Zoek.exe v5.0.0.0 Updated 05-March-2015 Tool run by BenJ on zo 19-04-2015 at 8:53:59,23. Microsoft Windows XP Professional 5.1.2600 Service Pack 2 x86 Running in: Normal Mode No Internet Access Detected Launched: C:\Documents and Settings\BenJ\Bureaublad\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-04-18-184039.log 2260 bytes ==== Suspicious Entries Found ====================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "3389:TCP"="3389:TCP:*:Disabled:Remote Desktop" "65533:TCP"="65533:TCP:*:Enabled:Services" "52344:TCP"="52344:TCP:*:Enabled:Services" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007" "2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008" "3389:TCP"="3389:TCP:*:Disabled:Remote Desktop" "65533:TCP"="65533:TCP:*:Enabled:Services" "52344:TCP"="52344:TCP:*:Enabled:Services" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD6E6555-FB2C-47D4-8339-3E2965509877} deleted successfully HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} deleted successfully HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} deleted successfully HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Internet Explorer\SearchScopes\{8048EC41-42C9-44CF-A529-40D40F881F15} deleted successfully HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} deleted successfully HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Internet Explorer\SearchScopes\{E93187E1-0BE0-4BEA-9C7A-59F5AFBCC628} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{AD6E6555-FB2C-47D4-8339-3E2965509877} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} deleted successfully ==== Running Processes ====================== C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\Explorer.EXE C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\SCardSvr.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe C:\WINDOWS\system32\Tablet.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\System32\alg.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\WINDOWS\system32\wbem\unsecapp.exe C:\Documents and Settings\BenJ\Bureaublad\zoek.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\System32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup C:\WINDOWS\system32\svchost.exe -k NetworkService C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\system32\svchost.exe -k bthsvcs C:\WINDOWS\system32\svchost.exe -k imgsvc C:\WINDOWS\System32\svchost.exe -k HTTPFilter ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\!SASCORE deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\!SASCORE deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IswSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IswSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\IswSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\IswSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\IswSvc deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default user.js not found ---- Lines zonealarm removed from prefs.js ---- user_pref("extensions.zonealarm.admin", false); user_pref("extensions.zonealarm.aflt", "1001"); user_pref("extensions.zonealarm.autoRvrt", "false"); user_pref("extensions.zonealarm.cntry", "NL"); user_pref("extensions.zonealarm.dfltLng", "en"); user_pref("extensions.zonealarm.dfltlng", "en"); user_pref("extensions.zonealarm.dfltsrch", "false"); user_pref("extensions.zonealarm.envrmnt", "production"); user_pref("extensions.zonealarm.excTlbr", false); user_pref("extensions.zonealarm.hdrMd5", "015FEFD880B3C18CB6E40C2A2E58BF54"); user_pref("extensions.zonealarm.hmpg", false); user_pref("extensions.zonealarm.hrdid", "145c345c000000000000000c76710209"); user_pref("extensions.zonealarm.id", "145c345c000000000000000c76710209"); user_pref("extensions.zonealarm.instlDay", "15581"); user_pref("extensions.zonealarm.instlRef", "ZLN06424949424806-1025"); user_pref("extensions.zonealarm.instlday", "15581"); user_pref("extensions.zonealarm.instlref", "ZLN06424949424806-1025"); user_pref("extensions.zonealarm.isdcmntcmplt", true); user_pref("extensions.zonealarm.keywordurl", ""); user_pref("extensions.zonealarm.lastVrsnTs", "1.6.7.416:37:19"); user_pref("extensions.zonealarm.mntrvrsn", "1.3.1"); user_pref("extensions.zonealarm.newTab", false); user_pref("extensions.zonealarm.newtab", "false"); user_pref("extensions.zonealarm.newtaburl", ""); user_pref("extensions.zonealarm.prdct", "zonealarm"); user_pref("extensions.zonealarm.prtnrId", "checkpoint"); user_pref("extensions.zonealarm.prtnrid", "checkpoint"); user_pref("extensions.zonealarm.savedVrsnTs", "1"); user_pref("extensions.zonealarm.sg", "none"); user_pref("extensions.zonealarm.smplGrp", "none"); user_pref("extensions.zonealarm.smplgrp", "none"); user_pref("extensions.zonealarm.srch", ""); user_pref("extensions.zonealarm.srchprvdr", ""); user_pref("extensions.zonealarm.tlbrId", "base"); user_pref("extensions.zonealarm.tlbrSrchUrl", "http://search.zonealarm.com/search?Source=ToolBar&oemCode=ZLN06424949424806-1025&toolbarId=base&affilia user_pref("extensions.zonealarm.tlbrid", "base"); user_pref("extensions.zonealarm.tlbrsrchurl", "http://search.zonealarm.com/search?Source=ToolBar&oemCode=ZLN06424949424806-1025&toolbarId=base&affilia user_pref("extensions.zonealarm.vrsn", "1.6.7.4"); user_pref("extensions.zonealarm.vrsnTs", "1.6.7.416:37:19"); user_pref("extensions.zonealarm.vrsni", "1.6.7.4"); user_pref("extensions.zonealarm.vrsnts", "1.6.7.416:37:19"); user_pref("extensions.zonealarm.zonealarm_actvtyrpttime", "1346677539465"); user_pref("extensions.zonealarm.zonealarm_afterinstallrpt", "sent"); user_pref("extensions.zonealarm_i.newTab", false); user_pref("extensions.zonealarm_i.smplGrp", "none"); user_pref("extensions.zonealarm_i.vrsnTs", "1.6.7.416:37:19"); ---- Lines CT1060933 removed from prefs.js ---- user_pref("CommunityToolbar.MiniIPageGadgetPosition.http://storage.conduit.com/33/106/CT1060933/Gadgets/a8e47654-61b9-4c0d-bb80-cc04a502af1d720d8830-a user_pref("CommunityToolbar.ToolbarsList", "CT1060933,ConduitEngine"); user_pref("CT1060933.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx"); user_pref("CT1060933.alertChannelId", "15651"); user_pref("CT1060933.clientLogIsEnabled", true); user_pref("CT1060933.clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); user_pref("CT1060933.CommunitiesChangesLastCheckTime", "Wed Jan 19 2011 11:32:21 GMT+0100"); user_pref("CT1060933.CommunityChanged", true); user_pref("CT1060933.components.1000048", false); user_pref("CT1060933.components.1000082", false); user_pref("CT1060933.components.1000234", true); user_pref("CT1060933.components.1195523576291705302", false); user_pref("CT1060933.components.128305918656969002", false); user_pref("CT1060933.components.129032145384800518", false); user_pref("CT1060933.components.129032152822456983", false); user_pref("CT1060933.components.129032154330894193", false); user_pref("CT1060933.components.129032157011675027", false); user_pref("CT1060933.components.129032158089643768", false); user_pref("CT1060933.components.129032162642925076", false); user_pref("CT1060933.components.129078057486250176", false); user_pref("CT1060933.components.129078058382649592", false); user_pref("CT1060933.components.129098749106874573", false); user_pref("CT1060933.components.129272674122038321", false); user_pref("CT1060933.CTID", "CT1060933"); user_pref("CT1060933.CurrentServerDate", "19-1-2011"); user_pref("CT1060933.DialogsAlignMode", "LTR"); user_pref("CT1060933.DownloadDomainsCheckInterval", "168"); user_pref("CT1060933.DownloadDomainsListLastCheckTime", "Tue Jan 18 2011 11:47:02 GMT+0100"); user_pref("CT1060933.DownloadDomainsListLastServerUpdateTime", "1201073583"); user_pref("CT1060933.DownloadReferralCookieData", ""); user_pref("CT1060933.EnableClickToSearchBox", false); user_pref("CT1060933.EnableSearchHistory", false); user_pref("CT1060933.EnableSearchSuggest", false); user_pref("CT1060933.EnableUsage", false); user_pref("CT1060933.FirstServerDate", "25-2-2010"); user_pref("CT1060933.FirstTime", true); user_pref("CT1060933.FirstTimeFF3", true); user_pref("CT1060933.FirstTimeSettingsDone", true); user_pref("CT1060933.GroupingServerCheckInterval", 1440); user_pref("CT1060933.GroupingServiceUrl", "http://grouping.services.conduit.com/"); user_pref("CT1060933.Initialize", true); user_pref("CT1060933.InitializeCommonPrefs", true); user_pref("CT1060933.InstallationAndCookieDataSentCount", 3); user_pref("CT1060933.InstalledDate", "Thu Jan 14 2010 16:14:25 GMT+0100"); user_pref("CT1060933.InvalidateCache", false); user_pref("CT1060933.IsGrouping", false); user_pref("CT1060933.IsMulticommunity", true); user_pref("CT1060933.IsOpenThankYouPage", true); user_pref("CT1060933.IsOpenUninstallPage", true); user_pref("CT1060933.LanguagePackLastCheckTime", "Tue Jan 18 2011 19:25:27 GMT+0100"); user_pref("CT1060933.LanguagePackReloadIntervalMM", 1440); user_pref("CT1060933.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx"); user_pref("CT1060933.LastLogin_2.4.0.4", "Thu Feb 25 2010 08:58:05 GMT+0100"); user_pref("CT1060933.LastLogin_2.5.6.0", "Mon Aug 23 2010 13:57:10 GMT+0200"); user_pref("CT1060933.LastLogin_2.7.2.0", "Wed Jan 19 2011 08:52:03 GMT+0100"); user_pref("CT1060933.LatestVersion", "3.2.5.2"); user_pref("CT1060933.Locale", "en-us"); user_pref("CT1060933.LoginCache", 4); user_pref("CT1060933.MCDetectTooltipHeight", "83"); user_pref("CT1060933.MCDetectTooltipShow", false); user_pref("CT1060933.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); user_pref("CT1060933.MCDetectTooltipWidth", "295"); user_pref("CT1060933.myStuffEnabled", true); user_pref("CT1060933.myStuffPublihserMinWidth", 400); user_pref("CT1060933.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID" user_pref("CT1060933.myStuffServiceIntervalMM", 1440); user_pref("CT1060933.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUF user_pref("CT1060933.RadioIsPodcast", false); user_pref("CT1060933.RadioLastCheckTime", "Thu Jan 14 2010 16:14:24 GMT+0100"); user_pref("CT1060933.RadioLastUpdateIPServer", "0"); user_pref("CT1060933.RadioLastUpdateServer", "128929877726170000"); user_pref("CT1060933.RadioMediaID", "5020427"); user_pref("CT1060933.RadioMediaType", "Media Player"); user_pref("CT1060933.RadioMenuSelectedID", "EBRadioMenu_CT10609335020427"); user_pref("CT1060933.RadioStationName", "Classic%20Rock"); user_pref("CT1060933.RadioStationURL", "http://tuner1.dc1.sonixtream.com/playlists/wmgk/wmgkWMGKFM.asx"); user_pref("CT1060933.SearchBoxWidth", 122); user_pref("CT1060933.SearchEngine", "Search||http://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT1060933&octid=EB_ORIGINAL_CTID&SearchSour user_pref("CT1060933.SearchFromAddressBarIsInit", true); user_pref("CT1060933.SearchInNewTabEnabled", true); user_pref("CT1060933.SearchInNewTabIntervalMM", 1440); user_pref("CT1060933.SearchInNewTabLastCheckTime", "Tue Jan 18 2011 14:40:37 GMT+0100"); user_pref("CT1060933.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID"); user_pref("CT1060933.SearchInNewTabUsageUrl", "http://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID"); user_pref("CT1060933.SearchInNewTabUserEnabled", false); user_pref("CT1060933.SettingsCheckIntervalMin", 120); user_pref("CT1060933.SettingsLastCheckTime", "Wed Jan 19 2011 10:52:41 GMT+0100"); user_pref("CT1060933.SettingsLastUpdate", "1289283303"); user_pref("CT1060933.SHRINK_TOOLBAR", 1); user_pref("CT1060933.ThirdPartyComponentsInterval", 504); user_pref("CT1060933.ThirdPartyComponentsLastCheck", "Tue Jan 11 2011 16:08:28 GMT+0100"); user_pref("CT1060933.ThirdPartyComponentsLastUpdate", "1273615896"); user_pref("CT1060933.TrusteLinkUrl", "http://www.truste.org/pvr.php?page=validate&softwareProgramId=101&sealid=112"); user_pref("CT1060933.uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); user_pref("CT1060933.UserID", "UN49161926571317955"); user_pref("CT1060933.ValidationData_Search", 2); user_pref("CT1060933.ValidationData_Toolbar", 2); user_pref("CT1060933.WeatherNetwork", ""); user_pref("CT1060933.WeatherPollDate", "Wed Jan 19 2011 11:23:35 GMT+0100"); user_pref("CT1060933.WeatherUnit", "C"); ---- Lines conduit removed from prefs.js ---- user_pref("CommunityToolbar.alert.clientsServerUrl", "http://alert.client.conduit.com"); user_pref("CommunityToolbar.alert.servicesServerUrl", "http://alert.services.conduit.com"); user_pref("CommunityToolbar.EngineOwner", "ConduitEngine"); user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com"); user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine"); user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=0", "634356118310000000"); user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine"); user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com"); user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine"); user_pref("ConduitEngine.AppTrackingLastCheckTime", "Fri Mar 25 2011 13:58:16 GMT+0100"); user_pref("ConduitEngine.componentAlertEnabled", false); user_pref("ConduitEngine.CTID", "ConduitEngine"); user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Fri Mar 25 2011 13:58:06 GMT+0100"); user_pref("ConduitEngine.engineLocale", "nl"); user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Fri Mar 25 2011 13:58:06 GMT+0100"); user_pref("ConduitEngine.FirstServerDate", "03/25/2011 15"); user_pref("ConduitEngine.FirstTime", true); user_pref("ConduitEngine.FirstTimeFF3", true); user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Fri Mar 25 2011 13:58:07 GMT+0100"); user_pref("ConduitEngine.HasUserGlobalKeys", true); user_pref("ConduitEngine.initDone", true); user_pref("ConduitEngine.Initialize", true); user_pref("ConduitEngine.InitializeCommonPrefs", true); user_pref("ConduitEngine.InstalledDate", "Fri Mar 25 2011 13:58:07 GMT+0100"); user_pref("ConduitEngine.isAppTrackingManagerOn", true); user_pref("ConduitEngine.IsOpenThankYouPage", false); user_pref("ConduitEngine.IsOpenUninstallPage", true); user_pref("ConduitEngine.LanguagePackLastCheckTime", "Fri Mar 25 2011 13:58:06 GMT+0100"); user_pref("ConduitEngine.LastLogin_3.3.3.2", "Fri Mar 25 2011 13:58:07 GMT+0100"); user_pref("ConduitEngine.SearchFromAddressBarIsInit", true); user_pref("ConduitEngine.SettingsLastCheckTime", "Fri Mar 25 2011 13:58:06 GMT+0100"); user_pref("ConduitEngine.UserID", "UN15663289253301127"); user_pref("extensions.engine@conduit.com.install-event-fired", true); ---- Lines Search removed from prefs.js ---- user_pref("browser.search.defaultenginename", "Search Provided by Yahoo"); ---- Lines isearch removed from prefs.js ---- user_pref("weboftrust.search.avg.url", "^http(s)?