Logfile of random's system information tool 1.10 (written by random/random) Run by hfm at 2014-10-21 13:39:26 Microsoft Windows 8.1 System drive C: has 412 GB (91%) free of 454 GB Total RAM: 3912 MB (61% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:39:29, on 21-10-2014 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.9600.17344) Boot mode: Normal Running processes: C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe C:\Program Files (x86)\AVG\AVG2015\avgui.exe C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe C:\WINDOWS\SysWOW64\ctfmon.exe C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe C:\Program Files\trend micro\hfm.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing) O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing) O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing) O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 9695 bytes ======Listing Processes====== c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-a025-973154e6094a /binaryPath="C:\Program Files (x86)\AVG\AVG2015\" wininit.exe winlogon.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch C:\WINDOWS\system32\svchost.exe -k RPCSS "dwm.exe" "C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe" C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted C:\WINDOWS\system32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted C:\WINDOWS\system32\svchost.exe -k NetworkService C:\WINDOWS\System32\spoolsv.exe C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" taskhostex.exe C:\WINDOWS\Explorer.EXE "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe" "C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe" "C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe" "C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe" "C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe" "C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe" "C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe" "C:\Program Files (x86)\AVG\AVG2015\avgemca.exe" "C:\Program Files (x86)\Launch Manager\dsiwmis.exe" "C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window "C:\Program Files\Intel\iCLS Client\HeciServer.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe" "C:\Program Files (x86)\Launch Manager\LManager.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe" "C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE "C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe" "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray C:\Windows\RfBtnSvc64.exe "C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe" "C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe" Service "C:\Program Files (x86)\IObit\Start Menu 8\InstallServices64.exe" /loaddll C:\WINDOWS\system32\SearchIndexer.exe /Embedding "C:\Program Files\Acer\Acer Power Management\ePowerTray.exe" "C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe" C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet dashost.exe {e4d5e46f-7cdf-4e35-981cb59ba20632ba} C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "C:\Windows\System32\igfxtray.exe" "C:\Windows\System32\hkcmd.exe" "C:\Windows\System32\igfxpers.exe" "C:\Program Files\Apoint2K\Apoint.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4 "C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe" "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k "C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true "C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe" "C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe" "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY "C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe" "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac "C:\WINDOWS\system32\igfxext.exe" -Embedding "C:\Program Files\Apoint2K\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113} "C:\Program Files\Apoint2K\HidFind.exe" "Apntex.exe" \??\C:\WINDOWS\system32\conhost.exe 0x4 ctfmon.exe C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe" "C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe" "C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe" C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding "C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe" "C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" C:\WINDOWS\system32\svchost.exe -k imgsvc "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" "C:\Program Files\Windows Media Player\wmpnetwk.exe" "C:\Program Files\EgisTec IPS\PMMUpdate.exe" "C:\Program Files\EgisTec IPS\EgisUpdate.exe" C:\WINDOWS\System32\svchost.exe -k swprv C:\WINDOWS\System32\svchost.exe -k WerSvcGroup taskhost.exe IdleSyncMaintenance C:\WINDOWS\system32\svchost.exe -k defragsvc "C:\Users\hfm\Desktop\RSITx64.exe" C:\WINDOWS\servicing\TrustedInstaller.exe C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe -Embedding ======Scheduled tasks folder====== C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}] CIESpeechBHO Class - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2012-11-10 64640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-10-04 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-10-04 194504] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-10-04 256456] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-10-04 194504] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992] "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832] "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328] "Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2012-11-09 661400] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-27 12937872] "RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-07-10 1214608] "BtPreLoad"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe [2012-11-10 64640] "CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2012-03-09 462712] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200] "swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2014-10-04 39408] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "LManager"= [] "Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2012-07-26 508656] "Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880] "AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2014-09-05 3593744] "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableCAD"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "VIDC.YUY2"=msyuv.dll "vidc.i420"=iyuv_32.dll "msacm.msgsm610"=msgsm32.acm "msacm.msg711"=msg711.acm "VIDC.YVYU"=msyuv.dll "VIDC.YVU9"=tsbyuv.dll "wavemapper"=msacm32.drv "midimapper"=midimap.dll "VIDC.UYVY"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.mrle"=msrle32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msadpcm"=msadp32.acm "vidc.msvc"=msvidc32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "MSVideo8"=VfWWDM32.dll "wave2"=wdmaud.drv "mixer2"=wdmaud.drv "midi2"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2014-10-21 13:33:13 ----D---- C:\rsit 2014-10-21 13:33:13 ----D---- C:\Program Files\trend micro 2014-10-19 15:47:14 ----D---- C:\Program Files\Common Files\Common Desktop Agent 2014-10-19 14:40:20 ----D---- C:\ProgramData\SSScan 2014-10-19 13:03:19 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller 2014-10-19 13:03:18 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdate 2014-10-19 12:47:55 ----D---- C:\WINDOWS\LastGood 2014-10-19 12:47:53 ----D---- C:\WINDOWS\twain_64 2014-10-19 12:47:04 ----A---- C:\WINDOWS\system32\SNWIAUI.dll 2014-10-19 12:47:04 ----A---- C:\WINDOWS\system32\snWIAMUI.dll 2014-10-19 12:47:03 ----A---- C:\WINDOWS\system32\SnMinDrv.dll 2014-10-19 12:47:03 ----A---- C:\WINDOWS\system32\SnImgFlt.dll 2014-10-19 12:47:03 ----A---- C:\WINDOWS\system32\SnErHdlr.dll 2014-10-19 12:45:41 ----D---- C:\Users\hfm\AppData\Roaming\Samsung 2014-10-18 17:01:58 ----D---- C:\WINDOWS\LastGood.Tmp 2014-10-18 16:51:06 ----A---- C:\WINDOWS\system32\usp01l.dll 2014-10-18 16:51:05 ----A---- C:\WINDOWS\system32\usp01ci.dll 2014-10-18 16:51:03 ----A---- C:\WINDOWS\system32\usp01ci.exe 2014-10-18 16:45:04 ----D---- C:\Program Files (x86)\Samsung 2014-10-17 23:13:02 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe 2014-10-17 23:07:27 ----RD---- C:\WINDOWS\BrowserChoice 2014-10-17 22:39:30 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys 2014-10-17 22:22:07 ----A---- C:\WINDOWS\system32\SaMinDrv.dll 2014-10-17 22:22:07 ----A---- C:\WINDOWS\system32\SaImgFlt.dll 2014-10-17 22:22:07 ----A---- C:\WINDOWS\system32\SaErHdlr.dll 2014-10-17 20:48:44 ----A---- C:\WINDOWS\system32\lockscreencn.dll 2014-10-17 20:48:37 ----A---- C:\WINDOWS\system32\generaltel.dll 2014-10-17 20:48:37 ----A---- C:\WINDOWS\system32\aepdu.dll 2014-10-17 20:48:37 ----A---- C:\WINDOWS\system32\aeinv.dll 2014-10-17 20:48:36 ----A---- C:\WINDOWS\system32\aepic.dll 2014-10-17 16:30:01 ----A---- C:\WINDOWS\system32\schedsvc.dll 2014-10-17 16:29:06 ----A---- C:\WINDOWS\system32\Wpc.dll 2014-10-17 16:29:05 ----A---- C:\WINDOWS\system32\WpcWebSync.dll 2014-10-17 16:29:05 ----A---- C:\WINDOWS\system32\WpcMon.exe 2014-10-17 16:29:04 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll 2014-10-17 16:26:12 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe 2014-10-17 16:26:11 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe 2014-10-17 16:23:03 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll 2014-10-17 16:23:03 ----A---- C:\WINDOWS\system32\d3d9.dll 2014-10-17 16:22:55 ----A---- C:\WINDOWS\system32\vpnike.dll 2014-10-17 16:22:51 ----A---- C:\WINDOWS\system32\fveapi.dll 2014-10-17 16:22:51 ----A---- C:\WINDOWS\system32\dhcpcore.dll 2014-10-17 16:22:48 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll 2014-10-17 16:22:46 ----A---- C:\WINDOWS\system32\framedynos.dll 2014-10-17 16:22:46 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys 2014-10-17 16:22:44 ----A---- C:\WINDOWS\system32\dhcpcore6.dll 2014-10-17 16:22:44 ----A---- C:\WINDOWS\system32\bdesvc.dll 2014-10-17 16:22:43 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll 2014-10-17 16:22:43 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll 2014-10-17 16:22:43 ----A---- C:\WINDOWS\system32\BFE.DLL 2014-10-17 16:22:42 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys 2014-10-17 16:22:38 ----A---- C:\WINDOWS\system32\ncobjapi.dll 2014-10-17 16:22:37 ----A---- C:\WINDOWS\system32\framedyn.dll 2014-10-17 16:22:35 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll 2014-10-17 16:22:34 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys 2014-10-17 16:22:33 ----A---- C:\WINDOWS\system32\Robocopy.exe 2014-10-17 16:22:32 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll 2014-10-17 16:22:31 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe 2014-10-17 16:22:31 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll 2014-10-17 