Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Administrator on di 18-08-2015 at 19:57:36,97. Microsoft Windows 10 Home 10.0.10240 x86 Running in: Normal Mode Internet Access Detected Launched: D:\Download\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 18-8-2015 20:00:00 Zoek.exe System Restore Point Created Successfully. ==== Reset Hosts File ====================== # Copyright (c) 1993-2006 Microsoft Corp. # # This is a sample HOSTS file used by Microsoft TCP/IP for Windows. # # This file contains the mappings of IP addresses to host names. Each # entry should be kept on an individual line. The IP address should # be placed in the first column followed by the corresponding host name. # The IP address and the host name should be separated by at least one # space. # # Additionally, comments (such as these) may be inserted on individual # lines or following the machine name denoted by a '#' symbol. # # For example: # # 102.54.94.97 rhino.acme.com # source server # 38.25.63.10 x.acme.com # x client host 127.0.0.1 localhost ==== Empty Folders Check ====================== C:\Program Files\LoiLo deleted successfully C:\Program Files\MSXML 4.0 deleted successfully C:\Program Files\ReviverSoft deleted successfully C:\Program Files\Web Assistant deleted successfully C:\Program Files\Common Files\SWF Studio deleted successfully C:\PROGRA~2\Babylon deleted successfully C:\PROGRA~2\BrowserDefender deleted successfully C:\PROGRA~2\Comms deleted successfully C:\PROGRA~2\Installations deleted successfully C:\PROGRA~2\Seagate deleted successfully C:\PROGRA~2\SoftwareDistribution deleted successfully C:\PROGRA~2\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} deleted successfully C:\PROGRA~2\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfully C:\PROGRA~2\~0 deleted successfully C:\Users\UpdatusUser\AppData\LocalLow deleted successfully C:\Users\Administrator\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Administrator\AppData\Local\EmieSiteList deleted successfully C:\Users\Administrator\AppData\Local\EmieUserList deleted successfully C:\Users\Administrator\AppData\Local\Logitech-LS deleted successfully C:\Users\Administrator\AppData\Local\Opera Software deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7757CBCC-0975-4b79-A519-90B142CA3A23} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7757CBCC-0975-4b79-A519-90B142CA3A23} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4248FE82-7FCB-46AC-B270-339F08212110} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4248FE82-7FCB-46AC-B270-339F08212110} deleted successfully HKEY_CLASSES_ROOT\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{4248FE82-7FCB-46AC-B270-339F08212110} deleted successfully HKEY_CLASSES_ROOT\CLSID\{4248FE82-7FCB-46AC-B270-339F08212110} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\URLSearchHooks\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{1392b8d2-5c05-419f-a8f6-b9f15a596612} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\URLSearchHooks\{1392b8d2-5c05-419f-a8f6-b9f15a596612} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\URLSearchHooks\{7757CBCC-0975-4b79-A519-90B142CA3A23} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\urlsearchhooks\{1392b8d2-5c05-419f-a8f6-b9f15a596612} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{1392b8d2-5c05-419f-a8f6-b9f15a596612} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{C8F48FC8-3CA1-42B9-8609-F75D7C8B4493} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully ==== Deleting Files \ Folders ====================== C:\Program Files\Common Files\31f7a620-acbd-4f84-82db-5e231b8ad5de deleted C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de deleted C:\ProgramData\{ECA9D0D4-7782-4B7F-96E2-FDB0CF0A57D5} deleted "C:\PFS9.5PE_TMP" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-08-18 17:48:29 4A8AD2FA9DE01C79E72C72A99DA6AB40 475279 ------w- C:\WINDOWS\hpoins51.dat.temp 2015-08-18 17:48:28 14C08B2034446C59EB5E2B9D8899D7E6 572 ------w- C:\WINDOWS\hpomdl51.dat.temp 2015-08-14 09:30:00 4A8AD2FA9DE01C79E72C72A99DA6AB40 475279 ----a-w- C:\WINDOWS\hpoins51.dat 2015-08-14 09:30:00 14C08B2034446C59EB5E2B9D8899D7E6 572 ------w- C:\WINDOWS\hpomdl51.dat 2015-08-13 16:30:42 9AA440F8F580C573D0F2732DA6ECB87A 207872 ----a-w- C:\WINDOWS\notepad.exe 2015-08-13 16:30:42 36E7C77518D3FA1231C6CDA62152308F 4047288 ----a-w- C:\WINDOWS\explorer.exe ====== C:\Users\ADMINI~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\system32 ===== 2015-08-18 17:51:45 56ED21F1826C466FD806C85BE9A9790D 16148 ----a-w- C:\WINDOWS\System32\WIN-XM7DVXO155L_Administrator_HistoryPrediction.bin 2015-08-15 10:08:49 62F7709037336EC51F2F35E873F6047F 12144 ----a-w- C:\WINDOWS\System32\acengineOff.ini 2015-08-15 10:08:44 5E38C293C9E2710E20E4D7C4EFAA2B57 299296 ----a-w- C:\WINDOWS\System32\acengine.dll 2015-08-15 09:58:03 0CA8C76BE166D39E5CA8B0991398D866 1499136 ----a-w- C:\WINDOWS\System32\AppXDeploymentExtensions.dll 2015-08-15 09:58:02 8CDF861A44B67AEB186365936DC32BE2 1917440 ----a-w- C:\WINDOWS\System32\AppXDeploymentServer.dll 2015-08-14 09:19:52 FD6EEA9E5084065A7783CE4E6FB5524E 220088 ----a-w- C:\WINDOWS\System32\tossaemaxapo32.dll 2015-08-14 09:19:52 CE1E84AA03EE50362D3C69382DCFA294 1783056 ----a-w- C:\WINDOWS\System32\WavesLib.dll 2015-08-14 09:19:52 38136C24E80EA6C7C0A227A2AD433FA7 1379760 ----a-w- C:\WINDOWS\System32\tosade.dll 2015-08-14 09:19:52 2494F7215E7EE00A61FDE799BD86D0B8 1823320 ----a-w- C:\WINDOWS\System32\WavesGUILib.dll 2015-08-14 09:19:51 F5153A491D95C7DACE6BC6BFC8DCA1FC 611496 ----a-w- C:\WINDOWS\System32\sltech32.dll 2015-08-14 09:19:51 B798330BE64AA2A82F293CF9B1A3E251 223912 ----a-w- C:\WINDOWS\System32\slprp32.dll 2015-08-14 09:19:51 A258F7B2B84E88118369B0B2196CC257 140528 ----a-w- C:\WINDOWS\System32\SRSWOW.dll 2015-08-14 09:19:51 8F8B0AD16B154448D81A88FF736B53BD 388752 ----a-w- C:\WINDOWS\System32\SRAPO.dll 2015-08-14 09:19:51 8F3710245B1B923D6C0A2C15BB49C84A 58264 ----a-w- C:\WINDOWS\System32\TepeqAPO.dll 2015-08-14 09:19:51 8C83CED38F8CAC3E8D5A953C03BCF4B4 345328 ----a-w- C:\WINDOWS\System32\SRSTSXT.dll 2015-08-14 09:19:51 7E8B3D16C3317C264089F67E53EE0003 844192 ----a-w- C:\WINDOWS\System32\tadefxapo2.dll 2015-08-14 09:19:51 48435D12B45AB1F954CB579D1EA15D52 329360 ----a-w- C:\WINDOWS\System32\SRCOM.dll 2015-08-14 09:19:51 47AC41518B5DCD65FCED33A129CDB1C1 134584 ----a-w- C:\WINDOWS\System32\tadefxapo.dll 2015-08-14 09:19:51 316C6609984802B43C34209FE5256BCC 1055888 ----a-w- C:\WINDOWS\System32\SRRPTR.dll 2015-08-14 09:19:51 272BF8E5DBDAF0614CC367A25EA3B256 173296 ----a-w- C:\WINDOWS\System32\SRSHP360.dll 2015-08-14 09:19:51 029F36DE21AFBDD2865CC657E252EBA7 185584 ----a-w- C:\WINDOWS\System32\SRSTSHD.dll 2015-08-14 09:19:50 ABF66255457A1986CF03BEB6BA0DBAC4 919600 ----a-w- C:\WINDOWS\System32\SFSS_APO.dll 2015-08-14 09:19:50 4DB1C5B6E27258B90197038F999E9200 1022120 ----a-w- C:\WINDOWS\System32\slcnt32.dll 2015-08-14 09:19:50 4D7D49A61594B8A643EA8EAF74F2150C 214368 ----a-w- C:\WINDOWS\System32\SFNHK.dll 2015-08-14 09:19:50 034BD761D1B942710FDC0F015CB91980 865960 ----a-w- C:\WINDOWS\System32\sl3apo32.dll 2015-08-14 09:19:49 D9397A5E3929F61FFA83F07285C414C5 68960 ----a-w- C:\WINDOWS\System32\SFAPO.dll 2015-08-14 09:19:49 AA4AF9F45BC6D6002EC6FF0813B29BDB 372368 ----a-w- C:\WINDOWS\System32\SEAPO32.dll 2015-08-14 09:19:49 90057B1D85470C7FF99F9BAD02615265 555664 ----a-w- C:\WINDOWS\System32\SECOMN32.dll 2015-08-14 09:19:49 896948FF2B281C242665AC07DC4B13A8 704656 ----a-w- C:\WINDOWS\System32\SEHDRA32.dll 2015-08-14 09:19:49 736B9CBB1AF8324171CFA3787A024588 74080 ----a-w- C:\WINDOWS\System32\SFCOM.dll 2015-08-14 09:19:49 1FFC7CE82FE5493F30484685550DA3DB 2637528 ----a-w- C:\WINDOWS\System32\RTSndMgr.cpl 2015-08-14 09:19:48 029715E2A8DD11AC1E3DBC69D389D08A 2630872 ----a-w- C:\WINDOWS\System32\RtkPgExt.dll 2015-08-14 09:19:47 D562A24947717B4236C89CBD99CA9840 2394328 ----a-w- C:\WINDOWS\System32\RtkApoApi.dll 2015-08-14 09:19:47 A6686775084244141483AEA0391508D2 359768 ----a-w- C:\WINDOWS\System32\RTEEP32A.dll 2015-08-14 09:19:47 0DCCB753E8BCBB4FD9D790717538222E 1708248 ----a-w- C:\WINDOWS\System32\RtkCoInstII.dll 2015-08-14 09:19:46 E232507C219A1957880D4EB6D022FAC7 170840 ----a-w- C:\WINDOWS\System32\RTEED32A.dll 2015-08-14 09:19:46 5B18398DEDE4A4A78651CD34F0A217A5 78680 ----a-w- C:\WINDOWS\System32\RTEEL32A.dll 2015-08-14 09:19:46 3DE99987154319C901A6537BA8777CB9 64856 ----a-w- C:\WINDOWS\System32\RTEEG32A.dll 2015-08-14 09:19:45 C619CDFA5CDC5A346C89870010A2391C 295768 ----a-w- C:\WINDOWS\System32\RP3DAA32.dll 2015-08-14 09:19:45 C5094875B5A04B7BC3064B4A84EC174C 7162128 ----a-w- C:\WINDOWS\System32\R4EEP32A.dll 2015-08-14 09:19:45 82341D2B49561E5081939B2FEF9D41BA 352016 ----a-w- C:\WINDOWS\System32\R4EED32A.dll 2015-08-14 09:19:45 529B7B0F1FAEDE12A00CC76320A52D44 91920 ----a-w- C:\WINDOWS\System32\R4EEA32A.dll 2015-08-14 09:19:45 4F92047498EFEA076E3745C291481975 295768 ----a-w- C:\WINDOWS\System32\RP3DHT32.dll 2015-08-14 09:19:45 427A6067C4064E3388B721C0C97D2BB3 106768 ----a-w- C:\WINDOWS\System32\R4EEL32A.dll 2015-08-14 09:19:45 1B8EF7B0D8A6D95CBAB680EF4337ED9A 62224 ----a-w- C:\WINDOWS\System32\R4EEG32A.dll 2015-08-14 09:19:45 1784CED4D2C0E07A9CC2A095EEF8CEBF 72113152 ----a-w- C:\WINDOWS\System32\RCoRes.dat 2015-08-14 09:19:44 9B5944C94F01E70007823B91AD98E643 4713224 ----a-w- C:\WINDOWS\System32\NAHIMICAPOlfx.dll 2015-08-14 09:19:44 98B3FDAED341CE30AAA534CA385517FB 852016 ----a-w- C:\WINDOWS\System32\MISS_APO.dll 2015-08-14 09:19:44 8EFA36770AF57FA9AA65841053577C44 945456 ----a-w- C:\WINDOWS\System32\NahimicAPONSControl.dll 2015-08-14 09:19:44 811FB86C92666EED9C742DD68B71CAC6 5073344 ----a-w- C:\WINDOWS\System32\NAHIMICV2apo.dll 2015-08-14 09:19:43 8C6039F95F04FB50C9DB8C888BADCA83 11785136 ----a-w- C:\WINDOWS\System32\MaxxVoiceAPO40.dll 2015-08-14 09:19:43 548D0C5FCA8D6ABFB7A7A14CFC015C4B 509184 ----a-w- C:\WINDOWS\System32\MaxxVolumeSDAPO.dll 2015-08-14 09:19:43 029366F4A3F3CDA59E419CEF863D8D4B 11899824 ----a-w- C:\WINDOWS\System32\MaxxVoiceAPO30.dll 2015-08-14 09:19:42 EDC4DBEFB0D4370B81C6AA27A1A80CCF 818096 ----a-w- C:\WINDOWS\System32\MaxxVoiceAPO20.dll 2015-08-14 09:19:42 DBD0BFA768451298629A9DA13033DB02 2370480 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO70.dll 2015-08-14 09:19:42 DADED743B7BA684C82679EF3876AF4C8 13789440 ----a-w- C:\WINDOWS\System32\MaxxAudioRealtek.dll 2015-08-14 09:19:42 C1B6A53190A0761B0FBD6F844FF5E099 1940056 ----a-w- C:\WINDOWS\System32\MaxxAudioEQ.dll 2015-08-14 09:19:42 99DE7F0838685CE9F4C39E58FEE6F48B 790272 ----a-w- C:\WINDOWS\System32\MaxxAudioAPOShell.dll 2015-08-14 09:19:42 218672571C80F0679343CF4DA5B69D1B 948336 ----a-w- C:\WINDOWS\System32\MaxxSpeechAPO.dll 2015-08-14 09:19:41 F2EBB448935A1E2C955B01895E7A5A8F 296560 ----a-w- C:\WINDOWS\System32\ICEsoundAPO.dll 2015-08-14 09:19:41 C4253E499E501E9A06D164C303CDF5AE 294744 ----a-w- C:\WINDOWS\System32\HiFiDAX2API.dll 2015-08-14 09:19:41 84AB243EBB8839C268BA45975BD6558C 132368 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO.dll 2015-08-14 09:19:41 586F994B40E4D3ED49826C6445490C84 509184 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO30.dll 2015-08-14 09:19:41 57C588F098C811E9459AC7034349AF6F 232792 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO20.dll 2015-08-14 09:19:41 56056DF5DC4CFCCA657E57E8FF3714B0 357712 ----a-w- C:\WINDOWS\System32\KAAPORT.dll 2015-08-14 09:19:41 207334C1E5FB83C012E877F57D94F82C 1160112 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO60.dll 2015-08-14 09:19:41 0D85B6EDEE62D8829C32383698C58CCB 973232 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO40.dll 2015-08-14 09:19:41 07CC04ABC04CC07DFB82867E5D0F0663 1010096 ----a-w- C:\WINDOWS\System32\MaxxAudioAPO50.dll 2015-08-14 09:19:39 F7DE99D8D4492123E2155E86543BC14E 346048 ----a-w- C:\WINDOWS\System32\DTSU2PREC32.dll 2015-08-14 09:19:39 C1D3FC8F45C3AA7F0F03DA2A0D384524 1509480 ----a-w- C:\WINDOWS\System32\DTSS2SpeakerDLL.dll 2015-08-14 09:19:39 BAF09FCD09873CF0A3ADF4752F6B144B 601704 ----a-w- C:\WINDOWS\System32\DTSVoiceClarityDLL.dll 2015-08-14 09:19:39 AD073765F57874AA803D72B0785E312F 403392 ----a-w- C:\WINDOWS\System32\DTSU2PGFX32.dll 2015-08-14 09:19:39 A66E5E25E2E102C5AA75DA6C1C520D04 426944 ----a-w- C:\WINDOWS\System32\DTSU2PLFX32.dll 2015-08-14 09:19:39 5ADA836A4F9E4C0CF9CC1BFDBAA9D37F 1292904 ----a-w- C:\WINDOWS\System32\DTSS2HeadphoneDLL.dll 2015-08-14 09:19:39 5328523AC3FE93F61054823D90DA73A5 218216 ----a-w- C:\WINDOWS\System32\DTSLFXAPO.dll 2015-08-14 09:19:39 4CB970E9423433CC834BF54588E0AA5A 458344 ----a-w- C:\WINDOWS\System32\DTSNeoPCDLL.dll 2015-08-14 09:19:39 426246A4B6A7D1A1D12AAB6BB2E483C5 631400 ----a-w- C:\WINDOWS\System32\DTSSymmetryDLL.dll 2015-08-14 09:19:39 3B7950071A28E861C877BA77742D9577 218728 ----a-w- C:\WINDOWS\System32\DTSGFXAPONS.dll 2015-08-14 09:19:39 378E45EC41C3A00C738E886B4F314936 2820120 ----a-w- C:\WINDOWS\System32\FMAPO.dll 2015-08-14 09:19:39 255A4B9B8008773D0B143E22A21AB4FA 375400 ----a-w- C:\WINDOWS\System32\DTSLimiterDLL.dll 2015-08-14 09:19:38 FB13EC7EB39FFB503DB388756449BEDD 1782616 ----a-w- C:\WINDOWS\System32\DolbyDAX2APOv201.dll 2015-08-14 09:19:38 E79163920E5452D61AC9C839553548CE 221528 ----a-w- C:\WINDOWS\System32\DDPA32.dll 2015-08-14 09:19:38 C9BFB937FBD30048B3EFCCFDCDFF1FB1 850264 ----a-w- C:\WINDOWS\System32\DolbyDAX2APOProp.dll 2015-08-14 09:19:38 C77A4CA13CF78E242C5844D045EDFDA0 218728 ----a-w- C:\WINDOWS\System32\DTSGFXAPO.dll 2015-08-14 09:19:38 B447DFE249DAD3577A9CCCC6960A57D2 1220200 ----a-w- C:\WINDOWS\System32\DTSBoostDLL.dll 2015-08-14 09:19:38 6BF9EE54236104920B761C7B2B03694D 274264 ----a-w- C:\WINDOWS\System32\DDPO32A.dll 