Zoek.exe v5.0.0.0 Updated 24-12-2014 Tool run by User on zo 28/12/2014 at 14:34:58,07. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\User\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 28/12/2014 14:39:53 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\Users\User\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== 7-Zip 9.20 Acer Backup Manager Acer Crystal Eye webcam Acer ePower Management Acer eRecovery Management Acer Registration Acer ScreenSaver Acer VCM Acrobat.com Adobe AIR Adobe Digital Editions 2.0 Adobe Flash Player 15 ActiveX Adobe Flash Player 15 Plugin Adobe Reader XI (11.0.10) - Nederlands Adobe Refresh Manager Adobe SVG Viewer 3.0 Alcor Micro USB Card Reader Apple Application Support Apple Mobile Device Support Apple Software Update Ask Toolbar AVG 2014 Backup Manager Advance Belgium e-ID middleware 4.0.4 (build 7251) Bluetooth Win7 Suite Bonjour Broadcom Gigabit Integrated Controller Brother MFL-Pro Suite DCP-195C CCleaner Conexant HD Audio D3DX10 DAEMON Tools Lite Definition Update for Microsoft Office 2010 (KB2910899) 32-Bit Edition Drush eSobi v2 ExtractNow FastImageResizer (remove only) FileZilla Client 3.6.0.2 GIMP 2.8.2 GlassFish Server Open Source Edition 3.1.2.2 Google Chrome Google Drive Google SketchUp 8 Google Toolbar for Internet Explorer Google Update Helper HDAUDIO Soft Data Fax Modem with SmartCP iCloud Identity Card Intel(R) Control Center Intel(R) Graphics Media Accelerator Driver Intel(R) Management Engine Components Intel(R) Rapid Storage Technology InterVideo WinDVD 8 iTunes Java 7 Update 71 Java Auto Updater Java SE Development Kit 7 Update 17 Junk Mail filter update Launch Manager Malwarebytes Anti-Malware versie 2.0.4.1028 Microsoft .NET Framework 4.5.1 Microsoft .NET Framework 4.5.1 (Nederlands) Microsoft .NET Framework 4.5.1 (NLD) Microsoft Application Error Reporting Microsoft Office Access MUI (Dutch) 2010 Microsoft Office Excel MUI (Dutch) 2010 Microsoft Office Groove MUI (Dutch) 2010 Microsoft Office InfoPath MUI (Dutch) 2010 Microsoft Office OneNote MUI (Dutch) 2010 Microsoft Office Outlook MUI (Dutch) 2010 Microsoft Office PowerPoint MUI (Dutch) 2010 Microsoft Office Professional Plus 2010 Microsoft Office Proof (Dutch) 2010 Microsoft Office Proof (English) 2010 Microsoft Office Proof (French) 2010 Microsoft Office Proof (German) 2010 Microsoft Office Proofing (Dutch) 2010 Microsoft Office Publisher MUI (Dutch) 2010 Microsoft Office Shared MUI (Dutch) 2010 Microsoft Office Word MUI (Dutch) 2010 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Mozilla Firefox 34.0.5 (x86 nl) Mozilla Maintenance Service MSVCRT MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) NetBeans IDE 7.3 Norton Online Backup Notepad++ NTI Backup Now 5 NTI Backup Now Standard NTI Media Maker 8 Nuance PDF Professional 6 OpenOffice.org 3.2 Optical Drive Power Management PaperPort Image Printer PDF Compress 2.02 PDF Shrink 2 PDFCreator PhotoFiltre Picasa 3 QuickTime 7 Rainbow Folders Samsung Kies3 ScanSoft PaperPort 11 Scansoft PDF Professional Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2) Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) Security Update for Microsoft .NET Framework 4.5.1 (KB2972107) Security Update for Microsoft .NET Framework 4.5.1 (KB2972216) Security Update for Microsoft .NET Framework 4.5.1 (KB2978128) Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2) Security Update for Microsoft Excel 2010 (KB2910902) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2553154) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2553284) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2760781) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2810073) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2850016) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition Security Update for Microsoft Office 2010 (KB2881071) 32-Bit Edition Security Update for Microsoft Word 2010 (KB2899519) 32-Bit Edition Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition Shape Collage SkypeT 6.11 Smilebox Stuurprogrammapakket voor Windows - Fedict SmartCard (10/04/2011 4.0.0.5) Sunny Explorer Synaptics Pointing Device Driver Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition Update for Microsoft Office 2010 (KB2494150) Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition Update for Microsoft Office 2010 (KB2597089) 32-Bit Edition Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition Update for Microsoft Office 2010 (KB2889818) 32-Bit Edition Update for Microsoft Office 2010 (KB2889828) 32-Bit Edition Update for Microsoft Office 2010 (KB2910896) 32-Bit Edition Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition Visual Studio 2012 x86 Redistributables Welcome Center WIDCOMM Bluetooth Software Windows 7 Upgrade Advisor Windows Live Communications Platform Windows Live Essentials Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live Sync Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Media Player Firefox Plugin WinRAR archiver XAMPP ZooEasy v10 ==== Running Processes ====================== C:\Windows\System32\smss.exe C:\Windows\system32\csrss.exe C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\winlogon.exe C:\Windows\system32\WLANExt.exe C:\Windows\system32\conhost.exe C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bluetooth Suite\adminservice.exe C:\Program Files\AVG\AVG2014\avgfws.exe C:\Program Files\AVG\AVG2014\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe C:\Program Files\Launch Manager\dsiwmis.exe C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe C:\Program Files\Acer\Registration\GREGsvc.exe C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe C:\Program Files\Acer\Acer VCM\RS_Service.exe C:\Program Files\Acer\Acer Updater\UpdaterService.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent.exe C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\igfxext.exe C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe C:\Program Files\Bluetooth Suite\BtvStack.exe C:\Program Files\Bluetooth Suite\AthBtTray.exe C:\Program Files\Brother\ControlCenter3\brccMCtl.exe C:\Program Files\Nuance\PDF Professional 6\PdfPro6Hook.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe C:\Program Files\AVG\AVG2014\avgui.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Users\User\AppData\Roaming\Smilebox\SmileboxTray.exe C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE C:\Windows\system32\SearchIndexer.exe C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe C:\Program Files\Acer\Acer VCM\AcerVCM.exe C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE C:\Windows\system32\ctfmon.exe C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe C:\Program Files\Common Files\Apple\Internet Services\APSDaemon.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE C:\Windows\system32\wuauclt.exe C:\Users\User\Desktop\zoek.exe C:\Windows\system32\conhost.exe C:\Windows\system32\conhost.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\svchost.exe -k HsfXAudioService C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\svchost.exe -k SDRSVC ==== Deleting Services ====================== ==== System Specs ====================== Windows: Windows 7 Professional Edition Service Pack 1 (Build 7601) Memory (RAM): 2869 MB CPU Info: Intel(R) Core(TM) i5 CPU M 560 @ 2.67GHz CPU Speed: 2658.2 MHz Sound Card: Luidsprekers (Conexant High Def | Display Adapters: Intel(R) HD Graphics | Intel(R) HD Graphics | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Generic PnP Monitor | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: Microsoft Virtual WiFi Miniport Adapter | Broadcom 802.11n Network Adapter | Broadcom NetXtreme Gigabit Ethernet CD / DVD Drives: 2x (F: | G: | ) F: DTSOFT BDROM | G: HL-DT-STDVDRAM GT31N Ports: COM3 LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 222.8GB | D: 222.9GB Hard Disks - Free: C: 142.1GB | D: 143.1GB Manufacturer *: Phoenix BIOS Info: AT/AT COMPATIBLE | 09/24/10 | ACRSYS - 6040000 Time Zone: West-Europa (standaardtijd) Motherboard *: Acer BAP50-CP Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: AVG Internet Security 2014 On-access scanning disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: AVG Internet Security 2014 disabled (Outdated) Firewall: AVG Internet Security 2014 disabled Default Browser: Firefox 34.0.5 Internet Explorer Version: 9.0.8112.16421 Mozilla Firefox version: 34.0.5 (x86 nl) Google Chrome version: 39.0.2171.95 Adobe Reader version: 11.0.10.32 Sun Java version: 1.7.0_71 (32-bit) Flash Player version: 15.0.0.246 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2014-12-16 18:11:26 163A95975E1D8819E653AA3E961371CA 51200 ----a-w- C:\Windows\twain_32.dll 2014-12-16 18:11:18 DBD14D0DB0382DFE96D7B5007DDD5ABE 65024 ----a-w- C:\Windows\bfsvc.exe ====== C:\Users\User\AppData\Local\Temp ==== ====== Java Cache ===== 2014-12-23 11:33:36 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\User\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-43fe6ce6 ====== C:\Windows\system32 ===== 2014-12-24 12:35:18 06FC8A93A4FA1F42A3D1D06694F2B339 419992 ----a-w- C:\Windows\System32\locale.nls 2014-12-24 12:35:15 F1886C30C3E4A7C5513525CBA665AA31 6144 ----a-w- C:\Windows\System32\KBDTAT.DLL 2014-12-24 12:35:15 EB3D06A9EDFDFD12228AD7A9F24D15D6 5632 ----a-w- C:\Windows\System32\KBDRU.DLL 2014-12-24 12:35:15 40FFC65117C4AC69D33DEC6D567392FD 6144 ----a-w- C:\Windows\System32\KBDYAK.DLL 2014-12-24 12:35:15 33DB506498E0419CD50B144DE7CCFC75 6144 ----a-w- C:\Windows\System32\KBDBASH.DLL 2014-12-24 12:35:15 1235259E135F87BF4AE5864A818E1513 6144 ----a-w- C:\Windows\System32\KBDRU1.DLL 2014-12-23 23:23:53 D17954CA6343F43B62637F51996B4E95 23040 ----a-w- C:\Windows\System32\mfpmp.exe 2014-12-23 23:23:53 52096F5F476733F2E2725CF346FF373B 2048 ----a-w- C:\Windows\System32\mferror.dll 2014-12-23 23:23:53 20257A0BFB824B49055A6EEC29C72C03 103424 ----a-w- C:\Windows\System32\mfps.dll 2014-12-23 23:23:52 FF0A6E76FAE624AC74780AB008752F98 3209728 ----a-w- C:\Windows\System32\mf.dll 2014-12-23 23:23:52 60FBCF033FF42A40C916C01A962A8802 50176 ----a-w- C:\Windows\System32\rrinstaller.exe 2014-12-23 22:44:05 AF6655214DEBB2C8446DE843A02AAEBA 99480 ----a-w- C:\Windows\System32\infocardapi.dll 2014-12-23 22:44:03 370FC4421ADE62FC89AC93B345570388 8856 ----a-w- C:\Windows\System32\icardres.dll 2014-12-23 22:43:53 8D466B36076BCD7997838C0DDB69764C 619672 ----a-w- C:\Windows\System32\icardagt.exe 2014-12-23 22:43:46 28A8B99DE70F376B18709E6B07D6A352 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe 2014-12-23 22:29:51 6C4B2E1A25841077084EB9F76FF6FFA7 11410432 ----a-w- C:\Windows\System32\wmp.dll 2014-12-23 22:29:48 02DF0628BE8B64B84D50FBE53549AA3B 12625408 ----a-w- C:\Windows\System32\wmploc.DLL 2014-12-22 12:45:38 CC09E0C9A2D89C6E71D093DC8BD121B7 1168384 ----a-w- C:\Windows\System32\crypt32.dll 2014-12-22 12:45:38 7CA1BECEA5DE2643ADDAD32670E7A4C9 140288 ----a-w- C:\Windows\System32\cryptsvc.dll 2014-12-22 12:45:38 7B851A8018B1EA00A69707A390004884 103936 ----a-w- C:\Windows\System32\cryptnet.dll 2014-12-22 12:43:10 A3B1D1312602280839A4A2AFBDFD066E 163840 ----a-w- C:\Windows\System32\scrrun.dll 2014-12-22 12:43:10 979D74799EA6C8B8167869A68DF5204A 141824 ----a-w- C:\Windows\System32\wscript.exe 2014-12-22 12:43:10 09F65975C1C9793B923BB52A7FA83453 121856 ----a-w- C:\Windows\System32\wshom.ocx 2014-12-22 12:43:09 A3A35EE79C64A640152B3113E6E254E2 126976 ----a-w- C:\Windows\System32\cscript.exe 2014-12-22 12:43:06 E227B810296AA27E6C69307A7B6456E5 1389056 ----a-w- C:\Windows\System32\msxml6.dll 2014-12-22 12:43:06 2E673E776136354ECFB57BFD62E7EC3D 2048 ----a-w- C:\Windows\System32\msxml6r.dll 2014-12-22 12:42:50 CB55B9AAB060C803BE4AD229AA0FEC28 2363904 ----a-w- C:\Windows\System32\msi.dll 2014-12-22 12:42:19 786B9C958A4F217322C24C736263C51F 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe 2014-12-22 12:41:42 DBF9369D554A229DB0D554BB95A4B0AA 305152 ----a-w- C:\Windows\System32\gdi32.dll 2014-12-22 12:41:11 537184E7306E06BB22C5B93D2AFA4DF8 1237504 ----a-w- C:\Windows\System32\msxml3.dll 2014-12-22 12:41:11 09FA271EE1F9AD68B2D1C1C210F4B71F 2048 ----a-w- C:\Windows\System32\msxml3r.dll 2014-12-22 12:40:08 FC455888F04CD3B5285168DEFB90C55F 159744 ----a-w- C:\Windows\System32\aepic.dll 2014-12-22 12:40:08 E5C2BF29D0FEC787DA91D29787CDB192 873984 ----a-w- C:\Windows\System32\aeinv.dll 2014-12-22 12:40:08 DEB2A13BDCD5939413840AF81CB91BFA 728576 ----a-w- C:\Windows\System32\appraiser.dll 2014-12-22 12:40:08 DAC0DB8F0F6E6AF26BEBF0538B1BFCB0 315392 ----a-w- C:\Windows\System32\devinv.dll 2014-12-22 12:40:08 8CFB82DF99F9555AF4E4FF33F56A7759 337920 ----a-w- C:\Windows\System32\generaltel.dll 2014-12-22 12:40:08 46ED960D3A6FFF26F73AFAAAD7451B92 610304 ----a-w- C:\Windows\System32\invagent.dll 2014-12-22 12:40:07 F25EC3FC42D2689301B1351E7FB6B537 202752 ----a-w- C:\Windows\System32\aepdu.dll 2014-12-22 12:39:58 45FBAFFA68CBC29AC2563985CEE72B9C 24576 ----a-w- C:\Windows\System32\cryptdlg.dll 2014-12-22 12:38:32 37C395C075E6FA66623C82DE50A8FAED 372736 ----a-w- C:\Windows\System32\rastls.dll 2014-12-22 12:38:03 E0B8C6B1EA1EF94747E966E9093FB968 1289096 ----a-w- C:\Windows\System32\ntdll.dll 2014-12-22 12:38:03 401D25136E26B237D77DA1BF1198B3BD 619520 ----a-w- C:\Windows\System32\tdh.dll 2014-12-22 12:38:02 D67472125471784DE7147946EDA25FEB 640512 ----a-w- C:\Windows\System32\advapi32.dll 2014-12-22 12:37:58 8D338464B851DDD76E2B876A3E09EB70 442880 ----a-w- C:\Windows\System32\AUDIOKSE.dll 2014-12-22 12:37:57 FD79B005E849DF3D7E9B5EB7A637C528 374784 ----a-w- C:\Windows\System32\AudioEng.dll 2014-12-22 12:37:57 F4157B3CECF19B1C266C83AFF051C97A 475136 ----a-w- C:\Windows\System32\audiosrv.dll 2014-12-22 12:37:57 AA7325057A1E1CC401798C0B1238E182 195584 ----a-w- C:\Windows\System32\AudioSes.dll 2014-12-22 12:37:57 639B0199F4D995CD63D7328799A92B57 275968 ----a-w- C:\Windows\System32\EncDump.dll 2014-12-22 12:37:54 2A01B40C8334A8124001CFAC256FCA83 102608 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll 2014-12-22 12:37:52 F6AF80581A85F657CFCD8ADC7ED0B3DA 2379264 ----a-w- C:\Windows\System32\win32k.sys 2014-12-22 12:37:50 DA8AAF7E56F698608A89542131F74818 40960 ----a-w- C:\Windows\System32\wwanprotdim.dll 2014-12-22 12:37:50 7CC38741B8F68F1E0D5D79DA6123666A 185344 ----a-w- C:\Windows\System32\wwansvc.dll 2014-12-22 12:37:48 FC415B303B1ECF80B5F130A1F7203D02 492544 ----a-w- C:\Windows\System32\win32spl.dll 2014-12-22 12:37:46 F632602316001D517F4EF3B53B9A6C33 26112 ----a-w- C:\Windows\System32\lpk.dll 2014-12-22 12:37:46 8CC4638FA7B5B921B9080CF962582C0B 70656 ----a-w- C:\Windows\System32\fontsub.dll 2014-12-22 12:37:46 7D27E63B54DB093BB0D9E95F81094D75 34304 ----a-w- C:\Windows\System32\atmlib.dll 2014-12-22 12:37:46 5C6B44F9CAAC475B7B9EBBC29CB7F065 295424 ----a-w- C:\Windows\System32\atmfd.dll 2014-12-22 12:37:46 2342EC9254F4C60CA98441BD65C89E12 