\\:\\/\\/isearch\\.avg\\.com\\/search\\?"); ---- Lines ask.com removed from prefs.js ---- user_pref("weboftrust.search.ask.display", "Ask.com Web Search"); ---- Lines CommunityToolbar removed from prefs.js ---- user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Fri Mar 25 2011 13:58:05 GMT+0100"); user_pref("CommunityToolbar.alert.alertEnabled", false); user_pref("CommunityToolbar.alert.alertInfoInterval", 60); user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Fri Feb 19 2010 18:48:06 GMT+0100"); user_pref("CommunityToolbar.alert.firstTimeAlertShown", true); user_pref("CommunityToolbar.alert.locale", "en"); user_pref("CommunityToolbar.alert.loginIntervalMin", 1440); user_pref("CommunityToolbar.alert.loginLastCheckTime", "Fri Mar 25 2011 13:58:03 GMT+0100"); user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1291048634"); user_pref("CommunityToolbar.alert.messageShowTimeSec", 20); user_pref("CommunityToolbar.alert.showTrayIcon", false); user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300); user_pref("CommunityToolbar.alert.userId", "{11cf7aca-bd88-40d9-961b-5ed8434128c7}"); user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); user_pref("CommunityToolbar.IsEngineShown", true); user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true); ---- Lines 33e0daa6-3af3-d8b5-6752-10e949c61516 removed from prefs.js ---- user_pref("extensions.{33e0daa6-3af3-d8b5-6752-10e949c61516}.install-event-fired", true); ---- FireFox user.js and prefs.js backups ---- prefs_19-04-2015_0924_.backup ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\SeaMonkey\Profiles\d1w9yo8p.default user.js not found ---- FireFox user.js and prefs.js backups ---- prefs_19-04-2015_0924_.backup ==== Deleting Files \ Folders ====================== C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\extensions\ {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} not found C:\Program Files\ComPlus Applications deleted C:\Program Files\WindowsUpdate deleted C:\Program Files\UPC Fiber Power Optimizer deleted C:\Documents and Settings\BenJ\Application Data\SystemRequirementsLab deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\extensions\xpcom deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\extensions\{2d3fbcf7-be69-4433-8858-c621a8d0e58d} deleted C:\Documents and Settings\All Users\Menu Start\Programma's\WEATHE~1 deleted C:\Program Files\AnvSoft Flash to Video Converter deleted C:\Program Files\E.M. PowerPoint Video Converter deleted C:\Program Files\PD Particles deleted C:\Program Files\Check Point Software Technologies LTD deleted C:\Program Files\Freecorder deleted C:\Program Files\GreenTree Applications deleted C:\Program Files\Wondershare deleted C:\Program Files\Common Files\Wondershare deleted C:\user.js deleted C:\found.000 deleted C:\Documents and Settings\BenJ\Application Data\FrameFun.ini deleted C:\Documents and Settings\BenJ\Application Data\isfree3_0.tmp deleted C:\Documents and Settings\BenJ\Application Data\isfree3_1.tmp deleted C:\Documents and Settings\BenJ\Application Data\GetRightToGo deleted C:\Documents and Settings\BenJ\Application Data\CheckPoint\ZoneAlarm LTD Toolbar deleted C:\DOCUME~1\ALLUSE~1\APPLIC~1\YTD Video Downloader deleted C:\DOCUME~1\ALLUSE~1\APPLIC~1\Speedbit deleted C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallMate deleted C:\Documents and Settings\BenJ\Local Settings\Application Data\Wondershare deleted C:\Documents and Settings\All Users\Menu Start\Programma's\Wondershare deleted C:\Documents and Settings\All Users\Menu Start\Programma's\YTD Video Downloader deleted C:\WINDOWS\wininit.ini deleted C:\WINDOWS\system32\GroupPolicy\Adm deleted C:\WINDOWS\system32\GroupPolicy\Machine deleted C:\WINDOWS\system32\GroupPolicy\User deleted C:\WINDOWS\system32\GroupPolicy\gpt.ini deleted C:\WINDOWS\System32\1.tmp deleted C:\WINDOWS\System32\2.tmp deleted C:\WINDOWS\System32\AniGIF.ocx deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\searchplugins\search-provided-by-yahoo.xml deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\searchplugins\winamp-search.xml deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\extensions\firefox@ghostery.com.xpi deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\winampToolbarData deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\jetpack deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\CT1060933 deleted C:\Documents and Settings\All Users\Bureaublad\YTD Video Downloader.lnk deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\conduit deleted C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\ConduitEngine deleted "C:\WINDOWS\Installer\417c1.msi" deleted ==== System Specs ====================== Operating System: Microsoft Windows XP Professional 5.1.2600 Service Pack 2 Manufacturer: MEDIONPC - Model: MS-7091 Install Date: 7-4-2015 15:47:25 Last Boot: 19-4-2015 8:46:20 Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz Work Station Bootmode: Normal boot Total RAM: 1023 MB (free 557 MB - 54) Computername: HISKE Domain: THUIS Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz Work Station Bootmode: Normal boot Total RAM: 1023 MB (free 557 MB - 54) Computername: HISKE Domain: THUIS User: BenJ (Administrator account) Local Disk: C:\ - NTFS - 78 GB (free 30 GB) Local Disk: D:\ - NTFS - 78 GB (free 59 GB) Local Disk: E:\ - NTFS - 76 GB (free 9 GB) CD \ DVD Drive: F:\ CD \ DVD Drive: G:\ Removable Disk: I:\ - - GB (free GB) Removable Disk: J:\ - - GB (free GB) Removable Disk: K:\ - - GB (free GB) Bootdevice: \Device\HarddiskVolume1 Windows update: Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: avast! Antivirus On-access scanning disabled (Updated) Firewall: ZoneAlarm Free Firewall Firewall disabled Default Browser: Firefox 37.0.1 Internet Explorer version: 6.0.2900.2180 Mozilla Firefox version: 37.0.1 (x86 nl) Google Chrome version: 42.0.2311.90 Adobe Reader version: 11.0.9.29 Sun Java version: 1.7.0_76 (32-bit) Flash Player version: 17.0.0.169 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-04-07 13:41:41 5A5CFF37F1BD0F86B9BDAAD7A9445882 749 ---ha-r- C:\WINDOWS\WindowsShell.Manifest 2015-04-07 12:29:19 7DD66572781C386411A271A8A2ABB2AF 4326 ----a-w- C:\WINDOWS\imsins.BAK 2015-03-28 09:42:27 29968EDF8EF795F91DD35A61988CC40C 43112 ----a-w- C:\WINDOWS\avastSS.scr 2015-03-28 09:13:46 662EEBE7ED6F0C63FD00E8954A4ADF31 32302 ----a-w- C:\WINDOWS\SchedLgU.Txt ====== C:\DOCUME~1\BenJ\LOCALS~1\Temp ==== ====== Java Cache ===== 2015-04-16 17:37:45 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\12\eef218c-66d629da 2015-04-16 17:37:24 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\17\49a00451-4cb754d7 2015-04-16 17:37:24 86A8A9F30E02E22B483E13D27E572B16 425 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\17\49a00451-aa56bb018d5de3a531ee91cc4857f0f479656e5370ebf87789e721aaaf530ebc-6.0.lap 2015-04-16 17:37:20 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\31\34e05d1f-6a1e25ee 2015-04-16 17:37:25 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\43\1ca2666b-2a8d3f9c 2015-04-15 22:23:40 D66A0AF51868913E139EBD57B586A138 3328 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\50\46ceb172-1b912420 ====== C:\WINDOWS\system32 ===== 2015-04-18 19:08:18 86DE70D8B408DE4ADCF2AE693F9DABDF 15072 ------w- C:\WINDOWS\System32\spmsg.dll 2015-04-18 07:13:18 0834DDBA6CCCC020E28B882096391F60 430984 ----a-w- C:\WINDOWS\System32\FNTCACHE.DAT 2015-04-16 14:09:00 55CEF8FE478E41C8EBCF7B27AF991A3F 18968 ----a-w- C:\WINDOWS\System32\sdnclean.exe 2015-04-16 10:07:55 CE2AAA68C4482E343772C97EC9938A66 28160 ----a-w- C:\WINDOWS\System32\irmon.dll 2015-04-16 10:07:54 CD8F01AE3154DCAA21B2FDB2AF7E9D16 8192 ----a-w- C:\WINDOWS\System32\wshirda.dll 2015-04-16 10:07:54 871FF3C32977022B1708BED45A8DC214 154112 ----a-w- C:\WINDOWS\System32\irftp.exe 2015-04-15 21:41:16 BF0132951A6AAA83B88437DF301ADAF5 145408 ----a-w- C:\WINDOWS\System32\javacpl.cpl 2015-04-15 21:41:16 A1F71601E9578A7B49CDCF0D9C3BD253 272808 ----a-w- C:\WINDOWS\System32\javaws.exe 2015-04-15 21:41:00 BB782AB0E9C2A59AD890C23348E7BF8D 96680 ----a-w- C:\WINDOWS\System32\WindowsAccessBridge.dll 2015-04-15 21:41:00 B0EC20BA1CBC3869745A04D7B823F993 175528 ----a-w- C:\WINDOWS\System32\java.exe 2015-04-15 21:41:00 431B3F716A156DD62883DFC7AAB3C2AB 175528 ----a-w- C:\WINDOWS\System32\javaw.exe 2015-04-11 07:46:24 95111BFB2EB0C6FECE6873ACF2EA358D 291312 ----a-w- C:\WINDOWS\System32\aswBoot.exe 2015-04-07 13:43:19 B37DF7729684C23BEEACB37B615CBA36 20480 ----a-w- C:\WINDOWS\System32\wmpcore.dll 2015-04-07 13:43:19 88C941A48E68F7F1D46DE14842E7B742 20480 ----a-w- C:\WINDOWS\System32\wmpui.dll 2015-04-07 13:43:19 74E41DE86D37837BFD433548017B1284 20480 ----a-w- C:\WINDOWS\System32\wmpcd.dll 2015-04-07 13:43:18 318D9721006AE16EEB74FBF32D1DC169 20480 ----a-w- C:\WINDOWS\System32\wmp.ocx 2015-04-07 13:43:16 1899415F4E5BD55FB9486A4B20E45D6A 276992 ----a-w- C:\WINDOWS\System32\Audiodev.dll 2015-04-07 13:43:15 BAD4750C3E3641DC7973C1B88A747A9C 257536 ----a-w- C:\WINDOWS\System32\wmerror.dll 2015-04-07 13:43:15 5B31E409DBE04CB2A1AE93127BE0C272 1661952 ----a-w- C:\WINDOWS\System32\wmpencen.dll 2015-04-07 13:43:15 4225471AF97AD206C1705DD8B10828CE 204288 ----a-w- C:\WINDOWS\System32\wmpsrcwp.dll 2015-04-07 13:43:14 E8A033F8C7BB24E3AB7EA2837E07B840 211456 ----a-w- C:\WINDOWS\System32\wmpasf.dll 2015-04-07 13:43:14 45E5308AEFF823952A11F422C0E54080 8271872 ----a-w- C:\WINDOWS\System32\wmploc.dll 2015-04-07 13:43:14 3A30B3B9AAA247E0D26B82B3647B0AEF 99840 ----a-w- C:\WINDOWS\System32\wmpshell.dll 2015-04-07 13:43:13 7BA2ADE7DB5F74300BF2157F32B98991 283648 ----a-w- C:\WINDOWS\System32\wmpdxm.dll 2015-04-07 13:43:13 2D03FFFDEE8E6B2439D0836A644E8038 10838528 ----a-w- C:\WINDOWS\System32\wmp.dll 2015-04-07 13:43:11 6F00E6D8FE8ECBFF4937FB9ABAF22204 63488 ----a-w- C:\WINDOWS\System32\wpdmtpus.dll 2015-04-07 13:43:11 63967C9486A020ADFC0AFD1B90D3DF37 331776 ----a-w- C:\WINDOWS\System32\wpdmtpdr.dll 2015-04-07 13:43:11 28BEFE46A5E2941FD2302553DABEF844 10752 ----a-w- C:\WINDOWS\System32\wpdtrace.dll 2015-04-07 13:43:11 26880FC054A4F13E5EC4230B8A33298C 154624 ----a-w- C:\WINDOWS\System32\wpdmtp.dll 2015-04-07 13:43:11 1871CF2851629C69F9B5FBFCF22CFCE3 35840 ----a-w- C:\WINDOWS\System32\wpdconns.dll 2015-04-07 13:43:11 0B680E4C4901BF70852E73DE63933F49 356352 ----a-w- C:\WINDOWS\System32\wpdsp.dll 2015-04-07 13:43:10 EBC6ACE28E58BA5BE4A8190B613B6F02 8704 ----a-w- C:\WINDOWS\System32\wdfmgr.exe 2015-04-07 13:43:10 EBC6ACE28E58BA5BE4A8190B613B6F02 8704 ----a-w- C:\WINDOWS\System32\uwdf.exe 2015-04-07 13:43:10 8A164A69875B9D940A3B275472277115 629760 ----a-w- C:\WINDOWS\System32\wpd_ci.dll 2015-04-07 13:43:10 6F628B1A7EA5F535FCFE83FAE5BEEF3E 4096 ----a-w- C:\WINDOWS\System32\wdfapi.dll 2015-04-07 13:43:09 FD98A80A8328A63D7A62D659FBD045F4 33792 ----a-w- C:\WINDOWS\System32\wmdmlog.dll 2015-04-07 13:43:09 DE1BEF23DEBED6700A51727F92E18207 229376 ----a-w- C:\WINDOWS\System32\cewmdm.dll 2015-04-07 13:43:09 CF55708E01719037B441ED53C8886A84 321536 ----a-w- C:\WINDOWS\System32\mswmdm.dll 2015-04-07 13:43:09 6B8A264DABD18C8234583FDC00B9CD44 414720 ----a-w- C:\WINDOWS\System32\msscp.dll 2015-04-07 13:43:09 4DBB48FFE1F5E33429F5F5F6CBC2F1EF 37376 ----a-w- C:\WINDOWS\System32\wmdmps.dll 2015-04-07 13:43:09 062ED848780162270910D8F87790D0E0 175616 ----a-w- C:\WINDOWS\System32\mspmsp.dll 2015-04-07 13:43:09 051B1BDECD6DEE18C771B5D5EC7F044D 27136 ----a-w- C:\WINDOWS\System32\mspmsnsv.dll 2015-04-07 13:43:08 BC8B8D1085C6DFF287EBCD73E8052FD3 429056 ----a-w- C:\WINDOWS\System32\WMDRMdev.dll 2015-04-07 13:43:08 5E7C3EEF9DDB94A3842B04F34C97F611 348672 ----a-w- C:\WINDOWS\System32\WMDRMNet.dll 2015-04-07 13:43:07 DC81C1E74711484664B4D6B20AA72511 4096 ----a-w- C:\WINDOWS\System32\wmvdmoe2.dll 2015-04-07 13:43:07 C368D3B0222AA59EF54A101A11240BB8 4096 ----a-w- C:\WINDOWS\System32\WMVADVE.DLL 2015-04-07 13:43:07 386C27FC2DAF7805103F13E18C676BB4 1329152 ----a-w- C:\WINDOWS\System32\WMSPDMOE.dll 2015-04-07 13:43:06 EF30F572232ED3A19114A0BDA59BC6D8 211456 ----a-w- C:\WINDOWS\System32\qasf.dll 2015-04-07 13:43:06 C6710B76FA75DB4B9CA97E58EF0A23B7 4096 ----a-w- C:\WINDOWS\System32\wmsdmoe2.dll 2015-04-07 13:43:06 98BCCC6D116C8330A6FA3C3AF73DC659 1117696 ----a-w- C:\WINDOWS\System32\WMADMOE.dll 2015-04-07 13:43:06 48E3D5E92AE5F374D9D3A82F57CA9E78 2458112 ----a-w- C:\WINDOWS\System32\wmvcore.dll 2015-04-07 13:43:06 3E8C2A69D4DC7C85060347DAE02CB2D9 157184 ----a-w- C:\WINDOWS\System32\wmidx.dll 2015-04-07 13:43:06 2296070F4FB364124CC0934C6548B18E 11264 ----a-w- C:\WINDOWS\System32\LAPRXY.dll 2015-04-07 13:43:06 190355B22E632CA438F432D655D5C4A4 100864 ----a-w- C:\WINDOWS\System32\logagent.exe 2015-04-07 13:43:06 0629690449F2EB0B46F2E74702436718 938496 ----a-w- C:\WINDOWS\System32\WMNetMgr.dll 2015-04-07 13:43:05 C77A18954C448DD9F87585247851501A 222208 ----a-w- C:\WINDOWS\System32\WMASF.dll 2015-04-07 13:43:05 80D1FC6F9F8306A9A5BA44E0AF6306E0 4096 ----a-w- C:\WINDOWS\System32\wmvadvd.dll 2015-04-07 13:43:04 B883B23A8F3EEA9507E8FFE45608A838 4096 ----a-w- C:\WINDOWS\System32\wmvdmod.dll 2015-04-07 13:43:04 7C4B8E2A220733C8280C6836F25726C2 4096 ----a-w- C:\WINDOWS\System32\wmsdmod.dll 2015-04-07 13:43:04 3B34FF2432FE59FF8CC2E28F20BF9AE0 604160 ----a-w- C:\WINDOWS\System32\WMSPDMOD.dll 2015-04-07 13:43:04 1840318BDEFAB1D23F8F9C0D59263CB3 