2015-08-14 09:19:38 5A65D120056B4B814E703E100FDE14C6 389736 ----a-w- C:\WINDOWS\System32\DTSGainCompensatorDLL.dll 2015-08-14 09:19:38 5621C963326142870CA6A9DCF035AE5E 1861976 ----a-w- C:\WINDOWS\System32\DolbyDAX2APOv211.dll 2015-08-14 09:19:38 4A635AE3CC50F6BF1317957D1FEE975A 654952 ----a-w- C:\WINDOWS\System32\DTSBassEnhancementDLL.dll 2015-08-14 09:19:38 2F7E93104528655436175CF02D12B677 7044952 ----a-w- C:\WINDOWS\System32\DDPP32A.dll 2015-08-14 09:19:38 2C65EE7F65429CA252E7DE3444825E26 1490264 ----a-w- C:\WINDOWS\System32\DDPD32A.dll 2015-08-14 09:19:37 D6D88CBC08A461DCC14DD92DCBD92AAB 92584 ----a-w- C:\WINDOWS\System32\CONEQMSAPOGUILibrary.dll 2015-08-14 09:19:37 CC17B6324F069983A543AED256F7F5B5 519368 ----a-w- C:\WINDOWS\System32\AERTACap.dll 2015-08-14 09:19:37 C86A0967E5C040AAB947F883F0B6D96F 95840 ----a-w- C:\WINDOWS\System32\AERTARen.dll 2015-08-14 09:19:37 9B4E630C9CB0D8B4658C41D9B3E1EE1A 1490960 ----a-w- C:\WINDOWS\System32\CX32APO.dll 2015-08-14 09:19:37 9335AF3270D9EF424EA70E6010A39D27 188696 ----a-w- C:\WINDOWS\System32\AcpiServiceVnA.dll 2015-08-14 09:19:37 4C22D3E1F05E0866665E0BA023D747C3 87864 ----a-w- C:\WINDOWS\System32\audioLibVc.dll 2015-08-13 16:30:48 FE3D1AFBAC68746BB7BB2B2ADE9551CC 445240 ----a-w- C:\WINDOWS\System32\AudioEng.dll 2015-08-13 16:30:48 E548AE021B6725519E4AC0AD0214ACD4 741376 ----a-w- C:\WINDOWS\System32\wpncore.dll 2015-08-13 16:30:48 DF734D3C7A06A9FC52B36572015432C7 850784 ----a-w- C:\WINDOWS\System32\SecConfig.efi 2015-08-13 16:30:48 D6C08FE12A4543039CD64B2461DD51F4 2646528 ----a-w- C:\WINDOWS\System32\Windows.Media.dll 2015-08-13 16:30:48 CBD7344BE67909A1C739C5DA3A693570 1916416 ----a-w- C:\WINDOWS\System32\MFMediaEngine.dll 2015-08-13 16:30:48 C79ABCE9D51EBCE1A0C2E600AF1BED2D 2151208 ----a-w- C:\WINDOWS\System32\mfcore.dll 2015-08-13 16:30:48 C59BDC99B0F93ABA69E0F77E23E8B711 1043968 ----a-w- C:\WINDOWS\System32\Windows.Media.Editing.dll 2015-08-13 16:30:48 B956B3ED0F23D368F64DD2BAA7D79C83 644128 ----a-w- C:\WINDOWS\System32\mfsvr.dll 2015-08-13 16:30:48 ABF1199F0E571D5BA8C7F1ECCCE9AFFA 373248 ----a-w- C:\WINDOWS\System32\mfmkvsrcsnk.dll 2015-08-13 16:30:48 AA72007E3E7E27EDCD81E7578CE7DF66 821248 ----a-w- C:\WINDOWS\System32\audiosrv.dll 2015-08-13 16:30:48 A1CF422C795B1754953296C487692954 407616 ----a-w- C:\WINDOWS\System32\AudioSes.dll 2015-08-13 16:30:48 99E92B7E14452B94CCBF0BA42876A7D7 163328 ----a-w- C:\WINDOWS\System32\fwpolicyiomgr.dll 2015-08-13 16:30:48 774DDEAAA90DC76157F9104B8C28F01C 1341920 ----a-w- C:\WINDOWS\System32\wmpmde.dll 2015-08-13 16:30:48 7715C4C0870BCCDC346A096C087930A4 417280 ----a-w- C:\WINDOWS\System32\PsmServiceExtHost.dll 2015-08-13 16:30:48 6C18C001DA9E49BC3ED1B25E32690B58 1356368 ----a-w- C:\WINDOWS\System32\winmde.dll 2015-08-13 16:30:48 68EAE5F254763EF61973F88FE098EFE2 239616 ----a-w- C:\WINDOWS\System32\AudioEndpointBuilder.dll 2015-08-13 16:30:48 63A4B12719DEF885465F95B99DC3B7D0 729088 ----a-w- C:\WINDOWS\System32\wpccpl.dll 2015-08-13 16:30:48 62DFBB6D0B440CED25C7DE1B91C36B87 473088 ----a-w- C:\WINDOWS\System32\wpnapps.dll 2015-08-13 16:30:48 5EBDB30586730375949854259AA7EEA0 713312 ----a-w- C:\WINDOWS\System32\mfmpeg2srcsnk.dll 2015-08-13 16:30:48 594ED0EDD85408ED0CDEFC4244FC66CC 877016 ----a-w- C:\WINDOWS\System32\mfmp4srcsnk.dll 2015-08-13 16:30:48 3024C8A83062DD4D37410663000E8F5C 916800 ----a-w- C:\WINDOWS\System32\mfplat.dll 2015-08-13 16:30:48 29C93FA01A2F2D3C30B0058B5BE9E18B 480256 ----a-w- C:\WINDOWS\System32\MCRecvSrc.dll 2015-08-13 16:30:48 07F42CB9A66933950CE16A0DC8F42935 896144 ----a-w- C:\WINDOWS\System32\mfsrcsnk.dll 2015-08-13 16:30:47 FFD150E8DC660C67852B3EA34BA28B93 301056 ----a-w- C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-08-13 16:30:47 FFB18D34D8B9851A6E355BE1910DC201 11262464 ----a-w- C:\WINDOWS\System32\ieframe.dll 2015-08-13 16:30:47 E5FE06BBA1D49E964B0DEEBD5BAB24D2 1535032 ----a-w- C:\WINDOWS\System32\ntdll.dll 2015-08-13 16:30:47 D5F747134871F3C552BFF449B81E333A 3579904 ----a-w- C:\WINDOWS\System32\jscript9.dll 2015-08-13 16:30:47 A71372B4EF16FE1A51EBB99A865EB858 5454848 ----a-w- C:\WINDOWS\System32\Chakra.dll 2015-08-13 16:30:47 94939C955B787E0F582240F0BD9AC12D 294912 ----a-w- C:\WINDOWS\System32\ieproxy.dll 2015-08-13 16:30:47 85FF53F0895D64A065E5DCBAF67DED25 794888 ----a-w- C:\WINDOWS\System32\rpcrt4.dll 2015-08-13 16:30:47 80435794D8BBD23F76F631AAC471EA73 82616 ----a-w- C:\WINDOWS\System32\bcd.dll 2015-08-13 16:30:47 78D8E6439B27C9F41AAD913BA03E5058 285632 ----a-w- C:\WINDOWS\System32\MFPlay.dll 2015-08-13 16:30:47 74B07D066BBF6486FB841546D4C5CEEE 19323392 ----a-w- C:\WINDOWS\System32\mshtml.dll 2015-08-13 16:30:47 61C1AE3CAC46A0E37907C4683562BE48 12589056 ----a-w- C:\WINDOWS\System32\wmp.dll 2015-08-13 16:30:47 4D0B333A129E8931595066F05228D526 45568 ----a-w- C:\WINDOWS\System32\Windows.Cortana.PAL.Desktop.dll 2015-08-13 16:30:47 2DDCD0D57C2C5E34EB1D4196AB14A5BC 18805248 ----a-w- C:\WINDOWS\System32\edgehtml.dll 2015-08-13 16:30:47 240040781B9BE2A9BB392F51E70025EF 437248 ----a-w- C:\WINDOWS\System32\Windows.Devices.Sensors.dll 2015-08-13 16:30:47 1089D9C56BC925FA30E9F441559FA3C6 251392 ----a-w- C:\WINDOWS\System32\SensorsApi.dll 2015-08-13 16:30:45 FA57610E1421AED198064B2408F7D954 452608 ----a-w- C:\WINDOWS\System32\SearchFolder.dll 2015-08-13 16:30:45 E731E28520E527E9EAC2049B3147D536 1867160 ----a-w- C:\WINDOWS\System32\d3d9.dll 2015-08-13 16:30:45 ACA72556061877C14200938ACAE3032D 3443200 ----a-w- C:\WINDOWS\System32\UIRibbon.dll 2015-08-13 16:30:45 A2A9ADED6B447F58DBBD94EA01826C42 48640 ----a-w- C:\WINDOWS\System32\Windows.Cortana.OneCore.dll 2015-08-13 16:30:45 9B6BB176E3FD34FEC781053AF5B139B6 539728 ----a-w- C:\WINDOWS\System32\fontdrvhost.exe 2015-08-13 16:30:45 93C82E287C85C9B2D735A263ED8EC96D 37376 ----a-w- C:\WINDOWS\System32\atmlib.dll 2015-08-13 16:30:45 8F818CCAE2180567C97A2F879A3AC26D 268288 ----a-w- C:\WINDOWS\System32\ConhostV2.dll 2015-08-13 16:30:45 849AFAD1E703EFBA17A60EC855414080 584704 ----a-w- C:\WINDOWS\System32\UIRibbonRes.dll 2015-08-13 16:30:45 8467CE7C1C7F74C9C3E7C54576652F00 445952 ----a-w- C:\WINDOWS\System32\Windows.Cortana.Desktop.dll 2015-08-13 16:30:45 63A9ECEC1331D5689E67FA7EE5820A01 37888 ----a-w- C:\WINDOWS\System32\Windows.Cortana.ProxyStub.dll 2015-08-13 16:30:45 62C4E525EE16D6224D746A8488CD657E 752640 ----a-w- C:\WINDOWS\System32\msctfuimanager.dll 2015-08-13 16:30:45 51BA217CB0424E93C2353F0ACC9B3360 303104 ----a-w- C:\WINDOWS\System32\atmfd.dll 2015-08-13 16:30:45 4219291C41472ED2AF4928845BFE08A9 669696 ----a-w- C:\WINDOWS\System32\SensorDataService.exe 2015-08-13 16:30:45 1A79C6B207D15D43F08997140CB463A8 4398080 ----a-w- C:\WINDOWS\System32\Windows.UI.Search.dll 2015-08-13 16:30:42 FF67843CC40DD322756A513BAECBA6AF 131072 ----a-w- C:\WINDOWS\System32\SettingsHandlers_SignInOptions.dll 2015-08-13 16:30:42 FD933A958F8879C44998D79BC9193699 189440 ----a-w- C:\WINDOWS\System32\SettingsHandlers_UserAccount.dll 2015-08-13 16:30:42 F9FD097D0B65E61592A948CDD8FCDABD 484864 ----a-w- C:\WINDOWS\System32\wcmsvc.dll 2015-08-13 16:30:42 EEA4C3E72E3479836D7BA748F28E676D 335360 ----a-w- C:\WINDOWS\System32\CredProvDataModel.dll 2015-08-13 16:30:42 EDEEA003983D4CB41860E8A765AFBDCE 242264 ----a-w- C:\WINDOWS\System32\LockAppHost.exe 2015-08-13 16:30:42 ED9267D9AD4657C9D843D0471D90169B 4350464 ----a-w- C:\WINDOWS\System32\ExplorerFrame.dll 2015-08-13 16:30:42 E0C2B63BC61428A0F689D061AB013753 67584 ----a-w- C:\WINDOWS\System32\VPNv2CSP.dll 2015-08-13 16:30:42 DAE7F969D7EB857331FA80B0307D89E6 283648 ----a-w- C:\WINDOWS\System32\Windows.UI.BioFeedback.dll 2015-08-13 16:30:42 DA5613D4112E3F918604E1CE34398660 754688 ----a-w- C:\WINDOWS\System32\Windows.UI.Cred.dll 2015-08-13 16:30:42 D8D1910A249518D35151DCFB4A3FF4D0 104960 ----a-w- C:\WINDOWS\System32\sendmail.dll 2015-08-13 16:30:42 BE91839AB726C995AFF389AA298F9332 494592 ----a-w- C:\WINDOWS\System32\LogonController.dll 2015-08-13 16:30:42 BA8417C547A2557BA90965453393D5E8 3025408 ----a-w- C:\WINDOWS\System32\SettingsHandlers_nt.dll 2015-08-13 16:30:42 B86EF423D99D7A5B84563CC2AF1546CE 476672 ----a-w- C:\WINDOWS\System32\uxtheme.dll 2015-08-13 16:30:42 ADD542323B7D0A0ADFF19C8D2CFB67A5 124416 ----a-w- C:\WINDOWS\System32\SettingsHandlers_Privacy.dll 2015-08-13 16:30:42 A66ACE48E24936C33AE91B311F4F1AA7 130048 ----a-w- C:\WINDOWS\System32\SubscriptionMgr.dll 2015-08-13 16:30:42 A3626414AF53C9FC837833D8DA6B3CD4 1611264 ----a-w- C:\WINDOWS\System32\Windows.UI.Immersive.dll 2015-08-13 16:30:42 9DFA6099001D7FA2349EC125B764C0D2 185344 ----a-w- C:\WINDOWS\System32\DevicesFlowBroker.dll 2015-08-13 16:30:42 9AA845463CAE9A68A7E96F2E4367127D 198144 ----a-w- C:\WINDOWS\System32\ConsoleLogon.dll 2015-08-13 16:30:42 9AA440F8F580C573D0F2732DA6ECB87A 207872 ----a-w- C:\WINDOWS\System32\notepad.exe 2015-08-13 16:30:42 99FFA833F7C2BF716ADD97D1F81470AD 176640 ----a-w- C:\WINDOWS\System32\SettingsHandlers_Notifications.dll 2015-08-13 16:30:42 8A7539A7973972E0EAD2FC814F38FA7D 719360 ----a-w- C:\WINDOWS\System32\RDXService.dll 2015-08-13 16:30:42 80C44138B79783C3AA4726771E753808 283136 ----a-w- C:\WINDOWS\System32\ncsi.dll 2015-08-13 16:30:42 7A8DAE2DBBF0A7374F8ED2DB50D7C5CD 322048 ----a-w- C:\WINDOWS\System32\stobject.dll 2015-08-13 16:30:42 78D2E6DE5A98E78A5FB889D933344556 673792 ----a-w- C:\WINDOWS\System32\SharedStartModel.dll 2015-08-13 16:30:42 76BE3717467660BC346A28BACEC5B45E 751520 ----a-w- C:\WINDOWS\System32\winresume.exe 2015-08-13 16:30:42 7645586DCFA8D50A2D7F37EA5BD0810B 31232 ----a-w- C:\WINDOWS\System32\calc.exe 2015-08-13 16:30:42 728E5A3BC04268099ADCCDC45CB45C08 275456 ----a-w- C:\WINDOWS\System32\bcastdvr.exe 2015-08-13 16:30:42 71B14501605A0C5436EF816CD488DFB6 798208 ----a-w- C:\WINDOWS\System32\ntshrui.dll 2015-08-13 16:30:42 705DBC10EA9A4DB327CA1E5663EC0B0C 6264160 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe 2015-08-13 16:30:42 65C870AEDF8063B52474305F00E3C409 141312 ----a-w- C:\WINDOWS\System32\shutdownux.dll 2015-08-13 16:30:42 61A24A4A0DBD23DFCBA6D4DD32B26E8E 902320 ----a-w- C:\WINDOWS\System32\winload.exe 2015-08-13 16:30:42 56A437BDE0A7A1EA79919C451D1C3F49 420352 ----a-w- C:\WINDOWS\System32\GamePanel.exe 2015-08-13 16:30:42 5036F8014556AAAA662A672F3D58F04C 261632 ----a-w- C:\WINDOWS\System32\ActionCenter.dll 2015-08-13 16:30:42 4D52FF4877D41593043557EBD359A8B8 868752 ----a-w- C:\WINDOWS\System32\winresume.efi 2015-08-13 16:30:42 4B43E403211DC9F2872C7F2FB01704D7 351072 ----a-w- C:\WINDOWS\System32\halmacpi.dll 2015-08-13 16:30:42 4B43E403211DC9F2872C7F2FB01704D7 351072 ----a-w- C:\WINDOWS\System32\hal.dll 2015-08-13 16:30:42 459DF438CAE90C2F49341ECB12BCBBCA 94208 ----a-w- C:\WINDOWS\System32\NetworkStatus.dll 2015-08-13 16:30:42 415163AD088C6E678633300566B40DE7 193888 ----a-w- C:\WINDOWS\System32\ContentDeliveryManager.Utilities.dll 2015-08-13 16:30:42 40ABA8C4ACE20FA236C97725FD27D1C4 311808 ----a-w- C:\WINDOWS\System32\LockAppBroker.dll 2015-08-13 16:30:42 3D44324AAE49726D156658A102AD2888 990720 ----a-w- C:\WINDOWS\System32\Windows.UI.Shell.dll 2015-08-13 16:30:42 357DDEA6688CC0C006CD26F8FF2AA9A6 1030416 ----a-w- C:\WINDOWS\System32\winload.efi 2015-08-13 16:30:42 34CD90ED621FA2AA78A9C12F872EF0CA 750592 ----a-w- C:\WINDOWS\System32\comdlg32.dll 2015-08-13 16:30:42 313C17436C30444A8123FB4910060F87 279552 ----a-w- C:\WINDOWS\System32\systemcpl.dll 2015-08-13 16:30:42 270E56AA5A86C3AC4EF79CD6CDC64DA6 923648 ----a-w- C:\WINDOWS\System32\wwansvc.dll 2015-08-13 16:30:42 2014B86D0FC0C2AAAACBD3E6CAEFDA8C 20857848 ----a-w- C:\WINDOWS\System32\shell32.dll 2015-08-13 16:30:42 1352C695E86E7F368EB3F26E36081736 322048 ----a-w- C:\WINDOWS\System32\Windows.UI.BlockedShutdown.dll 2015-08-13 16:30:42 112C23725D81AD8E8354867C8C270524 995840 ----a-w- C:\WINDOWS\System32\wifinetworkmanager.dll 2015-08-13 16:30:42 10444AB429B166CC9AE58E8539C74902 162816 ----a-w- C:\WINDOWS\System32\wcmcsp.dll 2015-08-13 16:30:42 0D1F1B238C3BCF074D296D9058AB17EB 1506816 ----a-w- C:\WINDOWS\System32\NetworkMobileSettings.dll 2015-08-13 16:30:42 0450D47983B8F40B6628AF029F830B34 195072 ----a-w- C:\WINDOWS\System32\Windows.ApplicationModel.LockScreen.dll 2015-08-13 16:30:42 02F4AE16C88F0C0E6D5603233B547B3C 9889792 ----a-w- C:\WINDOWS\System32\twinui.dll 2015-08-13 16:30:42 00B24D108FE990D69DE91786A4286FD1 503600 ----a-w- C:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll 2015-08-13 16:30:41 FCD1C14515657A98E76DD98853F5BCF5 823336 ----a-w- C:\WINDOWS\System32\MrmCoreR.dll 2015-08-13 16:30:41 FC128600E59A3727C5C68CA40892893D 189440 ----a-w- C:\WINDOWS\System32\provengine.dll 2015-08-13 16:30:41 FAE230952915CD261896B0F325347DEA 123904 ----a-w- C:\WINDOWS\System32\MusNotification.exe 2015-08-13 16:30:41 FAAB96FED57D64EF955B0E5607C86422 236032 ----a-w- C:\WINDOWS\System32\usocore.dll 2015-08-13 16:30:41 FA293FDC13A5470FC32BA6E699ED2B7B 142336 ----a-w- C:\WINDOWS\System32\storewuauth.dll 2015-08-13 16:30:41 F9D71E7DECC637F7403C3868039EA37D 2606080 ----a-w- C:\WINDOWS\System32\msftedit.dll 2015-08-13 16:30:41 F9393457FF20C5829320DDE4FA2CF246 153088 ----a-w- C:\WINDOWS\System32\OmaDmAgent.dll 2015-08-13 16:30:41 F071A428DC7F6B56A76EFF011514F80F 132096 ----a-w- C:\WINDOWS\System32\provisioningcsp.dll 2015-08-13 16:30:41 EDB035B25DA392837C73D12684EB3CB1 19456 ----a-w- C:\WINDOWS\System32\LicenseManagerShellext.exe 2015-08-13 16:30:41 EBBB3EB2D417C2AFD5720172A05D4280 962400 ----a-w- C:\WINDOWS\System32\LicenseManager.dll 2015-08-13 16:30:41 E9AC197D15B84430A93220F0D6E31355 585728 ----a-w- C:\WINDOWS\System32\Windows.ApplicationModel.Store.dll 2015-08-13 16:30:41 E7823962A44F02C9FFA421C2364B4695 442720 ----a-w- C:\WINDOWS\System32\wimserv.exe 2015-08-13 