10240 ----a-w- C:\Windows\System32\dciman32.dll 2014-12-22 12:37:43 E2ED66FAF894F545EB083AC5F5763854 434688 ----a-w- C:\Windows\System32\scavengeui.dll 2014-12-22 12:37:28 CC917AC4D3F8756FF13174980B474791 43008 ----a-w- C:\Windows\System32\certenc.dll 2014-12-22 12:37:28 0D52559AEF4AA5EAC82F530617032283 903168 ----a-w- C:\Windows\System32\certutil.exe 2014-12-22 12:37:03 B580A6B9932669DE703001AEE66D5BB1 259584 ----a-w- C:\Windows\System32\msv1_0.dll 2014-12-22 12:37:03 8FE6AB488ECDC60930CE973A7051B0D4 221184 ----a-w- C:\Windows\System32\ncrypt.dll 2014-12-22 12:37:03 8CFAEFCD7F1E004950FCAE870A501B3E 248832 ----a-w- C:\Windows\System32\schannel.dll 2014-12-22 12:37:02 9CEA80FFC617E6B6DD7B52E6225C0D38 65536 ----a-w- C:\Windows\System32\TSpkg.dll 2014-12-22 12:37:02 8205E55DFB11809E5F2AAD1C48840535 17408 ----a-w- C:\Windows\System32\credssp.dll 2014-12-22 12:37:02 37BC079204BF9B087D6DE6B728908B4B 172032 ----a-w- C:\Windows\System32\wdigest.dll 2014-12-22 12:36:31 140D9F911182357626165EA0BEB98C4F 156672 ----a-w- C:\Windows\System32\ncsi.dll 2014-12-22 12:36:30 58F67245D041FBE7AF88F4EAF79DF0FA 499712 ----a-w- C:\Windows\System32\iphlpsvc.dll 2014-12-22 12:36:30 50E0DD0A5B8D8BC353578F2F73926697 52224 ----a-w- C:\Windows\System32\nlaapi.dll 2014-12-22 12:36:30 5078492B9CAC9CB721698DB51F039035 175104 ----a-w- C:\Windows\System32\netcorehc.dll 2014-12-22 12:36:30 374071043F9E4231EE43BE2BB48DD36D 242176 ----a-w- C:\Windows\System32\nlasvc.dll 2014-12-22 12:36:30 23FC8068953C9BE2D63AE4EF1129112A 18944 ----a-w- C:\Windows\System32\netevent.dll 2014-12-22 12:35:58 50C73E54062BA252350F3F29580E28DA 2048 ----a-w- C:\Windows\System32\tzres.dll 2014-12-22 12:35:43 BBA80D3CAB22620A6AC9BB603386EE33 519680 ----a-w- C:\Windows\System32\qdvd.dll 2014-12-22 12:35:38 C6A991D7DF17EBD8DE4739CD1F283133 646144 ----a-w- C:\Windows\System32\osk.exe 2014-12-22 12:35:14 0805487A6036A9F9C4E7AF7FEF835529 1620992 ----a-w- C:\Windows\System32\WMVDECOD.DLL 2014-12-22 12:34:54 CADC4CFE957C24984FFA718AB7E4EF3C 101824 ----a-w- C:\Windows\System32\consent.exe 2014-12-22 12:34:54 9DA1CCDBBF8136AC2383C2624CA8CD14 337408 ----a-w- C:\Windows\System32\msihnd.dll 2014-12-22 12:34:54 43CD23B65CBF04D6F8ACA984B0EF93FE 1805824 ----a-w- C:\Windows\System32\authui.dll 2014-12-22 12:34:36 492FF9C530EC0352B3C904CE9898269D 509440 ----a-w- C:\Windows\System32\qedit.dll 2014-12-22 12:34:32 A8DDB7ACB122FC36FF0D7C9B3099A380 793600 ----a-w- C:\Windows\System32\TSWorkspace.dll 2014-12-22 12:33:49 D5D5BBF6AA45D820BAA0BD1303B8AAF6 81560 ----a-w- C:\Windows\System32\mscories.dll 2014-12-22 12:33:49 A139A5E6B34F136405B030EA04595A20 156824 ----a-w- C:\Windows\System32\mscorier.dll 2014-12-22 12:33:49 8580484193CE0A0788830FBAB97CF13B 1131664 ----a-w- C:\Windows\System32\dfshim.dll 2014-12-22 12:33:45 D3FE7135827884946E5ED4E4DD96B472 10752 ----a-w- C:\Windows\System32\msfeedssync.exe 2014-12-22 12:33:45 823B559B2EF3D86DB920EA16102858E1 353792 ----a-w- C:\Windows\System32\dxtmsft.dll 2014-12-22 12:33:45 70DD19C20344660B1D32057603A9820D 11776 ----a-w- C:\Windows\System32\mshta.exe 2014-12-22 12:33:45 5281C1E96FDE868A822260478694BA54 421376 ----a-w- C:\Windows\System32\vbscript.dll 2014-12-22 12:33:45 407FD4AAE5E119A441CCEAA4C3276DDF 717824 ----a-w- C:\Windows\System32\jscript.dll 2014-12-22 12:33:45 3F0A7F435BAB0ED4070BBCE73F1918F3 1139712 ----a-w- C:\Windows\System32\urlmon.dll 2014-12-22 12:33:45 117980ADC4A9E349571810D20B14BFB8 41472 ----a-w- C:\Windows\System32\msfeedsbs.dll 2014-12-22 12:33:44 F18D4C903AE56BD9852D1D9E02CF1730 1427968 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-12-22 12:33:44 E633199D0EE2682618FA5B762D892F04 607744 ----a-w- C:\Windows\System32\msfeeds.dll 2014-12-22 12:33:44 D32B633111A9F99F8DCE36F1A6278FC7 231936 ----a-w- C:\Windows\System32\url.dll 2014-12-22 12:33:44 898479188B3DBCB7F2BAC888D6456636 1802752 ----a-w- C:\Windows\System32\iertutil.dll 2014-12-22 12:33:44 5C3D2065153E4A4273DEDD87A8BC1805 65536 ----a-w- C:\Windows\System32\jsproxy.dll 2014-12-22 12:33:43 ED7DBB46D75BD5DE33E9E06C7CCDC4E8 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2014-12-22 12:33:43 C23F63949092BC7086BD23743A28C46B 176640 ----a-w- C:\Windows\System32\ieui.dll 2014-12-22 12:33:43 AA680F0065A505118BDD9181BCE7C83D 1129472 ----a-w- C:\Windows\System32\wininet.dll 2014-12-22 12:33:43 5310BF0FF12033B7F79F163805BE721A 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2014-12-22 12:33:43 4D6B5B1CE39F6A2477FDE3117D84BDAB 367104 ----a-w- C:\Windows\System32\html.iec 2014-12-22 12:33:42 7247B8F630630FCF495B809962D52970 73216 ----a-w- C:\Windows\System32\mshtmled.dll 2014-12-22 12:33:42 5E251125799567959443D8F466DBEA28 223232 ----a-w- C:\Windows\System32\dxtrans.dll 2014-12-22 12:33:42 4C0FA381EC7348F05432B2976924A031 1810944 ----a-w- C:\Windows\System32\jscript9.dll 2014-12-22 12:33:41 829532FD1584422EB7F4C49F767D1E4B 9740800 ----a-w- C:\Windows\System32\ieframe.dll 2014-12-22 12:33:40 91F488C0ED1D8B1FDC112F95A4965CC6 12369920 ----a-w- C:\Windows\System32\mshtml.dll 2014-12-22 12:31:42 0F39AC3274312EFFD03928291E8BA7CA 67584 ----a-w- C:\Windows\System32\packager.dll 2014-12-22 12:31:40 EAF4712B706936C0B10D3B5319B37E81 81920 ----a-w- C:\Windows\System32\davclnt.dll 2014-12-22 12:31:40 75E8EBD7040CE238684333F97014762A 205824 ----a-w- C:\Windows\System32\WebClnt.dll 2014-12-22 12:31:22 2C4A87CA8C00E98EFDCFA2E8EC9A3503 180224 ----a-w- C:\Windows\System32\shdocvw.dll 2014-12-22 12:31:09 9EA3783672D21817B9DF1061B54C3B3C 155136 ----a-w- C:\Windows\System32\charmap.exe 2014-12-22 12:31:06 B9C54120F46392100478F58F374E5709 679424 ----a-w- C:\Windows\System32\IKEEXT.DLL 2014-12-22 12:31:05 F0D0E883EBBDC7615DC9EDEA0FFB2817 216576 ----a-w- C:\Windows\System32\FWPUCLNT.DLL 2014-12-22 12:31:05 CE2A48CD0D2B39FB77FA4797C6434E71 656896 ----a-w- C:\Windows\System32\nshwfp.dll 2014-12-22 12:30:52 3ABACF6D4EBEA5EF3014FEFA1D8FF5F8 3221504 ----a-w- C:\Windows\System32\mstscax.dll 2014-12-22 12:30:51 0DBD0B4D4766CADEB8C30242A0611395 1051136 ----a-w- C:\Windows\System32\mstsc.exe 2014-12-22 12:30:49 FD67683FBA9B2C4BB551780BD8846F64 157696 ----a-w- C:\Windows\System32\winsta.dll 2014-12-22 12:30:49 B4203FC65D4C0D7A0B7A02AFD13472BB 130048 ----a-w- C:\Windows\System32\rdpcorekmts.dll 2014-12-22 12:30:49 97896EE4254176CFDD9010B5B243B89F 131584 ----a-w- C:\Windows\System32\aaclient.dll 2014-12-22 12:30:24 72E953215CADE1A726C04AAFDF6B463D 49152 ----a-w- C:\Windows\System32\taskhost.exe 2014-12-22 12:30:18 EF71BA5DF59034962B0C62314A71351A 193536 ----a-w- C:\Windows\System32\dhcpcore6.dll 2014-12-22 12:30:18 81F6C1AE23B1C493D9E996C3103915D7 44032 ----a-w- C:\Windows\System32\dhcpcsvc6.dll 2014-12-22 12:29:45 75F5E1FE8D55CF8E577E0EC5F2290D3F 530432 ----a-w- C:\Windows\System32\comctl32.dll 2014-12-22 12:29:38 E94C583CDE2348950155F2AF2876F34D 231424 ----a-w- C:\Windows\System32\mswsock.dll 2014-12-22 12:29:35 EDA54D2E17C0271D2CDA946ABE344110 571904 ----a-w- C:\Windows\System32\oleaut32.dll 2014-12-22 12:29:15 68EAAEDF0365168B804E8728368FA946 175104 ----a-w- C:\Windows\System32\wintrust.dll 2014-12-22 12:28:54 E9BB0CD09DA17C71FD1B9954D75AEEF7 168960 ----a-w- C:\Windows\System32\credui.dll 2014-12-22 12:28:54 4BCC63ED1C3D15B2635A8AE2B854B3EB 152576 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll 2014-12-22 12:27:58 AFA53BD631FB0509A91A99391209BB70 301568 ----a-w- C:\Windows\System32\msieftp.dll 2014-12-22 12:27:26 0B1E0AEADF1442B7A7AB6E3977F0E5C4 1011200 ----a-w- C:\Windows\System32\WindowsCodecs.dll 2014-12-22 12:27:23 C9059EF0C94C55C0DA9CACEE160A5F66 654336 ----a-w- C:\Windows\System32\rpcrt4.dll 2014-12-22 12:26:54 F50EC0B39521D098373137E5E3CB4405 1077760 ----a-w- C:\Windows\System32\DWrite.dll 2014-12-22 12:26:54 AE4A64971268FAC8AEA0D0EFCE06BBE8 808448 ----a-w- C:\Windows\System32\FntCache.dll 2014-12-22 12:26:24 ADFB31FA72AFE0298A60BF4AC1045A42 550912 ----a-w- C:\Windows\System32\kerberos.dll 2014-12-22 12:26:24 98B3C919C6B9C5F810FF2CAFA339822B 186880 ----a-w- C:\Windows\System32\pku2u.dll 2014-12-22 12:25:49 E7B9D5FF20FFDD4AAE2EF1D1B8C27A37 159232 ----a-w- C:\Windows\System32\imagehlp.dll 2014-12-22 12:25:47 5860EE5C807CB3866551B845123493C6 107520 ----a-w- C:\Windows\System32\cdd.dll 2014-12-22 12:25:34 4D59F470985D08139E42D15842816C47 3969984 ----a-w- C:\Windows\System32\ntkrnlpa.exe 2014-12-22 12:25:34 31FA2485DFC773F1E718A4D19F443FA9 3914176 ----a-w- C:\Windows\System32\ntoskrnl.exe 2014-12-22 12:25:33 FD25B74DC1A18C56BF1A879BF086555A 293376 ----a-w- C:\Windows\System32\KernelBase.dll 2014-12-22 12:25:33 995B39A08421C7725D1DF8DACEBBFC89 538112 ----a-w- C:\Windows\System32\objsel.dll 2014-12-22 12:25:32 FBC78B5D12A4F5A62D9C91E0E0E46D46 49664 ----a-w- C:\Windows\System32\adprovider.dll 2014-12-22 12:25:32 834A859BB331B0B2CCAE25BB1986F80D 47616 ----a-w- C:\Windows\System32\dpapiprovider.dll 2014-12-22 12:25:32 62C0798CC68EBF42F29C92E6CD6DC3D6 36864 ----a-w- C:\Windows\System32\dimsroam.dll 2014-12-22 12:25:32 5E11C55CC4D9330E55CCB22B1F20BB33 35328 ----a-w- C:\Windows\System32\wincredprovider.dll 2014-12-22 12:25:32 38A30B8E4216BE24D30F766EF3BAC2C7 48128 ----a-w- C:\Windows\System32\capiprovider.dll 2014-12-22 12:25:32 335FA669FC952BC4888CEDBDB42607E2 51200 ----a-w- C:\Windows\System32\cngprovider.dll 2014-12-22 12:25:14 5FDBDEECA34E73325D87C5ACD16A3EEC 701440 ----a-w- C:\Windows\System32\IMJP10K.DLL 2014-12-22 12:25:12 B975C202F590BBC5AA63225FBD148791 198656 ----a-w- C:\Windows\System32\WSManHTTPConfig.exe 2014-12-22 12:25:12 B6AC69FFBAA159DD5CEED814245A286D 214016 ----a-w- C:\Windows\System32\WsmWmiPl.dll 2014-12-22 12:25:12 5D9A1A3E5824CECE65871C60E5A08A1A 145920 ----a-w- C:\Windows\System32\WsmAuto.dll 2014-12-22 12:25:12 2C28FEC61C4AC68480A99CB7AA197FA9 248832 ----a-w- C:\Windows\System32\WSManMigrationPlugin.dll 2014-12-22 12:25:12 1DE9BD23AFA36150586C732D876D9B74 1177088 ----a-w- C:\Windows\System32\WsmSvc.dll 2014-12-22 11:50:27 F74FFA7654702F81884BDB41EB80DAC2 868352 ----a-w- C:\Windows\System32\kernel32.dll 2014-12-22 11:50:27 51BB04243DF6196C06E125898127E397 169984 ----a-w- C:\Windows\System32\winsrv.dll 2014-12-22 11:50:27 2DE16A63F71D10B42ACE01E759078600 271360 ----a-w- C:\Windows\System32\conhost.exe 2014-12-22 11:50:24 4F8CCD3E7D9F17A7C60FA0AE2466CACF 381440 ----a-w- C:\Windows\System32\wer.dll 2014-12-22 11:50:20 A5F833506BF6A1B5D693E1499DEE2444 626688 ----a-w- C:\Windows\System32\usp10.dll 2014-12-22 11:50:13 386BF6FD9FC562B1A5558C49E1C3A6FB 12874240 ----a-w- C:\Windows\System32\shell32.dll 2014-12-22 11:50:08 E01D2AC63453534DB8AD1EA97DEE9C3A 594944 ----a-w- C:\Windows\System32\RMActivate_isv.exe 2014-12-22 11:50:08 6142C5540C8D2764D59CBC11AF4A5900 572416 ----a-w- C:\Windows\System32\RMActivate.exe 2014-12-22 11:50:08 0F5FEF37588AF457E02125674F171A4F 508928 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe 2014-12-22 11:50:07 BBCE3E9E74C7CEA47FA4115B360AC2C6 423936 ----a-w- C:\Windows\System32\secproc_isv.dll 2014-12-22 11:50:07 9158DBE2F8483434FC72F320690C9DB8 87040 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll 2014-12-22 11:50:07 7FA485555BF802FE3DB5598004DBDFAC 390144 ----a-w- C:\Windows\System32\msdrm.dll 2014-12-22 11:50:07 58712A48D31B40EBCB35B47205F87771 87040 ----a-w- C:\Windows\System32\secproc_ssp.dll 2014-12-22 11:50:07 12A9F24DC9F465DA79AC2272D829A81E 428032 ----a-w- C:\Windows\System32\secproc.dll 2014-12-22 11:50:07 08D323750350A8A29611D1004C0CF319 510976 ----a-w- C:\Windows\System32\RMActivate_ssp.exe 2014-12-22 11:49:30 FCFD4F50419B4BC72E80066DA10D2E54 523776 ----a-w- C:\Windows\System32\termsrv.dll 2014-12-22 11:49:30 DD17E1573651293D4ED31053795B3471 22528 ----a-w- C:\Windows\System32\lsass.exe 2014-12-22 11:49:30 CAA3039FFA0CDF8C2A9845C1609CDE00 100352 ----a-w- C:\Windows\System32\sspicli.dll 2014-12-22 11:49:30 C94CE65AE7701E9FDBA889045543E27C 22016 ----a-w- C:\Windows\System32\secur32.dll 2014-12-22 11:49:30 9AB39ADD28C7C1A685B1EA8C6A25CF08 146432 ----a-w- C:\Windows\System32\msaudite.dll 2014-12-22 11:49:30 980EEEE8815DA7593708774D1225BD35 681984 ----a-w- C:\Windows\System32\adtschema.dll 2014-12-22 11:49:30 1D4B52E5F3FD3875A5B3B6296F2BEB11 1059840 ----a-w- C:\Windows\System32\lsasrv.dll 2014-12-22 11:49:29 61BC8ACDEC57469B22EC519B22FB3642 15872 ----a-w- C:\Windows\System32\sspisrv.dll 2014-12-22 11:49:13 EACFDF31921F51C097629F1F3C9129B4 47104 ----a-w- C:\Windows\System32\appinfo.dll 2014-12-21 14:28:20 459E257F8915D44B23ACB46211FD45D0 45536 ----a-w- C:\Windows\System32\wups2.dll 2014-12-21 14:28:20 072678E0D68E9C3A7960328671134C7B 54240 ----a-w- C:\Windows\System32\wuauclt.exe 2014-12-21 14:28:19 EC6E2DB67695966DF22CF5EBEFC1D305 2425856 ----a-w- C:\Windows\System32\wucltux.dll 2014-12-21 14:28:19 D9B0134913E5EF007AF82A418C503322 1973728 ----a-w- C:\Windows\System32\wuaueng.dll 2014-12-21 14:28:00 867148EBF47E7E7E7B21C07B4A981929 581600 ----a-w- C:\Windows\System32\wuapi.dll 2014-12-21 14:28:00 372218B80DEF827063049EBEE76B7501 92672 ----a-w- C:\Windows\System32\wudriver.dll 2014-12-21 14:28:00 255F0417EC31C71585824269522EC8E9 36320 ----a-w- C:\Windows\System32\wups.dll 2014-12-21 14:27:52 F419D738BD2AE58D9DF2F9FEB5F43842 33792 ----a-w- C:\Windows\System32\wuapp.exe 2014-12-21 14:27:52 5AA2CAD923E9E647276A61387E83DDD0 179656 ----a-w- C:\Windows\System32\wuwebv.dll 2014-12-16 18:13:02 B78AF77C0F1627969DAB04E17870618C 11776 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll 2014-12-16 18:12:59 AB9EB3745B03AE67AB241A82338DEA7B 954288 ----a-w- C:\Windows\System32\mfc40u.dll 2014-12-16 18:12:59 78B7A3BDA25C90DAA50D36A56A8D1351 1171456 ----a-w- C:\Windows\System32\d3d10warp.dll 2014-12-16 18:12:59 2A6C1373D88B6D5933383B9F5C034CB9 954752 ----a-w- C:\Windows\System32\mfc40.dll 2014-12-16 18:12:57 36650D618CA34C9D357DFD3D89B2C56F 1159168 ----a-w- C:\Windows\System32\sysmain.dll 2014-12-16 18:12:53 D83947A58613E9091B4C9CC0F1546A8D 297808 ----a-w- C:\Windows\System32\mscoree.dll 2014-12-16 18:12:53 283E4E276D023DC20E7C9F8DFB4A3204 253952 ----a-w- C:\Windows\System32\spwizui.dll 2014-12-16 18:12:51 82FA3C4C5752C7F630FA39005B2FC8C8 520064 ----a-w- C:\Windows\System32\mcupdate_GenuineIntel.dll 2014-12-16 18:12:49 29BC473072568C072EC8B176498DE996 1334272 ----a-w- C:\Windows\System32\CertEnroll.dll 2014-12-16 18:12:46 A2AEEAB451AD341070F9B8F8E1A2EC28 99176 ----a-w- C:\Windows\System32\PresentationHostProxy.dll 2014-12-16 18:12:46 6A08F1C87BBF6197F5DAD95CF41E5175 295264 ----a-w- C:\Windows\System32\PresentationHost.exe 2014-12-16 18:12:44 A04BB13F8A72F8B6E8B4071723E4E336 750592 ----a-w- C:\Windows\System32\schedsvc.dll 2014-12-16 18:12:44 198366199A9F342EF87978D79308B49F 1115136 ----a-w- C:\Windows\System32\RacEngn.dll 2014-12-16 18:12:44 13A1F9A72F81509658F3E0B6AC2AD994 5066752 ----a-w- C:\Windows\System32\AuthFWSnapin.dll 2014-12-16 18:12:42 E585445D5021971FAE10393F0F1C3961 585728 ----a-w- C:\Windows\System32\qmgr.dll 2014-12-16 18:12:42 E2A17BCC08D92F42E08AF6BA2F93ABA7 1493504 ----a-w- C:\Windows\System32\ExplorerFrame.dll 2014-12-16 18:12:42 B8CBB46B42570D373C9933FBDF25EBCE 146852 ----a-w- C:\Windows\System32\systemsf.ebd 2014-12-16 18:12:42 8371F19E329B6CD650A6A9E9BF41EB2D 213504 ----a-w- C:\Windows\System32\rdpdd.dll 2014-12-16 18:12:40 928CF7268086631F54C3D8E17238C6DD 1414144 ----a-w- C:\Windows\System32\ole32.dll 2014-12-16 18:12:40 6581B52E133CC6D00661C58968C7E212 646144 ----a-w- C:\Windows\System32\SearchFolder.dll 2014-12-16 18:12:40 241E015DD809CFB23242F890B1FC575B 1086976 ----a-w- C:\Windows\System32\wevtsvc.dll 2014-12-16 18:12:40 13337A3FB17F2242487FD45488ED0485 1128448 ----a-w- C:\Windows\System32\vssapi.dll 2014-12-16 18:12:39 6EF5F3F18413C367195F06E503AB86A6 1828352 ----a-w- C:\Windows\System32\d3d9.dll 2014-12-16 18:12:39 544EFF88AC6C85DF5A4D6F18DFE08CFC 505856 ----a-w- C:\Windows\System32\taskschd.dll 2014-12-16 18:12:38 D683E64BB0D3AE0FDEB5BCC4EC04FACE 51200 ----a-w- C:\Windows\System32\PushPrinterConnections.exe 2014-12-16 18:12:38 D0804290B30C58652724344365C89D12 280576 ----a-w- C:\Windows\System32\spreview.exe 2014-12-16 18:12:38 23E9DCEE1D2BBA23EA5B50F76F633A0A 456192 ----a-w- C:\Windows\System32\spinstall.exe 2014-12-16 18:12:36 E897EAF5ED6BA41E081060C9B447A673 593408 ----a-w- C:\Windows\System32\gpsvc.dll 2014-12-16 18:12:36 61B1ED5F429EFAC7E2036769870AB93E 342016 ----a-w- C:\Windows\System32\certcli.dll 2014-12-16 18:12:35 497E59D9F01C6F247E72222A61835119 1371136 ----a-w- C:\Windows\System32\dwmcore.dll 2014-12-16 18:12:34 ECF036299AA554B5E0455262857B39D0 863744 ----a-w- C:\Windows\System32\diagperf.dll 2014-12-16 18:12:34 9835584E999D25004E1EE8E5F3E3B881 566272 ----a-w- C:\Windows\System32\MPSSVC.dll 2014-12-16 18:12:34 7D34AF98A706230CC2DEDFE0CABF87AB 573440 ----a-w- C:\Windows\System32\odbc32.dll 2014-12-16 18:12:34 691E3285E53DCA558E1A84667F13E15A 1203200 ----a-w- C:\Windows\System32\wbengine.exe 2014-12-16 18:12:32 8DCB990113DEF9255445B17D7F6DA64A 270848 ----a-w- C:\Windows\System32\tsmf.dll 2014-12-16 18:12:32 886B0EAA3B0FE76B3204E687C8DA6F66 3367424 ----a-w- C:\Windows\System32\WinSAT.exe 2014-12-16 18:12:32 409994A8EACEEE4E328749C0353527A0 171008 ----a-w- C:\Windows\System32\umrdp.dll 2014-12-16 18:12:32 04B88428A872390D235BE52D38A9D4EF 91136 ----a-w- C:\Windows\System32\dot3api.dll 2014-12-16 18:12:31 CA9F7888B524D8100B977C81F44C3234 351232 ----a-w- C:\Windows\System32\winhttp.dll 2014-12-16 18:12:30 8E8C92DD50F6B34907813AFDC0C8F7DD 2522624 ----a-w- C:\Windows\System32\dbgeng.dll 2014-12-16 18:12:30 863F793D15B4026B1A5FDECA873D4D84 295936 ----a-w- C:\Windows\System32\apphelp.dll 2014-12-16 18:12:30 59D16C3D5CC0D573256A01783ED5CCB4 2291712 ----a-w- C:\Windows\System32\MSVidCtl.dll 2014-12-16 18:12:30 33D933951E1DD39BA9A973CA5651BC90 522752 ----a-w- C:\Windows\System32\d3d11.dll 2014-12-16 18:12:30 209A3B1901B83AEB8527ED211CCE9E4C 1025536 ----a-w- C:\Windows\System32\VSSVC.exe 2014-12-16 18:12:30 10FB16B50AFFDA6D44588F3C445DC273 1667584 ----a-w- C:\Windows\System32\setupapi.dll 2014-12-16 18:12:29 1FF7E4F548C7C372C804938F0D5B36AE 406528 ----a-w- C:\Windows\System32\netcfgx.dll 2014-12-16 18:12:28 F1DD3ACAEE5E6B4BBC69BC6DF75CEF66 811520 ----a-w- C:\Windows\System32\user32.dll 2014-12-16 18:12:28 63B282FB2550893724647A359BA2323F 1363456 ----a-w- C:\Windows\System32\Query.dll 2014-12-16 18:12:28 1ECF8CD26AF7D9555C5B09CC2BDF51EF 584192 ----a-w- C:\Windows\System32\gpprefcl.dll 2014-12-16 18:12:26 C9FB8C3D650EF8BD76865EC20A19A5BC 252928 ----a-w- C:\Windows\System32\DShowRdpFilter.dll 2014-12-16 18:12:26 C02F50BBC064689FE3FCD89348C884EB 49488 ----a-w- C:\Windows\System32\netfxperf.dll 2014-12-16 18:12:26 954EA9B34F155C844B11F4047A8F6F89 206848 ----a-w- C:\Windows\System32\upnp.dll 2014-12-16 18:12:26 8AEA9A37C1A3565A204D37C5E72AB791 267776 ----a-w- C:\Windows\System32\lsm.exe 2014-12-16 18:12:26 653CF8E759C4B13C5507B70BD383F158 2151936 ----a-w- C:\Windows\System32\mmcndmgr.dll 2014-12-16 18:12:25 7A82634C75F5CD12EFCF43897A2E28CE 732160 ----a-w- C:\Windows\System32\imapi2fs.dll 2014-12-16 18:12:25 421D9645B72CD341ECDBB0FCE06C97DE 974336 ----a-w- C:\Windows\System32\sppobjs.dll 2014-12-16 18:12:24 E98278865E8DABA21CFE5FE4BE34210A 547840 ----a-w- C:\Windows\System32\PortableDeviceApi.dll 2014-12-16 18:12:24 8CC3C111D653E96F3EA1590891491D71 350208 ----a-w- C:\Windows\System32\shlwapi.dll 2014-12-16 18:12:24 5232D090B7540F90E9BF6DDC2EBB5CA2 220672 ----a-w- C:\Windows\System32\mcbuilder.exe 2014-12-16 18:12:24 4AE380F39A0032EAB7DD953030B26D28 113664 ----a-w- C:\Windows\System32\SessEnv.dll 2014-12-16 18:12:23 E1068D2D6D4D3465E7C0CB4B2F08F9F5 508904 ----a-w- C:\Windows\System32\winload.exe 2014-12-16 18:12:23 D15618A0FF8DBC2C5BF3726BACC75A0B 81920 ----a-w- C:\Windows\System32\userenv.dll 2014-12-16 18:12:23 9C8E9CAAF237E8CD8BEBDE700AAFF9E0 1712640 ----a-w- C:\Windows\System32\xpsservices.dll 2014-12-16 18:12:23 34BEF0783E17E760BE6DBEFB888A94B8 1555456 ----a-w- C:\Windows\System32\certmgr.dll 2014-12-16 18:12:22 D1DE1EAFDE97BE41CF6585027FF3E732 485888 ----a-w- C:\Windows\System32\comdlg32.dll 2014-12-16 18:12:22 D0481FB85BEEDD30A0884BE327880F80 206336 ----a-w- C:\Windows\System32\framedynos.dll 2014-12-16 18:12:22 AD7B9C14083B52BC532FBA5948342B98 302592 ----a-w- C:\Windows\System32\cmd.exe 2014-12-16 18:12:22 7660F01D3B38ACA1747E397D21D790AF 376832 ----a-w- C:\Windows\System32\rpcss.dll 2014-12-16 18:12:22 3A11396EAC2414012155AB14E5C1E332 412160 ----a-w- C:\Windows\System32\sppwinob.dll 2014-12-16 18:12:22 1E2BAC209D184BB851E1A187D8A29136 494592 ----a-w- C:\Windows\System32\BFE.DLL 2014-12-16 18:12:21 B85B7368F6EC16CE2DF2A87E7EE20F0B 140800 ----a-w- C:\Windows\System32\rdpendp.dll 2014-12-16 18:12:21 A8BB45F9ECAD993461E0FEF8E2A99152 269824 ----a-w- C:\Windows\System32\Wldap32.dll 2014-12-16 18:12:21 71D5EBEFC617B84E1136F3F0E07A88F5 296448 ----a-w- C:\Windows\System32\mfds.dll 2014-12-16 18:12:21 12C45E3CB6D65F73209549E2D02ECA7A 988160 ----a-w- C:\Windows\System32\propsys.dll 2014-12-16 18:12:20 F68878CF6A7EA29EACEAD49A268FC447 339968 ----a-w- C:\Windows\System32\appmgr.dll 2014-12-16 18:12:20 5505592313B74F2E2C8727837750F66D 173568 ----a-w- C:\Windows\System32\rdpclip.exe 2014-12-16 18:12:20 2F6C94BA73C976FAF939358D84E653E9 762880 ----a-w- C:\Windows\System32\azroles.dll 2014-12-16 18:12:20 245F4691314F42D4D1BC06442F0B2086 551424 ----a-w- C:\Windows\System32\samsrv.dll 2014-12-16 18:12:20 1869BD251211FB6275067372A45682D6 1063936 ----a-w- C:\Windows\System32\werconcpl.dll 2014-12-16 18:12:20 16F9DE9F9D122DBE0B6E7F28AFE3EE04 442720 ----a-w- C:\Windows\System32\winresume.exe 2014-12-16 18:12:20 15F93B37F6801943360D9EB42485D5D3 546304 ----a-w- C:\Windows\System32\cscsvc.dll 2014-12-16 18:12:19 971A36C4827AD1AE2A54E6407478921A 172544 ----a-w- C:\Windows\System32\spp.dll 2014-12-16 18:12:19 5992A9DF57FD5E6960FDCC2DB69867F7 2755072 ----a-w- C:\Windows\System32\themeui.dll 2014-12-16 18:12:19 4F2659160AFCCA990305816946F69407 192000 ----a-w- C:\Windows\System32\taskeng.exe 2014-12-16 18:12:18 E9E01EB683C132F7FA27CD607B8A2B63 254464 ----a-w- C:\Windows\System32\dhcpcore.dll 2014-12-16 18:12:18 BFEBB6F76A0988A38260870C61A6D1B7 196608 ----a-w- C:\Windows\System32\mfreadwrite.dll 2014-12-16 18:12:18 B47CD1B9551DA3DE9166D6DD17E6FD82 144768 ----a-w- C:\Windows\System32\basecsp.dll 2014-12-16 18:12:18 8B57A1AD493653BB57F281FE75DD175B 801280 ----a-w- C:\Windows\System32\NaturalLanguage6.dll 2014-12-16 18:12:18 53AF1750FD45DDD705C9B68C7DC58827 488448 ----a-w- C:\Windows\System32\evr.dll 2014-12-16 18:12:18 53223B673A3FA2F9A4D1C31C8D3F6CD8 854016 ----a-w- C:\Windows\System32\dbghelp.dll 2014-12-16 18:12:18 1C3E8371377E988B683797A132EFFE1B 305152 ----a-w- C:\Windows\System32\taskcomp.dll 2014-12-16 18:12:18 0411B7958C524BB2E91EE1B3035FE321 508416 ----a-w- C:\Windows\System32\dxgi.dll 2014-12-16 18:12:17 81C0FA250EF6DC1C6B3FA2BCE81D6C2E 335872 ----a-w- C:\Windows\System32\WinSATAPI.dll 2014-12-16 18:12:17 60B7C0FEAD45F2066E5B805A91F4F0FC 776192 ----a-w- C:\Windows\System32\calc.exe 2014-12-16 18:12:16 E6D90DC604F407B3B5E0FD285E46B2A0 271664 ----a-w- C:\Windows\System32\fveapi.dll 2014-12-16 18:12:16 D64AF876D53ECA3668BB97B51B4E70AB 168960 ----a-w- C:\Windows\System32\srvsvc.dll 2014-12-16 18:12:16 B85B0267A743607052263447E6091E8C 2983424 ----a-w- C:\Windows\System32\UIRibbon.dll 2014-12-16 18:12:16 A3901CD2E276484003C2944F78BEB80E 477696 ----a-w- C:\Windows\System32\lpksetup.exe 2014-12-16 18:12:16 80B562B5B59ED850C328DD75F964F3D8 242176 ----a-w- C:\Windows\System32\vpnike.dll 2014-12-16 18:12:16 61D57A5D7C6D9AFE10E77DAE6E1B445E 330240 ----a-w- C:\Windows\System32\QAGENTRT.DLL 2014-12-16 18:12:16 4470B0943469C4AF5B114E420DCB1AEF 778240 ----a-w- C:\Windows\System32\sqlsrv32.dll 2014-12-16 18:12:14 F059EB4C9C256F62F196EAA439E28F74 155136 ----a-w- C:\Windows\System32\hgprint.dll 2014-12-16 18:12:14 EAB975DB4C2805927FE5BD047D05C9AA 2494464 ----a-w- C:\Windows\System32\netshell.dll 2014-12-16 18:12:14 919001D2BB17DF06CA3F8AC16AD039F6 380416 ----a-w- C:\Windows\System32\sxs.dll 2014-12-16 18:12:14 912649A1B3F9E6ACB3899FBDABA2ED5F 228352 ----a-w- C:\Windows\System32\stobject.dll 2014-12-16 18:12:14 7FF15A4F092CD4A96055BA69F903E3E9 206848 ----a-w- C:\Windows\System32\ws2_32.dll 2014-12-16 18:12:13 D27DDE7E0444C7F1819F958469EB7D93 126464 ----a-w- C:\Windows\System32\inetpp.dll 2014-12-16 18:12:13 9DF9B31EAC1669F244C02B61F10D123A 932352 ----a-w- C:\Windows\System32\printui.dll 2014-12-16 18:12:13 50AF423CC8915B0010F0A96BF78672E9 116736 ----a-w- C:\Windows\System32\prncache.dll 2014-12-16 18:12:12 A2718532AFF3B0F9C73D3034A1511F50 139264 ----a-w- C:\Windows\System32\rpchttp.dll 2014-12-16 18:12:12 8EC04CA86F1D68DA9E11952EB85973D6 144384 ----a-w- C:\Windows\System32\dps.dll 2014-12-16 18:12:12 73F6C5223F7E9B5780DD4A6C30FCF569 458752 ----a-w- C:\Windows\System32\WSDApi.dll 2014-12-16 18:12:12 3B91EA6DC3AE6088C880AB9073A833C2 352256 ----a-w- C:\Windows\System32\wmpeffects.dll 2014-12-16 18:12:12 2A3557DD3913F8D7CC5A5703083424D8 119808 ----a-w- C:\Windows\System32\aitagent.exe 2014-12-16 18:12:12 2041012726EF7C95ED51C15C56545A7F 142336 ----a-w- C:\Windows\System32\net1.exe 2014-12-16 18:12:12 1319CD4619E96B156911CA3897563EBC 690680 ----a-w- C:\Windows\System32\ci.dll 2014-12-16 18:12:10 F99A4D145C862CBAD61B409C0AB0CD65 411648 ----a-w- C:\Windows\System32\wlangpui.dll 2014-12-16 18:12:10 C3CD30495687C2A2F66A65CA6FD89BE9 453632 ----a-w- C:\Windows\System32\vds.exe 2014-12-16 18:12:10 967EA5B213E9984CBE270205DF37755B 523264 ----a-w- C:\Windows\System32\FXSSVC.exe 2014-12-16 18:12:10 3E63222185341DCB8EEEDB8E2761EE6F 246272 ----a-w- C:\Windows\System32\scansetting.dll 2014-12-16 18:12:10 243974EC02F7AE49E4179C54624143AB 213504 ----a-w- C:\Windows\System32\MMDevAPI.dll 2014-12-16 18:12:10 0F416E23DD2EB4DEBE70608020CFD283 2504192 ----a-w- C:\Windows\System32\WMVCORE.DLL 2014-12-16 18:12:09 34391196FE00480C9ADBFBE215B6B28C 167936 ----a-w- C:\Windows\System32\QSHVHOST.DLL 2014-12-16 18:12:08 6B140B1382F1FE04BA57B196AEB19725 109056 ----a-w- C:\Windows\System32\t2embed.dll 2014-12-16 18:12:08 53946B69BA0836BD95B03759530C81EC 350208 ----a-w- C:\Windows\System32\IPSECSVC.DLL 2014-12-16 18:12:08 3D6F22551D422F97AACB0BB927E4C846 1750528 ----a-w- C:\Windows\System32\pnidui.dll 2014-12-16 18:12:06 DB846EECA70EE9D2E2FF31147C57B0F4 782336 ----a-w- C:\Windows\System32\webservices.dll 2014-12-16 18:12:06 C6FA3CBF5C6BD7B9BCB63441C6D67EA7 225792 ----a-w- C:\Windows\System32\netdiagfx.dll 2014-12-16 18:12:06 B70B2E022318E7EF942EEAC7126E6972 124416 ----a-w- C:\Windows\System32\fde.dll 2014-12-16 18:12:06 86472B217C2E96640297B3F719BD7CBF 154624 ----a-w- C:\Windows\System32\tscfgwmi.dll 2014-12-16 18:12:06 342E7165807B7C0BC9E810F3A9E2527E 464896 ----a-w- C:\Windows\System32\scrptadm.dll 2014-12-16 18:12:06 2DDEA2C345DA5BC589EFD398F220DB0E 2146304 ----a-w- C:\Windows\System32\SyncCenter.dll 2014-12-16 18:12:06 1D3198205747685AAC2EED0B3BCD38C3 33280 ----a-w- C:\Windows\System32\TsUsbGDCoInstaller.dll 2014-12-16 18:12:06 181F69BC9C406B7FB5C0ADE8031630AC 2311168 ----a-w- C:\Windows\System32\wpdshext.dll 2014-12-16 18:12:05 A8CDF3768604FF95B54669E20053D569 51712 ----a-w- C:\Windows\System32\wscapi.dll 2014-12-16 18:12:05 774D0EB71920648ACC79642341CA56C7 215552 ----a-w- C:\Windows\System32\vmicsvc.exe 2014-12-16 18:12:05 3B28814B74E898750A139FA4CBDFDCF7 907776 ----a-w- C:\Windows\System32\sdengin2.dll 2014-12-16 18:12:04 F74737E0EF87295E82EBD0A4B040539A 334336 ----a-w- C:\Windows\System32\wisptis.exe 2014-12-16 18:12:04 CF4274CEEA9F7791FB7FC40A066BC2C7 139264 ----a-w- C:\Windows\System32\cscobj.dll 2014-12-16 18:12:04 9419ABF3163B6F0E3AD3DD2B381C879F 134656 ----a-w- C:\Windows\System32\WinSCard.dll 2014-12-16 18:12:04 938F39B50BAFE13D6F58C7790682C010 34304 ----a-w- C:\Windows\System32\msasn1.dll 2014-12-16 18:12:04 414BBA67A3DED1D28437EB66AEB8A720 1508864 ----a-w- C:\Windows\System32\pla.dll 2014-12-16 18:12:04 0B5FED26EA8686163591F2609DEF5C89 727040 ----a-w- C:\Windows\System32\mcmde.dll 2014-12-16 18:12:03 CBBD4D79EEC3EF5A4ADAE9697944C6B9 830464 ----a-w- C:\Windows\System32\MSMPEG2ENC.DLL 2014-12-16 18:12:03 9E4B0E7472B4CEBA9E17F440B8CB0AB8 320000 ----a-w- C:\Windows\System32\winspool.drv 2014-12-16 18:12:02 E1FB3706030FB4578A0D72C2FC3689E4 463360 ----a-w- C:\Windows\System32\wiaservc.dll 2014-12-16 18:12:02 2D11BC8B460957E62E4420373A0D8BDA 392192 ----a-w- C:\Windows\System32\imapi2.dll 2014-12-16 18:12:02 1BE1A0487946F64AF5D2946AD1ECD596 103936 ----a-w- C:\Windows\System32\setupcl.exe 2014-12-16 18:12:02 1078F4A06BE5DACDC8429215ADAE8104 630784 ----a-w- C:\Windows\System32\DXPTaskRingtone.dll 2014-12-16 18:12:00 F748F53FE09D21D8ECBB6421E6792024 199168 ----a-w- C:\Windows\System32\onex.dll 2014-12-16 18:12:00 CB9E04DC05EACF5B9A36CA276D475006 286208 ----a-w- C:\Windows\System32\rasmans.dll 2014-12-16 18:12:00 80C5342074711F098A00F71FFF262B3B 1624064 ----a-w- C:\Windows\System32\WMPEncEn.dll 2014-12-16 18:12:00 754AFC50022C95DA7C86B7020DB78136 97280 ----a-w- C:\Windows\System32\dwmredir.dll 2014-12-16 18:12:00 414DA952A35BF5D50192E28263B40577 328192 ----a-w- C:\Windows\System32\shsvcs.dll 2014-12-16 18:11:59 D5AEFAD57C08349A4393D987DF7C715D 194048 ----a-w- C:\Windows\System32\winmm.dll 2014-12-16 18:11:58 763FECDC3D30C815FE72DD57936C6CD1 73216 ----a-w- C:\Windows\System32\TabSvc.dll 2014-12-16 18:11:57 CFE599FA85D52F82327FA8C549AD9296 66560 ----a-w- C:\Windows\System32\hbaapi.dll 2014-12-16 18:11:57 6FEC7B9A76B41D9AC67615A3040017F5 196096 ----a-w- C:\Windows\System32\vaultsvc.dll 2014-12-16 18:11:56 F88A52EB62019D6A62FDD9E08034DBD8 668160 ----a-w- C:\Windows\System32\autochk.exe 2014-12-16 18:11:56 F68194F74350D4A2ADE98961E33F884C 100864 ----a-w- C:\Windows\System32\audiodg.exe 2014-12-16 18:11:56 CF13841F9F2B231F0DF974425888B89A 2217856 ----a-w- C:\Windows\System32\bootres.dll 2014-12-16 18:11:56 A90DC9ABD65DB1A8902F361103029952 103936 ----a-w- C:\Windows\System32\IPHLPAPI.DLL 2014-12-16 