16:22:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll 2014-10-17 16:22:31 ----A---- C:\WINDOWS\system32\IKEEXT.DLL 2014-10-17 16:22:31 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys 2014-10-17 16:22:31 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll 2014-10-17 16:22:30 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll 2014-10-17 16:22:29 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll 2014-10-17 16:22:29 ----A---- C:\WINDOWS\system32\srms.dat 2014-10-17 16:22:29 ----A---- C:\WINDOWS\system32\reseteng.dll 2014-10-17 16:20:08 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll 2014-10-17 16:20:07 ----A---- C:\WINDOWS\system32\twinui.dll 2014-10-17 16:20:06 ----A---- C:\WINDOWS\system32\actxprxy.dll 2014-10-17 16:20:05 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe 2014-10-17 16:20:05 ----A---- C:\WINDOWS\system32\uDWM.dll 2014-10-17 16:20:05 ----A---- C:\WINDOWS\explorer.exe 2014-10-17 16:20:04 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll 2014-10-17 16:20:04 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll 2014-10-17 16:20:04 ----A---- C:\WINDOWS\system32\UXInit.dll 2014-10-17 16:19:50 ----A---- C:\WINDOWS\system32\shell32.dll 2014-10-17 16:19:46 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll 2014-10-17 16:19:44 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll 2014-10-17 16:19:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll 2014-10-17 16:19:41 ----A---- C:\WINDOWS\system32\mstscax.dll 2014-10-17 16:19:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll 2014-10-17 16:19:40 ----A---- C:\WINDOWS\system32\SyncEngine.dll 2014-10-17 16:19:39 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys 2014-10-17 16:19:38 ----A---- C:\WINDOWS\system32\SearchFolder.dll 2014-10-17 16:19:37 ----A---- C:\WINDOWS\system32\KernelBase.dll 2014-10-17 16:19:35 ----A---- C:\WINDOWS\system32\ntdll.dll 2014-10-17 16:19:34 ----A---- C:\WINDOWS\system32\propsys.dll 2014-10-17 16:19:28 ----A---- C:\WINDOWS\system32\WSShared.dll 2014-10-17 16:19:26 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll 2014-10-17 16:19:26 ----A---- C:\WINDOWS\system32\iphlpsvc.dll 2014-10-17 16:19:25 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll 2014-10-17 16:19:25 ----A---- C:\WINDOWS\system32\Wldap32.dll 2014-10-17 16:19:24 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll 2014-10-17 16:19:24 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll 2014-10-17 16:19:23 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll 2014-10-17 16:19:23 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll 2014-10-17 16:19:23 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-10-17 16:19:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-10-17 16:19:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe 2014-10-17 16:19:18 ----A---- C:\WINDOWS\system32\httpprxm.dll 2014-10-17 16:19:18 ----A---- C:\WINDOWS\system32\bisrv.dll 2014-10-17 16:19:16 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS 2014-10-17 16:19:15 ----A---- C:\WINDOWS\system32\pcsvDevice.dll 2014-10-17 16:19:14 ----A---- C:\WINDOWS\system32\adhsvc.dll 2014-10-17 16:19:13 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll 2014-10-17 16:19:11 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll 2014-10-17 16:19:11 ----A---- C:\WINDOWS\system32\ProximityService.dll 2014-10-17 16:19:09 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-17 16:19:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-17 16:18:01 ----A---- C:\WINDOWS\system32\WUDFHost.exe 2014-10-17 16:18:01 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys 2014-10-17 16:18:00 ----A---- C:\WINDOWS\system32\WUDFSvc.dll 2014-10-17 16:18:00 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll 2014-10-17 16:18:00 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys 2014-10-17 16:17:59 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll 2014-10-17 16:17:58 ----A---- C:\WINDOWS\system32\hal.dll 2014-10-17 16:17:57 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll 2014-10-17 16:16:32 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll 2014-10-17 16:16:32 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll 2014-10-17 16:15:46 ----A---- C:\WINDOWS\system32\MDMAgent.exe 2014-10-16 15:15:56 ----A---- C:\WINDOWS\system32\drivers\RapportHades64.sys 2014-10-16 15:15:55 ----A---- C:\WINDOWS\system32\drivers\RapportKE64.sys 2014-10-16 15:14:44 ----D---- C:\Program Files (x86)\Trusteer 2014-10-16 15:14:02 ----D---- C:\ProgramData\Trusteer 2014-10-15 22:59:29 ----D---- C:\Users\hfm\AppData\Roaming\Identities 2014-10-15 22:23:53 ----SHD---- C:\Recovery 2014-10-15 22:23:47 ----DC---- C:\WINDOWS\Panther 2014-10-15 22:23:19 ----D---- C:\Windows.old 2014-10-15 22:23:08 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe 2014-10-15 22:23:08 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wuwebv.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wups2.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wups.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wudriver.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wucltux.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wuaueng.dll 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wuauclt.exe 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wuapp.exe 2014-10-15 22:23:08 ----A---- C:\WINDOWS\system32\wuapi.dll 2014-10-15 22:22:54 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll 2014-10-15 22:22:54 ----A---- C:\WINDOWS\system32\winbici.dll 2014-10-15 22:22:54 ----A---- C:\WINDOWS\system32\MrmCoreR.dll 2014-10-15 22:22:54 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe 2014-10-15 22:22:44 ----A---- C:\WINDOWS\SYSWOW64\packager.dll 2014-10-15 22:22:44 ----A---- C:\WINDOWS\system32\packager.dll 2014-10-15 22:22:38 ----A---- C:\WINDOWS\system32\win32k.sys 2014-10-15 22:22:33 ----A---- C:\WINDOWS\SYSWOW64\msi.dll 2014-10-15 22:22:33 ----A---- C:\WINDOWS\SYSWOW64\authui.dll 2014-10-15 22:22:33 ----A---- C:\WINDOWS\system32\msi.dll 2014-10-15 22:22:33 ----A---- C:\WINDOWS\system32\authui.dll 2014-10-15 22:22:33 ----A---- C:\WINDOWS\system32\appinfo.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\wininet.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\vbscript.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\urlmon.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\mshtmled.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\MshtmlDac.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\mshtml.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\msfeeds.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\jscript9diag.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\jscript9.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\iertutil.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\ieframe.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\iedkcs32.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\ieapfltr.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\ie4uinit.exe 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\dxtrans.dll 2014-10-15 22:22:10 ----A---- C:\WINDOWS\system32\dxtmsft.dll 2014-10-15 22:21:34 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll 2014-10-15 22:21:34 ----A---- C:\WINDOWS\system32\rastls.dll 2014-10-15 22:19:00 ----D---- C:\Program Files (x86)\Reference Assemblies 2014-10-15 22:19:00 ----D---- C:\Program Files (x86)\MSBuild 2014-10-15 22:18:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer 2014-10-15 22:18:59 ----D---- C:\Program Files\Reference Assemblies 2014-10-15 22:18:59 ----D---- C:\Program Files\MSBuild 2014-10-15 22:18:19 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-10-15 22:18:18 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll 2014-10-15 22:18:16 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-10-15 22:18:15 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-10-15 21:56:23 ----SHD---- C:\ProgramData\Sjablonen 2014-10-15 21:56:23 ----SHD---- C:\ProgramData\Menu Start 2014-10-15 21:56:23 ----SHD---- C:\ProgramData\Documenten 2014-10-15 21:56:23 ----SHD---- C:\ProgramData\Bureaublad 2014-10-15 21:53:32 ----A---- C:\WINDOWS\system32\emptyregdb.dat 2014-10-15 21:32:15 ----SD---- C:\Users\hfm\AppData\Roaming\Microsoft 2014-10-15 21:26:31 ----D---- C:\Program Files\Realtek 2014-10-15 21:26:30 ----D---- C:\WINDOWS\SYSWOW64\RTCOM 2014-10-15 21:26:26 ----D---- C:\Program Files\Apoint2K 2014-10-15 21:26:18 ----D---- C:\Program Files (x86)\Intel 2014-10-15 21:24:58 ----D---- C:\WINDOWS\Prefetch 2014-10-15 20:38:47 ----A---- C:\WINDOWS\wiainst64.exe 2014-10-15 20:38:10 ----A---- C:\WINDOWS\SYSWOW64\TWAINDSM.dll 2014-10-15 20:38:10 ----A---- C:\WINDOWS\system32\TWAINDSM.dll 2014-10-15 20:38:07 ----N---- C:\WINDOWS\TotalUninstaller.exe 2014-10-15 19:19:54 ----D---- C:\ProgramData\IObit 2014-10-15 19:19:41 ----D---- C:\Program Files (x86)\IObit 2014-10-15 18:23:30 ----D---- C:\ProgramData\ClassicShell 2014-10-15 18:23:29 ----D---- C:\Users\hfm\AppData\Roaming\ClassicShell 2014-10-14 21:35:24 ----A---- C:\WINDOWS\system32\drivers\7A57490D.sys 2014-10-14 18:56:42 ----D---- C:\Users\hfm\AppData\Roaming\Watchtower 2014-10-14 18:53:18 ----D---- C:\Program Files (x86)\Watchtower 2014-10-14 17:11:10 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 2014-10-14 17:10:55 ----D---- C:\ProgramData\Malwarebytes 2014-10-14 17:10:55 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-10-14 17:10:55 ----A---- C:\WINDOWS\system32\drivers\mwac.sys 2014-10-14 17:10:55 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys 2014-10-14 17:10:55 ----A---- C:\WINDOWS\system32\drivers\mbam.sys 2014-10-12 13:53:19 ----SHD---- C:\.uuid 2014-10-07 17:44:28 ----D---- C:\Users\hfm\AppData\Roaming\OpenOffice 2014-10-07 12:46:32 ----D---- C:\Program Files (x86)\OpenOffice 4 2014-10-06 17:23:23 ----D---- C:\f848850924573c4e14 2014-10-05 13:13:26 ----D---- C:\WINDOWS\system32\MRT 2014-10-05 13:13:21 ----A---- C:\WINDOWS\system32\MRT.exe 2014-10-05 12:43:41 ----D---- C:\Program Files (x86)\Adobe 2014-10-05 12:41:20 ----D---- C:\ProgramData\Samsung 2014-10-05 02:49:18 ----SHD---- C:\System Volume Information 2014-10-05 02:49:18 ----ASH---- C:\swapfile.sys 2014-10-05 02:49:18 ----ASH---- C:\pagefile.sys 2014-10-05 02:49:15 ----ASH---- C:\hiberfil.sys 2014-10-04 19:56:55 ----D---- C:\ProgramData\Adobe 2014-10-04 19:53:12 ----D---- C:\ProgramData\Avg_Update_0914avt 2014-10-04 19:38:23 ----D---- C:\Users\hfm\AppData\Roaming\AVG2015 2014-10-04 19:37:05 ----D---- C:\Users\hfm\AppData\Roaming\TuneUp Software 2014-10-04 19:36:55 ----HD---- C:\$AVG 2014-10-04 19:36:55 ----D---- C:\ProgramData\AVG2015 2014-10-04 19:36:48 ----D---- C:\Program Files (x86)\AVG 2014-10-04 19:04:03 ----D---- C:\Users\hfm\AppData\Roaming\Google 2014-10-04 19:03:36 ----D---- C:\Program Files\CCleaner 2014-10-04 19:02:46 ----D---- C:\Program Files\Google 2014-10-04 19:02:13 ----D---- C:\ProgramData\Google 2014-10-04 19:02:00 ----D---- C:\Program Files (x86)\Google 2014-10-04 18:59:42 ----HD---- C:\ProgramData\Common Files 2014-10-04 18:59:42 ----D---- C:\ProgramData\MFAData 2014-10-04 18:26:58 ----D---- C:\Users\hfm\AppData\Roaming\Atheros 2014-10-04 18:26:01 ----D---- C:\Program Files (x86)\OEM 2014-10-04 18:25:41 ----D---- C:\Program Files\Accessory Store 2014-10-04 18:25:07 ----D---- C:\Users\hfm\AppData\Roaming\lm 2014-10-04 18:24:41 ----D---- C:\Users\hfm\AppData\Roaming\Macromedia 2014-10-04 18:24:40 ----D---- C:\Users\hfm\AppData\Roaming\Adobe 2014-09-24 21:03:15 ----D---- C:\Program Files\Embedded Lockdown Manager 2014-09-24 21:03:14 ----SD---- C:\WINDOWS\system32\CompatTel 2014-09-24 20:59:57 ----A---- C:\WINDOWS\system32\EmbeddedLockdown.msc 2014-09-24 20:57:00 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll 2014-09-24 20:57:00 ----A---- C:\WINDOWS\system32\gdi32.dll 2014-09-24 20:47:15 ----A---- C:\WINDOWS\system32\WSDMon.dll 2014-09-24 20:47:15 ----A---- C:\WINDOWS\system32\tcpmon.dll 2014-09-24 20:44:12 ----A---- C:\WINDOWS\system32\devinv.dll 2014-09-24 20:27:38 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll 2014-09-24 20:27:38 ----A---- C:\WINDOWS\system32\qedit.dll 2014-09-24 20:20:57 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll 2014-09-24 20:20:57 ----A---- C:\WINDOWS\system32\twinui.appcore.dll 2014-09-24 20:20:57 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll 2014-09-24 20:17:21 ----A---- C:\WINDOWS\SYSWOW64\drvinst.exe 2014-09-24 20:17:21 ----A---- C:\WINDOWS\system32\drvinst.exe 2014-09-24 20:17:21 ----A---- C:\WINDOWS\system32\drvcfg.exe 2014-09-24 20:08:24 ----A---- C:\WINDOWS\system32\drivers\storport.sys 2014-09-24 19:54:19 ----A---- C:\WINDOWS\system32\wpccpl.dll 2014-09-24 19:54:19 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys 2014-09-24 19:48:07 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll 2014-09-24 19:48:07 ----A---- C:\WINDOWS\system32\FntCache.dll 2014-09-24 19:48:07 ----A---- C:\WINDOWS\system32\DWrite.dll 2014-09-24 19:44:59 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll 2014-09-24 19:44:59 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe 2014-09-24 19:44:58 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\ieUnatt.exe 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\iesetup.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\iernonce.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll 2014-09-24 19:44:58 ----A---- C:\WINDOWS\system32\ieetwcollector.exe 2014-09-24 19:44:57 ----A---- C:\WINDOWS\system32\msrating.dll 2014-09-24 19:44:57 ----A---- C:\WINDOWS\system32\jsproxy.dll 2014-09-24 19:38:56 ----A---- C:\WINDOWS\system32\drivers\afd.sys 2014-09-24 19:33:46 ----A---- C:\WINDOWS\system32\termsrv.dll 2014-09-24 19:23:26 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll 2014-09-24 19:23:26 ----A---- C:\WINDOWS\system32\storewuauth.dll 2014-09-24 19:23:25 ----A---- C:\WINDOWS\system32\ubpm.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\srclient.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\SYSWOW64\mf.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\wmpmde.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\winmde.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\srcore.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\srclient.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\rstrui.exe 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\mfsvr.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\mfpmp.exe 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\mf.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\MDEServer.exe 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\energyprov.dll 2014-09-24 19:19:50 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys 2014-09-24 19:19:49 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll 2014-09-24 19:19:49 ----A---- C:\WINDOWS\SYSWOW64\rpchttp.dll 2014-09-24 19:19:49 ----A---- C:\WINDOWS\system32\tlscsp.dll 2014-09-24 19:19:49 ----A---- C:\WINDOWS\system32\rdpencom.dll 2014-09-24 19:19:48 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\wintrust.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\VSSVC.exe 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\swprv.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\rpchttp.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\ploptin.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\BootMenuUX.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\audiosrv.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\AudioSes.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\AudioEng.dll 2014-09-24 19:19:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-09-24 19:19:46 ----A---- C:\WINDOWS\SYSWOW64\tlscsp.dll 2014-09-24 19:19:46 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll 2014-09-24 19:19:46 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll 2014-09-24 19:19:46 ----A---- C:\WINDOWS\system32\wscsvc.dll 2014-09-24 19:19:46 ----A---- C:\WINDOWS\system32\audiodg.exe 2014-09-24 19:19:45 ----A---- C:\WINDOWS\system32\services.exe 2014-09-24 19:19:45 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys 2014-09-24 19:19:45 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys 2014-09-24 19:19:45 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys 2014-09-24 19:15:37 ----A---- C:\WINDOWS\SYSWOW64\mrt100.dll 2014-09-24 19:15:37 ----A---- C:\WINDOWS\SYSWOW64\mrt_map.dll 2014-09-24 19:15:37 ----A---- C:\WINDOWS\system32\mrt100.dll 2014-09-24 19:15:37 ----A---- C:\WINDOWS\system32\mrt_map.dll 2014-09-24 19:13:46 ----A---- C:\WINDOWS\SYSWOW64\wusa.exe 2014-09-24 19:13:46 ----A---- C:\WINDOWS\system32\wusa.exe 2014-09-24 19:09:44 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll 2014-09-24 19:09:44 ----A---- C:\WINDOWS\system32\msxml3.dll 2014-09-24 19:05:19 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys 2014-09-24 19:05:19 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys 2014-09-24 19:05:19 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys 2014-09-24 18:51:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\SYSWOW64\sxproxy.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\SYSWOW64\spp.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\SensorsApi.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\fvewiz.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\fveapibase.dll 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\drivers\wof.sys 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2014-09-24 18:51:27 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\wlangpui.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\w32tm.exe 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\l2gpstore.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\CredentialMigrationHandler.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll 2014-09-24 18:51:26 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll 2014-09-24 18:51:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll 2014-09-24 18:51:25 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll 2014-09-24 18:51:25 ----A---- C:\WINDOWS\system32\SessEnv.dll 2014-09-24 18:51:25 ----A---- C:\WINDOWS\system32\msftedit.dll 2014-09-24 18:51:25 ----A---- C:\WINDOWS\system32\dcomp.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\wlidprov.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\wlangpui.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\w32tm.exe 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\SetNetworkLocation.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\RMapi.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\ReInfo.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\rasapi32.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\ole32.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\nshwfp.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\msxml6.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\LocationApi.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\l2gpstore.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\kernel32.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\kerberos.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\DevPropMgr.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\dafWfdProvider.dll 2014-09-24 18:51:24 ----A---- C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\WsmSvc.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\userenv.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\umpnpmgr.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\sxproxy.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\spp.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\ReAgent.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\pdh.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\netlogon.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\drivers\clfs.sys 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\dnsrslvr.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\dnsapi.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\davclnt.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-09-24 18:51:23 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll 2014-09-24 18:51:22 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys 2014-09-24 18:51:22 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\SndVol.exe 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\printui.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\system32\WSReset.exe 2014-09-24 18:32:31 ----A---- C:\WINDOWS\system32\storagewmi.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\system32\rdpudd.dll 2014-09-24 18:32:31 ----A---- C:\WINDOWS\system32\rdpcorets.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\prnntfy.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\mftranscode.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\SYSWOW64\Display.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\wpdbusenum.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\workfolderssvc.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\Windows.Media.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mftranscode.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mfreadwrite.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mfps.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mfplat.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\mfcore.dll 2014-09-24 18:32:30 ----A---- C:\WINDOWS\system32\dab.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\VAN.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\iasnap.