16:30:41 E3D67179C4D69E4B8C5C47223A2194B8 145920 ----a-w- C:\WINDOWS\System32\bcdboot.exe 2015-08-13 16:30:41 E30BEA12A9BD7BE17B3B078ABE00FEFB 25088 ----a-w- C:\WINDOWS\System32\LicenseManagerApi.dll 2015-08-13 16:30:41 E04199F74F614E1C62F2E2EB5368D14B 1829376 ----a-w- C:\WINDOWS\System32\wuaueng.dll 2015-08-13 16:30:41 D94EF6F927B3FD3877938F5BE8C688F9 1112064 ----a-w- C:\WINDOWS\System32\UIAutomationCore.dll 2015-08-13 16:30:41 D83C15A49D343C9E6EE8989D2E6EBAD9 588800 ----a-w- C:\WINDOWS\System32\CoreMessaging.dll 2015-08-13 16:30:41 D4BD839E6C8E09B964B61CC640A4F37F 265480 ----a-w- C:\WINDOWS\System32\wintrust.dll 2015-08-13 16:30:41 D1A936D61D476B7A90EBC5F456BDA6AC 2987008 ----a-w- C:\WINDOWS\System32\win32kfull.sys 2015-08-13 16:30:41 D17222898B5BDE5AF2B98CEB7068372D 2207744 ----a-w- C:\WINDOWS\System32\wininet.dll 2015-08-13 16:30:41 D16213F34F81457ACE9ED6FB356AADA1 441344 ----a-w- C:\WINDOWS\System32\AppContracts.dll 2015-08-13 16:30:41 CFD9924AC14B0854A515DAAD15F833EE 179200 ----a-w- C:\WINDOWS\System32\srumsvc.dll 2015-08-13 16:30:41 CF12D5220492A76538ADB7AA7C852295 147968 ----a-w- C:\WINDOWS\System32\psmsrv.dll 2015-08-13 16:30:41 CC0F41B08E792DEE52C27F102280FB87 584544 ----a-w- C:\WINDOWS\System32\wimgapi.dll 2015-08-13 16:30:41 CB9CFCA744A24C5CEE0C37CC986978CC 388096 ----a-w- C:\WINDOWS\System32\tileobjserver.dll 2015-08-13 16:30:41 CA1C9EF2C94E9C89CB5E9D194533E631 161280 ----a-w- C:\WINDOWS\System32\SharedStartModelShim.dll 2015-08-13 16:30:41 C929977DF9F99507055D62103C684B97 120832 ----a-w- C:\WINDOWS\System32\tetheringservice.dll 2015-08-13 16:30:41 C719CE62ADF61395583919A4F24BCC4D 575488 ----a-w- C:\WINDOWS\System32\Windows.Media.Import.dll 2015-08-13 16:30:41 C6F0C0CF60CFB5655C04E36723991CBA 56832 ----a-w- C:\WINDOWS\System32\setbcdlocale.dll 2015-08-13 16:30:41 C49BA679592F1F325447FCFEE7D98569 241152 ----a-w- C:\WINDOWS\System32\MBMediaManager.dll 2015-08-13 16:30:41 C38FC5ABC2D08E4613C5D1AD4572B7B9 93696 ----a-w- C:\WINDOWS\System32\dwmapi.dll 2015-08-13 16:30:41 C1B792B3C52598C4BABF3188598C51A5 1823232 ----a-w- C:\WINDOWS\System32\InputService.dll 2015-08-13 16:30:41 BFA33D8701A690D7BCECDF4B6C135A59 1125888 ----a-w- C:\WINDOWS\System32\UserDataService.dll 2015-08-13 16:30:41 BC667B06CAFC7098926501632B8F7EAE 328704 ----a-w- C:\WINDOWS\System32\MapConfiguration.dll 2015-08-13 16:30:41 BC61D75BB3A97EC1A0E5C633314E7DC6 587264 ----a-w- C:\WINDOWS\System32\MapsStore.dll 2015-08-13 16:30:41 B84B7B8A465B213B20A8160D1F800964 165888 ----a-w- C:\WINDOWS\System32\EnterpriseModernAppMgmtCSP.dll 2015-08-13 16:30:41 B5009272F86C94D193C67F89686A3708 34816 ----a-w- C:\WINDOWS\System32\VoiceActivationManager.dll 2015-08-13 16:30:41 B1EF01225A6760689309F13A54C1AEF0 1769056 ----a-w- C:\WINDOWS\System32\CoreUIComponents.dll 2015-08-13 16:30:41 AF01F7B257E4EF4602A7A34F890BF64A 371200 ----a-w- C:\WINDOWS\System32\StoreAgent.dll 2015-08-13 16:30:41 AAF4EBD24B5FEFF2248F475734B2088A 2112512 ----a-w- C:\WINDOWS\System32\actxprxy.dll 2015-08-13 16:30:41 A7EA05669142968A0DF01327821ACB2D 1275392 ----a-w- C:\WINDOWS\System32\ActiveSyncProvider.dll 2015-08-13 16:30:41 A588C352E110F0B831E3B5C6DCDADE2C 448512 ----a-w- C:\WINDOWS\System32\MbaeApi.dll 2015-08-13 16:30:41 A31B6B52274F4F32FBE4477A9127756F 1153536 ----a-w- C:\WINDOWS\System32\RecoveryDrive.exe 2015-08-13 16:30:41 9F5BC69CD6E6D7597677DD1D6248940C 196096 ----a-w- C:\WINDOWS\System32\provhandlers.dll 2015-08-13 16:30:41 9E72CE218CAA68096180B287F517CB35 1134592 ----a-w- C:\WINDOWS\System32\win32kbase.sys 2015-08-13 16:30:41 9C8E8D82536ADF118258C6883076ADFD 821248 ----a-w- C:\WINDOWS\System32\schedsvc.dll 2015-08-13 16:30:41 981229E718319A9A01F7E740A8D855FD 700256 ----a-w- C:\WINDOWS\System32\WWAHost.exe 2015-08-13 16:30:41 93AF254B291EFD1DC1E01D091B1C6B62 296960 ----a-w- C:\WINDOWS\System32\Windows.Internal.Bluetooth.dll 2015-08-13 16:30:41 931F4B3939BC7572BD91E5083A33DDCF 845664 ----a-w- C:\WINDOWS\System32\ReAgent.dll 2015-08-13 16:30:41 92D42AF33DEE07717AD21BC72AD4CC8C 257024 ----a-w- C:\WINDOWS\System32\MusUpdateHandlers.dll 2015-08-13 16:30:41 8ACEBC610CDCF041918DFE2A571EA03F 363520 ----a-w- C:\WINDOWS\System32\bcdedit.exe 2015-08-13 16:30:41 8A5C88B0E78AB8E79E39B36D8F2775DD 3687936 ----a-w- C:\WINDOWS\System32\msi.dll 2015-08-13 16:30:41 8823B5A2EBE82596D3D7AACC68572327 52224 ----a-w- C:\WINDOWS\System32\unenrollhook.dll 2015-08-13 16:30:41 84E5EADD5EB8D2A96C55F3B8F9CA2904 1714176 ----a-w- C:\WINDOWS\System32\twinui.appcore.dll 2015-08-13 16:30:41 8435A8671EDD80503D1CFC827917986C 181088 ----a-w- C:\WINDOWS\System32\AppxAllUserStore.dll 2015-08-13 16:30:41 842B506AA1D2A6A267F65ECF02773C16 102912 ----a-w- C:\WINDOWS\System32\omadmclient.exe 2015-08-13 16:30:41 82B7226F5AE2D1B362F63A5B1D740D92 1964544 ----a-w- C:\WINDOWS\System32\mssrch.dll 2015-08-13 16:30:41 7FA63C38193B1314E0D4EACA92A5FF96 5076480 ----a-w- C:\WINDOWS\System32\BingMaps.dll 2015-08-13 16:30:41 7AF34E43DE496A316DD096AEBDE2492A 268800 ----a-w- C:\WINDOWS\System32\NotificationObjFactory.dll 2015-08-13 16:30:41 7A4E353EE0B8BDD37609FF5435DB0E45 5118024 ----a-w- C:\WINDOWS\System32\windows.storage.dll 2015-08-13 16:30:41 79F5A8269EE0188C294AE4E5D46DE856 62976 ----a-w- C:\WINDOWS\System32\ACPBackgroundManagerPolicy.dll 2015-08-13 16:30:41 792D6D8B12FF3868B140525F0A2957E6 925696 ----a-w- C:\WINDOWS\System32\Unistore.dll 2015-08-13 16:30:41 77E87F14B3646E4D31274019BBE277BE 1391104 ----a-w- C:\WINDOWS\System32\FntCache.dll 2015-08-13 16:30:41 74F81A0DB3CA5F1254019B21D589FAD6 677888 ----a-w- C:\WINDOWS\System32\wuapi.dll 2015-08-13 16:30:41 7487176233F60BA2917A3A0EDBA994A1 43008 ----a-w- C:\WINDOWS\System32\omadmprc.exe 2015-08-13 16:30:41 747650D2F3953B3F33A88419FD9634FD 1380864 ----a-w- C:\WINDOWS\System32\urlmon.dll 2015-08-13 16:30:41 6A4F65F8EAB424A985F2A93017757D5F 162304 ----a-w- C:\WINDOWS\System32\ReInfo.dll 2015-08-13 16:30:41 69469FE0E943D6DE0C16AC0A41781DDF 497152 ----a-w- C:\WINDOWS\System32\PlayToManager.dll 2015-08-13 16:30:41 662460733DD972B39C778FA4A0A74F93 66048 ----a-w- C:\WINDOWS\System32\AppxSysprep.dll 2015-08-13 16:30:41 6327EB2B38DB2892E82BF2723A7ABDC7 623616 ----a-w- C:\WINDOWS\System32\ContactApis.dll 2015-08-13 16:30:41 61E15F462802A480B5481D93489657F3 507696 ----a-w- C:\WINDOWS\System32\dxgi.dll 2015-08-13 16:30:41 5FCABC98B4B0F04F6DE9B2BDA66F39F2 107520 ----a-w- C:\WINDOWS\System32\VEStoreEventHandlers.dll 2015-08-13 16:30:41 5F52D9FA68056517C9885FB91BD20B34 154112 ----a-w- C:\WINDOWS\System32\BootMenuUX.dll 2015-08-13 16:30:41 5EC8873E82389A6E5AAB856BC678DA66 13025792 ----a-w- C:\WINDOWS\System32\Windows.UI.Xaml.dll 2015-08-13 16:30:41 5DBF9FA0772D203DC227BBD774A6554E 520640 ----a-w- C:\WINDOWS\System32\ClipSVC.dll 2015-08-13 16:30:41 5CE1334CC3803C243FBB54C0A77C3423 296448 ----a-w- C:\WINDOWS\System32\wuuhext.dll 2015-08-13 16:30:41 5C5E793759D57903511109AAE7CE7D72 2878000 ----a-w- C:\WINDOWS\System32\iertutil.dll 2015-08-13 16:30:41 57055255E2B9F49AE24EE69CB64CBC43 465920 ----a-w- C:\WINDOWS\System32\MessagingDataModel2.dll 2015-08-13 16:30:41 56FC71CAB4042A3E05C2B1A1A09660AA 135168 ----a-w- C:\WINDOWS\System32\TabSvc.dll 2015-08-13 16:30:41 52263530036A48377DE84288C4B8E800 987072 ----a-w- C:\WINDOWS\System32\ClipUp.exe 2015-08-13 16:30:41 50A3C0D8655F5ACFE4320FB207A098F1 1985024 ----a-w- C:\WINDOWS\System32\DWrite.dll 2015-08-13 16:30:41 4F44CA8727DF4AF7AACB81BF131DB1B5 489984 ----a-w- C:\WINDOWS\System32\winlogon.exe 2015-08-13 16:30:41 48F3E13B0A221DDEB4FCEDC0B5EE65EC 217088 ----a-w- C:\WINDOWS\System32\VEEventDispatcher.dll 2015-08-13 16:30:41 488FD753407A5927104527A84CC7E069 273408 ----a-w- C:\WINDOWS\System32\configmanager2.dll 2015-08-13 16:30:41 46642B0103F64851C32FEE774E0BE62E 712192 ----a-w- C:\WINDOWS\System32\SearchIndexer.exe 2015-08-13 16:30:41 4651FE612AFAB8F1DC0D2255F680DC02 132096 ----a-w- C:\WINDOWS\System32\WinBioDataModel.dll 2015-08-13 16:30:41 43A465F658A66CF051C443947420B3E8 191144 ----a-w- C:\WINDOWS\System32\wininit.exe 2015-08-13 16:30:41 42DA676957BC490D5A32D310C6DB6EEC 191488 ----a-w- C:\WINDOWS\System32\DisplayManager.dll 2015-08-13 16:30:41 401D5D594FE1E6EFD4D85AB001F521F3 134656 ----a-w- C:\WINDOWS\System32\coredpus.dll 2015-08-13 16:30:41 4002AA27A73C15E701361F93D6DB5BAA 166400 ----a-w- C:\WINDOWS\System32\SensorService.dll 2015-08-13 16:30:41 3AD5B20102A45CD94A765A101F2812DA 589312 ----a-w- C:\WINDOWS\System32\efscore.dll 2015-08-13 16:30:41 379EBB9C85EBE15A86FEF75363EAEEA5 1593856 ----a-w- C:\WINDOWS\System32\dwmcore.dll 2015-08-13 16:30:41 366364AD7CD78FEC603E5916386FB75D 1181536 ----a-w- C:\WINDOWS\System32\diagtrack.dll 2015-08-13 16:30:41 35E89DA499A3A12E5ACB4A195BF289EC 6878256 ----a-w- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll 2015-08-13 16:30:41 35C193228BEE8C382BB78817C2ADA3D5 47104 ----a-w- C:\WINDOWS\System32\MusNotificationUx.exe 2015-08-13 16:30:41 2DD0B7077B75D57859F530C6A6A6ECBC 920576 ----a-w- C:\WINDOWS\System32\reseteng.dll 2015-08-13 16:30:41 2C1B4631FD3B583423D296CB38A314B6 548616 ----a-w- C:\WINDOWS\System32\ci.dll 2015-08-13 16:30:41 28DBAC988DBB1485F1B61EA64DE66B5A 6101504 ----a-w- C:\WINDOWS\System32\mos.dll 2015-08-13 16:30:41 28CD553B20769D29425E9D43CA72A571 45056 ----a-w- C:\WINDOWS\System32\hmkd.dll 2015-08-13 16:30:41 2720DC5218DDA86EF3B079B28F51BFE1 1084416 ----a-w- C:\WINDOWS\System32\lsasrv.dll 2015-08-13 16:30:41 22CCD56F99479B3D83439ABEC5AF8164 864256 ----a-w- C:\WINDOWS\System32\sysmain.dll 2015-08-13 16:30:41 222B617D51A087F3CF0004B49D9C6606 16896 ----a-w- C:\WINDOWS\System32\NotificationControllerPS.dll 2015-08-13 16:30:41 2192AB18FAAD884A3ADF6EF41A6D944B 1395568 ----a-w- C:\WINDOWS\System32\gdi32.dll 2015-08-13 16:30:41 20296223057AE2141555498271045FFF 762896 ----a-w- C:\WINDOWS\System32\twinapi.appcore.dll 2015-08-13 16:30:41 1EC7074DDD46D7E407614BD44FF8D275 211456 ----a-w- C:\WINDOWS\System32\updatehandlers.dll 2015-08-13 16:30:41 1D19382B9C4EED2E238AC0E036AC0C85 284672 ----a-w- C:\WINDOWS\System32\diagtrack_win.dll 2015-08-13 16:30:41 1BB47F26102A7ADA6C496A7DA9EA0311 828416 ----a-w- C:\WINDOWS\System32\Windows.Devices.Bluetooth.dll 2015-08-13 16:30:41 1ACB2D57BCE76E5A7D9E692C6887812A 69120 ----a-w- C:\WINDOWS\System32\spbcd.dll 2015-08-13 16:30:41 1A52C84D2D831E73DEADE40EB6407FED 1162240 ----a-w- C:\WINDOWS\System32\Windows.Media.Speech.dll 2015-08-13 16:30:41 19A2FE0A5A923D6C35D839695FCE98D0 135680 ----a-w- C:\WINDOWS\System32\InstallAgent.exe 2015-08-13 16:30:41 18ADE5DC7FB4A40389794E090037E6CD 58368 ----a-w- C:\WINDOWS\System32\msiexec.exe 2015-08-13 16:30:41 170E47DFF15764462EA3A2EAA2952D3F 397312 ----a-w- C:\WINDOWS\System32\NotificationController.dll 2015-08-13 16:30:41 14B2B40AF5DAE0AD8057341F54FEF9EC 81920 ----a-w- C:\WINDOWS\System32\VEDataLayerHelpers.dll 2015-08-13 16:30:41 109CCF5163D6C397CF2E39408431B402 419328 ----a-w- C:\WINDOWS\System32\sppcomapi.dll 2015-08-13 16:30:41 10594F4863C48E2F6F5783B4F8D42C9E 132608 ----a-w- C:\WINDOWS\System32\cloudAP.dll 2015-08-13 16:30:41 101B52EEF54215C83C84539005093880 675328 ----a-w- C:\WINDOWS\System32\modernexecserver.dll 2015-08-13 16:30:41 0D3B386A91768C6D4A600C68F91396D5 667136 ----a-w- C:\WINDOWS\System32\winhttp.dll 2015-08-13 16:30:41 0AF54E5F45A83197AC20EA3F090B5452 78336 ----a-w- C:\WINDOWS\System32\SensorsNativeApi.V2.dll 2015-08-13 16:30:41 08C94202456AEFC591A0E458F223272D 521728 ----a-w- C:\WINDOWS\System32\rdbui.dll 2015-08-13 16:30:41 069597DFBBE8097891BEDB1B38E8AF76 872448 ----a-w- C:\WINDOWS\System32\dosvc.dll 2015-08-13 16:30:41 05E9BE288BA709FEB318BB7A31263BB9 503296 ----a-w- C:\WINDOWS\System32\Windows.Networking.Connectivity.dll 2015-08-13 16:30:41 03A5DCD1D5046AA09295CF97B94389E9 898560 ----a-w- C:\WINDOWS\System32\RemoteNaturalLanguage.dll 2015-08-13 16:24:54 BBAFB371A898A008FE059C963877FE05 35480 ----a-w- C:\WINDOWS\System32\TsWpfWrp.exe 2015-08-13 16:24:54 248647FBD0CE51A64F41A1A78401D35D 102608 ----a-w- C:\WINDOWS\System32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 16:24:54 04BEE8994F090D2ED2A761065A30174F 778936 ----a-w- C:\WINDOWS\System32\PresentationNative_v0300.dll 2015-08-13 16:06:22 3A3009B3AC93CFF43F826B190DA05B70 2629632 ----a-w- C:\WINDOWS\System32\NlsLexicons0009.dll 2015-08-13 16:06:22 147ADC3FF9E015662491B2974376410C 5739520 ----a-w- C:\WINDOWS\System32\prm0009.dll 2015-08-13 16:06:22 07C33E4E451FDD5A19219C1211E9B93F 4847104 ----a-w- C:\WINDOWS\System32\NlsData0009.dll 2015-08-13 15:39:55 45660AF66EB25ACE7729549E3820E59A 2102328 ----a-w- C:\WINDOWS\System32\PerfStringBackup.INI 2015-08-12 09:55:46 A010F6EC42AD604418062E6E0E2EFA7B 667648 ----a-w- C:\WINDOWS\System32\MsSpellCheckingFacility.exe 2015-08-12 09:55:40 53DE75BD2C7A3EA29770147EAC8A8D5A 1155072 ----a-w- C:\WINDOWS\System32\mshtmlmedia.dll 2015-08-10 20:19:33 FA431688A66C577DD2A1FD10FFF1982E 11776 ----a-w- C:\WINDOWS\System32\wu.upgrade.ps.dll ====== C:\WINDOWS\system32\drivers ===== 2015-08-15 10:08:54 204912F72C5954FA9A3792F1A8256CFA 38104 ----a-w- C:\WINDOWS\System32\drivers\acwfp.sys 2015-08-14 09:19:45 D4259E13E0A4459DE8C07DA0852B6073 2862488 ----a-w- C:\WINDOWS\System32\drivers\RTAIODAT.DAT 2015-08-13 16:30:48 32AC67198860658D06395A23607DBFA2 42904 ----a-w- C:\WINDOWS\System32\drivers\wpcfltr.sys 2015-08-13 16:30:47 E42F80FB4C1A06EF4B071608571F5155 1808224 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys 2015-08-13 16:30:47 D437308181D78C4224320CCAFA27C1AA 85344 ----a-w- C:\WINDOWS\System32\drivers\mountmgr.sys 2015-08-13 16:30:47 CA4DB19AF2263061065B7164BBEC5993 918880 ----a-w- C:\WINDOWS\System32\drivers\ndis.sys 2015-08-13 16:30:42 52C7AEE1E3B67F97D6CAB9DEC3124B8B 128512 ----a-w- C:\WINDOWS\System32\drivers\tunnel.sys 