757248 ----a-w- C:\WINDOWS\System32\WMADMOD.dll 2015-04-07 13:43:03 C66B4B183DDFD490B3DFA94D5C15150C 542720 ----a-w- C:\WINDOWS\System32\blackbox.dll 2015-04-07 13:43:03 9A52A1AC0DB12CA33E312D476B6A3B92 299520 ----a-w- C:\WINDOWS\System32\drmclien.dll 2015-04-07 13:43:03 973F644E8FAA612986F7AFDAC0C08123 87040 ----a-w- C:\WINDOWS\System32\drmstor.dll 2015-04-07 13:43:03 86659A7AAD5173AA82A9F3FDB49C76E3 179712 ----a-w- C:\WINDOWS\System32\msnetobj.dll 2015-04-07 13:43:03 6BC36540B0319492F1153E86D8D42F72 991744 ----a-w- C:\WINDOWS\System32\drmv2clt.dll 2015-04-07 13:43:02 DF099CD7A94402A529395BCD1A7ECCB0 167936 ----a-w- C:\WINDOWS\System32\wmserror.dll 2015-04-07 13:43:01 D68C311D0052C6E5DD3E23536CD1741D 7680 ----a-w- C:\WINDOWS\System32\asferror.dll 2015-04-07 13:41:47 5D76C3FB736514E1D7C88791E7322784 488 ---ha-r- C:\WINDOWS\System32\logonui.exe.manifest 2015-04-07 13:41:41 5A5CFF37F1BD0F86B9BDAAD7A9445882 749 ---ha-r- C:\WINDOWS\System32\wuaucpl.cpl.manifest 2015-04-07 13:41:41 5A5CFF37F1BD0F86B9BDAAD7A9445882 749 ---ha-r- C:\WINDOWS\System32\sapi.cpl.manifest 2015-04-07 13:41:41 5A5CFF37F1BD0F86B9BDAAD7A9445882 749 ---ha-r- C:\WINDOWS\System32\nwc.cpl.manifest 2015-04-07 13:41:41 5A5CFF37F1BD0F86B9BDAAD7A9445882 749 ---ha-r- C:\WINDOWS\System32\ncpa.cpl.manifest 2015-04-07 12:29:07 E7B7FB77DB73BF321E7CCC8A5677E84E 13312 ----a-w- C:\WINDOWS\System32\irclass.dll 2015-04-07 12:29:07 93A95085DB84D483651A0408B050E8DD 24661 ----a-w- C:\WINDOWS\System32\spxcoins.dll 2015-04-07 11:07:42 D9910204A189645EB23C4C49199E1953 227944 ----a-w- C:\WINDOWS\System32\nvcodins.dll 2015-04-07 11:07:42 D9910204A189645EB23C4C49199E1953 227944 ----a-w- C:\WINDOWS\System32\nvcod.dll 2015-04-07 11:07:30 13E06462CCE6B8E5E12846DE287C3C5B 14757888 ----a-w- C:\WINDOWS\System32\nvoglnt.dll 2015-04-07 11:07:27 28CCFE96ADE76E5869EE32D945BFF94E 2030184 ----a-w- C:\WINDOWS\System32\nvcuvid.dll 2015-04-07 11:07:26 B747881E916464148A08A41A8F96A27B 2646632 ----a-w- C:\WINDOWS\System32\nvcuvenc.dll 2015-04-07 11:07:21 40F3AF871065F5C4A7AFAC31026E18BF 4075520 ----a-w- C:\WINDOWS\System32\nvcuda.dll 2015-04-07 11:07:13 F8CA6B1A22E7B9A2B3E77783A249B986 1097728 ----a-w- C:\WINDOWS\System32\nvapi.dll 2015-04-07 11:07:13 A935CD59584E9C0D61A3EEF28F12C59C 11647592 ----a-w- C:\WINDOWS\System32\nvcompiler.dll 2015-04-07 11:07:08 F3ECAEB4D8A93EA085913D9E154708AA 6432128 ----a-w- C:\WINDOWS\System32\nv4_disp.dll 2015-04-07 11:07:08 4536A2972A1ED782BCF245CF04E724F0 61440 ----a-w- C:\WINDOWS\System32\OpenCL.dll ====== C:\WINDOWS\system32\drivers ===== 2015-04-07 13:43:11 C60DC16D4E406810FAD54B98DC92D5EC 38528 ----a-w- C:\WINDOWS\System32\drivers\wpdusb.sys 2015-04-07 11:07:01 30913CBF518396912E54C2C9F1DD0F09 10232128 ----a-w- C:\WINDOWS\System32\drivers\nv4_mini.sys ====== C:\WINDOWS\Tasks ====== 2015-04-07 15:02:56 2C0D129A3484473101121EDEF7EC2CBF 364 ---ha-w- C:\WINDOWS\Tasks\avast! Emergency Update.job ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-04-18 19:23:54 -------- d-----w- C:\Program Files\Microsoft.NET 2015-04-15 21:41:27 -------- d-----w- C:\Program Files\Common Files\Java 2015-04-15 21:40:33 -------- d-----w- C:\Program Files\Java 2015-04-15 19:27:29 -------- d-----w- C:\Program Files\trend micro 2015-04-13 11:20:20 -------- d-----w- C:\Program Files\Mozilla Maintenance Service 2015-04-12 09:53:54 -------- d-----w- C:\Program Files\Common Files\Skype 2015-04-12 09:53:46 -------- d-----r- C:\Program Files\Skype 2015-04-12 09:47:12 -------- d-----w- C:\Program Files\QuickTime 2015-04-11 19:54:29 -------- d-----w- C:\Program Files\SeaMonkey 2015-04-07 09:15:48 -------- d-----w- C:\Program Files\LeechFTP ======= C: ===== ====== C:\Documents and Settings\BenJ\Application Data ====== 2015-04-17 21:12:33 FF7B110544E5C5EA92E404CADA5D9B3A 142192 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\GDIPFONTCACHEV1.DAT 2015-04-16 14:15:54 -------- d-----w- C:\Documents and Settings\LocalService\Menu Start\Programma's ====== C:\Documents and Settings\BenJ ====== 2015-04-17 20:58:54 -------- d--h--r- C:\Documents and Settings\BenJ\Onlangs geopend 2015-04-16 14:15:54 -------- d-----w- C:\Documents and Settings\LocalService\Menu Start 2015-04-07 13:50:26 -------- d-s---w- C:\WINDOWS\system32\config\systemprofile\Cookies 2015-04-07 12:28:57 -------- d-s---w- C:\Documents and Settings\Default User\Cookies ====== C: exe-files == 2015-04-17 17:32:17 0D423A0CBEC984F3C08354C72E999FB1 11017296 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\Install\{F2A3758A-6699-47AF-8F64-C927073AF0B5}\42.0.2311.90_41.0.2272.118_chrome_updater.exe 2015-04-17 17:32:16 0D423A0CBEC984F3C08354C72E999FB1 11017296 ----a-w- C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\42.0.2311.90\42.0.2311.90_41.0.2272.118_chrome_updater.exe 2015-04-16 19:36:59 71C967B3A524DA582E9E6EBDA66ADC6B 761568 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\apple-application-support.exe 2015-04-16 14:09:00 55CEF8FE478E41C8EBCF7B27AF991A3F 18968 ----a-w- C:\WINDOWS\system32\sdnclean.exe 2015-04-16 13:28:13 9BED92B21A82C2590F26FDA7C44A8C5A 4608 -c--a-w- C:\WINDOWS\system32\dllcache\xrxflnch.exe 2015-04-16 13:28:13 42B1EF3EAB0445C91D00316069415555 27648 -c--a-w- C:\WINDOWS\system32\dllcache\xrxftplt.exe 2015-04-16 13:28:12 2BAEE569F38892694E80EA7234772E11 99865 -c--a-w- C:\WINDOWS\system32\dllcache\xlog.exe 2015-04-16 13:26:03 C9063F60B024E7916F52AC3CC6012D7A 14336 ----a-w- C:\WINDOWS\system32\dllcache\tsprof.exe 2015-04-16 13:25:55 C37A89DFE6E89DC138AB5D0E20095EC1 82432 -c--a-w- C:\WINDOWS\system32\dllcache\tp4mon.exe 2015-04-16 13:25:50 024DC0F68DF5FD6AE9DD82DFBAF479D6 455168 ----a-w- C:\WINDOWS\system32\dllcache\tintsetp.exe 2015-04-16 13:25:49 7854BDDC7DD769CF957C83A411C42643 44032 ----a-w- C:\WINDOWS\system32\dllcache\tintlphr.exe 2015-04-16 13:24:59 579A6E49F2A447A4C02427022A8766A4 8704 ----a-w- C:\WINDOWS\system32\dllcache\snmptrap.exe 2015-04-16 13:24:55 01E715733296FF80B91FDA9722FB2997 32768 ----a-w- C:\WINDOWS\system32\dllcache\snmp.exe 2015-04-16 13:24:49 342E9C847729C48474B28575EDF4D14F 236544 ----a-w- C:\WINDOWS\system32\dllcache\smi2smir.exe 2015-04-16 13:24:34 A874DF6ADA7148E058F068FCFDAB1243 73796 -c--a-w- C:\WINDOWS\system32\dllcache\slserv.exe 2015-04-16 13:24:34 06B401F9BDC653BC7E1762C0969B9DFC 32866 -c--a-w- C:\WINDOWS\system32\dllcache\slrundll.exe 2015-04-16 13:23:33 8BFC42E247C203E883F80690B3808ABD 23040 ----a-w- C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe 2015-04-16 13:23:31 B082D2E522B5AAAB3E178639A9949F06 14848 ----a-w- C:\WINDOWS\system32\dllcache\register.exe 2015-04-16 13:23:15 A588E096708EC01E63F712E169F671CC 16896 ----a-w- C:\WINDOWS\system32\dllcache\quser.exe 2015-04-16 13:23:13 0014A22BF0F90CBB5C18C85F8954A8F7 9728 ----a-w- C:\WINDOWS\system32\dllcache\query.exe 2015-04-16 13:22:53 BB3707496FA1954C92AEFE539FC2694D 70144 ----a-w- C:\WINDOWS\system32\dllcache\pintlphr.exe 2015-04-16 13:22:40 A25EEC87755BA30E7DDCC22AE9648D8E 86016 -c--a-w- C:\WINDOWS\system32\dllcache\pctspk.exe 2015-04-16 13:22:30 9F41ECB84B3102FE8DF75DD4B652596F 39424 -c--a-w- C:\WINDOWS\system32\dllcache\ovcoms.exe 2015-04-16 13:22:06 E0399688D466B7C3AFDFFB5A2ED9F351 2061184 -c--a-w- C:\WINDOWS\system32\dllcache\ntkrnlpa.exe 2015-04-16 13:21:25 028496BBDA32586D2F65BDCC8E51372B 111104 ----a-w- C:\WINDOWS\system32\dllcache\mtstocom.exe 2015-04-16 13:20:21 93E9267150A1255270281F06157FE7B7 7680 ----a-w- C:\WINDOWS\system32\dllcache\migregdb.exe 2015-04-16 13:20:20 ACC1336B36C5E339F0826810311523A8 34816 ----a-w- C:\WINDOWS\system32\dllcache\migisol.exe 2015-04-16 13:18:45 0C8A6038292D09B85695EFCF177770B4 15872 ----a-w- C:\WINDOWS\system32\dllcache\inetin51.exe 2015-04-16 13:18:42 1B17E09C1223F6D17336D2DD7A1AF4F4 59392 ----a-w- C:\WINDOWS\system32\dllcache\imscinst.exe 2015-04-16 13:18:41 A7EEB5B6405DBAEB1128B09B6ADEF8F8 59904 ----a-w- C:\WINDOWS\system32\dllcache\imkrinst.exe 2015-04-16 13:18:40 40059162F691911DAD738CF7A5D569A1 262200 ----a-w- C:\WINDOWS\system32\dllcache\imjputy.exe 2015-04-16 13:18:39 CCEB77BA901F8F5EB0092F860E88C3C5 233527 ----a-w- C:\WINDOWS\system32\dllcache\imjprw.exe 2015-04-16 13:18:39 95BD14E24F1438AA1CC5AC023D03C9EC 45109 ----a-w- C:\WINDOWS\system32\dllcache\imjpuex.exe 2015-04-16 13:18:38 B36BBA8BAF85B9227832ECB243A689B4 196665 ----a-w- C:\WINDOWS\system32\dllcache\imjpinst.exe 2015-04-16 13:18:38 7BBE4CF421AECC7F0226EDD75F12079F 208952 ----a-w- C:\WINDOWS\system32\dllcache\imjpmig.exe 2015-04-16 13:18:37 08785071B116574B079DF3B4E4D37D4B 155705 ----a-w- C:\WINDOWS\system32\dllcache\imjpdsvr.exe 2015-04-16 13:18:36 9F2D3141ED8AAA078C27F27D8BBC188B 307257 ----a-w- C:\WINDOWS\system32\dllcache\imjpdct.exe 2015-04-16 13:18:35 3CF7E3BE7038EB5A68319C36CD11AB90 57398 ----a-w- C:\WINDOWS\system32\dllcache\imjpdadm.exe 2015-04-16 13:18:32 E3EAF21C5981464B2992EDAE76DA680C 311359 ----a-w- C:\WINDOWS\system32\dllcache\imepadsv.exe 2015-04-16 13:18:31 E6BB63BBE1BED01769CA87F4DAC286C8 44032 ----a-w- C:\WINDOWS\system32\dllcache\imekrmig.exe 2015-04-16 13:18:28 4FCB37ABCD49F83C36AD9FFD6CCA18D1 6656 ----a-w- C:\WINDOWS\system32\dllcache\iissync.exe 2015-04-16 13:17:18 385357B341C6DD85AE94E65B83D81856 268288 ----a-w- C:\WINDOWS\system32\dllcache\fxssvc.exe 2015-04-16 13:17:17 DA16D605E354C0DD98C24EC9E0BBAAB2 11264 ----a-w- C:\WINDOWS\system32\dllcache\fxssend.exe 2015-04-16 13:17:13 6DB0691EE04EEF7104B4646486AE09A7 236032 ----a-w- C:\WINDOWS\system32\dllcache\fxscover.exe 2015-04-16 13:17:10 7236D9A8656CFF98D244A40188621928 143360 ----a-w- C:\WINDOWS\system32\dllcache\fxsclnt.exe 2015-04-16 13:17:01 F00AF2BCAFF4AF688508716A4640DD92 24632 ----a-w- C:\WINDOWS\system32\dllcache\fpadmcgi.exe 2015-04-16 13:16:58 8788B893367618B76B59136FF1BEE0D7 14848 ----a-w- C:\WINDOWS\system32\dllcache\flattemp.exe 2015-04-16 13:16:50 CAF0155C9125A4D5A1F315087987219C 94208 ----a-w- C:\WINDOWS\system32\dllcache\evntwin.exe 2015-04-16 13:16:49 70D52B7CE542EE42AFCE53098E6D0A40 25600 ----a-w- C:\WINDOWS\system32\dllcache\evntcmd.exe 2015-04-16 13:16:37 CC09B722270EA263454A4034A97767A5 62464 -c--a-w- C:\WINDOWS\system32\dllcache\eqnloop.exe 2015-04-16 13:16:37 C8C46D33DB9109067514F06D1392B5DD 51712 -c--a-w- C:\WINDOWS\system32\dllcache\eqnlogr.exe 2015-04-16 13:16:06 5B971C742A8B4EE411CC3FF2A0FF3083 236060 -c--a-w- C:\WINDOWS\system32\dllcache\ditrace.exe 2015-04-16 13:16:02 203F53285FEE3D889B87700054F6C856 622621 -c--a-w- C:\WINDOWS\system32\dllcache\digiview.exe 2015-04-16 13:15:54 80452D580BFD4657BA5F1FA8F909B049 24064 -c--a-w- C:\WINDOWS\system32\dllcache\devldr32.exe 2015-04-16 13:15:48 7840DABB5312DEF192E3897FA832A672 42496 ----a-w- C:\WINDOWS\system32\dllcache\davcdata.exe 2015-04-16 13:15:35 6E39745E4D0768F018C0E944A569C393 19456 ----a-w- C:\WINDOWS\system32\dllcache\cprofile.exe 2015-04-16 13:15:33 135BD481FA24E24895B147FCCDC3BCC7 57399 ----a-w- C:\WINDOWS\system32\dllcache\cplexe.exe 2015-04-16 13:15:32 B182E82E8DC46BA1CC29D64A3FCBFB1B 56832 ----a-w- C:\WINDOWS\system32\dllcache\convlog.exe 2015-04-16 13:15:17 BE88F67F4B2BD8B6B93B4DB223CE88BC 480256 ----a-w- C:\WINDOWS\system32\dllcache\cintsetp.exe 2015-04-16 13:15:10 C4D5AD45A767E07F133938EA9B388623 14848 ----a-w- C:\WINDOWS\system32\dllcache\chgusr.exe 2015-04-16 13:15:10 75F0E0F7E90033F2A2BB850FCBC84E39 15872 ----a-w- C:\WINDOWS\system32\dllcache\chgport.exe 2015-04-16 13:15:09 A4E92412380A81B5F109D5D5B03AD2F4 13824 ----a-w- C:\WINDOWS\system32\dllcache\chglogon.exe 2015-04-16 13:15:08 EF382FD7AEDE1A93F16223CE6EBEB545 9728 ----a-w- C:\WINDOWS\system32\dllcache\change.exe 2015-04-16 13:14:17 6C29B3257F1D887778EF879B3C83D977 32256 -c--a-w- C:\WINDOWS\system32\dllcache\brmfrsmg.exe 2015-04-16 13:12:33 412ED815756DEE6F7290A8D54A424332 32827 ----a-w- C:\WINDOWS\system32\dllcache\tcptest.exe 2015-04-16 13:12:30 42A8698526DD794C0CDE86DD1EBABDEA 16437 ----a-w- C:\WINDOWS\system32\dllcache\shtml.exe 2015-04-16 13:12:21 87AAEA3908E069FB1BE37380C895DFB8 2185344 -c--a-w- C:\WINDOWS\system32\dllcache\ntoskrnl.exe 2015-04-16 13:12:15 9D96142D121527C922BCF15892ED5FBD 7680 ----a-w- C:\WINDOWS\system32\dllcache\inetmgr.exe 2015-04-16 13:12:13 2B1AEB39092792E47BB16FB4F76A3EB4 30720 ----a-w- C:\WINDOWS\system32\dllcache\iisrstas.exe 2015-04-16 13:12:12 07D6B41AFE8B9FE34A0B05FDE909F05E 15360 ----a-w- C:\WINDOWS\system32\dllcache\iisreset.exe 2015-04-16 13:12:10 B02F79BCE36D992B357779A7E329DC2E 20538 ----a-w- C:\WINDOWS\system32\dllcache\fpremadm.exe 2015-04-16 13:12:08 224B007D7C4292F8186C7B7762161BD9 188494 ----a-w- C:\WINDOWS\system32\dllcache\fpcount.exe 2015-04-16 13:12:07 4CE9301E409B099669EE87F41EB0312D 14608 ----a-w- C:\WINDOWS\system32\dllcache\fp98sadm.exe 2015-04-16 13:12:07 1CEBC12EC1EAFFDFEBB5354936A8D32A 109328 ----a-w- C:\WINDOWS\system32\dllcache\fp98swin.exe 2015-04-16 13:11:57 C91B0AF008E40FB467AE75520DC5261A 188480 ----a-w- C:\WINDOWS\system32\dllcache\cfgwiz.exe 2015-04-16 13:11:56 64F04CCD27271961B8E4A5DA12B54EB6 16439 ----a-w- C:\WINDOWS\system32\dllcache\author.exe 2015-04-16 13:11:52 64F04CCD27271961B8E4A5DA12B54EB6 16439 ----a-w- C:\WINDOWS\system32\dllcache\admin.exe 2015-04-16 10:07:54 871FF3C32977022B1708BED45A8DC214 154112 -c--a-w- C:\WINDOWS\system32\dllcache\irftp.exe 2015-04-16 10:07:54 871FF3C32977022B1708BED45A8DC214 154112 ----a-w- C:\WINDOWS\system32\irftp.exe 2015-04-15 21:54:51 516E7F0F5A9FFECD09573C71AD626635 25761408 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\wmp11-windowsxp-x86-NL-NL.exe 2015-04-15 21:41:16 A1F71601E9578A7B49CDCF0D9C3BD253 272808 ----a-w- C:\WINDOWS\system32\javaws.exe 2015-04-15 21:41:00 B0EC20BA1CBC3869745A04D7B823F993 175528 ----a-w- C:\WINDOWS\system32\java.exe 2015-04-15 21:41:00 431B3F716A156DD62883DFC7AAB3C2AB 175528 ----a-w- C:\WINDOWS\system32\javaw.exe 2015-04-15 21:40:40 F538E93DB40829BDE691D82D6F3590E8 145832 ----a-w- C:\Program Files\Java\jre7\bin\unpack200.exe 2015-04-15 21:40:40 F4995EE48B5E1B1865154664C127C351 16296 ----a-w- C:\Program Files\Java\jre7\bin\pack200.exe 2015-04-15 21:40:40 