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll 2014-09-24 18:32:29 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDYAK.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDTT102.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDTAT.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDRUM.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDRU1.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDRU.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\KBDBASH.DLL 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\GdiPlus.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\dwmcore.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\dwmapi.dll 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys 2014-09-24 18:32:28 ----A---- C:\WINDOWS\system32\conhost.exe 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\user32.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\tsgqec.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\rdvidcrl.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\dxgi.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\d3d11.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\d3d10warp.dll 2014-09-24 18:32:27 ----A---- C:\WINDOWS\system32\cdd.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\stobject.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\Display.dll 2014-09-24 18:32:22 ----A---- C:\WINDOWS\system32\ActionCenter.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\XpsPrint.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wwanmm.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wwanconn.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlansvcpal.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlansvc.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlansec.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlanmsm.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlanhlp.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wlanapi.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\Windows.Networking.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\win32spl.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\wcmcsp.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\VAN.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\usbmon.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\twinapi.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\spoolsv.exe 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\SndVolSSO.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\SndVol.exe 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\SHCore.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\SettingSync.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\puiobj.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\puiapi.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\prnntfy.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\printui.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\PrintDialogs.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\netcfgx.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\localspl.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\iasnap.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\drivers\NdisImPlatform.sys 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\drivers\bridge.sys 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\compstui.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\comdlg32.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\AppxSip.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\AppxPackaging.dll 2014-09-24 18:32:21 ----A---- C:\WINDOWS\system32\aclui.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\wshbth.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\wisp.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\winresume.exe 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\winload.exe 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\SRH.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\schannel.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\osk.exe 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\gpsvc.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\gpedit.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\gpapi.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\drivers\ks.sys 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\consent.exe 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\certcli.dll 2014-09-24 18:32:20 ----A---- C:\WINDOWS\system32\BluetoothApis.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\wups.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\wisp.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\winmmbase.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\winmm.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\user32.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\osk.exe 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDYAK.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDTT102.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDTAT.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDRUM.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDRU1.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDRU.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\KBDBASH.DLL 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\wsecedit.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\winmmbase.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\winmm.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\WebClnt.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\resutils.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\msihnd.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\mispace.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\lsasrv.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\srv2.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\srv.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\drivers\cng.sys 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\defragsvc.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\Defrag.exe 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\clusapi.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\browser.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\AppxSysprep.dll 2014-09-24 18:32:19 ----A---- C:\WINDOWS\system32\adtschema.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\srvsvc.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\rsaenh.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\rpcrt4.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\profsvc.dll 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\ntoskrnl.exe 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbport.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbd.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\pci.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\netio.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\ndis.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\hdaudbus.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\bthport.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\drivers\bthmodem.sys 2014-09-24 18:32:18 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\SYSWOW64\WorkFoldersRes.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\WorkFoldersRes.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\WofUtil.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\WofTasks.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\dfpinc.dat 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\DfpCommon.dll 2014-09-24 18:24:09 ----A---- C:\WINDOWS\system32\dfp.exe 2014-09-24 18:24:08 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe 2014-09-24 18:24:08 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll 2014-09-24 18:24:08 ----A---- C:\WINDOWS\SYSWOW64\msdrm.dll 2014-09-24 18:24:08 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll 2014-09-24 18:24:08 ----A---- C:\WINDOWS\system32\msdrm.dll 2014-09-24 18:24:08 ----A---- C:\WINDOWS\system32\advapi32.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\sti.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\scrobj.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\SYSWOW64\cscript.exe 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\WSCollect.exe 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\WebcamUi.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\SrTasks.exe 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\srrstr.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\sharemediacpl.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\rdpclip.exe 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\provsvc.dll 2014-09-24 18:24:07 ----A---- C:\WINDOWS\system32\msTextPrediction.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\srchadmin.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\SYSWOW64\msshooks.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\system32\srchadmin.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\system32\fveskybackup.dll 2014-09-24 18:24:06 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\SYSWOW64\fdprint.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\tquery.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\SearchIndexer.exe 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\mssvp.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\mssrch.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\mssprxy.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\mssph.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\msshooks.dll 2014-09-24 18:23:57 ----A---- C:\WINDOWS\system32\msra.exe 2014-09-24 18:23:56 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll 2014-09-24 18:23:56 ----A---- C:\WINDOWS\system32\pnrpsvc.dll 2014-09-24 18:23:54 ----A---- C:\WINDOWS\system32\SensorsClassExtension.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\WMPDMC.exe 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\wmp.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\Windows.Media.Renewal.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\msvproc.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\mfnetsrc.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\mfnetcore.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\mfds.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll 2014-09-24 18:23:53 ----A---- C:\WINDOWS\system32\dxmasf.dll 2014-09-24 18:23:52 ----A---- C:\WINDOWS\system32\wmpdxm.dll 2014-09-24 18:23:51 ----A---- C:\WINDOWS\SYSWOW64\occache.dll 2014-09-24 18:23:51 ----A---- C:\WINDOWS\system32\occache.dll 2014-09-24 18:23:46 ----A---- C:\WINDOWS\system32\WorkFolders.exe 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\UserAccountBroker.exe 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\sud.