2015-08-13 16:30:42 17F94FDDF5D959675234100F6C6B8107 488960 ----a-w- C:\WINDOWS\System32\drivers\WdiWiFi.sys 2015-08-13 16:30:41 F273D655A713E403D5AEBBAD905D1D72 436064 ----a-w- C:\WINDOWS\System32\drivers\dxgmms2.sys 2015-08-13 16:30:41 E6C8A9F2DA3E11C7520521F470700DB7 369504 ----a-w- C:\WINDOWS\System32\drivers\usbhub.sys 2015-08-13 16:30:41 E317C0D26A28068EC8A2A700A294AD27 469856 ----a-w- C:\WINDOWS\System32\drivers\acpi.sys 2015-08-13 16:30:41 DD194BBB6F0AE59C20887ABA6D00C1DB 32768 ----a-w- C:\WINDOWS\System32\drivers\UcmUcsi.sys 2015-08-13 16:30:41 D6D46D0FC460D4F2AE966AEBF8982BD9 36704 ----a-w- C:\WINDOWS\System32\drivers\msgpiowin32.sys 2015-08-13 16:30:41 C7D9B909C39EE283D676258E3D746AAF 54112 ----a-w- C:\WINDOWS\System32\drivers\dam.sys 2015-08-13 16:30:41 AFC8014BBF976951853645B3D571D8AE 197472 ----a-w- C:\WINDOWS\System32\drivers\rdyboost.sys 2015-08-13 16:30:41 A59C90C1680D109E7CC8796613418912 506200 ----a-w- C:\WINDOWS\System32\drivers\cng.sys 2015-08-13 16:30:41 8D2B6A8F0D7DB6B0F8CBA83CFBB973B0 48128 ----a-w- C:\WINDOWS\System32\drivers\usbser.sys 2015-08-13 16:30:41 8012624EADD0F24C0215F9EDA5B6D4B5 415072 ----a-w- C:\WINDOWS\System32\drivers\USBHUB3.SYS 2015-08-13 16:30:41 5589929E396F207EDE23D05034CBA463 173408 ----a-w- C:\WINDOWS\System32\drivers\wof.sys 2015-08-13 16:30:41 52B768BFD3920CD1A87A1B188AB49752 1709920 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys 2015-08-13 16:30:41 5299C0E3A909A7D223789A7D2DFA693E 334176 ----a-w- C:\WINDOWS\System32\drivers\dxgmms1.sys 2015-08-13 16:30:41 292C4AD954E9F4C4B5E6771E5514A6B8 51200 ----a-w- C:\WINDOWS\System32\drivers\bthhfenum.sys 2015-08-13 16:30:41 1F3D9517DB5129DB9F035F1ADC2B50DE 257888 ----a-w- C:\WINDOWS\System32\drivers\pci.sys 2015-08-13 15:36:43 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-07-29 20:46:20 978444277D9726C635AD6D5B49439DDC 70168 ----a-w- C:\WINDOWS\System32\drivers\RapportHades.sys 2015-07-29 20:46:18 1F417B8584F75B603EA5489C32770745 223000 ----a-w- C:\WINDOWS\System32\drivers\RapportKELL.sys ====== C:\WINDOWS\Tasks ====== 2015-08-17 12:13:57 DCDCF09FFBEBC6AE5513FEDBDB9E3898 314 ----a-w- C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2015-08-17 12:13:57 2200DD6F9B4948C33BCA13153EE3E62D 2532 ----a-w- C:\WINDOWS\system32\Tasks\Uninstaller_SkipUac_Administrator 2015-08-15 17:07:56 -------- d-----w- C:\WINDOWS\system32\Tasks\Hewlett-Packard 2015-08-15 10:09:05 7CCCAB4D8F8BF6ABB2D22D722B8CDCE2 3190 ----a-w- C:\WINDOWS\system32\Tasks\cfr3011 2015-08-14 14:37:31 BE86D9147BCFFAA65E6F1DDD2554F50C 3326 ----a-w- C:\WINDOWS\system32\Tasks\ASC8_PerformanceMonitor 2015-08-14 14:37:22 9DE72C7883F97DF3ED79F5BC11F1EFCD 2482 ----a-w- C:\WINDOWS\system32\Tasks\ASC8_SkipUac_Administrator 2015-08-14 14:37:22 61B72888FD4425207D4910571465721B 278 ----a-w- C:\WINDOWS\Tasks\ASC8_SkipUac_Administrator.job 2015-08-14 09:17:23 CF135AC34CF1A79AA9C6D842D4006CAD 3366 ----a-w- C:\WINDOWS\system32\Tasks\Driver Booster Scan 2015-08-14 09:17:23 4AE50447FE722D5650C8077DE3ABC6F8 3314 ----a-w- C:\WINDOWS\system32\Tasks\Driver Booster Update ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-08-18 12:26:14 -------- d-----w- C:\Program Files\trend micro 2015-08-17 07:00:41 -------- d-----w- C:\Program Files\Jungle Net 2015-08-15 10:10:08 -------- d-----w- C:\Program Files\Wajam 2015-08-15 10:10:00 -------- d-----w- C:\Program Files\WajInterEnhancer 2015-08-15 10:06:40 -------- d-----w- C:\Program Files\FastSearch 2015-08-14 14:44:20 -------- d-----w- C:\Program Files\123 Free Solitaire 2015-08-13 20:34:26 -------- d-----w- C:\Program Files\Speccy 2015-08-13 16:25:36 -------- d-----w- C:\Program Files\Reference Assemblies 2015-08-13 16:25:36 -------- d-----w- C:\Program Files\MSBuild 2015-08-13 15:45:33 -------- d-----w- C:\Program Files\Common Files\SpeechEngines 2015-08-13 15:36:51 -------- d-----w- C:\Program Files\Realtek 2015-07-22 12:00:38 -------- d-----w- C:\Program Files\Common Files\DESIGNER ======= C: ===== 2015-08-15 10:09:14 7C5420114E07954A0991F7EBCE38CF11 217 -c--a-w- C:\task.vbs 2015-08-15 10:09:06 23B58DEF11B45727D3351702515F86AF 2 -c--a-w- C:\END 2015-08-13 15:16:48 93B885ADFE0DA089CDF634904FD59F71 1 -csha-w- C:\BOOTNXT ====== C:\Users\Administrator\AppData\Roaming ====== 2015-08-15 17:45:35 -------- d-----w- C:\Users\Administrator\AppData\Local\Hewlett-Packard 2015-08-15 10:08:49 -------- d-----w- C:\WINDOWS\system32\config\systemprofile\AppData\Local\acengine 2015-08-15 10:07:54 -------- d-----w- C:\Users\Administrator\AppData\Local\Weather_Warnings_LLC 2015-08-15 10:07:41 -------- d-----w- C:\Users\Administrator\AppData\Local\StormAlerts 2015-08-13 20:07:41 -------- d-----w- C:\Users\Administrator\AppData\Local\Comms 2015-08-13 17:15:28 -------- d-----w- C:\Users\Administrator\AppData\Local\MicrosoftEdge 2015-08-13 16:27:05 -------- d-----w- C:\WINDOWS\system32\config\systemprofile\AppData\Local\DataSharing 2015-08-13 16:04:51 -------- d-----w- C:\Users\Administrator\AppData\Local\Publishers 2015-08-13 16:03:50 -------- d-----w- C:\Users\Administrator\AppData\Local\Packages 2015-08-13 16:03:49 -------- d-----w- C:\Users\Administrator\AppData\Local\TileDataLayer 2015-08-13 16:03:44 -------- d-----w- C:\Users\Administrator\AppData\Local\VirtualStore 2015-08-13 16:00:11 -------- d-----w- C:\WINDOWS\system32\config\systemprofile\AppData\Local\Packages 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default\AppData\Local\Trusteer 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft Help 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default User\AppData\Local\Trusteer 2015-08-13 15:51:05 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft Help 2015-08-13 15:41:32 -------- d-----w- C:\Users\Administrator\AppData\Roaming 2015-08-13 15:41:32 -------- d-----w- C:\Users\Administrator\AppData\Local\Temp 2015-08-13 15:41:32 -------- d-----w- C:\Users\Administrator\AppData\Local\Microsoft 2015-08-13 15:41:32 -------- d-----w- C:\Users\Administrator\AppData\Local ====== C:\Users\Administrator ====== 2015-08-18 17:51:14 AFEC6F28B2D36E60E609E3F705CACD48 4194304 ----a-w- C:\WINDOWS\serviceprofiles\networkservice\msmqlog.bin 2015-08-17 11:19:13 90A32B03CD47E141E02483C7CB6C3897 393216 ----a-w- C:\WINDOWS\serviceprofiles\networkservice\msmqlog.bak 2015-08-17 11:19:02 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\winhttp 2015-08-15 17:25:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2015-08-15 15:17:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverRestore 2015-08-15 10:10:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajInterEnhancer 2015-08-14 14:44:59 -------- d-----w- C:\ProgramData\TreeCardGames 2015-08-14 14:44:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\123 Free Solitaire 2015-08-14 14:37:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2015-08-14 09:17:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2015-08-14 09:15:20 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2015-08-13 20:34:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2015-08-13 16:25:36 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS 2015-08-13 16:19:17 -------- d-----r- C:\Users\Administrator\OneDrive 2015-08-13 16:03:53 -------- d--h--r- C:\Users\Public\AccountPictures 2015-08-13 16:03:53 -------- d-----r- C:\Users\Administrator\Downloads 2015-08-13 16:03:43 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Administrator\ntuser.ini 2015-08-13 15:41:32 -------- d--h--w- C:\Users\Administrator\AppData 2015-08-13 15:37:07 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\ProgramData\DP45977C.lfl ====== C: exe-files == 2015-08-18 17:46:36 9C3E47D8D88CB4FB9C444302FB778B4C 351520 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\ptb\WindowsXP-KB822603-x86-ptb.exe 2015-08-18 17:46:36 936D545BEA5E82A793129C49A5D33F29 351008 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\sve\WindowsXP-KB822603-x86-SVE.exe 2015-08-18 17:46:36 69C359974608F6FD306DEB2E2DFC1854 351520 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\trk\WindowsXP-KB822603-x86-TRK.exe 2015-08-18 17:46:36 5FDB7199490AF950B46E29E043269D9B 352032 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\rus\WindowsXP-KB822603-x86-RUS.exe 2015-08-18 17:46:35 ECB27A452F0443B178A79ECF080EDE85 352544 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\plk\WindowsXP-KB822603-x86-PLK.exe 2015-08-18 17:46:35 AE4AA2F6FACC48E4DE3443EDECAC7EE4 351008 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\nob\WindowsXP-KB822603-x86-NOR.exe 2015-08-18 17:46:35 9C64E107BCB20D9572F536107C90076C 352032 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\nld\WindowsXP-KB822603-x86-NLD.exe 2015-08-18 17:46:35 765D92A8F739D39409965F297A632D97 350496 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\jpn\WindowsXP-KB822603-x86-jpn.exe 2015-08-18 17:46:35 1F6E4D8248FFD5145F153D22F21E1BF3 349472 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\kor\WindowsXP-KB822603-x86-KOR.exe 2015-08-18 17:46:33 F648D1B8468DCFC8C63F7EC34D350C06 352032 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\esn\WindowsXP-KB822603-x86-esn.exe 2015-08-18 17:46:33 911EBBE36BBF695E2C4FC1B3AFC90249 351520 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\fin\WindowsXP-KB822603-x86-FIN.exe 2015-08-18 17:46:33 56ECC06C022FD25A31152F4487B2D9AD 352032 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\fra\WindowsXP-KB822603-x86-fra.exe 2015-08-18 17:46:33 382CA6943E2374AB1D33028D915C4009 351520 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\ita\WindowsXP-KB822603-x86-ITA.exe 2015-08-18 17:46:33 377B884C08362E7EEA037F155378141D 352544 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\hun\WindowsXP-KB822603-x86-HUN.exe 2015-08-18 17:46:32 E0D5C5176BF114666139C3F6C94519EE 349472 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\enu\WindowsXP-KB822603-x86-enu.exe 2015-08-18 17:46:32 6AA79D4A1E40CCBA4328ACDD154EC122 352032 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\deu\WindowsXP-KB822603-x86-DEU.exe 2015-08-18 17:46:32 51A25F124A2E0FE1C98ED62FAEF4A33C 351008 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\dan\WindowsXP-KB822603-x86-DAN.exe 2015-08-18 17:46:32 3A59FB6253A848B66E736E0508875FCC 351520 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\csy\WindowsXP-KB822603-x86-CSY.exe 2015-08-18 17:46:32 1FA5B72BECA7023263517265704B5E41 349472 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\cht\WindowsXP-KB822603-x86-CHT.exe 2015-08-18 17:46:32 07CA99C3C5015BB78DA6AE4742D3A15E 353568 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\ell\WindowsXP-KB822603-x86-ELL.exe 2015-08-18 17:46:31 C9F767D9A4A561A0A6EF5195252076FB 348960 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\chs\WindowsXP-KB822603-x86-CHS.exe 2015-08-18 17:46:31 C0D51186D669A299698B02898D015DCC 1774992 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\bingbar\smartprintsetup.exe 2015-08-18 17:46:31 9CD648066485F67A9A986058AD473DCC 545280 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\usbready.exe 2015-08-18 17:46:31 2B51CF619692C56B39827115AB923084 119296 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\bingbar\ToolbarInstallWrapper-win32.exe 2015-08-18 17:46:31 168310C8B0012B5E93DCDF2A47F1353D 8192 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\slowcpufix.exe 2015-08-18 17:46:31 126684EFA7CD0672D48C465485F6EC24 136192 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\bingbar\ToolbarInstallWrapper-x64.exe 2015-08-18 17:46:30 091127F2B1ECCBDCB8CF84082E575CC8 570256 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\Setup.exe 2015-08-18 17:46:28 B467A173FE3DF112BF5F30CC36F2434F 1425896 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\rocketlife\RLBootstrap.exe 2015-08-18 17:46:27 9319FCB1957F55C3EDA5372022B94ECD 884864 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\x64\printutil.exe 2015-08-18 17:46:27 686E760C5AEA12E78A85B617B76D99A9 3867040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_amd64\x64\PortChanger.exe 2015-08-18 17:46:27 630F7FDCFD0CC6A23002400EAE18947D 746112 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\PrintUtil.exe 2015-08-18 17:46:26 686E760C5AEA12E78A85B617B76D99A9 3867040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_amd64\x64\PortChanger.exe 2015-08-18 17:46:26 1E3D5B6CE8DC6681E25CA2F3EB2967B5 2907040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_x86\x86\PortChanger.exe 2015-08-18 17:46:25 1E3D5B6CE8DC6681E25CA2F3EB2967B5 2907040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_x86\x86\PortChanger.exe 2015-08-18 17:46:23 D0EF61E0A6EB919BA51229D14C3EF5D5 1821008 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\wis\Win2K_XP\instmsi.exe 2015-08-18 17:45:48 DCFE63758E0ED2BC57855C5BE02F5E87 397200 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZtim01.exe 2015-08-18 17:45:48 DBCDC309674A156CA56C325839FC26E5 679824 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\HPZstub.exe 2015-08-18 17:45:48 6CE4D12A3131DDF99157DF5BA174787B 370064 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZwrp01.exe 2015-08-18 17:45:48 47D3A91D075371B7D7B350F952E83A72 1745296 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZwup01.exe 2015-08-18 17:45:48 349DE048AEBADF58918A6778E300EE35 1735056 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZshl40.exe 2015-08-18 17:45:48 25CDBF02B611444D1DB3644446E8C6CB 370064 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZwis01.exe 2015-08-18 17:45:48 0418292259F84F25889B311FCC751EAD 4439125 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\hwsetupwizard\hw_guide.exe 2015-08-18 17:45:47 E126A27B4E6AF919C09009034344EA20 