18:11:56 A475B7BB0CCCFD848AA26075E81D7888 658944 ----a-w- C:\Windows\System32\autofmt.exe 2014-12-16 18:11:56 95DE3CF54E0A360EED766DBDDF152F0D 1077248 ----a-w- C:\Windows\System32\Narrator.exe 2014-12-16 18:11:56 68ECCA523ED760AAFC03C5D587569859 51200 ----a-w- C:\Windows\System32\samcli.dll 2014-12-16 18:11:56 38CACBEB75E3F85CBF7E65522DFDA1B0 166400 ----a-w- C:\Windows\System32\netiohlp.dll 2014-12-16 18:11:56 2E77BAB79F078654782F83F0A0AEFE31 28672 ----a-w- C:\Windows\System32\proquota.exe 2014-12-16 18:11:56 1BF0D4727FDB437D513CFF8A9359C050 194432 ----a-w- C:\Windows\System32\halmacpi.dll 2014-12-16 18:11:56 1BF0D4727FDB437D513CFF8A9359C050 194432 ----a-w- C:\Windows\System32\hal.dll 2014-12-16 18:11:55 672D7C5080ACB003343006405DA2E621 82944 ----a-w- C:\Windows\System32\thumbcache.dll 2014-12-16 18:11:55 5F2122888583347C9B81724CF169EFC6 303104 ----a-w- C:\Windows\System32\msinfo32.exe 2014-12-16 18:11:55 56CEED370508F69A1BA04939BD1BADDA 167936 ----a-w- C:\Windows\System32\msutb.dll 2014-12-16 18:11:55 2607A85B6466C0110EA8ABB9D8CC83FC 72192 ----a-w- C:\Windows\System32\regapi.dll 2014-12-16 18:11:55 09D786401F6CA6AEB16B2811B169F944 679424 ----a-w- C:\Windows\System32\autoconv.exe 2014-12-16 18:11:54 E362FAA5E232D9A326F42D8F78AEA2D8 202752 ----a-w- C:\Windows\System32\framedyn.dll 2014-12-16 18:11:54 CAFC0B884E5590B5E80D84F592388B3D 181760 ----a-w- C:\Windows\System32\tcpipcfg.dll 2014-12-16 18:11:54 B81E879AE660F9D244FC20EC8A26783E 42496 ----a-w- C:\Windows\System32\mimefilt.dll 2014-12-16 18:11:54 B1603F0A972B94927B8EF5F04DF11855 400896 ----a-w- C:\Windows\System32\ipsmsnap.dll 2014-12-16 18:11:54 9A892B3439884C62B04718F0303A49E9 222208 ----a-w- C:\Windows\System32\eapphost.dll 2014-12-16 18:11:54 674B0C0F6A448EB185CAAB9C51D44032 301568 ----a-w- C:\Windows\System32\srchadmin.dll 2014-12-16 18:11:54 3925944734DFC5D2253F3DC5923F797D 441856 ----a-w- C:\Windows\System32\powercpl.dll 2014-12-16 18:11:54 34EEE0DFAADB4F691D6D5308A51315DC 276992 ----a-w- C:\Windows\System32\wcncsvc.dll 2014-12-16 18:11:54 2003E9B15E1C502B146DAD2E383AC1E3 179712 ----a-w- C:\Windows\System32\schtasks.exe 2014-12-16 18:11:52 FCA71F6230075CD687189AC29AB06945 665600 ----a-w- C:\Windows\System32\AuxiliaryDisplayCpl.dll 2014-12-16 18:11:52 F87D30E72E03D579A5199CCB3831D6EA 119808 ----a-w- C:\Windows\System32\umpo.dll 2014-12-16 18:11:52 D2958325C1AE1AE37A83334C6229E3BC 309760 ----a-w- C:\Windows\System32\actxprxy.dll 2014-12-16 18:11:52 ADDB05C93272A62606599B24730BD645 399872 ----a-w- C:\Windows\System32\DXP.dll 2014-12-16 18:11:52 67BCB4490E9C7307E39C150CC09BEF9A 117248 ----a-w- C:\Windows\System32\netid.dll 2014-12-16 18:11:52 53E054880ADBB856ECE6EB10EDBB8A32 905216 ----a-w- C:\Windows\System32\mmsys.cpl 2014-12-16 18:11:52 02530B0B7E048DD5AC8D52DAEACAEB2B 171520 ----a-w- C:\Windows\System32\QAGENT.DLL 2014-12-16 18:11:51 8BCF1DCE05F4494C8891F33EEA450D0A 1227776 ----a-w- C:\Windows\System32\wdc.dll 2014-12-16 18:11:51 6A1E8DEB746912DF47CF651E138401D7 363520 ----a-w- C:\Windows\System32\StructuredQuery.dll 2014-12-16 18:11:51 250AA41DE690561AF1282D598914564C 307712 ----a-w- C:\Windows\System32\scesrv.dll 2014-12-16 18:11:50 CF87A1DE791347E75B98885214CED2B8 3179520 ----a-w- C:\Windows\System32\sppsvc.exe 2014-12-16 18:11:50 CC88EF08712C08C5F5FE74A395BA25AC 1326592 ----a-w- C:\Windows\System32\wlanpref.dll 2014-12-16 18:11:50 82E7ECE9096EEACB2EAC5644FE19A6F2 346624 ----a-w- C:\Windows\System32\untfs.dll 2014-12-16 18:11:50 669E18322F05A14356E8F6DA16D15DA0 933376 ----a-w- C:\Windows\System32\Vault.dll 2014-12-16 18:11:50 6658F4404DE03D75FE3BA09F7ABA6A30 194560 ----a-w- C:\Windows\System32\ListSvc.dll 2014-12-16 18:11:50 5EFDBEAECD69E250E5BA4A2950203CD4 1131008 ----a-w- C:\Windows\System32\sdclt.exe 2014-12-16 18:11:50 5997D769CDB108390DCFAEBF442BF816 46080 ----a-w- C:\Windows\System32\RpcRtRemote.dll 2014-12-16 18:11:50 45D9F6CD2469CDB6A640DD4BD2B01471 78848 ----a-w- C:\Windows\System32\nci.dll 2014-12-16 18:11:50 39B9273CA01364E115B464416CFB729B 98816 ----a-w- C:\Windows\System32\Robocopy.exe 2014-12-16 18:11:50 12C1BBE5B01F554DC2FA3225131E2D2B 1003008 ----a-w- C:\Windows\System32\WMNetMgr.dll 2014-12-16 18:11:48 ABA2AAA6F31EE934A76C87B537515EC6 1400320 ----a-w- C:\Windows\System32\DxpTaskSync.dll 2014-12-16 18:11:48 8483DD8F87DBE86AAB55BBF95C207061 320512 ----a-w- C:\Windows\System32\mtxclu.dll 2014-12-16 18:11:48 545BF7EAA24A9E062857D0742EC0B28A 227328 ----a-w- C:\Windows\System32\taskmgr.exe 2014-12-16 18:11:48 26EF8C37B8D58E98EE49F0DA81E77283 417792 ----a-w- C:\Windows\System32\msdri.dll 2014-12-16 18:11:48 14558D849EC14160AC3DACD8AC36E10A 1040384 ----a-w- C:\Windows\System32\Display.dll 2014-12-16 18:11:46 B7A7EFA6DBB68401CFAB1C4252FD3257 316416 ----a-w- C:\Windows\System32\sharemediacpl.dll 2014-12-16 18:11:46 9FC4D46F7BCAD9EE8517171195917776 352768 ----a-w- C:\Windows\System32\termmgr.dll 2014-12-16 18:11:46 909C11946AC04EA54A98C97792DC3C18 324608 ----a-w- C:\Windows\System32\puiobj.dll 2014-12-16 18:11:46 8A244E6F8004A421359812C3FC55AE1B 135168 ----a-w- C:\Windows\System32\XpsRasterService.dll 2014-12-16 18:11:46 61AC3EFDFACFDD3F0F11DD4FD4044223 26624 ----a-w- C:\Windows\System32\userinit.exe 2014-12-16 18:11:46 3EC541C196DE18ED9A0D0AC82A694D4C 418816 ----a-w- C:\Windows\System32\cscui.dll 2014-12-16 18:11:46 3E158EB9DC295CA3EF8D1F1EF57ABEDD 1188864 ----a-w- C:\Windows\System32\DiagCpl.dll 2014-12-16 18:11:45 050A774CF85E04EE4387515994B8455D 288256 ----a-w- C:\Windows\System32\eudcedit.exe 2014-12-16 18:11:44 E4343C7233EF714435231A85F11677D7 428032 ----a-w- C:\Windows\System32\biocpl.dll 2014-12-16 18:11:44 E3AE23569749DE12D45BA3B489A036AE 193536 ----a-w- C:\Windows\System32\sppcomapi.dll 2014-12-16 18:11:44 C43580971DE309516BAFC30DE736C147 1066496 ----a-w- C:\Windows\System32\msdtctm.dll 2014-12-16 18:11:44 A00075951E38A73FE2F9D8384311710A 233984 ----a-w- C:\Windows\System32\msconfig.exe 2014-12-16 18:11:44 8EC00CCCBB3436D534FC8DA85FF943BF 649216 ----a-w- C:\Windows\System32\appwiz.cpl 2014-12-16 18:11:44 84897874906481E0B3F4045DAD90D69F 856576 ----a-w- C:\Windows\System32\FirewallControlPanel.dll 2014-12-16 18:11:44 67F9B5C7E215B48F9256757E9CC09A7B 176640 ----a-w- C:\Windows\System32\rasppp.dll 2014-12-16 18:11:44 5E6E37DC2EFE39EC146271E22A16844F 111104 ----a-w- C:\Windows\System32\shsetup.dll 2014-12-16 18:11:44 4D7B1415719FFCC700118318D86FD7EC 416768 ----a-w- C:\Windows\System32\wiadefui.dll 2014-12-16 18:11:44 41E215F560028DBAA897DEAEF8390A7A 132608 ----a-w- C:\Windows\System32\cabview.dll 2014-12-16 18:11:42 E8CB091A918C1C687B087389D9A66B39 2202624 ----a-w- C:\Windows\System32\SensorsCpl.dll 2014-12-16 18:11:42 BFDC1FE9B277779E3263B0B2A9DC3E0D 766464 ----a-w- C:\Windows\System32\wpccpl.dll 2014-12-16 18:11:42 7DC1FABD139B6AE5743C5DF75EEC5958 109056 ----a-w- C:\Windows\System32\dnscmmc.dll 2014-12-16 18:11:42 64B628C5258625129288F2D0C75268DA 2157568 ----a-w- C:\Windows\System32\themecpl.dll 2014-12-16 18:11:40 C7952D0A4C43A965A1741916BB134751 312832 ----a-w- C:\Windows\System32\hgcpl.dll 2014-12-16 18:11:40 8124944EC89D6A1815E4E53F5B96AAF4 175616 ----a-w- C:\Windows\System32\scecli.dll 2014-12-16 18:11:40 7F8678C59F188528D60104E697C2361E 481792 ----a-w- C:\Windows\System32\mscms.dll 2014-12-16 18:11:40 69C81451DCE63069A036FBF646A86996 828928 ----a-w- C:\Windows\System32\fontext.dll 2014-12-16 18:11:40 613BF4820361543956909043A265C6AC 242176 ----a-w- C:\Windows\System32\tapisrv.dll 2014-12-16 18:11:40 573EF199073CE66169B4A8166EB8581B 429056 ----a-w- C:\Windows\System32\localsec.dll 2014-12-16 18:11:40 0BA4982FE2C21D3D4A68B81FB25474D7 413696 ----a-w- C:\Windows\System32\PhotoScreensaver.scr 2014-12-16 18:11:39 D56D2F498713BD66F50763D5285F4F38 268800 ----a-w- C:\Windows\System32\mprddm.dll 2014-12-16 18:11:38 EB9B8B2C75FFC489F57E16794FD41215 78848 ----a-w- C:\Windows\System32\iasacct.dll 2014-12-16 18:11:38 D83841B6EE406B58461ACE8A6308AA2D 600064 ----a-w- C:\Windows\System32\usercpl.dll 2014-12-16 18:11:38 BEFF01C9F044BA2AD7F5FB837972FC90 326656 ----a-w- C:\Windows\System32\sysdm.cpl 2014-12-16 18:11:38 B5FFA9977015ED3E1B2C3FF266A1BEB9 941568 ----a-w- C:\Windows\System32\mblctr.exe 2014-12-16 18:11:38 AA53356D60AF47EACC85BC617A4F3F66 85504 ----a-w- C:\Windows\System32\wpdbusenum.dll 2014-12-16 18:11:38 A882CD13F68656CFD657E6639D3D3E17 410112 ----a-w- C:\Windows\System32\wlanui.dll 2014-12-16 18:11:38 96FE583424174CF7926250ED16C4EA01 66048 ----a-w- C:\Windows\System32\w32tm.exe 2014-12-16 18:11:38 6FE596F2DC97F7E1CA292F376C33D3CB 223232 ----a-w- C:\Windows\System32\wksprt.exe 2014-12-16 18:11:38 6ED76824354C47C0B227ED38DEC89800 133632 ----a-w- C:\Windows\System32\bcdsrv.dll 2014-12-16 18:11:38 67C1B58706B47EEBA4E117AC197289E6 740864 ----a-w- C:\Windows\System32\batmeter.dll 2014-12-16 18:11:38 5BAC1C3853E2D1F3F65CBB578228A268 314368 ----a-w- C:\Windows\System32\azroleui.dll 2014-12-16 18:11:38 5ABBEF3B5984C29BD9D7CB1C7F35B323 1644032 ----a-w- C:\Windows\System32\netcenter.dll 2014-12-16 18:11:38 58405E4F68BA8E4057C6E914F326ABA2 84480 ----a-w- C:\Windows\System32\wkssvc.dll 2014-12-16 18:11:38 370349F79315D4DB86CD992CACEFEE61 638976 ----a-w- C:\Windows\System32\VAN.dll 2014-12-16 18:11:38 2CFA4569350B7F84F815E9EC34E85766 220160 ----a-w- C:\Windows\System32\SndVolSSO.dll 2014-12-16 18:11:38 2305BFF2966D73694972FD7531BC5BAA 314368 ----a-w- C:\Windows\System32\SndVol.exe 2014-12-16 18:11:38 1EB40CEBF58C2983497A77442B99B2D0 352768 ----a-w- C:\Windows\System32\spwizeng.dll 2014-12-16 18:11:38 196B4E3F4CCCC24AF836CE58FACBB699 71168 ----a-w- C:\Windows\System32\KMSVC.DLL 2014-12-16 18:11:38 0FC7E6C8DFB1052F121638485A675761 120320 ----a-w- C:\Windows\System32\prntvpt.dll 2014-12-16 18:11:38 013CB5286ABB32259349AD858087068C 600576 ----a-w- C:\Windows\System32\PerfCenterCPL.dll 2014-12-16 18:11:37 45C0DF404182850C21749AF7763C095F 3727872 ----a-w- C:\Windows\System32\accessibilitycpl.dll 2014-12-16 18:11:36 EA72CAE0FFA2D86522888320ADE6B33E 2130944 ----a-w- C:\Windows\System32\networkmap.dll 2014-12-16 18:11:36 E343CABBD8D600ABAF3F11625D33B3D0 161792 ----a-w- C:\Windows\System32\netjoin.dll 2014-12-16 18:11:36 DC190EB70C5C15BB087F893D6E77E5C6 226304 ----a-w- C:\Windows\System32\MSAC3ENC.DLL 2014-12-16 18:11:36 BA2B249CD7C8CE15E1A8D69ECAEE5FA3 516096 ----a-w- C:\Windows\System32\main.cpl 2014-12-16 18:11:36 A2F0B6A45EF5B68173AAA2A39690904E 327680 ----a-w- C:\Windows\System32\zipfldr.dll 2014-12-16 18:11:36 6F241D9C35D157A376003CDEF2E26CAE 59904 ----a-w- C:\Windows\System32\fdeploy.dll 2014-12-16 18:11:36 3E709F7BFA217CD3B6FC338780465E20 186880 ----a-w- C:\Windows\System32\adsldp.dll 2014-12-16 18:11:36 28CA821606669BB9215CE010767720FA 1003520 ----a-w- C:\Windows\System32\cryptui.dll 2014-12-16 18:11:35 EAC4B0A0900CB391BBD48FC0A0E58C7F 414208 ----a-w- C:\Windows\System32\mspbda.dll 2014-12-16 18:11:35 C8333F1F77A1B2E25F2202E892CAF634 395264 ----a-w- C:\Windows\System32\prnfldr.dll 2014-12-16 18:11:35 8CBD6FDACDCC0ED48BAF607226D6D0C9 314880 ----a-w- C:\Windows\System32\wusa.exe 2014-12-16 18:11:35 477B711EBF491226FA40301290F66BAC 312168 ----a-w- C:\Windows\System32\MCEWMDRMNDBootstrap.dll 2014-12-16 18:11:35 1E8D06AAE74FED674C1156B3FEA911C2 320512 ----a-w- C:\Windows\System32\Faultrep.dll 2014-12-16 18:11:34 F1E9A22C1D4F5D3AC7BA555D4E95329C 755200 ----a-w- C:\Windows\System32\sud.dll 2014-12-16 18:11:34 E82CEFE0D2F98651D556E2437163486B 389632 ----a-w- C:\Windows\System32\sysmon.ocx 2014-12-16 18:11:34 D8B2F66671C13C4C2F22FE3A588945F8 271360 ----a-w- C:\Windows\System32\iprtrmgr.dll 2014-12-16 18:11:34 D861EB4D6719D6738270E6A376B87F18 325632 ----a-w- C:\Windows\System32\slui.exe 2014-12-16 18:11:34 B06B2FEC249F48C4E7F628B689859AC7 82432 ----a-w- C:\Windows\System32\dot3cfg.dll 2014-12-16 18:11:34 9A39A2A5F443A756C568C6ED5748AFE4 744448 ----a-w- C:\Windows\System32\ActionCenter.dll 2014-12-16 18:11:34 9996103F8A650BDB3586C9AAE1101912 42496 ----a-w- C:\Windows\System32\ftp.exe 2014-12-16 18:11:34 7717A57C01812C3714BA25B96C36BF39 233472 ----a-w- C:\Windows\System32\taskbarcpl.dll 2014-12-16 18:11:34 73CB55D2E8099D24FD077C990FFE3DDB 220672 ----a-w- C:\Windows\System32\defaultlocationcpl.dll 2014-12-16 18:11:34 59079D4288FF7175758E838A489DD992 295424 ----a-w- C:\Windows\System32\photowiz.dll 2014-12-16 18:11:34 4A6554C141450D2B6AA6DE17A298AEDA 218112 ----a-w- C:\Windows\System32\OnLineIDCpl.dll 2014-12-16 18:11:34 3206ADC4D06BB764C9A4936C8E22708C 266752 ----a-w- C:\Windows\System32\MediaMetadataHandler.dll 2014-12-16 18:11:34 186147C89867B66CB02667D4037C7550 172032 ----a-w- C:\Windows\System32\iasrad.dll 2014-12-16 18:11:34 0A2DFF70EB5210C4F7D4954A317E9B04 137088 ----a-w- C:\Windows\System32\halacpi.dll 2014-12-16 18:11:33 F44CCA639625EC735667BD8B8E523A33 19456 ----a-w- C:\Windows\System32\sisbkup.dll 2014-12-16 18:11:33 E9B7D9BBD3E78E7DD053A5108B7649AC 428544 ----a-w- C:\Windows\System32\shwebsvc.dll 2014-12-16 18:11:33 E3D5E244807AD655787FCD25477CC1BC 692736 ----a-w- C:\Windows\System32\bthprops.cpl 2014-12-16 18:11:33 82A9C6ADDCC4D392293AF15C09192DEC 148992 ----a-w- C:\Windows\System32\ifsutil.dll 2014-12-16 18:11:33 297848A1D7D03A5735CEDF91F82ACFAB 577024 ----a-w- C:\Windows\System32\wpd_ci.dll 2014-12-16 18:11:33 0FE24BD8E67F3A6757A5D193A7A9B287 345088 ----a-w- C:\Windows\System32\intl.cpl 2014-12-16 18:11:32 E24BB41C4EFC309A14709FC127A3B847 750080 ----a-w- C:\Windows\System32\sdcpl.dll 2014-12-16 18:11:32 DFA05B91BA331F7407F5F50EEAA9E2B2 146944 ----a-w- C:\Windows\System32\autoplay.dll 2014-12-16 18:11:32 D7B7159BC8374E87D8C45A30377A3440 69120 ----a-w- C:\Windows\System32\ntlanman.dll 2014-12-16 18:11:32 D304A5C08E733D694455DC770B86E069 600576 ----a-w- C:\Windows\System32\TabletPC.cpl 2014-12-16 18:11:32 97D7CC94EEA6EBB6B928EA3DD91A2A0C 196608 ----a-w- C:\Windows\System32\dskquoui.dll 2014-12-16 18:11:32 9473C7BDD77A204C0BB70B467740D326 295424 ----a-w- C:\Windows\System32\bcdedit.exe 2014-12-16 18:11:32 7B97346CE563B74BBCC120FC83E5A6D9 738816 ----a-w- C:\Windows\System32\wmpmde.dll 2014-12-16 18:11:32 55CDE81B9FD8E234C4E00E4EEE919406 115712 ----a-w- C:\Windows\System32\sppnp.dll 2014-12-16 18:11:32 54DEFF61C4E6AF1581DA2F236154BA4C 537600 ----a-w- C:\Windows\System32\ActionCenterCPL.dll 2014-12-16 18:11:32 3F6D9269E7B3A754B1C2F8533DC7F318 205312 ----a-w- C:\Windows\System32\efscore.dll 2014-12-16 18:11:32 2DAF758E7C15886DD2424F77F488759A 135680 ----a-w- C:\Windows\System32\recovery.dll 2014-12-16 18:11:32 2A39F32E0067CBF221611FE1FA8C6D8F 484864 ----a-w- C:\Windows\System32\DeviceCenter.dll 2014-12-16 18:11:32 20A20A911CD79A6F6839167149A05668 159232 ----a-w- C:\Windows\System32\syncui.dll 2014-12-16 18:11:31 D65645E5E9858EB60C3CF06848DD328D 146944 ----a-w- C:\Windows\System32\bcdboot.exe 2014-12-16 18:11:31 A912933C92B9C4C70E9039C0B597AE4E 68608 ----a-w- C:\Windows\System32\WSTPager.ax 2014-12-16 18:11:31 8C545F6F1BA83C15B8B02EE4AA62FF11 270336 ----a-w- C:\Windows\System32\sethc.exe 2014-12-16 