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\msieftp.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\DeviceCenter.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\combase.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\SYSWOW64\authz.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll 2014-09-24 18:23:45 ----A---- C:\WINDOWS\system32\energy.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\shsetup.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll 2014-09-24 18:23:44 ----A---- C:\WINDOWS\SYSWOW64\cleanmgr.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\wlidcredprov.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\slc.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\SettingMonitor.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\RestoreOptIn.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\OobeFldr.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\ftp.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\finger.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\CloudNotifications.exe 2014-09-24 18:23:43 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\RacEngn.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\pcaui.exe 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\pcaui.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\dmvdsitf.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\dmdskmgr.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\dfrgui.exe 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe 2014-09-24 18:23:42 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\winsku.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\winbrand.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\sxshared.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\powercfg.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\ocsetapi.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\mcbuilder.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\fsutil.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\DismApi.dll 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\Dism.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\diskpart.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\autofmt.exe 2014-09-24 18:23:38 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\WimBootCompress.ini 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\slpts.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\powrprof.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\netid.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\miutils.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\system32\spcompat.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\system32\dwmredir.dll 2014-09-24 18:23:37 ----A---- C:\WINDOWS\system32\dwm.exe 2014-09-24 18:23:37 ----A---- C:\WINDOWS\system32\acppage.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wsqmcons.exe 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wow64win.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\winsrv.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\werui.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wersvc.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wermgr.exe 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\WerFault.exe 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wercplsupport.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\werconcpl.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\wer.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\sqmapi.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\riched20.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\msctfuimanager.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\msctf.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\mf3216.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\imm32.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\fontsub.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\Faultrep.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\f3ahvoas.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\DWWIN.EXE 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\dui70.dll 2014-09-24 18:23:36 ----A---- C:\WINDOWS\system32\drivers\watchdog.sys 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\TSWorkspace.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\tsmf.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\rdpcore.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\lsm.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\IdCtrls.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\DevicePairing.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\DeviceCenter.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\d3d10level9.dll 2014-09-24 18:23:35 ----A---- C:\WINDOWS\system32\d2d1.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\zipfldr.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\usercpl.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\UserAccountBroker.exe 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\thumbcache.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\themeui.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\themecpl.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\sud.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\netplwiz.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\msieftp.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\LockScreenContent.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\iuilp.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\glcndFilter.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\ConfigureExpandedStorage.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\cleanmgr.exe 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\bootux.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\AppReadiness.dll 2014-09-24 18:23:34 ----A---- C:\WINDOWS\system32\AltTab.dll 2014-09-24 18:23:33 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll 2014-09-24 18:23:33 ----A---- C:\WINDOWS\system32\syncui.dll 2014-09-24 18:23:33 ----A---- C:\WINDOWS\system32\SyncCenter.dll 2014-09-24 18:23:33 ----A---- C:\WINDOWS\system32\dataclen.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\shsetup.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\ntshrui.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\lpksetupproxyserv.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\LockScreenContentHost.dll 2014-09-24 18:23:29 ----A---- C:\WINDOWS\system32\InputSwitch.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\WlanMM.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\WLanConn.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\wcncsvc.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\uxtheme.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\sti.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\SettingMonitor.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\RestoreOptIn.exe 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\OobeFldr.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\gameux.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\fhcpl.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\fdprint.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\dbghelp.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\dbgeng.dll 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe 2014-09-24 18:23:28 ----A---- C:\WINDOWS\system32\CloudNotifications.exe 2014-09-24 18:23:27 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\WMPhoto.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\wcmsvc.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\TetheringMgr.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\RASMM.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\rasmans.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\rasgcw.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\rascustom.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\pnidui.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\PlayToManager.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\PlayToDevice.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\nettrace.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\netiohlp.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\ipnathlp.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\ftp.exe 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\finger.exe 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\eapphost.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\eappgnui.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\eappcfg.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\eapp3hst.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\drivers\refs.sys 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\drivers\ipnat.sys 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\dot3mm.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\DAMM.dll 2014-09-24 18:23:27 ----A---- C:\WINDOWS\system32\DAConn.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\WWAHost.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\WSService.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\WSClient.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\wlidsvc.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\wlidcredprov.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\wlidcli.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\Utilman.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\tpmvsc.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\StructuredQuery.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\sppsvc.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\sppc.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\slc.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\scrrun.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\scrobj.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\OEMLicense.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\korwbrkr.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\efswrt.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\easwrt.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\easinvoker.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\drivers\appid.sys 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\deviceregistration.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\cscript.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\AxInstSv.dll 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\AuthHost.exe 2014-09-24 18:23:26 ----A---- C:\WINDOWS\system32\AuthBroker.dll 2014-09-24 18:23:25 ----A---- C:\WINDOWS\system32\WinSCard.dll 2014-09-24 18:23:25 ----A---- C:\WINDOWS\system32\sppwinob.dll 2014-09-24 18:23:25 ----A---- C:\WINDOWS\system32\sppobjs.dll 2014-09-24 18:23:25 ----A---- C:\WINDOWS\system32\sppcomapi.