1546128 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZscr40.exe 2015-08-18 17:45:47 DDC1682DA7C5778EC8BF5A5DFF0DAC43 929680 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\hpzsetup.exe 2015-08-18 17:45:47 8ADEFE45B1DAE755D4B7B136FBCD8C51 427920 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZrcn01.exe 2015-08-18 17:45:47 88F47C7A9C7CF295214B23BBF645B323 3684752 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZrein01.exe 2015-08-18 17:45:47 5E6E7AF97816481E31BBCBA6619903D9 1153936 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZrcv01.exe 2015-08-18 17:45:47 1D7F51ECB930CE84C860BACF98737EC0 1402768 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZshl01.exe 2015-08-18 17:45:47 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZscr01.exe 2015-08-18 17:45:46 9D0E3EB2BA0A034E443E6C0A01BA521A 550288 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZpnp40.exe 2015-08-18 17:45:46 7AB4FF655D63E1814F923AF89C5F1548 523152 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZpsl01.exe 2015-08-18 17:45:46 72E584E16404ED867DD707E4F1EBAB95 545168 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZprl40.exe 2015-08-18 17:45:46 6B026CCD4B32D7C3B05D28E628050D3A 605584 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZpsc01.exe 2015-08-18 17:45:46 4D7FE6F98727DAB3ECCA101100F105A9 391568 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZprl01.exe 2015-08-18 17:45:46 35345AD72E065C0841F0888930695712 1655184 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZnui40.exe 2015-08-18 17:45:46 224DA723D490CA52B9C1D2DEA341AFD2 408464 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZpnp01.exe 2015-08-18 17:45:45 C0B6A7C36315D3443F18D9D59CC20AB9 389008 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZnop01.exe 2015-08-18 17:45:45 6D9B36A7821761EF52640567F02768F6 1232272 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\hpznui01.exe 2015-08-18 17:45:45 26B5062A128690BA63D869600F7EAAD1 606608 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZhsg01.exe 2015-08-18 17:45:45 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZmsi01.exe 2015-08-18 17:45:44 AC78EA3F5F8B3AAB0E52AAB73393D49F 623504 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\hpzfwx01.exe 2015-08-18 17:45:44 A4FA104A5CCC01F15F0CF35D4206988E 1057168 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZdui40.exe 2015-08-18 17:45:44 479EF0B12CA29F2E32C49183A9801857 360848 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZgat01.exe 2015-08-18 17:45:44 03BA794292CD6B6F19FC7445E129D1A9 814480 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZdui01.exe 2015-08-18 17:45:43 E1FCAE88782AF86FAA032E5B1860D1F8 370064 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZarp01.exe 2015-08-18 17:45:43 B5E8E00FC926E71A9468D5B563C53B96 125056 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\hpqrrx08.exe 2015-08-18 17:45:43 B12B48315B7B6DC0FCA15479631B59A5 196736 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\FixErr1714.exe 2015-08-18 17:45:43 9E4B73C3992ECDAE8673887AF75AF994 430480 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZcdl01.exe 2015-08-18 17:45:43 5EBBF02981C74DA534A830E1CA157978 1522064 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPZchk01.exe 2015-08-18 17:45:43 447B3FFACD96A33B435880AADBF4A204 349072 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\HPscscr.exe 2015-08-18 17:45:42 407E6239BD93D85A47ECDEC52E652183 246160 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\devinstanceEraser40.exe 2015-08-18 17:45:42 1921F9A1282F33DF91C5CA6D07B3B415 408192 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\doccd.exe 2015-08-18 17:45:41 D6C9E8206CDF0A4EAE9E24ECC600BFD2 771712 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\CCC_Uninstaller.exe 2015-08-18 17:45:41 BE215EB72965C7A198479085195C877D 5671192 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\bingbar\BingBarSetup.exe 2015-08-18 17:45:41 4A1F0417507C0E31FA60114764D9FA5E 203664 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\devinstanceEraser01.exe 2015-08-18 17:45:41 21F99CA2D442DE74CCC1B6DD331D74E3 95120 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\CleanUSBContainer40.exe 2015-08-18 17:45:41 100628783EBE1020789D00805A82D9F4 85392 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\CleanUSBContainer01.exe 2015-08-18 12:26:14 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Administrator.exe 2015-08-17 12:41:06 361913EF62460BF23D522E9836900F1A 120000 ----a-w- C:\Users\Administrator\AppData\Local\Temp\6A1B99BE-F0D1-4CE3-925C-53874528750E\DismHost.exe 2015-08-15 17:52:28 D08AA57E68A835547F763A1AEF3B6D96 27648 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_GuestAccount_V2.exe 2015-08-15 17:52:28 B8187379AEF2F29650239B329C3EA0DA 32256 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_AntiVirusDefenderB.exe 2015-08-15 17:52:28 B4D785BF4E0556295F829C4A04219845 31744 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_AntiVirusNoAV_B.exe 2015-08-15 17:52:28 8294B691635CCEE9381FD2475D8D77CD 28672 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_SystemRestoreCheck_V2.exe 2015-08-15 17:52:28 81A2B71CA079F47CEA0C0999716C25F0 29696 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_BeforeUpgradingToWindows10.exe 2015-08-15 17:52:28 7DF1132A571556422A1C21B54D5CFCF0 29184 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_RecoveryDiscReminder_V2.exe 2015-08-15 17:52:28 6A6983390656B73226571BF79A1214AB 37176 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\HPResignFileLoader.exe 2015-08-15 17:52:28 20F3D48E422F225A4C33DD25144F4BB9 31744 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_AntiVirusNoAV_A.exe 2015-08-15 17:52:28 18703A4B90BDD25646E0ECFDEBF6B5EF 133944 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\HPSAObjUtil7.exe 2015-08-15 17:52:28 0896A0301EC2342BDC0AC38F3F2EA54A 22016 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_WelcomeHPSAv8.exe 2015-08-15 17:52:28 066D8D8BE827667096CCB1950A532009 61240 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\WarrantyObjectChecker.exe 2015-08-15 17:52:27 F3A2B4CA1DF34F751B9267D0A78673B6 32256 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_AntiVirusDefenderA.exe 2015-08-15 17:52:27 1D0CFEEE5AABC8DB97F760A2CDD2212D 26624 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\product_line\Detect_AfterUpgradingToWindows10.exe 2015-08-15 17:07:49 65B397447EC317135563A72324117226 565560 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\HPAsset.exe 2015-08-15 17:07:49 640BE98F751CAD9AF14A91FF2BF326E4 141624 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\HPDObject.exe 2015-08-15 10:08:42 28835E73C1A753264552FB67813EEEE1 65067 ----a-w- C:\Program Files\FastSearch\uninstall.exe 2015-08-15 10:07:47 1789F6DA8A05447CEC155E1063D0B627 52772 ----a-w- C:\Users\Administrator\AppData\Local\StormAlerts\uninstall.exe 2015-08-15 10:07:44 587D39DD47CC3CAA53F616EC30B0B7C1 100823 ----a-w- C:\Users\Administrator\AppData\Local\StormAlerts\StormAlertsappuninstall.exe 2015-08-15 10:06:53 D1FD0793E44303E42A19B1437BC5AB68 42980432 ----a-w- C:\Program Files\Google\Update\Install\{0178DCCA-82E9-42E8-9A04-D4669470724A}\44.0.2403.155_chrome_installer.exe 2015-08-15 10:06:51 D1FD0793E44303E42A19B1437BC5AB68 42980432 ----a-w- C:\Program Files\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\44.0.2403.155\44.0.2403.155_chrome_installer.exe 2015-08-15 10:06:33 9669D474442E0E911033263431064C84 1339232 ----a-w- C:\Users\Administrator\AppData\Local\Temp\cc898aef-cd28-493a-8c10-ea9e29d54b88\speedupmypc.exe 2015-08-15 10:06:33 2485F03928EB5FE9C37E6334F8B38AAA 2374927 ----a-w- C:\Users\Administrator\AppData\Local\Temp\b4409245-0f9b-4b45-950a-c9e0723b3367\wie_2.19.2.6.exe 2015-08-15 10:06:32 A354B968842E629CAADF0E4513E18AC5 880784 ----a-w- C:\Users\Administrator\AppData\Local\Temp\eef9178a-95ce-44c6-a35d-9d96203a126d\chromesetup.exe 2015-08-15 10:06:32 88766E5DA236B7F682383AF382A2FC4A 100362 ----a-w- C:\Users\Administrator\AppData\Local\Temp\0039220a-9825-47be-baba-61db1ebe1434\bundle_flowsurfcb.exe 2015-08-15 10:06:32 3B960FCCA8CB1AFE1733BDF700C4EB87 144632 ----a-w- C:\Users\Administrator\AppData\Local\Temp\6be9dc64-03bd-40b9-bd33-d051f0a7a28e\setup.exe 2015-08-15 10:05:00 EC8C628CBBAAD0F64F1AEAC2F3A79172 589704 ----a-w- C:\Users\Administrator\Documents\Downloads\google chrome.exe 2015-08-15 09:34:54 EADC02F7D3B46E152704BA64D7CB90FA 402632 ----a-w- C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe 2015-08-15 09:34:45 A2346D388AA310C21FFB7F92FDF9FF8D 7812296 ----a-w- C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe 2015-08-15 09:34:45 A2346D388AA310C21FFB7F92FDF9FF8D 7812296 ----a-w- C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\OneDriveSetup.exe 2015-08-15 09:34:30 A676E1826167B836263DB51E96777D66 145608 ----a-w- C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncConfig.exe 2015-08-14 18:31:06 7B6DC55E62707FA6EF4DE4AECF93F6AF 489984 ----a-w- C:\Users\Administrator\AppData\Local\Packages\Microsoft.XboxIdentityProvider_cw5n1h2txyewy\AC\Microsoft\CLR_v4.0_32\NativeImages\XboxIdp\63227fcc753eabb2cda6cb81a872b0af\XboxIdp.ni.exe 2015-08-14 18:31:04 2D210D10CFABE7F9689B6AA0B4B47EAC 1822208 ----a-w- C:\Users\Administrator\AppData\Local\Packages\Microsoft.WindowsFeedback_cw5n1h2txyewy\AC\Microsoft\CLR_v4.0_32\NativeImages\FeedbackApp.Windows\c59883f756b0c6645dfcda282726226a\FeedbackApp.Windows.ni.exe 2015-08-14 14:44:20 DDA7234514524B7D610F1C30D9ED86F4 9850336 ----a-w- C:\Program Files\123 Free Solitaire\123FreeSolitaire.exe 2015-08-14 14:44:20 6E463F703C4021809CB683532B51A3F5 704296 ----a-w- C:\Program Files\123 Free Solitaire\unins000.exe 2015-08-14 14:37:21 61E988EA778FF81375582DE424F5726A 1195808 ----a-w- C:\Program Files\IObit\Surfing Protection\unins000.exe 2015-08-14 14:37:17 F3E8E02CE126E02F6CEC4F301862CAFE 23840 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wnet_x86\RegistryDefragBootTime.exe 2015-08-14 14:37:17 F1525F3D112F4DD28BBFC4C6B4F42335 23840 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wxp_x86\RegistryDefragBootTime.exe 2015-08-14 14:37:17 A500F83ECC7AAD400EE677B096193A95 24352 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\win7_x86\RegistryDefragBootTime.exe 2015-08-14 14:37:17 9D69441E0F1B134D5B7DFA993F365A32 26400 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wnet_amd64\RegistryDefragBootTime.exe 2015-08-14 14:37:17 85D28E9EE35CD2336495F1F890871B49 27424 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wlh_amd64\RegistryDefragBootTime.exe 2015-08-14 14:37:17 7EEDADC5D43319D802A7CA9EBCFF830E 26400 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wxp_amd64\RegistryDefragBootTime.exe 2015-08-14 14:37:17 71B5DBE2F3E12C7B5C7CC5BCF245DC65 24352 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\wlh_x86\RegistryDefragBootTime.exe 2015-08-14 14:37:17 27B73DAB32F51461861CF7398E3A282C 27424 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\drivers\win7_amd64\RegistryDefragBootTime.exe 2015-08-14 14:37:14 42FCD6E1D73A71C7D807F76BB194796D 5384520 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\SPSetup.exe 2015-08-14 14:37:14 2A127E9DBBD39C79CF9CD9F211BB3C4F 1718560 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Sur13_WinFix.exe 2015-08-14 14:36:51 F23A0487D1079148B07B6F9501FCDE90 2594592 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Suc11_RegistryCleaner.exe 2015-08-14 14:36:51 D07DC842842F5563B3B01B9ED0420CBB 535840 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Suo10_SmartRAM.exe 2015-08-14 14:36:51 8F98D4316D4BE83F16062402E034FE45 554784 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Suc12_DiskCleaner.exe 2015-08-14 14:36:51 8B8C6947602079257F567984D8E10353 1440032 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Suo11_InternetBooster.exe 2015-08-14 14:36:51 7CF030E4545E00D56135F8AC508EBA7E 3876128 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Suo12_StartupManager.exe 2015-08-14 14:36:50 4DD2655D5BF4F44CD72BDFC514353DE3 825632 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Homepage.exe 2015-08-14 14:36:50 0A6B46C7DF4CC23C106E7494321AE5F3 8032544 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\IObitUninstaller.exe 2015-08-14 14:36:49 EE39D8F9A4CA07CC713D817E3E75954D 2226464 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Wizard.exe 2015-08-14 14:36:49 B043D98FC21FD58E987AEA4F845767BE 1718560 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\UninstallPromote.exe 2015-08-14 14:36:48 3D39215EDC03C527082D819AC4A6312D 814368 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\StartupInfo.exe 2015-08-14 14:36:48 1C1ADA584D73FEBC7CF5FE98A084109B 600864 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\TaskHelper.exe 2015-08-14 14:36:47 AB61AA00EB531A3FA9D4C926D15E9EEF 1440032 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\SPInit.exe 2015-08-14 14:36:47 91965DD96253FA213885A86A5B3269F6 589088 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\SendBugReportNew.exe 2015-08-14 14:36:47 7158B17DFBD02E5C31ABB57F147B002B 583456 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\SoftUpdateTip.exe 2015-08-14 14:36:47 266388F826B9277614D436B507E05F8D 544544 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\smBootTime.exe 2015-08-14 14:36:46 ADBF49691A837B142B68A91EA361B852 1338144 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\RescueCenter.exe 2015-08-14 14:36:46 7F32C12E4E3873400DE6CD84088A7ACE 876320 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Reinforce.exe 2015-08-14 14:36:46 4520FCD37034DE30B0B7B38EEA84B77D 1814816 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Register.exe 