18:11:31 89F5770AD1E9D9CEF93D00303135EC33 297472 ----a-w- C:\Windows\System32\ntprint.dll 2014-12-16 18:11:31 7635B6502882E4B1713F049FD8FD2EA4 210432 ----a-w- C:\Windows\System32\recdisc.exe 2014-12-16 18:11:31 4AC64014668BB2B4834A66B73406AB63 410624 ----a-w- C:\Windows\System32\systemcpl.dll 2014-12-16 18:11:31 468D6989581E6AEA75DE74D4B3722CC3 859648 ----a-w- C:\Windows\System32\OobeFldr.dll 2014-12-16 18:11:31 33BEE4A0B2DC34F4A6D01210F7507508 151040 ----a-w- C:\Windows\System32\vdsutil.dll 2014-12-16 18:11:31 0915C4DB6DBC3BB9E11B7ECBBE4B7159 37376 ----a-w- C:\Windows\System32\rtutils.dll 2014-12-16 18:11:30 EA2B00551F3E7B3D5F7FB730A55F8246 743424 ----a-w- C:\Windows\System32\blackbox.dll 2014-12-16 18:11:30 E9CFC1884D1E579E82073103827FA62B 107008 ----a-w- C:\Windows\System32\NAPHLPR.DLL 2014-12-16 18:11:30 E62AA52713617C1F402829EBF79653AB 175616 ----a-w- C:\Windows\System32\netplwiz.dll 2014-12-16 18:11:30 D205C24A9D069049FE2DF2A1B38726A7 172032 ----a-w- C:\Windows\System32\wdmaud.drv 2014-12-16 18:11:30 C140F86932B5B61F54A4D836E2D34AB2 193536 ----a-w- C:\Windows\System32\ksproxy.ax 2014-12-16 18:11:30 B86FB49A715157C49E2C7205E1817012 182272 ----a-w- C:\Windows\System32\wmpsrcwp.dll 2014-12-16 18:11:30 737AFC772243C75E6AD17A7A8E8E23F9 93696 ----a-w- C:\Windows\System32\fms.dll 2014-12-16 18:11:30 6EC16BBD14906A59EA8A9A3F71B7F9AD 101888 ----a-w- C:\Windows\System32\migisol.dll 2014-12-16 18:11:30 6E30D02AAC9CAC84F421622E3A2F6178 88064 ----a-w- C:\Windows\System32\AxInstSv.dll 2014-12-16 18:11:30 521B748A7F9923302CA18B7E6AA2EEAE 202752 ----a-w- C:\Windows\System32\activeds.dll 2014-12-16 18:11:30 1A1C4782E9C4110BDD0DBD5052D91383 112128 ----a-w- C:\Windows\System32\AuxiliaryDisplayServices.dll 2014-12-16 18:11:30 102CF6879887BBE846A00C459E6D4ABC 473600 ----a-w- C:\Windows\System32\riched20.dll 2014-12-16 18:11:29 8CD1DEE212E52B9C22E66DBA44991D32 34816 ----a-w- C:\Windows\System32\httpapi.dll 2014-12-16 18:11:29 404B123E9460395E3A7338B12C681B92 346112 ----a-w- C:\Windows\System32\nshipsec.dll 2014-12-16 18:11:29 3FE9A20ECA67745948FD536F8A9E00D9 86528 ----a-w- C:\Windows\System32\isoburn.exe 2014-12-16 18:11:29 3A16EA01FCFAAB40882DB5BFEE632322 592384 ----a-w- C:\Windows\System32\msftedit.dll 2014-12-16 18:11:29 366BA8FB4B7BB7435E3B9EACB3843F67 214016 ----a-w- C:\Windows\System32\dot3svc.dll 2014-12-16 18:11:29 22DE9DFF5565B00F230EAC0C635DAEB7 254976 ----a-w- C:\Windows\System32\wsqmcons.exe 2014-12-16 18:11:29 088CF5B6380FB9002F2A4246F812225D 67584 ----a-w- C:\Windows\System32\asycfilt.dll 2014-12-16 18:11:28 FB036244DBD2FADC225AD8650886B641 586752 ----a-w- C:\Windows\System32\dfrgui.exe 2014-12-16 18:11:28 DBC02D918FFF1CAD628ACBE0C0EAA8E8 165376 ----a-w- C:\Windows\System32\provsvc.dll 2014-12-16 18:11:28 B4D3BDF863B81BF84658396666CF7200 197632 ----a-w- C:\Windows\System32\ocsetup.exe 2014-12-16 18:11:28 918379B6C94AA59F567E06FB4E0E5E1B 685056 ----a-w- C:\Windows\System32\dsuiext.dll 2014-12-16 18:11:28 8FBE98499ADC541C63BB10B722DA00D4 333824 ----a-w- C:\Windows\System32\dot3ui.dll 2014-12-16 18:11:28 8DDD47810EE260744BEAA82EFA2DB9BB 47616 ----a-w- C:\Windows\System32\tzutil.exe 2014-12-16 18:11:28 861A80C7DCA93A95327463D7F8C9CE64 406528 ----a-w- C:\Windows\System32\wimgapi.dll 2014-12-16 18:11:28 73869A8A7AF77801387A36CF9B9B5886 198144 ----a-w- C:\Windows\System32\sysclass.dll 2014-12-16 18:11:28 6A6B2EE4565A178035BE2A4FF6F2C968 40448 ----a-w- C:\Windows\System32\wtsapi32.dll 2014-12-16 18:11:28 3CC04CB09FAFAD87942437FDDEE11EE3 247808 ----a-w- C:\Windows\System32\ReAgent.dll 2014-12-16 18:11:28 3C9035085141162416A0DD34DBF3F3C1 428032 ----a-w- C:\Windows\System32\wlanmsm.dll 2014-12-16 18:11:28 2097D9A13CDB88213612E3E8479185F5 222208 ----a-w- C:\Windows\System32\wavemsp.dll 2014-12-16 18:11:28 0BD483CECD8DAC86E04347589ADC71EE 444928 ----a-w- C:\Windows\System32\wvc.dll 2014-12-16 18:11:27 C5A99A4C0DC9F0F5A95BA0C83D30A549 209920 ----a-w- C:\Windows\System32\mstask.dll 2014-12-16 18:11:27 5862A867BB6228D427CB784F610662F7 438272 ----a-w- C:\Windows\System32\AdmTmpl.dll 2014-12-16 18:11:27 319C6B309773D063541D01DF8AC6F55F 67584 ----a-w- C:\Windows\System32\certprop.dll 2014-12-16 18:11:26 FD4C4F9EC7D6D23E282F9375B4029AE5 118784 ----a-w- C:\Windows\System32\uxlib.dll 2014-12-16 18:11:26 CC5BF60E9D3F181C0B62AC91AD8634B8 190976 ----a-w- C:\Windows\System32\qcap.dll 2014-12-16 18:11:26 C9708C9F3DBA3DBFB1D2FEE1E9DABAD0 146432 ----a-w- C:\Windows\System32\twext.dll 2014-12-16 18:11:26 A54E92AE753D4BC63FE71F010F76EF04 206848 ----a-w- C:\Windows\System32\qasf.dll 2014-12-16 18:11:26 824E84AC88AC9F82D772960657E094D1 113152 ----a-w- C:\Windows\System32\setupugc.exe 2014-12-16 18:11:26 604409A90F3962C1CC05276ADBFE233C 170496 ----a-w- C:\Windows\System32\PresentationSettings.exe 2014-12-16 18:11:26 4A8E2F20809CC161107FAA94F6CF2685 118272 ----a-w- C:\Windows\System32\imm32.dll 2014-12-16 18:11:26 377F0C1DDBFA6A43CB7E7568BC0ECED0 281088 ----a-w- C:\Windows\System32\unimdm.tsp 2014-12-16 18:11:25 E2864DF592832883151A8D5500A7EAAA 257024 ----a-w- C:\Windows\System32\srrstr.dll 2014-12-16 18:11:25 AD6DB3F85D329ABA90EAF7B2D8A2EEA9 293888 ----a-w- C:\Windows\System32\ssText3d.scr 2014-12-16 18:11:25 19F75D71E4256F5113D64CE2BB66B838 14336 ----a-w- C:\Windows\System32\slwga.dll 2014-12-16 18:11:24 C335EC1182AC10B188705554E0BC1186 120320 ----a-w- C:\Windows\System32\msvfw32.dll 2014-12-16 18:11:24 AE9898D5600A232CD8AE3298692162E5 230912 ----a-w- C:\Windows\System32\clusapi.dll 2014-12-16 18:11:24 8A31F7A5A29EA3564493BC5EF8E78032 196608 ----a-w- C:\Windows\System32\wwanconn.dll 2014-12-16 18:11:24 5E3830EE3282A53920E00784FEC44CFD 98304 ----a-w- C:\Windows\System32\nslookup.exe 2014-12-16 18:11:24 4634B0EE4098F0F2B972BDAC19A802E7 243712 ----a-w- C:\Windows\System32\audiodev.dll 2014-12-16 18:11:24 451E47CF063A37D105A1D2111FD4C4E5 84480 ----a-w- C:\Windows\System32\mciavi32.dll 2014-12-16 18:11:24 394117608EB031E622D4812E67746F09 616960 ----a-w- C:\Windows\System32\wmdrmsdk.dll 2014-12-16 18:11:23 735263DA17BF5BAF9CCD483843BF9D5A 105984 ----a-w- C:\Windows\System32\WPDShServiceObj.dll 2014-12-16 18:11:23 5DC6DBFC22911C58FD2C9208A9756021 211456 ----a-w- C:\Windows\System32\DevicePairingFolder.dll 2014-12-16 18:11:21 510B493DF0DD669E60879B6B19E9B949 504320 ----a-w- C:\Windows\System32\msscp.dll 2014-12-16 18:11:20 F6FD7F8147A591317E57D9008C8C7541 327680 ----a-w- C:\Windows\System32\wimserv.exe 2014-12-16 18:11:20 DC661CF87F2501A8B8D9628C006AA3BD 157184 ----a-w- C:\Windows\System32\perfmon.exe 2014-12-16 18:11:20 BF1EAD0561F37CEA65F76DD276F90E04 276480 ----a-w- C:\Windows\System32\diskraid.exe 2014-12-16 18:11:20 BD626EF05967D14C772B8096292731A3 80896 ----a-w- C:\Windows\System32\QUTIL.DLL 2014-12-16 18:11:20 B57053CD59114D36952461EE638D3784 45568 ----a-w- C:\Windows\System32\acppage.dll 2014-12-16 18:11:20 9D30A820EAB9C146BB59557CA0236875 186368 ----a-w- C:\Windows\System32\rdpencom.dll 2014-12-16 18:11:20 9B9A0802B4E34CC4D9DB04AB6ABFA8AE 202240 ----a-w- C:\Windows\System32\input.dll 2014-12-16 18:11:20 93C4029DABC19166076BE347283AB969 46080 ----a-w- C:\Windows\System32\NAPCRYPT.DLL 2014-12-16 18:11:20 292F2FA57EB9B773DA1C15AFCC4A4F90 146944 ----a-w- C:\Windows\System32\remotepg.dll 2014-12-16 18:11:20 2708C75F1A7FA45403383C7E43A82A81 402944 ----a-w- C:\Windows\System32\drmmgrtn.dll 2014-12-16 18:11:20 207CF171B1C6B8AE50C1FBF87363EEBC 318976 ----a-w- C:\Windows\System32\raschap.dll 2014-12-16 18:11:20 1C20F53017D9ADBE40B6826FE81FF47C 292864 ----a-w- C:\Windows\System32\WindowsAnytimeUpgradeResults.exe 2014-12-16 18:11:20 08236C4BCE5EDD0A0318A438AF28E0F7 125952 ----a-w- C:\Windows\System32\sdrsvc.dll 2014-12-16 18:11:19 ACA1F50844E08F3F5178E8FF3F21FBC2 78848 ----a-w- C:\Windows\System32\UserAccountControlSettings.dll 2014-12-16 18:11:19 703FFD301AB900B047337C5D40FD6F96 90112 ----a-w- C:\Windows\System32\olepro32.dll 2014-12-16 18:11:19 3D57FFBAD3ED16B63DE3879BAB0FB56F 1661440 ----a-w- C:\Windows\System32\networkexplorer.dll 2014-12-16 18:11:19 1274A7FD37E2DA781282CEE1D2131374 174592 ----a-w- C:\Windows\System32\ocsetapi.dll 2014-12-16 18:11:18 F645EF77ED0735B927E9804E28855E17 299520 ----a-w- C:\Windows\System32\wmpdxm.dll 2014-12-16 18:11:18 E178A1BD78441E08ACA10F6AF4B88F6E 327168 ----a-w- C:\Windows\System32\nltest.exe 2014-12-16 18:11:18 D44741F65A1D71F65814A12CF6E2400A 50688 ----a-w- C:\Windows\System32\runonce.exe 2014-12-16 18:11:18 CF3CD3F466D84C9E2F66490D9578A563 160256 ----a-w- C:\Windows\System32\vdsbas.dll 2014-12-16 18:11:18 CA63BC9F834A42DAA8375FAC76B5CE83 198144 ----a-w- C:\Windows\System32\wpdwcn.dll 2014-12-16 18:11:18 BFB9EE8EE977EFE85D1A3105ABEF6DD1 68096 ----a-w- C:\Windows\System32\Mcx2Svc.dll 2014-12-16 18:11:18 A77E0E5B15E6956C19E7269566ABE6C7 1111552 ----a-w- C:\Windows\System32\onexui.dll 2014-12-16 18:11:18 69C85737F4CA5634E7A19B818579D176 210432 ----a-w- C:\Windows\System32\dxdiagn.dll 2014-12-16 18:11:18 5845B1C54380FB980F68024B3A8B1E66 25600 ----a-w- C:\Windows\System32\vpnikeapi.dll 2014-12-16 18:11:18 00F48A9D03F672F7EBE601FFA9BB6F28 219648 ----a-w- C:\Windows\System32\iTVData.dll 2014-12-16 18:11:17 EEE470F2A771FC0B543BDEEF74FCECA0 73216 ----a-w- C:\Windows\System32\msiexec.exe 2014-12-16 18:11:17 9B9EF57993ECC02CE7469F3F3AC3CE10 242176 ----a-w- C:\Windows\System32\eapp3hst.dll 2014-12-16 18:11:17 9204A9C716B7B4AA451010DEDB0BB5BE 176128 ----a-w- C:\Windows\System32\MFPlay.dll 2014-12-16 18:11:17 45DC6C69CE5759666EC758BAD657B040 31744 ----a-w- C:\Windows\System32\msvidc32.dll 2014-12-16 18:11:16 F14A9B1778376D0B1788E402AC1F831A 108032 ----a-w- C:\Windows\System32\shacct.dll 2014-12-16 18:11:16 E9C7D94D71857409BF741F1B7561D0E6 105472 ----a-w- C:\Windows\System32\wmpshell.dll 2014-12-16 18:11:16 D4191EFAB91E00FC09257AA5EBAF503B 158720 ----a-w- C:\Windows\System32\mprapi.dll 2014-12-16 18:11:16 D0C94D78DC8652153F020F5B6ACED36F 52224 ----a-w- C:\Windows\System32\rdpd3d.dll 2014-12-16 18:11:16 A557563260FD041F6CFA5C296918104E 61440 ----a-w- C:\Windows\System32\PnPUnattend.exe 2014-12-16 18:11:16 A29E036A5A3B37C7530F3EA1CF385129 21504 ----a-w- C:\Windows\System32\lsmproxy.dll 2014-12-16 18:11:16 98F657555DD1C1A30362927DF8FBB266 28672 ----a-w- C:\Windows\System32\iscsium.dll 2014-12-16 18:11:16 775C41C2F2EF3DD150A7444B95E631D0 878592 ----a-w- C:\Windows\System32\Bubbles.scr 2014-12-16 18:11:16 5CF15474FFDB5005E54958DF6EDD97AB 507392 ----a-w- C:\Windows\System32\wmdrmdev.dll 2014-12-16 18:11:16 53CA6BF58658815FCB472205291DD953 59392 ----a-w- C:\Windows\System32\unimdmat.dll 2014-12-16 18:11:16 487F44B08EFEAF5AD087878357B9403D 236544 ----a-w- C:\Windows\System32\pdh.dll 2014-12-16 18:11:16 465BEA35F7ED4A4A57686DEA7EA10F47 34816 ----a-w- C:\Windows\System32\cscapi.dll 2014-12-16 18:11:16 44D647692BEFABB34EA46B34048C0F03 74240 ----a-w- C:\Windows\System32\tabcal.exe 2014-12-16 18:11:16 13CDD3FF0961A2EC6D9829A1640DD6DC 309760 ----a-w- C:\Windows\System32\sqlcese30.dll 2014-12-16 18:11:16 0920B14AA67A8B04ACF48FFE7C6F0927 186368 ----a-w- C:\Windows\System32\bitsadmin.exe 2014-12-16 18:11:15 F9724B48380FE80D75A3C16280A5D78F 59904 ----a-w- C:\Windows\System32\djoin.exe 2014-12-16 18:11:15 E783DE1447EC0EED7B768BB69705D8E3 84480 ----a-w- C:\Windows\System32\kstvtune.ax 2014-12-16 18:11:15 9D67B55896F679CD6C0FC7EAD0F4BDEA 183296 ----a-w- C:\Windows\System32\PortableDeviceSyncProvider.dll 2014-12-16 18:11:15 7DF45A1E1A4AAFDEEFF2CA8F8200F37B 350720 ----a-w- C:\Windows\System32\WPDSp.dll 2014-12-16 18:11:15 5CCDCD40E732D54E0F7451AC66AC1C87 90112 ----a-w- C:\Windows\System32\srvcli.dll 2014-12-16 18:11:15 37485CC09B7E6E70093A4DF62B3CC744 1160192 ----a-w- C:\Windows\System32\OpcServices.dll 2014-12-16 18:11:15 33CDDA42E768A997827CC480EC13DAD5 60928 ----a-w- C:\Windows\System32\ncryptui.dll 2014-12-16 18:11:14 FF3C5379DE4FD18498C255D096FED3F5 902656 ----a-w- C:\Windows\System32\WMADMOD.DLL 2014-12-16 18:11:14 F7CF764F8155492EB50E4505A6DA8D87 427520 ----a-w- C:\Windows\System32\PortableDeviceStatus.dll 2014-12-16 18:11:14 F65D14471F76F9C91315352932408939 99328 ----a-w- C:\Windows\System32\QSVRMGMT.DLL 2014-12-16 18:11:14 EF64A97756128630A40B41C3B2567259 318464 ----a-w- C:\Windows\System32\WMPhoto.dll 2014-12-16 18:11:14 D8868258E3F26B40ECB8E945C2DA8BD9 142336 ----a-w- C:\Windows\System32\powercfg.cpl 2014-12-16 18:11:14 D25958B2A71EF488959272878EF934BE 31744 ----a-w- C:\Windows\System32\utildll.dll 2014-12-16 18:11:14 D15880276D208AF03521B8F922C1F3B5 221184 ----a-w- C:\Windows\System32\Mystify.scr 2014-12-16 18:11:14 B21B85E60DA18D7D338599D95D4CB211 77824 ----a-w- C:\Windows\System32\olethk32.dll 2014-12-16 18:11:14 97BAF1DE66F886D8292AED040B8CC281 179200 ----a-w- C:\Windows\System32\ActionQueue.dll 2014-12-16 18:11:14 8F64E5E1CE1F7E0F76D66BB0C7E2221F 109568 ----a-w- C:\Windows\System32\CscMig.dll 2014-12-16 18:11:14 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\System32\mapistub.dll 2014-12-16 18:11:14 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\System32\mapi32.dll 2014-12-16 18:11:14 831319977C168FFCF4E9ABB83A992F80 220672 ----a-w- C:\Windows\System32\Ribbons.scr 2014-12-16 18:11:14 4D05BDE56A7116B744B04192173A0122 132608 ----a-w- C:\Windows\System32\MdSched.exe 2014-12-16 18:11:13 DCEABBA22E12CC44C2E7785C0EB9C6E3 91648 ----a-w- C:\Windows\System32\avifil32.dll 2014-12-16 18:11:13 B292EBE345B14B66E17E5F36CEF7209C 7680 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe 2014-12-16 18:11:13 AF2E7640E72F005DDB86158E1F8BA1FC 109568 ----a-w- C:\Windows\System32\wiavideo.dll 2014-12-16 18:11:13 8126CB6DEA909054E4ECA1F0D55B7579 98304 ----a-w- C:\Windows\System32\fphc.dll 2014-12-16 18:11:13 8007508CEF6A5B10C24F7971DAF00F09 51200 ----a-w- C:\Windows\System32\takeown.exe 2014-12-16 18:11:13 630A31F277349109299E590856A4B004 107008 ----a-w- C:\Windows\System32\Kswdmcap.ax 2014-12-16 18:11:13 0CE0812F2BDFED908FB1066AD4B868C7 115200 ----a-w- C:\Windows\System32\dot3msm.dll 2014-12-16 18:11:12 D30117DB43F48C4DBA9B41C08156A339 22528 ----a-w- C:\Windows\System32\msyuv.dll 2014-12-16 18:11:12 CE292C4C10B8DB6070F262EA2733F0DC 189952 ----a-w- C:\Windows\System32\sqmapi.dll 2014-12-16 18:11:12 CB9EF09B4BF03F8DE663B3F55D61A8E9 265216 ----a-w- C:\Windows\System32\msnetobj.dll 2014-12-16 18:11:12 9E44D3D2D1D2DA5ED565D471E350F1CD 541184 ----a-w- C:\Windows\System32\WMVSDECD.DLL 2014-12-16 18:11:12 92DF43A9CDD39C67F2B2D2F98799E086 283136 ----a-w- C:\Windows\System32\qdv.dll 2014-12-16 18:11:12 925AE681543B4E666E172B5BD7E45B32 71680 ----a-w- C:\Windows\System32\QCLIPROV.DLL 2014-12-16 18:11:12 5A220C5CFC74AB3C2517D1F1B670D5D3 100864 ----a-w- C:\Windows\System32\sppinst.dll 2014-12-16 18:11:12 55663BED58AEDDE8ADE37A582CD8380C 50176 ----a-w- C:\Windows\System32\iyuv_32.dll 2014-12-16 18:11:12 4D6262D5CFFA7D932126D2B85C373F87 153600 ----a-w- C:\Windows\System32\VBICodec.ax 2014-12-16 18:11:12 41A2EEB3FC7C4677787C612478DBD69A 436736 ----a-w- C:\Windows\System32\wmdrmnet.dll 2014-12-16 