19 14:18:09 605BB2B2A2171D3F5748F4919E80E6C7 767312 ----a-w- C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.EXE 2014-09-19 14:17:40 C902E1F9ADE0A77B4AA6BB124A9589C8 2750536 ----a-w- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe 2014-09-19 14:17:40 5667CA38599CD21BA6DEC422735C8835 382024 ----a-w- C:\Program Files\Canon\MyPrinter\BJMyRst.exe 2014-09-19 14:17:39 1C51B34FF9167D4CB25CB28CD062C819 3680328 ----a-w- C:\Program Files\Canon\MyPrinter\BJMyDgn.exe 2014-09-19 14:17:37 77AF87F5DF4DF4857A476493142622C0 1862744 ---ha-w- C:\Program Files\Canon\MyPrinter\uninst.exe 2014-09-19 14:17:12 818376FDB7A699656A11DFE90F5918A6 95568 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 2.0\MPNScan.exe 2014-09-19 14:17:10 95807BA339852593EEF40F2B86A2111C 6364752 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 2.0\mpnex20.exe 2014-09-19 14:17:10 7A3FED43AF6D096A2D34C300303D935E 1062224 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 2.0\mpncopy.exe 2014-09-19 14:17:10 3B305AF8FA011E429899D3509EBC92CA 308568 ---ha-w- C:\Program Files (x86)\Canon\MP Navigator EX 2.0\Maint.exe 2014-09-19 14:13:36 DDFA730270C627C8FADEB4E2641B70CF 132520 ----a-w- C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe 2014-09-19 14:13:35 7A6ED49B65EF75F87B44EB3D044B2502 107960 ----a-w- C:\Program Files\Canon\Easy-PhotoPrint EX\x64\EZPRX64.EXE 2014-09-19 14:13:28 DBC3FAB938D87599F21F941FAE93DBCC 67160 ----a-w- C:\Program Files\Canon\Easy-PhotoPrint EX\CNELMAIN.EXE 2014-09-19 14:13:28 1910A1D33DB5EC6B5F8792ED8FE9B34D 4599384 ----a-w- C:\Program Files\Canon\Easy-PhotoPrint EX\CNEZMAIN.EXE === C: other files == 2014-09-25 08:13:28 63BF57B3214A67EB8DC9056843FF180F 60 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RestoreRemoteProcedureCallRPCWindows8 (1).bat 2014-09-24 12:41:01 F3EABF8A2AF5C0D8BAE022EE6C17FD91 18650 ----a-w- C:\Program Files (x86)\Java\jre7\lib\deploy\ffjcext.zip 2014-09-24 12:29:32 8378A77DFAF832A7ACBE90F59066FF9A 14080 ----a-w- C:\drivers\acr38svr.sys 2014-09-24 12:29:32 2DD63DBA58D76D3B500EEC1EF77B97EC 43392 ----a-w- C:\drivers\apg8201z.sys 2014-09-24 12:29:32 0F39961D10D4DE80C95BE441E42D9C23 50688 ----a-w- C:\drivers\apg8201zx64.sys 2014-09-24 12:29:31 888DFE4137F626CEA9CCE3BD47941B64 44672 ----a-w- C:\drivers\a38usbx64.sys 2014-09-24 12:29:31 5F92E1E98EC2F4E6FE13D19AA3E24AD7 37632 ----a-w- C:\drivers\a38usb.sys 2014-09-24 12:29:31 0FA03F53C0A635513F34B3D85BA1D361 17674 ----a-w- C:\drivers\a38usb98.sys 2014-09-22 14:28:40 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-09-21 15:42:28 63BF57B3214A67EB8DC9056843FF180F 60 ----a-w- C:\Users\Ivan Hubrecht\Downloads\RestoreRemoteProcedureCallRPCWindows8.bat ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3620971024-2762982169-941777991-1002\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CLMLServer_For_P2G8"="C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" "CLVirtualDrive"="C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe /R" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "YouCam Service"="C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe /s" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 7"="C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg_Dolby"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4" "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "CanonSolutionMenu"="C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\ASC7_SkipUac_Ivan Hubrecht.job --a-------- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [22/08/2014 14:10] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [04/06/2013 18:37] C:\WINDOWS\tasks\Uninstaller_SkipUac_Administrator.job --a-------- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [22/08/2014 10:01] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\ASC7_SkipUac_Ivan Hubrecht" [C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe /SkipUac] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\BrowserChoice\browserchoice.exe] "C:\WINDOWS\SysNative\tasks\Dolby Selector" [C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Synaptics TouchPad Enhancements" ["C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"] "C:\WINDOWS\SysNative\tasks\Uninstaller_SkipUac_Administrator" [C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{0FE61453-9FFA-4A03-99DF-F358D5E2BC27}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[18/09/2014 12:06] lpoimibckejjdjcfbdnajaicnklhfplh - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh[] Google Slides - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Wallet - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://users.skynet.be/javascript" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{978279C4-A109-40DE-9F9C-724A4E914EA3}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{978279C4-A109-40DE-9F9C-724A4E914EA3}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://users.skynet.be/javascript" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {4A486A0C-7052-4FBF-9F71-82A906AEB981} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\lpoimibckejjdjcfbdnajaicnklhfplh deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/1553-154558-44482-6/4 (file missing) (HKCU) O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/1553-154558-44482-6/4 (file missing) (HKCU) O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.24.0.cab O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe O23 - Service: CyberLink PowerDVD 10 MS Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe O23 - Service: CyberLink PowerDVD 10 MS Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Program Files (x86)\PHotkey\GFNEXSrv.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing) O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Ivan Hubrecht\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Ivan Hubrecht\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Ivan Hubrecht\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=346 folders=58 309510906 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Ivan Hubrecht\AppData\Local\Temp will be emptied at reboot C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\IVANHU~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on vr 26/09/2014 at 11:05:37.60 ======================