2015-08-14 14:36:46 33BAC77CCF4C1D507D432B29A66CE2C8 145696 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ReProcess.exe 2015-08-14 14:36:46 2C870BCAE50622B4C488EE30089C8142 650528 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Report.exe 2015-08-14 14:36:46 07782C388EDDB13CB0A1040F7E1DDCDC 1106720 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\RealTimeProtector.exe 2015-08-14 14:36:45 EEA4AB4C60D63AEA93774C1E2E526305 735008 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\QuickSettings.exe 2015-08-14 14:36:43 E555183AD72039E9B1ADE2E81E0F89EE 64288 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\PerformUpdate.exe 2015-08-14 14:36:43 A9255568A4C269D1F8D7971354357375 429856 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Nfeatures.exe 2015-08-14 14:36:43 88AADA69A5695CCFEC5331CF2B4BD7C8 1657632 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\PPUninstaller.exe 2015-08-14 14:36:42 63EE41C76AB9D03BF33359FEBE97220A 443680 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\MonitorDisk.exe 2015-08-14 14:36:42 6009C7F55A71FA7F23692B92214A4CF8 1774880 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe 2015-08-14 14:36:42 39956C1ABAB13FF57F92F89E7B457921 174880 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\LocalLang.exe 2015-08-14 14:36:41 E6BDB63E8DBD8D6B2C1AB5C6B39ADB40 2904864 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\LiveUpdate.exe 2015-08-14 14:36:40 EE79D3AE2B5E25F92AFF8188F38F07BE 43296 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\DiskDefrag.exe 2015-08-14 14:36:40 E4C875F4D737DFC6A8BEB87D09656F71 1703200 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\DefaultProgram.exe 2015-08-14 14:36:40 491435EE4A6A1C4B65620854BC701450 44832 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\DiskScan.exe 2015-08-14 14:36:40 0A42F6EC406B60711E8140BB55462AAB 228640 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\delayLoad.exe 2015-08-14 14:36:40 069C5F833AD663C7CCFF3A25630FE772 97568 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\Display.exe 2015-08-14 14:36:39 7D4652F17E76BB705B5B8FA64112971B 1198368 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\AutoSweep.exe 2015-08-14 14:36:39 6536C4768AE7B97F30427FD6720D76EA 1902368 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\AutoCare.exe 2015-08-14 14:36:39 425CACE6904A239C894847E5C93753C4 992544 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\BrowserCleaner.exe 2015-08-14 14:36:39 3F750ABAC4EC9F1495CA1394FB180FFA 1408288 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\AutoUpdate.exe 2015-08-14 14:36:39 14EAF09E4A4553F7CB9B57731AAA21EB 550176 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASCUpgrade.exe 2015-08-14 14:36:38 F95D04C2096C2534DD9465A5408E2505 672032 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASCDownload.exe 2015-08-14 14:36:38 E2405E793004B179C99D05331635CAF1 5425440 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe 2015-08-14 14:36:38 ACD4AF1B9D6E6C0C5BE470E5CF313FE6 814880 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe 2015-08-14 14:36:38 685BE3562969BD708E0798606C44BAD0 598304 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASCInit.exe 2015-08-14 14:36:38 422963B9386FD4052AA766A6575ED8DE 2429728 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe 2015-08-14 14:36:37 A9F18C9DCB8E3CC98F3C370105521108 2163488 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ActionCenterDownloader.exe 2015-08-14 14:36:37 7D4BDF7B34D838C299C615D95C70CE7F 28960 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\ACPreScan.exe 2015-08-14 14:36:34 37E24A946C409B7A0F7BE1FBC02218ED 1198368 ----a-w- C:\Program Files\IObit\Advanced SystemCare 8\unins000.exe 2015-08-14 14:34:44 35DAFB4CCE9F66016E5090433C0CC96C 1200448 ----a-w- C:\Program Files\IObit\Driver Booster\unins000.exe 2015-08-14 12:00:36 D48AABE9BEF7157C8B40771AEAD27D4E 1198592 ----a-w- C:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancerService.exe 2015-08-14 12:00:36 AEE4BC62F584AC630094FF0A83AC89FF 269312 ----a-w- C:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancer.exe 2015-08-14 11:59:56 87FAF16B0F54436ECF1D2771B64323EA 878900 ----a-w- C:\Program Files\WajInterEnhancer\uninstall.exe 2015-08-14 11:59:56 87FAF16B0F54436ECF1D2771B64323EA 878900 ----a-w- C:\Program Files\Wajam\uninstall.exe 2015-08-14 11:23:27 EBF15B6DA13AAB7F0052C48676497979 8704 -c--a-w- C:\$Windows.~BT\Sources\ResetEngInterfaces.exe 2015-08-14 11:23:27 543C8A2961F38C20438A61B9455E914C 53760 -c--a-w- C:\$Windows.~BT\Sources\rundll32.exe 2015-08-14 11:02:12 D544ED28ED4ED3917B0823B5411830EC 269504 -c--a-w- C:\$Windows.~BT\Sources\mighost.exe 2015-08-14 11:02:12 626E52D6EA6B9DD035424904D6B3F560 158912 -c--a-w- C:\$Windows.~BT\Sources\setupplatform.exe 2015-08-14 09:19:52 9A3CB9EF43F89DB220F981C7E83C92F9 432744 ----a-w- C:\Program Files\Realtek\Audio\HDA\vncutil.exe 2015-08-14 09:19:48 6AA2830C99BE18B68ECCBCAA07F34D84 1552088 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtlUpd.exe 2015-08-14 09:19:47 D2D01FE536905D95F1A1B338325A2580 7536344 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe 2015-08-14 09:19:47 379C10E53757C1C0EB649DCF9155292D 255192 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe 2015-08-14 09:19:47 193EAC8FA4E4FC40B45FB66643EFECEF 1015512 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe 2015-08-14 09:19:39 6C22F4789B4C918D6C6BCDA9666EC182 193472 ----a-w- C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv32.exe 2015-08-14 09:19:39 01271A5CE53621E60B8045DBEB74E0FF 112664 ----a-w- C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2015-08-14 09:19:38 B642DD65BDD2029A592F59DE7BDEC87A 721088 ----a-w- C:\Program Files\Realtek\Audio\HDA\CXAPOAgent.exe 2015-08-14 09:19:38 636C989C228F35400DABC8A39669073F 173672 ----a-w- C:\Program Files\Realtek\Audio\HDA\DTSAudioService.exe 2015-08-14 09:19:37 F9EDCA74B8CB3744159DEF02352F7BD6 58880 ----a-w- C:\Program Files\Realtek\Audio\HDA\CreateRtkToastLnk.exe 2015-08-14 09:19:37 A6CE73469591554279DA63BE715DBC93 87968 ----a-w- C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe 2015-08-14 09:17:21 61285170DA46E35AF6DBAAE8945646D9 2193728 ----a-w- C:\Program Files\IObit\Driver Booster\Freeware\IObitDownloader.exe 2015-08-14 09:17:20 61285170DA46E35AF6DBAAE8945646D9 2193728 ----a-w- C:\Program Files\IObit\Driver Booster\IObitDownloader.exe 2015-08-14 09:17:19 201CC76AE54FB9B65C41A9C2670CC8FF 164672 ----a-w- C:\Program Files\IObit\Driver Booster\HWiNFO\HWiNFO.exe 2015-08-14 09:17:18 C833543DAAD9A33E146FD4B977225970 879936 ----a-w- C:\Program Files\IObit\Driver Booster\DrvInstall\DpInstX64.exe 2015-08-14 09:17:18 C235C65BFA69D10E34C75CD4A7C08121 586560 ----a-w- C:\Program Files\IObit\Driver Booster\DrvInstall\DpInstX32.exe 2015-08-14 09:17:18 B80235CD74644FEC41A8306355AB40CF 1046848 ----a-w- C:\Program Files\IObit\Driver Booster\DpInst\x64\dpinst.exe 2015-08-14 09:17:18 67F4DC9D22FCE62AF172214F556438DD 921408 ----a-w- C:\Program Files\IObit\Driver Booster\DpInst\x86\dpinst.exe 2015-08-14 09:17:16 7EC801E697217E31ED60A9AFFE2408B5 202560 ----a-w- C:\Program Files\IObit\Driver Booster\ChangeIcon.exe 2015-08-14 09:17:16 74807489545ED125A8A3E3AF362B9E1E 225088 ----a-w- C:\Program Files\IObit\Driver Booster\MakeSFX.exe 2015-08-14 09:17:16 4B0EC63BE88AB4A0D53743F0ADA88424 592192 ----a-w- C:\Program Files\IObit\Driver Booster\AUpdate.exe 2015-08-14 09:17:15 A86DB095735AC2F65CABEB6B3DE15A85 1451840 ----a-w- C:\Program Files\IObit\Driver Booster\Promote.exe 2015-08-14 09:17:14 BAF95CBAC530A139DA0B4ED3E0FEE7F6 1290048 ----a-w- C:\Program Files\IObit\Driver Booster\InstStat.exe 2015-08-14 09:17:14 5556C54070E16F917393812335381087 67904 ----a-w- C:\Program Files\IObit\Driver Booster\Scheduler.exe 2015-08-14 09:17:14 5481393F49809D029283B9F5902047CE 1737536 ----a-w- C:\Program Files\IObit\Driver Booster\AutoUpdate.exe 2015-08-14 09:17:14 1AE03219CEF294F648B498F3F8D6598C 1052480 ----a-w- C:\Program Files\IObit\Driver Booster\SetupHlp.exe 2015-08-14 09:17:13 A88328A4FBB0847B80FB5315CF4AC040 4445504 ----a-w- C:\Program Files\IObit\Driver Booster\DriverBooster.exe 2015-08-14 09:15:19 66BA76B90614B57D7408669722261DE1 557856 ----a-w- C:\Program Files\IObit\IObit Uninstaller\UninstallHistory.exe 2015-08-14 09:15:18 17CF2D83DBDEC7714DFD961C539343A9 592160 ----a-w- C:\Program Files\IObit\IObit Uninstaller\AUpdate.exe 2015-08-14 09:15:17 BC580A863F3131AF64750AAF0852A019 543008 ----a-w- C:\Program Files\IObit\IObit Uninstaller\IUPluginNotice.exe 2015-08-14 09:15:14 31AB32E2178C470E83C6CADCD3F3D239 587552 ----a-w- C:\Program Files\IObit\IObit Uninstaller\IU_KillAllFile.exe 2015-08-14 09:15:13 429E1E9479FD41A131A5CC3A00C58788 1198368 ----a-w- C:\Program Files\IObit\IObit Uninstaller\unins000.exe 2015-08-13 20:32:33 678AB0E8665345E72D11149A36F965BE 5127432 ----a-w- C:\Users\Administrator\Documents\Downloads\spsetup128.exe 2015-08-13 19:30:05 C7B8503492B6F4B318DA68F0CC45628E 2821200 ----a-w- C:\Program Files\Google\Update\Install\{21D64D6D-FCE1-4627-B098-6D0402AAB220}\44.0.2403.155_44.0.2403.130_chrome_updater.exe 2015-08-13 19:30:05 C7B8503492B6F4B318DA68F0CC45628E 2821200 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\44.0.2403.155\44.0.2403.155_44.0.2403.130_chrome_updater.exe 2015-08-13 16:30:47 81A7CFF51A3480794186AAC9C9F5CA00 818880 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-08-13 12:49:46 FA321BD7014909E5A0C4EF0FD043F045 143064 ----a-w- C:\Program Files\FastSearch\ACInstaller.exe 2015-08-11 20:43:22 35EC0D85A7E3A79B2288B7E898B51F60 58695 ----a-w- C:\Program Files\FastSearch\cfr3011.exe 2015-08-11 19:11:44 FD1AEC1A37FB79566AAFDE425E37F96F 157112 ----a-w- C:\Program Files\FastSearch\ACDLL64.exe === C: other files == 2015-08-18 17:46:42 D03D10F7DED688FECF50F8FBF1EA9B8A 49920 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\win2000\hpzid412.sys 2015-08-18 17:46:42 B7D595F2F464F7B628AD53F06547792C 49056 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_amd64\x64\Dot4usb.sys 2015-08-18 17:46:42 B7D595F2F464F7B628AD53F06547792C 49056 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_amd64\x64\Dot4usb.sys 2015-08-18 17:46:42 B76FDD8EC7120474E7BC9CAD400DAC6C 187392 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\amd64\winxp\hpzid412.sys 2015-08-18 17:46:42 B1C63BBF395499AD3BFB64A4F2FA0CE4 19872 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_amd64\x64\Dot4Scan.sys 2015-08-18 17:46:42 B1C63BBF395499AD3BFB64A4F2FA0CE4 19872 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_amd64\x64\Dot4Scan.sys 2015-08-18 17:46:42 B19A7590062683F02AA0593C65971726 50424 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\win2000\hpzs2k12.sys 2015-08-18 17:46:42 AFBDCE5DED406D095E9081DE7CA8E9B8 29696 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\amd64\winxp\hpzisc12.sys 2015-08-18 17:46:42 ABCB05CCDBF03000354B9553820E39F8 21568 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\win2000\hpzius12.sys 2015-08-18 17:46:42 9B28887500DB96A433C9C9DED8FDC886 48640 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\amd64\winxp\hpzipr12.sys 2015-08-18 17:46:42 89F41658929393487B6B7D13C8528CE3 16496 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\win2000\hpzipr12.sys 2015-08-18 17:46:42 8848790920F2827E5A16971E1D32CA60 42912 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_x86\x86\Dot4usb.sys 2015-08-18 17:46:42 8848790920F2827E5A16971E1D32CA60 42912 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_x86\x86\Dot4usb.sys 2015-08-18 17:46:42 50FE01D0C502F3962843E9E70294C4D7 9712 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\win2000\hpzisc12.sys 2015-08-18 17:46:42 1B9A49FA7246E259C7AE892AED75B90D 16800 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_x86\x86\Dot4Scan.sys 2015-08-18 17:46:42 1B9A49FA7246E259C7AE892AED75B90D 16800 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_x86\x86\Dot4Scan.sys 2015-08-18 17:46:42 0A57B5876530FEBB4EBF6AD501864F96 16800 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\winxp\hppaufd0.sys 2015-08-18 17:46:42 0013DD74CD20EBFB8C816D9DF7413D91 50688 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\drivers\dot4\amd64\winxp\hpzius12.sys 2015-08-18 17:46:41 464DA96934BB8F2F2AD2573E3479B383 22432 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_x86\x86\Dot4Prt.sys 2015-08-18 17:46:41 464DA96934BB8F2F2AD2573E3479B383 22432 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_x86\x86\Dot4Prt.sys 2015-08-18 17:46:41 27069CFFF29B7F04F4B1BB10154BE52B 151968 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_amd64\x64\Dot4.sys 2015-08-18 17:46:41 27069CFFF29B7F04F4B1BB10154BE52B 151968 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_amd64\x64\Dot4.sys 2015-08-18 17:46:41 16AEEC748CD4210084D5B044310074C0 137632 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_x86\x86\Dot4.sys 2015-08-18 17:46:41 16AEEC748CD4210084D5B044310074C0 137632 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_x86\x86\Dot4.sys 2015-08-18 17:46:41 0BD906A79F9CE3013F7D9D0AC45F9F9D 27040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4prt_amd64\x64\Dot4Prt.sys 2015-08-18 17:46:41 0BD906A79F9CE3013F7D9D0AC45F9F9D 27040 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\dot4_amd64\x64\Dot4Prt.sys 2015-08-18 17:45:28 E7855040371CF790E6C338B307FABFA3 1027 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\Uninstall_L2.bat 2015-08-18 17:45:28 D7A23282F3659BA7BD02A8864287624D 1360 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\Uninstall_L4.bat 2015-08-18 17:45:28 ADF2BD5B1EE255908BD611E98E9B053F 1004 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\Uninstall_L3.bat 2015-08-18 17:45:28 93A2AA2983E9AE01CA2142D74D86A36D 1360 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\Uninstall.bat 2015-08-18 17:45:28 8C1D07931AF68EF0F9C6155B46232237 24 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\collect.bat 2015-08-18 17:45:28 6834B00412ED16511E60DC87560679F0 88 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\hposcrlr.bat 2015-08-18 17:45:28 05CD32D48F1CD80542F0830067411C95 879 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\util\ccc\Uninstall_L1.bat 2015-08-18 17:45:23 AFD846BAB438BEEF4C659F62E57891BB 8187079 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\setup\bingbar\InstallPackage1150.zip 2015-08-18 17:45:23 114A280DC064963FCBB0CEF86A8559B9 7288471 ----a-w- C:\Users\Administrator\AppData\Local\Temp\7zS7570\licensing\OpenSource\opensource_helpviewer.zip 2015-08-16 11:45:40 599BA7C18D71FFA1BB8E860685D9F5F5 3810 ----a-w- C:\Program Files\Jungle Net\Extensions\eefjmapjlfncajdacgfhpellppcjjnlm.crx 2015-08-15 17:52:38 E3B361104840E07F87F5882228E6F609 11789 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\resources\nl-NL\hcsolutions.zip 2015-08-15 17:52:34 E523DC5EB07E8144FC449BED5CD31672 1320407 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\resources\guidAcheck.zip 2015-08-15 17:52:32 50B0EC559DF11362169FCEE25989810E 234251 ----a-w- C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\resources\guid.zip 2015-08-15 10:09:14 7C5420114E07954A0991F7EBCE38CF11 217 -c--a-w- C:\task.vbs 2015-08-15 10:08:54 204912F72C5954FA9A3792F1A8256CFA 38104 ----a-w- C:\WINDOWS\System32\drivers\acwfp.sys 2015-08-15 09:34:27 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\CollectOneDriveLogs.bat 2015-08-14 11:11:40 ED4FC5980BD8B1AD869FF725C7776338 10 -c--a-w- C:\$Windows.