18:11:12 2750A80FC1D8F45A3BC14E0CAC7E619F 257536 ----a-w- C:\Windows\System32\WindowsAnytimeUpgrade.exe 2014-12-16 18:11:12 1060D60CCA69A8136A87DBE3C8F4A467 128512 ----a-w- C:\Windows\System32\EhStorAPI.dll 2014-12-16 18:11:11 E98A08E70C15D6371AFEEB802227228D 202240 ----a-w- C:\Windows\System32\unattend.dll 2014-12-16 18:11:11 3FBBE458FB60D5F38EF5E19F53772088 66560 ----a-w- C:\Windows\System32\cca.dll 2014-12-16 18:11:11 32A5CC033236E6CC8AAE00B580986C4D 25088 ----a-w- C:\Windows\System32\qprocess.exe 2014-12-16 18:11:11 04FAE971A77E76B3F4EF44053AEE0905 13312 ----a-w- C:\Windows\System32\msrle32.dll 2014-12-16 18:11:11 00263CA2071DC9A6EE577EB356B0D1D9 84992 ----a-w- C:\Windows\System32\cmstp.exe 2014-12-16 18:11:10 DAB748AE0439955ED2FA22357533DDDB 44032 ----a-w- C:\Windows\System32\basesrv.dll 2014-12-16 18:11:10 D33E95C0A2754061233B58DC41F8094C 50688 ----a-w- C:\Windows\System32\umb.dll 2014-12-16 18:11:10 CC0C2CF2EBD58234C45C5D0C046ABB79 28160 ----a-w- C:\Windows\System32\AzSqlExt.dll 2014-12-16 18:11:10 87095E9BA2A172685897F1D4AFE35E91 182784 ----a-w- C:\Windows\System32\RelPost.exe 2014-12-16 18:11:10 835982D4DB80A9CC114E34E34E90E2A0 24576 ----a-w- C:\Windows\System32\msg.exe 2014-12-16 18:11:10 7BD10646253ED4F6FD361279181362E7 70656 ----a-w- C:\Windows\System32\MuiUnattend.exe 2014-12-16 18:11:10 7B47059ADEA2983C073562DD40F3FD73 46592 ----a-w- C:\Windows\System32\pdhui.dll 2014-12-16 18:11:10 665AAD05AEE9E37A7A9BAEDCAC775989 12288 ----a-w- C:\Windows\System32\tsbyuv.dll 2014-12-16 18:11:10 65B76F79BA94CF8837D556D4C9067773 739328 ----a-w- C:\Windows\System32\WMSPDMOD.DLL 2014-12-16 18:11:10 6357E2B68753A1F5CF4A68A25C4FD14A 51712 ----a-w- C:\Windows\System32\wsnmp32.dll 2014-12-16 18:11:10 5AA02AB0623B57332A7AF6CB73A9011C 26624 ----a-w- C:\Windows\System32\qwinsta.exe 2014-12-16 18:11:10 4EA584FCC419E66E9ADCEEAE0B0A7301 122880 ----a-w- C:\Windows\System32\iasrecst.dll 2014-12-16 18:11:10 3F5A4F3A11EAA28DCD5C85C06C09D853 115712 ----a-w- C:\Windows\System32\setupcln.dll 2014-12-16 18:11:10 24498D084FAA7A459C91066EC241E1CE 56832 ----a-w- C:\Windows\System32\vfwwdm32.dll 2014-12-16 18:11:10 0AEE06C1CB1123AE2C9873908DB59BAF 176128 ----a-w- C:\Windows\System32\msorcl32.dll 2014-12-16 18:11:10 079D12BFED9E3E03D02A44BAF8FFA3A9 128000 ----a-w- C:\Windows\System32\desk.cpl 2014-12-16 18:11:10 03CF941D031F30272D3063E5A4D686F5 32768 ----a-w- C:\Windows\System32\PrintIsolationProxy.dll 2014-12-16 18:11:09 E5A4A1326A02F8E7B59E6C3270CE7202 47104 ----a-w- C:\Windows\System32\wkscli.dll 2014-12-16 18:11:09 D4496F4DC6B90F6915CEB1DB20B44C07 25600 ----a-w- C:\Windows\System32\netiougc.exe 2014-12-16 18:11:09 BC080CEA43CB990F28B049742706581F 61952 ----a-w- C:\Windows\System32\spbcd.dll 2014-12-16 18:11:09 B0180B20B065D89232A78A40FE56EAA6 53760 ----a-w- C:\Windows\System32\sppuinotify.dll 2014-12-16 18:11:09 4542DED3177F52CF075565987885EB0D 144896 ----a-w- C:\Windows\System32\iscsicli.exe 2014-12-16 18:11:09 3379984F13BDC0F26783E3E0C678ED5C 46592 ----a-w- C:\Windows\System32\WavDest.dll 2014-12-16 18:11:08 F1F2AD1C3A9BEF7AC914FDA714BC7879 50176 ----a-w- C:\Windows\System32\setbcdlocale.dll 2014-12-16 18:11:08 D2A937964199F647B1C3BC435712E5D9 11776 ----a-w- C:\Windows\System32\nrpsrv.dll 2014-12-16 18:11:08 C2EF686098DDABD5851E6BCA2F8620C2 53248 ----a-w- C:\Windows\System32\MultiDigiMon.exe 2014-12-16 18:11:08 B2E1E4A16EDD02396F451F915FA3CBFA 69632 ----a-w- C:\Windows\System32\rastapi.dll 2014-12-16 18:11:08 AC32AF909111561893E42E8EC89C5532 1027584 ----a-w- C:\Windows\System32\IMJP10.IME 2014-12-16 18:11:08 56D80B7E622338AF0F93B25A85D97188 14848 ----a-w- C:\Windows\System32\syssetup.dll 2014-12-16 18:11:08 50BB4FBC720D23497EEB5C9DAC497405 136192 ----a-w- C:\Windows\System32\mydocs.dll 2014-12-16 18:11:08 4C640D37A9FFD4B92320059951887441 23040 ----a-w- C:\Windows\System32\quser.exe 2014-12-16 18:11:08 44F5C1CF70AC8F7239F3B3667E58697A 65024 ----a-w- C:\Windows\System32\CertPolEng.dll 2014-12-16 18:11:08 3D97D200A1449F3995E88BEA8F7D0C81 48640 ----a-w- C:\Windows\System32\ksxbar.ax 2014-12-16 18:11:08 382BDDDE3438F9A65935ABC6B3F76D1B 70656 ----a-w- C:\Windows\System32\amstream.dll 2014-12-16 18:11:08 2C60338287CB0AEC009D0B48CEA864D2 133632 ----a-w- C:\Windows\System32\diskpart.exe 2014-12-16 18:11:08 2AF094C822BD6094F14A8E85FB51D52A 71168 ----a-w- C:\Windows\System32\resutils.dll 2014-12-16 18:11:08 100733DAEA508929EDDF1A3A3B7324CE 158720 ----a-w- C:\Windows\System32\itircl.dll 2014-12-16 18:11:08 02C25A63D58FC12DEA8FA4ECDB832CC0 24064 ----a-w- C:\Windows\System32\netbtugc.exe 2014-12-16 18:11:07 EB6C16CE0163AD282E95FCE5EE9BA518 66048 ----a-w- C:\Windows\System32\PrintBrmUi.exe 2014-12-16 18:11:07 D9A93A44116C4FDED67F1F83BC8AE88E 22016 ----a-w- C:\Windows\System32\tsdiscon.exe 2014-12-16 18:11:07 CCC607182821134A38D7A400AE063F73 21504 ----a-w- C:\Windows\System32\tscon.exe 2014-12-16 18:11:07 795582E10CA3DCF596C01B58FFE3AC28 21504 ----a-w- C:\Windows\System32\qappsrv.exe 2014-12-16 18:11:07 6468512559971A92A66E2AA08AC8BA61 430080 ----a-w- C:\Windows\System32\FXSTIFF.dll 2014-12-16 18:11:07 4DAD175C07B982A1518FE64FDBB7071A 28672 ----a-w- C:\Windows\System32\WerFaultSecure.exe 2014-12-16 18:11:07 445B0083337705538690841766921AD1 20992 ----a-w- C:\Windows\System32\chgusr.exe 2014-12-16 18:11:07 3F2B83695E5BF11930C16AF50E991F96 144384 ----a-w- C:\Windows\System32\wmpps.dll 2014-12-16 18:11:07 310AD32D483D4E16A62CDFD52B1C5D7E 22528 ----a-w- C:\Windows\System32\chgport.exe 2014-12-16 18:11:06 E460AFD3A201408919ADB05977095E8D 69632 ----a-w- C:\Windows\System32\tlscsp.dll 2014-12-16 18:11:06 E2D56AE1D40E3725084054CD8E9CFBB1 33280 ----a-w- C:\Windows\System32\wiarpc.dll 2014-12-16 18:11:06 CCA67BD391CFC9F036323B2522887A6A 101376 ----a-w- C:\Windows\System32\mobsync.exe 2014-12-16 18:11:06 AA5F3F417DF0F470D67A7862451EA8E1 36352 ----a-w- C:\Windows\System32\mciqtz32.dll 2014-12-16 18:11:06 8E4B58E12B3FA65ED1462846906E0B59 121344 ----a-w- C:\Windows\System32\sppc.dll 2014-12-16 18:11:06 7A6986DD659B96398A11AF5173892715 73216 ----a-w- C:\Windows\System32\cabinet.dll 2014-12-16 18:11:06 6DB7ECBA34165ACB99A1A3C7F739E757 94208 ----a-w- C:\Windows\System32\eappgnui.dll 2014-12-16 18:11:06 5F8B3561CD7024C0F488A2E43434AE22 13312 ----a-w- C:\Windows\System32\muifontsetup.dll 2014-12-16 18:11:06 37E31A84967F6E5135FF0CFD10BFE487 20992 ----a-w- C:\Windows\System32\shadow.exe 2014-12-16 18:11:06 337CC9E8EA6F7BE53EB1B200365CE918 22528 ----a-w- C:\Windows\System32\tskill.exe 2014-12-16 18:11:06 2BF84985DE59544A0460BB33F804DA3A 22016 ----a-w- C:\Windows\System32\ReAgentc.exe 2014-12-16 18:11:06 20B3934DB73EABA2B49B7177873CB81F 22528 ----a-w- C:\Windows\System32\netutils.dll 2014-12-16 18:11:06 1DE21EC4A2232FF4F5298ADCAE7B3690 82944 ----a-w- C:\Windows\System32\iccvid.dll 2014-12-16 18:11:06 1CAD25B4E90A2648FDD25F4F00BE3C37 20992 ----a-w- C:\Windows\System32\rwinsta.exe 2014-12-16 18:11:06 18F02C555FBC9885DF9DB77754D6BB9B 62976 ----a-w- C:\Windows\System32\findstr.exe 2014-12-16 18:11:05 FAA05DD44E5DF264AEBE3F03BA4211BB 35840 ----a-w- C:\Windows\System32\shimgvw.dll 2014-12-16 18:11:05 C2DF5544931944AE00C59A0B3080EBFE 41984 ----a-w- C:\Windows\System32\luainstall.dll 2014-12-16 18:11:05 3C519BC7767F41F1C88DB0395F31A817 19968 ----a-w- C:\Windows\System32\spopk.dll 2014-12-16 18:11:05 03783D0840B2C54D7665248425C74417 53600 ----a-w- C:\Windows\System32\dosx.exe 2014-12-16 18:11:04 F88E4A26A7C8112FD1809CAF0F512D27 14848 ----a-w- C:\Windows\System32\query.exe 2014-12-16 18:11:04 F0016853FA3F38F55FD868FF74C0359B 31744 ----a-w- C:\Windows\System32\wdiasqmmodule.dll 2014-12-16 18:11:04 E84735F79C272FCEC320A6BED2861475 45568 ----a-w- C:\Windows\System32\g711codc.ax 2014-12-16 18:11:04 CA1870CDB1052F33B05E338F2B326A3D 57344 ----a-w- C:\Windows\System32\repair-bde.exe 2014-12-16 18:11:04 C0AB322DAE9E26F13C4B6BBBABCFA148 53760 ----a-w- C:\Windows\System32\vmicres.dll 2014-12-16 18:11:04 BF7DDBE14FA4B68AAB6A3C78EF5C96B8 52736 ----a-w- C:\Windows\System32\inetmib1.dll 2014-12-16 18:11:04 B0AC902EFD7E46708014625ECEB25741 38400 ----a-w- C:\Windows\System32\vmstorfltres.dll 2014-12-16 18:11:04 7319102526BD11B45FD66335CF90CA12 22528 ----a-w- C:\Windows\System32\HotStartUserAgent.dll 2014-12-16 18:11:04 71C39495C1BC7C3979B4CFAF59B1265B 25600 ----a-w- C:\Windows\System32\netcfg.exe 2014-12-16 18:11:04 7069AAB8536F29ED7323140973A2894B 30720 ----a-w- C:\Windows\System32\msdmo.dll 2014-12-16 18:11:04 6C796F88B7D9BF52A45757E2C837185A 21504 ----a-w- C:\Windows\System32\rdprefdrvapi.dll 2014-12-16 18:11:04 595B73359FD9B724E7981B0989FC274C 15360 ----a-w- C:\Windows\System32\reset.exe 2014-12-16 18:11:04 457C561BA80E02F1230DD0B87DA770A9 61952 ----a-w- C:\Windows\System32\manage-bde.exe 2014-12-16 18:11:04 373A87DBFD387DDC54375F547834FBBD 33792 ----a-w- C:\Windows\System32\vbisurf.ax 2014-12-16 18:11:04 2C098921217204301D76BF3BD5D953BB 34304 ----a-w- C:\Windows\System32\unlodctr.exe 2014-12-16 18:11:04 2B53A92F4BB168B893C4722F56C2201E 15360 ----a-w- C:\Windows\System32\change.exe 2014-12-16 18:11:03 86B9E27CDB040DE1C981BEC2A56326A7 1164800 ----a-w- C:\Windows\System32\UIRibbonRes.dll 2014-12-16 18:11:03 6FD5074B8CD05450F3F040993C6C2F1D 44544 ----a-w- C:\Windows\System32\vmbusres.dll 2014-12-16 18:11:03 6E2C504C11A2D0B3820EDAF66E6DF06B 40960 ----a-w- C:\Windows\System32\odbcconf.dll 2014-12-16 18:11:02 FB1BA42D1A1440E99C6B8667E141CFB1 17408 ----a-w- C:\Windows\System32\perfts.dll 2014-12-16 18:11:02 7B3FD36359DE5D2EE49D213CCAD13427 22528 ----a-w- C:\Windows\System32\elsTrans.dll 2014-12-16 18:11:02 5C18CD22BE4628865FCB63337A6E5EF6 10429 ----a-w- C:\Windows\System32\ScavengeSpace.xml 2014-12-16 18:11:02 326A5BDD4F299EA8B4843BB78F06A6B8 15872 ----a-w- C:\Windows\System32\icaapi.dll 2014-12-16 18:11:02 126F8331BD023178C7F0EF2F5EDE16B3 39424 ----a-w- C:\Windows\System32\FXSMON.dll 2014-12-16 18:11:01 AC122407B29378FF9646F03404AC7C54 36352 ----a-w- C:\Windows\System32\wshbth.dll 2014-12-16 18:11:01 A42E7748BE906434C5FD17161D168C20 17408 ----a-w- C:\Windows\System32\schedcli.dll 2014-12-16 18:11:01 9E122E5CD1BB79CF8F0BCEAC947B81C0 68096 ----a-w- C:\Windows\System32\napdsnap.dll 2014-12-16 18:11:01 543324F86787BFA31AABBAA7A91D08D0 21504 ----a-w- C:\Windows\System32\TRAPI.dll 2014-12-16 18:11:01 0552A8684BF7566F744D5B19FF6AEC6B 19456 ----a-w- C:\Windows\System32\bitsperf.dll 2014-12-16 18:11:01 0435045377BF76438CE5BF385995C699 121856 ----a-w- C:\Windows\System32\RDPENCDD.dll 2014-12-16 18:11:00 CFD8B8537036CF35F6254192997A4D8E 20992 ----a-w- C:\Windows\System32\shgina.dll 2014-12-16 18:11:00 B5506B451BFE7148ECA7056BDA2970BD 8704 ----a-w- C:\Windows\System32\riched32.dll 2014-12-16 18:11:00 AAF7BEB63E2CC499834B608A85A55E4E 21504 ----a-w- C:\Windows\System32\wsdchngr.dll 2014-12-16 18:11:00 89E783711AF91AF09E1EF30EF3107446 9728 ----a-w- C:\Windows\System32\sscore.dll 2014-12-16 18:11:00 6D666983C638F5E507C4A11AED1291CC 30208 ----a-w- C:\Windows\System32\dsauth.dll 2014-12-16 18:11:00 57A51217581614DE07F30E34D6BB4993 23040 ----a-w- C:\Windows\System32\cscdll.dll 2014-12-16 18:11:00 41EE23F636C6E9BDE5E8C09454CBEEFD 430080 ----a-w- C:\Windows\System32\imkr80.ime 2014-12-16 18:10:58 03A88560EF6B5F746A9AC5BA1C0A36C7 8704 ----a-w- C:\Windows\System32\rdpcfgex.dll 2014-12-16 18:10:54 21CE1E98A17FD46BE371719DFD046958 11264 ----a-w- C:\Windows\System32\wshirda.dll 2014-12-16 18:10:53 FFD0CF7A58905B8D05CDA6F8554A346D 116224 ----a-w- C:\Windows\System32\VmbusCoinstaller.dll 2014-12-16 18:10:53 F977BE7B8C5462087374364EAFB3C15B 10752 ----a-w- C:\Windows\System32\browseui.dll 2014-12-16 18:10:53 CF9E55F8D1E527FE19153604EADC918C 14336 ----a-w- C:\Windows\System32\vmbuspipe.dll 2014-12-16 18:10:53 B373C8ACBB78D7B31AD4FAC8BD4F2102 113664 ----a-w- C:\Windows\System32\IcCoinstall.dll 2014-12-16 18:10:53 B1462F0C851B0B0F3FBC4ADBB09CDF5E 47616 ----a-w- C:\Windows\System32\vmictimeprovider.dll 2014-12-16 18:10:53 993ABFB6DFD197927C3B24A36C966039 113664 ----a-w- C:\Windows\System32\VmdCoinstall.dll 2014-12-16 18:10:53 0A4A970D997125C7E8A06D72C20369FB 8192 ----a-w- C:\Windows\System32\spwmp.dll 2014-12-16 18:10:52 46A8664B446B5ED10DBDEF8B6DE7F648 26624 ----a-w- C:\Windows\System32\RDPREFDD.dll 2014-12-16 18:10:52 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\System32\msdxm.ocx 2014-12-16 18:10:52 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\System32\dxmasf.dll 2014-12-16 18:10:52 035074DAEB2333A248FD9C6B88AD16CD 11264 ----a-w- C:\Windows\System32\C_ISCII.DLL 2014-12-16 18:10:51 0A8E209F3C1D1FB6889465D1019CC5BF 10752 ----a-w- C:\Windows\System32\shunimpl.dll 2014-12-16 18:10:50 F533E1EA22FB9B1426010D285BFDD7D4 6144 ----a-w- C:\Windows\System32\KBDINORI.DLL 2014-12-16 18:10:50 E2F6200309179812F1EC40245F988C15 6144 ----a-w- C:\Windows\System32\KBDBULG.DLL 2014-12-16 18:10:50 BDEB4A838DA1E2D9C9631298FA3D58C5 6144 ----a-w- C:\Windows\System32\KBDTURME.DLL 2014-12-16 18:10:50 BD5B1737FDE2FF7AD036FADE1CAC4D0D 6144 ----a-w- C:\Windows\System32\KBDBLR.DLL 2014-12-16 18:10:50 B566E8F3EB5953722E11D113285E0ACB 6656 ----a-w- C:\Windows\System32\KBDNEPR.DLL 2014-12-16 18:10:50 9CA1705E2EBFE63F2E92628415934960 6656 ----a-w- C:\Windows\System32\KBDSF.DLL 2014-12-16 18:10:50 911DA311FF63B6F91D2BD05EFED9756A 6144 ----a-w- C:\Windows\System32\KBDINKAN.DLL 2014-12-16 18:10:50 8711853E43B65F5CA1CCD48980BC6A22 7168 ----a-w- C:\Windows\System32\kbdlk41a.dll 2014-12-16 18:10:50 86B58589C695702E05395D4E34D9D39D 6144 ----a-w- C:\Windows\System32\KBDUGHR1.DLL 2014-12-16 18:10:50 566925A00B8F439D6155F023E9494DEB 6144 ----a-w- C:\Windows\System32\KBDTAJIK.DLL 2014-12-16 18:10:50 48DC9C2926AAE98D9E3FE14570180246 6144 ----a-w- C:\Windows\System32\KBDMON.DLL 2014-12-16 18:10:50 357B990A4249D7F7485B230C0CC8825A 6144 ----a-w- C:\Windows\System32\KBDUS.DLL 2014-12-16 18:10:50 3174AA5D2A5BCDF4DB378FC0C24B08A9 6144 ----a-w- C:\Windows\System32\KBDMAORI.DLL 2014-12-16 18:10:50 11DB22E2FBAC2854DAA7541B16E11F41 6144 ----a-w- C:\Windows\System32\KBDINTEL.DLL 2014-12-16 18:10:50 0DEDC0314F3EB8C0253A88D72A73E019 6144 ----a-w- C:\Windows\System32\KBDLT1.DLL 2014-12-16 18:10:50 0CCB0C66DCD24A742CFBC06CD49EBD0D 5632 ----a-w- C:\Windows\System32\KBDGEO.DLL 2014-12-16 18:10:50 05477A526F6EAF10952DC63FFCED6609 6144 ----a-w- C:\Windows\System32\KBDINTAM.DLL 2014-12-16 18:10:49 F7BAA05246D68845641DF85D2D4B77AA 6656 ----a-w- C:\Windows\System32\KBDTUQ.DLL 2014-12-16 18:10:49 E615582BCA38987368E5598BD114A6BC 6144 ----a-w- C:\Windows\System32\KBDINHIN.DLL 2014-12-16 18:10:49 E097726A556E584EE8CEF98FCD848033 6656 ----a-w- C:\Windows\System32\KBDTUF.DLL 2014-12-16 18:10:49 D3BFA17457E5EAB5B7DABEDA21961183 6656 ----a-w- C:\Windows\System32\KBDINBEN.DLL 2014-12-16 18:10:49 A92149941A0D6A0A14AC116245E1E08F 6144 ----a-w- C:\Windows\System32\KBDINMAR.DLL 2014-12-16 18:10:49 93132CE66FC74818B4FD32E13C24C4BB 6656 ----a-w- C:\Windows\System32\KBDGR1.DLL 2014-12-16 18:10:48 E56C4703D0D9B476EF6195AD22C2ACC0 35328 ----a-w- C:\Windows\System32\pifmgr.dll 2014-12-16 18:10:48 DD3524C9B0EC264BF74B4C5A84891D76 7168 ----a-w- C:\Windows\System32\KBDCZ1.DLL 2014-12-16 18:10:48 D35F4DFF5D7B3D6503CF9888B833C801 69120 ----a-w- C:\Windows\System32\nlsbres.dll 2014-12-16 18:10:48 CDD67E0C0E3205CD00F5CD56E4DC9104 7168 ----a-w- C:\Windows\System32\KBDSG.DLL 2014-12-16 18:10:48 B243C97C4F5292CADB71E850DA7FEB1D 52736 ----a-w- C:\Windows\System32\BlbEvents.dll 2014-12-16 18:10:48 A02691FF3AA0763CF4E312DF56A7AC50 6656 ----a-w- C:\Windows\System32\KBDPO.DLL 2014-12-16 18:10:48 86EA2C61BCEC344195AE33B995CAB9C3 6656 ----a-w- C:\Windows\System32\KBDGKL.DLL 2014-12-16 18:10:48 3F0BB313E64983FF701D43C930530AC7 7680 ----a-w- C:\Windows\System32\spwizres.dll 2014-12-16 18:10:47 C236A8735A48B165A2A7724357DBE332 105559 ----a-w- C:\Windows\System32\RacRules.xml 2014-12-16 18:10:16 704314FD398C81D5F342CAA5DF7B7F21 363008 ----a-w- C:\Windows\System32\wbemcomn.dll 2014-12-16 18:10:16 6ADA78F0E4BE07CF7C5500778DE8FB7D 351232 ----a-w- C:\Windows\System32\wmicmiplugin.dll 2014-12-16 18:10:04 39C3CDE5BFA5D95661712258EDFE5F17 697344 ----a-w- C:\Windows\System32\SmiEngine.dll 2014-12-16 18:09:50 C06A8EB439D3451DF15828FF1CB7D0F8 209920 ----a-w- C:\Windows\System32\PkgMgr.exe 2014-12-16 18:09:50 A399514D3B28C9A3453A486BBAAFF1C7 189952 ----a-w- C:\Windows\System32\wdscore.dll 2014-12-16 18:08:44 ED04627EF998D04182C00ECD211FACBD 323072 ----a-w- C:\Windows\System32\drvstore.dll 2014-12-16 18:08:43 0C0DF0F05BAEA320FA301F34E256E08B 257024 ----a-w- C:\Windows\System32\dpx.dll ====== C:\Windows\system32\drivers ===== 2014-12-22 12:36:46 EB34CE31FABD4DC4343FD2AD16D2CAF9 234432 ----a-w- C:\Windows\System32\drivers\msiscsi.sys 2014-12-22 12:36:45 F1A449D762657230629D8BFC107ABC14 149440 ----a-w- C:\Windows\System32\drivers\storport.sys 2014-12-22 12:36:45 5FB4F271032B6435F3B2252F577A4815 27072 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2014-12-22 12:36:30 3EEBD3BD93DA46A26E89893C7AB2FF3B 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys 2014-12-22 12:35:17 C8DFF8D07755A66C7A4A738930F0FEAC 1212352 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2014-12-22 12:35:12 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys 2014-12-22 12:35:12 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys 2014-12-22 12:34:19 DEE7EDA5AAA96C4C68A1F098F5145799 187840 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS 2014-12-22 12:34:19 5DBD4F73E2A52FEED61DBAB3752E329C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys 2014-12-22 12:34:19 5579DD18546999F5D0EC39D018726C6B 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2014-12-22 12:34:16 D0B388DA1D111A34366E04EB4A5DD156 338944 ----a-w- C:\Windows\System32\drivers\afd.sys 2014-12-22 12:31:40 21F4B24ACFC79A483515BD986DD9043F 115712 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2014-12-22 12:31:11 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\drivers\ataport.sys 2014-12-22 12:30:49 CD9214A6AE17D188D17C3CF8CB9CC693 184320 ----a-w- C:\Windows\System32\drivers\rdpwd.sys 2014-12-22 12:30:48 6C5139E4283249518F7743D7043775B3 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys 2014-12-22 12:29:43 FC6B21DB4B5B398AB93DBE59CBF11036 36352 ----a-w- C:\Windows\System32\drivers\usbscan.sys 2014-12-22 12:29:42 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\drivers\hidparse.sys 2014-12-22 12:29:42 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys 2014-12-22 12:29:21 ED80D303102A746D30C1684B387BCBF1 33280 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys 2014-12-22 12:29:21 8C9C922D71F1CD4DEF73F186416B7896 712048 ----a-w- C:\Windows\System32\drivers\ndis.sys 2014-12-22 12:28:18 7FE680A3DFA421C4A8E4879AE4C5AAB0 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys 2014-12-22 12:25:48 3583A5A8CC2E682BFFBD4630D0FEC08B 730048 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2014-12-22 12:25:47 0EC652D17AB4607745FB4E6958E8FAB6 219072 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys 2014-12-22 12:21:19 DE014425522610BEDCA3821BB8C0F1D5 146816 ----a-w- C:\Windows\System32\drivers\usbvideo.sys 2014-12-22 12:21:18 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\drivers\usbcir.sys 2014-12-22 11:50:17 25944D2CC49E0A6C581D02A74B7D6645 527064 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2014-12-22 11:50:11 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2014-12-22 11:50:11 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2014-12-22 11:50:11 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2014-12-22 11:50:11 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys 2014-12-22 11:50:11 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys 2014-12-22 11:50:11 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys 2014-12-22 11:50:11 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2014-12-22 11:49:30 85449EEBE8F8EBD6481EFBF0F352B4EB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys 2014-12-22 11:49:30 4120DA10AA42A9996F4575DB9E3E6E6E 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2014-12-22 11:49:30 1E1845606C5A4579F7F3D95796CC1ED1 136632 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2014-12-16 18:13:02 FD1D6C73E6333BE727CBCC6054247654 52224 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2014-12-16 18:12:46 0C4E035C7F105F1299258C90886C64C5 14208 ----a-w- C:\Windows\System32\drivers\hwpolicy.sys 2014-12-16 18:12:26 3C2177A897B4CA2788C6FB0C3FD81D4B 388096 ----a-w- C:\Windows\System32\drivers\csc.sys 2014-12-16 18:12:21 F497F67932C6FA693D7DE2780631CFE7 245632 ----a-w- C:\Windows\System32\drivers\volsnap.sys 2014-12-16 18:12:18 871917B07A141BFF43D76D8844D48106 513536 ----a-w- C:\Windows\System32\drivers\http.sys 2014-12-16 18:12:17 1B133875B8AA8AC48969BD3458AFE9F5 164864 ----a-w- C:\Windows\System32\drivers\1394ohci.sys 2014-12-16 18:12:14 D528BC58A489409BA40334EBF96A311B 242688 ----a-w- C:\Windows\System32\drivers\rdbss.sys 2014-12-16 18:12:14 55055F8AD8BE27A64C831322A780A228 116096 ----a-w- C:\Windows\System32\drivers\msdsm.sys 2014-12-16 18:12:11 C2F2911156FDC7817C52829C86DA494E 175360 ----a-w- C:\Windows\System32\drivers\vmbus.sys 2014-12-16 18:12:10 673E55C3498EB970088E812EA820AA8F 153984 ----a-w- C:\Windows\System32\drivers\pci.sys 2014-12-16 18:12:06 B973FCFC50DC1434E1970A146F7E3885 133632 ----a-w- C:\Windows\System32\drivers\rdpdr.sys 2014-12-16 18:12:06 05D860DA1040F111503AC416CCEF2BCA 85376 ----a-w- C:\Windows\System32\drivers\sbp2port.sys 2014-12-16 18:12:06 04DBF4B01EA4BF25A9A3E84AFFAC9B20 53120 ----a-w- C:\Windows\System32\drivers\termdd.sys 2014-12-16 18:12:04 5461686CCA2FDA57B024547733AB42E3 160128 ----a-w- C:\Windows\System32\drivers\vhdmp.sys 2014-12-16 18:12:02 012C5F4E9349E711E11E0F19A8589F0A 28032 ----a-w- C:\Windows\System32\drivers\msahci.sys 2014-12-16 18:12:00 CEA80C80BED809AA0DA6FEBC04733349 274304 ----a-w- C:\Windows\System32\drivers\acpi.sys 2014-12-16 18:11:59 EE43346C7E4B5E63E54F927BABBB32FF 246784 ----a-w- C:\Windows\System32\drivers\udfs.sys 2014-12-16 18:11:54 A67E5F9A400F3BD1BE3D80613B45F708 35968 ----a-w- C:\Windows\System32\drivers\winusb.sys 2014-12-16 18:11:53 4C63E00F2F4B5F86AB48A58CD990F212 53120 ----a-w- C:\Windows\System32\drivers\volmgr.sys 2014-12-16 18:11:52 280122DDCF04B378EDD1AD54D71C1E54 187904 ----a-w- C:\Windows\System32\drivers\netbt.sys 2014-12-16 18:11:48 2D699FB6E89CE0D8DA14ECC03B3EDFE0 130432 ----a-w- C:\Windows\System32\drivers\mpio.sys 2014-12-16 18:11:46 FC8771F45ECCCFD89684E38842539B9B 78208 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2014-12-16 18:11:45 62BA4FDCA65BDB69695E0D1157C57717 43392 ----a-w- C:\Windows\System32\drivers\winhv.sys 2014-12-16 18:11:45 099972E1FAF4950D3994FBAB9DD21253 140160 ----a-w- C:\Windows\System32\drivers\scsiport.sys 2014-12-16 18:11:44 472AF0311073DCECEAA8FA18BA2BDF89 40704 ----a-w- C:\Windows\System32\drivers\vmstorfl.sys 2014-12-16 18:11:43 DCAFFD62259E0BDB433DD67B5BB37619 28032 ----a-w- C:\Windows\System32\drivers\storvsc.sys 2014-12-16 18:11:42 518395321DC96FE2C9F0E96AC743B656 173440 ----a-w- C:\Windows\System32\drivers\rdyboost.sys 2014-12-16 18:11:36 5DCEF0C32BE0F33277326586FA503689 190976 ----a-w- C:\Windows\System32\drivers\ks.sys 2014-12-16 18:11:28 A4BDC541E69674FBFF1A8FF00BE913F2 48640 ----a-w- C:\Windows\System32\drivers\ndproxy.sys 2014-12-16 18:11:17 906DCFC5EBF4EC0433F8D4FFFB0BA334 117760 ----a-w- C:\Windows\System32\drivers\rmcast.sys 2014-12-16 18:11:10 D8A65DAFB3EB41CBB622745676FCD072 46080 ----a-w- C:\Windows\System32\drivers\ndisuio.sys 2014-12-16 18:11:05 2F885864D5BC8A16C86BEE595969A48A 21504 ----a-w- C:\Windows\System32\drivers\tdi.sys 2014-12-16 18:11:04 CBE8C58A8579CFE5FCCF809E6F114E89 31232 ----a-w- C:\Windows\System32\drivers\CompositeBus.sys 2014-12-16 18:11:04 1A078C3FE1C1F9C8561CD600C69AD300 26112 ----a-w- C:\Windows\System32\drivers\usbrpm.sys 2014-12-16 18:11:03 BE167ED0FDB9C1FA1133953C18D5A6C9 108544 ----a-w- C:\Windows\System32\drivers\cdrom.sys 2014-12-16 18:11:02 F024449C97EC1E464AAFFDA18593DB88 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys 2014-12-16 18:11:02 B2FA25D9B17A68BB93D58B0556E8C90D 108544 ----a-w- C:\Windows\System32\drivers\tunnel.sys 2014-12-16 18:11:00 38FBE267E7E6983311179230FACB1017 118784 ----a-w- C:\Windows\System32\drivers\ndiswan.sys 2014-12-16 18:11:00 1EFBC664ABFF416D1D07DB115DCB264F 10240 ----a-w- C:\Windows\System32\drivers\acpipmi.sys 2014-12-16 18:10:58 D4D77455211E204F370D08F4963063CE 17920 ----a-w- C:\Windows\System32\drivers\VMBusHID.sys 2014-12-16 18:10:58 10C19F8290891AF023EAEC0832E1EB4D 24064 ----a-w- C:\Windows\System32\drivers\hidusb.sys 2014-12-16 18:10:56 AEA177F783E20150ACE5383EE368DA19 50176 ----a-w- C:\Windows\System32\drivers\appid.sys 2014-12-16 18:10:54 FD82D2B38C465A55C527E339BA1201B1 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD.sys 2014-12-16 18:10:54 E071E5BE621FEC4590117C488A78AE32 25856 ----a-w- C:\Windows\System32\drivers\USBCAMD2.sys 2014-12-16 18:10:54 4BD7134618C1D2A27466A099062547BF 65536 ----a-w- C:\Windows\System32\drivers\IPMIDrv.sys 2014-12-16 18:10:53 9E3CED91863E6EE98C24794D05E27A71 28160 ----a-w- C:\Windows\System32\drivers\kbdhid.sys 2014-12-16 18:10:52 D295BED4B898F0FD999FCFA9B32B071B 39936 ----a-w- C:\Windows\System32\drivers\umbus.sys 2014-12-16 18:10:52 A5EF29D5315111C80A5C1ABAD14C8972 304128 ----a-w- C:\Windows\System32\drivers\HdAudio.sys 2014-12-16 18:10:52 9036377B8A6C15DC2EEC53E489D159B5 108544 ----a-w- C:\Windows\System32\drivers\hdaudbus.sys 2014-12-16 18:10:52 6D4CCAEDC018F1CF52866BBBAA235982 12800 ----a-w- C:\Windows\System32\drivers\sffp_sd.sys 2014-12-16 18:10:52 3C3C78515F5AB448B022BDF5B8FFDD2E 63488 ----a-w- C:\Windows\System32\drivers\wanarp.sys 2014-12-16 18:10:52 23DAE03F29D253AE74C44F99E515F9A1 6656 ----a-w- C:\Windows\System32\drivers\RDPCDD.sys 2014-12-16 18:10:52 0693B5EC673E34DC147E195779A4DCF6 26624 ----a-w- C:\Windows\System32\drivers\scfilter.sys 2014-12-16 18:10:48 7FA7F2E249A5DCBB7970630E15E1F482 5632 ----a-w- C:\Windows\System32\drivers\vms3cap.sys ====== C:\Windows\Tasks ====== 2014-12-24 12:16:16 F64A2D5E9C1762DEAFBEB4978044D22B 3874 ----a-w- C:\Windows\system32\Tasks\Adobe Acrobat Update Task ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-12-24 15:20:06 -------- d-----w- C:\Program Files\Common Files\DESIGNER ======= C: ===== ====== C:\Users\User\AppData\Roaming ====== 2014-12-22 16:23:04 -------- d-----w- C:\Users\Public\AppData\Local\temp 2014-12-22 16:23:04 -------- d-----w- C:\Users\Default\AppData\Local\temp 2014-12-22 16:23:04 -------- d-----w- C:\Users\Default User\AppData\Local\temp 2014-12-22 14:47:57 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2014-12-22 14:47:57 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2014-12-22 14:47:56 -------- d-----w- C:\Users\User\AppData\Local\Temp 2014-12-02 22:19:27 10040DA9286CC185259D66A5FD56BA04 6427 ----a-w- C:\Users\User\AppData\Local\recently-used.xbel ====== C:\Users\User ====== 2014-12-28 12:12:36 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\User\Desktop\RSIT.exe 2014-12-22 16:39:28 C254F3ECEB9B1AC795BA6B25DE008EBA 1707646 ------w- C:\Users\User\Downloads\JRT.exe 2014-12-22 15:03:51 32A7154F9934CF3AA5D945D02D069D1F 17523384 ----a-w- C:\Users\User\Downloads\mbam-setup-2.0.0.1000(1).exe 2014-12-19 15:25:36 -------- d-----r- C:\Users\User\Google Drive 2014-11-30 20:13:20 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP ====== C: exe-files == 2014-12-24 12:15:45 516C021FEBEDE2962C9252DF85606C76 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\9212\AdobeARMHelper.exe 2014-12-23 22:29:47 9AED8E824CF5FAAB67957EDBC5512060 164864 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe 2014-12-22 12:35:38 74C71D9A908FD48C557CB14B6AE7B061 181760 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe 2014-12-22 12:33:45 56E1BFE10166F2CF6EC03E2D8BB31C1B 223232 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2014-12-22 12:33:44 D7AD6A7CEF0710BB7A8831B1792D5A0A 470016 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2014-12-22 12:33:43 63BE371C16B163583A5EA9D3DF4AC16B 757968 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2014-12-22 12:33:43 4867136A725C08C729785CF1E0126E58 22528 ----a-w- C:\Program Files\Internet Explorer\ExtExport.exe === C: other files == 2014-12-26 10:05:01 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\User\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx 2014-12-25 09:20:54 A1B1BC6A14B437C82AC830116979E9F6 979699 ----a-w- C:\Users\User\Desktop\Oude Firefox-gegevens\jlsr90bq.default-1364328719161\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi 2014-12-25 09:20:54 6C702001B52B46BC97434B4CEFDAF55E 20959 ----a-w- C:\Users\User\Desktop\Oude Firefox-gegevens\jlsr90bq.default-1364328719161\extensions\belgiumeid@eid.belgium.be.xpi 2014-12-22 12:37:52 F6AF80581A85F657CFCD8ADC7ED0B3DA 2379264 ----a-w- C:\Windows\System32\win32k.sys 2014-12-22 12:36:46 EB34CE31FABD4DC4343FD2AD16D2CAF9 234432 ----a-w- C:\Windows\System32\DriverStore\FileRepository\iscsi.inf_x86_neutral_128be931e3e98b62\msiscsi.sys 2014-12-22 12:36:46 EB34CE31FABD4DC4343FD2AD16D2CAF9 234432 ----a-w- C:\Windows\System32\drivers\msiscsi.sys 2014-12-22 12:36:45 F1A449D762657230629D8BFC107ABC14 149440 ----a-w- C:\Windows\System32\drivers\storport.sys 2014-12-22 12:36:45 5FB4F271032B6435F3B2252F577A4815 27072 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2014-12-22 12:36:30 3EEBD3BD93DA46A26E89893C7AB2FF3B 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys 2014-12-22 12:35:17 C8DFF8D07755A66C7A4A738930F0FEAC 1212352 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2014-12-22 12:35:12 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_x86_neutral_df2ea65e936720f7\portcls.sys 2014-12-22 12:35:12 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys 2014-12-22 12:35:12 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdmaudio.inf_x86_neutral_df2ea65e936720f7\drmk.sys 