D7F5269E2234EFE19743F5BB2D40C844 16296 ----a-w- C:\Program Files\Java\jre7\bin\keytool.exe 2015-04-15 21:40:40 D756A362186C2DF0FAF5B58EB435A53A 16296 ----a-w- C:\Program Files\Java\jre7\bin\policytool.exe 2015-04-15 21:40:40 812713AB4ABDD00A2A952A720F2B4BC6 16296 ----a-w- C:\Program Files\Java\jre7\bin\klist.exe 2015-04-15 21:40:40 7C9FF65FD76806F2EC259A9A5D61F616 16296 ----a-w- C:\Program Files\Java\jre7\bin\kinit.exe 2015-04-15 21:40:40 754EFD0B227B21160E3A27229F52FDDA 182696 ----a-w- C:\Program Files\Java\jre7\bin\jqs.exe 2015-04-15 21:40:40 5368BD79B37816285F9D91AE6B4455FB 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmiregistry.exe 2015-04-15 21:40:40 4B36778EEF804B4012F9E125E44A77E3 16296 ----a-w- C:\Program Files\Java\jre7\bin\ktab.exe 2015-04-15 21:40:40 4B1C73793F9533761F6FE9602AD4BE2A 16296 ----a-w- C:\Program Files\Java\jre7\bin\servertool.exe 2015-04-15 21:40:40 4874BC1AC1E9F5963621E222531CE43E 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmid.exe 2015-04-15 21:40:40 3D3ACF2E9A53DC4C7BDD3AE13B2B717B 16808 ----a-w- C:\Program Files\Java\jre7\bin\orbd.exe 2015-04-15 21:40:40 1CB523E8515FA79755BB2A5D98AAE00C 50088 ----a-w- C:\Program Files\Java\jre7\bin\ssvagent.exe 2015-04-15 21:40:40 1830793B9C85571AB7219EB820A06ED5 76712 ----a-w- C:\Program Files\Java\jre7\bin\jp2launcher.exe 2015-04-15 21:40:40 16471EEF451C82AA6B3838CCA53B0A5B 16808 ----a-w- C:\Program Files\Java\jre7\bin\tnameserv.exe 2015-04-15 21:40:39 DD30CCCEEEAD90BDF9FDEC07CD1F3E3E 48040 ----a-w- C:\Program Files\Java\jre7\bin\jabswitch.exe 2015-04-15 21:40:39 B0EC20BA1CBC3869745A04D7B823F993 175528 ----a-w- C:\Program Files\Java\jre7\bin\java.exe 2015-04-15 21:40:39 AE59A5823F94B86F193D497E65FB44DA 68008 ----a-w- C:\Program Files\Java\jre7\bin\javacpl.exe 2015-04-15 21:40:39 A1F71601E9578A7B49CDCF0D9C3BD253 272808 ----a-w- C:\Program Files\Java\jre7\bin\javaws.exe 2015-04-15 21:40:39 5E4A997EAB29326BC246FCA006CCB7C7 16296 ----a-w- C:\Program Files\Java\jre7\bin\java-rmi.exe 2015-04-15 21:40:39 431B3F716A156DD62883DFC7AAB3C2AB 175528 ----a-w- C:\Program Files\Java\jre7\bin\javaw.exe 2015-04-15 19:27:36 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\BenJ.exe 2015-04-15 18:52:42 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\RSIT.exe 2015-04-15 18:50:07 B1D109D1B6143715446C0EFE28E6086A 377712 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\MTP_Enhanced.exe 2015-04-13 11:20:20 63B308A3E1F062DFD3BF762FDDC2F39A 103588 ----a-w- C:\Program Files\Mozilla Maintenance Service\Uninstall.exe 2015-04-13 11:20:20 269BDB3CB77EB77BABE2862BEAB1F208 148080 ----a-w- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 2015-04-13 11:19:09 36BE12E041D6B1BA20C1889CD4278CB1 41342368 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\Firefox Setup 37.0.1.exe 2015-04-12 21:12:34 51844330FE12644FA0F7558E9868A135 1552128 ----a-w- C:\Documents and Settings\BenJ\Mijn documenten\Downloads\KeyScrambler_Setup.exe 2015-04-12 09:47:48 E451BFCCDB1EC0136406FB7953ED3901 86016 ----a-w- C:\Program Files\QuickTime\Plugins\DeleteMe1.exe === C: other files == 2015-04-16 13:28:09 75718143D0D06D648E0578F2EC4D8A02 16970 -c--a-w- C:\WINDOWS\system32\dllcache\xem336n5.sys 2015-04-16 13:28:06 589C2BCDB5BD602BF7B63D210407EF8C 19455 -c--a-w- C:\WINDOWS\system32\dllcache\wvchntxx.sys 2015-04-16 13:27:58 525849B4469DE021D5D61B4DB9BE3A9D 12063 -c--a-w- C:\WINDOWS\system32\dllcache\wsiintxx.sys 2015-04-16 13:27:34 AE2C8544E747C20062DB27456EA2D67A 8832 -c--a-w- C:\WINDOWS\system32\dllcache\wmiacpi.sys 2015-04-16 13:27:31 DCA17912A1926AE427537648FC0E74D5 154624 -c--a-w- C:\WINDOWS\system32\dllcache\wlluc48.sys 2015-04-16 13:27:31 1ABF4F019308B30ECEB0664A157618FF 34890 -c--a-w- C:\WINDOWS\system32\dllcache\wlandrv2.sys 2015-04-16 13:27:19 2E526402E837CBAC00D22636758EA1A2 771581 -c--a-w- C:\WINDOWS\system32\dllcache\winacisa.sys 2015-04-16 13:27:13 4B074C18237B7C42EE867566079DAF93 31488 ----a-w- C:\WINDOWS\system32\dllcache\weitekp9.sys 2015-04-16 13:27:11 477ED2208E2E501987DD4A1304E92091 701386 -c--a-w- C:\WINDOWS\system32\dllcache\wdhaalba.sys 2015-04-16 13:27:11 0052D118995CBAB152DAABE6106D1442 23615 -c--a-w- C:\WINDOWS\system32\dllcache\wch7xxnt.sys 2015-04-16 13:27:10 BA4B0F190A2F2F482830DB1E43770E8D 32000 -c--a-w- C:\WINDOWS\system32\dllcache\wceusbsh.sys 2015-04-16 13:27:10 617ED846455B8A77A61DE73A5AC0E6C0 35871 -c--a-w- C:\WINDOWS\system32\dllcache\wbfirdma.sys 2015-04-16 13:27:07 791CC45DE6E50445BE72E8AD6401FF45 25471 -c--a-w- C:\WINDOWS\system32\dllcache\watv10nt.sys 2015-04-16 13:27:06 352FA0E98BC461CE1CE5D41F64DB558D 22271 -c--a-w- C:\WINDOWS\system32\dllcache\watv06nt.sys 2015-04-16 13:27:05 ED968D23354DAA0D7C621580C012A1F6 19551 -c--a-w- C:\WINDOWS\system32\dllcache\watv02nt.sys 2015-04-16 13:27:05 D738273F218A224C1DDAC04203F27A84 33599 -c--a-w- C:\WINDOWS\system32\dllcache\watv04nt.sys 2015-04-16 13:27:04 D83BDD5C059667A2F647A6BE5703A4D2 29311 -c--a-w- C:\WINDOWS\system32\dllcache\watv01nt.sys 2015-04-16 13:27:01 7BB3AA595E4507A788DE1CDC63F4C8C4 11871 -c--a-w- C:\WINDOWS\system32\dllcache\wadv09nt.sys 2015-04-16 13:27:01 36E6C405B6143D09687F4056FD9A0D10 11935 -c--a-w- C:\WINDOWS\system32\dllcache\wadv11nt.sys 2015-04-16 13:27:00 714038A8AA5DE08E12062202CD7EAEB5 11295 -c--a-w- C:\WINDOWS\system32\dllcache\wadv08nt.sys 2015-04-16 13:26:59 0308AEF61941E4AF478FA1A0F83812F5 11807 -c--a-w- C:\WINDOWS\system32\dllcache\wadv07nt.sys 2015-04-16 13:26:58 03CE989D846C1AA81145CB22FCB86D06 11775 -c--a-w- C:\WINDOWS\system32\dllcache\wadv05nt.sys 2015-04-16 13:26:57 EB1F6BAB6C22EDE0BA551B527475F7E9 12127 -c--a-w- C:\WINDOWS\system32\dllcache\wadv02nt.sys 2015-04-16 13:26:57 7B5B44EFE5EB9DADFB8EE29700885D23 12415 -c--a-w- C:\WINDOWS\system32\dllcache\wadv01nt.sys 2015-04-16 13:26:56 497F6CDB901EF8DE81BD501E2AEFB0D0 13568 -c--a-w- C:\WINDOWS\system32\dllcache\wacompen.sys 2015-04-16 13:26:53 F4AE73D3A0F8049FE60280A878DF9ACA 16925 -c--a-w- C:\WINDOWS\system32\dllcache\w940nd.sys 2015-04-16 13:26:52 95EAF6D9C64AFE0BFC7FBB165EBE1860 19016 -c--a-w- C:\WINDOWS\system32\dllcache\w926nd.sys 2015-04-16 13:26:51 68C97B9365E9774C574927D6938C1ECB 19528 -c--a-w- C:\WINDOWS\system32\dllcache\w840nd.sys 2015-04-16 13:26:45 120E61AAC05F00C867A32DE493DAB9B4 64605 -c--a-w- C:\WINDOWS\system32\dllcache\vvoice.sys 2015-04-16 13:26:44 4A4448332075C5A909DF123C21616B2A 397502 -c--a-w- C:\WINDOWS\system32\dllcache\vpctcom.sys 2015-04-16 13:26:42 B289D19DF6103352D3C4B13C0ED79331 604253 -c--a-w- C:\WINDOWS\system32\dllcache\vmodem.sys 2015-04-16 13:26:41 6EF232AD932F12DC2E6DEBE5C7217F24 249402 -c--a-w- C:\WINDOWS\system32\dllcache\vinwm.sys 2015-04-16 13:26:40 D683E3DAFAE4ED45B338D4A52EDCF3D0 24576 -c--a-w- C:\WINDOWS\system32\dllcache\viairda.sys 2015-04-16 13:26:38 59CB1338AD3654417BEA49636457F65D 5376 -c--a-w- C:\WINDOWS\system32\dllcache\viaide.sys 2015-04-16 13:26:31 7C89237914C8BB78B9B3A80F95D635BA 687999 -c--a-w- C:\WINDOWS\system32\dllcache\usrwdxjs.sys 2015-04-16 13:26:30 6EDAE4199C9F7769A988500B0BEEFF8B 765884 -c--a-w- C:\WINDOWS\system32\dllcache\usrti.sys 2015-04-16 13:26:30 497F2190E87D58FD68E559E083796EDC 113762 -c--a-w- C:\WINDOWS\system32\dllcache\usrpda.sys 2015-04-16 13:26:29 8307FEBE8D6108C1CAAE85A4332CA86F 7556 -c--a-w- C:\WINDOWS\system32\dllcache\usroslba.sys 2015-04-16 13:26:28 C4B1FBEE0D0ED69E246E2D6BB8F2D813 224802 -c--a-w- C:\WINDOWS\system32\dllcache\usr1807a.sys 2015-04-16 13:26:28 9954D3230C4DD155285E90FE04FBB136 793598 -c--a-w- C:\WINDOWS\system32\dllcache\usr1806.sys 2015-04-16 13:26:28 133514FB65565D90CE6A5C55061B037F 794399 -c--a-w- C:\WINDOWS\system32\dllcache\usr1806v.sys 2015-04-16 13:26:27 A80FEB3E2B5BD47D12080439771FDAB1 794654 -c--a-w- C:\WINDOWS\system32\dllcache\usr1801.sys 2015-04-16 13:26:25 8968FF3973A883C49E8B564200F565B9 78464 -c--a-w- C:\WINDOWS\system32\dllcache\usbvideo.sys 2015-04-16 13:26:24 49106EE29074E6A3D3AC9E24C6D791D8 25600 -c--a-w- C:\WINDOWS\system32\dllcache\usbser.sys 2015-04-16 13:26:22 BDFE799A8531BAD8A5A985821FE78760 17024 -c--a-w- C:\WINDOWS\system32\dllcache\usbohci.sys 2015-04-16 13:26:17 AFC272633B8701971799189BE61865BD 32384 -c--a-w- C:\WINDOWS\system32\dllcache\usb101et.sys 2015-04-16 13:26:10 931E8CAFCAA536E8252CD7A375FF9794 22912 -c--a-w- C:\WINDOWS\system32\dllcache\umaxpcls.sys 2015-04-16 13:26:07 1B698A51CD528D8DA4FFAED66DFC51B9 36736 -c--a-w- C:\WINDOWS\system32\dllcache\ultra.sys 2015-04-16 13:26:04 17687545F77A648AF7F9F1064EB61191 11520 -c--a-w- C:\WINDOWS\system32\dllcache\twotrack.sys 2015-04-16 13:26:00 2E4FAE4D0A9CF346850F23A560CD5B2F 166784 -c--a-w- C:\WINDOWS\system32\dllcache\tridxpm.sys 2015-04-16 13:26:00 28B12136A681C5454DED52F761A1F46C 159232 -c--a-w- C:\WINDOWS\system32\dllcache\tridkbm.sys 2015-04-16 13:25:59 8DFD837A98A4A6C581214FA358430837 222336 -c--a-w- C:\WINDOWS\system32\dllcache\trid3dm.sys 2015-04-16 13:25:57 71E7575C9CFAA0CC0C215546C545B1D0 34375 -c--a-w- C:\WINDOWS\system32\dllcache\tpro4.sys 2015-04-16 13:25:53 D2C27E1FC6070B41BFC9F804F6699AC7 230912 -c--a-w- C:\WINDOWS\system32\dllcache\tosdvd03.sys 2015-04-16 13:25:53 5BC2144AB4F6090F12E49E9648B5A702 4992 -c--a-w- C:\WINDOWS\system32\dllcache\toside.sys 2015-04-16 13:25:53 5924391DD792EA161795F4752E94271C 241664 -c--a-w- C:\WINDOWS\system32\dllcache\tosdvd02.sys 2015-04-16 13:25:52 21DA9E0E8A1A9F06F0259318CF6750DE 28232 -c--a-w- C:\WINDOWS\system32\dllcache\tos4mo.sys 2015-04-16 13:25:50 5BA1C90BD67F1B6F3483DB725C9C9112 123995 -c--a-w- C:\WINDOWS\system32\dllcache\tjisdn.sys 2015-04-16 13:25:45 5387CE194233F3827A5C599C0B74EF13 138528 -c--a-w- C:\WINDOWS\system32\dllcache\tgiulnt5.sys 2015-04-16 13:25:43 E70124B772AD84B6BC1E3A92A59D1799 149376 -c--a-w- C:\WINDOWS\system32\dllcache\tffsport.sys 2015-04-16 13:25:42 5FB281F720939CBE9961D1808CC270E9 19464 ----a-w- C:\WINDOWS\system32\dllcache\tdspx.sys 2015-04-16 13:25:42 36233CA5E5B5DBEB67C0469E038BA5AB 17129 -c--a-w- C:\WINDOWS\system32\dllcache\tdkcd31.sys 2015-04-16 13:25:41 8A346E3995AD07320ACBE941FA6A4112 37961 -c--a-w- C:\WINDOWS\system32\dllcache\tdk100b.sys 2015-04-16 13:25:40 182A77EECBDEA330472A9A7A6F1457CE 21896 ----a-w- C:\WINDOWS\system32\dllcache\tdipx.sys 2015-04-16 13:25:39 3FC234C9E20918CE856FFA42C421E678 13192 ----a-w- C:\WINDOWS\system32\dllcache\tdasync.sys 2015-04-16 13:25:37 B00529ADE848654C3943D45158B55C8E 30464 -c--a-w- C:\WINDOWS\system32\dllcache\tbatm155.sys 2015-04-16 13:25:34 26BD9AACADF54158F25AA5299A8C13BD 7040 -c--a-w- C:\WINDOWS\system32\dllcache\tandqic.sys 2015-04-16 13:25:33 BC00D53C651D8A7427CDE4660E7F70E8 36640 -c--a-w- C:\WINDOWS\system32\dllcache\t2r4mini.sys 2015-04-16 13:25:29 BF4FAB949A382A8E105F46EBB4937058 30688 -c--a-w- C:\WINDOWS\system32\dllcache\sym_u3.sys 2015-04-16 13:25:29 80AC1C4ABBE2DF3B738BF15517A51F2C 28384 -c--a-w- C:\WINDOWS\system32\dllcache\sym_hi.sys 2015-04-16 13:25:29 1FF3217614018630D0A6758630FC698C 16256 -c--a-w- C:\WINDOWS\system32\dllcache\symc810.sys 2015-04-16 13:25:29 070E001D95CF725186EF8B20335F933C 32640 -c--a-w- C:\WINDOWS\system32\dllcache\symc8xx.sys 2015-04-16 13:25:28 E4CB0F95F52A1FAC693846BEA3AC3732 103936 -c--a-w- C:\WINDOWS\system32\dllcache\sx.sys 2015-04-16 13:25:27 5212178C49079E40831D95EC7596FCC7 3968 -c--a-w- C:\WINDOWS\system32\dllcache\swusbflt.sys 2015-04-16 13:25:21 AD930471A0E5FF85E8B5B083850AE6DB 286432 -c--a-w- C:\WINDOWS\system32\dllcache\stlnata.sys 2015-04-16 13:25:20 7DE6AD81F5AD0F34040123FD61A8B4F3 16896 -c--a-w- C:\WINDOWS\system32\dllcache\stcusb.sys 2015-04-16 13:25:16 D380FB9A20CF60FCFAE50983F04FEDB4 48736 -c--a-w- C:\WINDOWS\system32\dllcache\srwlnd5.sys 2015-04-16 13:25:06 F4901A7692349F01D20E39A7F3D1D3D6 61824 -c--a-w- C:\WINDOWS\system32\dllcache\speed.sys 2015-04-16 13:25:05 83C0F71F86D3BDAF915685F3D568B20E 19072 -c--a-w- C:\WINDOWS\system32\dllcache\sparrow.sys 2015-04-16 13:25:04 BFD0E6F53957AF8156084C436B825F70 37040 -c--a-w- C:\WINDOWS\system32\dllcache\sonypi.sys 2015-04-16 13:25:04 A1ECEEAA5C5E74B2499EB51D38185B84 7552 -c--a-w- C:\WINDOWS\system32\dllcache\sonypvu1.sys 2015-04-16 13:25:03 1F7F5E3A1961B47B9DF1834ECAE66830 9600 -c--a-w- C:\WINDOWS\system32\dllcache\sonymc.sys 2015-04-16 13:25:03 1A992C8136C015453E82041C35B299DA 20752 -c--a-w- C:\WINDOWS\system32\dllcache\sonync.sys 2015-04-16 13:25:02 D4E1153D2217529BB925CEC2F478D578 7552 -c--a-w- C:\WINDOWS\system32\dllcache\sonyait.sys 2015-04-16 13:25:00 5D914511B3A33B3300E80B0AAA3549C4 7040 -c--a-w- C:\WINDOWS\system32\dllcache\snyaitmc.sys 2015-04-16 13:24:51 5F4D0A76007514500F656CBCAC61A5B3 58368 -c--a-w- C:\WINDOWS\system32\dllcache\smiminib.sys 2015-04-16 13:24:48 F8BE8E1588AEFE40F2B219BF7AA632EF 36425 -c--a-w- C:\WINDOWS\system32\dllcache\smcirda.sys 2015-04-16 13:24:48 A06BBBCCE7B75A14B0E2D05F6BE3776C 25034 -c--a-w- C:\WINDOWS\system32\dllcache\smcpwr2n.sys 2015-04-16 13:24:48 6A2966A5DAE3FD11A915A7F1F9C79440 24576 -c--a-w- C:\WINDOWS\system32\dllcache\smc8000n.sys 2015-04-16 13:24:47 339A9D075CD33B45535597B7B96361F4 6784 -c--a-w- C:\WINDOWS\system32\dllcache\smbhc.sys 2015-04-16 13:24:46 77F7F2683CF22EFE704E65ED82865A1D 6912 -c--a-w- C:\WINDOWS\system32\dllcache\smbclass.sys 2015-04-16 13:24:46 654DD37334FB4621043003188C48D582 6016 -c--a-w- C:\WINDOWS\system32\dllcache\smbali.sys 2015-04-16 13:24:46 5FDE6D93E120B1BA2B59329B1D3027B0 16128 -c--a-w- C:\WINDOWS\system32\dllcache\smbbatt.sys 2015-04-16 13:24:35 DB56BB2C55723815CF549D7FC50CFCEB 13240 -c--a-w- C:\WINDOWS\system32\dllcache\slwdmsup.sys 2015-04-16 13:24:33 F9B8E30E82EE95CF3E1D3E495599B99C 95424 -c--a-w- C:\WINDOWS\system32\dllcache\slnthal.sys 2015-04-16 13:24:32 D9673011648A71ED1E1F77B831BC85E6 129535 -c--a-w- C:\WINDOWS\system32\dllcache\slnt7554.sys 2015-04-16 13:24:32 2C1779C0FEB1F4A6033600305EBA623A 404990 -c--a-w- C:\WINDOWS\system32\dllcache\slntamr.sys 2015-04-16 13:24:30 130C6F199E953AAC3807F6844B61A8D5 63547 -c--a-w- C:\WINDOWS\system32\dllcache\sla30nd5.sys 2015-04-16 13:24:30 06DB910F91399C25FD727F6FF789F28B 91294 -c--a-w- C:\WINDOWS\system32\dllcache\skfpwin.sys 2015-04-16 13:24:29 