~BT\NewOS\config.sys 2015-08-14 11:11:40 D9EBEC6668A6092FCBD1713C347AA5E0 24 -c--a-w- C:\$Windows.~BT\NewOS\autoexec.bat 2015-08-14 09:31:39 602F0E7767955CED93A2B721A88120B5 958232 ----a-w- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1507063.sys 2015-08-14 09:31:39 3D39601F01B131CE1B08CB32540F1EF0 554840 ----a-w- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_1507063.sys 2015-08-14 09:19:48 17EA787F70044F15342A0E11EA7F7095 3522264 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\hdart.inf_x86_cabd4efb80cb92bf\RTKVHDA.sys 2015-08-13 16:30:48 32AC67198860658D06395A23607DBFA2 42904 ----a-w- C:\WINDOWS\System32\drivers\wpcfltr.sys 2015-08-13 16:30:47 E42F80FB4C1A06EF4B071608571F5155 1808224 ----a-w- C:\WINDOWS\System32\drivers\ntfs.sys 2015-08-13 16:30:47 D437308181D78C4224320CCAFA27C1AA 85344 ----a-w- C:\WINDOWS\System32\drivers\mountmgr.sys 2015-08-13 16:30:47 CA4DB19AF2263061065B7164BBEC5993 918880 ----a-w- C:\WINDOWS\System32\drivers\ndis.sys 2015-08-13 16:30:42 52C7AEE1E3B67F97D6CAB9DEC3124B8B 128512 ----a-w- C:\WINDOWS\System32\drivers\tunnel.sys 2015-08-13 16:30:42 17F94FDDF5D959675234100F6C6B8107 488960 ----a-w- C:\WINDOWS\System32\drivers\WdiWiFi.sys 2015-08-13 16:30:41 F273D655A713E403D5AEBBAD905D1D72 436064 ----a-w- C:\WINDOWS\System32\drivers\dxgmms2.sys 2015-08-13 16:30:41 E6C8A9F2DA3E11C7520521F470700DB7 369504 ----a-w- C:\WINDOWS\System32\drivers\usbhub.sys 2015-08-13 16:30:41 E6C8A9F2DA3E11C7520521F470700DB7 369504 ------w- C:\WINDOWS\System32\DriverStore\FileRepository\usbport.inf_x86_c47deb33cfc441f1\usbhub.sys 2015-08-13 16:30:41 E317C0D26A28068EC8A2A700A294AD27 469856 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\acpi.inf_x86_65b9485e495d6b18\acpi.sys 2015-08-13 16:30:41 E317C0D26A28068EC8A2A700A294AD27 469856 ----a-w- C:\WINDOWS\System32\drivers\acpi.sys 2015-08-13 16:30:41 DD194BBB6F0AE59C20887ABA6D00C1DB 32768 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\ucmucsi.inf_x86_f2752d0645d46ae2\UcmUcsi.sys 2015-08-13 16:30:41 DD194BBB6F0AE59C20887ABA6D00C1DB 32768 ----a-w- C:\WINDOWS\System32\drivers\UcmUcsi.sys 2015-08-13 16:30:41 D6D46D0FC460D4F2AE966AEBF8982BD9 36704 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\msgpiowin32.inf_x86_11fc78cf3fd863d6\msgpiowin32.sys 2015-08-13 16:30:41 D6D46D0FC460D4F2AE966AEBF8982BD9 36704 ----a-w- C:\WINDOWS\System32\drivers\msgpiowin32.sys 2015-08-13 16:30:41 D1A936D61D476B7A90EBC5F456BDA6AC 2987008 ----a-w- C:\WINDOWS\System32\win32kfull.sys 2015-08-13 16:30:41 CB2823338FCB471C7D52B8E9A6D77D25 247808 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\netwmbclass.inf_x86_b9ce8485f2951dd4\wmbclass.sys 2015-08-13 16:30:41 C7D9B909C39EE283D676258E3D746AAF 54112 ----a-w- C:\WINDOWS\System32\drivers\dam.sys 2015-08-13 16:30:41 AFC8014BBF976951853645B3D571D8AE 197472 ----a-w- C:\WINDOWS\System32\drivers\rdyboost.sys 2015-08-13 16:30:41 A59C90C1680D109E7CC8796613418912 506200 ----a-w- C:\WINDOWS\System32\drivers\cng.sys 2015-08-13 16:30:41 9E72CE218CAA68096180B287F517CB35 1134592 ----a-w- C:\WINDOWS\System32\win32kbase.sys 2015-08-13 16:30:41 8D2B6A8F0D7DB6B0F8CBA83CFBB973B0 48128 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\usbser.inf_x86_a8077066161f8bba\usbser.sys 2015-08-13 16:30:41 8D2B6A8F0D7DB6B0F8CBA83CFBB973B0 48128 ----a-w- C:\WINDOWS\System32\drivers\usbser.sys 2015-08-13 16:30:41 8012624EADD0F24C0215F9EDA5B6D4B5 415072 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\usbhub3.inf_x86_82675c24a0e5e985\USBHUB3.SYS 2015-08-13 16:30:41 8012624EADD0F24C0215F9EDA5B6D4B5 415072 ----a-w- C:\WINDOWS\System32\drivers\USBHUB3.SYS 2015-08-13 16:30:41 5589929E396F207EDE23D05034CBA463 173408 ----a-w- C:\WINDOWS\System32\drivers\wof.sys 2015-08-13 16:30:41 52B768BFD3920CD1A87A1B188AB49752 1709920 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys 2015-08-13 16:30:41 5299C0E3A909A7D223789A7D2DFA693E 334176 ----a-w- C:\WINDOWS\System32\drivers\dxgmms1.sys 2015-08-13 16:30:41 292C4AD954E9F4C4B5E6771E5514A6B8 51200 ----a-w- C:\WINDOWS\System32\DriverStore\FileRepository\bthhfenum.inf_x86_b2fc26564600ef69\bthhfenum.sys 2015-08-13 16:30:41 292C4AD954E9F4C4B5E6771E5514A6B8 51200 ----a-w- C:\WINDOWS\System32\drivers\bthhfenum.sys 2015-08-13 16:30:41 1F3D9517DB5129DB9F035F1ADC2B50DE 257888 ----a-w- C:\WINDOWS\System32\drivers\pci.sys 2015-08-13 16:30:41 1F3D9517DB5129DB9F035F1ADC2B50DE 257888 ------w- C:\WINDOWS\System32\DriverStore\FileRepository\pci.inf_x86_38e58d6bbdb640b6\pci.sys 2015-08-13 16:25:36 9652B69927FBA64B582CA6FB5C53B8C8 98133 ----a-w- C:\inetpub\AdminScripts\adsutil.vbs 2015-08-13 12:49:42 1194CDCD0C2287BC0D67C4574126F299 45784 ----a-w- C:\Program Files\FastSearch\acwfp64.sys 2015-08-13 12:49:36 204912F72C5954FA9A3792F1A8256CFA 38104 ----a-w- C:\Program Files\FastSearch\acwfp.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\System32\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\System32\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"="C:\Users\Administrator\AppData\Local\Akamai\netsession_win.exe" "CAHeadless"="C:\Program Files\Adobe\Elements 12 Organizer\CAHeadless\ElementsAutoAnalyzer.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "OneDrive"="C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Advanced SystemCare 8"="C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" [HKEY_USERS\S-1-5-21-546033376-3387315075-1641825082-500\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s" "ASUSGamerOSD"="C:\Program Files\ASUS\GamerOSD\GamerOSD.exe" "LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" "UnlockerAssistant"="C:\Program Files\Unlocker\UnlockerAssistant.exe" "hpqSRMon"="C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe" "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" "KPN"="C:\Program Files\KPN\bin\sprtcmd.exe /P KPN" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "Servicetool"="C:\Program Files\KPN\Servicetool\KPNServicetool_Launcher.exe /auto" "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"="C:\Users\Administrator\AppData\Local\Akamai\netsession_win.exe" "CAHeadless"="C:\Program Files\Adobe\Elements 12 Organizer\CAHeadless\ElementsAutoAnalyzer.exe" "TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "OneDrive"="C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Advanced SystemCare 8"="C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LGODDFU] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogitechVideoRepair] "hkey"="HKLM" "item"="LogitechVideoRepair" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LogitechVideoTray] "hkey"="HKLM" "item"="LogitechVideoTray" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Exif Launcher 2.lnk] "backup"="C:\\Windows\\pss\\Exif Launcher 2.lnk.CommonStartup" "backupExtension"=".CommonStartup" "item"="Exif Launcher 2" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk] "backup"="C:\\Windows\\pss\\Logitech Desktop Messenger.lnk.CommonStartup" "backupExtension"=".CommonStartup" "item"="Logitech Desktop Messenger" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeActiveFileMonitor6.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AeLookupSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ALG] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AppHostSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ATKFUSService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AudioEndpointBuilder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Audiosrv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BFE] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BITS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Browser] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CISVC] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\clr_optimization_v2.0.50727_32] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\COMSysApp] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\CryptSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DFSR] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dhcp] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Dnscache] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\dot3svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\DPS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EapHost] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehRecvr] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehSched] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ehstart] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EMDMgmt] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Eventlog] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\EventSystem] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fdPHost] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FDResPub] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FLEXnet Licensing Service] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FontCache3.0.0.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\fsssvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gupdate1ca2d71879a354c] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\gusvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hidserv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hkmsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hpqcxs08] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\hpqddsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IDriverT] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\idsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IKEEXT] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IPBusEnum] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iphlpsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\iprip] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KeyIso] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\KtmRm] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanServer] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LanmanWorkstation] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LBTServ] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lltdsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\lmhosts] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LVPrcSrv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\LVSrvLauncher] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MMCSS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MpsSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSDTC] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSiSCSI] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\msiserver] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSMQ] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\MSMQTriggers] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\napagent] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Net Driver HPZ12] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Netman] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetMsmqActivator] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetPipeActivator] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\netprofm] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetTcpActivator] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NetTcpPortSharing] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NlaSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\nsi] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\NtmsSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\nvsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2pimsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\p2psvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PcaSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\pla] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Pml Driver