2014-12-22 12:35:12 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys 2014-12-22 12:34:19 DEE7EDA5AAA96C4C68A1F098F5145799 187840 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS 2014-12-22 12:34:19 5DBD4F73E2A52FEED61DBAB3752E329C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys 2014-12-22 12:34:19 5579DD18546999F5D0EC39D018726C6B 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2014-12-22 12:34:16 D0B388DA1D111A34366E04EB4A5DD156 338944 ----a-w- C:\Windows\System32\drivers\afd.sys 2014-12-22 12:31:40 21F4B24ACFC79A483515BD986DD9043F 115712 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2014-12-22 12:31:11 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\ataport.sys 2014-12-22 12:31:11 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\drivers\ataport.sys 2014-12-22 12:30:49 CD9214A6AE17D188D17C3CF8CB9CC693 184320 ----a-w- C:\Windows\System32\drivers\rdpwd.sys 2014-12-22 12:30:48 6C5139E4283249518F7743D7043775B3 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys 2014-12-22 12:29:43 FC6B21DB4B5B398AB93DBE59CBF11036 36352 ----a-w- C:\Windows\System32\DriverStore\FileRepository\sti.inf_x86_neutral_24eb5587941b03fb\usbscan.sys 2014-12-22 12:29:43 FC6B21DB4B5B398AB93DBE59CBF11036 36352 ----a-w- C:\Windows\System32\drivers\usbscan.sys 2014-12-22 12:29:42 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_1436b88c77b8881d\hidparse.sys 2014-12-22 12:29:42 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\drivers\hidparse.sys 2014-12-22 12:29:42 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\DriverStore\FileRepository\input.inf_x86_neutral_1436b88c77b8881d\hidclass.sys 2014-12-22 12:29:42 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys 2014-12-22 12:29:21 ED80D303102A746D30C1684B387BCBF1 33280 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys 2014-12-22 12:29:21 8C9C922D71F1CD4DEF73F186416B7896 712048 ----a-w- C:\Windows\System32\drivers\ndis.sys 2014-12-22 12:28:18 7FE680A3DFA421C4A8E4879AE4C5AAB0 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys 2014-12-22 12:26:00 6DD1FB86ED2B4EB5DF131D11BCD72328 5303 ------w- C:\Users\User\Documents\Salaris refresco\loon 2014\2014_31_000081_0012_0001.zip 2014-12-22 12:25:54 007C0C8D5B01D82ACEB70431D15083F6 28160 ----a-w- C:\Windows\System32\DriverStore\FileRepository\mdmcpq.inf_x86_neutral_1965855805a8e768\usbser.sys 2014-12-22 12:25:48 3583A5A8CC2E682BFFBD4630D0FEC08B 730048 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2014-12-22 12:25:47 0EC652D17AB4607745FB4E6958E8FAB6 219072 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys 2014-12-22 12:21:19 DE014425522610BEDCA3821BB8C0F1D5 146816 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbvideo.inf_x86_neutral_b63436395ec126b7\usbvideo.sys 2014-12-22 12:21:19 DE014425522610BEDCA3821BB8C0F1D5 146816 ----a-w- C:\Windows\System32\drivers\usbvideo.sys 2014-12-22 12:21:19 A1977C315BF5691DA99235AA4A6907AF 80896 ----a-w- C:\Windows\System32\DriverStore\FileRepository\wdma_usb.inf_x86_neutral_8583111d879ac65d\USBAUDIO.sys 2014-12-22 12:21:18 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbcir.inf_x86_neutral_1a7503cad201feda\usbcir.sys 2014-12-22 12:21:18 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\drivers\usbcir.sys 2014-12-22 11:50:17 25944D2CC49E0A6C581D02A74B7D6645 527064 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2014-12-22 11:50:11 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbhub.sys 2014-12-22 11:50:11 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_4232097e28daf017\usbhub.sys 2014-12-22 11:50:11 EDF2DF71C4F1E13A6AC75F5224DE655A 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys 2014-12-22 11:50:11 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbport.sys 2014-12-22 11:50:11 EC2C5AF37B76D7B58C642CB74423DB7A 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys 2014-12-22 11:50:11 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbehci.sys 2014-12-22 11:50:11 D40855F89B69305140BBD7E9A3BA2DA6 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys 2014-12-22 11:50:11 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbohci.sys 2014-12-22 11:50:11 9828C8D14CC2676421778F0DE638CF97 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys 2014-12-22 11:50:11 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbuhci.sys 2014-12-22 11:50:11 800AABFD625EEFF899F7E5496BDE37AB 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys 2014-12-22 11:50:11 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbport.inf_x86_neutral_d53c05ca022d95f2\usbd.sys 2014-12-22 11:50:11 74F805AB12EB0E3E49E469F19FF02640 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys 2014-12-22 11:50:11 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usb.inf_x86_neutral_4232097e28daf017\usbccgp.sys 2014-12-22 11:50:11 0803FBA9FE829D61AE26EC0BCC910C46 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys 2014-12-22 11:49:30 85449EEBE8F8EBD6481EFBF0F352B4EB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys 2014-12-22 11:49:30 4120DA10AA42A9996F4575DB9E3E6E6E 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2014-12-22 11:49:30 1E1845606C5A4579F7F3D95796CC1ED1 136632 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-146841159-3728994346-863424598-1000\Software\Microsoft\Windows\CurrentVersion\Run] "SmileboxTray"="C:\Users\User\AppData\Roaming\Smilebox\SmileboxTray.exe" "DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun" "ISUSPM"="C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "iCloudServices"="C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "GoogleDriveSync"="C:\Program Files\Google\Drive\googledrivesync.exe /autostart" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" "cAudioFilterAgent"="C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" "AmIcoSinglun"="C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe" "ODDPwr"="C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe" "NortonOnlineBackupReminder"="C:\Program Files\Symantec\Norton Online Backup\Activation\NobuActivation.exe UNATTENDED" "BackupManagerTray"="C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe -h -k" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "Acer ePower Management"="C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" "FLMOFFICE4DMOUSE"="C:\Program Files\Labtec\Desktop\V5.1\moffice.exe" "SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -Embedding -boot" "PaperPort PTD"="C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe" "IndexSearch"="C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe" "BrMfcWnd"="C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN" "ControlCenter3"="C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun" "AtherosBtStack"="C:\Program Files\Bluetooth Suite\BtvStack.exe" "AthBtTray"="C:\Program Files\Bluetooth Suite\AthBtTray.exe" "PDFHook"="C:\Program Files\Nuance\PDF Professional 6\pdfpro6hook.exe" "PDF6 Registry Controller"="C:\Program Files\Nuance\PDF Professional 6\RegistryController.exe" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "AVG_UI"="C:\Program Files\AVG\AVG2014\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "SmileboxTray"="C:\Users\User\AppData\Roaming\Smilebox\SmileboxTray.exe" "DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun" "ISUSPM"="C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler" "OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" "iCloudServices"="C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "GoogleDriveSync"="C:\Program Files\Google\Drive\googledrivesync.exe /autostart" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "PPort11reminder"="\"C:\\Program Files\\ScanSoft\\PaperPort\\Ereg\\Ereg.exe\" -r \"C:\\ProgramData\\ScanSoft\\PaperPort\\11\\Config\\Ereg\\Ereg.ini\"" "Nuance PDF Professional 6-reminder"="\"C:\\Program Files\\Nuance\\PDF Professional 6\\Ereg\\Ereg.exe\" -r \"C:\\ProgramData\\Nuance\\PDF Professional 6\\Ereg\\Ereg.ini\"" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\QTTask.exe\" -atboottime" "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" ==== Startup Folders ====================== 2011-04-01 20:45:56 1270 ----a-w- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk 2010-06-23 08:30:10 1724 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer VCM.lnk 2010-10-11 06:20:10 834 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [10/12/2014 20:39] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [21/10/2014 17:47] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [21/10/2014 17:47] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Acrobat Update Task" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\system32\tasks\{CAB783B9-500F-4070-BB25-7452EC94DA81}" ["C:\Program Files\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/4.1.0.179.367/nl/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;notincluded] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [10/12/2014 17:22] ==== Firefox Extensions ====================== ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\wld2raux.default-1419499247677 - PDF Converter 6.0 - %ProfilePath%\extensions\nuance@pdf6 AppDir: C:\Program Files\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\wld2raux.default-1419499247677 9860727E477F17B88E39AF8B69B0407A - C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll - Shockwave Flash 0806948270D853B709CCBBF38AF167E4 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat 9DF0C4F0CEF60158614EDD1B3AB441EE - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat D2377C9458EFEB094E38B8C874AA214C - C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll - Google Update BBF0479C2D30519A2E746D12CAE54B43 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U71 1ED046D972B98E0ADEC4D4D61BF37695 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.710.14 9419AA8A2799526EC32B473C2BB7A10D - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 893BF7D2261C56C24F813405D9D018E0 - c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll - Silverlight Plug-In 5596E40701BE8A4AEC399F57DBCE289E - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.5 87FCE1D38F135B923EEC502825B5C7F6 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.5 5A2AF08FEF626D3825AA7923B0A9DFF5 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.5 B033D1486EAD65BE7857114DFAFD8429 - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.5 DA632EC5CCC16F0B0FAC9BB21C10B2C3 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.5 B5371D2C9017EEE216B5361D600B3543 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector 99B4B884FE9A878B4822F7F326C90CE1 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll - Shockwave Flash C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery E01E08A5C8BB2196E9C7E23F8370D5FD - C:\Program Files\Nuance\PDF Professional 6\bin\nppdf.dll - Zeon Plus E01E08A5C8BB2196E9C7E23F8370D5FD - C:\Program Files\Nuance\PDF Professional 6\Bin\nppdf.dll - Zeon Plus 8DA2ED6B04EA33F2EAE8BA883F903729 - c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrlui.dll - Microsoft® Silverlight ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95) HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions apdfllckaahabafndbhieahigkjlhalf - C:\Users\User\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx[26/12/2014 10:45] lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[] Google Drive - User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf Google Drive App Launcher - User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh Google Wallet - User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {67A2568C-7A0A-4EED-AECC-B5405DE63B64} Google Url="http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_nlBE411BE411" ==== HijackThis Entries ====================== O2 - BHO: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files\Nuance\PDF Professional 6\Bin\PlusIEContextMenu.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL O2 - BHO: ZeonIEEventHelper Class - {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} - C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ODDPwr] "C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe" O4 - HKLM\..\Run: [NortonOnlineBackupReminder] "C:\Program Files\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] C:\Program Files\Labtec\Desktop\V5.1\moffice.exe O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe" O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe" O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [AtherosBtStack] "C:\Program Files\Bluetooth Suite\BtvStack.exe" O4 - HKLM\..\Run: [AthBtTray] "C:\Program Files\Bluetooth Suite\AthBtTray.exe" O4 - HKLM\..\Run: [PDFHook] C:\Program Files\Nuance\PDF Professional 6\pdfpro6hook.exe O4 - HKLM\..\Run: [PDF6 Registry Controller] C:\Program Files\Nuance\PDF Professional 6\RegistryController.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2014\avgui.exe" /TRAYONLY O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [SmileboxTray] "C:\Users\User\AppData\Roaming\Smilebox\SmileboxTray.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" O4 - HKCU\..\Run: [iCloudServices] C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O4 - Startup: OneNote 2010 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE O4 - Global Startup: Acer VCM.lnk = ? O4 - Global Startup: Bluetooth.lnk = ? O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: Open with Nuance PDF Converter 6.0 - res://C:\Program Files\Nuance\PDF Professional 6\cnvres_eng.dll /100 O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files\Bluetooth Suite\adminservice.exe O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2014\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2014\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2014\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: GREGService - Acer Incorporated - C:\Program Files\Acer\Registration\GREGsvc.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NTI, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O23 - Service: Acer ODD Power Service (ODDPwrSvc) - Acer Incorporated - C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe O23 - Service: PDFProFiltSrv - Nuance Communications, Inc. - C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: XAMPP Service (XAMPP) - Unknown owner - c:\xampp\service.exe ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\User\AppData\Local\Mozilla\Firefox\Profiles\h9kaen4h.default\Cache emptied successfully C:\Users\User\AppData\Local\Mozilla\Firefox\Profiles\wld2raux.default-1419499247677\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=0 folders=0 0 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\User\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\User\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found ==== EOF on zo 28/12/2014 at 15:01:03,66 ======================