A02EC64F9EAF131AC955F28D51E96F8E 95146 -c--a-w- C:\WINDOWS\system32\dllcache\sk98xwin.sys 2015-04-16 13:24:28 3A4DB551BCBFB9779B67E1982A1A8400 50432 -c--a-w- C:\WINDOWS\system32\dllcache\sisv.sys 2015-04-16 13:24:26 3FBB6EF8B5A71A2FA11F5F461BB73219 32768 -c--a-w- C:\WINDOWS\system32\dllcache\sisnic.sys 2015-04-16 13:24:25 C10865AB0A1FD9F4EC7DB70A1B8425D1 104064 -c--a-w- C:\WINDOWS\system32\dllcache\sisgrp.sys 2015-04-16 13:24:24 71EB6B8AAFDC867BBE2F76611FD89BB3 68608 -c--a-w- C:\WINDOWS\system32\dllcache\sis6306p.sys 2015-04-16 13:24:23 C1E381B6E480DD936D92E1AED5BE29C4 101760 -c--a-w- C:\WINDOWS\system32\dllcache\sis300ip.sys 2015-04-16 13:24:15 AF15B4DB7E1EA79E2A541294199E55F8 18400 -c--a-w- C:\WINDOWS\system32\dllcache\sgsmld.sys 2015-04-16 13:24:15 1F43321BD1952C881CA462C306EA778A 161760 -c--a-w- C:\WINDOWS\system32\dllcache\sgsmusb.sys 2015-04-16 13:24:14 9BBC3080E5D7DAD736EDC0EA4D52B287 98080 -c--a-w- C:\WINDOWS\system32\dllcache\sgiulnt5.sys 2015-04-16 13:24:14 0B1A5E9CACB5CDD54A2815107BD7C772 36480 -c--a-w- C:\WINDOWS\system32\dllcache\sfmanm.sys 2015-04-16 13:24:11 E45E17F93A7692A040C7BCD63907D505 18176 -c--a-w- C:\WINDOWS\system32\dllcache\sermouse.sys 2015-04-16 13:24:11 BF8AA066BB0398DDCBC9573153D39B8C 6912 -c--a-w- C:\WINDOWS\system32\dllcache\serscan.sys 2015-04-16 13:24:07 63189E86E5182E80A8B821A18BDFD3F3 6912 -c--a-w- C:\WINDOWS\system32\dllcache\seaddsmc.sys 2015-04-16 13:24:06 4ACFB25ECC8DD21707F747B28216CEA1 10880 -c--a-w- C:\WINDOWS\system32\dllcache\scsiscan.sys 2015-04-16 13:24:05 74D69A3393A1F491D013DB711641DD2D 11648 -c--a-w- C:\WINDOWS\system32\dllcache\scsiprnt.sys 2015-04-16 13:24:02 B15319C8BB1340B2BFD0E4AB0A991FE6 17536 -c--a-w- C:\WINDOWS\system32\dllcache\scr111.sys 2015-04-16 13:24:01 2D54038A7B0DD6C033CA84E0560C567E 16768 -c--a-w- C:\WINDOWS\system32\dllcache\scmstcs.sys 2015-04-16 13:24:00 A74794BD87C95673F9F706BF4B6C4B5F 23936 -c--a-w- C:\WINDOWS\system32\dllcache\sccmn50m.sys 2015-04-16 13:24:00 55F38CA16206EA957AA33ADBE953DA83 23936 -c--a-w- C:\WINDOWS\system32\dllcache\sccmusbm.sys 2015-04-16 13:23:58 3E2C3B180872BE4120F246D85560B734 43136 -c--a-w- C:\WINDOWS\system32\dllcache\sbp2port.sys 2015-04-16 13:23:55 9DEDA55453D355C5A0F285E80DBBB341 75392 -c--a-w- C:\WINDOWS\system32\dllcache\s3savmxm.sys 2015-04-16 13:23:54 DDDC792753E657A9932029C46E60FE52 77824 -c--a-w- C:\WINDOWS\system32\dllcache\s3sav4m.sys 2015-04-16 13:23:54 687FCD26C11C51F489848ECFE9F33B5A 61504 -c--a-w- C:\WINDOWS\system32\dllcache\s3sav3dm.sys 2015-04-16 13:23:53 2299CA939FA4A297EA44AA1F122B1AA6 41216 -c--a-w- C:\WINDOWS\system32\dllcache\s3mt3d.sys 2015-04-16 13:23:52 4294FDF954125CE9E39E68F826415C29 65664 -c--a-w- C:\WINDOWS\system32\dllcache\s3legacy.sys 2015-04-16 13:23:52 22098A69BDDF00B6A88264BF0996CCAA 166720 -c--a-w- C:\WINDOWS\system32\dllcache\s3m.sys 2015-04-16 13:23:51 0DBCC071A268E0340A2BA6BDD98BACE4 166912 -c--a-w- C:\WINDOWS\system32\dllcache\s3gnbm.sys 2015-04-16 13:23:44 D507C1400284176573224903819FFDA3 20992 -c--a-w- C:\WINDOWS\system32\dllcache\rtl8139.sys 2015-04-16 13:23:43 EF4EDAC731620F2EE3D261C6AC89B030 30720 -c--a-w- C:\WINDOWS\system32\dllcache\rthwcls.sys 2015-04-16 13:23:43 493B54A894A6E70DD02961A68DB8863F 19017 -c--a-w- C:\WINDOWS\system32\dllcache\rtl8029.sys 2015-04-16 13:23:40 B5F61BA43C64F951426076C43AB71996 3840 -c--a-w- C:\WINDOWS\system32\dllcache\rpfun.sys 2015-04-16 13:23:36 CF018D25750C75026A0F0D18B9F8F2B0 79360 -c--a-w- C:\WINDOWS\system32\dllcache\rocket.sys 2015-04-16 13:23:35 83E3F8F62F647FD0B85C6D50FEC59ECC 37563 -c--a-w- C:\WINDOWS\system32\dllcache\rlnet5.sys 2015-04-16 13:23:26 E9AAA0092D74A9D371659C4C38882E12 13776 -c--a-w- C:\WINDOWS\system32\dllcache\recagent.sys 2015-04-16 13:23:19 0207D26DDF796A193CCD9F83047BB5FC 19584 -c--a-w- C:\WINDOWS\system32\dllcache\rasirda.sys 2015-04-16 13:23:17 7F78371E0AF2609EA3A95D8843B076F8 20736 ----a-w- C:\WINDOWS\system32\dllcache\ramdisk.sys 2015-04-16 13:23:16 1B401E1F4B39F3005B22FF89A3DDA761 715210 -c--a-w- C:\WINDOWS\system32\dllcache\r2mdmkxx.sys 2015-04-16 13:23:16 17CBF89664279A2CC5BBF6BFC880D17D 899594 -c--a-w- C:\WINDOWS\system32\dllcache\r2mdkxga.sys 2015-04-16 13:23:15 0087F01D35A65B32393CC8BBA46EE4A6 3328 -c--a-w- C:\WINDOWS\system32\dllcache\qv2kux.sys 2015-04-16 13:23:12 907F0AEEA6BC451011611E732BD31FCF 49024 -c--a-w- C:\WINDOWS\system32\dllcache\ql1280.sys 2015-04-16 13:23:11 70F016BEBDE6D29E864C1230A07CC5E6 40448 -c--a-w- C:\WINDOWS\system32\dllcache\ql1240.sys 2015-04-16 13:23:11 6503449E1D43A0FF0201AD5CB1B8C706 33152 -c--a-w- C:\WINDOWS\system32\dllcache\ql10wnt.sys 2015-04-16 13:23:11 156ED0EF20C15114CA097A34A30D8A01 45312 -c--a-w- C:\WINDOWS\system32\dllcache\ql12160.sys 2015-04-16 13:23:11 0A63FB54039EB5662433CABA3B26DBA7 40320 -c--a-w- C:\WINDOWS\system32\dllcache\ql1080.sys 2015-04-16 13:23:10 77E8A9B5CEC79B2E4A69B9C484633DBF 6016 -c--a-w- C:\WINDOWS\system32\dllcache\qic157.sys 2015-04-16 13:23:08 6B387B635ED9111A93CF1F05AA688640 130942 -c--a-w- C:\WINDOWS\system32\dllcache\ptserlv.sys 2015-04-16 13:23:07 ACE8FE0E920CB8FBA057C024EAD33F84 112574 -c--a-w- C:\WINDOWS\system32\dllcache\ptserlp.sys 2015-04-16 13:23:07 4EA68256BA3DDFE5238E35AF71C529AA 128286 -c--a-w- C:\WINDOWS\system32\dllcache\ptserli.sys 2015-04-16 13:23:03 E4C1D46F99FFD4768730345B5A017E2A 16128 -c--a-w- C:\WINDOWS\system32\dllcache\pscr.sys 2015-04-16 13:22:59 411923A60E1FC2B136C77E6D50FC69BD 17792 -c--a-w- C:\WINDOWS\system32\dllcache\ppa.sys 2015-04-16 13:22:59 1023FC75551B2D8BC0ACA99D9C1C5D63 17664 -c--a-w- C:\WINDOWS\system32\dllcache\ppa3.sys 2015-04-16 13:22:58 507C402E73EB27CDD49615460011DE88 7552 -c--a-w- C:\WINDOWS\system32\dllcache\powerfil.sys 2015-04-16 13:22:57 A7627E07A22FAAEBC93CE0E6F0337100 7168 -c--a-w- C:\WINDOWS\system32\dllcache\pnrmc.sys 2015-04-16 13:22:48 DE568A72B8A1C401CA413B442E5681E7 92416 -c--a-w- C:\WINDOWS\system32\dllcache\phildec.sys 2015-04-16 13:22:48 9DADFAF5DAC3C793640180CBF136828B 19840 -c--a-w- C:\WINDOWS\system32\dllcache\philtune.sys 2015-04-16 13:22:48 3BD216DE6A56190C19C951ED2E19087A 173696 -c--a-w- C:\WINDOWS\system32\dllcache\philcam2.sys 2015-04-16 13:22:47 F10D707D9BC99B0243653AB48E28CBAC 75776 -c--a-w- C:\WINDOWS\system32\dllcache\philcam1.sys 2015-04-16 13:22:45 07C4CF2679650F60B392BFCDED87F347 28032 -c--a-w- C:\WINDOWS\system32\dllcache\perm3.sys 2015-04-16 13:22:44 66C748322A33E3183F4339CAB0D93A1D 27904 -c--a-w- C:\WINDOWS\system32\dllcache\perm2.sys 2015-04-16 13:22:42 F50F7C27F131AFE7BEBA13E14A3B9416 5504 -c--a-w- C:\WINDOWS\system32\dllcache\perc2hib.sys 2015-04-16 13:22:42 6C14B9C19BA84F73D3A86DBA11133101 27296 -c--a-w- C:\WINDOWS\system32\dllcache\perc2.sys 2015-04-16 13:22:41 592B9D0FB93647C35B6F6883C988D225 169984 -c--a-w- C:\WINDOWS\system32\dllcache\pcx500.sys 2015-04-16 13:22:40 AE539F734BAA0C51F7DBFE88B05B63D0 29769 -c--a-w- C:\WINDOWS\system32\dllcache\pcntn5m.sys 2015-04-16 13:22:40 7BC8027D56FAB153A987C56AE9835664 35328 -c--a-w- C:\WINDOWS\system32\dllcache\pcntpci5.sys 2015-04-16 13:22:39 E143627B6042B9C6C119C12F9967217A 26153 -c--a-w- C:\WINDOWS\system32\dllcache\pcmlm56.sys 2015-04-16 13:22:39 58B6EA41566FE98F545786B07D6D5D87 30282 -c--a-w- C:\WINDOWS\system32\dllcache\pcntn5hl.sys 2015-04-16 13:22:38 2E9B23EB1C2F16838F48B553CC07F8A7 29502 -c--a-w- C:\WINDOWS\system32\dllcache\pca200e.sys 2015-04-16 13:22:38 05580FE9A04C3B85D60DD01C44945BF2 30495 -c--a-w- C:\WINDOWS\system32\dllcache\pc100nds.sys 2015-04-16 13:22:31 081CAF42D5DB1FCF8794FD77BEFD1B11 25216 -c--a-w- C:\WINDOWS\system32\dllcache\ovsound2.sys 2015-04-16 13:22:29 6E07C71E89C17C96D206A6A91D247F3B 351616 -c--a-w- C:\WINDOWS\system32\dllcache\ovcodek2.sys 2015-04-16 13:22:28 FDDD1AEB9F81EF1E6E48AE1EDC2A97D6 28032 -c--a-w- C:\WINDOWS\system32\dllcache\ovcd.sys 2015-04-16 13:22:28 90849934D37133E069F31F3E9A66C9BC 31872 -c--a-w- C:\WINDOWS\system32\dllcache\ovce.sys 2015-04-16 13:22:27 803715CF245D5308C2644925CEAF275D 48000 -c--a-w- C:\WINDOWS\system32\dllcache\ovcam2.sys 2015-04-16 13:22:27 7835CCEDEED078A8BC48FE91961AB9A6 25088 -c--a-w- C:\WINDOWS\system32\dllcache\ovca.sys 2015-04-16 13:22:26 D03B6091D32825EA610968C061A87A30 27209 -c--a-w- C:\WINDOWS\system32\dllcache\otc06x5.sys 2015-04-16 13:22:26 A81E919E22F4C3B380EBC51E5645F9C6 54666 -c--a-w- C:\WINDOWS\system32\dllcache\otcsercb.sys 2015-04-16 13:22:26 5601A791E7FB0D37E48F97A49F322BB2 43785 -c--a-w- C:\WINDOWS\system32\dllcache\otceth5.sys 2015-04-16 13:22:25 221D171A602F964D0567C9C90E82FD92 54528 -c--a-w- C:\WINDOWS\system32\dllcache\opl3sax.sys 2015-04-16 13:22:13 FD6D989AD4F14447BC634AA2EBA4D169 198144 -c--a-w- C:\WINDOWS\system32\dllcache\nv3.sys 2015-04-16 13:22:10 576B34CEAE5B7E5D9FD2775E93B3DB53 180360 -c--a-w- C:\WINDOWS\system32\dllcache\ntmtlfax.sys 2015-04-16 13:22:05 E966288CF47889753EF88FF165DDB56D 51552 -c--a-w- C:\WINDOWS\system32\dllcache\ntgrip.sys 2015-04-16 13:22:02 002516950F715EBF3616450AC03B5596 9472 -c--a-w- C:\WINDOWS\system32\dllcache\ntapm.sys 2015-04-16 13:22:01 6191E4696F092841E10622E8962C0B72 7552 -c--a-w- C:\WINDOWS\system32\dllcache\nsmmc.sys 2015-04-16 13:22:00 6216798D29C3BA9D0D6F40BBBAB694A5 28672 -c--a-w- C:\WINDOWS\system32\dllcache\nscirda.sys 2015-04-16 13:21:55 7A5633F526E36E4C157373CE64D9BD96 87040 -c--a-w- C:\WINDOWS\system32\dllcache\nm6wdm.sys 2015-04-16 13:21:55 3A97E46B065BF31C0B8D428069668AB1 126080 -c--a-w- C:\WINDOWS\system32\dllcache\nm5a2wdm.sys 2015-04-16 13:21:53 BDFA550022FACF2A922213065924F529 32840 -c--a-w- C:\WINDOWS\system32\dllcache\ngrpci.sys 2015-04-16 13:21:50 7DA654B87FC7C5CB0CCFD7D5BC4EB061 132695 -c--a-w- C:\WINDOWS\system32\dllcache\netwlan5.sys 2015-04-16 13:21:45 349FADA59005663DB4F6ACFDF8F64C51 66334 -c--a-w- C:\WINDOWS\system32\dllcache\netflx3.sys 2015-04-16 13:21:40 7F0D4A8B19F8DA88904DCD07A2F67A4C 39264 -c--a-w- C:\WINDOWS\system32\dllcache\neo20xx.sys 2015-04-16 13:21:40 0382125D0188F15062E8E7D010675BED 15872 -c--a-w- C:\WINDOWS\system32\dllcache\ne2000.sys 2015-04-16 13:21:35 FA9530EF4441A4F56F131D20FD74BB12 33088 -c--a-w- C:\WINDOWS\system32\dllcache\n9i128v2.sys 2015-04-16 13:21:34 456BC1F600E9D76877FAD335C18F5A65 13664 -c--a-w- C:\WINDOWS\system32\dllcache\n9i128.sys 2015-04-16 13:21:33 E8BE0C35D53D2B31FA500D851280026A 131072 -c--a-w- C:\WINDOWS\system32\dllcache\n100325.sys 2015-04-16 13:21:32 A8AFE180FB329E0AE98EBF280112F9C7 76416 -c--a-w- C:\WINDOWS\system32\dllcache\mxport.sys 2015-04-16 13:21:32 23DA64BF58BAE11B6B1976B99778E8DA 53279 -c--a-w- C:\WINDOWS\system32\dllcache\n1000nt5.sys 2015-04-16 13:21:31 E1CDF20697D992CF83FF86DD04DF1285 19968 -c--a-w- C:\WINDOWS\system32\dllcache\mxnic.sys 2015-04-16 13:21:30 174965FF4801B08B23EA5EE257511269 22016 -c--a-w- C:\WINDOWS\system32\dllcache\mxcard.sys 2015-04-16 13:21:29 94AF9D9D9E9A562B43D573A82FB5AB60 12672 -c--a-w- C:\WINDOWS\system32\dllcache\mutohpen.sys 2015-04-16 13:21:28 D7A5C783193A99AC8477216C7BF085ED 103296 -c--a-w- C:\WINDOWS\system32\dllcache\mtxvideo.sys 2015-04-16 13:21:27 6DDA78A0BE692B61B668FAB860F276CF 452736 -c--a-w- C:\WINDOWS\system32\dllcache\mtxparhm.sys 2015-04-16 13:21:22 54886A652BF5685192141DF304E923FD 1309184 -c--a-w- C:\WINDOWS\system32\dllcache\mtlstrm.sys 2015-04-16 13:21:21 C53775780148884AC87C455489A0C070 126686 -c--a-w- C:\WINDOWS\system32\dllcache\mtlmnt5.sys 2015-04-16 13:21:13 74A538DEADE5EA5F9762F488C7904127 49024 -c--a-w- C:\WINDOWS\system32\dllcache\mstape.sys 2015-04-16 13:21:10 D3DBDD392CA1C66A81D09A2ACFDA4F69 12416 -c--a-w- C:\WINDOWS\system32\dllcache\msriffwv.sys 2015-04-16 13:21:02 CA3E22598F411199ADC2DFEE76CD0AE0 2944 -c--a-w- C:\WINDOWS\system32\dllcache\msmpu401.sys 2015-04-16 13:21:00 EE55F5C64417CC369866D7EAFE9B07AB 22016 -c--a-w- C:\WINDOWS\system32\dllcache\msircomm.sys 2015-04-16 13:20:50 082A950191DDE602BBEA8EF4E5900251 35200 -c--a-w- C:\WINDOWS\system32\dllcache\msgame.sys 2015-04-16 13:20:49 8AE8450BD18D2595474DF206444AE589 6016 -c--a-w- C:\WINDOWS\system32\dllcache\msfsio.sys 2015-04-16 13:20:48 6DD721DFD2648F3F6D5808B5BA6CB095 51328 -c--a-w- C:\WINDOWS\system32\dllcache\msdv.sys 2015-04-16 13:20:40 3F4BB95E5A44F3BE34824E8E7CAF0737 17280 -c--a-w- C:\WINDOWS\system32\dllcache\mraid35x.sys 2015-04-16 13:20:27 1992E0D143B09653AB0F9C5E04B0FD65 16128 -c--a-w- C:\WINDOWS\system32\dllcache\modemcsa.sys 2015-04-16 13:20:22 9DA571FFB3B54E5ECBD9D2E8CFBF8390 6528 -c--a-w- C:\WINDOWS\system32\dllcache\miniqic.sys 2015-04-16 13:20:19 523BB39344B8572658D7F82CC9FB5340 320384 -c--a-w- C:\WINDOWS\system32\dllcache\mgaum.sys 2015-04-16 13:20:18 4EF72AAAD5DF2FC276A8A0D84ED14218 92416 ----a-w- C:\WINDOWS\system32\dllcache\mga.sys 2015-04-16 13:20:16 47A15DE75F64102F44D5806BEA12CE10 26112 -c--a-w- C:\WINDOWS\system32\dllcache\memstpci.sys 2015-04-16 13:20:15 8239DC1DE1605730B595E2B7DB3CAF70 8320 -c--a-w- C:\WINDOWS\system32\dllcache\memcard.sys 2015-04-16 13:20:13 2AE506DCE0A4E5983F57462A60C707E8 165162 -c--a-w- C:\WINDOWS\system32\dllcache\mdgndis5.sys 2015-04-16 13:20:09 E9CE1DE4653039914B052E807AA37147 7424 -c--a-w- C:\WINDOWS\system32\dllcache\mammoth.sys 2015-04-16 13:20:07 C9093DD9C13F777BC63F5AF6134E05B0 48768 -c--a-w- C:\WINDOWS\system32\dllcache\maestro.sys 2015-04-16 13:20:06 066ED0BAA4FAEB1475B9F06B8C319FC6 22848 -c--a-w- C:\WINDOWS\system32\dllcache\lwusbhid.sys 2015-04-16 13:20:05 A8FE41A339CEB3B517321A7FF0ED67C5 20864 -c--a-w- C:\WINDOWS\system32\dllcache\lwadihid.sys 2015-04-16 13:20:04 E088EE80DD64A7106FBDDC5498CFED2F 797500 -c--a-w- C:\WINDOWS\system32\dllcache\ltsmt.sys 2015-04-16 13:20:04 DD226891303D5118648AD4B911F37822 802683 -c--a-w- C:\WINDOWS\system32\dllcache\ltsm.sys 2015-04-16 13:20:03 658437CE4D53B7F7295AE7D2AAC3FAFF 7040 -c--a-w- C:\WINDOWS\system32\dllcache\ltotape.sys 2015-04-16 13:20:02 CEC08957256F1D2B7B3BCBFEA65C1EEB 421888 -c--a-w- C:\WINDOWS\system32\dllcache\ltmdmntt.sys 2015-04-16 13:20:01 9412ABE73227327BA58FAD6846827496 577194 -c--a-w- C:\WINDOWS\system32\dllcache\ltmdmntl.sys 2015-04-16 13:20:00 641E4A6CF9DA68C2E872127B0D5EC272 607132 -c--a-w- C:\WINDOWS\system32\dllcache\ltmdmnt.sys 