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\winlogon.exe 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\webservices.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\ninput.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\livessp.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\drivers\SerCx2.sys 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\dafBth.dll 2014-09-24 18:23:22 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\wpncore.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\RelPost.exe 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\RacEngn.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\psmsrv.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\pnpclean.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\pcaui.exe 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\pcaui.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\offreg.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\MrmIndexer.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\energytask.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\drivers\luafv.sys 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\dmvdsitf.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\dmdskmgr.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\dfrgui.exe 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\deviceassociation.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\deviceaccess.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\dasHost.exe 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\das.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\bi.dll 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\aitagent.exe 2014-09-24 18:23:21 ----A---- C:\WINDOWS\system32\AepRoam.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\wpnprv.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\winsku.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\winbrand.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\vdsutil.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\vdsdyn.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\vdsbas.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\vds.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\tdh.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\Taskmgr.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\spwizeng.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\sppnp.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\spbcd.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\shimeng.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\setupapi.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\setbcdlocale.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\scavengeui.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\ocsetapi.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\newdev.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\migisol.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\mcbuilder.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\fsutil.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\diskpart.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\bcdedit.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\autofmt.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\autoconv.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\autochk.exe 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\apphelp.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\aelupsvc.dll 2014-09-24 18:23:20 ----A---- C:\WINDOWS\system32\ActionQueue.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\WSDApi.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\wldp.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\wimserv.exe 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\wimgapi.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\WimBootCompress.ini 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\untfs.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\sysmain.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\ReAgentc.exe 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\powercfg.exe 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\drivers\fileinfo.sys 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\DismApi.dll 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\Dism.exe 2014-09-24 18:23:19 ----A---- C:\WINDOWS\system32\bcdboot.exe 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\systemreset.exe 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\SysResetErr.exe 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\slpts.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\recimg.exe 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\rdbui.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\perftrack.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\pcasvc.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\fhsvcctl.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\fhevents.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\fhcfg.dll 2014-09-24 18:23:16 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys 2014-09-24 18:23:15 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\wscinterop.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\wscapi.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\taskhostex.exe 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\taskhost.exe 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\taskeng.exe 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\netid.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\msched.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\MMDevAPI.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\miutils.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\mdmregistration.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll 2014-09-24 18:23:15 ----A---- C:\WINDOWS\system32\DscCore.dll 2014-09-24 18:23:14 ----AH---- C:\WINDOWS\SYSWOW64\ext-ms-win-session-winsta-l1-1-0.dll 2014-09-24 18:23:14 ----AH---- C:\WINDOWS\SYSWOW64\ext-ms-win-ntuser-private-l1-1-1.dll 2014-09-24 18:23:14 ----AH---- C:\WINDOWS\SYSWOW64\ext-ms-win-ntuser-private-l1-1-0.dll 2014-09-24 18:23:14 ----AH---- C:\WINDOWS\SYSWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll 2014-09-24 18:23:14 ----AH---- C:\WINDOWS\SYSWOW64\ext-ms-win-kernel32-package-l1-1-1.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeResults.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\wbiosrvc.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\wbengine.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\wbadmin.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\vmrdvcore.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\sdclt.exe 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\kd_02_8086.dll 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\drivers\http.sys 2014-09-24 18:23:14 ----A---- C:\WINDOWS\system32\BioCredProv.dll 2014-09-24 18:23:13 ----A---- C:\WINDOWS\SYSWOW64\werui.dll 2014-09-24 18:23:13 ----A---- C:\WINDOWS\SYSWOW64\imm32.dll 2014-09-24 18:23:13 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll 2014-09-24 18:23:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll 2014-09-24 18:23:10 ----A---- C:\WINDOWS\SYSWOW64\riched20.dll 2014-09-24 18:23:10 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll 2014-09-24 18:23:10 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll 2014-09-24 18:23:10 ----A---- C:\WINDOWS\SYSWOW64\f3ahvoas.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\wer.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll 2014-09-24 18:23:09 ----A---- C:\WINDOWS\SYSWOW64\acppage.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\WSClient.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\Utilman.exe 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\OEMLicense.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\ninput.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\korwbrkr.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\SYSWOW64\clrhost.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\WinTypes.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\samsrv.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\samlib.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\oleaut32.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\ncryptsslp.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\dpapisrv.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\crypt32.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\combase.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\clrhost.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\bcrypt.dll 2014-09-24 18:23:08 ----A---- C:\WINDOWS\system32\authz.dll 2014-09-24 18:23:07 ----AH---- C:\WINDOWS\system32\ext-ms-win-session-winsta-l1-1-0.dll 2014-09-24 18:23:07 ----AH---- C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-1.dll 2014-09-24 18:23:07 ----AH---- C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-0.dll 2014-09-24 18:23:07 ----AH---- C:\WINDOWS\system32\ext-ms-win-kernel32-package-l1-1-1.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\SYSWOW64\SSShim.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\SYSWOW64\PkgMgr.exe 2014-09-24 18:23:07 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\wincorlib.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\sspicli.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\smss.exe 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\rpcss.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\PSHED.DLL 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\powrprof.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\PkgMgr.exe 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\imagehlp.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\drivers\VerifierExt.sys 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\drivers\pdc.sys 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\ci.dll 2014-09-24 18:23:07 ----A---- C:\WINDOWS\system32\bcd.dll 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\UCX01000.SYS 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\portcls.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\BtaMPM.