HPZ12] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPAutoReg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PNRPsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PolicyAgent] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ProtectedStorage] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QWAVE] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasAuto] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RasMan] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\RpcLocator] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SamSs] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SDRSVC] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SeaPort] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\seclogon] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SENS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SessionEnv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\ShellHWDetection] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\simptcp] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SLUINotify] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SNMP] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Spooler] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SSDPSRV] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SstpSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\stisvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\swprv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SysMain] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TabletInputService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TapiSrv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TBS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TermService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Themes] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\THREADORDER] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TomTomHOMEService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrkWks] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TrustedInstaller] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UI0Detect] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\upnphost] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\UxSms] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\vds] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\VSS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\W32Time] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\W3SVC] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WAS] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wcncsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WcsPlugInService] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiServiceHost] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WdiSystemHost] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wecsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wercplsupport] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WerSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinDefend] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WinHttpAutoProxySvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Winmgmt] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Wlansvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wlidsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wmiApSrv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WMPNetworkSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WPCSvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wscsvc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WSearch] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wuauserv] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wudfsvc] ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [11-08-2015 20:02] C:\WINDOWS\tasks\ASC8_SkipUac_Administrator.job --a-------- C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe [16-06-2015 15:33] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files\Google\Update\GoogleUpdate.exe [21-10-2014 09:17] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files\Google\Update\GoogleUpdate.exe [21-10-2014 09:17] C:\WINDOWS\tasks\Uninstaller_SkipUac_Administrator.job --a-------- [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\system32\tasks\AdobeAAMUpdater-1.0-WIN-XM7DVXO155L-Administrator" [C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\WINDOWS\system32\tasks\ASC8_PerformanceMonitor" [C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe] "C:\WINDOWS\system32\tasks\ASC8_SkipUac_Administrator" [C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe /SkipUac] "C:\WINDOWS\system32\tasks\BitGuard" [C:\Windows\system32\sc.exe start BitGuard] "C:\WINDOWS\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\system32\tasks\cfr3011" [C:\PROGRA~1\FastSearch\cfr3011.exe] "C:\WINDOWS\system32\tasks\Driver Booster Scan" [C:\Program Files\IObit\Driver Booster\Scheduler.exe] "C:\WINDOWS\system32\tasks\Driver Booster SkipUAC (Administrator)" [C:\Program Files\IObit\Driver Booster\DriverBooster.exe] "C:\WINDOWS\system32\tasks\Driver Booster SkipUAC (SYSTEM)" [C:\Program Files\IObit\Driver Booster\DriverBooster.exe] "C:\WINDOWS\system32\tasks\Driver Booster Update" [C:\Program Files\IObit\Driver Booster\AutoUpdate.exe] "C:\WINDOWS\system32\tasks\EPUpdater" [C:\Users\ADMINI~1\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe] "C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\system32\tasks\Seagate_Install_Launch" [C:\Program Files\Seagate\Seagate Dashboard 2.0\Dashboard.exe] "C:\WINDOWS\system32\tasks\Uninstaller_SkipUac_Administrator" [C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\WINDOWS\system32\tasks\{67BA3739-9252-43E6-BE13-EEE2E39FCF93}" ["c:\program files\google\chrome\application\chrome.exe"] "C:\WINDOWS\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA)" ["C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe"] "C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher" [C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe] "C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" [C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe] "C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [20-05-2015 17:08] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "smartwebprinting@hp.com"="C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [01-04-2011 14:15] ==== Firefox Extensions ====================== ProfilePath: C:\Users\ADMINI~1\AppData\Roaming\TomTom\HOME\Profiles\fsl3gc6b.default - Undetermined - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - Undetermined - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 44.0.2403.155 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aipfmkinhleccnodemkoofnnofpbbpac - No path found[] dlnembnfbcpjnepmfjmngjenhhajpdfd - No path found[] hbcennhacfaagdopikcegfcobcadeocj - C:\Program Files\Common Files\Spigot\GC\saebay_1.1.crx[10-10-2013 17:41] icdlfehblmklkikfigmjhbmmpmkmpooj - C:\Program Files\Common Files\Spigot\GC\ErrorAssistant_1.3.crx[27-12-2013 12:08] mhkaekfpcppmmioggniknbnbdbcigpkk - C:\Program Files\Common Files\Spigot\GC\coupons_2.4.crx[26-04-2013 13:11] pfndaklgolladniicklehhancnlgocpp - C:\Program Files\Common Files\Spigot\GC\saamazon_1.0.crx[22-11-2012 16:00] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions bbjllphbppobebmjpjcijfbakobcheof - No path found[] Google Docs - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Rapport - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof YouTube - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo selector is not a valid CSS selector - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf {scripts [background.js]}content_scripts:[{js:[content.js]matches:[]run_at:document_end}]content_security_policy:script-src 'self' 'unsafe-eval' https://junglenet-a.akamaihd.net https://junglenet-a.akamaihd.net https://cdn.mightyjunglenet.com; object-src 'self'description:homepage_url:http://www.mightyjunglenet.comicons:{48:icon.png}key:MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxaK+TZAeRyWN658PiXrqFkcx0K6/IVitBlRa9Y3rSxdjutRURl9upw/3OMmOUtF2WT5CVr53sNN+nqRnysIjZWdO2Q9gvSEAzgR60ONKIfOpMQDEI5JU4fMYDutoBHobSeaqlgHXYxs6ekc7OSJNk7xCAs+DXPK/kTQj1Zm6QiLHaGED7l4PvT5Aeh0q/xHeKmNgJZprYNzJUzmsW+bcUbyNduRszJ6qYrkWPkklc793flX5+THQlZmeP7DqhkfOY1Sh+AwzZjDMk3H857AM4MebPAn/4gwcQ8ygVgY5jZhd4zUoHRNgtURex6o2tudbBAqvwq7aOCp45NU3dxciswIDAQABmanifest_version:2name:Jungle Netpermissions:[managementstoragetabswebRequestwebRequestBlocking]update_url:http://cdn.mightyjunglenet.com/updateversion:1.0.5706.24714} - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\eefjmapjlfncajdacgfhpellppcjjnlm Domain Error Assistant - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj Chrome Web Store Payments - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Preferences 266DADA93B320590475B0FB","blpcfgokakmgnkcojhhkbfbldkacnbeo":"F466EEC2E4E4FD72BBADD94D0DD5373B25397E6824915D23CC8D41217B5C67E7","cfhdojbkjhnklbpkdaibdccddilifddb":"32541462414E8B69BBE2A1911099435035DC77BA5BE3A8C01A4BCBD7055B00C4","coobgpohoikkiipiblmjeljniedjpjpf":"56684381BFA2A2F9063967F44AB964C7D8B818AACB356DC2398C73888EEC17DC","dbhjdbfgekjfcfkkfjjmlmojhbllhbho":"AD2720870EA155EF6BFAA58D3965B7471C07388F5116BE5311D6377FB67A6BAA","eefjmapjlfncajdacgfhpellppcjjnlm":"11887D8ED967EB68E192145CBF0F63C51C8CE5F4D9C3C833F04E220FA1288451","eemcgdkfndhakfknompkggombfjjjeno":"FB1EAEDB26DB8EA560E2CB1B1F66A4F1CB6769186E88F4FFA93D2D8B1BF91ABD","ennkphjdgehloodpbhlhldgbnhmacadg":"B7B6F27E019B8117B885FA8F87E045C69A889FDBD58C870392D556269347B325","gfdkimpbcpahaombhbimeihdjnejgicl":"37522BF0F44D148B1E7AA046A608B03C515883A683E51648F601C10D4E6DD0D3","hbcennhacfaagdopikcegfcobcadeocj":"0CAFB7A1458FCCE0A4D4E83D038DA188EF70B2B008542247C9D6415813088192","icdlfehblmklkikfigmjhbmmpmkmpooj":"7B695342316DD291BA602AB4C6B72A7D852E1116C211C6E18FB785E2AED4DCBA","kmendfapggjehodndflmmgagdbamhnfd":"1ED498937D4235BA008294A6D7CD74BF20384D47F346646DBAB94FD0EBF462B5","mfehgcgbbipciphmccgaenjidiccnmng":"9F640EC6B50A716C993D5E72631AA896D34E40A93C22FE6FD9CE1F7DBBBA599A","mfffpogegjflfpflabcdkioaeobkgjik":"AE3896B4E57315B9C94AF183C44838F4ED2EFFBF0CB05D1D2934328D00C42E57","mgndgikekgjfcpckkfioiadnlibdjbkf":"FEB93377B78D5A4A42F02C3B19ADC8EF003FE3059B75A2E82F751E7D208EC24E","mhjfbmdgcfjbbpaeojofohoefgiehjai":"3D690F6A78C129907EF948CEADFA83DEF118EA65AF560B40ADB704C13CFA923D","mhkaekfpcppmmioggniknbnbdbcigpkk":"54FE218ACE209B30E6EA02B0B85D457CEF14DE4348BDDB876D0A6D0A4720EEAD","neajdppkdcdipfabeoofebfddakdcjhd":"E98F006510369BC3B1DBB64687639B93537D3732600D7C6A0380554973D6DBC1","nfengeggddojhakldhlpjdlddgkkjkdd":"38CA73CA8F1B71B6119F13E2FAC8CAA9F84F57990EEC22C64FE6B14BEF12F099","nkeimhogjdpnpccoofpliimaahmaaome":"4AC352CAADDB82B0D6003735D874C38D60F778ACE6AC3181EB4530BA81EB8E8F","nmmhkkegccagdldgiimedpiccmgmieda":"C46F8CA3AEC2ABA23243392F0BD9FE77AB57084F8FCB7556D9975D0542BD7C5D","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"0454FF602ACD41C0A230344769EEFBA2B79B13562718322CECBF493DBCBC7DED","pfndaklgolladniicklehhancnlgocpp":"6640C27C156D86521E60DA5365A8926F3A3BA693D868897D74AA0C7CDC95A5A8","pjkljhegncpnkpknbcohdijeoejaedia":"339AF6DD495C7C6DD11B440D59FAA0BB2DCDC0178B7C601CD428CC489010D27D"}},"google":{"services":{"account_id":"467F65F008A4A154C9B05534C3737326BCE66B2051EC5500559B8F547D858E38","last_username":"4820F796D82A9D6FC39402CCFD36FE4CCFF1C5A6C349C4C95BFB7E947A26DCAA","username":"87800378EDC1509658B19DC2738A58B5EAE2C3C5FA13FB6F134A44179A3EC287"}},"homepage":"07D77891F5F19A9CA5BCEDD8844161F036042F3AF02FE850FF2A88BA3CD9F2C6","homepage_is_newtabpage":"6965AEEA3C0CB35A38CBFF4FD534D0F721D30EA8E67E917862CFDA91204B2521","pinned_tabs":"816943FAEE4C3369012305DABAF344F2060AE9083D3D900A0B9711E945612C5B","prefs":{"preference_reset_time":"244E683E81F50050696370652859BE10EE5C7A6FA107AB9C27AA98C9FB8368F8"},"profile":{"reset_prompt_memento":"463F66AE114F7D69B3A99D95EF77D2DDC8D76B7468FD543917C18138622C88AF"},"safebrowsing":{"incidents_sent":"696D541572F8A86E4192D2F47139708D44E93BBA93B0EAFEBAB74E8A47AEAD18"},"search_provider_overrides":"85325F666E687D60B01F266307E09C89463A9CCEE5CFD7619C53F616E0E1C236","session":{"restore_on_startup":"2B05FE8123EA47193EC0CF89BC5E1656C0FC573A0371981867C449E15C1189EC","startup_urls":"A77372DD314E1C5314221DD56674F23ECE81EB963727DEBA2B33A28E787A0F22"},"software_reporter":{"prompt_reason":"22C52B05FE48CF8729DAAA67369F805869103970AC3817DC51EDAE556B71D05B","prompt_seed":"332CE525D10D6F2AC4CAA9DCA032096B4A0B4E964916A6E4178CC267F8027325","prompt_version":"5204FD52CD1623E1660ED257213C9061EB03DE94B019B2B0FF4B3952A06A2497"},"sync":{"remaining_rollback_tries":"781F10497D4310E266BB4AFBFE0417614D57E4A545FB8B0CE7BF455A4D967F90"}},"super_mac":"306260DB18301DADFD773A6DFE8510F8122DEA09C3CBE81E6778EF42B99A2EBE"},"session":{"restore_on_startup":5,"startup_urls":["http://nl.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_secureddownload_15_33¶m1=1¶m2=f%3D7%26b%3DChrome%26cc%3Dnl%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDzy0E0Ezyzy0EyDzztN0D0Tzu0StCtAtBtAtN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDyD0F0B0C0BtCtBtGyE0FtBtCtGyC0E0DyBtGyC0E0D0EtGyB0C0E0EyEtBtA0B0A0C0A0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0AzytA0DtA0EyCtG0EyCyByCtGyEyD0EyDtG0AyCyEyBtG0FtAtBtByD0CyEyB0DyEzztA2QtN0A0LzutB%26cr%3D1238587994%26a%3Dwncy_secureddownload_15_33%26os%3DWindows%2B10%2BHome"]},"sync":{"remaining_rollback_tries":0}} ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{20a82645-c095-46ed-80e3-08825760534b} deleted successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=6 folders=19 16050002 bytes) ==== EOF on di 18-08-2015 at 20:11:54,05 ======================