2015-04-16 13:20:00 5DAADA1639C115DEC2D635B02B0783BC 728234 -c--a-w- C:\WINDOWS\system32\dllcache\ltck000c.sys 2015-04-16 13:19:57 64E8B7C65EB4796939C0F64F8170821B 4992 -c--a-w- C:\WINDOWS\system32\dllcache\loop.sys 2015-04-16 13:19:53 FFEE99703CF26D2F5A511E3F363A90C9 70730 -c--a-w- C:\WINDOWS\system32\dllcache\lne100tx.sys 2015-04-16 13:19:53 196A8FAB5707F3881C360155798D9D88 20573 -c--a-w- C:\WINDOWS\system32\dllcache\lne100.sys 2015-04-16 13:19:52 66481AE1138421B0A5F95FDA6AC7389F 25065 -c--a-w- C:\WINDOWS\system32\dllcache\lmndis3.sys 2015-04-16 13:19:50 CDBF44F1BD8EB26957B966CA83B64C7E 15872 -c--a-w- C:\WINDOWS\system32\dllcache\lit220p.sys 2015-04-16 13:19:49 CC50A66548C2F285BC8A7B0B8AA578E3 34688 -c--a-w- C:\WINDOWS\system32\dllcache\lbrtfdc.sys 2015-04-16 13:19:48 E7995F7527A5AE0447A9FB8D33D80D8E 26922 -c--a-w- C:\WINDOWS\system32\dllcache\lanepic5.sys 2015-04-16 13:19:47 50A0090CBBF7FF701230EE1314598AEF 19016 -c--a-w- C:\WINDOWS\system32\dllcache\ktc111.sys 2015-04-16 13:19:01 A1A16662C6B1A665D965D61B9EECC5A7 26624 -c--a-w- C:\WINDOWS\system32\dllcache\irstusb.sys 2015-04-16 13:19:00 0501F0B9AB08425F8C0EACBDCC04AA32 18688 -c--a-w- C:\WINDOWS\system32\dllcache\irsir.sys 2015-04-16 13:18:59 98A1D044331E034DB85D334213E0CC2D 23552 -c--a-w- C:\WINDOWS\system32\dllcache\irmk7.sys 2015-04-16 13:18:58 86C204836FEEC22510D434982D4221B8 87424 -c--a-w- C:\WINDOWS\system32\dllcache\irda.sys 2015-04-16 13:18:57 9D0F94E4FEB6DCDDAEF975DEF0A32949 40832 -c--a-w- C:\WINDOWS\system32\dllcache\irbus.sys 2015-04-16 13:18:50 DC4053419066EF1E29F0A03AD4222D4D 45632 -c--a-w- C:\WINDOWS\system32\dllcache\ip5515.sys 2015-04-16 13:18:49 8F1604AD7F8F8B6339E53D93C46187A8 38784 -c--a-w- C:\WINDOWS\system32\dllcache\io8.sys 2015-04-16 13:18:48 9EFA0AB20F9D16400A98554F8EBE0D60 13568 -c--a-w- C:\WINDOWS\system32\dllcache\inport.sys 2015-04-16 13:18:47 4A40E045FAEE58631FD8D91AFC620719 16000 -c--a-w- C:\WINDOWS\system32\dllcache\ini910u.sys 2015-04-16 13:18:16 0A8A464D0DFD3257B72792248B44FC93 100992 -c--a-w- C:\WINDOWS\system32\dllcache\icam5usb.sys 2015-04-16 13:18:15 222F74130A2E3A2ED655226D97F03812 154496 -c--a-w- C:\WINDOWS\system32\dllcache\icam4usb.sys 2015-04-16 13:18:14 7E9DCE459BE666AB54F67E77CB7D1297 141056 -c--a-w- C:\WINDOWS\system32\dllcache\icam3.sys 2015-04-16 13:18:13 C0FF48986AEAC2E24F628DAD0CD7195F 38528 -c--a-w- C:\WINDOWS\system32\dllcache\ibmvcap.sys 2015-04-16 13:18:13 9CDA373CDDB5EA4B6E32AB584314D6AF 109085 -c--a-w- C:\WINDOWS\system32\dllcache\ibmtrp.sys 2015-04-16 13:18:13 80EA23F0647C44B3EA666939B64315DA 100936 -c--a-w- C:\WINDOWS\system32\dllcache\ibmtok.sys 2015-04-16 13:18:12 541F64FE7CB0498453D8C94B05472043 28700 -c--a-w- C:\WINDOWS\system32\dllcache\ibmexmp.sys 2015-04-16 13:18:09 06B7EF73BA5F302EECC294CDF7E19702 161020 -c--a-w- C:\WINDOWS\system32\dllcache\i81xnt5.sys 2015-04-16 13:18:09 044517FA57548E7E8D303606586A4D07 58592 -c--a-w- C:\WINDOWS\system32\dllcache\i740nt5.sys 2015-04-16 13:18:07 ED6BF9E441FDEA13292A6D30A64A24C3 18560 -c--a-w- C:\WINDOWS\system32\dllcache\i2omp.sys 2015-04-16 13:18:06 8F09F91B5C91363B77BCD15599570F2C 8192 -c--a-w- C:\WINDOWS\system32\dllcache\i2omgmt.sys 2015-04-16 13:17:53 EBB354438A4C5A3327FB97306260714A 1041536 -c--a-w- C:\WINDOWS\system32\dllcache\hsfdpsp2.sys 2015-04-16 13:17:52 1225EBEA76AAC3C84DF6C54FE5E5D8BE 685056 -c--a-w- C:\WINDOWS\system32\dllcache\hsfcxts2.sys 2015-04-16 13:17:51 970178E8E003EB1481293830069624B9 220032 -c--a-w- C:\WINDOWS\system32\dllcache\hsfbs2s2.sys 2015-04-16 13:17:50 8021A499DB46B2961C285168671CB9AF 50751 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_tone.sys 2015-04-16 13:17:50 6C843C43FD7F0B42CFE477CE88D0F9B3 73279 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_spkp.sys 2015-04-16 13:17:50 269C0ADE94B90029B12497747BE408CB 488383 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_v124.sys 2015-04-16 13:17:49 BB7549BD94D1AAC3599C7606C50C48A0 57471 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_samp.sys 2015-04-16 13:17:49 74E379857D4C0DFB56DE2D19B8F4C434 542879 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_msft.sys 2015-04-16 13:17:49 724BD3830863E2774EB17311414A865E 44863 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_soar.sys 2015-04-16 13:17:48 9C5E3FDBFCC30CF71A49CA178B9AD442 391199 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_k56k.sys 2015-04-16 13:17:48 6483414841D4CAB6C3B4DB2AC6EDD70B 115807 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_fsks.sys 2015-04-16 13:17:47 D9E8E0CE154A2F6430D9EFABDF730867 199711 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_faxx.sys 2015-04-16 13:17:47 C823DEBE2548656549F84A875D65237B 289887 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_fall.sys 2015-04-16 13:17:46 93EC3CB49592633B0D0E159A20BB3604 150239 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_amos.sys 2015-04-16 13:17:46 1B9C81AB9A456EABD9F8335F04B5F495 67167 -c--a-w- C:\WINDOWS\system32\dllcache\hsf_bsc2.sys 2015-04-16 13:17:42 B028377DEA0546A5FCFBA928A8AEFAE0 25952 -c--a-w- C:\WINDOWS\system32\dllcache\hpn.sys 2015-04-16 13:17:35 BD205320308FB41C88A4049A2D1764B4 2688 -c--a-w- C:\WINDOWS\system32\dllcache\hidswvd.sys 2015-04-16 13:17:35 442915553E99782FA5713B04C3EEB94A 15104 -c--a-w- C:\WINDOWS\system32\dllcache\hidir.sys 2015-04-16 13:17:34 A11F99232F0ABB3CE6A6116B16562384 25728 -c--a-w- C:\WINDOWS\system32\dllcache\hidbth.sys 2015-04-16 13:17:34 923EE4EEF2582909A056904CA8026015 8576 -c--a-w- C:\WINDOWS\system32\dllcache\hidgame.sys 2015-04-16 13:17:33 13C0D55DA4B7148EF980E130B85D9F2C 19200 -c--a-w- C:\WINDOWS\system32\dllcache\hidbatt.sys 2015-04-16 13:17:31 296DE5A4B49F5FACB6CE5AA556E1E935 907552 -c--a-w- C:\WINDOWS\system32\dllcache\hcf_msft.sys 2015-04-16 13:17:28 50CFB5D57A68B7A492D97EFD5F88AD90 82560 -c--a-w- C:\WINDOWS\system32\dllcache\grclass.sys 2015-04-16 13:17:28 3D3CAEB4EF6EFC0AAB56FF310AF3AF80 28544 -c--a-w- C:\WINDOWS\system32\dllcache\grserial.sys 2015-04-16 13:17:27 B77AD215B9E59E89EE2ECF42D6B6B74A 17536 -c--a-w- C:\WINDOWS\system32\dllcache\gpr400.sys 2015-04-16 13:17:23 97983DB98129EFE4E2D215CE350A7546 59136 -c--a-w- C:\WINDOWS\system32\dllcache\gckernel.sys 2015-04-16 13:17:23 5F92FD09E5610A5995DA7D775EADCD12 10624 -c--a-w- C:\WINDOWS\system32\dllcache\gameenum.sys 2015-04-16 13:17:22 56089E6FD7F92F430B96827CDF8E0A20 322560 -c--a-w- C:\WINDOWS\system32\dllcache\g400m.sys 2015-04-16 13:17:21 CEAEE19E1CB8E12E33CF5BE90B39EB6D 454912 -c--a-w- C:\WINDOWS\system32\dllcache\fxusbase.sys 2015-04-16 13:17:21 74F4ABDDA3730B22AD9775FD9F208173 320512 -c--a-w- C:\WINDOWS\system32\dllcache\g200m.sys 2015-04-16 13:17:08 C4880A896C23DDCDA615F77F0910DC6D 455296 -c--a-w- C:\WINDOWS\system32\dllcache\fusbbase.sys 2015-04-16 13:17:07 6363FBA7563C2562C3B40C8782948316 455680 -c--a-w- C:\WINDOWS\system32\dllcache\fus2base.sys 2015-04-16 13:17:03 6BF0A70BF4BF2E2BA5EF65C1F56A9DDC 442240 -c--a-w- C:\WINDOWS\system32\dllcache\fpnpbase.sys 2015-04-16 13:17:02 A28343D9EAD5556F0456B3F527B3B272 441728 -c--a-w- C:\WINDOWS\system32\dllcache\fpcmbase.sys 2015-04-16 13:17:02 45B5129AEAE91EA096A9BBEBFF99E098 444416 -c--a-w- C:\WINDOWS\system32\dllcache\fpcibase.sys 2015-04-16 13:17:00 B94D57F1D16BB5A66F6083140346B4AA 34173 -c--a-w- C:\WINDOWS\system32\dllcache\forehe.sys 2015-04-16 13:16:57 E9648254056BCE81A85380C0C3647DC4 27165 -c--a-w- C:\WINDOWS\system32\dllcache\fetnd5.sys 2015-04-16 13:16:56 D083354E0341CE23009BF75BBF744343 22090 ----a-w- C:\WINDOWS\system32\dllcache\fem556n5.sys 2015-04-16 13:16:53 B64A76D3C444C8A24B6CEFE8658CF62D 24618 -c--a-w- C:\WINDOWS\system32\dllcache\fa410nd5.sys 2015-04-16 13:16:53 AA855FB8A866281AACB393C1FEAB91AE 16074 -c--a-w- C:\WINDOWS\system32\dllcache\fa312nd5.sys 2015-04-16 13:16:52 AB9954722BDF06F04247082E9C15C23E 12362 -c--a-w- C:\WINDOWS\system32\dllcache\f3ab18xi.sys 2015-04-16 13:16:52 4E29DA3239E88E9099091A9499081489 11850 -c--a-w- C:\WINDOWS\system32\dllcache\f3ab18xj.sys 2015-04-16 13:16:50 EB85488184EED8BD6739A380CCC7CDDB 16998 -c--a-w- C:\WINDOWS\system32\dllcache\ex10.sys 2015-04-16 13:16:50 249FCA20A7DF6EA6B502191E11FEE064 7040 -c--a-w- C:\WINDOWS\system32\dllcache\exabyte2.sys 2015-04-16 13:16:47 52016D76B6F9810186DFDD5CCD53FA79 25856 ----a-w- C:\WINDOWS\system32\dllcache\et4000.sys 2015-04-16 13:16:42 AB570FB40832BEE65F4D90A7F02792BF 63360 -c--a-w- C:\WINDOWS\system32\dllcache\ess.sys 2015-04-16 13:16:42 65FEF13327D25BC33AF78178365C1412 137088 -c--a-w- C:\WINDOWS\system32\dllcache\essm2e.sys 2015-04-16 13:16:40 BC129F409AF5FCF46E978C1C144E31BE 174464 -c--a-w- C:\WINDOWS\system32\dllcache\es198x.sys 2015-04-16 13:16:40 3BF75C79C1FDC6F85DB8DACB4B5A2550 594622 -c--a-w- C:\WINDOWS\system32\dllcache\es56hpi.sys 2015-04-16 13:16:40 32A2C0E5C0D462928076FACD5B2758A2 596063 -c--a-w- C:\WINDOWS\system32\dllcache\es56cvmp.sys 2015-04-16 13:16:39 E8A3A647FFFEB18D8FACE656CE756C4B 37120 -c--a-w- C:\WINDOWS\system32\dllcache\es1370mp.sys 2015-04-16 13:16:39 B9F03760AF557348E17A5BB5FFEB73C0 72192 -c--a-w- C:\WINDOWS\system32\dllcache\es1969.sys 2015-04-16 13:16:39 A55DD7D8CED5D2624A9EE2DDA7BE0319 40704 -c--a-w- C:\WINDOWS\system32\dllcache\es1371mp.sys 2015-04-16 13:16:35 AFF9BC3DA54AA48BF212443F769699C7 114944 -c--a-w- C:\WINDOWS\system32\dllcache\epstw2k.sys 2015-04-16 13:16:35 8D2766A5495E38ED6B0C0FE96C7CFB4A 18503 -c--a-w- C:\WINDOWS\system32\dllcache\epro4.sys 2015-04-16 13:16:35 15D8C265EE1CD46F02F4DF2DC02505A2 630016 -c--a-w- C:\WINDOWS\system32\dllcache\eqn.sys 2015-04-16 13:16:34 094998886BD5E91BBEEA02EF08099697 144896 -c--a-w- C:\WINDOWS\system32\dllcache\epcfw2k.sys 2015-04-16 13:16:34 01F83E1B5DCE05F5CB7D99113CA9E890 283904 -c--a-w- C:\WINDOWS\system32\dllcache\emu10k1m.sys 2015-04-16 13:16:33 4063A77FA6F2C8CD48CBE9AC6EB8D213 19996 ----a-w- C:\WINDOWS\system32\dllcache\em556n4.sys 2015-04-16 13:16:32 EBBB1E7DEA5F6B2B68D68830150FDB28 175104 -c--a-w- C:\WINDOWS\system32\dllcache\el99xn51.sys 2015-04-16 13:16:32 D51AEE120562262173C847C8BF515ECD 25159 -c--a-w- C:\WINDOWS\system32\dllcache\elnk3.sys 2015-04-16 13:16:32 53C5D96DF25CEE217EF50B68FC432D97 7296 -c--a-w- C:\WINDOWS\system32\dllcache\elmsmc.sys 2015-04-16 13:16:31 3E1696ADAA6B72DDEB35463953558182 153631 -c--a-w- C:\WINDOWS\system32\dllcache\el90xnd5.sys 2015-04-16 13:16:31 11DCE1A7768609D9D96C202AED74CB05 70174 -c--a-w- C:\WINDOWS\system32\dllcache\el98xn5.sys 2015-04-16 13:16:30 F967C6881E5F1BF22451D59A8173F2CF 241238 -c--a-w- C:\WINDOWS\system32\dllcache\el656se5.sys 2015-04-16 13:16:30 6E883BF518296A40959131C2304AF714 66591 -c--a-w- C:\WINDOWS\system32\dllcache\el90xbc5.sys 2015-04-16 13:16:29 F3BD57C32AF814168C1CF5C42727EFB0 69194 -c--a-w- C:\WINDOWS\system32\dllcache\el656cd5.sys 2015-04-16 13:16:29 495B84981B4D04ACE007655017ECD01A 634198 -c--a-w- C:\WINDOWS\system32\dllcache\el656ct5.sys 2015-04-16 13:16:28 782802AA0E9389457664076FDEF509CF 26141 -c--a-w- C:\WINDOWS\system32\dllcache\el589nd5.sys 2015-04-16 13:16:28 6CFD1F3EB8CCA6E88D437AE26403C6D3 24653 -c--a-w- C:\WINDOWS\system32\dllcache\el574nd4.sys 2015-04-16 13:16:27 6FC963923FDE4AD6EBB228458E6A1A4A 44103 -c--a-w- C:\WINDOWS\system32\dllcache\el515.sys 2015-04-16 13:16:27 14304CB9FF0A9D2A79A7A54B28A5909A 55999 -c--a-w- C:\WINDOWS\system32\dllcache\el556nd5.sys 2015-04-16 13:16:26 BE27DE641E52D8B295DEA40B213318F7 117760 -c--a-w- C:\WINDOWS\system32\dllcache\e100b325.sys 2015-04-16 13:16:26 B471B27B6BC79C2BB90F3F120667B875 19594 -c--a-w- C:\WINDOWS\system32\dllcache\e100isa4.sys 2015-04-16 13:16:25 A393B7E67812BBF8AE79851E0C2B1F91 51743 -c--a-w- C:\WINDOWS\system32\dllcache\e1000nt5.sys 2015-04-16 13:16:20 6CF04C9FB5BC974C0A472BC81FD56366 334208 -c--a-w- C:\WINDOWS\system32\dllcache\ds1wdm.sys 2015-04-16 13:16:15 BD05306428DA63369692477DDC0F6F5F 8704 -c--a-w- C:\WINDOWS\system32\dllcache\dot4scan.sys 2015-04-16 13:16:15 7AC361ECC27F864B744798C39F05C9EB 28062 -c--a-w- C:\WINDOWS\system32\dllcache\dp83820.sys 2015-04-16 13:16:14 77CE63A8A34AE23D9FE4C7896D1DEBE7 12928 -c--a-w- C:\WINDOWS\system32\dllcache\dot4prt.sys 2015-04-16 13:16:10 51EF6CA3D57055FED6AB99021D562443 29696 -c--a-w- C:\WINDOWS\system32\dllcache\dm9pci5.sys 2015-04-16 13:16:09 8D388BD5D2EFC221E12D174718660E2C 8320 -c--a-w- C:\WINDOWS\system32\dllcache\dlttape.sys 2015-04-16 13:16:08 D57D429A8FFCE0CD4640EE5057727F0E 26698 -c--a-w- C:\WINDOWS\system32\dllcache\dlh5xnd5.sys 2015-04-16 13:16:08 1E9038BE171CE8374DA0659474466280 952007 -c--a-w- C:\WINDOWS\system32\dllcache\diwan.sys 2015-04-16 13:16:03 99A1FFD0E527D3B88E34735D85EAAA04 91305 -c--a-w- C:\WINDOWS\system32\dllcache\dimaint.sys 2015-04-16 13:16:02 4F8B94A50EECA6677B0A25EF801A537F 42656 -c--a-w- C:\WINDOWS\system32\dllcache\digirlpt.sys 2015-04-16 13:16:01 7AF6ECE022535373F0347B8E3BE940D9 21606 -c--a-w- C:\WINDOWS\system32\dllcache\digiisdn.sys 2015-04-16 13:15:59 FA65407C8B424C1E44EA87BB99847D6A 90653 -c--a-w- C:\WINDOWS\system32\dllcache\digifep5.sys 2015-04-16 13:15:59 EB85271E7DF93F0ACED527B486BB2641 38023 -c--a-w- C:\WINDOWS\system32\dllcache\digiasyn.sys 2015-04-16 13:15:59 2971C4589464A962530CD0E14F6A8C17 103396 -c--a-w- C:\WINDOWS\system32\dllcache\digidxb.sys 2015-04-16 13:15:56 2335AC559C3F8CBD33E2B7365779B4AC 29755 -c--a-w- C:\WINDOWS\system32\dllcache\dgapci.sys 2015-04-16 13:15:55 DE4B7E8BEFB6F481517639706919552D 24648 -c--a-w- C:\WINDOWS\system32\dllcache\dfe650.sys 2015-04-16 13:15:55 4F135D8819AAFFAEBC7290770599781A 24649 -c--a-w- C:\WINDOWS\system32\dllcache\dfe650d.sys 2015-04-16 13:15:53 B72872100F4F19553A42516426491A60 20928 -c--a-w- C:\WINDOWS\system32\dllcache\defpa.sys 2015-04-16 13:15:52 06DD030C1A037F955270DF0E2B846947 7424 -c--a-w- C:\WINDOWS\system32\dllcache\ddsmc.sys 2015-04-16 13:15:50 BB005CB49D0638039703AC4F67FE0A05 63208 -c--a-w- C:\WINDOWS\system32\dllcache\dc21x4.sys 2015-04-16 13:15:47 683789CAA3864EB46125AE86FF677D34 14720 -c--a-w- C:\WINDOWS\system32\dllcache\dac960nt.sys 2015-04-16 13:15:46 E550E7418984B65A78299D248F0A7F36 179584 -c--a-w- C:\WINDOWS\system32\dllcache\dac2w2k.sys 2015-04-16 13:15:44 