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys 2014-09-24 18:23:06 ----A---- C:\WINDOWS\system32\drivers\acpi.sys 2014-09-24 18:13:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2014-09-24 18:08:26 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll 2014-09-24 18:07:10 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe 2014-09-24 18:07:10 ----A---- C:\WINDOWS\system32\poqexec.exe 2014-09-24 17:54:22 ----D---- C:\WINDOWS\SKB 2014-09-24 17:54:22 ----D---- C:\WINDOWS\ShellNew 2014-09-24 17:54:22 ----D---- C:\Program Files\Windows Journal 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\umrdp.dll 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\SensorsCpl.dll 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\RotMgr.dll 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\mblctr.exe 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\hwrreg.exe 2014-09-24 17:54:18 ----A---- C:\WINDOWS\system32\hwrcomp.exe 2014-09-24 17:54:16 ----A---- C:\WINDOWS\SYSWOW64\SensorsCpl.dll 2014-09-24 17:54:16 ----A---- C:\WINDOWS\SYSWOW64\rdpendp.dll 2014-09-24 17:54:16 ----A---- C:\WINDOWS\system32\sensrsvc.dll 2014-09-24 17:54:14 ----A---- C:\WINDOWS\system32\jnwmon.dll 2014-09-24 17:54:13 ----A---- C:\WINDOWS\system32\rdpinput.exe 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\StikyNot.exe 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\SNTSearch.dll 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\SensorPerformanceEvents.dll 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\rfxvmt.dll 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\rdpendp.dll 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys 2014-09-24 17:54:12 ----A---- C:\WINDOWS\system32\dfdts.dll 2014-09-24 17:54:10 ----A---- C:\WINDOWS\system32\wpnpinst.exe 2014-09-24 17:54:10 ----A---- C:\WINDOWS\system32\SnippingTool.exe 2014-09-24 17:54:10 ----A---- C:\WINDOWS\system32\inetppui.dll 2014-09-24 17:54:10 ----A---- C:\WINDOWS\system32\inetpp.dll 2014-09-24 17:54:10 ----A---- C:\WINDOWS\system32\DFDWiz.exe 2014-09-24 17:54:07 ----A---- C:\WINDOWS\system32\drivers\terminpt.sys 2014-09-24 17:36:19 ----A---- C:\WINDOWS\system32\perfi013.dat 2014-09-24 17:36:19 ----A---- C:\WINDOWS\system32\perfh013.dat 2014-09-24 17:36:19 ----A---- C:\WINDOWS\system32\perfd013.dat 2014-09-24 17:36:19 ----A---- C:\WINDOWS\system32\perfc013.dat 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\winrm 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\sysprep 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\slmgr 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\nl 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\en 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\drivers\nl-NL 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US 2014-09-24 17:36:10 ----D---- C:\WINDOWS\SYSWOW64\0409 2014-09-24 17:36:10 ----D---- C:\WINDOWS\nl-NL 2014-09-24 17:36:09 ----D---- C:\WINDOWS\SYSWOW64\WCN 2014-09-24 17:36:09 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts 2014-09-24 17:36:09 ----D---- C:\WINDOWS\system32\winrm 2014-09-24 17:36:09 ----D---- C:\WINDOWS\system32\slmgr 2014-09-24 17:36:09 ----D---- C:\WINDOWS\system32\nl 2014-09-24 17:36:09 ----D---- C:\WINDOWS\system32\en 2014-09-24 17:36:09 ----D---- C:\WINDOWS\system32\0409 2014-09-24 17:36:08 ----D---- C:\WINDOWS\system32\WCN 2014-09-24 17:36:08 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts 2014-09-24 17:36:08 ----D---- C:\WINDOWS\system32\drivers\nl-NL 2014-09-24 17:36:08 ----D---- C:\WINDOWS\system32\drivers\en-US ======List of files/folders modified in the last 1 month====== 2014-10-21 13:39:19 ----HD---- C:\Program Files\WindowsApps 2014-10-21 13:38:46 ----D---- C:\WINDOWS\Microsoft.NET 2014-10-21 13:38:32 ----D---- C:\WINDOWS\AppReadiness 2014-10-21 13:34:50 ----D---- C:\WINDOWS\Temp 2014-10-21 13:33:13 ----RD---- C:\Program Files 2014-10-21 13:31:00 ----D---- C:\WINDOWS\system32\sru 2014-10-21 13:27:06 ----A---- C:\WINDOWS\SYSWOW64\log.txt 2014-10-21 13:25:08 ----D---- C:\WINDOWS\Inf 2014-10-20 11:19:34 ----RD---- C:\WINDOWS\System32 2014-10-20 08:45:07 ----D---- C:\WINDOWS\system32\wdi 2014-10-19 22:34:04 ----D---- C:\ProgramData\boost_interprocess 2014-10-19 17:25:25 ----D---- C:\WINDOWS\Logs 2014-10-19 15:47:43 ----SHD---- C:\WINDOWS\Installer 2014-10-19 15:47:14 ----D---- C:\Program Files\Common Files 2014-10-19 15:47:14 ----D---- C:\Program Files (x86)\Common Files 2014-10-19 15:46:35 ----D---- C:\WINDOWS\SysWOW64 2014-10-19 15:45:47 ----D---- C:\WINDOWS\system32\DriverStore 2014-10-19 15:45:18 ----D---- C:\Windows 2014-10-19 15:07:54 ----RD---- C:\WINDOWS\assembly 2014-10-19 14:40:20 ----HD---- C:\ProgramData 2014-10-19 13:17:04 ----D---- C:\WINDOWS\debug 2014-10-19 13:03:19 ----RD---- C:\Program Files (x86) 2014-10-19 12:48:00 ----D---- C:\WINDOWS\SoftwareDistribution 2014-10-19 12:39:47 ----D---- C:\WINDOWS\twain_32 2014-10-18 22:35:14 ----D---- C:\WINDOWS\system32\catroot 2014-10-18 17:27:04 ----D---- C:\WINDOWS\system32\Tasks 2014-10-18 16:25:42 ----D---- C:\WINDOWS\system32\config 2014-10-18 16:16:09 ----D---- C:\WINDOWS\CbsTemp 2014-10-18 16:15:57 ----D---- C:\WINDOWS\WinSxS 2014-10-18 13:36:56 ----D---- C:\WINDOWS\system32\catroot2 2014-10-17 23:07:37 ----D---- C:\WINDOWS\system32\drivers 2014-10-17 23:07:29 ----RD---- C:\WINDOWS\ToastData 2014-10-17 23:07:29 ----D---- C:\WINDOWS\system32\migration 2014-10-17 23:07:26 ----D---- C:\WINDOWS\SYSWOW64\nl-NL 2014-10-17 23:07:26 ----D---- C:\WINDOWS\system32\nl-NL 2014-10-17 23:07:18 ----D---- C:\WINDOWS\WinStore 2014-10-17 23:07:14 ----D---- C:\WINDOWS\SYSWOW64\wbem 2014-10-17 23:07:14 ----D---- C:\WINDOWS\SYSWOW64\migration 2014-10-17 23:07:14 ----D---- C:\WINDOWS\system32\wbem 2014-10-17 23:07:14 ----D---- C:\WINDOWS\system32\en-US 2014-10-16 15:10:52 ----D---- C:\WINDOWS\SYSWOW64\config 2014-10-16 08:35:01 ----SD---- C:\ProgramData\Microsoft 2014-10-15 23:41:46 ----D---- C:\WINDOWS\system32\restore 2014-10-15 23:08:22 ----D---- C:\WINDOWS\system32\drivers\UMDF 2014-10-15 23:06:45 ----D---- C:\WINDOWS\system32\NDF 2014-10-15 23:02:35 ----D---- C:\WINDOWS\system32\LogFiles 2014-10-15 23:00:28 ----SHD---- C:\$Recycle.Bin 2014-10-15 22:23:02 ----D---- C:\WINDOWS\MediaViewer 2014-10-15 22:23:02 ----D---- C:\WINDOWS\FileManager 2014-10-15 22:23:02 ----D---- C:\WINDOWS\Camera 2014-10-15 22:22:28 ----D---- C:\Program Files\Internet Explorer 2014-10-15 22:22:28 ----D---- C:\Program Files (x86)\Internet Explorer 2014-10-15 21:56:46 ----D---- C:\WINDOWS\rescache 2014-10-15 21:56:23 ----D---- C:\Program Files\Windows NT 2014-10-15 21:54:05 ----D---- C:\WINDOWS\Registration 2014-10-15 21:45:11 ----RSD---- C:\WINDOWS\Media 2014-10-15 21:44:51 ----HD---- C:\WINDOWS\ELAMBKUP 2014-10-15 21:38:50 ----D---- C:\WINDOWS\SYSWOW64\drivers 2014-10-15 21:38:50 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e 2014-10-15 21:38:50 ----D---- C:\WINDOWS\system32\Sysprep 2014-10-15 21:38:47 ----D---- C:\WINDOWS\system32\OEM 2014-10-15 21:38:45 ----RSD---- C:\WINDOWS\Fonts 2014-10-15 21:38:45 ----D---- C:\WINDOWS\Tasks 2014-10-15 21:38:45 ----D---- C:\WINDOWS\Help 2014-10-15 21:38:45 ----D---- C:\ProgramData\regid.1991-06.com.microsoft 2014-10-15 21:37:02 ----D---- C:\WINDOWS\SYSWOW64\SMI 2014-10-15 21:37:02 ----D---- C:\WINDOWS\SYSWOW64\sda 2014-10-15 21:37:02 ----D---- C:\WINDOWS\SYSWOW64\oobe 2014-10-15 21:37:01 ----D---- C:\WINDOWS\SYSWOW64\MUI 2014-10-15 21:37:01 ----D---- C:\WINDOWS\SYSWOW64\migwiz 2014-10-15 21:37:01 ----D---- C:\WINDOWS\SYSWOW64\LogFiles 2014-10-15 21:37:00 ----D---- C:\WINDOWS\SYSWOW64\IME 2014-10-15 21:37:00 ----D---- C:\WINDOWS\SYSWOW64\fr-FR 2014-10-15 21:37:00 ----D---- C:\WINDOWS\SYSWOW64\en-US 2014-10-15 21:36:59 ----D---- C:\WINDOWS\SYSWOW64\Dism 2014-10-15 21:36:59 ----D---- C:\WINDOWS\SYSWOW64\catroot 2014-10-15 21:36:56 ----D---- C:\WINDOWS\system32\WinBioPlugIns 2014-10-15 21:36:55 ----D---- C:\WINDOWS\system32\SystemResetPlatform 2014-10-15 21:36:55 ----D---- C:\WINDOWS\system32\spool 2014-10-15 21:36:46 ----D---- C:\WINDOWS\system32\oobe 2014-10-15 21:36:44 ----D---- C:\WINDOWS\system32\MUI 2014-10-15 21:36:43 ----D---- C:\WINDOWS\system32\IME 2014-10-15 21:36:43 ----D---- C:\WINDOWS\system32\fr-FR 2014-10-15 21:36:42 ----D---- C:\WINDOWS\system32\Dism 2014-10-15 21:35:39 ----D---- C:\WINDOWS\system32\Boot 2014-10-15 21:35:36 ----D---- C:\WINDOWS\PolicyDefinitions 2014-10-15 21:35:32 ----RD---- C:\WINDOWS\ImmersiveControlPanel 2014-10-15 21:35:32 ----D---- C:\WINDOWS\IME 2014-10-15 21:35:31 ----D---- C:\WINDOWS\DigitalLocker 2014-10-15 21:35:29 ----RD---- C:\Users 2014-10-15 21:35:28 ----D---- C:\ProgramData\PRICache 2014-10-15 21:35:23 ----SHD---- C:\Program Files (x86)\Windows Sidebar 2014-10-15 21:35:23 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2014-10-15 21:35:22 ----D---- C:\Program Files (x86)\Windows Media Player 2014-10-15 21:35:22 ----D---- C:\Program Files (x86)\Windows Mail 2014-10-15 21:35:13 ----SHD---- C:\Program Files\Windows Sidebar 2014-10-15 21:35:13 ----D---- C:\Program Files\Windows Photo Viewer 2014-10-15 21:35:13 ----D---- C:\Program Files\Windows Media Player 2014-10-15 21:35:13 ----D---- C:\Program Files\Windows Mail 2014-10-15 21:35:11 ----D---- C:\Program Files\Common Files\System 2014-10-15 21:35:11 ----D---- C:\Program Files\Common Files\microsoft shared 2014-10-15 21:33:36 ----D---- C:\WINDOWS\system32\Recovery 2014-10-15 20:08:42 ----D---- C:\WINDOWS\AUInstallAgent 2014-10-15 19:26:43 ----D---- C:\WINDOWS\system32\drivers\fr-FR 2014-10-14 18:25:16 ----D---- C:\ProgramData\Norton 2014-10-12 13:53:20 ----D---- C:\ProgramData\BackupManager 2014-10-08 23:21:01 ----D---- C:\Program Files\Common Files\mcafee 2014-10-08 23:21:01 ----D---- C:\Program Files (x86)\Qualcomm Atheros 2014-10-04 19:12:48 ----D---- C:\ProgramData\McAfee 2014-10-04 18:33:34 ----D---- C:\ProgramData\EgisTec IPS 2014-10-04 18:26:14 ----HD---- C:\OEM 2014-10-04 18:25:40 ----D---- C:\ProgramData\OEM 2014-09-24 21:03:12 ----D---- C:\WINDOWS\apppatch 2014-09-24 21:03:11 ----D---- C:\Program Files\Windows Defender 2014-09-24 21:03:11 ----D---- C:\Program Files (x86)\Windows Defender 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\zh-TW 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\zh-HK 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\zh-CN 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\uk-UA 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\tr-TR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\th-TH 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\sv-SE 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\sl-SI 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\sk-SK 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\ru-RU 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\ro-RO 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\pt-PT 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\pt-BR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\pl-PL 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\nb-NO 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\lv-LV 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\lt-LT 