CDCACA1C2BF78AFE7C49AA85373FCB95 50688 -c--a-w- C:\WINDOWS\system32\dllcache\cyzport.sys 2015-04-16 13:15:44 1A0BD768207F1C5BA377085FBFEEE44D 117760 -c--a-w- C:\WINDOWS\system32\dllcache\d100ib5.sys 2015-04-16 13:15:43 92B196EF58F2D861B2683C2788705314 14848 -c--a-w- C:\WINDOWS\system32\dllcache\cyclom-y.sys 2015-04-16 13:15:43 09FE86930E22969E6C2C6EC0B7011A6A 50688 -c--a-w- C:\WINDOWS\system32\dllcache\cyyport.sys 2015-04-16 13:15:42 AA7CC04EC3B172C59A570275F43F7426 93952 -c--a-w- C:\WINDOWS\system32\dllcache\cwcwdm.sys 2015-04-16 13:15:42 40B5AC2E4E9066D77F097C6C6FAA778A 48640 -c--a-w- C:\WINDOWS\system32\dllcache\cwrwdm.sys 2015-04-16 13:15:42 1AF085805518A814CECAB44C63AF5848 17408 -c--a-w- C:\WINDOWS\system32\dllcache\cyclad-z.sys 2015-04-16 13:15:41 798DDEC7FC30464F8CB6521122BEAD05 111872 -c--a-w- C:\WINDOWS\system32\dllcache\cwcspud.sys 2015-04-16 13:15:41 3CE6611C4F87FCE85EB9569B2CBB0945 3584 -c--a-w- C:\WINDOWS\system32\dllcache\cwcosnt5.sys 2015-04-16 13:15:40 86E32E528092092188C58BCF4A9F96C5 72832 -c--a-w- C:\WINDOWS\system32\dllcache\cwbwdm.sys 2015-04-16 13:15:40 7623D295FECA7F311B750373FE9AED51 3072 -c--a-w- C:\WINDOWS\system32\dllcache\cwbmidi.sys 2015-04-16 13:15:39 64A6260D961FA2B0B5BFD626C44AB5A1 3072 -c--a-w- C:\WINDOWS\system32\dllcache\cwbase.sys 2015-04-16 13:15:38 E2B1AEDB62845581D848037F0A614EE6 96256 -c--a-w- C:\WINDOWS\system32\dllcache\ctlsb16.sys 2015-04-16 13:15:38 7FFA171CCE6A8BFC774862A578BA39A2 6912 -c--a-w- C:\WINDOWS\system32\dllcache\ctlfacem.sys 2015-04-16 13:15:38 71007BD2E1E26927FE3E4EB00C0BEEDF 3712 -c--a-w- C:\WINDOWS\system32\dllcache\ctljystk.sys 2015-04-16 13:15:36 3751C950DB792AF624D4901657AC10B9 42112 -c--a-w- C:\WINDOWS\system32\dllcache\crtaud.sys 2015-04-16 13:15:34 E5986B8F63D38CFAB0962545E4172D48 61354 -c--a-w- C:\WINDOWS\system32\dllcache\cpqtrnd5.sys 2015-04-16 13:15:34 3EE529119EED34CD212A215E8C40D4B6 14976 -c--a-w- C:\WINDOWS\system32\dllcache\cpqarray.sys 2015-04-16 13:15:34 23B0D9FEF4984E8BD3BFC0C5B036932E 21533 -c--a-w- C:\WINDOWS\system32\dllcache\cpqndis5.sys 2015-04-16 13:15:25 DF1B1A24BF52D0EBC01ED4ECE8979F50 9344 -c--a-w- C:\WINDOWS\system32\dllcache\compbatt.sys 2015-04-16 13:15:24 9521B9525F261BEDE92A54169F5C20EC 39936 -c--a-w- C:\WINDOWS\system32\dllcache\cnxt1803.sys 2015-04-16 13:15:22 026BA1F2D9C9F742EC3823D0214CD67C 6656 -c--a-w- C:\WINDOWS\system32\dllcache\cmdide.sys 2015-04-16 13:15:21 24D1E7575E10FB3265F6403C72513594 20864 -c--a-w- C:\WINDOWS\system32\dllcache\cmbp0wdm.sys 2015-04-16 13:15:20 4266BE808F85826AEDF3C64C1E240203 14080 -c--a-w- C:\WINDOWS\system32\dllcache\cmbatt.sys 2015-04-16 13:15:19 B44EC9550C56349CA26B44A72F3EA5F1 248064 -c--a-w- C:\WINDOWS\system32\dllcache\cl546xm.sys 2015-04-16 13:15:18 A7D38B7C4C69C72DFA98129CAC1F9F1B 45696 -c--a-w- C:\WINDOWS\system32\dllcache\cirrus.sys 2015-04-16 13:15:15 BB93B7232D36B6782A85F444EC5ABD26 272640 -c--a-w- C:\WINDOWS\system32\dllcache\cinemclc.sys 2015-04-16 13:15:15 452CF548823EA3735A8E7223A12EADEB 980034 -c--a-w- C:\WINDOWS\system32\dllcache\cicap.sys 2015-04-16 13:15:08 DAF1A8193B6CAF0FB858CADCC5C4AF4A 8192 -c--a-w- C:\WINDOWS\system32\dllcache\changer.sys 2015-04-16 13:15:05 B806B0744CDA65DEC98449B60609563D 22044 -c--a-w- C:\WINDOWS\system32\dllcache\cem28n5.sys 2015-04-16 13:15:05 4CABB09FA8334AD5320FB6E18C00FAEF 22044 -c--a-w- C:\WINDOWS\system32\dllcache\cem33n5.sys 2015-04-16 13:15:05 19428449DD11D4233FFE1E3F44627448 49182 -c--a-w- C:\WINDOWS\system32\dllcache\cem56n5.sys 2015-04-16 13:15:04 DB98C8E76A8B13861836722575420DD7 27164 -c--a-w- C:\WINDOWS\system32\dllcache\ce3n5.sys 2015-04-16 13:15:04 8DCB6F1B9DF85A1B3648195F144928D4 21530 -c--a-w- C:\WINDOWS\system32\dllcache\ce2n5.sys 2015-04-16 13:15:02 F3EC03299634490E97BBCE94CD2954C7 7680 -c--a-w- C:\WINDOWS\system32\dllcache\cd20xrnt.sys 2015-04-16 13:15:02 C39E27EF7BDC9EB2295A7C3E602E9819 715146 -c--a-w- C:\WINDOWS\system32\dllcache\cbmdmkxx.sys 2015-04-16 13:15:01 B710E83727F8F0DBEA3FADFA33E45CD8 37916 -c--a-w- C:\WINDOWS\system32\dllcache\cb102.sys 2015-04-16 13:15:01 9060FA1F3EE5C1100AB1D358C3B0996B 46108 -c--a-w- C:\WINDOWS\system32\dllcache\cben5.sys 2015-04-16 13:15:01 86E6BED0818E6FB91A1A06CE2B9512D7 39680 -c--a-w- C:\WINDOWS\system32\dllcache\cb325.sys 2015-04-16 13:14:59 D57D0F293E4C296F89C148DB40A089AC 54528 ----a-w- C:\WINDOWS\system32\dllcache\cap7146.sys 2015-04-16 13:14:59 16A6F479F49FD1FA06BB5539A3D493F8 164923 -c--a-w- C:\WINDOWS\system32\dllcache\diapi2.sys 2015-04-16 13:14:57 B626EC900ED64FEA808C1763ADD40C87 171264 -c--a-w- C:\WINDOWS\system32\dllcache\camdrv30.sys 2015-04-16 13:14:56 5F68A3AB60262E3BF5B5C6C926E53525 223232 -c--a-w- C:\WINDOWS\system32\dllcache\camdrv21.sys 2015-04-16 13:14:55 8754763A924639B9D07D4C8EA9990F1E 314752 -c--a-w- C:\WINDOWS\system32\dllcache\camdro21.sys 2015-04-16 13:14:23 275BEF3567B48225B0836E138325430C 35456 -c--a-w- C:\WINDOWS\system32\dllcache\bthprint.sys 2015-04-16 13:14:23 24EA9F44615064B46928A98C55AA0974 13952 -c--a-w- C:\WINDOWS\system32\dllcache\bulltlp3.sys 2015-04-16 13:14:22 9DF0ADF74CE1D6371ED60CF92EB1D9A6 38016 -c--a-w- C:\WINDOWS\system32\dllcache\bthmodem.sys 2015-04-16 13:14:21 D444EB9C9996A73BC1F2DA30AF12E39B 31529 -c--a-w- C:\WINDOWS\system32\dllcache\brzwlan.sys 2015-04-16 13:14:21 37E2D0B12DDF536CD64AF6EB3B580EF8 11008 -c--a-w- C:\WINDOWS\system32\dllcache\brusbmdm.sys 2015-04-16 13:14:21 1C5F014048E5B2748C1A8AD297C50B6F 10368 -c--a-w- C:\WINDOWS\system32\dllcache\brusbscn.sys 2015-04-16 13:14:20 8E06CD96E00472C03770A697D04031C0 60416 -c--a-w- C:\WINDOWS\system32\dllcache\brserwdm.sys 2015-04-16 13:14:19 D7F995FC20E67E9F5F1456DBA0E6A36B 39808 -c--a-w- C:\WINDOWS\system32\dllcache\brparwdm.sys 2015-04-16 13:14:18 E05D9EDA91C1B2C4C4F6F5A6D5B14B58 3168 -c--a-w- C:\WINDOWS\system32\dllcache\brparimg.sys 2015-04-16 13:14:15 D6738653286D51BB9286CB579814046B 3968 -c--a-w- C:\WINDOWS\system32\dllcache\brfiltup.sys 2015-04-16 13:14:15 50CD33FCC147AE70DFA398F6A3BC7075 12160 -c--a-w- C:\WINDOWS\system32\dllcache\brfiltlo.sys 2015-04-16 13:14:11 F13FE9A3648628B29306EDB48A4E48D3 26568 -c--a-w- C:\WINDOWS\system32\dllcache\bcm4e5.sys 2015-04-16 13:14:11 2D39D498108C4810EF8CC1103A2A5B73 871388 -c--a-w- C:\WINDOWS\system32\dllcache\bcmdm.sys 2015-04-16 13:14:10 FF90A6B43830A42F989111C53FA11436 66557 -c--a-w- C:\WINDOWS\system32\dllcache\bcm42u.sys 2015-04-16 13:14:10 5FF4A1E41DF9F1E328C955CAA12CD3B0 54271 -c--a-w- C:\WINDOWS\system32\dllcache\bcm42xx5.sys 2015-04-16 13:14:09 EA22EDADF90C0ABA8319454B2A07B700 14080 -c--a-w- C:\WINDOWS\system32\dllcache\battc.sys 2015-04-16 13:14:09 BB3C14496AF05ECE613B4E2DF290281B 36128 -c--a-w- C:\WINDOWS\system32\dllcache\banshee.sys 2015-04-16 13:14:08 9528B988AC46697EFBCAB6017E6525A0 89952 -c--a-w- C:\WINDOWS\system32\dllcache\b1cbase.sys 2015-04-16 13:14:08 7F3F585736D3E2A9D821AAFF55626B39 97376 -c--a-w- C:\WINDOWS\system32\dllcache\b57xp32.sys 2015-04-16 13:14:07 C997AF59C54D69232FB7BBEA4DAD86E2 37568 -c--a-w- C:\WINDOWS\system32\dllcache\avmwan.sys 2015-04-16 13:14:07 73C5A32199187C780ABB93090CF068F1 36992 -c--a-w- C:\WINDOWS\system32\dllcache\aztw2320.sys 2015-04-16 13:14:05 867D73A2E43B2DDAF0B0263F88E217AC 13696 -c--a-w- C:\WINDOWS\system32\dllcache\avcstrm.sys 2015-04-16 13:14:05 643CC5E2F93967F0BA0E35E23E89F5F6 36096 -c--a-w- C:\WINDOWS\system32\dllcache\avcaudio.sys 2015-04-16 13:14:04 87C223ADB8F7596B31CAAE3C67B16DDD 38912 -c--a-w- C:\WINDOWS\system32\dllcache\avc.sys 2015-04-16 13:13:56 DF6116E4E01D55B26D87E651CA4A3594 23552 -c--a-w- C:\WINDOWS\system32\dllcache\atixbar.sys 2015-04-16 13:13:55 C9599D2569E85C74A19EC1B9E72469F1 26624 -c--a-w- C:\WINDOWS\system32\dllcache\ativxbar.sys 2015-04-16 13:13:54 90D02964850E2F6B103C1C98ACF9EF30 19456 -c--a-w- C:\WINDOWS\system32\dllcache\ativttxx.sys 2015-04-16 13:13:52 FC3EB08186946EB22370DE70F778DF08 9472 -c--a-w- C:\WINDOWS\system32\dllcache\ativmdcd.sys 2015-04-16 13:13:51 92D31D858C39C10E05B5A536F9AA315C 17152 -c--a-w- C:\WINDOWS\system32\dllcache\atitunep.sys 2015-04-16 13:13:51 6F6715DA7797D1B349E462467C017943 26880 -c--a-w- C:\WINDOWS\system32\dllcache\atirtsnd.sys 2015-04-16 13:13:51 1A67D6C036D84DBD1968D42F497BFD36 17152 -c--a-w- C:\WINDOWS\system32\dllcache\atitvsnd.sys 2015-04-16 13:13:50 DECC12AFF0465B7FABDBF3D421EDAEA2 70784 -c--a-w- C:\WINDOWS\system32\dllcache\atiragem.sys 2015-04-16 13:13:50 7B22151163FEE1203A8B021AED935B59 10240 -c--a-w- C:\WINDOWS\system32\dllcache\atipcxxx.sys 2015-04-16 13:13:50 6C9D305C3A68A02A89C0CBBDBED3E893 49920 -c--a-w- C:\WINDOWS\system32\dllcache\atirtcap.sys 2015-04-16 13:13:49 77B575D7AAB35D5908AE6CE681608D62 63488 -c--a-w- C:\WINDOWS\system32\dllcache\atinxsxx.sys 2015-04-16 13:13:48 3E7D485CBD0B0D9F6EA2AD9442411831 31744 -c--a-w- C:\WINDOWS\system32\dllcache\atinxbxx.sys 2015-04-16 13:13:47 EDD66332608D27F4FD5069BCD0BC5164 73216 -c--a-w- C:\WINDOWS\system32\dllcache\atintuxx.sys 2015-04-16 13:13:47 D80A8F6C0A717446496C3A06D33B0D9C 13824 -c--a-w- C:\WINDOWS\system32\dllcache\atinttxx.sys 2015-04-16 13:13:46 CEDDEE2E0591894D19654D458FD3B9BE 28672 -c--a-w- C:\WINDOWS\system32\dllcache\atinsnxx.sys 2015-04-16 13:13:45 A7A01B907DB63898D40B0A14248FF9A2 104960 -c--a-w- C:\WINDOWS\system32\dllcache\atinrvxx.sys 2015-04-16 13:13:44 ED4C2BF8403F4437987C0BA09CF48716 13824 -c--a-w- C:\WINDOWS\system32\dllcache\atinmdxx.sys 2015-04-16 13:13:44 E90AC2B14E98F1A4372E5891B4278784 14336 -c--a-w- C:\WINDOWS\system32\dllcache\atinpdxx.sys 2015-04-16 13:13:44 DA36687D701C833430605A298731410B 52224 -c--a-w- C:\WINDOWS\system32\dllcache\atinraxx.sys 2015-04-16 13:13:43 E1868737374606B5A73B64D7950EF42F 281728 -c--a-w- C:\WINDOWS\system32\dllcache\atimtai.sys 2015-04-16 13:13:43 993E7BD6438FE989E328C6B4BCA246A9 57856 -c--a-w- C:\WINDOWS\system32\dllcache\atinbtxx.sys 2015-04-16 13:13:42 99BCA7DCBFB9D8D8CC46254300C83ABE 75392 -c--a-w- C:\WINDOWS\system32\dllcache\atimpae.sys 2015-04-16 13:13:42 79E9DCFBF4A68E67B7A5DDA5545179FA 289920 -c--a-w- C:\WINDOWS\system32\dllcache\atimpab.sys 2015-04-16 13:13:41 F767CAB8ED18F4F5E278E313ADCF87FA 46464 -c--a-w- C:\WINDOWS\system32\dllcache\atibt829.sys 2015-04-16 13:13:38 9D888490786F4C3B3E2A81492967A403 701440 -c--a-w- C:\WINDOWS\system32\dllcache\ati2mtag.sys 2015-04-16 13:13:38 63657F4D48597B8E4C27C5FEABFB0553 327168 -c--a-w- C:\WINDOWS\system32\dllcache\ati2mtaa.sys 2015-04-16 13:13:36 67FFBC158DD4D27BA3FC92C6ACD87F73 29455 -c--a-w- C:\WINDOWS\system32\dllcache\ati1xbxx.sys 2015-04-16 13:13:36 0D8CAB1F08F7D3C4DE228B49E12E596A 34735 -c--a-w- C:\WINDOWS\system32\dllcache\ati1xsxx.sys 2015-04-16 13:13:34 F7706DAE7D101F1B19CE552D772EBFCE 21343 -c--a-w- C:\WINDOWS\system32\dllcache\ati1ttxx.sys 2015-04-16 13:13:34 DAC7D785CF62F5BD41441E9D6F5A6EFE 26367 -c--a-w- C:\WINDOWS\system32\dllcache\ati1snxx.sys 2015-04-16 13:13:34 6F714B4720DD80FFA9F8D2731594EA4C 36463 -c--a-w- C:\WINDOWS\system32\dllcache\ati1tuxx.sys 2015-04-16 13:13:33 BCAF267B10620F8C93F6E87AB726E145 63663 -c--a-w- C:\WINDOWS\system32\dllcache\ati1rvxx.sys 2015-04-16 13:13:33 9D318099BF3876A4AF4BC75966D27603 30671 -c--a-w- C:\WINDOWS\system32\dllcache\ati1raxx.sys 2015-04-16 13:13:32 6FDC61E8E8E17F6ECC2D9A10FA8DF347 12047 -c--a-w- C:\WINDOWS\system32\dllcache\ati1pdxx.sys 2015-04-16 13:13:32 60B6AA2DC1521DA343F781B70EB7895A 11615 -c--a-w- C:\WINDOWS\system32\dllcache\ati1mdxx.sys 2015-04-16 13:13:31 D649C57DA6FA762C64013747E5D7D2D6 56623 -c--a-w- C:\WINDOWS\system32\dllcache\ati1btxx.sys 2015-04-16 13:13:31 7D22CEE07A16F486577418803CFC4E0C 77824 -c--a-w- C:\WINDOWS\system32\dllcache\ati.sys 2015-04-16 13:13:29 3D30F6B623D37F03F3DA21225FF665C6 97354 -c--a-w- C:\WINDOWS\system32\dllcache\aspndis3.sys 2015-04-16 13:13:28 69EB0CC7714B32896CCBFD5EDCBEA447 22400 -c--a-w- C:\WINDOWS\system32\dllcache\asc3350p.sys 2015-04-16 13:13:28 5D8DE112AA0254B907861E9E9C31D597 14848 -c--a-w- C:\WINDOWS\system32\dllcache\asc3550.sys 2015-04-16 13:13:27 62D318E9A0C8FC9B780008E724283707 26496 -c--a-w- C:\WINDOWS\system32\dllcache\asc.sys 2015-04-16 13:13:25 54494F84E33B791277FFF5AE1703BA78 6272 -c--a-w- C:\WINDOWS\system32\dllcache\apmbatt.sys 2015-04-16 13:13:24 79F5ADD8D24BD6893F2903A3E2F3FAD6 12032 -c--a-w- C:\WINDOWS\system32\dllcache\amsint.sys 2015-04-16 13:13:24 116BFF96077A4A724E0AAB800525CEB5 36224 -c--a-w- C:\WINDOWS\system32\dllcache\an983.sys 2015-04-16 13:13:23 3D8FC9924522FCD4D05ED09B69BB9365 16969 -c--a-w- C:\WINDOWS\system32\dllcache\amb8002.sys 2015-04-16 13:13:23 1140AB9938809700B46BB88E46D72A96 5248 -c--a-w- C:\WINDOWS\system32\dllcache\aliide.sys 2015-04-16 13:13:22 D81F7D885E9393B09EC5E46ED8D91565 26624 -c--a-w- C:\WINDOWS\system32\dllcache\alifir.sys 2015-04-16 13:13:22 D53F61C70E56C6B2444AE8FE83C83F91 27678 -c--a-w- C:\WINDOWS\system32\dllcache\ali5261.sys 2015-04-16 13:13:22 B7FE594A7468AA0132DEB03FB8E34326 56960 -c--a-w- C:\WINDOWS\system32\dllcache\aic78xx.sys 2015-04-16 13:13:21 C23EA9B5F46C7F7910DB3EAB648FF013 12800 -c--a-w- C:\WINDOWS\system32\dllcache\aha154x.sys 2015-04-16 13:13:21 19DD0FB48B0C18892F70E2E7D61A1529 55168 -c--a-w- C:\WINDOWS\system32\dllcache\aic78u2.sys 2015-04-16 13:13:05 9A11864873DA202C996558B2106B0BBC 101888 -c--a-w- C:\WINDOWS\system32\dllcache\adpu160m.sys 2015-04-16 13:13:05 00C8BEA30481B38AA0A72E2CA49E576D 46112 -c--a-w- C:\WINDOWS\system32\dllcache\adptsf50.sys 2015-04-16 13:13:03 A23675760DEC131B9F799B6FB038A1F0 10880 -c--a-w- C:\WINDOWS\system32\dllcache\admjoy.sys 2015-04-16 13:13:01 E4E7B5832EDC3B8DC3052210FDA320FD 747392 -c--a-w- C:\WINDOWS\system32\dllcache\adm8830.sys 2015-04-16 13:13:01 D90C1C67567CBDC7D55015A8C102C120 584448 -c--a-w- C:\WINDOWS\system32\dllcache\adm8810.sys 2015-04-16 13:13:01 BE6B041D36B464F9024477A09C2ECCB5 553984 -c--a-w- C:\WINDOWS\system32\dllcache\adm8820.sys 2015-04-16 13:13:00 E5C64CD72F276B6656D73AFD9BDACEA1 7424 -c--a-w- C:\WINDOWS\system32\dllcache\adicvls.sys 2015-04-16 13:13:00 B05F2367F62552A2DE7E3C352B7B9885 20160 -c--a-w- C:\WINDOWS\system32\dllcache\adm8511.sys 2015-04-16 13:12:58 819BF44085104BE6527B86A88ACF856B 84480 -c--a-w- C:\WINDOWS\system32\dllcache\ac97via.sys 2015-04-16 13:12:57 D3BA744433F14E5C77107D9D82297801 297728 -c--a-w- C:\WINDOWS\system32\dllcache\ac97sis.sys 2015-04-16 13:12:57 0F2D66D5F08EBE2F77BB904288DCF6F0 96256 -c--a-w- C:\WINDOWS\system32\dllcache\ac97intc.sys 2015-04-16 13:12:56 6ABB91494FE6C59089B9336452AB2EA3 23552 -c--a-w- C:\WINDOWS\system32\dllcache\abp480n5.sys 2015-04-16 13:12:56 065A6D38A79216592DE03F3525D6296E 231552 -c--a-w- C:\WINDOWS\system32\dllcache\ac97ali.sys 2015-04-16 13:12:55 86D7B1E70661D754685B9AC6D749AAE5 48128 -c--a-w- C:\WINDOWS\system32\dllcache\61883.sys 2015-04-16 13:12:54 B6BBE5503E6460BDFA2AECB972A07C1A 148352 -c--a-w- C:\WINDOWS\system32\dllcache\3dfxvsm.sys 2015-04-16 13:12:54 9546D4CF7F9E902D20B269511CA1F95D 12288 -c--a-w- C:\WINDOWS\system32\dllcache\4mmdat.sys 2015-04-16 13:12:53 F5E227AF17514D92C180B7723573A7DE 11264 -c--a-w- C:\WINDOWS\system32\dllcache\1394vdbg.sys 2015-04-16 13:12:53 6716B1AC3C76CC7B4085369C3F7173EF 762780 -c--a-w- C:\WINDOWS\system32\dllcache\3cwmcru.sys 2015-04-15 21:40:40 BA5A30A77BEB68FD5931F3710BC77081 18714 ----a-w- C:\Program Files\Java\jre7\lib\deploy\ffjcext.zip 2015-04-12 09:24:08 E53CA224EC1BFAD22B97C50FF191C1D9 970672 ----a-w- C:\Documents and Settings\BenJ\Application Data\Mozilla\SeaMonkey\Profiles\d1w9yo8p.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [HKEY_USERS\S-1-5-21-1708537768-1123561945-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Google Update"="C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "tscuninstall"="%systemroot%\system32\tscupgrd.exe " [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "tscuninstall"="%systemroot%\system32\tscupgrd.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ZoneAlarm"="C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe" "Snelkoppeling naar eigenschappenvenster voor High Definition Audio"="HDAudPropShortcut.exe" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "nwiz"="nwiz.exe /installquiet" "NvMediaCenter"="RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" "NvCplDaemon"="RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" "BluetoothAuthenticationAgent"="rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" "ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" "MSConfig"="C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto" "nwiz"="nwiz.exe /installquiet" "SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" "Google Update"="C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EasyNoterLite35#1] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="enlite" "hkey"="HKCU" "command"="\"C:\\Program Files\\Art Plus\\EasyNoter37LE\\enlite.exe\" /a" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KeyScrambler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="keyscrambler" "hkey"="HKLM" "command"="C:\\Program Files\\KeyScrambler\\keyscrambler.exe /a" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Remote Control Editor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TTTVRC" "hkey"="HKCU" "command"="\"C:\\Program Files\\Common Files\\TerraTec\\Remote\\TTTVRC.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Skype" "hkey"="HKCU" "command"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /minimized /regrun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="jusched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WeatherMate] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="WeatherMate" "hkey"="HKLM" "command"="\"C:\\Program Files\\WeatherMate\\WeatherMate.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^TabUserW.exe.lnk] "path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programma's\\Opstarten\\TabUserW.exe.lnk" "backup"="C:\\WINDOWS\\pss\\TabUserW.exe.lnkCommon Startup" "command"="C:\\WINDOWS\\system32\\WTablet\\TabUserW.exe " "item"="TabUserW.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Documents and Settings^BenJ^Menu Start^Programma's^Opstarten^Dropbox.lnk] "path"="C:\\Documents and Settings\\BenJ\\Menu Start\\Programma's\\Opstarten\\Dropbox.lnk" "backup"="C:\\WINDOWS\\pss\\Dropbox.lnkStartup" "command"="C:\\DOCUME~1\\BenJ\\APPLIC~1\\Dropbox\\bin\\Dropbox.exe /systemstartup" "item"="Dropbox" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [15-04-2015 23:38] C:\WINDOWS\tasks\AppleSoftwareUpdate.job --a------ C:\Program Files\AppleC:oftware Update\SoftwareUpdate.exe [] C:\WINDOWS\tasks\avast\Undetermined Task.exe [] C:\WINDOWS\tasks\Check for updates (Spybot - Search & Destroy).job --a------ C:\Program Files\Spybot - Search Destroy 2\SDUpdate.exe [] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-1123561945-725345543-1003Core.job --a------ C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [21-10-2014 10:14] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-1123561945-725345543-1003UA.job --a------ C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [21-10-2014 10:14] C:\WINDOWS\tasks\Refresh immunization (Spybot - Search & Destroy).job --a------ C:\Program Files\Spybot - Search Destroy 2\SDImmunize.exe [] C:\WINDOWS\tasks\Scan the system (Spybot - Search & Destroy).job --a------ C:\Program Files\Spybot - Search Destroy 2\SDScan.exe [] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default user_pref("browser.startup.homepage", "www.google.nl"); user_pref("browser.search.defaulturl", "https://www.google.com/search"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("keyword.URL", "https://www.google.com/search"); ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\SeaMonkey\Profiles\d1w9yo8p.default user_pref("browser.startup.homepage", "https://www.google.nl"); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11-04-2015 09:45] ==== Firefox Extensions ====================== ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default - Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF - Undetermined - wrc@avast.com - WOT - %ProfilePath%\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Documents and Settings\BenJ\Application Data\Mozilla\SeaMonkey\Profiles\d1w9yo8p.default - Undetermined - {f13b157f-b174-47e7-a34d-4815ddfdfeb8} - Undetermined - inspector@mozilla.org - DOM-granskaren DOM Inspector - %ProfilePath%\extensions\inspector@mozilla.org - ChatZilla - %ProfilePath%\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2} - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi - JavaScript Debugger - %ProfilePath%\extensions\{f13b157f-b174-47e7-a34d-4815ddfdfeb8}.xpi AppDir: C:\Program Files\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Documents and Settings\BenJ\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default B66373BE0D51DFF85DC2F671227A66FC - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library AAB8CD2564F813AD1A0CCD4C6071B633 - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM 5B087706B1A7BC260CC4BFB6EFE26D77 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM 64C4ADE063A9C93D3BAE09922AD90C27 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat 446BCAE59E26321802E000FC3E0C390A - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat C2D756C95D5AE3D030E7D394B9C771B9 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin A93A4FC3B7596E9EA4FC203195FF77B6 - C:\Program Files\Photodex Presenter\npPxPlay.dll - Photodex Presenter Plugin AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation 893BF7D2261C56C24F813405D9D018E0 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll - Silverlight Plug-In A104717A0DB2BF3412B7CA51ECD8CCFD - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U76 08A8AA80E372A867D7979DA0949AC4BA - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.760.13 46D0E3B69362EA27E40D0FD4D7E79377 - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll - npFFApi CE252B04FB9F4F773A7DB5338BFEEA5B - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility E02F6F36A576F570CEF7267082F18172 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector 9AE02005247DA91AB1743F5208DBEF76 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll - Shockwave Flash 98137411B9C632095F919E2CE70B288A - C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\1.3.26.9\npGoogleUpdate3.dll - Google Update 8DA2ED6B04EA33F2EAE8BA883F903729 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrlui.dll - Microsoft® Silverlight ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx[04-08-2014 20:39] gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[07-04-2015 17:02] Google Wallet - BenJ\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://nl.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_15_16¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dnl%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1QzutDtDtD0CyByCyBtCtDtBtDzytAyEyD0CtN0D0Tzu0StCtBtDtCtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyDyE0ByByBtA0FtGtC0B0E0CtG0D0EzzzztGtD0ByD0EtGyD0FyDtDyE0Fzz0DyCyEtD0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyEyDzy0E0FyCyEtG0BtC0A0EtGyE0EyC0EtGzy0ByEyCtGtAzz0DyBtByDyEzyzytB0EtC2QtN0A0LzutBtN1B2Z1V1T1S1NzuyBtCyC%26cr%3D103057126%26a%3Dwny_ir_15_16%26os%3DWindows XP" "Search Page"="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" "Start Default_Page_URL"="http://search.searchcompletion.com/?si=10182&home=1" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.searchcompletion.com/?si=10182&cs=1&q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.searchcompletion.com/?si=10182&cs=1&q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://search.searchcompletion.com/?si=10182&home=1" "Search Page"="http://search.searchcompletion.com/?si=10182&home=1" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} Microsoft (Bing) Url="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" {afdbddaa-5d3f-42ee-b79c-185a7020515b} Web Search Url="http://search.searchcompletion.com/?si=10182&cs=1&q={searchTerms}" ==== Deleting CLSID Registry Keys ====================== HKEY_CLASSES_ROOT\CLSID\{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} deleted successfully HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\esnipsxpi@logia.esnips deleted successfully ==== Reset IE Proxy ====================== Value(s) before fix: "ProxyServer"="http=127.0.0.1:1112;https=127.0.0.1:1112;" "ProxyOverride"="<-loopback>" "ProxyEnable"=dword:00000000 Value(s) after fix: "ProxyEnable"=dword:00000000 ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DA141136AA97F7444B30127C403DB9C8 deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{631141AD-79AA-447F-B403-21C704D39B8C} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\UPC Fiber Power Optimizer deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1 deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\DA141136AA97F7444B30127C403DB9C8 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Remote Control Editor deleted successfully ==== HijackThis Entries ====================== O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe" O4 - HKLM\..\Run: [Snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user') O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\speedbit video accelerator\sblsp.dll O10 - Unknown file in Winsock LSP: c:\program files\speedbit video accelerator\sblsp.dll O10 - Unknown file in Winsock LSP: c:\program files\speedbit video accelerator\sblsp.dll O15 - Trusted Zone: *.musicmatch.com O15 - Trusted Zone: *.musicmatch.com (HKLM) O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://77.61.1.225/activex/AMC.cab O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file) O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing) O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Leawo common service. (Leawo_service) - Unknown owner - C:\Program Files\Common Files\AppKeys\yytool.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe O23 - Service: TabletService - Wacom Technology, Corp. - C:\WINDOWS\system32\Tablet.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe O24 - Desktop Component 0: (no name) - (no file) ==== Empty IE Cache ====================== C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\BenJ\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\Documents and Settings\BenJ\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Documents and Settings\LocalService\Local Settings\temp\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Documents and Settings\BenJ\Local Settings\Application Data\Mozilla\Firefox\Profiles\4iaigd6o.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Documents and Settings\BenJ\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=5843 folders=394 426131459 bytes) ==== Empty Temp Folders ====================== C:\Documents and Settings\Administrator\Local Settings\Temp emptied successfully C:\Documents and Settings\BenJ\Local Settings\Temp will be emptied at reboot C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully C:\Documents and Settings\LocalService\Local Settings\temp will be emptied at reboot C:\Documents and Settings\NetworkService\Local Settings\temp will be emptied at reboot C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Deleting Files / Folders ====================== "C:\Documents and Settings\BenJ\Local Settings\Temporary Internet Files\Content.IE5\index.dat" deleted "C:\Documents and Settings\LocalService\Local Settings\temp\Temporary Internet Files\Content.IE5\index.dat" deleted "C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" deleted "C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" deleted "C:\Documents and Settings\LocalService\Local Settings\temp\Cookies" deleted "C:\Documents and Settings\LocalService\Local Settings\temp\Geschiedenis" deleted "C:\Documents and Settings\LocalService\Local Settings\temp\IswTmp" deleted "C:\Documents and Settings\LocalService\Local Settings\temp\Temporary Internet Files" deleted "C:\Documents and Settings\NetworkService\Local Settings\temp\IswTmp" deleted ==== EOF on zo 19-04-2015 at 9:49:53,59 ======================