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\ko-KR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\ja-JP 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\it-IT 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\hu-HU 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\hr-HR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\he-IL 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\fi-FI 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\et-EE 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\es-ES 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\en-GB 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\el-GR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\de-DE 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\da-DK 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\bg-BG 2014-09-24 21:03:10 ----D---- C:\WINDOWS\SYSWOW64\ar-SA 2014-09-24 21:03:10 ----D---- C:\WINDOWS\system32\pt-PT 2014-09-24 21:03:10 ----D---- C:\WINDOWS\system32\pt-BR 2014-09-24 21:03:10 ----D---- C:\WINDOWS\system32\it-IT 2014-09-24 21:03:10 ----D---- C:\WINDOWS\system32\he-IL 2014-09-24 21:03:10 ----D---- C:\WINDOWS\system32\bg-BG 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\zh-TW 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\zh-HK 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\zh-CN 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\uk-UA 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\tr-TR 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\th-TH 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\sv-SE 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\sr-Latn-RS 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\sl-SI 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\sk-SK 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\ru-RU 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\ro-RO 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\pl-PL 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\nb-NO 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\lv-LV 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\lt-LT 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\ko-KR 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\ja-JP 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\hu-HU 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\hr-HR 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\fi-FI 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\et-EE 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\es-ES 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\en-GB 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\el-GR 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\de-DE 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\da-DK 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\cs-CZ 2014-09-24 21:03:09 ----D---- C:\WINDOWS\system32\ar-SA 2014-09-24 21:03:06 ----D---- C:\WINDOWS\system32\setup 2014-09-24 21:03:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates 2014-09-24 21:03:03 ----D---- C:\WINDOWS\SYSWOW64\setup 2014-09-24 21:03:01 ----D---- C:\WINDOWS\SYSWOW64\InputMethod 2014-09-24 21:02:55 ----D---- C:\Program Files (x86)\Windows Multimedia Platform 2014-09-24 21:02:54 ----D---- C:\Program Files\Windows Portable Devices 2014-09-24 21:02:54 ----D---- C:\Program Files\Windows Multimedia Platform 2014-09-24 21:02:54 ----D---- C:\Program Files (x86)\Windows Portable Devices 2014-09-24 21:02:53 ----D---- C:\WINDOWS\servicing 2014-09-24 21:02:48 ----D---- C:\WINDOWS\system32\sr-Latn-CS 2014-09-24 21:02:47 ----D---- C:\WINDOWS\system32\migwiz 2014-09-24 18:25:49 ----ASH---- C:\WINDOWS\system32\desktop.ini 2014-09-24 18:17:01 ----D---- C:\WINDOWS\system32\CodeIntegrity 2014-09-24 18:06:25 ----SD---- C:\WINDOWS\system32\Microsoft 2014-09-24 17:36:09 ----D---- C:\WINDOWS\SYSWOW64\Com 2014-09-24 17:36:08 ----SD---- C:\WINDOWS\system32\dsc 2014-09-24 17:36:08 ----D---- C:\WINDOWS\system32\Com ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 AVGIDSHA;AVGIDSHA; C:\WINDOWS\system32\DRIVERS\avgidsha.sys [2014-06-18 190744] R0 Avgloga;AVG Logging Driver; C:\WINDOWS\system32\DRIVERS\avgloga.sys [2014-07-18 313624] R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx64.sys [2014-08-06 123672] R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx64.sys [2014-06-18 31512] R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952] R0 RapportHades64;RapportHades64; C:\WINDOWS\System32\Drivers\RapportHades64.sys [2014-09-22 289656] R0 RapportKE64;RapportKE64; C:\WINDOWS\System32\Drivers\RapportKE64.sys [2014-09-22 534104] R1 Avgdiska;AVG Disk Driver; C:\WINDOWS\system32\DRIVERS\avgdiska.sys [2014-06-18 153368] R1 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdrivera.sys [2014-07-24 247576] R1 Avgldx64;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx64.sys [2014-08-20 243480] R1 Avgwfpa;AVG Firewall Driver; C:\WINDOWS\system32\DRIVERS\avgwfpa.sys [2014-07-18 273176] R1 ccSet_NARA;NARA Settings Manager; C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [2012-05-26 168608] R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys [2012-12-20 22648] R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys [2012-12-20 20520] R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys [2012-12-20 62776] R1 RapportCerberus_80055;RapportCerberus_80055; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_80055.sys [2014-10-16 761720] R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2014-09-22 445880] R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2014-09-22 557656] R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680] R2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys [2013-11-26 11576] R3 ApfiltrService;@oem24.inf,%Filter.SvcDesc%;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2012-11-13 452472] R3 AthBTPort;@oem9.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-11-10 88728] R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256] R3 BTATH_A2DP;@oem8.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2012-11-10 344216] R3 btath_avdt;@oem8.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2012-11-10 114840] R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-11-10 33944] R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-11-10 178840] R3 BTATH_LWFLT;@oem19.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-11-10 76952] R3 BTATH_RCP;@oem15.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2012-11-10 135832] R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2012-11-10 576152] R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator-service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248] R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy-stuurprogramma; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304] R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth-apparaat (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272] R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;USB-stuurprogramma voor Bluetooth-radio; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920] R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-07-31 4102928] R3 IntcDAud;@oem19.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528] R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS-minipoortstuurprogramma voor Qualcomm Atheros AR81xx PCI-E Ethernet-controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224] R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2014-10-01 25816] R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2014-10-21 129752] R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2014-10-01 64216] R3 MEIx64;@oem22.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784] R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-20 18432] R3 Ps2Kb2Hid;@oem23.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2013-03-22 26736] R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth-apparaat (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424] R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Stuurprogramma voor seriële digitale fotocamera; C:\WINDOWS\system32\DRIVERS\serscan.sys [2013-08-22 11776] R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-07-09 17408] R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB-videoapparaat (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224] R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912] S0 Avgboota;AVG Early Launch Anti-Malware Driver; C:\WINDOWS\system32\DRIVERS\avgboota.sys [2013-09-04 20496] S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Stuurprogramma voor Bluetooth-poort; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640] S3 RSPCIESTOR;@oem2.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2012-08-03 340112] S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Stuurprogramma voor USB-scanner; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704] R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2012-11-10 231040] R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2014-09-05 3364368] R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2014-09-05 293448] R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-26 2449552] R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544] R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-24 2457232] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760] R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864] R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-10-01 1871160] R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-10-01 968504] R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2012-08-15 3943104] R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136] R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2014-09-22 1919256] R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-03-22 93296] R2 StartMenuService;StartMenu8 Service; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [2014-06-06 72992] R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416] R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064] S2 gupdate;Google Update-service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04 116648] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-07 267440] S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000] S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-17 469648] S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-03-22 655624] S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696] S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] S3 gupdatem;Google Update-service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04 116648] S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-10-04 194032] -----------------EOF-----------------